Zoek.exe v5.0.0.0 Updated 23-09-2015 Tool run by Saar on vr 25/09/2015 at 16:02:59,24. Microsoft Windows 8.1 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Saar\Downloads\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 25/09/2015 16:11:21 Zoek.exe System Restore Point Created Successfully. ==== Torpig Check ====================== HKEY_CLASSES_ROOT\Directory\shellex\CopyHookHandlers\FileSystem {217FC9C0-3AEA-1069-A2DB-08002B30309D} %SystemRoot%\system32\shell32.dll HKEY_CLASSES_ROOT\Directory\shellex\CopyHookHandlers\Sharing {40dd6e20-7c17-11ce-a804-00aa003ca9f6} %SystemRoot%\system32\ntshrui.dll ==== Empty Folders Check ====================== C:\PROGRA~2\AVS4YOU deleted successfully C:\Program Files\log deleted successfully C:\Users\Saar\AppData\Roaming\Solvusoft deleted successfully C:\Users\Saar\AppData\Local\EmieBrowserModeList deleted successfully C:\Users\Saar\AppData\Local\EmieSiteList deleted successfully C:\Users\Saar\AppData\Local\EmieUserList deleted successfully C:\Users\Saar\AppData\Local\LogMeIn Rescue Applet deleted successfully C:\Users\Saar\AppData\Local\MediaShow deleted successfully C:\Users\Saar\AppData\Local\PackageStaging deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3001055638-843259212-2275735595-1002\Software\Microsoft\Internet Explorer\SearchScopes\{6A15E12E-4CCD-4D68-851E-4AA9D8024725} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{6A15E12E-4CCD-4D68-851E-4AA9D8024725} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A15E12E-4CCD-4D68-851E-4AA9D8024725} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] ==== Deleting Files \ Folders ====================== C:\PROGRA~2\AVS4YOU not found C:\PROGRA~3\APN deleted C:\PROGRA~3\{C19CA186-4F06-4E22-A1E6-6BAB4723A0DE} deleted C:\PROGRA~3\{ECA9D0D4-7782-4B7F-96E2-FDB0CF0A57D5} deleted C:\PROGRA~3\Package Cache deleted C:\Users\Default\AppData\Local\Pokki deleted C:\Users\Saar\AppData\Local\DownloadManager deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted C:\Windows\SysNative\roboot64.exe deleted C:\Windows\SysNative\config\systemprofile\Searches deleted C:\Windows\Syswow64\REN6F13.tmp deleted "C:\windows\SysNative\drivers\aswF323.tmp" deleted "C:\windows\SysNative\drivers\aswF322.tmp" deleted "C:\windows\SysNative\drivers\aswF311.tmp" deleted "C:\windows\SysNative\drivers\aswF301.tmp" deleted "C:\windows\SysNative\drivers\aswF2F0.tmp" deleted "C:\windows\SysNative\drivers\aswF2EF.tmp" deleted "C:\windows\SysNative\drivers\aswF2DF.tmp" deleted "C:\windows\SysNative\drivers\aswF29F.tmp" deleted "C:\Windows\Installer\2601057.msi" deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2015-09-24 18:17:41 F0ECBDA4D2FD129FF15C299AF8462FC8 43112 ----a-w- C:\Windows\avastSS.scr ====== C:\Users\Saar\AppData\Local\Temp ==== 2015-09-24 08:44:08 36ADAF0BBA7309E3636972FC9E8C952A 126976 ------w- C:\Users\Saar\AppData\Local\Temp\{74E9AA34-C9C0-480A-BACA-70915CD45E5C}\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}\InstallHelper.dll 2015-09-24 07:34:03 F117E9CE69478EBEB61AC6423EE563CA 14959048 ----a-w- C:\Users\Saar\AppData\Local\Temp\HPSALight\msiinstaller.exe 2015-09-24 07:34:03 EF0040B18F1FAD53691D5DE48DC245C1 401208 ----a-w- C:\Users\Saar\AppData\Local\Temp\HPSALight\Setup.exe 2015-09-24 07:34:03 A9DD0C40282F057CAD6FC00D7B08128C 127800 ----a-w- C:\Users\Saar\AppData\Local\Temp\HPSALight\UninstallHPSA.exe ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2015-09-24 07:56:57 590B076EAE899C2A0C9BDCFC4B5D47AD 326680 ----a-w- C:\Windows\SysWOW64\SRCOM.