Zoek.exe v5.0.0.0 Updated 04-May-2015 Tool run by Charlotte on wo 29-07-2015 at 13:48:55,11. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Charlotte\Downloads\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 29-7-2015 13:49:59 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\Users\Charlotte\AppData\Roaming\ReviverSoft deleted successfully C:\Users\Charlotte\AppData\Local\EmieBrowserModeList deleted successfully C:\Users\Charlotte\AppData\Local\EmieSiteList deleted successfully C:\Users\Charlotte\AppData\Local\EmieUserList deleted successfully C:\Users\Charlotte\AppData\Local\VirtualStore deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Installed Programs ====================== ęTorrent Adobe Acrobat Reader DC - Nederlands Adobe Flash Player 18 ActiveX Adobe Refresh Manager Apple Application Support (32-bit) Apple Application Support (64-bit) Apple Mobile Device Support Apple Software Update Bonjour ETDWare PS/2-X64 10.0.7.2_WHQL Google Chrome Google Update Helper Intel PROSet Wireless Intel(R) Control Center Intel(R) Management Engine Components Intel(R) Processor Graphics Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology Intel(R) Rapid Storage Technology Intel© PROSet/Wireless WiFi Software ISL AlwaysOn 2.2.3 iTunes Java 8 Update 45 Java Auto Updater Microsoft .NET Framework 4.5.2 Microsoft Office 2007 Service Pack 3 (SP3) Microsoft Office Excel MUI (Dutch) 2007 Microsoft Office File Validation Add-In Microsoft Office Home and Student 2007 Microsoft Office Office 64-bit Components 2007 Microsoft Office OneNote MUI (Dutch) 2007 Microsoft Office PowerPoint MUI (Dutch) 2007 Microsoft Office Proof (Dutch) 2007 Microsoft Office Proof (English) 2007 Microsoft Office Proof (French) 2007 Microsoft Office Proof (German) 2007 Microsoft Office Proofing (Dutch) 2007 Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) Microsoft Office Shared 64-bit MUI (Dutch) 2007 Microsoft Office Shared MUI (Dutch) 2007 Microsoft Office Word MUI (Dutch) 2007 Microsoft Security Client Microsoft Security Essentials Microsoft Silverlight Popcorn Time Realtek Ethernet Controller Driver Realtek High Definition Audio Driver S Agent Security Update for Microsoft .NET Framework 4.5.2 (KB2972107) Security Update for Microsoft .NET Framework 4.5.2 (KB2972216) Security Update for Microsoft .NET Framework 4.5.2 (KB2978128) Security Update for Microsoft .NET Framework 4.5.2 (KB2979578v2) Security Update for Microsoft .NET Framework 4.5.2 (KB3023224) Security Update for Microsoft .NET Framework 4.5.2 (KB3035490) Security Update for Microsoft .NET Framework 4.5.2 (KB3037581) Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2597973) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2817330) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2880507) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2880508) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2881069) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2883029) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2920795) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2965282) 32-Bit Edition Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB2863812) 32-Bit Edition Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB2965208) 32-Bit Edition Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB2965210) 32-Bit Edition Security Update for Microsoft Office Excel 2007 (KB2965281) 32-Bit Edition Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition Security Update for Microsoft Office OneNote 