Zoek.exe v5.0.0.0 Updated 04-May-2015 Tool run by gebruiker on do 20/08/2015 at 18:45:49,97. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\gebruiker\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2013-11-04-222044.log 16640 bytes C:\zoek-results2013-11-06-110626.log 5147 bytes ==== Empty Folders Check ====================== C:\PROGRA~2\c7573956-5dac-4cdb-88fb-bdcedde94c70 deleted successfully C:\PROGRA~2\dolphinmobile deleted successfully C:\PROGRA~2\DVDVideoSoft deleted successfully C:\Users\gebruiker\AppData\Local\Adobe deleted successfully C:\Users\gebruiker\AppData\Local\EmieBrowserModeList deleted successfully C:\Users\gebruiker\AppData\Local\EmieSiteList deleted successfully C:\Users\gebruiker\AppData\Local\EmieUserList deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-4124429694-2918782111-3283645683-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{480afd52-1dce-4ac5-a64e-49fdb256331e} deleted successfully HKEY_USERS\S-1-5-21-4124429694-2918782111-3283645683-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C3546C41-F996-4FAA-9813-16464F1D88E3} deleted successfully HKEY_USERS\S-1-5-21-4124429694-2918782111-3283645683-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D8D09C6D-1FE7-46F6-B9D8-1CC6D921B8B4} deleted successfully HKEY_USERS\S-1-5-21-4124429694-2918782111-3283645683-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F009E23-2B7B-40B1-99C8-488D81E5DB94} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{480afd52-1dce-4ac5-a64e-49fdb256331e} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\HauppaugeTVServer deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\HauppaugeTVServer deleted successfully ==== FireFox Fix ====================== ProfilePath: C:\Users\GEBRUI~1\AppData\Roaming\Mozilla\Firefox\Profiles\edwpibk4.default-1397159426056 user.js not found ---- Lines aPDVDZDW52397720XDDWJXW57740856com69795 removed from prefs.js ---- user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.InstallationThankYouPage", true); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.InstallationTime", 1420652581); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.PDVDZDW52397720@XDDWJXW57740856.comaPDVDZDW52397720XDDWJXW57740856com69795_dbWasSe user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.PDVDZDW52397720@XDDWJXW57740856.comaPDVDZDW52397720XDDWJXW57740856com69795_dbWasSe user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.PDVDZDW52397720@XDDWJXW57740856.comasyncdb_dbWasSet", true); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.PDVDZDW52397720@XDDWJXW57740856.comasyncdb_dbWasSet_FF25_FIX", true); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.PDVDZDW52397720@XDDWJXW57740856.comasyncinternaldb_dbWasSet", true); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.PDVDZDW52397720@XDDWJXW57740856.comasyncinternaldb_dbWasSet_FF25_FIX", true); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.active", true); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.addressbar", "NA"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.addressbarenhanced", ""); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.asyncdb.was_copied", "true"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.asyncinternaldb.was_copied", "true"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.backgroundver", 1); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.certdomaininstaller", ""); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.changeprevious", false); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.cookie.InstallationTime.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance ( user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.cookie.InstallationTime.value", "%221420652581%22"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.cookie.InstallerParams.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance (s user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.cookie.InstallerParams.value", "%7B%22source_id%22%3A%22001729%22%2C%22sub_id%22%3 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.cookie.uc.expiration", "Wed Jan 21 2015 19:52:08 GMT+0100 (Romance (standaardtijd) user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.cookie.uc.value", "%22%5C%22BE%5C%22%22"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.description", "Ge-Force"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.domain", ""); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.enablesearch", false); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.homepage", ""); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.iframe", false); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.InstallerIdentifiers.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (R user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.InstallerIdentifiers.value", "%7B%22installer_bic%22%3A%22F89295C8237F4 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.InstallerParams.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romanc user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.InstallerParams.value", "%7B%22source_id%22%3A%22001729%22%2C%22sub_id% user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.InstallerParamsCache.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (R user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.InstallerParamsCache.value", "%7B%22source_id%22%3A%22001729%22%2C%22su user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.InstallerUserIdentifiersCache.expiration", "Fri Feb 01 2030 00:00:00 GM user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.InstallerUserIdentifiersCache.value", "%7B%22installer_bic%22%3A%22F892 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_appVer.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Roman user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_appVer.value", "25"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_lastVersion.