Zoek.exe v5.0.0.0 Updated 04-May-2015 Tool run by stadhouders on di 18-08-2015 at 20:52:01,86. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\stadhouders\Downloads\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 18-8-2015 21:10:10 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\Users\stadhouders\AppData\Roaming\GetRightToGo deleted successfully C:\Users\stadhouders\AppData\Roaming\Vso deleted successfully C:\Users\stadhouders\AppData\Local\EmieBrowserModeList deleted successfully C:\Users\stadhouders\AppData\Local\EmieSiteList deleted successfully C:\Users\stadhouders\AppData\Local\EmieUserList deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{07e719a5-ab09-44e3-a988-bbe8c57707c0} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{10C1EBE-4C93-4324-AE7F-C683ADABCDE5} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1178154e-eb61-4081-95d3-e4057fbad578} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{13A57703-628C-4118-BFC3-A4A07FB25B6A} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1402DDFD-C2B0-4899-9512-D0B776BCE62E} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{162EE5DE-371B-4946-B416-516C56F64B67} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{18716435-4AA7-46E8-8DD8-ACA49BB17E54} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{18C24C00-AFAA-4F6A-BB56-A1DD567F1DCE} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{18DFEA28-21C1-48FC-933-CDE331585427} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{19787DE8-3138-4749-882F-7D57B448C9E1} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1A3C6465-257D-47EA-BE14-F1EA80A819A1} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1C28764E-A3A0-42A8-8DA8-A565D95D4652} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1EDF7476-69EB-4BCA-8BE-7C735355AE7} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2069E170-A53C-4D77-ADB7-81FF5C2AC0AF} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2195D993-A75A-4620-9A89-86A8D8CA8574} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{225B5153-CAA5-4347-A674-B31443F35E28} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{23EFA7C4-1D40-4F31-BE2F-AD1799A8845} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{260071B0-F1-468A-88B2-30A5B5EB651E} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{260BD048-1DD9-4632-85BF-9315F25DB4} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{26A7E971-D16B-44C0-89F-468441F35034} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{26C35EE8-CFB5-41F7-8A37-2AE46CB4518} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{28782C6-A436-43FB-905A-265E73A1CB35} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{28922DF9-7B7F-45BA-A866-3A8EA789B9B} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{28b22eec-388a-4a58-94f4-52bef60da604} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{290C17E1-44C5-4A55-9CE3-FFE85F3F5270} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{292A9AF8-A5C0-4C7C-A035-145481CB39DE} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{29E5E9B4-5006-4963-B4DE-267B85A2C1FF} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2a2d80ad-dae9-4984-8f2b-26ceb18e976a} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2CDBA402-B86D-47C7-9155-5ED66385540} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D68E040-3040-4A4D-9896-79B63DEA507E} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D9DD9CA-60F9-4270-97BB-CC5BB610D857} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2FA9759B-1E3B-4EC5-B990-A488767A50E0} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2FACFD24-8B51-4334-B1D3-894A14B73279} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2FBA8872-50BB-4C7A-96EF-18EFE3AD9E2} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{31351CDF-9B0D-401F-89AD-16DCEBD5AFDE} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{31C1A978-CAD2-4770-A4EA-91E384F37661} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{34D16368-3D7A-4022-A16B-548F7B2FD29D} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3513200A-446D-408B-84F1-5BF3BFBE6B3F} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{37E15B13-B585-41A1-988D-4BD828EAC9E} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3AAA4E85-8320-4381-9351-C58D53D9DAC1} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D9FECB7-4C7D-4290-9D4D-E6E5A7C9E33} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3E254805-F16-43B3-82D9-8360F0BB4545} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3F1ECCA-87D7-4A00-8BAD-DADDBC04F58} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4156C008-28DD-4AE6-8741-46ED28E064A3} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{42937E38-D518-4A4C-AB24-804ED492FCA5} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{429F5696-57A6-4399-805D-B8E7ECDD7AA9} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{42C6E07A-BFBB-4ECD-A3DF-2B7B817C8451} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4456956C-E88F-4EDD-B0D8-F7AA7585892B} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{44DB4827-401E-467C-AEFE-2D4BB17F91FE} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{45F9F637-9D14-4B19-B353-65887255994C} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{462201b2-27b1-4a52-bfdd-9bcbab6dcec2} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{46489D20-2D5-490E-87D8-8C8FE361B35} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{48AB258D-C85-46CA-BF2B-B85151F9DD} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{495AD393-9DA-4BE3-B6BD-56867580E2F4} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{496CA292-F92D-48D7-B01B-C4F08A7A364B} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{497CACED-51EF-46F2-B2CF-7A5A6825C81} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{49FBADD3-B37-432C-AFEB-2D9D3642435C} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4C1B4D12-DC8C-4B49-B1FC-4F7D4DAA086} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4D54C53B-9D73-4089-886C-655F556A53} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4F21FE4C-8433-4DDB-9D26-D57C2E143CF0} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{506DC39F-42C9-4B72-B8F8-656A52D1F7E} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{525972A8-7427-499B-A3F9-83952B29391} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{52A4F085-1CF2-4911-BFAD-C7723419EE71} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{537000C3-DD34-4DE9-9A5F-B17A88AFF1A9} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{53FCFF3B-1D77-4F4B-B8A7-8AA75FE55E9} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5874C179-A8DF-456C-8B30-DD784164D226} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5912DA31-792C-4971-B36F-6AE92692254} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59221447-A724-4E6C-B9D8-8B6C6CCBE37} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C0D11B8-C5F6-4be3-AD2C-2B1A3EB94AB6} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C52ECE3-E10-48CE-9C57-176CFCA429D5} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5CC9B164-D683-46C1-B1FA-8746F9B7FC} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5DBA34B0-EDDC-4D9C-869F-FD122575B1C1} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5F6D3119-1FBE-4ECF-B2C3-CAAF72B67129} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{64BD8687-FFB4-44D7-BA24-4199D55AB71A} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{677D1338-F5A3-4465-8E2C-384A67CAF97} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{67C7908E-30D1-4AEB-90A3-C8BCF3B7C4B} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68157147-55c4-4a37-8700-2783f51106fa} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{685F8322-C470-4DAD-A084-332C456780D5} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6ADC4A6E-92B2-448D-BE2B-569C9B72A03A} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6B9E038F-E4F5-4A08-A371-98D56FC88EE} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C9EA70D-694A-4A51-A2AE-D2E825F42E0} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6F01F55E-C4C9-4295-9B16-9E06E794569} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{710F6214-7158-445C-81B1-C1F6C38B3A9D} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{717265F7-725C-4CC7-BFCA-F1E7A01A7C49} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{71F4F6C3-CE59-463D-A56B-B0B7D765992} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{74463E1E-8AFE-4E9E-8210-3683FA8F4F88} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{74D87349-7B5D-498A-8082-CDA3C773D63A} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{76FAD7F5-8FE6-4A7A-B769-C458814EBF5} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{771AEC39-59C6-4F3E-A746-609EEE1219A3} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{796487F8-CF11-45A2-8932-922B5D5B1688} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{79E610CC-8668-4D4A-B514-FAA7D678C47} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7B1A3398-A84C-44B8-A09A-6FB2D081B96F} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7BB470AC-EC69-4859-B8E5-E578AD5134B} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7C03A935-A68A-4BD5-A8AD-7D225CADEEF1} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7DFDCB8F-F0CF-44BA-B2C0-8A50D3A172F8} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7E81BCDE-4FEB-4779-BFD0-8980F59CA133} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{808939B3-1D61-4A25-B2CD-D821399C97E} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{80CB0AAA-2826-4164-AF52-6278EB1E182} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{812715A6-94A4-4722-B18B-B71F7FC163CE} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{818BD696-EC7B-4C7D-9BD5-C1A2418A70A5} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{81EF885E-A782-4EF4-A2EF-3FDC209A731B} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8231F9D8-7F0E-483A-821A-37BD74E1635D} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8250FD11-7E78-4452-962E-6157A31F614} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{86AD2DC9-AA5B-48C1-B594-52A33EE5229F} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8728455C-7B85-4E85-A1FF-3FABB5A7CD9} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8872950-C1AF-41FD-83F6-5F72E8746D65} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{888E5928-2CF9-4B13-9BEF-99E969845765} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8B936E60-45BB-4008-9B8E-6FB951F8D2FE} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F4C8EA8-AC60-4DB6-B373-3877063A088B} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{90D5CA52-B328-4ACB-A3A1-E19C2EEC4DD0} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{92459B94-AFB2-4D68-BE7A-1D64AFB01429} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{93C71787-280C-42B8-8F93-781517C9E5E} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{94538C22-42BD-4408-B086-66CDC87AE97E} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{95DE8D7A-37AD-4B1C-9D16-1A57BC7AC8D2} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{960D3B2F-CFE1-47DF-BD22-B1D1BF8C612} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{96621BE4-166D-4114-9F46-72DEAB6BE8AC} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9668A2D2-58CD-4CB0-9BB7-41DDD6AAEA23} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{96F83C47-BA05-45FA-9C40-B0027A41C10} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9beb0400-59e4-42d0-a9d0-97880d9ade1a} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9DE83CBF-EC4C-43A0-9DF4-305923714DB1} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9F047161-47AF-484D-92C9-C2ECD5B284FC} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A034B475-1499-4035-9A21-6EA32AE9C9D2} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A0389E4A-4B49-4513-B1AB-DFBE7614AAB0} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A0B52139-D660-40C4-A5D0-B589E25A24EC} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A0FEC5E0-B662-457E-B929-5DF1B44C5791} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A1D3A7F9-681B-4A37-965D-90DD66DB31} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a253b7ce-ba6f-4126-8903-3cbfed66d05b} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5A87F42-16C7-4D65-B36B-EB205C236653} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A704BE4E-4D1D-4CCE-B18B-ADA5246C7BF9} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A99FC2E2-D710-4B19-831A-1B6C5E22FE2C} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AA1D464E-7786-47DA-ADE8-1721272CF7D1} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AAB2116E-2B7D-4E82-9FA8-1BA0A97E0C4} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ABD4BE69-B95-4364-851E-1E6F45FA8B4D} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC3F80FF-C855-494F-B9EE-5FB54B607B74} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AF757B6-291E-4978-94FE-2479AD1E74F} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AF9F4648-A99A-49BD-8DDF-F6E9D7E18242} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B0EC783A-366C-4901-8F82-8A7C6FC1E99A} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B25E504F-13E8-4447-905F-ECDA29F90F0} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{b2de64c3-f5e4-469f-b1fd-8a4ef818b4c8} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2F39CE3-9697-4A55-829E-4FB863871514} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B515AA1B-B342-49C4-B41E-823E14A7DCE} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B5484FA4-10EA-42F1-9992-209811211483} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B66394FE-74EC-463B-87D2-E2B76C77FD72} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B7A5636-29F7-4CAB-A569-31A13D415BF1} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B8624412-C9D5-49F5-94A6-2A6FC6FF32CC} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B965C4AF-A299-4DAD-8330-70A598F5A5C5} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BBA0754A-918-4177-AEE-FC95E29F8D5F} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BD2356EF-8EF5-41A0-A477-B916ADA53DE5} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BDC2676B-B92E-4B56-892-262DAFA2BAD} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C0F73032-2119-45C4-AD4F-7079D9C2C7C} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C130FE14-613D-43BF-A7CF-5BA393F840B9} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C1A571C4-F421-4AEF-9E93-58BD7AAC2E92} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C31ECB7D-35A5-4C27-BB87-1A69A2221A9B} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C3732BBD-80EB-40EB-984-85364B481658} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C40688C8-CBA2-4C0E-84FA-4350C66FAAE8} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C42DB74E-8C13-43A4-81DA-BDA0DC404664} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C574370C-5A7D-4407-945C-7DD0F946DE71} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C758BEBD-E3F4-43BC-B098-16A932A8DC} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