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2015-09-24 18:17:50 36F4012709319D4D2F8858DAF2C3117E 378880 ----a-w- C:\Windows\Sysnative\aswBoot.exe 2015-09-24 07:56:59 2FCADCC14F8E540F6ADE4BF92BD8AEDD 155888 ----a-w- C:\Windows\Sysnative\SRSWOW64.dll 2015-09-24 07:56:58 018D3D2478754AA411DE6DA6DE5F8F21 518896 ----a-w- C:\Windows\Sysnative\SRSTSX64.dll 2015-09-24 07:56:57 DF7CA1920EFB497F0B8EAFFC933CDE94 366104 ----a-w- C:\Windows\Sysnative\SRCOM64.dll 2015-09-24 07:56:57 590B076EAE899C2A0C9BDCFC4B5D47AD 326680 ----a-w- C:\Windows\Sysnative\SRCOM.dll 2015-09-24 07:56:57 142E654703597BE5A0189DFE6A28FEB9 1411096 ----a-w- C:\Windows\Sysnative\SRRPTR64.dll 2015-09-24 07:56:56 388107EAB4CBE906656F8D26E5162ED7 451096 ----a-w- C:\Windows\Sysnative\SRAPO64.dll 2015-09-24 07:56:36 20E3BDACDAC4F5021E2FAD014D0E79F3 1959128 ----a-w- C:\Windows\Sysnative\RTSnMg64.cpl 2015-09-24 07:56:35 BE7AB7EDD5BCEB22D660A0E3DF0A1B5A 2860760 ----a-w- C:\Windows\Sysnative\RtPgEx64.dll 2015-09-24 07:56:32 CA1D7D09854D305A64B100DC1400BA21 331880 ----a-w- C:\Windows\Sysnative\RtlCPAPI64.dll 2015-09-24 07:56:21 8814A281406553A2640D6A04702C63BD 14952 ----a-w- C:\Windows\Sysnative\RtkCoLDR64.dll 2015-09-24 07:56:21 0805289E121F3E3C458C970B08314EB2 149608 ----a-w- C:\Windows\Sysnative\RtkCfg64.dll 2015-09-24 07:56:18 E8376BD96EA2A385C8AF96EC7D89D800 3186544 ----a-w- C:\Windows\Sysnative\RtkApi64.dll 2015-09-24 07:56:17 ECAEC5FBBBEF8612AF0A866AFA5F7EF2 101208 ----a-w- C:\Windows\Sysnative\RTEEL64A.dll 2015-09-24 07:56:17 D0D0D82B7366E691275E433CD34F89B2 375128 ----a-w- C:\Windows\Sysnative\RTEEP64A.dll 2015-09-24 07:56:17 6F4CD493196100EEF349D7132CECAFD9 78680 ----a-w- C:\Windows\Sysnative\RTEEG64A.dll 2015-09-24 07:56:16 A6286A6C7A1BBFCBA17AA54384A21D1C 204120 ----a-w- C:\Windows\Sysnative\RTEED64A.dll 2015-09-24 07:56:16 69F4D2BA4AC7696C0B9910E6F6A8C817 628952 ----a-w- C:\Windows\Sysnative\RtDataProc64.dll 2015-09-24 07:56:11 094133AFCF6DF7EDAC117A17DA71351F 1286872 ----a-w- C:\Windows\Sysnative\RTCOM64.dll 2015-09-24 07:56:08 B6FE01558CC03F3866C9AD0ED19261D8 310104 ----a-w- C:\Windows\Sysnative\RP3DHT64.dll 2015-09-24 07:56:07 E9D4A333DF15D06C68AC4BFB9B6581CB 310104 ----a-w- C:\Windows\Sysnative\RP3DAA64.dll 2015-09-24 07:56:05 29E0B3C1AEC7A9A2CAC69D1C77B6F7F2 2857328 ----a-w- C:\Windows\Sysnative\RltkAPO64.dll 2015-09-24 07:55:38 95EB0339D5F50B0EDB87B4F79DAF9CCE 68045824 ----a-w- C:\Windows\Sysnative\RCoRes64.dat 2015-09-24 07:55:37 2841A66A3994C20F0F1292BED839F0A5 958680 ----a-w- C:\Windows\Sysnative\RCoInstII64.dll 2015-09-24 07:54:01 6E14F444A2506049EEC25CB5EDFE0905 113576 ----a-w- C:\Windows\Sysnative\CONEQMSAPOGUILibrary.dll 2015-09-24 07:54:01 3ECF315FE117504D9BDFD6AEFE0A7937 1533120 ----a-w- C:\Windows\Sysnative\CX64APO.dll 2015-09-24 07:53:59 B9B73E9AF77BC79C46E499A1D3B09D67 560328 ----a-w- C:\Windows\Sysnative\AERTAC64.dll 2015-09-24 07:53:59 B3E9EA31E37EDCC1D54CE20504549ABE 108640 ----a-w- C:\Windows\Sysnative\AERTAR64.dll ====== C:\Windows\Sysnative\drivers ===== 2015-09-24 07:56:28 530BEDE1E3699D5A1BC491AA2F5E5A20 4215128 ----a-w- C:\Windows\Sysnative\drivers\RTKVHD64.sys 2015-09-24 07:56:09 C57A6939C5EFE2E12470C2D889D43839 1364423 ----a-w- C:\Windows\Sysnative\drivers\RTAIODAT.DAT 2015-09-09 06:37:56 FEA8FC81431AD93F44D5FBFBBF096AA7 118272 ----a-w- C:\Windows\Sysnative\drivers\bthpan.sys ====== C:\Windows\Tasks ====== 2015-09-04 13:57:49 5CC8E5AE478E4D21973A4EA40D6470DA 2924 ----a-w- C:\Windows\Sysnative\Tasks\Start