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 ( user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_lastVersion.value", "1"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_meta.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_meta.value", "%7B%22handlebars.js%22%3A%7B%22id%22%3A971100%2 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_nextCheck.expiration", "Wed Jan 14 2015 17:52:42 GMT+0100 (Ro user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_nextCheck.value", "true"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_queue.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romanc user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_queue.value", "%7B%7D"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_remote_resources.expiration", "Fri Feb 01 2030 00:00:00 GMT+0 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_remote_resources.value", "%7B%22remoteId%22%3A0%7D"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_resource_971100.expiration", "Tue Apr 07 2015 20:52:02 GMT+02 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_resource_971101.expiration", "Tue Apr 14 2015 01:07:03 GMT+02 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_resource_971102.expiration", "Tue Apr 14 2015 01:07:03 GMT+02 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_resource_971103.expiration", "Tue Apr 07 2015 20:52:02 GMT+02 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_resource_971104.expiration", "Tue Apr 14 2015 01:07:03 GMT+02 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_resource_971105.expiration", "Tue Apr 07 2015 20:52:02 GMT+02 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_resource_971105.value", "%22//Javascript%20Helper%20Functions user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_resource_971106.expiration", "Tue Apr 14 2015 01:07:03 GMT+02 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_resource_971107.expiration", "Tue Apr 14 2015 01:07:03 GMT+02 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_resource_971108.expiration", "Tue Apr 07 2015 20:52:02 GMT+02 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_resource_971109.expiration", "Tue Apr 14 2015 01:07:03 GMT+02 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.Resources_resource_971109.value", "%22function%20startAskCom%28e%2Ct%2C user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.__defualt_browser__.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Ro user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.__defualt_browser__.value", "%22ff%22"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb._installer_additional_info.expiration", "Fri Feb 01 2030 00:00:00 GMT+0 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb._installer_additional_info.value", "%7B%22asw%22%3A%5B1%2C-2147483643%2 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.installer.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Romance (sta user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.installer.value", "%7B%22InstallerIdentifiers%22%3A%7B%22installer_bic% user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.monetization_plugin_bundledUrls.expiration", "Fri Feb 01 2030 00:00:00 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22url user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.monetization_plugin_bundledWithHash.expiration", "Fri Feb 01 2030 00:00 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.monetization_plugin_bundledWithHash.value", "null"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.monetization_plugin_notBundledArr_.expiration", "Fri Feb 01 2030 00:00: user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.monetization_plugin_notBundledArr_.value", "%5B%5D"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.monetization_plugin_regBundledWithSoftware.expiration", "Fri Feb 01 203 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.monetization_plugin_regBundledWithSoftware.value", "%7B%7D"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.reporting_user_key_index.expiration", "Sat Jan 04 2025 19:52:02 GMT+010 user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.internaldb.reporting_user_key_index.value", "511"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.lastDailyReport", "1421232762153"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.lastUpdate", "1421232761974"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.manifesturl", ""); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.name", "Ge-ForcePlus v2"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.newtab", ""); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.opensearch", ""); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.pluginsurl", "http://js.newstatsdemosrv.com/plugin/apps/69795/plugins/na/ff/plugin user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.pluginsversion", 21); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.publisher", "iWebar"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.searchstatus", 0); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.setnewtab", false); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.thankyou", ""); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.updateinterval", 360); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.69795.ver", 25); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.apps", "69795"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.bic", "14ac5bd073b4b3ba3789ed700bdfb494"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.cid", 69795); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.firstrun", false); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.hadappinstalled", true); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.installationdate", 1420656707); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.installerAdditionalInfo", "{\"asw\":[1, -2147483643, 