8403604-67D4-40D8-9C4F-965AD57DF11} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8653E45-684B-4956-A523-FF2CB247A046} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C985F229-9E-4539-984D-DA5AA92A997B} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C99B32A1-25D4-4E44-9CAA-D454A3470A5} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C9F6460B-BAA-48BC-A6E5-9D2FA337B9E6} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CACC5E21-9EFD-4BD7-A6D9-F7AD46EBA245} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CB16324-A6E9-4F36-83F3-5B486476CF49} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CB97A73-216E-4F27-A334-72B35D362AEA} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CD9BC27-A625-4621-949C-398048119AF} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CE0FD4C5-6D1D-4EB8-9AF7-87915498ED7} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CF4DA69B-D969-475D-AFC8-DBE9E488CE95} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D06AC30C-2B93-46F2-A67-EEB9745F6611} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D14BF488-430B-4473-BBC3-6A59E0166EEE} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D2429D98-3C12-496F-BA5A-4CC4D28C3A1} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D5F770A-71BC-4A0C-90A4-E844ECB32AFA} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D72B846E-A921-46E9-8972-9D2C332EA161} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D8A5C8FF-8439-404D-A398-16749765923} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DA439246-FF0A-46CF-BCE5-B745439394} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DA4FD398-E5D5-4974-96FC-557B37C8A593} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DBAD21E2-D0FB-4A1F-B911-86C18F6B4599} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DE4F7770-62A9-427A-9B7A-B1B084441BB7} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DF550A63-6074-48E4-A9FE-D7AE9AA324B3} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DFEB65BD-244-4E52-A09-C840B2B8A854} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E16C3320-F1FB-4F6F-9561-BD8A31DFDDC} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E21B5B5B-567D-4597-9792-E985CA5B684A} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E238B018-2F3B-43DD-A155-8824EDE454C} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E2C98F0F-3514-428E-968D-6A5A40AFD65E} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3E7E8DE-B2-4E61-B273-31280294B7F} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B676B4-A852-4AB8-9734-E1D9AAE960F4} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7146144-CF99-44CD-B59B-392DA3104BBA} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E8F0FD2B-3A00-4DF8-9DF3-F382BD57B0D3} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA931D59-CC91-4572-9A82-E01B16AD51AF} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EACA914A-846B-46E8-8353-598EAB7E1184} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EAEDDF19-E922-47FD-9C36-274B99252ED5} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ebc569a1-4278-4e2a-8cd5-97e9e76c0cc4} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECCA97D1-8891-45E9-936A-BA67832F62B5} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED9640B8-9743-4500-B2C2-49611619C0DB} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EDFEDB0A-67FF-40F9-9468-37185CEC8D0} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE8F22A-5533-49DE-BFF4-A967B2E6774E} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF24A63F-37D2-4623-A920-152A36A853A1} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF589585-D6E3-4821-9692-E4FD48D387DC} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF8CB6C2-2295-4A51-8FCF-32BB11A25DC} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F21099D1-3353-40D8-B8DF-F7F127DB777C} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2832701-3468-45FB-9661-60ED2EA112B} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F39A8016-DCF-445A-A7A9-DCD32D6E344A} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F43998A8-5A49-4017-9C8C-587AC77D2CEB} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5BBE90E-B1E-4D85-A533-F0ABAAF22698} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5E06EBE-F0F3-453D-8B3E-EEF97E41D7BF} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F78C139B-2CE0-4B16-BBAA-26161F3C2D6} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F850DF01-8500-4D02-B57-68BA9BC329F5} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F894EB17-8E75-4E5C-B61B-9C34E2353BF} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8E7F201-80AB-432D-974F-70975D43413} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F93EAB3D-A99C-4640-8035-1D1620D15C19} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F96854BF-5A9-4BED-8C82-D07CD2738BF0} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9F81D4A-6CAE-4E85-A1D1-B423D1E25530} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FBBB4135-6F4B-4B20-ACD7-1620C96598E0} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FBDB390-F2CF-499D-9E46-2D4AA5FAC7D1} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD0B1965-29C9-44BA-A558-3E3268A16EE} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{07e719a5-ab09-44e3-a988-bbe8c57707c0} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1178154e-eb61-4081-95d3-e4057fbad578} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{28b22eec-388a-4a58-94f4-52bef60da604} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2a2d80ad-dae9-4984-8f2b-26ceb18e976a} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{462201b2-27b1-4a52-bfdd-9bcbab6dcec2} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68157147-55c4-4a37-8700-2783f51106fa} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9beb0400-59e4-42d0-a9d0-97880d9ade1a} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a253b7ce-ba6f-4126-8903-3cbfed66d05b} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{b2de64c3-f5e4-469f-b1fd-8a4ef818b4c8} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ebc569a1-4278-4e2a-8cd5-97e9e76c0cc4} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Flvto YouTube Downloader"=- [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Wondershare Helper Compact.exe] ==== Deleting Files \ Folders ====================== C:\Users\stadhouders\AppData\Local\Flvto YouTube Downloader not found C:\Program Files\Common Files\Wondershare not found C:\PROGRA~2\DivX deleted C:\Users\Fam. Stadhouders\AppData\Roaming\pcouffin.log deleted C:\Users\stadhouders\AppData\Roaming\1EE5.tmp deleted C:\Users\stadhouders\AppData\Roaming\1F04.tmp deleted C:\PROGRA~2\Wondershare Video Converter Ultimate deleted C:\PROGRA~2\Package Cache deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiPony deleted C:\Users\Fam. Stadhouders\AppData\LocalLow\RadioBar deleted C:\Windows\system32\config\systemprofile\Searches deleted C:\Windows\system32\GroupPolicy\User deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2015-08-14 18:25:07 A4F6DF0E33E644E802C8798ED94D80EA 179712 ----a-w- C:\Windows\notepad.exe 2015-08-02 19:33:41 DA256F9F53336B560201CDEFEAE35320 380928 ----a-w- C:\Windows\RtlUI2.exe 2015-08-02 19:33:41 678C7EA24776534FF6DDF491A4F86005 901 ----a-w- C:\Windows\RtlUI2.exe.manifest 2015-08-02 19:33:40 E5DCAF3BA52C18B8C267B8525393750E 48856 ----a-w- C:\Windows\runSW.exe 2015-08-02 19:33:40 22306E39EBA2D8ECF2EBE475C0057AE8 454360 ----a-w- C:\Windows\SwUSB.exe ====== C:\Users\STADHO~1\AppData\Local\Temp ==== 2015-08-18 