OPBHOBrokerDesktop 2015-09-04 13:57:48 DD726D2F2D05E527ECEC9BFEEE80D5C7 2912 ----a-w- C:\Windows\Sysnative\Tasks\Start OPBHOBroker 2015-09-04 13:57:48 8190596547F2E3F92700F88CB121B384 2986 ----a-w- C:\Windows\Sysnative\Tasks\Start SimplePass ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-09-24 19:53:43 -------- d-----w- C:\Program Files\trend micro 2015-09-17 12:08:02 -------- d-----w- C:\Program Files\Microsoft Office 15 ======= C:\PROGRA~2 ===== 2015-09-25 14:05:50 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2015-09-24 07:53:27 -------- d-----w- C:\PROGRA~2\COMMON~1\InstallShield 2015-09-17 12:21:36 -------- d-----w- C:\PROGRA~2\COMMON~1\DESIGNER 2015-09-17 12:12:35 -------- d-----w- C:\PROGRA~2\Microsoft Office 2015-09-02 10:55:59 -------- d-----w- C:\PROGRA~2\BellCraft.com ======= C: ===== ====== C:\Users\Saar\AppData\Roaming ====== 2015-09-25 14:01:57 -------- d-----w- C:\Users\Saar\AppData\Roaming\Sun ====== C:\Users\Saar ====== 2015-09-25 14:01:56 -------- d-----w- C:\Users\Saar\.oracle_jre_usage 2015-09-24 19:52:43 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Saar\Downloads\RSITx64.exe 2015-09-24 08:44:12 -------- d-----w- C:\ProgramData\Qualcomm Atheros 2015-09-24 08:40:03 F119524883AF4BAC56581ED77CEEF828 6667640 ----a-w- C:\Users\Saar\Downloads\ccsetup509.exe 2015-09-17 12:09:20 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2015-09-17 12:07:37 D542F419E35AED0A09D606E3150CB80A 1106008 ----a-w- C:\Users\Saar\Downloads\Setup.X86.nl-nl_O365ProPlusRetail_789fd4fd-3e6f-47d9-9409-8bac794015df_TX_PR_.exe 2015-09-02 10:56:01 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DeskBot ====== C: exe-files == === C: other files == 2015-09-25 14:00:44 561DD8B576774B56C5B658CE08991FCC 14130 ----a-w- C:\Program Files\Java\jre1.8.0_60\lib\deploy\ffjcext.zip 2015-09-24 08:46:28 6A940599A059C6C9D6E54D7A3EF356B8 291544 ----a-w- C:\Program Files (x86)\Realtek\Realtek Card Reader\RtsP2Stor.sys 2015-09-24 07:37:36 F59B9B121364EE78EF3B675D1E508D92 1338296 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\resources\guidAcheck.zip 2015-09-24 07:37:34 94C5A1472C1350C7D15760B4B20608D6 254260 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\resources\guid.zip 2015-09-24 07:34:39 8B2FF11AF9FFC104D795CAE5D3BC863E 300 ----a-w- C:\ProgramData\Hewlett-Packard\temp.bat ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-3001055638-843259212-2275735595-1002\Software\Microsoft\Windows\CurrentVersion\Run] "HP Officejet 4620 series (NET)"="C:\Program Files\HP\HP Officejet 4620 series\Bin\ScanToPCActivationApp.exe -deviceID CN29B241NM05RT:NW -scfn HP Officejet 4620 series (NET) -AutoStart 1" "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "StartCCC"="c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe MSRun" "AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvastUI.exe /nogui" "HP Software Update"="C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe" "beid"="C:\Program Files (x86)\Belgium Identity Card\beid35gui.exe /startup" "AgentMonitor"="C:\Program Files (x86)\VTech\DownloadManager\System\AgentMonitor.exe" "AccelerometerSysTrayApplet"="C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe" "HPMessageService"="C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "HP Officejet 4620 series (NET)"="C:\Program Files\HP\HP Officejet 4620 series\Bin\ScanToPCActivationApp.exe -deviceID CN29B241NM05RT:NW -scfn HP Officejet 4620 series (NET) -AutoStart 1" "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " ==== Startup