Zoek.exe v5.0.0.0 Updated 15-February-2015 Tool run by JEAN on ma 16/02/2015 at 11:47:09,77. Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\JEAN\DOWNLOADS\zoek (2) (1).exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2015-02-13-190109.log 49315 bytes C:\zoek-results2015-02-15-094144.log 763 bytes C:\zoek-results2015-02-16-101630.log 438 bytes ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3978713732-936569717-2525818349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully HKEY_USERS\S-1-5-21-3978713732-936569717-2525818349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully HKEY_USERS\S-1-5-21-3978713732-936569717-2525818349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LiveUpdateSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\LiveUpdateSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BackupStack deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\BackupStack deleted successfully ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoftonicAssistant] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] ==== Deleting Files \ Folders ====================== C:\Program Files\Application Updater not found C:\Program Files\XTab not found C:\Users\JEAN\AppData\Roaming\sparta111 not found C:\Program Files\SearchProtect not found C:\Program Files\LuckyTab not found C:\ProgramData\9118597777377280296 not found C:\Program Files\unisaallEEs not found C:\ProgramData\jajnadinkbfcdikcmjenbjamnbcldcpf not found C:\ProgramData\{dc3a499c-b7a1-1bae-dc3a-a499cb7a2672} not found "C:\Windows\tasks\ROC_JAN2013_TB_rmv.job" not found C:\Program Files\IObit\LiveUpdate deleted C:\Program Files\Photo Notifier and Animation Creator deleted C:\Program Files\MyPC Backup deleted C:\Users\JEAN\AppData\Roaming\ProductData deleted C:\Users\JEAN\AppData\Roaming\Registry Mechanic deleted C:\PROGRA~2\ProductData deleted C:\Users\JEAN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup deleted C:\Users\JEAN\AppData\LocalLow\ADSRemoval deleted C:\Windows\system32\Tasks\LaunchSignup deleted "C:\ProgramData\lxdj" deleted "C:\Program Files\shopperz\csrcc.exe" not deleted "C:\Program Files\shopperz\garrus.dll" not deleted "C:\Program Files\shopperz\grunt.exe" not deleted "C:\Program Files\shopperz\kasumi32.dll" not deleted "C:\Program Files\shopperz\kasumi64.dll" not deleted "C:\Program Files\shopperz\krios.dll" not deleted "C:\Program Files\shopperz\krios64.dll" not deleted "C:\Program Files\shopperz\liara.dll" not deleted "C:\Program Files\shopperz\liara64.dll" not deleted "C:\Program Files\shopperz\mseff32.dll" not deleted "C:\Program Files\shopperz\nseven.exe" not deleted "C:\Program Files\shopperz\prc32.exe" not deleted "C:\Program Files\shopperz\prexec.exe" not deleted "C:\Program Files\shopperz\spdata.dat" not deleted "C:\Program Files\shopperz\tree.js" not deleted "C:\Program Files\shopperz\tsoni.dll" not deleted "C:\Program Files\shopperz\tsoni64.dll" not deleted "C:\Program Files\shopperz\unins000.exe" not deleted "C:\Program Files\shopperz\wrex.exe" not deleted "C:\Program Files\shopperz\wrex64.exe" not deleted "C:\Program Files\shopperz\csrcc.exe" not deleted "C:\Program Files\shopperz\garrus.dll" not deleted "C:\Program Files\shopperz\grunt.exe" not deleted "C:\Program Files\shopperz\kasumi32.dll" not deleted "C:\Program Files\shopperz\kasumi64.dll" not deleted "C:\Program Files\shopperz\krios.dll" not deleted "C:\Program Files\shopperz\krios64.dll" not deleted "C:\Program Files\shopperz\liara.dll" not deleted "C:\Program Files\shopperz\liara64.dll" not deleted "C:\Program Files\shopperz\mseff32.dll" not deleted "C:\Program Files\shopperz\nseven.exe" not deleted "C:\Program