18:08:01 F327703F5351BB4A512E8CE9F66ABB9F 563808 ----a-w- C:\Users\stadhouders\AppData\Local\Temp\jre-8u51-windows-au.exe ====== Java Cache ===== ====== C:\Windows\system32 ===== 2015-08-14 18:32:45 ED07EA227F90F271706326C831EC6676 346112 ----a-w- C:\Windows\System32\devinv.dll 2015-08-14 18:32:45 C82F1407E2B3BF459870D7838BACBCA3 635904 ----a-w- C:\Windows\System32\invagent.dll 2015-08-14 18:32:45 A8C9F6869B7DD8F09C209841A23D2332 934400 ----a-w- C:\Windows\System32\aeinv.dll 2015-08-14 18:32:45 8B7060708C97622A097C47205535F53F 598528 ----a-w- C:\Windows\System32\generaltel.dll 2015-08-14 18:32:45 5BBC0E17B583BEB5B39E33A6E9C223C1 60416 ----a-w- C:\Windows\System32\acmigration.dll 2015-08-14 18:32:45 1A8745C9D113E02628BEADADC4A420F1 952832 ----a-w- C:\Windows\System32\appraiser.dll 2015-08-14 18:32:43 F883911764CA7ABAC3A7BB78D5D07584 15808 ----a-w- C:\Windows\System32\CompatTelRunner.exe 2015-08-14 18:32:43 8E67EF7598C4EAE4611DE5B0CA70E1B7 202752 ----a-w- C:\Windows\System32\aepdu.dll 2015-08-14 18:32:38 A7A67674E51F2B050AAC4C477297EEE2 2061312 ----a-w- C:\Windows\System32\wuaueng.dll 2015-08-14 18:32:38 791FB2CCBE7B1BD2D827818B616B4BEE 2943488 ----a-w- C:\Windows\System32\wucltux.dll 2015-08-14 18:32:37 FBECE2B32A3658AEB609DC5A1021100F 30208 ----a-w- C:\Windows\System32\wups.dll 2015-08-14 18:32:37 FA431688A66C577DD2A1FD10FFF1982E 11776 ----a-w- C:\Windows\System32\wu.upgrade.ps.dll 2015-08-14 18:32:37 E96D0EEAAE0446F664EE15703BB32A34 93184 ----a-w- C:\Windows\System32\wudriver.dll 2015-08-14 18:32:37 A02515B58D318F427FBA64437FB0EDDF 566784 ----a-w- C:\Windows\System32\wuapi.dll 2015-08-14 18:32:37 742AC3EF3C7C30F0EBF628D6D03BB399 34816 ----a-w- C:\Windows\System32\wuapp.exe 2015-08-14 18:32:37 6EAC1DBCF178951CBF86F78003E7CAF7 73728 ----a-w- C:\Windows\System32\WinSetupUI.dll 2015-08-14 18:32:37 5A0CB97A5801BCA649C17752F8379472 135680 ----a-w- C:\Windows\System32\wuauclt.exe 2015-08-14 18:32:37 4447FD20A6B48D05E8392B6E18A194A8 173056 ----a-w- C:\Windows\System32\wuwebv.dll 2015-08-14 18:32:37 07F701C4135D3AF95D0663A5E943D919 35840 ----a-w- C:\Windows\System32\wups2.dll 2015-08-14 18:25:10 55C70654420DBF429604FD567E6F3CD3 206848 ----a-w- C:\Windows\System32\WebClnt.dll 2015-08-14 18:25:09 6B003E11CDBDA3B45A3D16E5A9D3F73B 82432 ----a-w- C:\Windows\System32\davclnt.dll 2015-08-14 18:25:07 A4F6DF0E33E644E802C8798ED94D80EA 179712 ----a-w- C:\Windows\System32\notepad.exe 2015-08-14 18:24:49 DC18FFFF3175376ABD38E6D48309F7F9 3934656 ----a-w- C:\Windows\System32\ntoskrnl.exe 2015-08-14 18:24:47 C11ADDE3BD8EF44385ECDAB2D51D8B60 1308160 ----a-w- C:\Windows\System32\ntdll.dll 2015-08-14 18:24:46 A746240E3B4BAC9581FA50D6C4844EFC 1061376 ----a-w- C:\Windows\System32\lsasrv.dll 2015-08-14 18:24:46 6C95D6264810F816E92780E7DB81F7B1 3989952 ----a-w- C:\Windows\System32\ntkrnlpa.exe 2015-08-14 18:24:46 4EE25AC85AFC3FD67D9F57ECDF566FF2 1159168 ----a-w- C:\Windows\System32\sysmain.dll 2015-08-14 18:24:45 EF084206DE3F540C219168141FC78421 400896 ----a-w- C:\Windows\System32\srcore.dll 2015-08-14 18:24:44 FC85BC746818EE9B5181EA0B1C882778 552960 ----a-w- C:\Windows\System32\kerberos.dll 2015-08-14 18:24:44 C7B6B74169B21687A83BE46FC2A34C9D 655360 ----a-w- C:\Windows\System32\rpcrt4.dll 2015-08-14 18:24:44 AE70DD4AF25F193F454231402C6A668A 262656 ----a-w- C:\Windows\System32\rstrui.exe 2015-08-14 18:24:43 FE748FEAA8A5A7677DA1C2C6CE405ADE 248832 ----a-w- C:\Windows\System32\schannel.dll 2015-08-14 18:24:43 E3C99FEA8FF71063AFE3111B7475825B 38912 ----a-w- C:\Windows\System32\csrsrv.dll 2015-08-14 18:24:43 650B603F5C040727788F19AD0B8D09BC 221184 ----a-w- C:\Windows\System32\ncrypt.dll 2015-08-14 18:24:43 2B8B8E5AE54D0EAAE5B84F65C325C3A7 69632 ----a-w- C:\Windows\System32\smss.exe 2015-08-14 18:24:43 15400F593C9023CDC1D144C30BBDA47A 259584 ----a-w- C:\Windows\System32\msv1_0.dll 2015-08-14 18:24:42 A2C5FAE51BC43B29525AAA5BF0B31259 50176 ----a-w- C:\Windows\System32\auditpol.exe 2015-08-14 18:24:42 87E79A9E584AF26A3A5AF6FA059DAAB2 100352 ----a-w- C:\Windows\System32\sspicli.dll 2015-08-14 18:24:42 51C161D5638465251857B2207BD535CB 172032 ----a-w- C:\Windows\System32\wdigest.dll 2015-08-14 18:24:42 4C2D57F3DDBC07D3CC59160CDC400AC0 65536 ----a-w- C:\Windows\System32\TSpkg.dll 2015-08-14 18:24:42 3AD57B7A84035A05079226D1DE47E771 22528 ----a-w- C:\Windows\System32\lsass.exe 2015-08-14 18:24:41 E70054ADA6AAB84659AB20D137747ACF 43008 ----a-w- C:\Windows\System32\srclient.dll 2015-08-14 18:24:41 7C4DA8744933EB6B39D07F2DD15E3161 10752 ----a-w- C:\Windows\System32\msmmsp.dll 2015-08-14 18:24:41 75706C0F199BC7658A98BEE452964587 36864 ----a-w- C:\Windows\System32\cryptbase.dll 2015-08-14 18:24:41 3982911B4C4F42B156D7347C1543CF9F 22016 ----a-w- C:\Windows\System32\secur32.dll 2015-08-14 18:24:41 2633FEE743529A901B2C1569865CA38C 15872 ----a-w- C:\Windows\System32\sspisrv.dll 2015-08-14 18:24:40 C899E7E3A4F42B802DA1E97F9908BD26 6656 ----a-w- C:\Windows\System32\apisetschema.dll 2015-08-14 18:24:40 8A82C9C4A205266DC22BB1C8F2E1AB2D 17408 ----a-w- C:\Windows\System32\credssp.dll 2015-08-14 18:24:40 1EA1328207A915C9EB10AA1D102C0B52 686080 ----a-w- C:\Windows\System32\adtschema.dll 2015-08-14 18:24:40 008BDC16E15B3B6EFB6E8B6684022F36 146432 ----a-w- C:\Windows\System32\msaudite.dll 2015-08-14 18:24:39 D5F9C627C221A3B4B6944EDBE90D642C 60416 ----a-w- C:\Windows\System32\msobjs.dll 2015-08-14 18:23:45 90E480789256D852FA3EADD39D56FDDA 6131200 ----a-w- C:\Windows\System32\mstscax.dll 2015-08-14 18:23:44 AF0EC95144F76EA4B40A7ED1DD34616C 856064 ----a-w- C:\Windows\System32\rdvidcrl.dll 2015-08-14 18:23:44 A27593907607A692D0DE105DE29BBC33 53248 ----a-w- C:\Windows\System32\tsgqec.dll 2015-08-14 18:23:44 5165FC65AD502CC3408B5DE18E076796 355840 ----a-w- C:\Windows\System32\wksprt.exe 2015-08-14 18:23:39 CE21524C53E9671A7108B28FB9B4E474 1251328 ----a-w- C:\Windows\System32\DWrite.dll 2015-08-14 18:23:39 680D463893C9846CC6A1DA6012DD0FE5 299520 ----a-w- C:\Windows\System32\atmfd.dll 2015-08-14 18:23:39 37DE123FE4276D8EC7F3C5B10C236238 909824 ----a-w- C:\Windows\System32\FntCache.dll 2015-08-14 18:23:37 A22126F58B07E937D10F96A506E40107 2384384 ----a-w- C:\Windows\System32\win32k.sys 2015-08-14 18:23:36 965CFC7687F0D188F215DC142FC8F6A1 1987584 ----a-w- C:\Windows\System32\d3d10warp.dll 2015-08-14 18:23:36 7983F3481E89B96074FAE9AFCC24079C 70656 ----a-w- C:\Windows\System32\fontsub.dll 2015-08-14 18:23:36 60AA427E651E0D97A6666AF6D7391549 26624 ----a-w- C:\Windows\System32\lpk.dll 2015-08-14 18:23:36 520AEC6C64AF2CFD74B469DB98611D4A 10240 ----a-w- C:\Windows\System32\dciman32.dll 2015-08-14 18:23:36 400C20D6967A83EA69D6953EBB8D3FA3 34304 ----a-w- C:\Windows\System32\atmlib.dll 2015-08-14 18:23:21 C929BFB3FD2460B570553AE7344640BC 60416 ----a-w- C:\Windows\System32\JavaScriptCollectionAgent.dll 2015-08-14 18:23:21 BDC048308B74B2146495BBB8D4CD4974 47616 ----a-w- C:\Windows\System32\ieetwproxystub.dll 2015-08-14 18:23:21 8DD94CBAE33F026B4F05AC94D14A4500 102912 ----a-w- C:\Windows\System32\ieetwcollector.exe 2015-08-14 18:23:20 C989240A97D4E0B4354679CCF7E66389 30720 ----a-w- C:\Windows\System32\iernonce.dll 2015-08-14 18:23:20 BFD073E2AAA0F4D155EDE021C0138645 685568 ----a-w- C:\Windows\System32\ie4uinit.exe 2015-08-14 18:23:19 BD3E3A13423C40E8CF4BE531EE68BAF0 1310720 ----a-w- C:\Windows\System32\urlmon.dll 2015-08-14 18:23:19 A010F6EC42AD604418062E6E0E2EFA7B 667648 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe 2015-08-14 18:23:19 67DA0EE95026FB2D3577F664F2187F98 342736 ----a-w- C:\Windows\System32\iedkcs32.dll 2015-08-14 18:23:18 D7FDD5E8B88ADE9107772B4C879FDF94 115712 ----a-w- C:\Windows\System32\ieUnatt.exe 2015-08-14 18:23:18 8B6B89D3FEDB34CA38055B82A790545F 620032 ----a-w- C:\Windows\System32\jscript9diag.dll 2015-08-14 18:23:18 793F71F873D106A611DB79741327038C 418304 ----a-w- C:\Windows\System32\dxtmsft.dll 2015-08-14 18:23:18 358D91656E54B03B8FFE3CF4D535A6C8 504320 ----a-w- C:\Windows\System32\vbscript.dll 2015-08-14 18:23:18 1CB9D50EE52BED7DEBF394CEA8A971A5 47104 ----a-w- C:\Windows\System32\jsproxy.dll 2015-08-14 18:23:17 E3762A30F1EC29C30AC85CC2B8CAA3F3 2724864 ----a-w- C:\Windows\System32\mshtml.tlb 2015-08-14 18:23:17 C98AF04E9FC94DBF57B29A9891597664 689152 ----a-w- C:\Windows\System32\msfeeds.dll 2015-08-14 18:23:17 728188684708FEF4F18E2CAB46C54DBB 710144 ----a-w- C:\Windows\System32\ieapfltr.dll 2015-08-14 18:23:16 D1D3DB57C68A2A62E03DD973F53CEA18 2052608 ----a-w- C:\Windows\System32\inetcpl.cpl 2015-08-14 18:23:15 445DB8651F05684F8259D4054A15BC50 168960 ----a-w- C:\Windows\System32\msrating.dll 2015-08-14 18:23:15 0E9529DC8BA5AD3C06B99F115D0D804D 62464 ----a-w- C:\Windows\System32\iesetup.dll 2015-08-14 18:23:14 FB1B7D2B2D500E067B96C56EE0B4DDAD 664064 ----a-w- C:\Windows\System32\jscript.dll 2015-08-14 18:23:14 E97F4BE222DF9E297B4915ECD3EAE5BA 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll 2015-08-14 18:23:13 0AC8CD2138FD10C4A0E2FF08F892359C 1951232 ----a-w- C:\Windows\System32\wininet.dll 2015-08-14 18:23:12 32664FC06B115923C449DC22D47CD8A6 285696 ----a-w- C:\Windows\System32\dxtrans.dll 2015-08-14 18:23:11 3E168B5E5FEE3D09C2D4E97861B5F4B3 479232 ----a-w- C:\Windows\System32\ieui.dll 2015-08-14 18:23:11 3C74EA1EC43A694060F09B7D754446C6 12856832 ----a-w- C:\Windows\System32\ieframe.dll 2015-08-14 18:23:09 4D036506C8359185FC52EB49DB891743 341504 ----a-w- C:\Windows\System32\html.iec 2015-08-14 18:23:08 FCDCEB29CD1129C6C86AD9700A7E5BD1 76288 ----a-w- C:\Windows\System32\mshtmled.dll 2015-08-14 18:23:08 53DE75BD2C7A3EA29770147EAC8A8D5A 1155072 ----a-w- C:\Windows\System32\mshtmlmedia.dll 2015-08-14 18:23:07 ECF459774AE6A273F0F59D7C072DB3C4 64000 ----a-w- C:\Windows\System32\MshtmlDac.dll 2015-08-14 18:23:06 AB6A3699E478DEF677D48B126B223C54 4520448 ----a-w- C:\Windows\System32\jscript9.dll 2015-08-14 18:23:05 BAAAC903BF7F9CA5F1129C972AEDE6BD 19870208 ----a-w- C:\Windows\System32\mshtml.dll 2015-08-14 18:23:03 A37FEDFC0BC9E96AD3DFFF41D5805F04 2279424 ----a-w- C:\Windows\System32\iertutil.dll 2015-08-14 18:20:46 4478348E3942AD9EED9AB263AFE7CD83 12875776 ----a-w- C:\Windows\System32\shell32.dll 2015-08-14 18:06:30 EA1BE72A8CD5CEA7B6E6649D1FD78BA1 1241088 ----a-w- C:\Windows\System32\msxml3.dll 2015-08-14 18:06:30 121E2E789BE080EB86DA71F95B611DF2 1390592 ----a-w- C:\Windows\System32\msxml6.dll 2015-08-14 18:06:29 B6F9E4CDA3069B03F654B650A5379E60 2048 ----a-w- C:\Windows\System32\msxml3r.dll 2015-08-14 18:06:29 127EE7F36CEA127ECCA55BECBC230398 2048 ----a-w- C:\Windows\System32\msxml6r.dll 2015-08-14 18:04:24 5E7C5DE85AF978495C3A9A0B720B9811 44032 ----a-w- C:\Windows\System32\basesrv.dll 2015-08-14 18:03:19 4FA66A573E9A45D05AD5A25B1E76A35D 103120 ----a-w- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll ====== C:\Windows\system32\drivers ===== 2015-08-14 18:24:46 BAD9C0366134BA181514E9263C8CE606 78784 ----a-w- C:\Windows\System32\drivers\mountmgr.sys 2015-08-14 18:24:45 48732BFA0C692BEC15DBBFE754E594C6 67520 ----a-w- C:\Windows\System32\drivers\ksecdd.sys 2015-08-14 18:24:43 46B1F590C06AF25BCADCCAE0148C2074 137664 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys 2015-08-14 18:24:40 FEDAAB6716B44DE8B9EFC14DD9A26215 124416 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys 2015-08-14 18:24:40 77DD652AB8708CDB55FDB7073B868784 225792 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys 2015-08-14 18:24:40 4ACDB6414918D8920875B00B286E1FBC 98304 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys 2015-08-02 19:34:49 A861DA34697CF97A11F249F401DE22B6 2515160 ----a-r- C:\Windows\System32\drivers\rtwlanu.sys ====== C:\Windows\Tasks ====== 2015-08-02 19:29:56 FCDDA7C6D5269589FCB27B529B1599D8 3270 ----a-w- C:\Windows\system32\Tasks\IT Viewer Job ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-08-18 18:19:33 -------- d-----w- C:\Program Files\Common Files\Java 2015-08-02 19:39:45 -------- d-----w- C:\Program Files\Cisco 2015-08-02 19:33:38 -------- d-----w- C:\Program Files\REALTEK 2015-08-02 19:29:02 -------- d-----w- C:\Program Files\IT Viewer ======= C: ===== ====== C:\Users\stadhouders\AppData\Roaming ====== 2015-08-14 22:52:02 -------- d-----w- C:\Users\stadhouders\AppData\Local\Warner Bros. Interactive Entertainment 2015-08-02 19:47:47 -------- d-s---w- C:\Windows\serviceprofiles\networkservice\AppData\Locallow\Microsoft 2015-07-23 21:25:34 -------- d-----w- C:\Users\stadhouders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time ====== C:\Users\stadhouders ====== 2015-08-18 18:14:34 64E42747CB3B719A7C7F7736AD948CFE 563296 ----a-w- C:\Users\stadhouders\Downloads\chromeinstall-8u51 (2).exe 2015-08-18 18:14:17 64E42747CB3B719A7C7F7736AD948CFE 563296 ----a-w- C:\Users\stadhouders\Downloads\chromeinstall-8u51 (1).exe 2015-08-18 18:13:10 64E42747CB3B719A7C7F7736AD948CFE 563296 ----a-w- C:\Users\stadhouders\Downloads\chromeinstall-8u51.exe 2015-08-17 18:00:20 8685FAF50C04F9A9C2F56FF64B0B7ACB 1107968 ----a-w- C:\Users\stadhouders\Downloads\RSIT (3).exe 2015-08-02 19:38:36 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK USB Wireless LAN Utility ====== C: exe-files == 2015-08-18 18:55:03 AFCC324F60DBFE6992F4E1ED04A533DD 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1697967434-1681607132-3168893933-1001\$IORTV6P.exe 2015-08-18 18:54:58 6F1F8D27B2D91970F462A381F7DB9287 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1697967434-1681607132-3168893933-1001\$ITM97RM.exe 2015-08-18 18:54:18 F68A5507E37C1FC1C17F6B1A6BFF582E 1308672 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1697967434-1681607132-3168893933-1001\$RORTV6P.exe 2015-08-18 18:48:43 F68A5507E37C1FC1C17F6B1A6BFF582E 1308672 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1697967434-1681607132-3168893933-1001\$RTM97RM.exe 2015-08-18 18:28:05 31657ADA786863B73FAC28E5BD0753AD 382168 ----a-w- C:\ProgramData\Adobe\ARM\S\5754\AdobeARMHelper.exe 2015-08-18 18:18:45 F3D19B026E09B8150D9FF40D537C8F2A 15456 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\rmid.exe 2015-08-18 18:18:45 EF442149A0502661D49628A66A69F33C 15968 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\policytool.exe 2015-08-18 18:18:45 D50189686D9D144CB4EC807652640FC0 15456 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\ktab.exe 2015-08-18 18:18:45 C4B3393396204E759E6EDFF92A9CAA50 15968 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\tnameserv.exe 2015-08-18 18:18:45 B5AA17A9ACE57080909B9CB47CD74C39 15456 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\kinit.exe 2015-08-18 18:18:45 8B09EF707CE0895D5478300CC2CE90DB 15968 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\rmiregistry.exe 2015-08-18 18:18:45 8516D08420A7AB22A9B722FAF631E320 50784 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\ssvagent.exe 2015-08-18 18:18:45 76BD4372DD5C5A316F64D562C2404BF8 15968 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\orbd.exe 2015-08-18 18:18:45 6790CB3F51E280A2A3EEAA3C5BD58EFF 15456 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\keytool.exe 