0, 0],\"browser_name\":\"ff\",\"pro user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.modetype", "production"); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.reportInstall", true); user_pref("extensions.aPDVDZDW52397720XDDWJXW57740856com69795.statsDailyCounter", 6); ---- FireFox user.js and prefs.js backups ---- prefs_20152008_1900_.backup ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Bix"=- ==== Deleting Files \ Folders ====================== C:\PROGRA~2\c7573956-5dac-4cdb-88fb-bdcedde94c70 not found C:\PROGRA~2\dolphinmobile not found C:\PROGRA~2\DVDVideoSoft not found C:\PROGRA~2\Free Codec Pack deleted C:\Users\gebruiker\AppData\Roaming\DVDVideoSoft deleted C:\PROGRA~2\ShopperPro deleted C:\PROGRA~2\YTDownloader deleted C:\PROGRA~2\globalUpdate deleted C:\PROGRA~3\t4CADvh3.dat deleted C:\PROGRA~3\Avg_Update_0414b deleted C:\Users\gebruiker\AppData\Local\SuperNova_exit_error.log deleted C:\Users\gebruiker\AppData\Local\globalUpdate deleted C:\Users\gebruiker\AppData\Local\CrashRpt deleted C:\Users\gebruiker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YTDownloader deleted C:\windows\SysNative\tasks\YTDownloader deleted C:\windows\SysNative\tasks\YTDownloaderUpd deleted C:\windows\SysNative\tasks\Microsoft\Windows\Maintenance\SMupdate2 deleted C:\windows\SysNative\tasks\Microsoft\Windows\Multimedia\SMupdate3 deleted C:\windows\SysNative\GroupPolicy\Machine deleted C:\windows\SysNative\GroupPolicy\User deleted C:\windows\SysNative\GroupPolicy\gpt.ini deleted C:\Users\Public\Desktop\Free YouTube Downloader.lnk deleted "C:\Program Files (x86)\WinTV\Ir.exe" deleted "C:\Program Files (x86)\WinTV\irremote.DLL" deleted "C:\Users\gebruiker\AppData\Roaming\Bix\Extensions\atl110.dll" deleted "C:\Users\gebruiker\AppData\Roaming\Bix\Extensions\msvcp110.dll" deleted "C:\Users\gebruiker\AppData\Roaming\Bix\Extensions\msvcr110.dll" not deleted "C:\Users\gebruiker\AppData\Roaming\Bix\Extensions\OneComShellExt.dll" deleted "C:\Program Files (x86)\WinTV\TVServer\HauppaugeTVServerps.dll" deleted "C:\Program Files (x86)\WinTV\WinTV7\DataModel.dll" deleted "C:\Program Files (x86)\WinTV\WinTV7\MultiMediaServices.dll" deleted "C:\Program Files (x86)\WinTV\WinTV7\NativeMMS.dll" deleted "C:\Program Files (x86)\WinTV\WinTV7\WinTVTray.exe" deleted "C:\Users\gebruiker\AppData\Roaming\Bix" not deleted "C:\Program Files (x86)\WinTV" deleted "C:\Users\gebruiker\AppData\Roaming\Bix\Extensions" not deleted "C:\Program Files (x86)\WinTV\TVServer" deleted "C:\Program Files (x86)\WinTV\WinTV7" deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2015-08-12 13:00:31 B32189BDFF6E577A92BAA61AD49264E6 193536 ----a-w- C:\Windows\notepad.exe ====== C:\Users\GEBRUI~1\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2015-08-20 01:01:19 A98799EBA5BAABF1AB2BAFCE488FC9F9 19871232 ----a-w- C:\Windows\SysWOW64\mshtml.dll 2015-08-20 01:01:18 225DB7BABA68ED284693EAEE04E94EA1 2724864 ----a-w- C:\Windows\SysWOW64\mshtml.tlb 2015-08-13 01:16:07 4FA66A573E9A45D05AD5A25B1E76A35D 103120 ----a-w- C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-08-12 13:03:24 DC18FFFF3175376ABD38E6D48309F7F9 3934656 ----a-w- C:\Windows\SysWOW64\ntoskrnl.exe 2015-08-12 13:03:23 6C95D6264810F816E92780E7DB81F7B1 3989952 ----a-w- C:\Windows\SysWOW64\ntkrnlpa.exe 2015-08-12 13:03:23 5792E7C663FAA39335D4F787B9499490 1311768 ----a-w- C:\Windows\SysWOW64\ntdll.dll 2015-08-12 13:03:21 FC85BC746818EE9B5181EA0B1C882778 552960 ----a-w- C:\Windows\SysWOW64\kerberos.dll 2015-08-12 13:03:21 A38E10B4143A19F32D64517B6A1FCB98 1114112 ----a-w- C:\Windows\SysWOW64\kernel32.dll 2015-08-12 13:03:20 FE748FEAA8A5A7677DA1C2C6CE405ADE 248832 ----a-w- C:\Windows\SysWOW64\schannel.dll 2015-08-12 13:03:20 E70054ADA6AAB84659AB20D137747ACF 43008 ----a-w- C:\Windows\SysWOW64\srclient.dll 2015-08-12 13:03:20 A2C5FAE51BC43B29525AAA5BF0B31259 50176 ----a-w- C:\Windows\SysWOW64\auditpol.exe 2015-08-12 13:03:20 650B603F5C040727788F19AD0B8D09BC 221184 ----a-w- C:\Windows\SysWOW64\ncrypt.dll 2015-08-12 13:03:20 51C161D5638465251857B2207BD535CB 172032 ----a-w- C:\Windows\SysWOW64\wdigest.dll 2015-08-12 13:03:20 4C2D57F3DDBC07D3CC59160CDC400AC0 65536 ----a-w- C:\Windows\SysWOW64\TSpkg.dll 2015-08-12 13:03:20 15400F593C9023CDC1D144C30BBDA47A 259584 ----a-w- C:\Windows\SysWOW64\msv1_0.dll 2015-08-12 13:03:20 0A4CE9AAA18F9DE7414C1E7BE572F5FA 274944 ----a-w- C:\Windows\SysWOW64\KernelBase.dll 2015-08-12 13:03:20 086A1544FACAA91CD6F95FC4CDE16913 25600 ----a-w- C:\Windows\SysWOW64\setup16.exe 2015-08-12 13:03:19 DD8BCBBC1C383F38F284E25CE39C136C 96768 ----a-w- C:\Windows\SysWOW64\sspicli.dll 2015-08-12 13:03:19 9E94CD7C6CBDC2C9B6A87AD9D5E4EF80 5120 ----a-w- C:\Windows\SysWOW64\wow32.dll 2015-08-12 13:03:19 8A82C9C4A205266DC22BB1C8F2E1AB2D 17408 ----a-w- C:\Windows\SysWOW64\credssp.dll 2015-08-12 13:03:19 75706C0F199BC7658A98BEE452964587 36864 ----a-w- C:\Windows\SysWOW64\cryptbase.dll 2015-08-12 13:03:19 3982911B4C4F42B156D7347C1543CF9F 22016 ----a-w- C:\Windows\SysWOW64\secur32.dll 2015-08-12 13:03:19 37CE74C8094AD7D1D3B79A8D2849803E 665088 ----a-w- C:\Windows\SysWOW64\rpcrt4.dll 2015-08-12 13:03:19 2506A1507B7CBFE069BC0289349786ED 14336 ----a-w- C:\Windows\SysWOW64\ntvdm64.dll 2015-08-12 13:03:15 C899E7E3A4F42B802DA1E97F9908BD26 6656 ----a-w- C:\Windows\SysWOW64\apisetschema.dll 2015-08-12 13:03:15 832494A551C2B2CCB616B2BE13A696A1 7680 ----a-w- C:\Windows\SysWOW64\instnm.exe 2015-08-12 13:03:14 D5F9C627C221A3B4B6944EDBE90D642C 60416 ----a-w- C:\Windows\SysWOW64\msobjs.dll 2015-08-12 13:03:14 1EA1328207A915C9EB10AA1D102C0B52 686080 ----a-w- C:\Windows\SysWOW64\adtschema.dll 2015-08-12 13:03:14 03A179385219FD37CDFB3E603F912CA7 2048 ----a-w- C:\Windows\SysWOW64\user.exe 2015-08-12 13:03:14 008BDC16E15B3B6EFB6E8B6684022F36 146432 ----a-w- C:\Windows\SysWOW64\msaudite.dll 2015-08-12 13:02:16 FCDCEB29CD1129C6C86AD9700A7E5BD1 76288 ----a-w- C:\Windows\SysWOW64\mshtmled.dll 