2007 (KB2596857) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB2965283) 32-Bit Edition Security Update for Microsoft Office Word 2007 (KB3054996) 32-Bit Edition Update for 2007 Microsoft Office System (KB967642) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2965286) 32-Bit Edition Update voor Microsoft Office Excel 2007 Help (KB963678) Update voor Microsoft Office Powerpoint 2007 Help (KB963669) Update voor Microsoft Office Word 2007 Help (KB963665) ==== Running Processes ====================== C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe C:\Program Files (x86)\ISL Online\ISL AlwaysOn\ISLAlwaysOnService.exe C:\Program Files (x86)\ISL Online\ISL AlwaysOn\ISLAlwaysOn.exe C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\ISL Online\ISL AlwaysOn\ISLAlwaysOnMonitor.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Charlotte\Downloads\zoek.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\PROGRA~2\CuTTHeProice deleted C:\PROGRA~2\Web Developer deleted C:\PROGRA~3\{16aed4de-f29b-091e-16ae-ed4def29537b} deleted C:\found.000 deleted C:\Windows\SysNative\config\systemprofile\Searches deleted "C:\Users\Charlotte\AppData\Roaming\SECRV\backup6.bin" deleted "C:\Users\Charlotte\AppData\Roaming\SECRV" deleted ==== System Specs ====================== Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601) Memory (RAM): 4010 MB CPU Info: Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz CPU Speed: 2495,1 MHz Sound Card: Luidsprekers (Realtek High Defi | Display Adapters: Intel(R) HD Graphics Family | Intel(R) HD Graphics Family | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver Monitors: 1x; Algemeen PnP-beeldscherm | Screen Resolution: 1366 X 768 - 32 bit Network: Network Present Network Adapters: Microsoft Virtual WiFi Miniport Adapter #2 | Microsoft Virtual WiFi Miniport Adapter | Intel(R) Centrino(R) Wireless-N 130 | Realtek PCIe GBE Family Controller | Bluetooth-apparaat (Personal Area Network) CD / DVD Drives: 1x (D: | ) D: TSSTcorpCDDVDW SN-208BB Ports: COM Ports NOT Present. LPT Port NOT Present. Mouse: 2 Button Mouse Present Hard Disks: C: 465,7GB Hard Disks - Free: C: 415,0GB Manufacturer *: Phoenix Technologies Ltd. BIOS Info: AT/AT COMPATIBLE | 11/02/12 | SECCSD - 2 Time Zone: West-Europa (standaardtijd) Motherboard *: SAMSUNG ELECTRONICS CO., LTD. 300E4A/300E5A/300E7A/3430EA/3530EA Country: Nederland Language: NLD ==== System Specs (Software) ====================== Anti-Virus: Microsoft Security Essentials On-access scanning disabled (Outdated) Anti-Spyware: Microsoft Security Essentials disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Default Browser: Google Chrome 44.0.2403.107 Internet Explorer Version: 11.0.9600.17914 Google Chrome version: 44.0.2403.107 Adobe Reader version: 15.8.20082.147029 Sun Java version: 1.8.0_45 (32-bit) Sun Java version: 1.8.0_45 (64-bit) ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2015-07-26 15:31:48 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Windows\prleth.sys 2015-07-26 15:31:48 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Windows\hgfs.sys ====== C:\Users\CHARLO~1\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2015-07-21 13:11:38 BBA0C61CB01BA4351C41DC36BBEB55B4 299008 ----a-w- C:\Windows\SysWOW64\atmfd.dll 2015-07-21 13:11:37 D80ECB18D64AE3C2A9D8220ABEBCE40A 25600 ----a-w- C:\Windows\SysWOW64\lpk.dll 2015-07-21 13:11:37 900DB967084C22C6D83D637529B77E8F 34304 ----a-w- C:\Windows\SysWOW64\atmlib.dll 2015-07-21 13:11:37 2DD3D6B44442EF17675554D0482E7BC2 70656 ----a-w- C:\Windows\SysWOW64\fontsub.dll 2015-07-21 13:11:37 0A6495A400140B89242268A13C807841 10240 ----a-w- C:\Windows\SysWOW64\dciman32.