2015-08-18 18:18:45 5E1561548895218973EB5C833D96BD60 159328 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\unpack200.exe 2015-08-18 18:18:45 56C175D9B0D7EE7D1DA92B8D8A12772A 15968 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\servertool.exe 2015-08-18 18:18:45 547F9D4CB6FAAC8E941F1689D5555CDB 15456 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\jjs.exe 2015-08-18 18:18:45 46AD9258E9B6EA56AFC8723CEFDF8425 15456 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\pack200.exe 2015-08-18 18:18:45 235015745A6A6FE26BCDA8F227C9132B 15456 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\klist.exe 2015-08-18 18:18:45 0CFCEE90C8711D4DEAD9EC7046918A45 77920 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\jp2launcher.exe 2015-08-18 18:18:44 F52607E7F53DA8FE1C4A3C1F11CE2AE7 15456 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\java-rmi.exe 2015-08-18 18:18:44 E7ABC6445E6A2F1EDE5F8BB082ECEEA1 30304 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\jabswitch.exe 2015-08-18 18:18:44 BC66611222047778694C7650B7814978 68192 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\javacpl.exe 2015-08-18 18:18:44 A4D1AC4078F1A819ECECC546F64907A1 190560 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\java.exe 2015-08-18 18:18:44 9A474C07C5242EF2AE12FF6BF387F334 273504 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\javaws.exe 2015-08-18 18:18:44 4E022C0940633A9538892CB26B65BD0D 191584 ----a-w- C:\Program Files\Java\jre1.8.0_51\bin\javaw.exe 2015-08-18 17:50:17 31657ADA786863B73FAC28E5BD0753AD 382168 ----a-w- C:\ProgramData\Adobe\ARM\S\31112\AdobeARMHelper.exe 2015-08-17 17:47:18 31657ADA786863B73FAC28E5BD0753AD 382168 ----a-w- C:\ProgramData\Adobe\ARM\S\10522\AdobeARMHelper.exe 2015-08-15 12:07:11 31657ADA786863B73FAC28E5BD0753AD 382168 ----a-w- C:\ProgramData\Adobe\ARM\S\2181\AdobeARMHelper.exe 2015-08-14 18:23:19 F666B5E4A99DAE8E243189C89E9AFA74 221184 ----a-w- C:\Program Files\Internet Explorer\ielowutil.exe 2015-08-14 18:23:16 E595881896AA929A7FA8936DFCF8D3FE 473600 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe 2015-08-14 18:23:14 C2A6A7E10E872F62F261637B67AFB248 815312 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe 2015-08-14 17:10:56 0CEED1D533CAE0741D56D83AB5CB004F 1525064 ----a-w- C:\Program Files\Google\Google Toolbar\Component\SearchWithGoogleUpdate_CA8A7236098B8F9A.exe 2015-08-14 17:10:50 71FF025C24EA6E0FC972427208B7AF9D 1105864 ----a-w- C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_D6EBD55792EF3063.exe 2015-08-14 17:04:05 31657ADA786863B73FAC28E5BD0753AD 382168 ----a-w- C:\ProgramData\Adobe\ARM\S\7578\AdobeARMHelper.exe === C: other files == 2015-08-18 18:18:45 5F7B14A65C88D4AEB0E3DF49C6A0941F 14130 ----a-w- C:\Program Files\Java\jre1.8.0_51\lib\deploy\ffjcext.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "GarminExpressTrayApp"="C:\Program Files\Garmin\Express Tray\tray.exe" [HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Windows\CurrentVersion\Run] "swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" "Google Update"="C:\Users\stadhouders\AppData\Local\Google\Update\GoogleUpdate.exe /c" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "HydraVisionDesktopManager"="C:\Program Files\ATI Technologies\HydraVision\HydraDM.exe" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner.exe /MONITOR" "BitTorrent"="C:\Users\stadhouders\AppData\Roaming\BitTorrent\BitTorrent.exe /MINIMIZED" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "GarminExpressTrayApp"="C:\Program Files\Garmin\Express Tray\tray.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun" "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "AdobeAAMUpdater-1.0"="C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" "iSkysoft Helper Compact.exe"="C:\Program Files\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe" "Samsung Link"="C:\samsung delen\Samsung Link\Samsung Link Tray Agent.exe" "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe -atboottime" "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" "Google Update"="C:\Users\stadhouders\AppData\Local\Google\Update\GoogleUpdate.exe /c" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "HydraVisionDesktopManager"="C:\Program Files\ATI Technologies\HydraVision\HydraDM.exe" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner.exe /MONITOR" "BitTorrent"="C:\Users\stadhouders\AppData\Roaming\BitTorrent\BitTorrent.exe /MINIMIZED" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe ARM" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\amd_dc_opt] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="amd_dc_opt" "hkey"="HKLM" "command"="C:\\Program Files\\AMD\\Dual-Core Optimizer\\amd_dc_opt.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\APSDaemon] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="APSDaemon" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Apple\\Apple Application Support\\APSDaemon.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GarminExpressTrayApp] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="GarminExpressTrayApp" "hkey"="HKCU" "command"="\"C:\\Program Files\\Garmin\\Express Tray\\ExpressTray.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Google Update] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Google Update" "hkey"="HKCU" "command"="\"C:\\Users\\stadhouders\\AppData\\Local\\Google\\Update\\GoogleUpdate.exe\" /c" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\iTunesHelper] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="iTunesHelper" "hkey"="HKLM" "command"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Monitor] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Monitor" "hkey"="HKLM" "command"="C:\\Windows\\PixArt\\PAC207\\Monitor.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\QuickTime Task] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="QuickTime Task" "hkey"="HKLM" "command"="\"C:\\Program Files\\QuickTime\\QTTask.exe\" -atboottime" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Sidebar] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Sidebar" "hkey"="HKCU" "command"="C:\\Program Files\\Windows Sidebar\\sidebar.exe /autoRun" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Sony PC Companion] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Sony PC Companion" "hkey"="HKCU" "command"="\"C:\\Program Files\\Sony\\Sony PC Companion\\PCCompanion.exe\" /Background" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\StartCCC] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="StartCCC" "hkey"="HKLM" "command"="\"C:\\Program Files\\ATI Technologies\\ATI.ACE\\Core-Static\\CLIStart.exe\" MSRun" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Steam] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Steam" "hkey"="HKCU" "command"="\"C:\\Program Files\\Steam\\Steam.exe\" -silent" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SunJavaUpdateSched" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Java\\Java Update\\jusched.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\swg] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="swg" "hkey"="HKCU" "command"="\"C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk] "path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Microsoft Office.lnk" "backup"="C:\\Windows\\pss\\Microsoft Office.lnk.CommonStartup" "backupExtension"=".CommonStartup" "command"="C:\\PROGRA~1\\MIF5BA~1\\Office10\\OSA.EXE -b -l" "item"="Microsoft Office" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^stadhouders^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2010 Schermopname en Snel starten.lnk] "path"="C:\\Users\\stadhouders\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\OneNote 2010 Schermopname en Snel starten.lnk" "backup"="C:\\Windows\\pss\\OneNote 2010 Schermopname en Snel starten.