2015-08-12 13:02:16 C989240A97D4E0B4354679CCF7E66389 30720 ----a-w- C:\Windows\SysWOW64\iernonce.dll 2015-08-12 13:02:16 BDC048308B74B2146495BBB8D4CD4974 47616 ----a-w- C:\Windows\SysWOW64\ieetwproxystub.dll 2015-08-12 13:02:15 C98AF04E9FC94DBF57B29A9891597664 689152 ----a-w- C:\Windows\SysWOW64\msfeeds.dll 2015-08-12 13:02:15 C929BFB3FD2460B570553AE7344640BC 60416 ----a-w- C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-08-12 13:02:15 BD3E3A13423C40E8CF4BE531EE68BAF0 1310720 ----a-w- C:\Windows\SysWOW64\urlmon.dll 2015-08-12 13:02:15 A37FEDFC0BC9E96AD3DFFF41D5805F04 2279424 ----a-w- C:\Windows\SysWOW64\iertutil.dll 2015-08-12 13:02:15 67DA0EE95026FB2D3577F664F2187F98 342736 ----a-w- C:\Windows\SysWOW64\iedkcs32.dll 2015-08-12 13:02:15 358D91656E54B03B8FFE3CF4D535A6C8 504320 ----a-w- C:\Windows\SysWOW64\vbscript.dll 2015-08-12 13:02:15 32664FC06B115923C449DC22D47CD8A6 285696 ----a-w- C:\Windows\SysWOW64\dxtrans.dll 2015-08-12 13:02:14 D1D3DB57C68A2A62E03DD973F53CEA18 2052608 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl 2015-08-12 13:02:14 728188684708FEF4F18E2CAB46C54DBB 710144 ----a-w- C:\Windows\SysWOW64\ieapfltr.dll 2015-08-12 13:02:14 0E9529DC8BA5AD3C06B99F115D0D804D 62464 ----a-w- C:\Windows\SysWOW64\iesetup.dll 2015-08-12 13:02:13 FB1B7D2B2D500E067B96C56EE0B4DDAD 664064 ----a-w- C:\Windows\SysWOW64\jscript.dll 2015-08-12 13:02:13 D7FDD5E8B88ADE9107772B4C879FDF94 115712 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe 2015-08-12 13:02:13 8B6B89D3FEDB34CA38055B82A790545F 620032 ----a-w- C:\Windows\SysWOW64\jscript9diag.dll 2015-08-12 13:02:13 793F71F873D106A611DB79741327038C 418304 ----a-w- C:\Windows\SysWOW64\dxtmsft.dll 2015-08-12 13:02:13 3E168B5E5FEE3D09C2D4E97861B5F4B3 479232 ----a-w- C:\Windows\SysWOW64\ieui.dll 2015-08-12 13:02:13 3C74EA1EC43A694060F09B7D754446C6 12856832 ----a-w- C:\Windows\SysWOW64\ieframe.dll 2015-08-12 13:02:13 1CB9D50EE52BED7DEBF394CEA8A971A5 47104 ----a-w- C:\Windows\SysWOW64\jsproxy.dll 2015-08-12 13:02:12 AB6A3699E478DEF677D48B126B223C54 4520448 ----a-w- C:\Windows\SysWOW64\jscript9.dll 2015-08-12 13:02:12 53DE75BD2C7A3EA29770147EAC8A8D5A 1155072 ----a-w- C:\Windows\SysWOW64\mshtmlmedia.dll 2015-08-12 13:02:12 0AC8CD2138FD10C4A0E2FF08F892359C 1951232 ----a-w- C:\Windows\SysWOW64\wininet.dll 2015-08-12 13:02:11 ECF459774AE6A273F0F59D7C072DB3C4 64000 ----a-w- C:\Windows\SysWOW64\MshtmlDac.dll 2015-08-12 13:02:11 4D036506C8359185FC52EB49DB891743 341504 ----a-w- C:\Windows\SysWOW64\html.iec 2015-08-12 13:02:11 445DB8651F05684F8259D4054A15BC50 168960 ----a-w- C:\Windows\SysWOW64\msrating.dll 2015-08-12 13:00:43 55C70654420DBF429604FD567E6F3CD3 206848 ----a-w- C:\Windows\SysWOW64\WebClnt.dll 2015-08-12 13:00:42 6B003E11CDBDA3B45A3D16E5A9D3F73B 82432 ----a-w- C:\Windows\SysWOW64\davclnt.dll 2015-08-12 13:00:38 EA1BE72A8CD5CEA7B6E6649D1FD78BA1 1241088 ----a-w- C:\Windows\SysWOW64\msxml3.dll 2015-08-12 13:00:38 127EE7F36CEA127ECCA55BECBC230398 2048 ----a-w- C:\Windows\SysWOW64\msxml6r.dll 2015-08-12 13:00:38 121E2E789BE080EB86DA71F95B611DF2 1390592 ----a-w- C:\Windows\SysWOW64\msxml6.dll 2015-08-12 13:00:37 B6F9E4CDA3069B03F654B650A5379E60 2048 ----a-w- C:\Windows\SysWOW64\msxml3r.dll 2015-08-12 13:00:35 CE21524C53E9671A7108B28FB9B4E474 1251328 ----a-w- C:\Windows\SysWOW64\DWrite.dll 2015-08-12 13:00:34 680D463893C9846CC6A1DA6012DD0FE5 299520 ----a-w- C:\Windows\SysWOW64\atmfd.dll 2015-08-12 13:00:33 9E2F12744DD9810961031C56FBB691F4 25600 ----a-w- C:\Windows\SysWOW64\lpk.dll 2015-08-12 13:00:33 965CFC7687F0D188F215DC142FC8F6A1 1987584 ----a-w- C:\Windows\SysWOW64\d3d10warp.dll 2015-08-12 13:00:33 7983F3481E89B96074FAE9AFCC24079C 70656 ----a-w- C:\Windows\SysWOW64\fontsub.dll 2015-08-12 13:00:33 520AEC6C64AF2CFD74B469DB98611D4A 10240 ----a-w- C:\Windows\SysWOW64\dciman32.dll 2015-08-12 13:00:33 400C20D6967A83EA69D6953EBB8D3FA3 34304 ----a-w- C:\Windows\SysWOW64\atmlib.dll 2015-08-12 13:00:31 A4F6DF0E33E644E802C8798ED94D80EA 179712 ----a-w- C:\Windows\SysWOW64\notepad.exe 2015-08-12 13:00:29 44886B1E7B230F39BF3789E0EC748765 4922368 ----a-w- C:\Windows\SysWOW64\mstscax.dll 2015-08-12 13:00:28 C49240FA601351BBFB1EE30906EA5B29 37376 ----a-w- C:\Windows\SysWOW64\tsgqec.dll 2015-08-12 13:00:28 11741998816D58791B62A6BB3DDA461D 269824 ----a-w- C:\Windows\SysWOW64\aaclient.dll 2015-08-12 13:00:23 4478348E3942AD9EED9AB263AFE7CD83 12875776 ----a-w- C:\Windows\SysWOW64\shell32.dll 2015-08-12 13:00:20 A02515B58D318F427FBA64437FB0EDDF 566784 ----a-w- C:\Windows\SysWOW64\wuapi.dll 2015-08-12 13:00:20 4447FD20A6B48D05E8392B6E18A194A8 173056 ----a-w- C:\Windows\SysWOW64\wuwebv.dll 2015-08-12 13:00:19 FBECE2B32A3658AEB609DC5A1021100F 30208 ----a-w- C:\Windows\SysWOW64\wups.dll 2015-08-12 13:00:19 E96D0EEAAE0446F664EE15703BB32A34 93184 ----a-w- C:\Windows\SysWOW64\wudriver.dll 2015-08-12 13:00:19 742AC3EF3C7C30F0EBF628D6D03BB399 34816 ----a-w- C:\Windows\SysWOW64\wuapp.exe ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2015-08-20 01:01:21 E5F2BB962F84A8F8D996FEA33F4C817B 25191936 ----a-w- C:\Windows\Sysnative\mshtml.dll 2015-08-20 01:01:19 4FD63532DBF78DC6B50078F769E7949F 2724864 ----a-w- C:\Windows\Sysnative\mshtml.tlb 2015-08-13 01:16:07 52ED64BF80D360B0EA2B6E5F1504CDFF 124624 ----a-w- C:\Windows\Sysnative\PresentationCFFRasterizerNative_v0300.dll 2015-08-12 13:03:33 EC9178A8037D3EF938F38B6793EAF990 774656 ----a-w- C:\Windows\Sysnative\invagent.dll 2015-08-12 13:03:33 DD91D9EAAA415B26EB30EC9CF768BF03 743424 ----a-w- C:\Windows\Sysnative\generaltel.dll 2015-08-12 13:03:33 A3D0A038A6C03E368E80CDDEFC473140 1148416 ----a-w- C:\Windows\Sysnative\aeinv.dll 2015-08-12 13:03:33 4FEB4397B066DEEDDDED0D1CEDA1C887 69120 ----a-w- C:\Windows\Sysnative\acmigration.dll 2015-08-12 13:03:33 400E0B72AEB663360E1A3AB33DDD6A87 1116672 ----a-w- C:\Windows\Sysnative\appraiser.dll 2015-08-12 13:03:33 36DA2E5BD218764CB48B8A13CF0B091F 437760 ----a-w- C:\Windows\Sysnative\devinv.dll 