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2015-07-28 19:15:16 9AFFAF544BA8FBA1ABFCCC07F6AB85B8 726528 ----a-w- C:\Windows\Sysnative\generaltel.dll 2015-07-28 19:15:15 EB59F8712DC56764D88EB495AD5938B3 1085440 ----a-w- C:\Windows\Sysnative\appraiser.dll 2015-07-28 19:15:15 DA2054C50EB38C91322D4EEBCE408C5C 765440 ----a-w- C:\Windows\Sysnative\invagent.dll 2015-07-28 19:15:15 3CDA55D83D5C9EA09DE82C6E5233C65B 433664 ----a-w- C:\Windows\Sysnative\devinv.dll 2015-07-28 19:15:15 3A87269A74F067EB566813619B4F0CC3 67584 ----a-w- C:\Windows\Sysnative\acmigration.dll 2015-07-28 19:15:15 0AC0A45552B403020780DC74FB3BAC95 1145856 ----a-w- C:\Windows\Sysnative\aeinv.dll 2015-07-28 19:15:14 BE03A1A1B4DEEFDE3E58834F7584C31F 17856 ----a-w- C:\Windows\Sysnative\CompatTelRunner.exe 2015-07-28 19:15:14 81E937F890B2F1A410547D6EB6A79572 227328 ----a-w- C:\Windows\Sysnative\aepdu.dll 2015-07-21 13:11:38 08D58C21888BC2DC754F591C23709C33 372224 ----a-w- C:\Windows\Sysnative\atmfd.dll 2015-07-21 13:11:37 D57C03D365BC71C7A30504644515F3F8 41984 ----a-w- C:\Windows\Sysnative\lpk.dll 2015-07-21 13:11:37 37C6F4906A4B3F837780AF078A1718BA 14336 ----a-w- C:\Windows\Sysnative\dciman32.dll 2015-07-21 13:11:37 2D0E2C197BA9CD67105DE5BBFBEF72A7 46080 ----a-w- C:\Windows\Sysnative\atmlib.dll 2015-07-21 13:11:37 1C4FF36152EBDF5C10A612FC9B2E1F8A 100864 ----a-w- C:\Windows\Sysnative\fontsub.dll ====== C:\Windows\Sysnative\drivers ===== 2015-07-16 19:12:45 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\Sysnative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2015-07-15 10:27:50 45A03A0B6461EFBEE77E0A6AC2816EDA 129024 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb20.sys 2015-07-15 10:27:50 21AF322605D8C7F2A627C22634D1C9C9 290816 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb10.sys 2015-07-15 10:27:50 1877EB1495CFBDAB27D6A32F6DDF3818 159232 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb.sys 2015-07-15 10:27:49 C0A6C3D6E02B61B5D100FE17306C276F 95680 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys 2015-07-15 10:27:49 7A7328E427694CC7244235C3BC299F80 155584 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys ====== C:\Windows\Tasks ====== 2015-07-06 10:26:12 -------- d-----w- C:\Windows\Sysnative\Tasks\Apple ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-07-28 19:25:26 -------- d-----w- C:\Program Files\trend micro 2015-07-24 08:57:05 -------- d-----w- C:\Program Files\iPod 2015-07-24 08:57:04 -------- d-----w- C:\Program Files\iTunes 2015-07-06 10:25:52 -------- d-----w- C:\Program Files\Bonjour 2015-07-06 10:25:43 -------- d-----w- C:\Program Files\Common Files\Apple ======= C:\PROGRA~2 ===== 2015-07-28 19:39:59 -------- d-----w- C:\PROGRA~2\trend micro 2015-07-24 08:57:05 -------- d-----w- C:\PROGRA~2\iTunes 2015-07-06 10:26:09 -------- d-----w- C:\PROGRA~2\Apple Software Update 2015-07-06 10:25:52 -------- d-----w- C:\PROGRA~2\Bonjour 2015-07-06 10:24:43 -------- d-----w- C:\PROGRA~2\COMMON~1\Apple ======= C: ===== ====== C:\Users\Charlotte\AppData\Roaming ====== 2015-07-26 20:01:05 -------- d-----w- C:\Users\Charlotte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-07-24 21:02:01 -------- d-----w- C:\Users\Charlotte\AppData\Local\Programs 2015-07-24 09:55:32 -------- d-----w- C:\Users\Charlotte\AppData\Local\CEF 2015-07-11 09:34:34 -------- d-----w- C:\Users\Charlotte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time 