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\PROGRA~1\\COMMON~1\\MICROS~1\\VIRTUA~1\\CVH.EXE /quietlaunch \"ONENOTEM 9014006204130000\" /tsr" "item"="OneNote 2010 Schermopname en Snel starten" ==== Startup Folders ====================== 2010-10-17 15:57:15 961 ----a-w- C:\Users\Fam. Stadhouders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Xfire.lnk 2010-10-17 15:57:15 961 ----a-w- C:\Users\FAM~1.STA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Xfire.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1697967434-1681607132-3168893933-1001Core.job --a------ C:\Users\stadhouders\AppData\Local\Facebook\Update\FacebookUpdate.exe [30-03-2014 18:34] C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1697967434-1681607132-3168893933-1001UA.job --a------ C:\Users\stadhouders\AppData\Local\Facebook\Update\FacebookUpdate.exe [30-03-2014 18:34] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1697967434-1681607132-3168893933-1001Core.job --a------ C:\Users\stadhouders\AppData\Local\Google\Update\GoogleUpdate.exe [19-04-2012 17:37] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1697967434-1681607132-3168893933-1001UA.job --a------ C:\Users\stadhouders\AppData\Local\Google\Update\GoogleUpdate.exe [19-04-2012 17:37] ==== Other Scheduled Tasks ====================== "C:\Windows\system32\tasks\AdobeAAMUpdater-1.0-stadhouders-PC-stadhouders" [C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe] "C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\system32\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\system32\tasks\FacebookUpdateTaskUserS-1-5-21-1697967434-1681607132-3168893933-1001Core" [C:\Users\stadhouders\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\Windows\system32\tasks\FacebookUpdateTaskUserS-1-5-21-1697967434-1681607132-3168893933-1001UA" [C:\Users\stadhouders\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\Windows\system32\tasks\GarminUpdaterTask" [C:\Program Files\Garmin\Express Self Updater\ExpressSelfUpdater.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskUserS-1-5-21-1697967434-1681607132-3168893933-1001Core" [C:\Users\stadhouders\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskUserS-1-5-21-1697967434-1681607132-3168893933-1001UA" [C:\Users\stadhouders\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\IT Viewer Job" [C:\Program Files\IT Viewer\astask.exe] "C:\Windows\system32\tasks\Media Update Job" [C:\Program Files\Media Update\MediaUpdate.exe] "C:\Windows\system32\tasks\Norton WSC Integration" ["C:\Program Files\Norton AntiVirus\Engine\22.5.2.15\WSCStub.exe"] "C:\Windows\system32\tasks\Windows Software" [C:\Users\stadhouders\AppData\Roaming\Updater\winupd.exe] "C:\Windows\system32\tasks\{3205F985-8BFA-4081-A970-BF64D752193C}" [C:\Program Files\Microsoft Games for Windows - LIVE\Client\GFWLive.exe] "C:\Windows\system32\tasks\{E5B7C8F4-E8F9-45CA-9FC8-CFB1F527FA40}" ["c:\program files\internet explorer\iexplore.exe" http://ui.skype.com/ui/0/6.3.73.105.457/nl/abandoninstall?page=tsProgressBar] "C:\Windows\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe] "C:\Windows\system32\tasks\Norton AntiVirus\Norton Error Analyzer" [C:\Program Files\Norton AntiVirus\Engine\22.5.2.15\SymErr.exe] "C:\Windows\system32\tasks\Norton AntiVirus\Norton Error Processor" [C:\Program Files\Norton AntiVirus\Engine\22.5.2.15\SymErr.exe] "C:\Windows\system32\tasks\Norton Identity Safe\Norton Error Analyzer" [C:\Program Files\Norton Identity Safe\Engine\2014.7.11.42\SymErr.exe] "C:\Windows\system32\tasks\Norton Identity Safe\Norton Error Processor" [C:\Program Files\Norton Identity Safe\Engine\2014.7.11.42\SymErr.exe] "C:\Windows\system32\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Proxy Settings ====================== ProfilePath: C:\Users\STADHO~1\AppData\Roaming\Mozilla\Firefox\Profiles\extensions user_pref("network.proxy.type", 5); ProfilePath: C:\Users\STADHO~1\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0 user_pref("network.proxy.type", 5); ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}"="C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_22.5.0.124\coFFPlgn" [18-08-2015 20:34] ==== Firefox Extensions ====================== ProfilePath: C:\Users\STADHO~1\AppData\Roaming\Mozilla\Firefox\Profiles\extensions - Undetermined - %ProfilePath%\extensions\{62fd68e4-96ce-47c3-b909-22545ca64a38} ProfilePath: C:\Users\STADHO~1\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0 - Undetermined - %ProfilePath%\extensions\{62fd68e4-96ce-47c3-b909-22545ca64a38} AppDir: C:\Program Files\Mozilla Firefox - Firefox Helper - %AppDir%\distribution\bundles\d37314b556f79839678c1d762f2700e7 ==== Firefox Plugins ====================== ==== Deleted Firefox Extensions ====================== C:\Program Files\Mozilla Firefox\distribution\bundles\d37314b556f79839678c1d762f2700e7 deleted ==== Chromium Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions cjabmdjcfcfdmffimndhafhblfmpjdpe - C:\Program Files\Norton AntiVirus\Engine\22.5.2.15\Exts\Chrome.crx[10-07-2015 06:03] iikflkcanblccfahdhdonehdalibjnif - No path found[] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions bbjllphbppobebmjpjcijfbakobcheof - No path found[] Rapport - stadhouders\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbjllphbppobebmjpjcijfbakobcheof Norton Home Page for Chrome - stadhouders\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejbdobdndcjhdmljipngpeoekdinlohe Norton Identity Safe - stadhouders\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif Norton Safe Search as default for Chrome - stadhouders\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmgcfemagnogdodbambjhdcmfcpicngl Chrome Web Store Payments - stadhouders\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda ==== Chromium Startpages ====================== C:\Users\Fam. Stadhouders\AppData\Local\Google\Chrome\User Data\Default\Preferences "homepage": "http://start.funmoods.com/?f=1&a=nv1", C:\Users\stadhouders\AppData\Local\Google\Chrome\User Data\Default\Preferences [{\"content_type\":\"application/pdf\"}]},\"version\":\"1.0\"},\"mediaSize\":{\"custom_display_name\":\"A4\",\"height_microns\":297000,\"is_default\":true,\"name\":\"ISO_A4\",\"vendor_id\":\"9\",\"width_microns\":210000},\"marginsType\":0,\"vendorOptions\":{},\"dpi\":{\"horizontal_dpi\":600,\"is_default\":true,\"vertical_dpi\":600},\"isDuplexEnabled\":false,\"selectedDestinationExtensionId\":\"\",\"selectedDestinationExtensionName\":\"\"}","savePath":"C:\\Users\\stadhouders\\Pictures\\Assassin's Creed"}},"profile":{"avatar_bubble_tutorial_shown":1,"avatar_index":0,"content_settings":{"clear_on_exit_migrated":true,"exceptions":{"app_banner":{},"auto_select_certificate":{},"automatic_downloads":{"[*.]software.garmin.com,*":{"setting":1},"[*.]www.lpmxp2020.com,*":{"setting":1},"https://[*.]mijn.vgz.nl:443,*":{"setting":1}},"cookies":{},"fullscreen":{"[*.]cumberbuddy.tumblr.com,*":{"setting":1},"[*.]cumberbum.tumblr.com,*":{"setting":1},"[*.]flaunt.com,*":{"setting":1},"[*.]gffstream-9.vo.llnwd.net,*":{"setting":1},"[*.]londonphile.tumblr.com,*":{"setting":1},"[*.]www.anwb.nl,*":{"setting":1},"[*.]www.bonprix.nl,*":{"setting":1},"[*.]www.groupdeal.nl,*":{"setting":1},"[*.]www.pbs.org,*":{"setting":1},"[*.]www.youtube.com,*":{"setting":1},"https://www.dropbox.com:443,https://www.dropbox.com:443":{"setting":1}},"geolocation":{"http://store.samsung.com:80,http://store.samsung.com:80":{"setting":1},"http://www.lidl.nl:80,http://www.lidl.nl:80":{"setting":1},"http://www.tfl.gov.uk:80,http://www.tfl.gov.uk:80":{"setting":1}},"images":{},"javascript":{},"media_stream":{},"media_stream_camera":{},"media_stream_mic":{},"metro_switch_to_desktop":{},"midi_sysex":{},"mixed_script":{},"mouselock":{},"notifications":{},"plugins":{"[*.]catchmp3.net,*":{"setting":1},"[*.]keepvid.com,*":{"setting":1},"[*.]snipmp3.com,*":{"setting":1},"[*.]uplay.ubi.com,*":{"setting":1},"[*.]www.heroup.com,*":{"setting":1},"[*.]www.keepvid.com,*":{"setting":1},"[*.]www.systemrequirementslab.com,*":{"setting":1},"https://[*.]dub113.mail.live.com:443,*":{"setting":1}},"popups":{"[*.]www.frenckencollege.nl,*":{"setting":1}},"ppapi_broker":{},"protocol_handlers":{},"push_messaging":{},"ssl_cert_decisions":{}},"pattern_pairs":{"[*.]catchmp3.net,*":{"plugins":1},"[*.]cumberbuddy.tumblr.com,*":{"fullscreen":1},"[*.]cumberbum.tumblr.com,*":{"fullscreen":1},"[*.]flaunt.com,*":{"fullscreen":1},"[*.]gffstream-9.vo.llnwd.net,*":{"fullscreen":1},"[*.]keepvid.com,*":{"plugins":1},"[*.]londonphile.tumblr.com,*":{"fullscreen":1},"[*.]snipmp3.com,*":{"plugins":1},"[*.]software.garmin.com,*":{"multiple-automatic-downloads":1},"[*.]uplay.ubi.com,*":{"plugins":1},"[*.]www.anwb.nl,*":{"fullscreen":1},"[*.]www.bonprix.nl,*":{"fullscreen":1},"[*.]www.frenckencollege.nl,*":{"popups":1},"[*.]www.groupdeal.nl,*":{"fullscreen":1},"[*.]www.heroup.com,*":{"plugins":1},"[*.]www.keepvid.com,*":{"plugins":1},"[*.]www.lpmxp2020.com,*":{"multiple-automatic-downloads":1},"[*.]www.pbs.org,*":{"fullscreen":1},"[*.]www.systemrequirementslab.com,*":{"plugins":1},"[*.]www.youtube.com,*":{"fullscreen":1},"http://store.samsung.com:80,http://store.samsung.com:80":{"geolocation":1},"http://www.lidl.nl:80,http://www.lidl.nl:80":{"geolocation":1,"last_used":{"geolocation":1430783000}},"http://www.tfl.gov.uk:80,http://www.tfl.gov.uk:80":{"geolocation":1,"last_used":{"geolocation":1429723000}},"https://[*.]dub113.mail.live.com:443,*":{"plugins":1},"https://[*.]mijn.vgz.nl:443,*":{"multiple-automatic-downloads":1},"https://www.dropbox.com:443,https://www.dropbox.com:443":{"fullscreen":1}},"pref_version":1},"exit_type":"Normal","exited_cleanly":true,"icon_version":3,"managed_user_id":"","migrated_content_settings_exceptions":true,"migrated_default_content_settings":true,"migrated_default_media_stream_content_settings":true,"name":"Eerste gebruiker","password_manager_groups_for_domains":[6,null,null,null,null,null,null,null,5],"per_host_zoom_levels":{}},"protection":{"macs":{}},"savefile":{"default_directory":"C:\\div"},"selectfile":{"last_directory":"C:\\rsit"},"session":{"restore_on_startup_migrated":true,"startup_urls_migration_time":"13034285355283681"},"sync":{"memory_warning_count":211},"translate_accepted_count":{"da":0,"de":0,"en":0,"fr":0,"it":0,"ja":0,"pl":0,"sv":0},"translate_blocked_languages":["nl","en"],"translate_denied_count":{"da":1,"de":32,"en":5,"fr":2,"it":1,"ja":1,"pl":6,"sv":1},"translate_last_denied_time":1.414962e+12,"translate_too_often_denied":true,"translate_whitelists":{},"zerosuggest":{"cachedresults":""}} ","homepage_is_newtabpage":"6D07B6720DD111916C2285776FA61C2E021C89BFF2525D90FAD434B0FC8F025A","pinned_tabs":"91B5AB53E6FD85FB76410645F30D616D64E668FA2FBBCC92D7BA76B70AED0B82","prefs":{"preference_reset_time":"07DC42B2BD0DC9C3BA2F5559AFAB4634409EA14152251F002DABD0812585A79D"},"profile":{"reset_prompt_memento":"D83392932B089BD2302F4C738F76CF1602B7195DC005569F0653FDAB54A469B9"},"safebrowsing":{"incidents_sent":"98B5D930D933E5D3B51D1C1DB2D12D7231E14251FE986F4BD8E1F709BE5F2D87"},"search_provider_overrides":"8901E688DE79CFE8EF1E9DEAC1A99E3392DECE0CA68ED51FE4307630A37F0DCD","session":{"restore_on_startup":"CA14D51124350FB119C76E1766943E4E797028E08A4B55EECC04DF8A0E1FEE44","startup_urls":"9D5583F038C0D9477942DECE9141EFA60D9139BA1AEFD793C144F4B5F2D968A2"},"software_reporter":{"prompt_reason":"531AF95BD53D60A4DE4B298D2520D15B78431849DA0A89E70A44AD5690ACE35D","prompt_seed":"1533FEA37C92F9E2633C8AD3D3DA9D3070130EA4EBD9EB42C6C14E7B92D0E8F8","prompt_version":"F0587428D3C5FA80BE19DFD34A738FDAB22A13E69ABDB33A8F7A40D84BA3C6A1"},"sync":{"remaining_rollback_tries":"1E08514D5A2CC7D6B82F3FB4E70B49B5DBC1CE00C6A49FEA10A01766065AC5BC"}},"super_mac":"CC687D8FBFB65177CFAFC94475A6C38027AF8E3D471F3FB138378DD123E1675E"},"session":{"restore_on_startup":4,"startup_urls":["http://www.rtlnieuws.nl/boulevard"]},"sync":{"remaining_rollback_tries":0}} C:\Users\FAM~1.STA\AppData\Local\Google\Chrome\User Data\Default\Preferences "homepage": "http://start.funmoods.com/?f=1&a=nv1", ==== Chromium Fix ====================== C:\Users\stadhouders\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage deleted successfully C:\Users\stadhouders\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal deleted successfully C:\Users\stadhouders\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_nortonsafe.search.ask.com_0.localstorage deleted successfully C:\Users\stadhouders\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_nortonsafe.search.ask.com_0.localstorage-journal deleted successfully C:\Users\stadhouders\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.hotukdeals.com_0.localstorage deleted successfully C:\Users\stadhouders\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.hotukdeals.com_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs] "Tabs"="res://ieframe.dll/tabswelcome.htm" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] No DefaultScope Set For HKCU New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs] "Tabs"="about:newtab" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02" {437A23BA-F245-4C38-B192-8E60EFADA59A} Google Url="http://www.google.nl/search?hl=nl&q={searchTerms}&rlz=1I7GGNI_nl" ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6D53EC84-6AAE-4787-AEEE-F4628F01010C} deleted successfully HKEY_USERS\S-1-5-21-1697967434-1681607132-3168893933-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6D53EC84-6AAE-4787-AEEE-F4628F01010C} deleted successfully HKEY_CLASSES_ROOT\CLSID\{6D53EC84-6AAE-4787-AEEE-F4628F01010C} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GarminExpressTrayApp deleted successfully ==== Empty IE Cache ====================== C:\Users\stadhouders\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\stadhouders\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\Users\Fam. Stadhouders\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\stadhouders\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\FAM~1.STA\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=47 folders=28 59230413 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Fam. Stadhouders\AppData\Local\Temp emptied successfully C:\Users\hedev\AppData\Local\Temp emptied successfully C:\Users\Public\AppData\Local\Temp emptied successfully C:\Users\stadhouders\AppData\Local\Temp will be emptied at reboot C:\Users\FAM~1.STA\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\STADHO~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on di 18-08-2015 at 23:09:57,78 ======================