2015-08-12 13:03:32 EEAFBC5A31C68438AF67531C52410A3D 227328 ----a-w- C:\Windows\Sysnative\aepdu.dll 2015-08-12 13:03:32 E99A30142A108B11381C47B0A30283B0 17344 ----a-w- C:\Windows\Sysnative\CompatTelRunner.exe 2015-08-12 13:03:25 B9A07A9807A4BAC067498CC8D77F3D4D 5568960 ----a-w- C:\Windows\Sysnative\ntoskrnl.exe 2015-08-12 13:03:25 72585BDAF2EC5237EBD71D540657D6A2 1163264 ----a-w- C:\Windows\Sysnative\kernel32.dll 2015-08-12 13:03:25 3F63C62D9183235792A46C0B66EAAD04 1730496 ----a-w- C:\Windows\Sysnative\ntdll.dll 2015-08-12 13:03:23 2E730941CC5BF6200A4F56D1E9C24AAD 1743360 ----a-w- C:\Windows\Sysnative\sysmain.dll 2015-08-12 13:03:21 E80CA72FA43BF258E72C408CEF9839BE 215040 ----a-w- C:\Windows\Sysnative\winsrv.dll 2015-08-12 13:03:21 DAF50D708FF79AC4AE0A1C256A9BEE33 243712 ----a-w- C:\Windows\Sysnative\wow64.dll 2015-08-12 13:03:21 B892459EC8441FFB9E045CCE73862868 424960 ----a-w- C:\Windows\Sysnative\KernelBase.dll 2015-08-12 13:03:21 AF249D7461E228EBBD1C7E98D99B3B12 1461760 ----a-w- C:\Windows\Sysnative\lsasrv.dll 2015-08-12 13:03:21 A0502BF52867F00FD9C67D1C355F6C91 1216512 ----a-w- C:\Windows\Sysnative\rpcrt4.dll 2015-08-12 13:03:21 99D1FAA337A4EF3C33E256C79DC708F8 296960 ----a-w- C:\Windows\Sysnative\rstrui.exe 2015-08-12 13:03:21 6DC249682EA708DA1C4B5CBD9C016F21 729088 ----a-w- C:\Windows\Sysnative\kerberos.dll 2015-08-12 13:03:21 35766EDA62E3FA02B897182219EEDF8A 503808 ----a-w- C:\Windows\Sysnative\srcore.dll 2015-08-12 13:03:20 EBB9C6638109A3486EBA51D28837495C 64000 ----a-w- C:\Windows\Sysnative\auditpol.exe 2015-08-12 13:03:20 E6D24098FDB4A9C29007696B79389DB9 16384 ----a-w- C:\Windows\Sysnative\ntvdm64.dll 2015-08-12 13:03:20 E615E2FF68D64B52CEFDCD24332D61F5 136192 ----a-w- C:\Windows\Sysnative\sspicli.dll 2015-08-12 13:03:20 D6431591DEED9D47E9266890FB2BFBBC 210944 ----a-w- C:\Windows\Sysnative\wdigest.dll 2015-08-12 13:03:20 98AFEF63F857FA67FA1BDD3969F40366 50176 ----a-w- C:\Windows\Sysnative\srclient.dll 2015-08-12 13:03:20 98432481E11B9EDB54A2B069E465D1CB 44032 ----a-w- C:\Windows\Sysnative\cryptbase.dll 2015-08-12 13:03:20 7ADF0CB99051D1E0DB7F65DA1D8099F1 11264 ----a-w- C:\Windows\Sysnative\msmmsp.dll 2015-08-12 13:03:20 7245C8C33397B90E376B9BB54E2A96C8 309760 ----a-w- C:\Windows\Sysnative\ncrypt.dll 2015-08-12 13:03:20 6518A42BE5B157EF3DC3ED4F8BE4CA46 315392 ----a-w- C:\Windows\Sysnative\msv1_0.dll 2015-08-12 13:03:20 61024C6DE4EEBC6BCC92422F0AE3CE94 86528 ----a-w- C:\Windows\Sysnative\TSpkg.dll 2015-08-12 13:03:20 55C48343919A72B0C8F5C42E4C798FCA 112640 ----a-w- C:\Windows\Sysnative\smss.exe 2015-08-12 13:03:20 53632BBEFB00BDA1DCFC9E155E0C6B53 43520 ----a-w- C:\Windows\Sysnative\csrsrv.dll 2015-08-12 13:03:20 46041293D887F4D89979874015F26B30 342016 ----a-w- C:\Windows\Sysnative\schannel.dll 2015-08-12 13:03:20 354D59027DE2BFB3A63E8E7DBAF081D8 338432 ----a-w- C:\Windows\Sysnative\conhost.exe 2015-08-12 13:03:20 0D48E93C6BE3143C0198CB252B992D16 31232 ----a-w- C:\Windows\Sysnative\lsass.exe 2015-08-12 13:03:19 BD6BDB13F5D8FA13166CF8B3CBD6976A 13312 ----a-w- C:\Windows\Sysnative\wow64cpu.dll 2015-08-12 13:03:19 77E88D36E88FDC825DCCBF269F81ED3E 362496 ----a-w- C:\Windows\Sysnative\wow64win.dll 2015-08-12 13:03:19 219DF0B319E46EA2601D90101C4C330A 29184 ----a-w- C:\Windows\Sysnative\sspisrv.dll 2015-08-12 13:03:19 1BE3823E3206785F2BA8F26B2FAD3FBE 28160 ----a-w- C:\Windows\Sysnative\secur32.dll 2015-08-12 13:03:19 0797A4FDBA2766B88FB563BBB7646FCE 22016 ----a-w- C:\Windows\Sysnative\credssp.dll 2015-08-12 13:03:15 BC48CD24D35FA0E18D66A97E502BFAE2 6656 ----a-w- C:\Windows\Sysnative\apisetschema.dll 2015-08-12 13:03:14 FFAD95FF2FE4B14F91E437E03D1F68BA 146432 ----a-w- C:\Windows\Sysnative\msaudite.dll 2015-08-12 13:03:14 46CB68A774B67187B722FA1156672A23 60416 ----a-w- C:\Windows\Sysnative\msobjs.dll 2015-08-12 13:03:14 25AADF664F576D1C264F8AC27B4838DF 686080 ----a-w- C:\Windows\Sysnative\adtschema.dll 2015-08-12 13:02:39 168EA9CD9BD6056BB6F60B57D5304BBE 52736 ----a-w- C:\Windows\Sysnative\basesrv.dll 2015-08-12 13:02:16 92E60B0F2E864336737091554370E658 114688 ----a-w- C:\Windows\Sysnative\ieetwcollector.exe 2015-08-12 13:02:16 890E3A6A6DB6D15EB242460D2353D39C 48640 ----a-w- C:\Windows\Sysnative\ieetwproxystub.dll 2015-08-12 13:02:16 4E37600CED71FFCE7EEBB129A90B3431 2885632 ----a-w- C:\Windows\Sysnative\iertutil.dll 2015-08-12 13:02:15 D0A52A4F631172E2AC35A84CCDF28FA4 34304 ----a-w- C:\Windows\Sysnative\iernonce.dll 2015-08-12 13:02:15 B2ADFD1217625A68A484E9838C608F51 77824 ----a-w- C:\Windows\Sysnative\JavaScriptCollectionAgent.dll 2015-08-12 13:02:15 ACE8BB2BECFEC66A738EE3DDDFF0CA07 720384 ----a-w- C:\Windows\Sysnative\ie4uinit.exe 2015-08-12 13:02:14 9CAC3401B481383936A9D66EF1B80307 389840 ----a-w- C:\Windows\Sysnative\iedkcs32.dll 2015-08-12 13:02:14 158C1D034080B9DC0A9A2CD9E8DB0199 1545728 ----a-w- C:\Windows\Sysnative\urlmon.dll 2015-08-12 13:02:13 F9C6645800D1EDE9033858C60903F00C 66560 ----a-w- C:\Windows\Sysnative\iesetup.dll 2015-08-12 13:02:13 B8322A1FCD5686F2D97B6BCA1862C9B8 4096 ----a-w- C:\Windows\Sysnative\ieetwcollectorres.dll 2015-08-12 13:02:13 857D9F533F7F9838B68C2CEF8AB68412 316928 ----a-w- C:\Windows\Sysnative\dxtrans.dll 2015-08-12 13:02:13 427D40AF9BCAE05125F3513E770706E1 968704 ----a-w- C:\Windows\Sysnative\MsSpellCheckingFacility.exe 2015-08-12 13:02:13 3E4568FFE110FE81CA1A75BF1149153B 801280 ----a-w- C:\Windows\Sysnative\msfeeds.dll 2015-08-12 13:02:12 C580215DE134617942FF1740A1235CE4 800768 ----a-w- C:\Windows\Sysnative\ieapfltr.dll 2015-08-12 13:02:12 95C5B29740852D171CA03BAE61B670FE 144384 ----a-w- C:\Windows\Sysnative\ieUnatt.exe 2015-08-12 13:02:12 62FC1CC7DFC11B5F6A25763375F765BF 54784 ----a-w- C:\Windows\Sysnative\jsproxy.dll 2015-08-12 13:02:12 43AF91A40E44205272335E33B7BBA4C3 2125824 ----a-w- C:\Windows\Sysnative\inetcpl.cpl 2015-08-12 13:02:12 39E11AA344781CD5773BE9E2472C84E4 584192 ----a-w- C:\Windows\Sysnative\vbscript.dll 2015-08-12 13:02:11 