Folders ====================== 2014-10-27 16:40:39 1956 ----a-w- C:\Users\Saar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Inktwaarschuwingen controleren - HP Officejet 4620 series (netwerk).lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\HPCeeScheduleForSaar.job --a-------- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [16/06/2015 09:51] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\doPDF Update" ["C:\Program Files\Softland\novaPDF 8\Driver\UpdateApplication.exe"] "C:\Windows\SysNative\tasks\HPCeeScheduleForSaar" [C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe] "C:\Windows\SysNative\tasks\Start OPBHOBroker" ["C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe"] "C:\Windows\SysNative\tasks\Start OPBHOBrokerDesktop" ["C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe"] "C:\Windows\SysNative\tasks\Start SimplePass" ["C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe"] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{9C1CDD49-84D4-4DB7-BFB3-D23CFA9AE6CB}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon" [C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\First Boot" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF_Utils.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater" [C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe] ==== Folders in C:\PROGRA~3 0-6 Months Old ====================== 2015-05-01 10:42:23 -------- d-----w- C:\PROGRA~3\Adobe 2015-05-04 18:03:17 -------- d-----w- C:\PROGRA~3\IsolatedStorage 2015-08-04 17:04:42 -------- d-----w- C:\PROGRA~3\Skype 2015-09-24 08:44:12 -------- d-----w- C:\PROGRA~3\Qualcomm Atheros ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "firefox@bho.com"="C:\Program Files\Hewlett-Packard\SimplePass\FFBHOExt" [04/09/2015 15:56] ==== Chromium Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions aaaaahlfahldnilidgnlikdckbfehhca - No path found[] gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[19/03/2015 17:00] lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[01/05/2015 11:17] ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://www.google.be/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://www.google.be/" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=HPNTDFJS" ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3001055638-843259212-2275735595-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} deleted successfully HKEY_USERS\S-1-5-21-3001055638-843259212-2275735595-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} deleted successfully HKEY_CLASSES_ROOT\CLSID\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7A6F2EDADB7E5594DB660309B322D3FD deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{ADE2F6A7-E7BD-4955-BD66-30903B223DDF} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\7A6F2EDADB7E5594DB660309B322D3FD deleted successfully ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Saar\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Saar\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Saar\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Saar\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== No Chrome User Data found ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=158 folders=179 126363392 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Saar\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Saar\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted ==== EOF on vr 25/09/2015 at 17:17:11,14 ======================