2015-07-06 11:11:01 -------- d-----w- C:\Users\Charlotte\AppData\Roaming\uTorrent 2015-07-06 10:28:19 -------- d-----w- C:\Users\Charlotte\AppData\Roaming\Apple Computer 2015-07-06 10:28:19 -------- d-----w- C:\Users\Charlotte\AppData\Local\Apple Computer 2015-07-06 10:26:12 -------- d-----w- C:\Users\Charlotte\AppData\Local\Apple 2015-07-06 10:26:08 -------- d-----w- C:\Windows\SysNative\config\systemprofile\AppData\Roaming\Apple Computer ====== C:\Users\Charlotte ====== 2015-07-28 20:40:54 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Charlotte\Downloads\RSITx64 (5).exe 2015-07-28 19:42:52 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Charlotte\Downloads\RSITx64 (4).exe 2015-07-28 19:39:55 8685FAF50C04F9A9C2F56FF64B0B7ACB 1107968 ----a-w- C:\Users\Charlotte\Downloads\RSIT.exe 2015-07-28 19:37:58 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Charlotte\Downloads\RSITx64 (3).exe 2015-07-28 19:32:49 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Charlotte\Downloads\RSITx64 (2).exe 2015-07-28 19:26:01 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Charlotte\Downloads\RSITx64 (1).exe 2015-07-28 19:25:07 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Charlotte\Downloads\RSITx64.exe 2015-07-27 15:47:41 D3B6FA14CB7E12B7FBC0B3AA26235898 24345872 ----a-w- C:\Users\Charlotte\Downloads\mbam-setup-2.1.8.1057 (1).exe 2015-07-27 15:47:27 D3B6FA14CB7E12B7FBC0B3AA26235898 24345872 ----a-w- C:\Users\Charlotte\Downloads\mbam-setup-2.1.8.1057.exe 2015-07-26 18:21:39 7EC2066AA25BBCB1A88E77BEF4F98343 14339288 ----a-w- C:\Users\Charlotte\Downloads\wzsus24.exe 2015-07-26 17:10:54 C5B68AC8EC40CAB217AB4F479B953B54 2870984 ----a-w- C:\Users\Charlotte\Downloads\esetsmartinstaller_enu.exe 2015-07-26 17:08:50 F5D1DD2AE8FB5A2C398B6D083E78EA4A 1761992 ----a-w- C:\Users\Charlotte\Downloads\eset_nod32_antivirus_live_installer.exe 2015-07-24 21:05:52 -------- d-----w- C:\ProgramData\e611c1fc00007fa3 2015-07-24 08:57:43 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2015-07-06 10:27:09 -------- d-----w- C:\ProgramData\Apple Computer 2015-07-06 10:24:43 -------- d-----w- C:\ProgramData\Apple ====== C: exe-files == 2015-07-29 10:06:58 30C2ABB09B068089A38CEC5B62DA2B67 1163592 ----a-w- C:\Users\Charlotte\AppData\Local\Google\Chrome\User Data\SwReporter\4.28.0\software_reporter_tool.exe 2015-07-28 20:40:54 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Charlotte\Downloads\RSITx64 (5).exe 2015-07-28 19:42:52 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Charlotte\Downloads\RSITx64 (4).exe 2015-07-28 19:39:59 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files (x86)\trend micro\Charlotte.exe 2015-07-28 19:39:55 8685FAF50C04F9A9C2F56FF64B0B7ACB 1107968 ----a-w- C:\Users\Charlotte\Downloads\RSIT.exe 2015-07-28 19:37:58 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Charlotte\Downloads\RSITx64 (3).exe 2015-07-28 19:32:49 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Charlotte\Downloads\RSITx64 (2).exe 2015-07-28 19:26:01 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Charlotte\Downloads\RSITx64 (1).exe 2015-07-28 19:25:27 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Charlotte.exe 2015-07-28 19:25:07 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Charlotte\Downloads\RSITx64.exe 2015-07-28 19:15:14 BE03A1A1B4DEEFDE3E58834F7584C31F 17856 ----a-w- C:\Windows\System32\CompatTelRunner.exe 2015-07-27 15:47:41 D3B6FA14CB7E12B7FBC0B3AA26235898 24345872 ----a-w- C:\Users\Charlotte\Downloads\mbam-setup-2.1.8.1057 (1).exe 2015-07-27 15:47:27 D3B6FA14CB7E12B7FBC0B3AA26235898 24345872 ----a-w- C:\Users\Charlotte\Downloads\mbam-setup-2.1.8.1057.exe 2015-07-26 18:21:39 7EC2066AA25BBCB1A88E77BEF4F98343 14339288 ----a-w- C:\Users\Charlotte\Downloads\wzsus24.exe 2015-07-26 17:10:54 C5B68AC8EC40CAB217AB4F479B953B54 2870984 ----a-w- C:\Users\Charlotte\Downloads\esetsmartinstaller_enu.exe 2015-07-26 17:08:50 F5D1DD2AE8FB5A2C398B6D083E78EA4A 1761992 ----a-w- C:\Users\Charlotte\Downloads\eset_nod32_antivirus_live_installer.exe 2015-07-24 20:28:49 7E808838855F10CFB8E3AD68B805EE9B 7357520 ----a-w- C:\Program Files (x86)\Google\Update\Install\{34F34553-5C3B-42C3-8FF5-2F96B6670AFC}\44.0.2403.107_43.0.2357.134_chrome_updater.exe 2015-07-24 20:28:49 7E808838855F10CFB8E3AD68B805EE9B 7357520 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\44.0.2403.107\44.0.2403.107_43.0.2357.134_chrome_updater.exe 2015-07-24 08:53:56 FA4DAEE66CF44EC78EFD2E10AFC2D962 77104 ----a-w- C:\ProgramData\Apple Computer\Installer Cache\iTunes 12.2.1.16\SetupAdmin.exe 2015-07-24 08:26:33 AB9990DB80EA3DAC0EAE50C906EF7ECA 1693024 ----a-w- C:\Users\Charlotte\AppData\Roaming\uTorrent\updates\3.4.3_40760.exe === C: other files == 2015-07-26 16:11:28 76CDB2BAD9582D23C1F6F4D868218D6C 22 ----a-w- C:\Users\Charlotte\Downloads\Alt-J_-_This_Is_All_Yours_2014.zip 2015-07-26 15:31:48 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Windows\prleth.sys 2015-07-26 15:31:48 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Windows\hgfs.sys 2015-07-24 10:21:23 6EB7D57188ACC9AE737A8E1397A52DED 275125575 ----a-w- C:\Users\Charlotte\Downloads\Alt-jAnAwesomeWave.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "BTMTrayAgent"="rundll32.exe C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll,TrayApp" "MSC"="c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey" "ETDCtrl"="%ProgramFiles%\Elantech\ETDCtrl.exe " ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\iTunesHelper] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="iTunesHelper" "hkey"="HKLM" "command"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SunJavaUpdateSched" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SWUpdateService] ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [14-07-2015 22:39] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\SAgent" ["C:\Program Files\Samsung\S Agent\CommonAgent.exe"] "C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] ==== Chromium Look ====================== Google Drive - Charlotte\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Charlotte\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Charlotte\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Gmail - Charlotte\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Startpages ====================== C:\Users\Charlotte\AppData\Local\Google\Chrome\User Data\Default\Preferences supports_spdy":true},"tpc.googlesyndication.com:443":{"supports_spdy":true},"video-ams2-1.xx.fbcdn.net:443":{"supports_spdy":true},"www.facebook.com:443":{"supports_spdy":true},"www.google-analytics.com:443":{"supports_spdy":true},"www.google.com:443":{"supports_spdy":true},"www.google.nl:443":{"supports_spdy":true},"www.googleadservices.com:443":{"supports_spdy":true},"www.googleapis.com:443":{"supports_spdy":true},"www.googletagservices.com:443":{"supports_spdy":true},"www.tumblr.com:443":{"supports_spdy":true},"www.youtube-nocookie.com:443":{"supports_spdy":true},"www.youtube.com:443":{"supports_spdy":true},"yt