E892688BB1C8B0B485C27436F2B963CF 615936 ----a-w- C:\Windows\Sysnative\ieui.dll 2015-08-12 13:02:11 AD31A019C2195C75B26DF3337EE8F9FE 92160 ----a-w- C:\Windows\Sysnative\mshtmled.dll 2015-08-12 13:02:11 9C7B3D3A9A945AED5CC97C6535C9D857 816640 ----a-w- C:\Windows\Sysnative\jscript.dll 2015-08-12 13:02:11 995797E4DE4215715CA2040BB81F4594 14451200 ----a-w- C:\Windows\Sysnative\ieframe.dll 2015-08-12 13:02:11 6E3D6B8844FF524D7B27EE7FFB3EF6F5 490496 ----a-w- C:\Windows\Sysnative\dxtmsft.dll 2015-08-12 13:02:11 56E1A08F9CDF246CCAB75EA32B87B2DA 1359360 ----a-w- C:\Windows\Sysnative\mshtmlmedia.dll 2015-08-12 13:02:10 ECA4CCA74F61C6288734B786089765B0 814080 ----a-w- C:\Windows\Sysnative\jscript9diag.dll 2015-08-12 13:02:10 C6960223A6BAB3CF83DB09565D191844 5923328 ----a-w- C:\Windows\Sysnative\jscript9.dll 2015-08-12 13:02:10 C555B5C8142844DED9E3BD94E6313000 2427904 ----a-w- C:\Windows\Sysnative\wininet.dll 2015-08-12 13:02:10 77A4FEE4031F90DBB5C16F6A8FC855BC 417792 ----a-w- C:\Windows\Sysnative\html.iec 2015-08-12 13:02:10 2D9A67695E80C889FAD5C92651D5E641 88064 ----a-w- C:\Windows\Sysnative\MshtmlDac.dll 2015-08-12 13:02:10 080E99BE131C2433FD7E6813F77F08FD 199680 ----a-w- C:\Windows\Sysnative\msrating.dll 2015-08-12 13:00:43 4E89FC53493704BF835F0300DC201C34 260096 ----a-w- C:\Windows\Sysnative\WebClnt.dll 2015-08-12 13:00:42 16FD9A0F6EDEF091A72D7D3B77574008 102912 ----a-w- C:\Windows\Sysnative\davclnt.dll 2015-08-12 13:00:38 40EA064E91C6A63FDBC83259FC5BD4F8 2004992 ----a-w- C:\Windows\Sysnative\msxml6.dll 2015-08-12 13:00:38 32A74A5BC52EF569BC65252AF6F28578 1887232 ----a-w- C:\Windows\Sysnative\msxml3.dll 2015-08-12 13:00:38 22DC6C17443DECC9EBE258220906DCAC 2048 ----a-w- C:\Windows\Sysnative\msxml6r.dll 2015-08-12 13:00:37 99119778A8E44F077E46B0870B8DD6A8 2048 ----a-w- C:\Windows\Sysnative\msxml3r.dll 2015-08-12 13:00:35 DB94C47BD7F2AD9C58DEC46026D5FD08 1648128 ----a-w- C:\Windows\Sysnative\DWrite.dll 2015-08-12 13:00:35 D5A775990A7C202A037378FDBCDB6141 1180160 ----a-w- C:\Windows\Sysnative\FntCache.dll 2015-08-12 13:00:34 F97A0CFC495C92FF2F6A03933157D115 3208192 ----a-w- C:\Windows\Sysnative\win32k.sys 2015-08-12 13:00:34 F8C0AF84AB602D395FFC89BC7CF3CE18 372736 ----a-w- C:\Windows\Sysnative\atmfd.dll 2015-08-12 13:00:34 0365E7AED8A38CB5FFF1DFB4458C0593 41984 ----a-w- C:\Windows\Sysnative\lpk.dll 2015-08-12 13:00:33 D4FB2E00F49711C9DD3E2C2646D7C767 2565120 ----a-w- C:\Windows\Sysnative\d3d10warp.dll 2015-08-12 13:00:33 B45F7BC413F905ECA9DE679E3FF09472 100864 ----a-w- C:\Windows\Sysnative\fontsub.dll 2015-08-12 13:00:33 52DE81006E192EAA09B3BDE763D80BC8 14336 ----a-w- C:\Windows\Sysnative\dciman32.dll 2015-08-12 13:00:33 15113A4CD09E0F06894495FCE8BF2BF8 46080 ----a-w- C:\Windows\Sysnative\atmlib.dll 2015-08-12 13:00:31 B32189BDFF6E577A92BAA61AD49264E6 193536 ----a-w- C:\Windows\Sysnative\notepad.exe 2015-08-12 13:00:29 FCCEC2081623C9F4CF87FE596C344D3D 5779456 ----a-w- C:\Windows\Sysnative\mstscax.dll 2015-08-12 13:00:28 8E43FDE7430E7F9B25D0556CA33013FC 44032 ----a-w- C:\Windows\Sysnative\tsgqec.dll 2015-08-12 13:00:28 0EEB15058126F30607D29DAEFA2BE55B 322560 ----a-w- C:\Windows\Sysnative\aaclient.dll 2015-08-12 13:00:25 733BC760342A816D3B5A8CE2C7EF1D92 14177280 ----a-w- C:\Windows\Sysnative\shell32.dll 2015-08-12 13:00:20 C980982C7F8ECB462C52CBEC759CBBDC 3154944 ----a-w- C:\Windows\Sysnative\wucltux.dll 2015-08-12 13:00:20 B0FBE5C8E18EB3BD677846DAB54037D5 696320 ----a-w- C:\Windows\Sysnative\wuapi.dll 2015-08-12 13:00:20 6FDC1FAD277AEF0A89B0D28F5675679C 139776 ----a-w- C:\Windows\Sysnative\wuauclt.exe 2015-08-12 13:00:20 499034D7F1F6AF49F9EE12F8822793CB 2606080 ----a-w- C:\Windows\Sysnative\wuaueng.dll 2015-08-12 13:00:19 DE1B5089D48291BD81F6A5CCFB832E53 36864 ----a-w- C:\Windows\Sysnative\wups.dll 2015-08-12 13:00:19 D1E38F98DDA581BF70B6A89882E6E6F6 12288 ----a-w- C:\Windows\Sysnative\wu.upgrade.ps.dll 2015-08-12 13:00:19 C0DA341908CC3A0209A63FBD4B521C2A 91136 ----a-w- C:\Windows\Sysnative\WinSetupUI.dll 2015-08-12 13:00:19 A6848EF3860E81A835AA4982ADBA1884 37888 ----a-w- C:\Windows\Sysnative\wups2.dll 2015-08-12 13:00:19 7CFCC5210E226AA85F2A21098FA01F29 37376 ----a-w- C:\Windows\Sysnative\wuapp.exe 2015-08-12 13:00:19 1956D89C3E24A8388840489371B3A428 98304 ----a-w- C:\Windows\Sysnative\wudriver.dll 2015-08-12 13:00:19 0F72B73EBE4F6F86EE569598D377165E 192000 ----a-w- C:\Windows\Sysnative\wuwebv.dll 2015-08-12 13:00:10 53405CDA694982E5C6A0E9454AC1D407 493504 ----a-w- C:\Windows\Sysnative\mcupdate_GenuineIntel.dll ====== C:\Windows\Sysnative\drivers ===== 2015-08-12 13:03:23 67050452C0118BAF2883928E6FCCFE47 94656 ----a-w- C:\Windows\Sysnative\drivers\mountmgr.sys 2015-08-12 13:03:20 67A1743377EBB5D9A370A8C2086CFDCC 95680 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys 2015-08-12 13:03:20 522A1595D5701800DD41B2D472F5AAED 155584 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys 2015-08-12 13:03:19 B2081803D510DCE174992BA880EDCA70 159232 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb.sys 2015-08-12 13:03:19 97687971F9CB30E2633DE0F1296B9F61 129024 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb20.sys 2015-08-12 13:03:19 552FA62B0EFECD22D8D52499324BCA4F 290816 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb10.sys 2015-07-28 09:02:14 0CC611CDA005070B9F5A496352124EFF 312752 ----a-w- C:\Windows\Sysnative\drivers\avgidsdrivera.sys 2015-07-28 09:01:38 39B8968350B71EEF6A0E0F9C6C2D61FD 245680 ----a-w- C:\Windows\Sysnative\drivers\avgmfx64.sys ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== ======= C:\PROGRA~2 ===== ======= C: ===== ====== C:\Users\gebruiker\AppData\Roaming ====== 2015-08-09 11:29:35 -------- d-----w- C:\Users\gebruiker\AppData\Local\CEF ====== C:\Users\gebruiker ====== 2015-08-19 15:04:06 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\gebruiker\Downloads\RSITx64.exe ====== C: exe-files == 2015-08-19 15:04:06 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\gebruiker\Downloads\RSITx64.exe === C: other files == ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-4124429694-2918782111-3283645683-1001\Software\Microsoft\Windows\CurrentVersion\Run] "Spotify Web Helper"="C:\Users\gebruiker\AppData\Roaming\Spotify\SpotifyWebHelper.exe" "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files (x86)\Common Files\Nero\Lib\NMBgMonitor.exe" "Spybot-S&D Cleaning"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe /autoclean" "DolphinOceanicAccess"="C:\Program Files (x86)\Dolphin\SnovaSuite1303\Snova.EXE" "Spotify"="C:\Users\gebruiker\AppData\Roaming\Spotify\Spotify.exe -autostart -minimized" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Application Restart #0"="C:\Program Files (x86)\Dolphin\SnovaSuite1303\amd64\dol_logon.exe " "Application Restart #1"="C:\Program Files (x86)\Dolphin\SnovaSuite1303\amd64\dol_secure.exe " [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Application Restart #0"="C:\Program Files (x86)\Dolphin\SnovaSuite1303\amd64\dol_logon.exe " "Application Restart #1"="C:\Program Files (x86)\Dolphin\SnovaSuite1303\amd64\dol_secure.exe " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IMSS"="C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe" "USB3MON"="C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" "PDF Complete"="C:\Program Files (x86)\PDF Complete\pdfsty.exe" "File Sanitizer"="c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe" "Share-to-Web Namespace Daemon"="C:\Program Files (x86)\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe" "SDTray"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" "NBKeyScan"="C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" "HP Software Update"="C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe" "AVG_UI"="C:\Program Files (x86)\AVG\AVG2015\avgui.exe /TRAYONLY" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Spotify Web Helper"="C:\Users\gebruiker\AppData\Roaming\Spotify\SpotifyWebHelper.exe" "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files (x86)\Common Files\Nero\Lib\NMBgMonitor.exe" "Spybot-S&D Cleaning"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe /autoclean" "DolphinOceanicAccess"="C:\Program Files (x86)\Dolphin\SnovaSuite1303\Snova.EXE" "Spotify"="C:\Users\gebruiker\AppData\Roaming\Spotify\Spotify.exe -autostart -minimized" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s" "HPSYSDRV"="C:\Program Files (x86)\Hewlett-Packard\HP Odometer\HPSYSDRV.EXE" "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Spotify] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Spotify" "hkey"="HKCU" "command"="\"C:\\Users\\gebruiker\\AppData\\Roaming\\Spotify\\spotify.exe\" /uri spotify:autostart" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Spotify Web Helper] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Spotify Web Helper" "hkey"="HKCU" "command"="\"C:\\Users\\gebruiker\\AppData\\Roaming\\Spotify\\Data\\SpotifyWebHelper.exe\"" ==== Startup Folders ====================== 2013-02-27 09:27:56 1006 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AutoStart IR.lnk 2013-02-27 09:28:08 1128 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinTV Recording Status.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [12/08/2015 08:50] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [30/03/2013 18:37] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ [Undetermined Task] C:\Windows\tasks\HPCeeScheduleForgebruiker.job --a------ C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [15/07/2011 14:43] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\HPCeeScheduleForgebruiker" [C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe] "C:\Windows\SysNative\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{CD85A6EC-015D-450B-B2A1-B1CF2261FA4F}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\{AF4784BE-90CC-4AEF-9F0F-FC96C45DAB50}" [C:\Program Files\scanner\sj659du.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\Update Check" [C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] "C:\Windows\SysNative\tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates" [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] "C:\Windows\SysNative\tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization" [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe] "C:\Windows\SysNative\tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system" [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe] ==== Firefox Extensions ====================== AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\edwpibk4.default-1397159426056 CAF78E18A9E1380A0A38065B3B1210E0 - C:\Users\gebruiker\AppData\Roaming\VASCO\VascoCardReaderPlugin\3.2.3.4\npVascoCardReaderPlugin.dll - VASCO Card Reader Plugin 1CDD28B47D8198F868349BDFBCD1281B - C:\Users\gebruiker\AppData\Roaming\VASCO\VascoCardReaderPlugin\3.2.3.4\npVascoCardReaderPlugin64.dll - VASCO Card Reader Plugin ==== Chromium Look ====================== Google Chrome Version: 44.0.2403.155 Belfius Smart Card Reader Chrome Extension - gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\agicnfmechmlphpjmeefookfjhifbmhi Chrome Web Store Payments - gebruiker\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda ==== Chromium Startpages ====================== C:\Users\gebruiker\AppData\Local\Google\Chrome\User Data\Default\Preferences 9900,\"name\":\"ISO_DL\",\"vendor_id\":\"27\",\"width_microns\":109900},{\"custom_display_name\":\"C5\",\"height_microns\":228900,\"name\":\"ISO_C5\",\"vendor_id\":\"28\",\"width_microns\":161900},{\"custom_display_name\":\"Monarch\",\"height_microns\":190500,\"name\":\"NA_MONARCH\",\"vendor_id\":\"37\",\"width_microns\":98400},{\"custom_display_name\":\"Organizer J\",\"height_microns\":127000,\"vendor_id\":\"257\",\"width_microns\":69800},{\"custom_display_name\":\"Organizer K\",\"height_microns\":171400,\"vendor_id\":\"258\",\"width_microns\":95200},{\"custom_display_name\":\"Organizer