Files\shopperz\prc32.exe" not deleted "C:\Program Files\shopperz\prexec.exe" not deleted "C:\Program Files\shopperz\spdata.dat" not deleted "C:\Program Files\shopperz\tree.js" not deleted "C:\Program Files\shopperz\tsoni.dll" not deleted "C:\Program Files\shopperz\tsoni64.dll" not deleted "C:\Program Files\shopperz\unins000.exe" not deleted "C:\Program Files\shopperz\wrex.exe" not deleted "C:\Program Files\shopperz\wrex64.exe" not deleted "C:\PROGRA~2\boost_interprocess\skype_c2c_messaging_mutex" deleted "C:\Users\JEAN\AppData\LocalLow\Company\Product\1.0\localStorageIE.txt" not deleted "C:\Users\JEAN\AppData\LocalLow\Company\Product\1.0\localStorageIE_backup.txt" not deleted "C:\Users\JEAN\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}\{FBC0652C-7B29-4FB6-8ADA-91F54B267AD4}\1.5\sts.js" not deleted "C:\Program Files\shopperz" not deleted "C:\Program Files\shopperz" not deleted "C:\PROGRA~2\boost_interprocess" not deleted "C:\Users\JEAN\AppData\LocalLow\Company" not deleted "C:\Users\JEAN\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}" not deleted "C:\Users\JEAN\AppData\LocalLow\Company\Product" not deleted "C:\Users\JEAN\AppData\LocalLow\Company\Product\1.0" not deleted "C:\Users\JEAN\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}\{FBC0652C-7B29-4FB6-8ADA-91F54B267AD4}" not deleted "C:\Users\JEAN\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}\{FBC0652C-7B29-4FB6-8ADA-91F54B267AD4}\1.5" not deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\JEAN\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\system32 ===== 2015-02-16 08:28:45 C3D9CC419E774963569D8B06AB6D3505 475544 ----a-w- C:\Windows\System32\FNTCACHE.DAT 2015-02-12 09:48:12 1A3778EBE361259C75D5D92D4119DB55 1810944 ----a-w- C:\Windows\System32\jscript9.dll 2015-02-12 09:48:12 10C0DA063EEA438B73B60CE15BF8702B 717824 ----a-w- C:\Windows\System32\jscript.dll 2015-02-11 10:59:21 0D8FBC644E556C40E06B7EB25A73F6E5 564224 ----a-w- C:\Windows\System32\oleaut32.dll 2015-02-11 10:58:47 77036FE328B7A382A88DFBFE05ABBAC8 2063360 ----a-w- C:\Windows\System32\win32k.sys 2015-02-11 10:58:08 55ADC2CB49975A92B954CFEB21C73E2E 974848 ----a-w- C:\Windows\System32\WindowsCodecs.dll 2015-02-11 10:55:26 735B1EB4521724784A6C142CE923DBFC 306176 ----a-w- C:\Windows\System32\scesrv.dll 2015-02-11 10:01:25 C9AEC0B252881C6372D4B252AAEFF1E0 421376 ----a-w- C:\Windows\System32\vbscript.dll 2015-02-11 10:01:25 A1CC68D946EFEDAFCAFCC30F73069E54 176640 ----a-w- C:\Windows\System32\ieui.dll 2015-02-11 10:01:25 90BFECC19CC9B8AD24879AF2D2EDD817 223232 ----a-w- C:\Windows\System32\dxtrans.dll 2015-02-11 10:01:25 79E75447CCEB8522756FCD1EA1B858FF 1129472 ----a-w- C:\Windows\System32\wininet.dll 2015-02-11 10:01:25 009D017C0A32C1D10C1B731185ED7E7B 353792 ----a-w- C:\Windows\System32\dxtmsft.dll 2015-02-11 10:01:24 C3A39726B1AB3EDCD3E71488531D7D62 73216 ----a-w- C:\Windows\System32\mshtmled.dll 2015-02-11 10:01:24 43EFB5C7EE9990A3FE51E38FD1A334EB 367104 ----a-w- C:\Windows\System32\html.iec 2015-02-11 10:01:23 88DFFFE4A1C25C256A74629599292A2D 12371456 ----a-w- C:\Windows\System32\mshtml.dll 2015-02-11 10:01:22 AEEDEE2C22971D086B244B818BC5E789 65024 ----a-w- C:\Windows\System32\jsproxy.dll 2015-02-11 10:01:22 99AB7F4193275F8AA0A2E0CDDD787CCE 10752 ----a-w- C:\Windows\System32\msfeedssync.exe 2015-02-11 10:01:22 8D45045DB8267BB3B86B06712FB676C3 11776 ----a-w- C:\Windows\System32\mshta.exe 2015-02-11 10:01:22 61EFA6B58EBDE66BA4FE54FEC0BE6538 2382848 ----a-w- C:\Windows\System32\mshtml.tlb 2015-02-11 10:01:22 1C394C5CFA2769E7C95B99362B1C2131 41472 ----a-w- C:\Windows\System32\msfeedsbs.dll 2015-02-11 10:01:21 F8A000CEB50A46BAED45101065635D84 607744 ----a-w- C:\Windows\System32\msfeeds.dll 2015-02-11 10:01:21 40F6C5763DA273F5BC30E17C4B3B011F 1427968 ----a-w- C:\Windows\System32\inetcpl.cpl 2015-02-11 10:01:21 14EA1AEF44A601DE1CC0EFD97690DEF1 1139712 ----a-w- C:\Windows\System32\urlmon.dll 2015-02-11 10:01:20 60974C6E6B8456B5908A7650FC7C93DC 1802752 ----a-w- C:\Windows\System32\iertutil.dll 2015-02-11 10:01:20 60652E280588712CFA1624D02C7139AA 142848 ----a-w- C:\Windows\System32\ieUnatt.exe 2015-02-11 10:01:20 2B94917978DCC4DF10505FED0C6563F2 231936 ----a-w- C:\Windows\System32\url.dll 2015-02-11 10:01:20 062C13975F34C1BBA43CD3BF01D8C899 9742336 ----a-w- C:\Windows\System32\ieframe.dll 2015-02-09 16:54:50 06C99FCB2C0DED18CB71FA94158A6D09 522 ----a-w- C:\Windows\System32\cc_20150209_175445.reg 2015-02-08 19:11:54 D9E78629A6715BC60897DF8AFC016B2B 506 ----a-w- C:\Windows\System32\cc_20150208_201148.reg 2015-02-06 11:24:57 197B2EE973E3BC2B0E32BED69549E41E 291352 ----a-w- C:\Windows\System32\aswBoot.exe ====== C:\Windows\system32\drivers ===== 2015-02-11 10:55:32 5035EDF1F2E72F78BB1EC5BD9B97463F 440760 ----a-w- C:\Windows\System32\drivers\ksecdd.sys 2015-02-02 11:58:25 9D23DE88C3B18BA87CD4587177CA6CEA 24184 ----a-w- C:\Windows\System32\drivers\aswHwid.sys 2015-02-02 11:58:25 98F4C60F5C3E77B4A2CD1F06F7198D49 73480 ----a-w- C:\Windows\System32\drivers\aswmonflt.sys 2015-02-02 11:58:25 6544697080421E62E97AAFBD0A8AA391 49944 ----a-w- C:\Windows\System32\drivers\aswRvrt.sys 2015-02-02 11:58:25 4C0ECF1AFA6992904814C74B99DD36F9 57928 ----a-w- C:\Windows\System32\drivers\aswTdi.sys 2015-02-02 11:58:25 1624D5AD126B8AFE2B2E85E5B8364EB6 423784 ----a-w- C:\Windows\System32\drivers\aswsp.sys 2015-02-02 11:58:25 0EFBC2962B156E8AC267F96D4D93EF06 206248 ----a-w- C:\Windows\System32\drivers\aswVmm.sys 2015-02-02 11:58:25 0926775B8C3B32EE99921CCB0F85378E 55240 ----a-w- C:\Windows\System32\drivers\aswRdr.sys 2015-02-02 11:58:24 E73CBE3420ECFA8FF7D0467E170E335D 787800 ----a-w- C:\Windows\System32\drivers\aswsnx.sys 2015-01-30 09:33:00 533BFC63198762402F5490176F68B1C0 31736 ----a-w- C:\Windows\System32\drivers\bsdriver.sys 2015-01-30 09:32:54 0D08D12AE45EB212F284E3B281197F06 51160 ----a-w- C:\Windows\System32\drivers\cherimoya.sys 2015-01-27 22:29:50 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\System32\drivers\Msft_Kernel_Smb_driver_Intel_01009.Wdf 2015-01-27 20:10:43 1E3D32DDBE6BBDC0843432BAD599069F 10681176 ----a-w- C:\Windows\System32\drivers\nvlddmkm.sys 2015-01-27 20:08:01 886CE666A9507E17475C7156B157D181 5804772 ----a-w- C:\Windows\System32\drivers\rtvienna.dat 2015-01-27 20:08:00 19B572DD46F038509846589DCB702B19 3086040 ----a-w- C:\Windows\System32\drivers\RTKVHDA.sys 2015-01-27 20:07:55 4013C8B5C62F7F8E6A027DFB19173A4E 1099203 ----a-w- C:\Windows\System32\drivers\RTAIODAT.DAT 2015-01-27 20:00:05 8E6D3DEF07A671B7079D01947FDE1E58 38768 ----a-w- C:\Windows\System32\drivers\Smb_driver_Intel.sys ====== C:\Windows\Tasks ====== 2015-02-15 09:23:55 DB64F656D105181FB86479C0A4D60A81 3158 ----a-w- C:\Windows\system32\Tasks\SmartDefrag3_Startup 2015-02-15 09:23:47 D4D21DCC2291EB4B732C97A6E2FFF640 3156 ----a-w- C:\Windows\system32\Tasks\SmartDefrag3_Update 2015-02-15 09:20:27 ECC3F34C2144B3A6729046FA62E9B073 3174 ----a-w- C:\Windows\system32\Tasks\SmartDefrag4_Update 2015-02-15 09:20:27 647C87241B34E89BD0F7182812E2FB69 3176 ----a-w- C:\Windows\system32\Tasks\SmartDefrag4_Startup 2015-02-14 15:51:22 CE80A4BFCFA1217D6D4DEB70FEAF0806 2864 ----a-w- C:\Windows\system32\Tasks\RMSchedule 2015-02-14 15:51:22 C1C907404FCEB7BDD3B5528273BDCB61 290 ----a-w- C:\Windows\Tasks\RMSchedule.job 2015-02-14 15:51:21 A74276249129263472EC0915C623E593 288 ----a-w- C:\Windows\Tasks\RMAutoUpdate.job 2015-02-14 15:51:21 86E8C326AA184F00D5AC64F809DC2763 2524 ----a-w- C:\Windows\system32\Tasks\RMAutoUpdate 2015-02-11 10:38:30 248EE59C799028B578847A22CE66A88D 3152 ----a-w- C:\Windows\system32\Tasks\ASC8_PerformanceMonitor 2015-02-02 11:58:38 17C6528FDC3488265D76008B4DD69A9D 4182 ----a-w- C:\Windows\system32\Tasks\avast! Emergency Update 2015-02-02 11:28:03 45E35D233FDED33A45B3B9B5BA4F40EF 2896 ----a-w- C:\Windows\system32\Tasks\Uninstaller_SkipUac_JEAN 2015-01-31 18:54:02 AFC420589E9E0C0D747F0CBD25417B81 2840 ----a-w- C:\Windows\system32\Tasks\ASC8_SkipUac_JEAN 2015-01-27 19:16:05 A0C35C4AD8968C5E9CFDDE4F573D4A22 3202 ----a-w- C:\Windows\system32\Tasks\Driver Booster Scan 2015-01-27 19:16:05 3DAC6DFDC28A58528DE1867B97F0118A 3146 ----a-w- C:\Windows\system32\Tasks\Driver Booster Update ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-02-14 15:59:04 -------- d-----w- C:\Program Files\IncrediMail 2015-02-14 15:47:02 -------- d-----w- C:\Program Files\PC Tools 2015-02-12 16:37:25 -------- d-----w- C:\Program Files\trend micro 2015-02-03 17:21:06 -------- d-----w- C:\Program Files\Cyti Web 2015-01-30 09:32:53 -------- d-----w- C:\Program Files\shopperz 2015-01-27 22:29:44 -------- d-----w- C:\Program Files\Synaptics 2015-01-26 14:37:33 -------- d-----w- C:\Program Files\ChilliTorrent ======= C: ===== ====== C:\Users\JEAN\AppData\Roaming ====== 2015-02-16 09:50:20 -------- d-----w- C:\Users\JEAN\AppData\Local\Adobe 2015-02-16 08:42:05 BA67E5C8A08EE7722D0226D6F956C910 137024 ----a-w- C:\Users\JEAN\AppData\Local\GDIPFONTCACHEV1.DAT 2015-02-14 16:46:18 -------- d-----r- C:\Users\JEAN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StartUp 2015-02-14 15:46:27 -------- d-----w- C:\Users\JEAN\AppData\Roaming\Product_RM 2015-02-13 19:01:52 -------- d-----w- C:\Users\JEAN\AppData\Locallow\Company 2015-02-13 19:00:55 -------- d-----w- C:\Users\JEAN\AppData\Locallow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A} 2015-02-13 18:15:07 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp 2015-02-13 18:15:06 -------- d-----w- C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp 2015-02-13 18:15:04 -------- d-----w- C:\Users\IUSR_NMPR\AppData\Local\Temp 2015-02-13 18:15:04 -------- d-----w- C:\Users\Default\AppData\Local\Temp 2015-02-13 18:15:04 -------- d-----w- C:\Users\Default User\AppData\Local\Temp 2015-02-13 18:15:01 -------- dc----w- C:\Users\JEAN\AppData\Local\Temp 2015-02-08 11:55:47 -------- d-----w- C:\Users\JEAN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-01-29 20:00:38 -------- d-----w- C:\Users\JEAN\AppData\Locallow\AdbPlugin 2015-01-29 20:00:32 -------- d-----w- C:\Users\JEAN\AppData\Locallow\SecurePlugin 2015-01-26 17:09:32 -------- d-----w- C:\Users\JEAN\AppData\Roaming\SoftwareUpdater 2015-01-19 21:12:57 -------- d-----w- C:\Users\JEAN\AppData\Local\Apps ====== C:\Users\JEAN ====== 2015-02-16 09:39:05 72DFE906ACB4D2156B788B3F37C862CE 13510056 ----a-w- C:\Users\JEAN\DOWNLOADS\IncrediMailSetup_nl (5).exe 2015-02-15 09:25:15 4C5A6C064CFF88CD6D20C953DA8F2ADC 6825544 ----a-w- C:\Users\JEAN\DOWNLOADS\smart-defrag-setup-beta (1).exe 2015-02-15 09:20:14 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 4 2015-02-15 09:19:24 4C5A6C064CFF88CD6D20C953DA8F2ADC 6825544 ----a-w- C:\Users\JEAN\DOWNLOADS\smart-defrag-setup-beta.exe 2015-02-15 08:49:02 72DFE906ACB4D2156B788B3F37C862CE 13510056 ----a-w- C:\Users\JEAN\DOWNLOADS\IncrediMailSetup_nl (4).exe 2015-02-14 17:37:07 72DFE906ACB4D2156B788B3F37C862CE 13510056 ----a-w- C:\Users\JEAN\DOWNLOADS\IncrediMailSetup_nl (3).exe 2015-02-14 17:33:49 91BB25957FD5F99808D9FEA4B741A56C 491784 ----a-w- C:\Users\JEAN\DOWNLOADS\incredimail_install (4).exe 2015-02-14 16:45:21 C04B0DE70DC37CD5D656B0BBE24E5806 659424 ----a-w- C:\Users\JEAN\DOWNLOADS\IncrediMail 2.5 v6.60 Downloader.exe 2015-02-14 16:42:33 995F81DC0C63548D1912ACF25A4EFF7B 13078440 ----a-w- C:\Users\JEAN\DOWNLOADS\IncrediMailSetup (2).exe 2015-02-14 16:37:33 2BAAA42218DEB7B3E29F088222942631 12908968 ----a-w- C:\Users\JEAN\DOWNLOADS\IncrediMailSetup_nl (2).exe 2015-02-14 16:31:58 995F81DC0C63548D1912ACF25A4EFF7B 13078440 ----a-w- C:\Users\JEAN\DOWNLOADS\IncrediMailSetup (1).exe 2015-02-14 16:30:37 995F81DC0C63548D1912ACF25A4EFF7B 13078440 ----a-w- C:\Users\JEAN\DOWNLOADS\IncrediMailSetup.exe 2015-02-14 16:27:44 9779C085A3B095763BF14BD6CE637777 491784 ----a-w- C:\Users\JEAN\DOWNLOADS\incredimail_install (2).exe 2015-02-14 15:59:14 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IncrediMail 2015-02-14 15:54:09 5934D4A097802281A0CC85B3EED94DB6 491784 ----a-w- C:\Users\JEAN\DOWNLOADS\incredimail_install (1).exe 2015-02-14 15:52:58 9779C085A3B095763BF14BD6CE637777 491784 ----a-w- C:\Users\JEAN\DOWNLOADS\incredimail_install.exe 2015-02-14 15:47:11 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registry Mechanic 2015-02-14 15:46:28 -------- d-----w- C:\ProgramData\PC Tools 2015-02-14 15:44:17 77FD17DFC8FE14FEE2AAC52908C2B8E5 18666584 ----a-w- C:\Users\JEAN\DOWNLOADS\rminstall.exe 2015-02-14 11:27:23 2BAAA42218DEB7B3E29F088222942631 12908968 ----a-w- C:\Users\JEAN\DOWNLOADS\IncrediMailSetup_nl (1).exe 2015-02-13 18:59:08 -------- d-----w- C:\ProgramData\boost_interprocess 2015-02-12 19:05:17 72DFE906ACB4D2156B788B3F37C862CE 13510056 ----a-w- C:\Users\JEAN\DOWNLOADS\IncrediMailSetup_nl.exe 2015-02-12 16:36:57 8685FAF50C04F9A9C2F56FF64B0B7ACB 1107968 ----a-w- C:\Users\JEAN\DOWNLOADS\RSIT.exe 2015-02-11 10:23:08 FE4599DDCE5D03D3CA9F96834867C4F9 761624 ----a-w- C:\Users\JEAN\DOWNLOADS\bearshare_gold.exe 2015-01-29 18:55:33 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8 2015-01-27 19:16:03 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2 2015-01-27 19:15:38 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller 2015-01-27 10:03:16 -------- d-----w- C:\ProgramData\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB 2015-01-26 17:01:50 8E1B08222F20E45A3E8DB04C569F9CB7 8 --sha-r- C:\ProgramData\ntuser.pol ====== C: exe-files == === C: other files == ==== Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "Advanced SystemCare 5"="C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe /AutoStart" "Advanced SystemCare 7"="C:\Program Files\IObit\Advanced SystemCare 7\ASCTray.exe /Auto" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-21-3978713732-936569717-2525818349-1000\Software\Microsoft\Windows\CurrentVersion\Run] "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner.exe /MONITOR" "Advanced SystemCare 8"="C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe /Auto" [HKEY_USERS\S-1-5-21-3978713732-936569717-2525818349-1003\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "Advanced SystemCare 5"="C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe /AutoStart" "Advanced SystemCare 7"="C:\Program Files\IObit\Advanced SystemCare 7\ASCTray.exe /Auto" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvastUI.exe /nogui" "SSDMonitor"="C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner.exe /MONITOR" "Advanced SystemCare 8"="C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe /Auto" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Acrobat Assistant 8.0] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Acrobat Assistant 8.0" "hkey"="HKLM" "command"="\"C:\\Program Files\\Adobe\\Acrobat 11.0\\Acrobat\\Acrotray.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe Reader Speed Launcher] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe Reader Speed Launcher" "hkey"="HKLM" "command"="\"C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AdobeAAMUpdater-1.0] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="AdobeAAMUpdater-1.0" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Adobe\\OOBE\\PDApp\\UWA\\UpdaterStartupUtility.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CCleaner Monitoring] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="CCleaner Monitoring" "hkey"="HKCU" "command"="\"C:\\Program Files\\CCleaner\\CCleaner.exe\" /MONITOR" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ehTray.exe] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="ehTray.exe" "hkey"="HKCU" "command"="C:\\Windows\\ehome\\ehTray.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Skype] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Skype" "hkey"="HKCU" "command"="\"C:\\Program Files\\Skype\\Phone\\Skype.exe\" /minimized /regrun" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^JEAN^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^StartUp^Dropbox.lnk] "item"="Dropbox" "backup"="C:\\Windows\\pss\\Dropbox.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\Users\\JEAN\\AppData\\Roaming\\Dropbox\\bin\\Dropbox.exe" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [08/02/2015 11:28] C:\Windows\tasks\DriverToolkit Autorun.job --a------ C:\Program Files\DriverToolkit\DriverToolkit.exe [] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [04/12/2014 03:31] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [04/12/2014 03:31] C:\Windows\tasks\RMAutoUpdate.job --a------ C:\Program Files\PC Tools\PC Tools Registry Mechanic\SULauncher.exe [21/08/2012 14:44] C:\Windows\tasks\RMSchedule.job --a------ [Undetermined Task] ==== Other Scheduled Tasks ====================== "C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\system32\tasks\ASC8_PerformanceMonitor" [C:\Program Files\IObit\Advanced SystemCare 8\Monitor.exe] "C:\Windows\system32\tasks\ASC8_SkipUac_JEAN" ["C:\Program Files\IObit\Advanced SystemCare 8\ASC.exe" /SkipUac] "C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\system32\tasks\Driver Booster Scan" [C:\Program Files\IObit\Driver Booster\Scheduler.exe] "C:\Windows\system32\tasks\Driver Booster SkipUAC (JEAN)" [C:\Program Files\IObit\Driver Booster\DriverBooster.exe] "C:\Windows\system32\tasks\Driver Booster SkipUAC (SYSTEEM)" [C:\Program Files\IObit\Driver Booster\DriverBooster.exe] "C:\Windows\system32\tasks\Driver Booster Update" [C:\Program Files\IObit\Driver Booster\AutoUpdate.exe] "C:\Windows\system32\tasks\DriverToolkit Autorun" [C:\Program Files\DriverToolkit\DriverToolkit.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\JetBoost_AutoUpdate" [C:\Program Files\BlueSprig\JetBoost\AutoUpdate.exe] "C:\Windows\system32\tasks\JetCleanLoginCheckUpdate" [C:\Program Files\BlueSprig\JetClean\AutoUpdate.exe] "C:\Windows\system32\tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-3978713732-936569717-2525818349-1000" [C:\Program Files\Real\RealUpgrade\RealUpgrade.exe] "C:\Windows\system32\tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-3978713732-936569717-2525818349-1000" [C:\Program Files\Real\RealUpgrade\RealUpgrade.exe] "C:\Windows\system32\tasks\RMAutoUpdate" [C:\Program Files\PC Tools\PC Tools Registry Mechanic\SULauncher.exe] "C:\Windows\system32\tasks\RMSchedule" [C:\Program Files\PC Tools\PC Tools Registry Mechanic\RegMech.exe] "C:\Windows\system32\tasks\SmartDefrag3_Startup" [C:\Program Files\IObit\Smart Defrag 3\SmartDefrag.exe] "C:\Windows\system32\tasks\SmartDefrag3_Update" [C:\Program