3.ggpht.com:443":{"supports_spdy":true}},"version":3}},"ntp":{"app_page_names":["Apps"]},"partition":{"per_host_zoom_levels":{"2166136261":{}}},"plugins":{"migrated_to_pepper_flash":true,"plugins_list":[],"removed_old_component_pepper_flash_settings":true},"profile":{"avatar_bubble_tutorial_shown":2,"avatar_index":26,"content_settings":{"exceptions":{"app_banner":{},"auto_select_certificate":{},"automatic_downloads":{},"cookies":{},"fullscreen":{"https://www.youtube.com:443,https://www.youtube.com:443":{"setting":1}},"geolocation":{},"images":{},"javascript":{},"media_stream":{},"media_stream_camera":{},"media_stream_mic":{},"metro_switch_to_desktop":{},"midi_sysex":{},"mixed_script":{},"mouselock":{},"notifications":{},"plugins":{},"popups":{},"ppapi_broker":{},"protocol_handlers":{},"push_messaging":{},"ssl_cert_decisions":{}},"pattern_pairs":{"https://www.youtube.com:443,https://www.youtube.com:443":{"fullscreen":1}},"pref_version":1},"created_by_version":"44.0.2403.107","default_content_settings":{},"exit_type":"Crashed","exited_cleanly":true,"icon_version":3,"managed_user_id":"","migrated_content_settings_exceptions":true,"migrated_default_content_settings":true,"migrated_default_media_stream_content_settings":true,"name":"Persoon 1","per_host_zoom_levels":{}},"protection":{"macs":{}},"selectfile":{"last_directory":"C:\\rsit"},"session":{"restore_on_startup_migrated":true,"startup_urls_migration_time":"13082398398848537"},"translate_accepted_count":{"en":0,"fr":0},"translate_blocked_languages":["nl"],"translate_denied_count_for_language":{"en":2,"fr":1},"translate_last_denied_time_for_language":{"en":1437925970451.868,"fr":1437926046527.098},"translate_too_often_denied_for_language":{"en":true},"translate_whitelists":{},"zerosuggest":{"cachedresults":""}} 3B3B1EBDE89C4BE"},"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":"EBA7F6FE2F4FC375D0B4408102690FA5542A5531D7B14810BD798E22D14F8917","apdfllckaahabafndbhieahigkjlhalf":"32138DD3639686E75B058D8ADE1B70DEB47453D23A266E8ACB846A4331459F9D","bepbmhgboaologfdajaanbcjmnhjmhfn":"55D2ABB56DC15580F6BAFE33B36AFA5914C434579E9C07DFF0E2A0FB9626CEEB","blpcfgokakmgnkcojhhkbfbldkacnbeo":"81F9DDE65CACA26230B010CACC6089EBBBDA1708CC5878CA42DD6EE2E08A24EA","coobgpohoikkiipiblmjeljniedjpjpf":"FF7844F23CEF573C21CBBB947B7BF0CA7AB881C5615D237B69E28E7F87F912B7","eemcgdkfndhakfknompkggombfjjjeno":"CC121515CC5ABF2F84E8CFB33F36B89B9AACEE05B4D8F44628014CC23F11CCA2","ennkphjdgehloodpbhlhldgbnhmacadg":"B5EC1991F2B2069CCA596BF53B05A25B2065C6D1A3EA8CCBF67FA1BC009D138A","gfdkimpbcpahaombhbimeihdjnejgicl":"EBFD80C7D2A5420F11BE3013B1FA85FEC0348420B17365AEEF176AB8C6CAA091","ijafpcamenopfjncdliekmcmmblemlgi":"3632E6C8E7A96CA5D456A578E8B09F5155B678C7AF95313FDEFB0BB489AD8D92","kmendfapggjehodndflmmgagdbamhnfd":"55374A421C11CB683965339E3D0A31D64D2F9DACBC30B1E5C4CDF23252FE0177","mfehgcgbbipciphmccgaenjidiccnmng":"B7019CC4846130D503FB6D3479779BC31C5DF1D04B4687CFED2FAD35CD31474B","mgndgikekgjfcpckkfioiadnlibdjbkf":"02DE85244F04CDC7263D0DFECE5E84413AE451EF437C22E99A9FFBDB1B784FB7","mhjfbmdgcfjbbpaeojofohoefgiehjai":"CD87533C089A66EBC7A06F71892DF56C8D7EA9583B3E7638C29D6C670261D2A5","neajdppkdcdipfabeoofebfddakdcjhd":"AE4A1CF21DD45E90AF0085CA7E669B8811CA236F1884964277C957CF2784850F","nkeimhogjdpnpccoofpliimaahmaaome":"3C3663ECBFBD7BAFA915BF8D0E6AD54A2E6BF214128338F8A0F04C4BBD91A28B","pafkbggdmjlpgkdkcbjmhmfcdpncadgh":"09164416BFFB705EB0D17E7F7E990A7C72514063A2D57222F11ACAF8D5520F00","pjkljhegncpnkpknbcohdijeoejaedia":"3006017575A55A95CA8B8124