L\",\"height_microns\":215900,\"name\":\"NA_INVOICE\",\"vendor_id\":\"259\",\"width_microns\":139700},{\"custom_display_name\":\"A4 lang\",\"height_microns\":404900,\"vendor_id\":\"262\",\"width_microns\":210000},{\"custom_display_name\":\"3 x 5\",\"height_microns\":127000,\"name\":\"NA_INDEX_3X5\",\"vendor_id\":\"261\",\"width_microns\":76200},{\"custom_display_name\":\"Door gebruiker gedefinieerd\",\"height_microns\":116000,\"vendor_id\":\"256\",\"width_microns\":69900},{\"custom_display_name\":\"A3\",\"height_microns\":419900,\"name\":\"ISO_A3\",\"vendor_id\":\"8\",\"width_microns\":297000},{\"custom_display_name\":\"Registerpapier\",\"height_microns\":431800,\"name\":\"NA_LEDGER\",\"vendor_id\":\"3\",\"width_microns\":279400},{\"custom_display_name\":\"JIS B4\",\"height_microns\":363900,\"name\":\"JIS_B4\",\"vendor_id\":\"12\",\"width_microns\":256900}]},\"page_orientation\":{\"option\":[{\"is_default\":true,\"type\":\"PORTRAIT\"},{\"type\":\"LANDSCAPE\"},{\"type\":\"AUTO\"}]},\"supported_content_type\":[{\"content_type\":\"application/pdf\"}]},\"version\":\"1.0\"},\"dpi\":{\"horizontal_dpi\":600,\"is_default\":true,\"vertical_dpi\":600},\"mediaSize\":{\"custom_display_name\":\"A4\",\"height_microns\":297000,\"is_default\":true,\"name\":\"ISO_A4\",\"vendor_id\":\"9\",\"width_microns\":210000},\"selectedDestinationExtensionId\":\"\",\"selectedDestinationExtensionName\":\"\"}"}},"profile":{"avatar_bubble_tutorial_shown":1,"avatar_index":0,"content_settings":{"clear_on_exit_migrated":true,"exceptions":{"app_banner":{},"auto_select_certificate":{},"automatic_downloads":{},"cookies":{},"fullscreen":{"[*.]cdn.s.vz32.videosz.com,*":{"setting":1},"http://members.nubiles-porn.com:80,http://members.nubiles-porn.com:80":{"setting":1},"http://members.nubiles.net:80,http://members.nubiles.net:80":{"setting":1},"https://[*.]www.youtube.com:443,*":{"setting":1}},"geolocation":{"http://www.delijn.be:80,http://www.delijn.be:80":{"setting":1},"https://www.belfius.be:443,https://www.belfius.be:443":{"last_used":1438682660.603408,"setting":1},"https://www.delijn.be:443,https://www.delijn.be:443":{"last_used":1439495916.541372,"setting":1}},"images":{},"javascript":{},"media_stream":{},"media_stream_camera":{},"media_stream_mic":{},"metro_switch_to_desktop":{},"midi_sysex":{},"mixed_script":{},"mouselock":{},"notifications":{},"plugins":{},"popups":{},"ppapi_broker":{},"protocol_handlers":{},"push_messaging":{},"ssl_cert_decisions":{}},"pattern_pairs":{"[*.]cdn.s.vz32.videosz.com,*":{"fullscreen":1},"http://members.nubiles-porn.com:80,http://members.nubiles-porn.com:80":{"fullscreen":1},"http://members.nubiles.net:80,http://members.nubiles.net:80":{"fullscreen":1},"http://www.delijn.be:80,http://www.delijn.be:80":{"geolocation":1,"last_used":{"geolocation":1418841318.805451}},"https://[*.]www.youtube.com:443,*":{"fullscreen":1}},"pref_version":1},"exit_type":"Normal","exited_cleanly":true,"icon_version":3,"managed_user_id":"","migrated_content_settings_exceptions":true,"migrated_default_content_settings":true,"migrated_default_media_stream_content_settings":true,"name":"Eerste gebruiker","password_manager_groups_for_domains":[null,null,null,null,1,0,3],"per_host_zoom_levels":{}},"protection":{"macs":{}},"savefile":{"default_directory":"C:\\Users\\gebruiker\\Desktop"},"selectfile":{"last_directory":"C:\\Users\\gebruiker\\Documents\\My Scans"},"session":{"restore_on_startup_migrated":true,"startup_urls_migration_time":"13033671325472244"},"spellcheck":{"use_spelling_service":false},"sync":{"memory_warning_count":50},"translate_accepted_count":{"af":0,"be":0,"en":0,"fr":0,"ru":0},"translate_blocked_languages":["en","nl"],"translate_denied_count":{"af":1,"be":1,"en":3,"fr":20,"ru":1},"translate_language_blacklist":["en"],"translate_last_denied_time":1429214435163.645,"translate_site_blacklist":["www.frbe-kbsb.be"],"translate_too_often_denied":true,"translate_whitelists":{}} ==== Chromium Fix ====================== C:\Users\gebruiker\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fundfinder.tijd.be_0.localstorage deleted successfully C:\Users\gebruiker\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fundfinder.tijd.be_0.localstorage-journal deleted successfully C:\Users\gebruiker\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0.localstorage deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.tijd.be/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.tijd.be/" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&form=IE9TR&src=IE9TR&pc=CMDTDFJS" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="https://www.google.com/search?q={searchTerms}" ==== Reset Google Chrome ====================== C:\Users\gebruiker\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\gebruiker\AppData\Local\Google\Chrome\User Data\Default\Preferences.bad was reset successfully C:\Users\gebruiker\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully C:\Users\gebruiker\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\gebruiker\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{5fe053bf-f8ea-49b1-ae11-78623e9fad91} deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify Web Helper deleted successfully ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\gebruiker\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\gebruiker\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XLWEBYL9 will be deleted at reboot ==== Empty FireFox Cache ====================== C:\Users\gebruiker\AppData\Local\Mozilla\Firefox\Profiles\edwpibk4.default-1397159426056\cache2 emptied successfully ==== Empty Chrome Cache ====================== C:\Users\gebruiker\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== C:\zoek_backup (files=310 folders=73 99489039 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\gebruiker\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot