Zoek.exe v5.0.0.0 Updated 23-March-2015 Tool run by Leon on wo 25-03-2015 at 19:05:22,53. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Leon.LEONAALBURG1\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2015-03-10-202400.log 79028 bytes ==== Empty Folders Check ====================== C:\PROGRA~2\MSXML 4.0 deleted successfully C:\PROGRA~2\Origin Games deleted successfully C:\Program Files\McAfee deleted successfully C:\PROGRA~3\eSafe deleted successfully C:\Users\Leon\AppData\Roaming\Iluvc deleted successfully C:\Users\Leon\AppData\Roaming\SynthMaker deleted successfully C:\Users\Leon\AppData\Roaming\Windows Live Writer deleted successfully C:\Users\Leon\AppData\Roaming\Zaod deleted successfully C:\Users\Leon.LEONAALBURG1\AppData\Roaming\DAEMON Tools Lite deleted successfully C:\Users\Leon.LEONAALBURG1\AppData\Roaming\DAEMON Tools Pro deleted successfully C:\Users\Leon.LEONAALBURG1\AppData\Roaming\Mozilla deleted successfully C:\Users\Leon\AppData\Local\Bundled software uninstaller deleted successfully C:\Users\Leon\AppData\Local\{0550C5E0-6EFF-4302-AF79-720FEBB3428E} deleted successfully C:\Users\Leon\AppData\Local\{059C4119-5CAA-4058-9539-ED1FC7EEB1E0} deleted successfully C:\Users\Leon\AppData\Local\{0D6EFFE3-7283-44F8-AB44-2C4FF93A88D5} deleted successfully C:\Users\Leon\AppData\Local\{21BC8D11-A9CB-4C87-93B7-8F7789F54B7C} deleted successfully C:\Users\Leon\AppData\Local\{33887773-14CD-4521-BFBC-9631ED5DD06B} deleted successfully C:\Users\Leon\AppData\Local\{3E817683-BABA-448F-8884-844519735104} deleted successfully C:\Users\Leon\AppData\Local\{5D0BE09D-4521-4277-A1BD-DD7130CF3C84} deleted successfully C:\Users\Leon\AppData\Local\{5E65A53F-E079-428B-8C70-2A7FC8CF344F} deleted successfully C:\Users\Leon\AppData\Local\{6D36BE9F-7C97-4C74-89A5-E2747CCE00DF} deleted successfully C:\Users\Leon\AppData\Local\{A0F8356D-E007-475D-B7E1-DF0E1864FBD3} deleted successfully C:\Users\Leon\AppData\Local\{BA21E146-6D00-4C37-B2FA-C13371319547} deleted successfully C:\Users\Leon\AppData\Local\{BBFAA8F1-F5C5-494D-AF3C-4DEC9F7E6F17} deleted successfully C:\Users\Leon\AppData\Local\{E58DDD54-AB73-42EF-BF00-530FCD3A73DE} deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611331111} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110611331111} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611331113} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110611331113} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{17FDB9F8-DCC4-4F6A-AE07-B16018A48469} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{17FDB9F8-DCC4-4F6A-AE07-B16018A48469} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0d6c2906-f29d-4b1c-9113-54bd93fb663d} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1120BD0A-C8E4-4BC4-8E77-257ED43A6D63} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11bdc906-b2dc-4793-bd0c-c2a5c0052f2a} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1269B44E-D8A1-42A1-94AF-EBE7FBFEAECC} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{12A52BB8-2282-4A5A-9D46-7666E1B79A83} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15A8DA43-D792-48F6-BB84-AA1BE85C2828} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{17F5D7C0-187C-4FEB-94C9-2FBE9EA67B70} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{186BBFB2-D7E6-43B3-B141-DB9A68F293B} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1948D8F8-EE58-45E5-BE2-A08B5DB34E2E} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{19E342F3-922F-40CC-A096-DED93FC42279} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1A50C2EB-F8E8-4C0F-8E86-EB7B3F16D03F} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1AA04844-960F-4A29-8BFE-D09452C3D5BB} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1AB0E8B6-7C55-4D53-A31D-FB728D5497B8} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1AC5D3BE-D13C-4E7E-81E8-5D321EF6914C} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1B6C567-A5BE-4FC7-8CB6-90136A7A1557} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1C22B379-5B41-4680-B86A-1A624A5C47C2} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1D82E570-236E-4411-A889-99CB163B71FA} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1DBEACAF-8AA9-4EB1-B785-111BAA87B09E} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1E295506-A555-4A96-96D-B7F3EFB15658} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1E526536-F4A-4EE1-9E64-AFEB421B2259} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1EA46294-6D94-4F67-9F13-8F45B342F8E2} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1EC39E9-2DEB-42E1-BF8E-D57572FDDD8} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1FAFED8F-A24D-4BF2-832B-F2257F537B} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1FE4DBD9-57A-4DA0-AE6A-2DCEF1992AB2} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{209F92A7-21B2-4CA8-9EE8-8B2FEEFE86} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{20BAEC0D-C649-43BC-81ED-F27560F1CB} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2179CEE4-5BAB-42DA-9DBD-E0CEF76C41D} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{25F112E1-BFB8-4B3B-8497-81BD4A1E49B4} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{26B6C0A2-80B-4F4A-BEE6-A0D7579AEB7} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{26C03A35-1B76-46F7-BD15-48C7BC9A712B} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{27F3CFD2-FE4-459E-A679-1677FB7935BF} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{28ad316e-45e6-486d-8951-06073e508ced} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2A02F57-AF89-4A6E-A9C9-B7039B01B13} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2A4F950E-E59E-48B3-8BEA-787F34C8C79B} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2A6F8A36-B8A6-4197-9F1F-3CD5158CD3E} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2BEBDF4A-1F37-48DE-A7AF-3BD49AB2E3D} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2CADEB73-3894-48EF-A746-57DA83D4B35} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D5FD23E-A0DD-4FEF-8EB4-66865FABF26D} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2DA7119F-CCE3-414C-ABB1-BC3B58CD39C9} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2E35A328-FF8B-4B29-8ACE-63755A56341} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2EE6BEA0-2DE-42D6-BAF-515A19EB5392} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2F006ED3-ABC5-42EB-AAD4-C6DA84DC65F7} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2F68037F-676C-4806-B61D-D7A05AC701D} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{30ED4DC-A239-4251-8332-D57ED4A46C69} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{311AB35F-57C6-49C2-A321-8F5C5615638} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{31A7FF94-552E-44FE-B630-9F8546B61CA} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{32C9AAC3-1717-4CAF-B9C5-E7474625C0DE} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{32D8F22A-FB3A-4395-BAEE-ED51238EA967} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{335E0BEB-B622-49CC-B22D-366BEC1298E} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{34AA7AE2-CEC0-4F35-9176-938CB64B3BCD} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{34BB5A58-51E6-4F4E-B0A5-F0777F81FE77} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{34EFBF06-77A6-469D-B838-5ED42F562E2} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{34F90CBF-FE4C-494F-863A-DADC5B16664} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3617B3A0-C8C9-4026-9E26-72D6329159} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{36C8DAAD-A3BD-4E27-9FAB-84B83EE88E6} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{36C97B99-3B0C-4D33-BEB8-50CEDC6F09C} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3778407F-C6F9-4354-9212-476AB469979} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{37967D14-93BB-46B1-8C61-F5499C4CDD7F} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{38E01C55-6F2B-4D22-A490-E1F9A366ECF2} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{391B67AE-F015-4533-B335-6AB67022E45B} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{396A66F2-D6AD-4956-839F-D9156F48E470} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{39D72042-8AE7-4FF8-93BF-D99360593FFE} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3BB61F66-A1DF-4BF7-8DCE-339B3F441157} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3C1D3FBA-8AF1-48C9-B9B0-21B6E1838121} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3cbb9350-caca-4b6c-bf50-d5f6419495f7} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D2E702B-7BBC-42F2-8FD7-4F42E6EB2C39} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D4046E9-4748-46CA-A33D-1BD8E14B709F} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3E514DE0-9D06-4688-BCE4-11DCA19319A} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3E5DF8A3-A7E5-4363-8F34-6F64ECAD3830} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3E86397-51C-4E6E-A418-4E45BD59366} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3F3EB233-AC5D-42E2-A53C-718D12E64A66} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{40F459D2-B1B1-4EBC-9ADC-F6E6B1ABD8FC} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4248F662-7C80-4B45-9DDA-1D755ED6421C} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{429BB164-AE8E-40AF-8B2F-34FF1E363159} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{42DD333E-798E-4835-875D-53DD0FA1BE0} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{435C21AA-AE39-4D1D-8A5C-92D2FF38552} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{43A1DBCE-FE80-4085-83FA-326CCE3FF57E} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{44CDBD87-4305-46BD-8F20-463D10AA7CFF} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{45FBC8DB-6372-41A8-A136-F3E715EB5DD2} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{460572FE-27E5-45D4-87F0-42FF1B5CFABD} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4605DA62-56B5-48D0-BB30-F4A84D7F62} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{47D45919-366-430F-B464-FFD65820CB1A} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{48AE7D3C-DFE3-4DC6-9160-5C9C4C98D9B6} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{48C411ED-ED05-4B94-BFBC-B712BED63CB} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4970A9C-F90F-4BF1-AE75-2D1A14946B45} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4A4C19C-889D-47CE-B0FF-53CBC65086FF} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4AC12BB1-1C88-491E-99A6-AF84E22E45C} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4AE2ED9C-D374-42C5-AB19-428D3C64272F} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4B277BA0-AE3D-4707-B1E6-F9A2166E7765} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4B358A60-E521-4CBC-B9E4-FBBADC55E7D0} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4BB6D1FE-4BBD-4DB3-B7E5-65EB81CDBCF} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4D710A17-DC46-49CD-8F9E-BB52B464E73} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4E32C3DF-1147-4A22-B65B-D9FF8A287241} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4EFFBADF-B06B-414E-8E63-B286346B4DB} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4F60C883-E9A0-419B-8CBB-94E016FB716} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4F6CF28C-5604-487C-9F35-2B8E6D345648} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4F93F5E2-6CA2-457C-96BB-1BD417CC664} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5147B4EE-7EBC-4781-A35-86DC8F8E83CA} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{515E9F03-EEB2-444F-ACC6-A8FEB2537B4} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5417F773-D5B6-4D56-B98F-D216E8D2462} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{546CC162-B51E-4E32-A4AB-5B2A6674E3FF} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{57DE1EF8-660C-4082-B8FD-5A25562EE845} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{598E556E-4D20-4F3D-AC8E-98E03E57A1F} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5992963D-5F60-49CB-8F3E-C92C84DA564B} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59FF9E90-6F25-4C93-8B70-2A45BFC57E75} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5A090F38-5CF2-4762-9B26-9884B3D5D7FB} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5B8AC41F-5CC3-4831-A9F0-226F6F84DFD} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5BCBFB51-CD6D-4393-8674-A123897B8036} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5BCF6BA4-F113-4276-8BD5-1854C367DD2} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5D030B77-BED8-47EB-BF6B-AF1E739D8338} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E1CCAE1-6590-446B-826-EFB9AB68CEB5} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5FF8F176-8748-4994-B2BE-9F381C572A95} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{60B7704A-F873-4F1C-9FFC-42C9C9F443C5} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{60F06EF2-8953-40E4-A43C-70ECAE341F5D} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{626E8224-E09C-49B3-8FC6-4F85D05980EC} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62821487-90DD-43B0-9539-32C0E9CF1CF4} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62E47EB2-40B5-4A8C-BF3E-5A35A9ED549} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{645A23B0-B523-42CE-9C52-1C34AB40EFED} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6521E755-6D49-4CB8-AC35-D4723D8A6AC} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{665949D8-C1E-47C8-9AD5-85E92C9D98D6} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{66B09AD6-899B-47EB-BC2E-FA03E7055B0} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{672D47CD-8F1D-4991-88F0-EAF33AF0E26A} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{687A69EE-262F-4721-A29D-CB68A0AE7C31} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68918fb0-7d5e-415a-924d-3a83eddb35ba} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68FBF9B2-5370-4226-9E69-2224AF505631} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{69260F94-50E3-4C76-B5DD-E2D3DD8F87E} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{69698855-8147-47B0-B54D-7081668684A9} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{69EBA606-AEAD-4CFA-BB73-1CBA78F2D4} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6A26C9A9-2439-4DD9-98A6-9A67ACD58776} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6AF9E113-707C-4B85-A298-11E1D69ECF70} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6CB230C4-338C-477B-B361-211B2FEFCACE} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6CB2ECED-5F7C-48B6-BE95-2E3DEAE2F775} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6E2E7A0B-3207-4B64-BFA2-A830D1A2AD5C} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6F39F82-187C-4E71-A04C-7E39793EB13} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{70194EA5-F0EC-4BAC-A812-17DA6055E0F6} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{70C24DF2-244D-4249-AD2E-7A86999B886} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{71450467-7A90-4FA8-B177-D35BF194BA75} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{71556E2C-B949-4617-A861-F4653F1B6ED} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{72F47F13-BF64-465F-B5B-5869506E9EA7} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{73D44D05-D84D-4C28-B289-1038097AF53} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{74CE3045-2519-4824-B9E4-BCFF9E4F9647} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{762D1AC7-2807-4E59-9D8B-A22EEA9B7} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7648ABE1-61B0-4C34-A224-44FBA5F23725} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{76B6E44A-A970-4CE9-B8CB-FF861DB447C4} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{77035519-45D2-4101-98C0-6AB295E5011} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{77298EC9-1F67-4A65-8AD3-E3FFB2DD2A4} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{78D65784-F6C7-4589-9182-88DEB81697D3} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7963CE00-754B-4D9D-9CFB-80474FC752CD} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A825B97-6645-457D-AC4E-F173354E9EA7} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7C4710CA-783A-4DBC-A7B6-68B13914C5EE} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7CF45096-9482-46FB-A8B4-FFCB73F1BE6} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7D40CDC6-1D0-4EAB-8C1-332415DB5F88} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7ECCCE56-FA80-4C16-9822-D964AB89D69} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F865F85-C60B-46C8-8553-6389C51B6421} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8167D9B4-C634-4F7E-859E-4E45B2D037D6} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{81C00156-7C03-47CF-A955-6BDB71F36CC} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8313F0BD-9E06-4637-905B-BD2CC63E18} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{834C5119-B758-4C0E-83DF-855558CEA50} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8391CF02-F9A9-422F-90C6-A058A9C7A55D} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83AFE762-E61F-4315-9CA3-6C919B6171F5} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83E70DE8-5D43-480C-925A-D6274A40BF72} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{84BEB46C-F4FF-4527-838F-F6CC273DDE19} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{869F8A0B-306E-444D-9543-C32863EE784} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{87AF8368-56F5-4916-9B1A-3BA83B13811} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{88E82D57-4F82-4953-86E3-9DED167C8121} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{88F17515-160A-47B4-8DA2-41ADEDC12384} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{890E2CEF-B566-411F-93F-66B2338949B2} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{891B13D1-7386-4D01-8B68-99D12C6172A} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{89971BDB-374A-40B3-A154-29C99B31A7F7} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{89F9069B-C06C-477F-A50-9ED315B9469F} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8A0E6ECF-6755-40DB-A1D0-4453562314C} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8B823609-CDCB-47EF-AE36-F9F5CBC08F40} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8BA2C75E-DDE7-470E-98DC-22CDB7EFBF41} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8EE88AF4-EE27-434A-B0FF-85FCBFB2E9E} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F20C0BC-C319-421D-869E-C126EA487DAA} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F66B1DD-6CC9-43CA-935A-6F119EC8A27} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{905F5E16-2E46-4E88-988E-FEA02DC0D931} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{92076348-6E1F-4DD7-A010-F6B27A352C5C} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{92930155-11AC-47ED-B189-6CE473A8E11} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{931F49B-2C22-48FF-A37B-7C8D77355712} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{93537782-59B6-41E9-BD30-5D587E7F4A} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9435744B-564E-40E1-A95F-FBCE55308CD7} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9633D7B7-F748-4B03-AF26-C97A8A1CC8DC} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{96F793B5-420D-4673-B3C-FE9A5787EC5F} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{978D0104-316E-487D-99D4-5536FEC5EF} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{97AFE7E3-D34E-4A89-8692-68B8321EC4A} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{97C5DE6D-CE8D-4B18-B14C-1DAA407246B9} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{98136215-31CB-4CDB-833D-C58EAFBEEC3B} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9896332-E04A-4D09-B9D2-E33EA39C3AD2} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{98a7323c-c593-41cd-ab41-084e98ecfeed} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{991707FC-F73-4163-A549-F18EE657890} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{996F6D8C-B801-4D59-87FD-55C19FEC84E3} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9ABEE497-3C07-4649-8EFE-25A1D16FE9E0} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9AC7E768-2027-4FDD-ADA1-346462D9E93} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9B85B238-6482-4FEF-91