D25276EEF4B95FABC542B0ED296AE88E5EFCAA74"}},"google":{"services":{"account_id":"55CB399CD795BDC12E1170E54EFB7CD55444615D3CCE5172080FC85CC3FF7488","last_username":"31E2979D2ECF60EDB364CEDDD3FF3A75C4B65E498D2CBA749A4BD5FD44C996A2","username":"EF781B49F246670E7251D9E53E987E509A73A385114188F7F6F4025C380511AD"}},"homepage":"CB31BCCA2305614A3BEC56514439957F6CC7B912E8419AF032FEE4271D690C67","homepage_is_newtabpage":"30145E1ADBE646EF9D2B197587DCB2E546D7FB2E2EB650C6BDEE8AE82A12E67E","pinned_tabs":"7B86E2B2A133D5071492BD89DCC4DAE9929972226A493536BF3E420B11E8C567","prefs":{"preference_reset_time":"AD9DAB64DC56058D9D239695BD7A87FAEF775CF105275BE4A4082DA41B1550BC"},"profile":{"reset_prompt_memento":"BC22972345F7EDF86D83A3EBC499651EBDD0D0E9F5A9B1876AC1576399267FE9"},"safebrowsing":{"incidents_sent":"0AD8F6E2266D99B1D034034C4D34A395CE64D360083BB4E7657D2E6872B06E81"},"search_provider_overrides":"A2C42881C5084884D1B4B3B951F30E013F97127B6DC3A398E0B9B68CD4A1CA92","session":{"restore_on_startup":"6A65B385E8D31121D67E1A53C9A6C88AECAC011B14E1B5F3CB824CDF266FFF2B","startup_urls":"6BBC22A838E6E1C4C4164FC65BC6E62E9F0397A91B70C8D1F510F8F7B6660618"},"software_reporter":{"prompt_reason":"D1E3AA26BAE7D224F21CD3EFAE9BC6AAC09C41DE6B0089A52595D624302FF0ED","prompt_seed":"9FDAB87A2153C45D2BD981E71003BF197A1A784D457A3101CDB0AA2287995AF3","prompt_version":"0F7F3388E6553A95633054922722BAE99C880DD26AA8C87313C324C2D65DD86D"},"sync":{"remaining_rollback_tries":"62E9AEA3FB446851A48528DAE00650A8E46256D9C900B99650CA6C12E1D77AC4"}},"super_mac":"C540A16D7486B518400F9486895872CC717798D6F4860B2491606CFC03B4DAAC"},"session":{"startup_urls":["https://www.google.nl/"]}} ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" ==== HijackThis Entries ====================== F2 - REG:system.ini: UserInit=userinit.exe, O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bluetooth Device Monitor - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe O23 - Service: Bluetooth Media Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe O23 - Service: Bluetooth OBEX Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Google Update-service (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing) O23 - Service: Google Update-service (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (file missing) O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: ISL AlwaysOn Service (isl_always_on) - ISL Online Ltd. - C:\Program Files (x86)\ISL Online\ISL AlwaysOn\ISLAlwaysOnService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Charlotte\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Charlotte\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Charlotte\AppData\Local\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Charlotte\AppData\Local\Google\Chrome\User Data\Default\Cache will be emptied at reboot ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=18 folders=8 14164674 bytes) ==== Empty Temp Folders ====================== C:\Users\Charlotte\AppData\Local\Temp will be emptied at reboot C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\CHARLO~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Charlotte\AppData\Local\Google\Chrome\User Data\Default\Cache\data_0" deleted "C:\Users\Charlotte\AppData\Local\Google\Chrome\User Data\Default\Cache\data_1" deleted "C:\Users\Charlotte\AppData\Local\Google\Chrome\User Data\Default\Cache\data_2" deleted "C:\Users\Charlotte\AppData\Local\Google\Chrome\User Data\Default\Cache\data_3" deleted ==== EOF on wo 29-07-2015 at 14:06:11,48 ======================