Files\IObit\Smart Defrag 3\AutoUpdate.exe] "C:\Windows\system32\tasks\SmartDefrag4_Startup" [C:\Program Files\IObit\Smart Defrag 4\SmartDefrag.exe] "C:\Windows\system32\tasks\SmartDefrag4_Update" [C:\Program Files\IObit\Smart Defrag 4\AutoUpdate.exe] "C:\Windows\system32\tasks\TuneUpUtilities_Task_BkGndMaintenance2013" [C:\Program Files\TuneUp Utilities 2013\OneClick.exe] "C:\Windows\system32\tasks\Uninstaller_SkipUac_JEAN" [C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe] "C:\Windows\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe] "C:\Windows\system32\tasks\NCH Software\DebutReminder" [C:\Program Files\NCH Software\Debut\Debut.exe] "C:\Windows\system32\tasks\NCH Software\ExpressBurnDowngrade" [C:\Program Files\NCH Software\ExpressBurn\ExpressBurn.exe] "C:\Windows\system32\tasks\NCH Software\ExpressBurnReminder" [C:\Program Files\NCH Software\ExpressBurn\ExpressBurn.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [06/02/2015 21:04] ==== Chromium Look ====================== Google Chrome Version: 41.0.2272.12 (Possible outdated, latest Stable version: 40.0.2214.111) HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions ahilkiibpgjnonbhdfkkgjddddmapala - No path found[] dlnembnfbcpjnepmfjmngjenhhajpdfd - No path found[] efaidnbmnnnibpcajpcglclefindmkaj - C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx[08/05/2014 14:49] gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[02/02/2015 12:58] idhngdhcfkoamngbedgpaokgjbnpdiji - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx[29/11/2012 20:35] jcdgjdiieiljkfkdcloehkohchhpekkn - No path found[] lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx[09/04/2012 10:23] ndibdjnfmopecpmkdieinmbadjfpblof - No path found[] niapdbllcanepiiimjjndipklodoedlc - No path found[] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions ahilkiibpgjnonbhdfkkgjddddmapala - No path found[] Avast Online Security - JEAN\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\gomekmidlodglbbmalcneegieacbdmki RealDownloader - JEAN\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji Skype Click to Call - JEAN\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl YouTube - C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo ==== Chromium Startpages ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Preferences "homepage": "http://www.google.com", ==== Chromium Fix ====================== C:\Users\JEAN\AppData\Local\Google\Chrome\User Data\Profile 2\Local Storage\http_www.superfish.com_0.localstorage deleted successfully C:\Users\JEAN\AppData\Local\Google\Chrome\User Data\Profile 2\Local Storage\http_www.superfish.com_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.msn.com/?ocid=EIE9HP&PC=UP50" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{33BB0A4E-99AF-4226-BDF6-49120163DE86}" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.msn.com/?ocid=EIE9HP&PC=UP50" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {33BB0A4E-99AF-4226-BDF6-49120163DE86} mystartsearch Url="http://www.mystartsearch.com/web/?type=ds&ts=1420884963&from=amt&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU040912309123&q={searchTerms}" {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} Google Url="https://www.google.com/search?trackid=sp-006&q={searchTerms}" ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup deleted successfully ==== Empty IE Cache ====================== C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\IUSR_NMPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Local\Microsoft\Windows\Temporary Internet Files\Low(1406)\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\ServiceProfiles\LocalService\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Users\JEAN