CA-4840B97F771} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9CDB12FD-31FE-4D9D-8A7E-4A5FBBDF193} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9D64A32-3FD0-4316-BE47-E368FEC2A12B} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9F730EE7-DB68-4CA5-BFBA-B6F6592982F} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9F7D394-1141-4936-91B1-776E759D648B} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A133846A-8223-46FF-B353-DE6710FBF0F8} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A1874EB5-8A4-485B-8A79-C29FE134417} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A1E4A9F-B4CB-4535-86D-CFCAF154BA8C} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A3E57D9-91A2-405B-A7B8-72B5E5C3B89} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A470E821-694E-4578-90E2-93A5AE8D85E} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A4C84A-250-4E62-AF7C-3FB04D2C2922} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A503554B-B059-446F-92C1-3D62DC468D20} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A66A62B-CC5D-40EA-8F24-45BF8A0107E} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A67EF034-F8B9-4927-8D92-259355E2FED4} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A6DEF854-FCD4-43E3-B18A-6A7F7E7D8AB6} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A776F560-49F9-4DAE-AEB8-C4A3E2AB3917} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A8A4578E-9F09-4719-BB21-653EA163CFD6} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AA13E598-C556-4108-BC5B-DAE4AC1F68E} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AAAD8798-99DE-4848-B53A-CF9620B0EA26} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ABED4201-B8CE-4B20-8FA3-9757F328A5D} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC0F3617-1E7-4703-802F-8640FC892B4F} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC514821-4938-4A95-8948-1B3125D67C0} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AD02E12A-D94-4969-BB8A-9C1C733DE33} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AD03B4A5-615C-4A42-B84F-3CA229CE45F5} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ADC72432-B636-406A-A19E-1A52D325CDCF} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AE18AD52-58AE-460C-B827-C257F78E8B9} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AECFAE3E-5B09-49C3-A2C4-5C2A7855ACE} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B00FF835-B738-46CB-B1A5-867C273C964D} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B0344631-C79B-4F7A-8D32-2B9D3C80BCC7} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B171DA88-A70E-4EDD-8757-9C2139B7BE2A} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B1B9FCBF-430E-4FDC-A0A8-79349ABB56} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2AE4DC3-FA3C-41A2-B7FC-C3FFE44F6BEB} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B4280C0D-420C-46A6-8BED-A8D39DABB270} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B4461448-86F2-49F7-B1C9-79519B136E5} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B4AA50EC-993A-4964-96BE-B3E9B8C083A} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B53D4EFC-8503-40AE-9FE2-D2EAB0B0E849} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B609C7F5-98BE-4D69-87F0-7D340A0AB16} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B66CF87E-561D-4AB6-BEA5-CCD0C712CCBC} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B6CFAA33-5EC9-45B5-8A2D-EB3CCFE8375} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B714C240-CDB9-418E-987A-C50FAA9215} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B81E5A0E-F6D9-4066-AF64-1C1A3A3C3F3} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B8A354A8-FF1B-49A1-97C2-F35AD1CBDE44} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B934B6C2-668B-4CA5-94BD-7BE1EB569C1F} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BA5BDB25-35CE-4DD7-9E66-132E4DA58A82} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BBC983FC-1B0C-4C80-8285-E8C1518C7CA2} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BC4B9441-3D39-41EA-9883-302AB45CBE11} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEBB136B-32C1-4032-AA7F-3D8D6AB2915E} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEEA2390-52AD-4149-81F1-352AAF31955A} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEF0E6A-7B5A-4868-81DC-81D8899F1EE} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BFF766E3-E1F-48F0-BF2-2D75AB81706A} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C1085449-510E-45F7-88CA-BCDECCD21AE} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C51C6B42-BD77-4B4C-A69B-1B29803CBD} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C604CA8D-3B80-46F8-8058-9543447ADBE0} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C678ED49-49EF-4DFD-858E-7AB14B581570} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C6F21BCB-34F3-4266-BA60-5334E93EFB3} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7D6156C-2CB-4998-B2AC-46EC918618A} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C847B7C-76F3-4730-A92-5314D1DCDE66} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8F2AEBB-51EB-4D8F-B72F-6B1683ECCF7A} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CAA3EB0D-594A-4908-8FD8-22509BFD6988} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC0654C6-49EC-4F1A-8C2D-11527CDD34} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CE0946EC-1A1B-466D-8CCC-53D3A377218} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D0671D1B-F736-49BC-9DA6-57EE5A73EFC} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D235F0AD-A571-43C7-851-51BC539C45} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D305F5C3-6160-4E1C-87C0-A8C11B16F5} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D31C77BE-69BE-4F9F-8869-4889FF6039C} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D52B17C2-357B-420B-827-9CD33382C50} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D5B1B13F-FFB1-4D93-9E95-B37F294FFFB3} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D5B68054-ED69-481E-BEF8-69D2E1D634FD} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d6b4121a-af2d-4d84-a553-4d7c286c9060} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D6BB758B-CAAB-4B68-8CA7-ABABD541A4A} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D6E8B879-3F2F-40E4-96A8-DFF9E3669179} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D95817F8-B942-4C91-8B68-91183B61EAF} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DB3539E4-1A39-442A-A1DD-4D45FAC3726} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DBDF87DD-9C09-45C7-9823-A72A9D9B2C} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DC71A511-AAA2-4086-90E1-C18045A2A522} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DD592A8-BA91-4849-8AFF-5AF9FE8031E} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E083AC32-F280-4968-A977-F7344A46D6AE} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0E317B7-B2DB-4B75-A651-9E620E05BA} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E31AE614-B29E-4DD2-9C4B-93AC3AA23E77} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3FEF4E4-F2C2-46F6-8124-7F2B1D9D8F4A} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4461188-A53E-4D71-AFEE-B91BE4E1A2DA} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E49F6A5F-BF0E-468E-91BE-BBA1C6FA6FC6} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E574D6DC-84F3-4874-9722-D7BC50468E75} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E67CAF69-A2D2-4F89-BE18-748E5613256C} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7150D8B-834B-4F4B-968B-BF45EA83D} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E8E9218C-1E4C-4E89-8FDC-1856E114BF6F} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E9141053-D587-45F2-AC58-2DADFF67E46} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E98D3444-68D5-44C7-A6B1-277A2415E954} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA1E2FE1-9BE8-4914-958-D17B4E9E6950} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBAD0188-4749-4085-82F8-CA1D69772882} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC513FE-2CF8-42ED-9268-4D52E1D39AE4} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EDF84CC9-1A69-4117-B3A3-7141FD162C4} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF818836-567A-4600-B582-A8A35482887D} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF99DD-9088-42CD-A429-7E152E956AE0} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F06EBA94-F24B-44E5-A80-4D131E5D6765} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F115DB92-DA03-473B-998D-A98A7E8E699} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F14D35E2-5539-4716-AF98-B6CD17719E53} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F1C8F89B-F316-4FB9-BBAB-A663C836A3B7} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2972FED-A3E-4671-9A29-B169F9601A4D} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2E54A72-8E8D-42AE-9DB8-6B5FB9EB2C2} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3C915D5-6BD7-413A-AAA2-745385D1BD23} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F445C2F4-6597-447C-A4FF-EE723624C4E} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5512C69-E61E-46F9-B0A1-E67B4B5A34C8} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5D7892A-2E6F-42A9-8EE2-2FA01C21A3C6} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F63236D9-78F7-4290-915C-2B9DA4BA7B0} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F65992C8-6405-471D-83BC-2D889161C63E} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F855318C-B340-4811-A839-953D756FA02B} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8DDF9F0-6933-4FDF-9FCF-316662D25A40} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA7EB39B-C1DE-432A-A19E-E7FD1791697} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{faae2507-d4ec-4ddb-b646-e5bd1e945059} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB0344E1-8B32-46C5-8C28-867E1324B072} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB2804D5-6BDB-414C-92FD-F2A13F188CCC} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FBFF9702-FAA6-4B12-94BE-2ACDC0FFD95E} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD1B80BA-D4AE-48FB-BE87-B9824C961045} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDE4EC54-1917-46C6-B218-E1E8B07D7E9C} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDE85643-6DF9-4674-AFC4-66B6D0D7DF41} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE71808A-D8CC-4319-8267-60FBB03413BD} deleted successfully HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF9B362F-D4B2-4F9A-8445-1E8E8B65B1C4} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611331111} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611331111} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611331113} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611331113} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{17FDB9F8-DCC4-4F6A-AE07-B16018A48469} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{17FDB9F8-DCC4-4F6A-AE07-B16018A48469} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D3C24E2B-C820-4492-9B69-11BF7163F998} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E87806B5-E908-45FD-AF5E-957D83E58E68} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0d6c2906-f29d-4b1c-9113-54bd93fb663d} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11bdc906-b2dc-4793-bd0c-c2a5c0052f2a} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{28ad316e-45e6-486d-8951-06073e508ced} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3cbb9350-caca-4b6c-bf50-d5f6419495f7} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68918fb0-7d5e-415a-924d-3a83eddb35ba} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{98a7323c-c593-41cd-ab41-084e98ecfeed} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d6b4121a-af2d-4d84-a553-4d7c286c9060} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{faae2507-d4ec-4ddb-b646-e5bd1e945059} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{5018CFD2-804D-4C99-9F81-25EAEA2769DE} deleted successfully ==== Running Processes ====================== C:\Program Files\AVAST Software\Avast\AvastSvc.exe C:\ProgramData\IePluginServices\PluginService.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe c:\Program Files (x86)\Nero\Update\NASvc.exe C:\Program Files (x86)\Jelbrus Secure Web\privoxy.exe C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.9\ToolbarUpdater.exe C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.9\loggingserver.exe C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler.exe C:\Program Files (x86)\Google\Drive\googledrivesync.exe C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe C:\Program Files (x86)\PowerISO\PWRISOVM.EXE C:\Program Files\AVAST Software\Avast\avastui.exe C:\Program Files (x86)\iTunes\iTunesHelper.exe C:\Program Files (x86)\Google\Drive\googledrivesync.exe C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe C:\Users\Leon.LEONAALBURG1\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe C:\Users\Leon.LEONAALBURG1\Desktop\zoek.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe C:\Program Files (x86)\Windows Media Player\wmplayer.exe ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\McAfee SiteAdvisor Service deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\McAfee SiteAdvisor Service deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginServices deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\IePluginServices deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\IePluginServices deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\IePluginServices deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vToolbarUpdater18.1.9 deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\vToolbarUpdater18.1.9 deleted successfully ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command] @="C:\\Program Files\\Internet Explorer\\iexplore.exe" ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611331111}] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611331113}] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27B4851A-3207-45A2-B947-BE8AFE6163AB}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611331111}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611331113}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{17FDB9F8-DCC4-4F6A-AE07-B16018A48469}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27B4851A-3207-45A2-B947-BE8AFE6163AB}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D3C24E2B-C820-4492-9B69-11BF7163F998}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E87806B5-E908-45FD-AF5E-957D83E58E68}] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=- ==== Deleting Files \ Folders ====================== C:\PROGRA~2\Origin Games not found C:\Users\Leon.LEONAALBURG1\AppData\Roaming\TornTV.com not found C:\Program Files (x86)\TheTorntv V10 not found C:\Program Files (x86)\TheGoPhoto.it V10 not found C:\Program Files (x86)\TheGoPhoto.it V10 not found C:\ProgramData\IePluginServices deleted C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater deleted C:\zoek_backup deleted C:\PROGRA~3\Premium deleted C:\PROGRA~2\TornTV.com deleted C:\Users\Leon.LEONAALBURG1\.android deleted C:\PROGRA~2\Mozilla Firefox\user.js deleted C:\PROGRA~2\Softonic deleted C:\PROGRA~2\Photo-Service deleted C:\PROGRA~2\AVG Security Toolbar deleted C:\PROGRA~2\GetPrivate deleted C:\PROGRA~2\SearchProtect deleted C:\PROGRA~2\1ClickDownload deleted C:\PROGRA~2\COMMON~1\AVG Secure Search deleted C:\user.js deleted C:\Users\Leon\AppData\Roaming\eIntaller deleted C:\Users\Leon\AppData\Roaming\GetRightToGo deleted C:\Users\Leon\AppData\Roaming\Optimizer Pro deleted C:\Users\Leon\AppData\Roaming\OpenCandy deleted C:\Users\Leon.LEONAALBURG1\AppData\Roaming\GetPrivate deleted C:\PROGRA~3\Avg_Update_0814tb deleted C:\PROGRA~3\Codecv deleted C:\PROGRA~3\AVG Secure Search deleted C:\PROGRA~3\InstallMate deleted C:\PROGRA~3\Package Cache deleted C:\Users\Leon\AppData\Local\AVG Secure Search deleted C:\Users\Leon\AppData\Local\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847} deleted C:\Users\Leon.LEONAALBURG1\AppData\Local\SearchProtect deleted C:\Users\Leon.LEONAALBURG1\AppData\Local\globalUpdate deleted C:\Users\Leon.LEONAALBURG1\AppData\Local\AVG Secure Search deleted C:\Users\Leon.LEONAALBURG1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TornTvDownloader.lnk deleted C:\Windows\Tasks\2b9bfdf6-6ac6-4766-ac0f-1937f96357cd-1.job deleted C:\Windows\Tasks\2b9bfdf6-6ac6-4766-ac0f-1937f96357cd-11.job deleted C:\Windows\Tasks\2b9bfdf6-6ac6-4766-ac0f-1937f96357cd-3.job deleted C:\Windows\Tasks\2b9bfdf6-6ac6-4766-ac0f-1937f96357cd-4.job deleted C:\Windows\Tasks\2b9bfdf6-6ac6-4766-ac0f-1937f96357cd-5.job deleted C:\Windows\Tasks\2b9bfdf6-6ac6-4766-ac0f-1937f96357cd-5_user.job deleted C:\Windows\Tasks\2b9bfdf6-6ac6-4766-ac0f-1937f96357cd-6.job deleted C:\Windows\Tasks\2b9bfdf6-6ac6-4766-ac0f-1937f96357cd-7.job deleted C:\Windows\Tasks\78a39bdf-2473-42a1-bac8-ac38b65ebc7a-1.job deleted C:\Windows\Tasks\78a39bdf-2473-42a1-bac8-ac38b65ebc7a-11.job deleted C:\Windows\Tasks\78a39bdf-2473-42a1-bac8-ac38b65ebc7a-3.job deleted C:\Windows\Tasks\78a39bdf-2473-42a1-bac8-ac38b65ebc7a-4.job deleted C:\Windows\Tasks\78a39bdf-2473-42a1-bac8-ac38b65ebc7a-5.job deleted C:\Windows\Tasks\78a39bdf-2473-42a1-bac8-ac38b65ebc7a-5_user.job deleted C:\Windows\Tasks\78a39bdf-2473-42a1-bac8-ac38b65ebc7a-6.job deleted C:\Windows\Tasks\78a39bdf-2473-42a1-bac8-ac38b65ebc7a-7.job deleted C:\windows\SysNative\Tasks\2b9bfdf6-6ac6-4766-ac0f-1937f96357cd-1 deleted C:\windows\SysNative\Tasks\2b9bfdf6-6ac6-4766-ac0f-1937f96357cd-11 deleted C:\windows\SysNative\Tasks\2b9bfdf6-6ac6-4766-ac0f-1937f96357cd-3 deleted C:\windows\SysNative\Tasks\2b9bfdf6-6ac6-4766-ac0f-1937f96357cd-4 deleted C:\windows\SysNative\Tasks\2b9bfdf6-6ac6-4766-ac0f-1937f96357cd-5 deleted C:\windows\SysNative\Tasks\2b9bfdf6-6ac6-4766-ac0f-1937f96357cd-5_user deleted C:\windows\SysNative\Tasks\2b9bfdf6-6ac6-4766-ac0f-1937f96357cd-6 deleted C:\windows\SysNative\Tasks\2b9bfdf6-6ac6-4766-ac0f-1937f96357cd-7 deleted C:\windows\SysNative\Tasks\78a39bdf-2473-42a1-bac8-ac38b65ebc7a-1 deleted C:\windows\SysNative\Tasks\78a39bdf-2473-42a1-bac8-ac38b65ebc7a-11 deleted C:\windows\SysNative\Tasks\78a39bdf-2473-42a1-bac8-ac38b65ebc7a-3 deleted C:\windows\SysNative\Tasks\78a39bdf-2473-42a1-bac8-ac38b65ebc7a-4 deleted C:\windows\SysNative\Tasks\78a39bdf-2473-42a1-bac8-ac38b65ebc7a-5 deleted C:\windows\SysNative\Tasks\78a39bdf-2473-42a1-bac8-ac38b65ebc7a-5_user deleted C:\windows\SysNative\Tasks\78a39bdf-2473-42a1-bac8-ac38b65ebc7a-6 deleted C:\windows\SysNative\Tasks\78a39bdf-2473-42a1-bac8-ac38b65ebc7a-7 deleted C:\windows\SysNative\dmwu.exe deleted C:\Users\Leon\AppData\LocalLow\SkwConfig.bin deleted C:\Users\Leon\AppData\LocalLow\AVG Secure Search deleted C:\Users\Leon.LEONAALBURG1\AppData\LocalLow\AVG Secure Search deleted C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\AVG Secure Search deleted C:\Windows\AppPatch\AppPatch64\SPVCLdr64.dll deleted C:\Windows\AppPatch\Custom\Custom64\{cf2797aa-b7ec-e311-8ed9-005056c00008}.sdb deleted C:\windows\SysNative\tasks\Jelbrus Secure Web Task deleted C:\Windows\tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job deleted C:\windows\SysNative\tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv deleted C:\windows\SysNative\tasks\Desk 365 RunAsStdUser deleted C:\Windows\tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job deleted C:\windows\SysNative\tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv deleted C:\windows\SysNative\tasks\GPUP deleted C:\end deleted C:\Windows\AppPatch\Custom\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb deleted C:\Windows\SysNative\config\systemprofile\Searches deleted C:\Windows\Syswow64\jmdp deleted C:\Windows\Syswow64\ARFC deleted C:\Windows\Syswow64\WNLT deleted C:\windows\SysNative\GroupPolicy\Machine deleted C:\windows\SysNative\GroupPolicy\User deleted C:\windows\SysNative\GroupPolicy\GPT.INI deleted C:\Windows\Syswow64\GroupPolicy\gpt.ini deleted "C:\ProgramData\3bdd4a69-24eb-40d3-8b7e-113db840f8fc" deleted "C:\PROGRA~3\f52489b7-4a9e-4bea-9d00-618e65d1cb7f\a2eab630-9df5-477e-a950-582f518bd7be" deleted "C:\PROGRA~3\f52489b7-4a9e-4bea-9d00-618e65d1cb7f\c02625bc-5b8f-4670-8d6c-be7a70a77b47" deleted "C:\Programdata\Windows\sysprep.exe" deleted "C:\Program Files (x86)\Jelbrus Secure Web\mgwz.dll" deleted "C:\Program Files (x86)\Jelbrus Secure Web\privoxy.exe" deleted "C:\Program Files (x86)\Jelbrus Secure Web\privoxy.log" not deleted "C:\PROGRA~2\Jelbrus Secure Web\mgwz.dll" deleted "C:\PROGRA~2\Jelbrus Secure Web\privoxy.exe" deleted "C:\PROGRA~2\Jelbrus Secure Web\privoxy.log" not deleted "C:\PROGRA~3\f52489b7-4a9e-4bea-9d00-618e65d1cb7f" deleted "C:\Programdata\Windows" deleted "C:\Program Files (x86)\Jelbrus Secure Web" not deleted "C:\PROGRA~2\Jelbrus Secure Web" not deleted ==== System Specs ====================== Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601) Memory (RAM): 8100 MB CPU Info: Intel(R) Core(TM) i5-2410M CPU @ 2.30GHz CPU Speed: 2255.0 MHz Sound Card: Luidsprekers (Realtek High Defi | Display Adapters: Intel(R) HD Graphics Family | Intel(R) HD Graphics Family | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver Monitors: 1x; Algemeen PnP-beeldscherm | Screen Resolution: 1366 X 768 - 32 bit Network: Network Present Network Adapters: Microsoft Virtual WiFi Miniport Adapter | Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC | Realtek PCIe FE Family Controller CD / DVD Drives: 4x (E: | F: | G: | H: | ) E: HL-DT-STDVDRAM GT30N | F: | G: DTSOFT BDROM | H: DTSOFT BDROM Ports: COM Ports NOT Present. LPT Port NOT Present. Mouse: 5 Button Wheel Mouse Present Hard Disks: C: 349.3GB | D: 348.9GB Hard Disks - Free: C: 17.8GB | D: 337.3GB Manufacturer *: TOSHIBA BIOS Info: AT/AT COMPATIBLE | 10/04/11 | TOSCPL - 1072009 Time Zone: West-Europa (standaardtijd) Motherboard *: TOSHIBA PWWHA Country: Nederland Language: NLD ==== System Specs (Software) ====================== Anti-Virus: Microsoft Security Essentials On-access scanning disabled (Outdated) Anti-Virus: avast! Antivirus On-access scanning disabled (Outdated) Anti-Spyware: Microsoft Security Essentials disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Anti-Spyware: avast! Antivirus disabled (Outdated) Internet Explorer Version: 11.0.9600.17691 Adobe Reader version: 10.1.13.16 Sun Java version: 1.8.0_40 (32-bit) Sun Java version: 1.8.0_40 (64-bit) ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\LEON~1.LEO\AppData\Local\Temp ==== 2015-03-25 17:57:28 12C0789B30AD2425D9F5B63FFFAAEEA6 43008 ----a-w- C:\Users\Leon.LEONAALBURG1\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpwn76tu.dll 2015-03-18 20:49:55 08AF557C8E6E74D7D92314F6B2C86273 4608 ----a-w- C:\Users\Leon.LEONAALBURG1\AppData\Local\Temp\i4jdel0.exe ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2015-03-11 21:21:13 965D6A2B30A95A9F7EF13653988D3D9F 299008 ----a-w- C:\Windows\SysWOW64\atmfd.dll 2015-03-11 21:21:13 55273844B66D77A2F1A2213C17A9EA4A 34304 ----a-w- C:\Windows\SysWOW64\atmlib.dll 2015-03-11 21:21:13 274F0540FD4C88FC845C94CA1569688A 10240 ----a-w- C:\Windows\SysWOW64\dciman32.dll 2015-03-11 21:21:12 ABB358777FDF4AF51B2FE26137D2B8D4 70656 ----a-w- C:\Windows\SysWOW64\fontsub.dll 2015-03-11 21:21:12 01D9C9A70323BC7E5835B92442DD7EC2 25600 ----a-w- C:\Windows\SysWOW64\lpk.dll 2015-03-11 21:20:57 003C51B9FE38287BA4E0E58D3AE080BD 744960 ----a-w- C:\Windows\SysWOW64\blackbox.dll 2015-03-11 21:20:53 DCC148408770F2D55B201F8FC26438A1 988160 ----a-w- C:\Windows\SysWOW64\drmv2clt.dll 2015-03-11 21:20:44 B378B6A865C28CE5C1E23C35760A1199 11411968 ----a-w- C:\Windows\SysWOW64\wmp.dll 2015-03-11 21:20:44 833FCABCB5D95B1911BA6E62FC82AC04 617984 ----a-w- C:\Windows\SysWOW64\wmdrmsdk.dll 2015-03-11 21:20:44 5B0C6247027FCF5A2E2F150E298D2FFA 3209728 ----a-w- C:\Windows\SysWOW64\mf.dll 2015-03-11 21:20:43 BB73C907D1BD437B6C30F2C23BB089FC 406016 ----a-w- C:\Windows\SysWOW64\drmmgrtn.dll 2015-03-11 21:20:43 6C2D4DC5D2E271F4AE4016FD4587B0B2 3973048 ----a-w- C:\Windows\SysWOW64\ntkrnlpa.exe 2015-03-11 21:20:42 74264B7F57A16D25CB581C07964D324A 1174528 ----a-w- C:\Windows\SysWOW64\crypt32.dll 2015-03-11 21:20:42 2CFE69A0A8AFDA8DB9A773D728000BB7 3917760 ----a-w- C:\Windows\SysWOW64\ntoskrnl.exe 2015-03-11 21:20:41 2D4814D567E5A85C473228BA772A7AFB 489984 ----a-w- C:\Windows\SysWOW64\evr.dll 2015-03-11 21:20:40 B7D2BB84C590F0AE9DA51DBB065A780E 1005056 ----a-w- C:\Windows\SysWOW64\cryptui.dll 2015-03-11 21:20:40 96DB6A923DEDB58FC7CBBF5CFF73314D 1329664 ----a-w- C:\Windows\SysWOW64\quartz.dll 2015-03-11 21:20:39 C5667EE72D7364BE81516C0707FEF724 354816 ----a-w- C:\Windows\SysWOW64\mfplat.dll 2015-03-11 21:20:39 B54FD1991E659FD61EF1D34EC27AAECD 81408 ----a-w- C:\Windows\SysWOW64\cryptsp.dll 2015-03-11 21:20:35 D5EC42139D6A6158CF188975C50B6A60 179200 ----a-w- C:\Windows\SysWOW64\wintrust.dll 2015-03-11 21:20:35 98C1191C862B44567FCF3C18BAEE859E 519680 ----a-w- C:\Windows\SysWOW64\qdvd.dll 2015-03-11 21:20:35 320A8699369C43CF53B2DB4538D17C52 504320 ----a-w- C:\Windows\SysWOW64\msscp.dll 2015-03-11 21:20:34 49474B3E37969AF4B5C076F42B623AFF 143872 ----a-w- C:\Windows\SysWOW64\cryptsvc.dll 2015-03-11 21:20:34 3BAA4BAE71460C5CEB40D5E9339A61BC 103936 ----a-w- C:\Windows\SysWOW64\cryptnet.dll 2015-03-11 21:20:32 70E96EBE87A38857619671FCB9C8EC7B 265216 ----a-w- C:\Windows\SysWOW64\msnetobj.dll 2015-03-11 21:20:28 2D21189858856316D55EAD55DF4964C2 374784 ----a-w- C:\Windows\SysWOW64\AudioEng.dll 2015-03-11 21:20:26 08FF727297A97907AADED4BA86CF44E9 50176 ----a-w- C:\Windows\SysWOW64\rrinstaller.exe 2015-03-11 21:20:23 A56F4029FDCF4F817E78953CDA953E28 442880 ----a-w- C:\Windows\SysWOW64\AUDIOKSE.dll 2015-03-11 21:20:22 E0AB9CA912398BE1AAD14FF7AD75C397 50688 ----a-w- C:\Windows\SysWOW64\appidapi.dll 2015-03-11 21:20:22 AF47EAA4ADDA9AA221FB7647EE22BF53 103424 ----a-w- C:\Windows\SysWOW64\mfps.dll 2015-03-11 21:20:21 A4A2EFB40015B76467F09E6DC388BC26 43008 ----a-w- C:\Windows\SysWOW64\srclient.dll 2015-03-11 21:20:21 50B8937A81360D16A5C772302BD32CFE 195584 ----a-w- C:\Windows\SysWOW64\AudioSes.dll 2015-03-11 21:20:21 49F4EE8DF752CFA159B99046CD1FDD2B 23040 ----a-w- C:\Windows\SysWOW64\mfpmp.exe 2015-03-11 21:20:18 FCD5137A10C8943B34C9BE891C50159F 6656 ----a-w- C:\Windows\SysWOW64\apisetschema.dll 2015-03-11 21:20:18 D3916F83AC8F2314262387A2E16C6578 4096 ----a-w- C:\Windows\SysWOW64\msdxm.ocx 2015-03-11 21:20:18 D3916F83AC8F2314262387A2E16C6578 4096 ----a-w- C:\Windows\SysWOW64\dxmasf.dll 2015-03-11 21:20:18 8B07DBA0D77346545C6359AC67DCB980 8192 ----a-w- C:\Windows\SysWOW64\spwmp.dll 2015-03-11 21:20:18 7C1CADCA0E674212412559B0EAD0919A 12625408 ----a-w- C:\Windows\SysWOW64\wmploc.DLL 2015-03-11 21:20:12 2F3CE58D8C276570EEB69C99CFBAFD58 2048 ----a-w- C:\Windows\SysWOW64\mferror.dll 2015-03-11 21:19:07 B804EAA9E037580F96C22537C2ECB62A 171520 ----a-w- C:\Windows\SysWOW64\ubpm.dll 2015-03-11 21:19:00 340EECB781E6C06A6171B3068DA208AD 12875264 ----a-w- C:\Windows\SysWOW64\shell32.dll 2015-03-11 21:18:54 D5063B86DC3F85B93D02AF68099F4C9A 248832 ----a-w- C:\Windows\SysWOW64\schannel.dll 2015-03-11 21:18:54 69925A266D265DAD96C6FCBB861FA5CD 550912 ----a-w- C:\Windows\SysWOW64\kerberos.dll 2015-03-11 21:18:53 C7D334A01C66BF07B92D04CD7A981B7F 259584 ----a-w- C:\Windows\SysWOW64\msv1_0.dll 2015-03-11 21:18:52 B06A4105DD22E91A1D922D7310803140 65536 ----a-w- C:\Windows\SysWOW64\TSpkg.dll 2015-03-11 21:18:52 7A71DA6D6F75AB73475128F787DD8EAD 221184 ----a-w- C:\Windows\SysWOW64\ncrypt.dll 2015-03-11 21:18:52 4E15E2D20AE755FDEACD96F359F732DB 172032 ----a-w- C:\Windows\SysWOW64\wdigest.dll 2015-03-11 21:18:51 5E76C26CAE2810EA71C161ED9A2CF0D1 50176 ----a-w- C:\Windows\SysWOW64\auditpol.exe 2015-03-11 21:18:51 30F5B3E28636009A0B194057AAE4392A 17408 ----a-w- C:\Windows\SysWOW64\credssp.dll 2015-03-11 21:18:50 84974782ED5D108DA2EFAF3C6534A760 22016 ----a-w- C:\Windows\SysWOW64\secur32.dll 2015-03-11 21:18:50 04934912B1317F2F8816208067A32B96 96768 ----a-w- C:\Windows\SysWOW64\sspicli.dll 2015-03-11 21:18:48 ACD0CA819E279E1C17BE5C8A077EF448 146432 ----a-w- C:\Windows\SysWOW64\msaudite.dll 2015-03-11 21:18:48 7407DDA27838C393DE67A0BDCDD044D0 60416 ----a-w- C:\Windows\SysWOW64\msobjs.dll 2015-03-11 21:18:48 0485899A035E02C53014C0545D912405 686080 ----a-w- C:\Windows\SysWOW64\adtschema.dll 2015-03-11 21:18:42 84B460BB65567ED42DD605FA044DB370 828928 ----a-w- C:\Windows\SysWOW64\msctf.dll 2015-03-11 21:18:40 5F3628DCF926C4499BE1DC74431DFBC8 1230848 ----a-w- C:\Windows\SysWOW64\WindowsCodecs.dll 2015-03-11 21:18:36 FDF0B4DC83627A859D18EE439B8E5A26 47616 ----a-w- C:\Windows\SysWOW64\ieetwproxystub.dll 2015-03-11 21:18:35 B8445B89D0EA5C2575C98EA7BD180C5C 30720 ----a-w- C:\Windows\SysWOW64\iernonce.dll 2015-03-11 21:18:34 B35C35C55FED3DD7F995C77F63CBC29B 1311232 ----a-w- C:\Windows\SysWOW64\urlmon.dll 2015-03-11 21:18:34 6108ED659B5962DE73DACB3B04D86ED3 64000 ----a-w- C:\Windows\SysWOW64\MshtmlDac.dll 2015-03-11 21:18:34 29EDBC5C381F1406A5262351E69BC87A 342696 ----a-w- C:\Windows\SysWOW64\iedkcs32.dll 2015-03-11 21:18:34 00F39165D6D14302618C20CDD7BB213A 76288 ----a-w- C:\Windows\SysWOW64\mshtmled.dll 2015-03-11 21:18:33 AD13E719AE506AA0E0BB5D49E0D5B44A 285696 ----a-w- C:\Windows\SysWOW64\dxtrans.dll 2015-03-11 21:18:33 8FDE1162C9DCF7B180AA702DD9EB6071 60416 ----a-w- C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-03-11 21:18:32 AD1BA932AC31D2BC8C9105DA59BEA6BE 689152 ----a-w- C:\Windows\SysWOW64\msfeeds.dll 2015-03-11 21:18:32 95CB6079B3E62D4301958023C2070A48 19720192 ----a-w- C:\Windows\SysWOW64\mshtml.dll 2015-03-11 21:18:32 08B30EB9751858C1C369E8775492D732 2724864 ----a-w- C:\Windows\SysWOW64\mshtml.tlb 2015-03-11 21:18:31 F5F730ED126DCFBEBDB9BB629BD482C4 620032 ----a-w- C:\Windows\SysWOW64\jscript9diag.dll 2015-03-11 21:18:31 BD838E2129623E8311720AA86C5DFBBF 62464 ----a-w- C:\Windows\SysWOW64\iesetup.dll 2015-03-11 21:18:31 A41C85FDB2275FA9AAA821A118807FDB 710144 ----a-w- C:\Windows\SysWOW64\ieapfltr.dll 2015-03-11 21:18:31 A34897A1A39316BDECCA3E61986F98F2 2052608 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl 2015-03-11 21:18:31 988AB676FBF4484508BA134CAAB711EB 115712 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe 2015-03-11 21:18:31 756B4F77945C61ADBE68150D7D2EC7A6 47104 ----a-w- C:\Windows\SysWOW64\jsproxy.dll 2015-03-11 21:18:31 52B4DECDC70B8758380D37EA2CDD4254 2278400 ----a-w- C:\Windows\SysWOW64\iertutil.dll 2015-03-11 21:18:30 BA10D970EB39913357B224F4473D535B 418304 ----a-w- C:\Windows\SysWOW64\dxtmsft.dll 2015-03-11 21:18:30 AC35DA94A14679E8E515A44A8CF90804 478208 ----a-w- C:\Windows\SysWOW64\ieui.dll 2015-03-11 21:18:29 E868396BC5F8957A9E39BD9A28EA814D 12827648 ----a-w- C:\Windows\SysWOW64\ieframe.dll 2015-03-11 21:18:26 FC5FE9F2D140435FC95CB3EF6724EF0A 4300288 ----a-w- C:\Windows\SysWOW64\jscript9.dll 2015-03-11 21:18:26 EA6EA6912F27F05C61D8D747517EB47E 1888256 ----a-w- C:\Windows\SysWOW64\wininet.dll 2015-03-11 21:18:26 BC9CE46C3F05CCC40F8F1EFC7E4B41C7 503296 ----a-w- C:\Windows\SysWOW64\vbscript.dll 2015-03-11 21:18:26 B0B83B31853E15C619FDB91B64F8349A 168960 ----a-w- C:\Windows\SysWOW64\msrating.dll 2015-03-11 21:18:26 02C0770DA3BE9231EFAF7185EE51020C 1155072 ----a-w- C:\Windows\SysWOW64\mshtmlmedia.dll 2015-03-11 21:16:03 9566C8BBD2271A7962D4432A624762AD 417792 ----a-w- C:\Windows\SysWOW64\WMPhoto.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2015-03-11 21:21:13 F351B0E520502552734BE70AA5940784 41984 ----a-w- C:\Windows\Sysnative\lpk.dll 2015-03-11 21:21:13 DB0BD8B8D68D8211CA23FBE52DACE549 14336 ----a-w- C:\Windows\Sysnative\dciman32.dll 2015-03-11 21:21:13 85D3E918658C2766780F7DEE5F8FBE57 46080 ----a-w- C:\Windows\Sysnative\atmlib.dll 2015-03-11 21:21:13 39A108604F51821F6F4E2001E9A1CB60 100864 ----a-w- C:\Windows\Sysnative\fontsub.dll 2015-03-11 21:21:13 1307814243F21EB129852D59B5AB37FB 372224 ----a-w- C:\Windows\Sysnative\atmfd.dll 2015-03-11 21:20:57 A53A63831185FF5339E76221BE45E6B9 842240 ----a-w- C:\Windows\Sysnative\blackbox.dll 2015-03-11 21:20:56 DF6104DCED89E13A78BA5539CEF5100A 1202176 ----a-w- C:\Windows\Sysnative\drmv2clt.dll 2015-03-11 21:20:49 FDA5F186596288F0B9ECE9DC7A5AA868 5554104 ----a-w- C:\Windows\Sysnative\ntoskrnl.exe 2015-03-11 21:20:49 BD311BB00DD0D656C091AC8888C2369D 14632960 ----a-w- C:\Windows\Sysnative\wmp.dll 2015-03-11 21:20:45 7F4D59E70DD6E757E96B40570B498D5C 782848 ----a-w- C:\Windows\Sysnative\wmdrmsdk.dll 2015-03-11 21:20:43 B2F02AB28864B6D5B5B9BEDA565D41BB 497664 ----a-w- C:\Windows\Sysnative\drmmgrtn.dll 2015-03-11 21:20:43 3FECBED0EACABD22E024EF4E50CF987B 1480192 ----a-w- C:\Windows\Sysnative\crypt32.dll 2015-03-11 21:20:42 8DFDB70E3E56C2F1AE09CB3C03E266E5 1574400 ----a-w- C:\Windows\Sysnative\quartz.dll 2015-03-11 21:20:41 6AEEC5677AD522786CED371A7BEE620C 616360 ----a-w- C:\Windows\Sysnative\winresume.efi 2015-03-11 21:20:41 5FFEE6CA63E27CBA1F32002743E58F3C 631808 ----a-w- C:\Windows\Sysnative\evr.dll 2015-03-11 21:20:41 410F6B1BE785F3630B4782F8E3D85A24 1069056 ----a-w- C:\Windows\Sysnative\cryptui.dll 2015-03-11 21:20:40 73D81B5B4B2655CB1B5662E770F755D5 532176 ----a-w- C:\Windows\Sysnative\winresume.exe 2015-03-11 21:20:40 0BC72EA80234382701EAFC1BE0ECD7E4 432128 ----a-w- C:\Windows\Sysnative\mfplat.dll 2015-03-11 21:20:39 DB2D62AA2DF6B1F3D690A9EC9701AA2C 188416 ----a-w- C:\Windows\Sysnative\pcasvc.dll 2015-03-11 21:20:39 94BC902494AFC9F5EBC5FBB61445D73F 82432 ----a-w- C:\Windows\Sysnative\cryptsp.dll 2015-03-11 21:20:38 F88B4A9EA1A956F09D5001D08B546228 641024 ----a-w- C:\Windows\Sysnative\msscp.dll 2015-03-11 21:20:38 29143C7827F9F2AC543E792A8C63FBB0 4121600 ----a-w- C:\Windows\Sysnative\mf.dll 2015-03-11 21:20:37 483221CC1AAC288368292899E32B6B9B 503808 ----a-w- C:\Windows\Sysnative\srcore.dll 2015-03-11 21:20:36 7A4064169FBA91F39DB1FDC094A18DA8 619056 ----a-w- C:\Windows\Sysnative\winload.exe 2015-03-11 21:20:35 B7E752FFD95DC61FCB7A6E70E37175E5 693176 ----a-w- C:\Windows\Sysnative\winload.efi 2015-03-11 21:20:35 AE66D26930CA536706078537CB5AC840 325632 ----a-w- C:\Windows\Sysnative\msnetobj.dll 2015-03-11 21:20:35 999A7FD4D9F8B1656F1167D94743E50A 457400 ----a-w- C:\Windows\Sysnative\ci.dll 2015-03-11 21:20:35 93C7D1C3941086162B433107D9E8BCE3 296960 ----a-w- C:\Windows\Sysnative\rstrui.exe 2015-03-11 21:20:35 72D4757510FDA69D729169C00AFC211E 32256 ----a-w- C:\Windows\Sysnative\appidsvc.dll 2015-03-11 21:20:35 6968D02DC38757C3FBE7ED7C2F9670AA 680960 ----a-w- C:\Windows\Sysnative\audiosrv.dll 2015-03-11 21:20:35 577D0B947B49DB83E2054FA169B2ECBF 229376 ----a-w- C:\Windows\Sysnative\wintrust.dll 2015-03-11 21:20:35 1BE9877B199184D7657BC4CFCB7B4A99 140288 ----a-w- C:\Windows\Sysnative\cryptnet.dll 2015-03-11 21:20:34 7BC64DEEFD0E6812E21DE89F0CF50A49 500224 ----a-w- C:\Windows\Sysnative\AUDIOKSE.dll 2015-03-11 21:20:34 6E974F1C384615DEB0710E44F4847351 126464 ----a-w- C:\Windows\Sysnative\audiodg.exe 2015-03-11 21:20:33 C0AE7ABD87254B2789C8CB34AF274A65 296448 ----a-w- C:\Windows\Sysnative\AudioSes.dll 2015-03-11 21:20:32 3029D8E78E4BF18A0551E22CD4CB892C 371712 ----a-w- C:\Windows\Sysnative\qdvd.dll 2015-03-11 21:20:31 1CD76A83B9E8E9A5A3519B39E28354D9 187904 ----a-w- C:\Windows\Sysnative\cryptsvc.dll 2015-03-11 21:20:29 27793FE3FF2D0123896D1A01A2D222C7 37376 ----a-w- C:\Windows\Sysnative\pcadm.dll 2015-03-11 21:20:28 CBE684883A45E5B047DA6B4AC46C2112 55808 ----a-w- C:\Windows\Sysnative\rrinstaller.exe 2015-03-11 21:20:28 3A7BC2DC99D3C5B172465E890B3C3B14 440832 ----a-w- C:\Windows\Sysnative\AudioEng.dll 2015-03-11 21:20:25 589852B65C91F574E980ABDB8205080A 146944 ----a-w- C:\Windows\Sysnative\appidpolicyconverter.exe 2015-03-11 21:20:22 947938F265D7CB99653CDFF2B3C0468D 206848 ----a-w- C:\Windows\Sysnative\mfps.dll 2015-03-11 21:20:22 63D3C30B497347495B8EA78A38188969 112640 ----a-w- C:\Windows\Sysnative\smss.exe 2015-03-11 21:20:21 ED6BF1E1C4F40F600DFEC0CB101A1789 9728 ----a-w- C:\Windows\Sysnative\pcalua.exe 2015-03-11 21:20:21 EA285B947EE48103697CDA53D76C9EEC 17920 ----a-w- C:\Windows\Sysnative\appidcertstorecheck.exe 2015-03-11 21:20:21 C4937B9D6EF4D309A60054D4D00EE9DB 63488 ----a-w- C:\Windows\Sysnative\setbcdlocale.dll 2015-03-11 21:20:21 BE7DA70C9F4A97CCA9ED78B70BCFC9AC 43520 ----a-w- C:\Windows\Sysnative\csrsrv.dll 2015-03-11 21:20:21 A84C94CF795E08BBB99E4E145F9E81A3 11264 ----a-w- C:\Windows\Sysnative\pcawrk.exe 2015-03-11 21:20:21 84DB8EB3C184BB549ED90A842020F278 58880 ----a-w- C:\Windows\Sysnative\appidapi.dll 2015-03-11 21:20:21 56FD1BC602EE0E7949F92EE2EE327B72 284672 ----a-w- C:\Windows\Sysnative\EncDump.dll 2015-03-11 21:20:21 29088A5723C81BF75AD909AAB6A91610 50176 ----a-w- C:\Windows\Sysnative\srclient.dll 2015-03-11 21:20:21 0F79883E27BB1AFE2D9BB4656A1CEFCD 11264 ----a-w- C:\Windows\Sysnative\msmmsp.dll 2015-03-11 21:20:21 00EE5D3E16D42F25F7813ACFA10EC803 24576 ----a-w- C:\Windows\Sysnative\mfpmp.exe 2015-03-11 21:20:19 F43B09E257121ADC501ABE9367FAA850 9728 ----a-w- C:\Windows\Sysnative\spwmp.dll 2015-03-11 21:20:18 FE03B35A22C3D2714B494FC2AB32AC5B 8704 ----a-w- C:\Windows\Sysnative\pcaevts.dll 2015-03-11 21:20:18 DBCD54B841F2B216B2F0F86E18205C22 6656 ----a-w- C:\Windows\Sysnative\apisetschema.dll 2015-03-11 21:20:18 D3F1F9C784BCCDF2C880669D69FC1970 5120 ----a-w- C:\Windows\Sysnative\msdxm.ocx 2015-03-11 21:20:18 D3F1F9C784BCCDF2C880669D69FC1970 5120 ----a-w- C:\Windows\Sysnative\dxmasf.dll 2015-03-11 21:20:18 77D49942BD5DC97723ABC8A6D2757B6E 12625920 ----a-w- C:\Windows\Sysnative\wmploc.DLL 2015-03-11 21:20:12 8364A0F7633414DC5C50A37295B1FAFF 2048 ----a-w- C:\Windows\Sysnative\mferror.dll 2015-03-11 21:19:08 1FB81632476857E8451DDA8A456EF3CE 215552 ----a-w- C:\Windows\Sysnative\ubpm.dll 2015-03-11 21:19:02 01F9FEB7F0C84EA1AC6A9B4D7C6B0435 14177280 ----a-w- C:\Windows\Sysnative\shell32.dll 2015-03-11 21:18:55 3807605BDA83C0DA729A5219CEBB9041 341504 ----a-w- C:\Windows\Sysnative\schannel.dll 2015-03-11 21:18:54 DB2904A4CEBC39DF8892A613BEC71512 1461760 ----a-w- C:\Windows\Sysnative\lsasrv.dll 2015-03-11 21:18:53 6536829F6EA1149527728A210F493B79 314880 ----a-w- C:\Windows\Sysnative\msv1_0.dll 2015-03-11 21:18:53 1DB278E5834B08F9A184F953F2D31FF7 728064 ----a-w- C:\Windows\Sysnative\kerberos.dll 2015-03-11 21:18:52 E1404987DCD392AF9D67F6A26CE21175 86528 ----a-w- C:\Windows\Sysnative\TSpkg.dll 2015-03-11 21:18:52 B6C7729936AAF8E0697F0A7DCA82CED8 31232 ----a-w- C:\Windows\Sysnative\lsass.exe 2015-03-11 21:18:52 9B644AC070576AAE701910874C241DBD 210944 ----a-w- C:\Windows\Sysnative\wdigest.dll 2015-03-11 21:18:52 7BC39275661EA7DEE54135AA26DF733E 136192 ----a-w- C:\Windows\Sysnative\sspicli.dll 2015-03-11 21:18:52 28CC69865D5DC458EDDCEA35F01D71DA 309760 ----a-w- C:\Windows\Sysnative\ncrypt.dll 2015-03-11 21:18:51 FB95F6E11AAD62F24C2DB01E6E9D7BE7 64000 ----a-w- C:\Windows\Sysnative\auditpol.exe 2015-03-11 21:18:51 92F920EE9EAF7306B4AB8124D474AB52 22016 ----a-w- C:\Windows\Sysnative\credssp.dll 2015-03-11 21:18:51 54CD467B3A6DA02E9449DB7FB1830612 29184 ----a-w- C:\Windows\Sysnative\sspisrv.dll 2015-03-11 21:18:50 473BCBFFC55C9FE33D502035322E759D 28160 ----a-w- C:\Windows\Sysnative\secur32.dll 2015-03-11 21:18:48 65CF54B1D8CB1B085B6D8BC210E2C45F 686080 ----a-w- C:\Windows\Sysnative\adtschema.dll 2015-03-11 21:18:48 543553AD3E30CB261C8B436DF644F23E 60416 ----a-w- C:\Windows\Sysnative\msobjs.dll 2015-03-11 21:18:48 378B175D0F0A1C38026F280BF6C8D0C6 146432 ----a-w- C:\Windows\Sysnative\msaudite.dll 2015-03-11 21:18:42 E88A78273D429554B6B2D2BDA945ED9B 1067520 ----a-w- C:\Windows\Sysnative\msctf.dll 2015-03-11 21:18:41 0A4D03A4C0F908B15B8A4C48FB18F197 1424896 ----a-w- C:\Windows\Sysnative\WindowsCodecs.dll 2015-03-11 21:18:38 A0DEE06D68F210CA090FD4D9A33CDC12 3204096 ----a-w- C:\Windows\Sysnative\win32k.sys 2015-03-11 21:18:35 2CA6A98547E799812489E5ADF2774D97 114688 ----a-w- C:\Windows\Sysnative\ieetwcollector.exe 2015-03-11 21:18:35 289581F0FDA6B93A0FAFE979486AD6FA 48640 ----a-w- C:\Windows\Sysnative\ieetwproxystub.dll 2015-03-11 21:18:34 D2BF72C0A9E26BE91C1DEEACF7C430E0 34304 ----a-w- C:\Windows\Sysnative\iernonce.dll 2015-03-11 21:18:34 7FA2B43D940DF41E46B8049B59AB6639 718848 ----a-w- C:\Windows\Sysnative\ie4uinit.exe 2015-03-11 21:18:34 08892A4ED848386E6B901723C1EF611B 2724864 ----a-w- C:\Windows\Sysnative\mshtml.tlb 2015-03-11 21:18:33 D3EA5B5E606EF17804B5BF565BEAD937 77824 ----a-w- C:\Windows\Sysnative\JavaScriptCollectionAgent.dll 2015-03-11 21:18:31 F5E5E96E188934BAB22C0916C91F46B3 4096 ----a-w- C:\Windows\Sysnative\ieetwcollectorres.dll 2015-03-11 21:18:31 585B29EFB4954902FD53C4F8F9A0D39F 389800 ----a-w- C:\Windows\Sysnative\iedkcs32.dll 2015-03-11 21:18:31 501A38B72FA264605123B4FACF53F057 1548288 ----a-w- C:\Windows\Sysnative\urlmon.dll 2015-03-11 21:18:30 80B3AD73027A2CCD42C47EBF5C89124F 316928 ----a-w- C:\Windows\Sysnative\dxtrans.dll 2015-03-11 21:18:30 132862B0FC4A1B7CB45C274DE169DBB2 968704 ----a-w- C:\Windows\Sysnative\MsSpellCheckingFacility.exe 2015-03-11 21:18:29 5443F21A33DB376734DBE47F7635542C 801280 ----a-w- C:\Windows\Sysnative\msfeeds.dll 2015-03-11 21:18:28 D0767EA3A59FA70C7ACF59EE0C8CD42A 66560 ----a-w- C:\Windows\Sysnative\iesetup.dll 2015-03-11 21:18:28 9E9B757A677927110393A505822D9174 800768 ----a-w- C:\Windows\Sysnative\ieapfltr.dll 2015-03-11 21:18:27 62269DEFF17AB006217330A24EA8577B 2886144 ----a-w- C:\Windows\Sysnative\iertutil.dll 2015-03-11 21:18:27 22C4867C690C38B18B2C1A0B072CD0C4 2125824 ----a-w- C:\Windows\Sysnative\inetcpl.cpl 2015-03-11 21:18:26 A1264D16AF506125C974775C833A063C 54784 ----a-w- C:\Windows\Sysnative\jsproxy.dll 2015-03-11 21:18:26 1EC0BF321D3B14D02B9A8BAC134570F4 144384 ----a-w- C:\Windows\Sysnative\ieUnatt.exe 2015-03-11 21:18:25 FB8C4EE9889790466A0174923410649E 633856 ----a-w- C:\Windows\Sysnative\ieui.dll 2015-03-11 21:18:25 76B53D2150284E138B46410EA54967FA 490496 ----a-w- C:\Windows\Sysnative\dxtmsft.dll 2015-03-11 21:18:25 2335F6BF8A127E31EB0E2D9A82F188A0 14398976 ----a-w- C:\Windows\Sysnative\ieframe.dll 2015-03-11 21:18:24 D373113A84C12BA7F07CE1E9CAF4747F 92160 ----a-w- C:\Windows\Sysnative\mshtmled.dll 2015-03-11 21:18:24 A9190899A35431CF8ABBEF5E1BB0C8F9 814080 ----a-w- C:\Windows\Sysnative\jscript9diag.dll 2015-03-11 21:18:24 687E11F36832BFF65EF0CD2FA3DB1966 584192 ----a-w- C:\Windows\Sysnative\vbscript.dll 2015-03-11 21:18:24 4870B24EA7D4EEF5E1C4675AC47796B8 1359360 ----a-w- C:\Windows\Sysnative\mshtmlmedia.dll 2015-03-11 21:18:24 40DF85D8B2B0171EF5F23AA1B5CD9A62 6035456 ----a-w- C:\Windows\Sysnative\jscript9.dll 2015-03-11 21:18:23 667229C8F194D619D12F05943D7F61F0 199680 ----a-w- C:\Windows\Sysnative\msrating.dll 2015-03-11 21:18:23 36F99BD8A0F09BDBB7850A138845A014 2358784 ----a-w- C:\Windows\Sysnative\wininet.dll 2015-03-11 21:18:23 1C393E42928BF55B3796E732B678CD5B 88064 ----a-w- C:\Windows\Sysnative\MshtmlDac.dll 2015-03-11 21:18:22 1193400D8E29A5A010135FB09A4EB1E8 25021440 ----a-w- C:\Windows\Sysnative\mshtml.dll 2015-03-11 21:16:03 CBA2694BFC61F371181F2BE2BCD66C40 465920 ----a-w- C:\Windows\Sysnative\WMPhoto.dll ====== C:\Windows\Sysnative\drivers ===== 2015-03-11 21:20:42 ED6E75158D28D33A2E2A020AC5B2B59D 663552 ----a-w- C:\Windows\Sysnative\drivers\PEAuth.sys 2015-03-11 21:20:39 87BCD1034CBF33537D4D4C251D39BA26 94656 ----a-w- C:\Windows\Sysnative\drivers\mountmgr.sys 2015-03-11 21:20:34 90C53BD47979FB8814F465A08B885102 61440 ----a-w- C:\Windows\Sysnative\drivers\appid.sys 2015-03-11 21:18:55 8BA90F480705D7153AD0060CCA62222A 155576 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys 2015-03-11 21:18:55 27667A788130A7F7A5858DE27572E6D7 459336 ----a-w- C:\Windows\Sysnative\drivers\cng.sys 2015-03-11 21:18:54 56ED3EE5FED6BF2FC1305CF872042868 95680 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys 2015-02-27 14:53:29 FE571E088C2D83619D2D48D4E961BF41 212480 ----a-w- C:\Windows\Sysnative\drivers\rdpwd.sys 2015-02-27 14:53:28 E232A3B43A894BB327FC161529BD9ED1 39936 ----a-w- C:\Windows\Sysnative\drivers\tssecsrv.sys 2015-02-27 14:51:21 AE3334958D8F631FF14A0AEB3D7EFB3A 141312 ----a-w- C:\Windows\Sysnative\drivers\mrxdav.sys 2015-02-27 14:50:31 70988118145F5F10EF24720B97F35F65 119296 ----a-w- C:\Windows\Sysnative\drivers\tdx.sys ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-03-24 20:22:04 -------- d-----w- C:\Program Files\trend micro ======= C:\PROGRA~2 ===== 2015-03-09 17:11:26 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2015-02-27 13:55:41 -------- d-----w- C:\PROGRA~2\Jelbrus Secure Web ======= C: ===== ====== C:\Users\Leon.LEONAALBURG1\AppData\Roaming ====== 2015-03-25 18:14:12 -------- d-----w- C:\Users\Leon.LEONAALBURG1\AppData\Roaming\DAEMON Tools Pro 2015-03-02 16:49:13 -------- d-sh--w- C:\Users\Leon.LEONAALBURG1\AppData\Local\EmieBrowserModeList 2015-02-27 14:54:45 -------- d-----w- C:\Users\Default\AppData\Local\Google 2015-02-27 14:54:45 -------- d-----w- C:\Users\Default User\AppData\Local\Google ====== C:\Users\Leon.LEONAALBURG1 ====== ====== C: exe-files == 2015-03-24 20:22:08 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Leon.exe 2015-03-18 20:49:55 08AF557C8E6E74D7D92314F6B2C86273 4608 ----a-w- C:\Users\Leon.LEONAALBURG1\AppData\Local\Temp\i4jdel0.exe === C: other files == 2015-03-25 18:07:09 58036550363E53A4A546B6200F2ED443 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3541538408-1459528280-1945361666-1000\$I161BRE.zip 2015-03-25 17:55:46 DE0983FE4B830699312D35A990B3AE1B 1945 ----a-w- C:\Users\Leon.LEONAALBURG1\AppData\Local\Temp\_MEI33282\resources\chrome_ext\nknebiagdodnminbdpflhpkgfpeijdbf_live.crx 2015-03-25 17:55:44 82F5C942549405F61A8808D0EA0FA9E2 25575 ----a-w- C:\Users\Leon.LEONAALBURG1\AppData\Local\Temp\_MEI33282\resources\chrome_ext\apdfllckaahabafndbhieahigkjlhalf_live.crx 2015-03-24 20:37:40 7EF885E83CEB7C1E2AB7AE187339A6F9 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3541538408-1459528280-1945361666-1000\$IIB6ZCZ.bat 2015-03-24 16:49:40 39F726E72C56147607A1A21989A57EC3 12013 ----a-w- C:\Users\Leon.LEONAALBURG1\Documents\Vuze Downloads\the-walking-dead-fifth-season_HI_english-1084708.zip 2015-03-19 16:36:45 819CB0DD3B7783636B4672ED31B8BC2C 57544 ----a-w- C:\Users\Leon.LEONAALBURG1\Documents\Vuze Downloads\Game.of.Thrones.S01.720p.BluRay.x264.ShAaNiG\Game.of.Thones.-.S01E01.-.Winter.Is.Coming._www.ENGSUB.NET.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR" "TornTv Downloader"="C:\Users\Leon.LEONAALBURG1\AppData\Roaming\TornTV.com\Torntv Downloader.exe /c=startup" "EADM"="C:\Program Files (x86)\Origin\Origin.exe -AutoStart" "GoogleDriveSync"="C:\Program Files (x86)\Google\Drive\googledrivesync.exe /autostart" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-21-3541538408-1459528280-1945361666-1000\Software\Microsoft\Windows\CurrentVersion\RunOnce] "FlashPlayerUpdate"="C:\Windows\system32\Macromed\Flash\FlashUtil64_16_0_0_305_ActiveX.exe -update activex" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Adobe Reader Speed Launcher"="C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "NBAgent"="c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe /WinStart" "SVPWUTIL"="C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL" "HWSetup"="C:\Program Files\TOSHIBA\Utilities\HWSetup.exe hwSetUP" "KeNotify"="C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe LPCM" "ToshibaServiceStation"="C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe /hide:60" "GrooveMonitor"="C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" "PWRISOVM.EXE"="C:\Program Files (x86)\PowerISO\PWRISOVM.EXE" "APSDaemon"="C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" "AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvastUI.exe /nogui" "iTunesHelper"="C:\Program Files (x86)\iTunes\iTunesHelper.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR" "TornTv Downloader"="C:\Users\Leon.LEONAALBURG1\AppData\Roaming\TornTV.com\Torntv Downloader.exe /c=startup" "EADM"="C:\Program Files (x86)\Origin\Origin.exe -AutoStart" "GoogleDriveSync"="C:\Program Files (x86)\Google\Drive\googledrivesync.exe /autostart" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce] "FlashPlayerUpdate"="C:\Windows\system32\Macromed\Flash\FlashUtil64_16_0_0_305_ActiveX.exe -update activex" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\\PROGRA~2\\SearchProtect\\SearchProtect\\bin\\SPVC32Loader.dll" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Toshiba TEMPRO"="C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe" "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "RtHDVBg"="C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE3 " "TosVolRegulator"="C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe" "Toshiba Registration"="C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe" "MSC"="C:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey" "TosNC"="%ProgramFiles%\Toshiba\BulletinBoard\TosNcCore.exe " "TosReelTimeMonitor"="%ProgramFiles%\TOSHIBA\ReelTime\TosReelTimeMonitor.exe " "TPwrMain"="%ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE" "TCrdMain"="%ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe " "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " "TosSENotify"="C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe" ==== Startup Folders ====================== 2011-03-28 15:06:28 1258 ----a-w- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk 2011-03-28 15:06:28 1258 ----a-w- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk 2012-01-27 17:04:23 1060 ----a-w- C:\Users\Leon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk 2014-09-02 17:22:14 1183 ----a-w- C:\Users\Leon.LEONAALBURG1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk 2014-07-02 21:06:36 2046 ----a-w- C:\Users\Leon.LEONAALBURG1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk 2013-09-18 18:34:20 1258 ----a-w- C:\Users\TEMP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk 2014-05-25 07:39:18 1258 ----a-w- C:\Users\TEMP.leonaalburg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk 2014-07-02 20:57:23 1258 ----a-w- C:\Users\TEMP.LEONAALBURG1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk 2012-10-11 12:57:13 2476 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Logitech Desktop Messenger.lnk 2013-06-02 20:52:37 773 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Toshiba Places Icon Utility.