GELELEENS\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Users\JEAN GELELEENS\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Users\JEAN GELELEENS\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low(1406)\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Users\JEAN GELELEENS\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\JEAN\AppData\Local\Google\Chrome\User Data\Profile 2\Cache emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== C:\zoek_backup (files=2648 folders=461 432397806 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\IUSR_NMPR\AppData\Local\Temp emptied successfully C:\Users\JEAN\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\JEAN\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Program Files\shopperz\csrcc.exe" not deleted "C:\Program Files\shopperz\garrus.dll" not deleted "C:\Program Files\shopperz\grunt.exe" not deleted "C:\Program Files\shopperz\kasumi32.dll" not deleted "C:\Program Files\shopperz\kasumi64.dll" not deleted "C:\Program Files\shopperz\krios.dll" not deleted "C:\Program Files\shopperz\krios64.dll" not deleted "C:\Program Files\shopperz\liara.dll" not deleted "C:\Program Files\shopperz\liara64.dll" not deleted "C:\Program Files\shopperz\mseff32.dll" not deleted "C:\Program Files\shopperz\nseven.exe" not deleted "C:\Program Files\shopperz\prc32.exe" not deleted "C:\Program Files\shopperz\prexec.exe" not deleted "C:\Program Files\shopperz\spdata.dat" not deleted "C:\Program Files\shopperz\tree.js" not deleted "C:\Program Files\shopperz\tsoni.dll" not deleted "C:\Program Files\shopperz\tsoni64.dll" not deleted "C:\Program Files\shopperz\unins000.exe" not deleted "C:\Program Files\shopperz\wrex.exe" not deleted "C:\Program Files\shopperz\wrex64.exe" not deleted "C:\Program Files\shopperz\csrcc.exe" not deleted "C:\Program Files\shopperz\garrus.dll" not deleted "C:\Program Files\shopperz\grunt.exe" not deleted "C:\Program Files\shopperz\kasumi32.dll" not deleted "C:\Program Files\shopperz\kasumi64.dll" not deleted "C:\Program Files\shopperz\krios.dll" not deleted "C:\Program Files\shopperz\krios64.dll" not deleted "C:\Program Files\shopperz\liara.dll" not deleted "C:\Program Files\shopperz\liara64.dll" not deleted "C:\Program Files\shopperz\mseff32.dll" not deleted "C:\Program Files\shopperz\nseven.exe" not deleted "C:\Program Files\shopperz\prc32.exe" not deleted "C:\Program Files\shopperz\prexec.exe" not deleted "C:\Program Files\shopperz\spdata.dat" not deleted "C:\Program Files\shopperz\tree.js" not deleted "C:\Program Files\shopperz\tsoni.dll" not deleted "C:\Program Files\shopperz\tsoni64.dll" not deleted "C:\Program Files\shopperz\unins000.exe" not deleted "C:\Program Files\shopperz\wrex.exe" not deleted "C:\Program Files\shopperz\wrex64.exe" not deleted "C:\Users\JEAN\AppData\LocalLow\Company\Product\1.0\localStorageIE.txt" not found "C:\Users\JEAN\AppData\LocalLow\Company\Product\1.0\localStorageIE_backup.txt" not found "C:\Users\JEAN\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}\{FBC0652C-7B29-4FB6-8ADA-91F54B267AD4}\1.5\sts.js" not deleted "C:\Users\JEAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted "C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted "C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted "C:\Program Files\shopperz" not deleted "C:\Program Files\shopperz" not deleted "C:\PROGRA~2\boost_interprocess" not deleted "C:\Users\JEAN\AppData\LocalLow\Company" not found "C:\Users\JEAN\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}" not deleted ==== EOF on ma 16/02/2015 at 14:25:27,72 ======================