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [27-02-2015 14:54] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [27-02-2015 14:59] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [27-02-2015 14:59] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\0" [c:\program files\internet explorer\iexplore.exe] "C:\Windows\SysNative\tasks\4579" [wscript.exe C:\Users\Leon\AppData\Local\Temp\launchie.vbs //B] "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\ConfigFree Startup Programs" [C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\SidebarExecute" [C:\Program Files (x86)\Windows Sidebar\sidebar.exe] "C:\Windows\SysNative\tasks\{51BCA067-9DEA-4CF9-A186-6C492BE58B8E}" [C:\Program Files (x86)\Google\Chrome\Application\chrome.exe] "C:\Windows\SysNative\tasks\{BE0F7EF2-7A82-4B43-8BC5-363ABB5A59CA}" [C:\Program Files (x86)\Google\Chrome\Application\chrome.exe] "C:\Windows\SysNative\tasks\{D54471B7-C210-432B-8B1A-E56A0E38CF80}" [C:\Program Files (x86)\Google\Chrome\Application\chrome.exe] "C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [14-09-2014 12:52] ==== Firefox Extensions ====================== AppDir: C:\Program Files (x86)\Mozilla Firefox - Firefox Helper - %AppDir%\distribution\bundles\9939da7b1cbd5e87980d0a70242291e1 ==== Firefox Plugins ====================== ==== Deleted Firefox Extensions ====================== C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\9939da7b1cbd5e87980d0a70242291e1 deleted ==== Fake Chromium Profiles Check ====================== Fake profile C:\Users\Leon.LEONAALBURG1\AppData\Local\Google\Chrome deleted Fake profile C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome deleted ==== Chromium Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[14-09-2014 12:52] nbmafkdmkkckhggblphicnnhlgljnoje - C:\Program Files (x86)\TornTV.com\torn2_10.crx[] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions apdfllckaahabafndbhieahigkjlhalf - C:\Users\LEON~1.LEO\AppData\Local\Google\Drive\user_default\apdfllckaahabafndbhieahigkjlhalf_live.crx[30-09-2014 22:25] lmjegmlicamnimmfhcmpkclmigmmcbeh - No path found[] Codecv - Leon\AppData\Local\Google\Chrome\User Data\Default\Extensions\hjakmojkcnhgipgkkbiempkfdndcnlah SweetIM for Facebook - Leon\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn AVG Security Toolbar - Leon\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof Google Wallet - Leon\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda SweetPacks Chrome Extension - Leon\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj ==== Chromium Fix ====================== C:\Users\Leon\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.ak.facebook.com_0.localstorage deleted successfully C:\Users\Leon\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.ak.facebook.com_0.localstorage-journal deleted successfully C:\Users\Leon\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wajam.com_0.localstorage deleted successfully C:\Users\Leon\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wajam.com_0.localstorage-journal deleted successfully C:\Users\Leon\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj deleted successfully C:\Users\Leon\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof deleted successfully C:\Users\Leon\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ndibdjnfmopecpmkdieinmbadjfpblof_0.localstorage deleted successfully C:\Users\Leon\AppData\Local\Google\Chrome\User Data\Default\Extensions\hjakmojkcnhgipgkkbiempkfdndcnlah deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.msn.com/?pc=AV01" "Search Page"="http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Search Page"="http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://www.msn.com/?pc=AV01" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{632F07F3-19A1-4d16-A23F-E6CE9486BAB5}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {1F0816B5-8539-46ED-ADA7-47C0D42E90FD} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02" {39319101-2136-4626-86BE-5079C719B6FB} (www.google.com) Google Url="https://www.google.com/search?q={searchTerms}" {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} Microsoft (Bing) Url="http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7" ==== Reset IE Proxy ====================== Value(s) before fix: "ProxyServer"="127.0.0.1:8118" "ProxyOverride"="*.local" "ProxyEnable"=dword:00000001 Value(s) after fix: "ProxyEnable"=dword:00000000 ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{374AF823-4753-8606-2970-AEFA049C6111} deleted successfully HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully HKEY_CURRENT_USER\Software\Policies\Google deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\nbmafkdmkkckhggblphicnnhlgljnoje deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WindowsMangerProtect deleted successfully ==== HijackThis Entries ====================== F2 - REG:system.ini: UserInit=userinit.exe, O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL O2 - BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [NBAgent] "c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart O4 - HKLM\..\Run: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL O4 - HKLM\..\Run: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe hwSetUP O4 - HKLM\..\Run: [KeNotify] "C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe" LPCM O4 - HKLM\..\Run: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60 O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" O4 - HKCU\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR O4 - HKCU\..\Run: [TornTv Downloader] C:\Users\Leon.LEONAALBURG1\AppData\Roaming\TornTV.com\Torntv Downloader.exe /c=startup O4 - HKCU\..\Run: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\system32\Macromed\Flash\FlashUtil64_16_0_0_305_ActiveX.exe -update activex O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'Default user') O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user') O4 - Startup: Dropbox.lnk = Leon.LEONAALBURG1\AppData\Roaming\Dropbox\bin\Dropbox.exe O4 - Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files (x86)\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - Global Startup: Toshiba Places Icon Utility.lnk = ? O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Toevoegen aan TOSHIBA Bulletin Board - res://C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000 O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~4\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~4\Office12\ONBttnIE.dll O9 - Extra button: Add to VideoGet - {88CFA58B-A63F-4A94-9C54-0C7A58E3333E} - C:\PROGRA~1\NUCLEA~1\VideoGet\Plugins\VIDEOG~1.DLL O9 - Extra 'Tools' menuitem: Add to &VideoGet - {88CFA58B-A63F-4A94-9C54-0C7A58E3333E} - C:\PROGRA~1\NUCLEA~1\VideoGet\Plugins\VIDEOG~1.DLL O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~4\Office12\REFIEBAR.DLL O9 - Extra button: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 - {97F922BD-8563-4184-87EE-8C4ACA438823} - (no file) O9 - Extra 'Tools' menuitem: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 - {97F922BD-8563-4184-87EE-8C4ACA438823} - (no file) O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files (x86)\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll (file missing) O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.9\ViProtocol.dll (file missing) O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL O20 - AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: Disc Soft Bus Service - Disc Soft Ltd - C:\Program Files (x86)\DAEMON Tools Ultra\DiscSoftBusService.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: HiSuiteOuc64.exe - Unknown owner - C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe O23 - Service: HuaweiHiSuiteService64.exe - Unknown owner - C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: Nero Update (NAUpdate) - Nero AG - c:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Privoxy (PrivoxyService) (PrivoxyService) - Unknown owner - C:\Program Files (x86)\Jelbrus Secure Web\privoxy.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing) O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Leon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Leon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\TEMP\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\TEMP.leonaalburg\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\TEMP.LEONAALBURG1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Leon.LEONAALBURG1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6Y0RST2G will be deleted at reboot C:\Users\Leon.LEONAALBURG1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9PDES4I2 will be deleted at reboot C:\Users\Leon.LEONAALBURG1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CG3J5UBP will be deleted at reboot C:\Users\Leon.LEONAALBURG1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K7J57IFK will be deleted at reboot C:\Users\Leon.LEONAALBURG1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\POBE4JTU will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\Users\Leon\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=132 folders=40 842082 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Leon\AppData\Local\Temp emptied successfully C:\Users\Leon.LEONAALBURG1\AppData\Local\Temp will be emptied at reboot C:\Users\TEMP\AppData\Local\Temp emptied successfully C:\Users\TEMP.leonaalburg\AppData\Local\Temp emptied successfully C:\Users\TEMP.LEONAALBURG1\AppData\Local\Temp emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\LEON~1.LEO\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Program Files (x86)\Jelbrus Secure Web\privoxy.log" not found "C:\PROGRA~2\Jelbrus Secure Web\privoxy.log" not found "C:\Program Files (x86)\Jelbrus Secure Web" not found "C:\PROGRA~2\Jelbrus Secure Web" not found "C:\Users\Leon.LEONAALBURG1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6Y0RST2G" not found "C:\Users\Leon.LEONAALBURG1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9PDES4I2" not found "C:\Users\Leon.LEONAALBURG1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CG3J5UBP" not found "C:\Users\Leon.LEONAALBURG1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K7J57IFK" not found "C:\Users\Leon.LEONAALBURG1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\POBE4JTU" not found ==== EOF on wo 25-03-2015 at 19:45:33,75 ======================