Zoek.exe v5.0.0.1 Updated 31-December-2015 Tool run by JEAN on ma 15/02/2016 at 13:18:16,20. Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\JEAN\DOWNLOADS\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 15/02/2016 13:22:19 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\Program Files\Anvisoft deleted successfully C:\Program Files\AppendInit deleted successfully C:\Program Files\BearShare Applications deleted successfully C:\Program Files\TampaEngine deleted successfully C:\Program Files\TerminusMaker deleted successfully C:\Program Files\UpgradeLeader deleted successfully C:\Program Files\Wondershare deleted successfully C:\PROGRA~2\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} deleted successfully C:\PROGRA~2\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98} deleted successfully C:\Users\JEAN\AppData\Roaming\Opera Software deleted successfully C:\Users\JEAN\AppData\Local\Opera Software deleted successfully C:\Users\JEAN\AppData\Local\Skype deleted successfully C:\Users\JEAN\AppData\Local\StormFall deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3978713732-936569717-2525818349-1000\Software\Microsoft\Internet Explorer\SearchScopes\{7F4EFF06-7032-458e-AE16-1C1D8255C28A} deleted successfully HKEY_USERS\S-1-5-21-3978713732-936569717-2525818349-1000\Software\Classes\VirtualStore\MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7F4EFF06-7032-458e-AE16-1C1D8255C28A} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7F4EFF06-7032-458e-AE16-1C1D8255C28A} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Installed Programs ====================== Adobe Acrobat XI Pro Adobe AIR Adobe Download Assistant Adobe Flash Player 20 ActiveX Adobe Flash Player 20 NPAPI Adobe Reader 8.1.1 - Nederlands Adobe Refresh Manager Advanced SystemCare 9 Apple Application Support Apple Software Update ArcSoft PhotoStudio 5 Avast Free Antivirus AVG AVG Zen BearShare BitTorrent CanoScan Toolbox Ver4.1 CCleaner Compatibiliteitspakket voor het 2007 Microsoft Office system D3DX10 Debut Video Capture Software Driver Booster 3.2 Dropbox Express Burn Express Zip FMW 1 Google Drive Google Earth Google Gmail Notifier Google Update Helper Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) Hotfix for Microsoft Visual Studio 2007 Tools for Applications - ENU (KB946040) Hotfix for Microsoft Visual Studio 2007 Tools for Applications - ENU (KB946308) Hotfix for Microsoft Visual Studio 2007 Tools for Applications - ENU (KB946344) Hotfix for Microsoft Visual Studio 2007 Tools for Applications - ENU (KB947540) Hotfix for Microsoft Visual Studio 2007 Tools for Applications - ENU (KB947789) IncrediMail IncrediMail 2.5 Intel(R) PRO Network Connections Intel© Matrix Storage Manager Intel© ViivT software IObit Malware Fighter 4 IObit Uninstaller Java 8 Update 66 Java 8 Update 72 Java 8 Update 74 Java Auto Updater JetBoost JetClean Lexmark 1400 Series Logitech Vid HD Logitech Webcam Software MakeDisc MediaShow Mesh Runtime Messenger Companion Microsoft .NET Framework 3.5 Language Pack SP1 - nld Microsoft .NET Framework 3.5 SP1 Microsoft .NET Framework 4.5.2 Microsoft .NET Framework 4.5.2 (Nederlands) Microsoft .NET Framework 4.5.2 (NLD) Microsoft Application Error Reporting Microsoft Fix it Center Microsoft Office 2007 Service Pack 3 (SP3) Microsoft Office Access MUI (Dutch) 2007 Microsoft Office Enterprise 2007 Microsoft Office Excel MUI (Dutch) 2007 Microsoft Office File Validation Add-In Microsoft Office Groove MUI (Dutch) 2007 Microsoft Office InfoPath MUI (Dutch) 2007 Microsoft Office OneNote MUI (Dutch) 2007 Microsoft Office Outlook MUI (Dutch) 2007 Microsoft Office PowerPoint MUI (Dutch) 2007 Microsoft Office Proof (Dutch) 2007 Microsoft Office Proof (English) 2007 Microsoft Office Proof (French) 2007 Microsoft Office Proof (German) 2007 Microsoft Office Proofing (Dutch) 2007 Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) Microsoft Office Publisher MUI (Dutch) 2007 Microsoft Office Word MUI (Dutch) 2007 Microsoft Office Word Viewer 2003 Microsoft Silverlight Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - NLD Microsoft Visual Studio Tools for Applications 2.0 - ENU Microsoft Visual Studio Tools for Applications 2.0 Runtime Mozilla Firefox 44.0.2 (x86 nl) Mozilla Maintenance Service MSVCRT MSXML 4.0 SP2 (KB927978) MSXML 4.0 SP2 (KB973688) Nero 8 Essentials neroxml Nitro Reader 3 NVIDIA-configuratiescherm 341.92 NVIDIA Drivers NVIDIA Install Application OpenOffice 4.0.1 OSDownloader PC Tools Registry Mechanic 11.1 PDF Reader Photo Notifier and Animation Creator Picasa 3 PowerDVD PrimoPDF -- brought to you by Nitro PDF Software QuickTime 7 RealDownloader RealNetworks - Microsoft Visual C++ 2008 Runtime RealNetworks - Microsoft Visual C++ 2010 Runtime RealPlayer Realtek High Definition Audio Driver RealUpgrade 1.1 Recuva Security Update for CAPICOM (KB931906) Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111) Security Update for Microsoft .NET Framework 3.5 SP1 (KB2736416) Security Update for Microsoft .NET Framework 3.5 SP1 (KB2840629) Security Update for Microsoft .NET Framework 3.5 SP1 (KB2861697) Security Update for Microsoft .NET Framework 4.5.2 (KB3023224) Security Update for Microsoft .NET Framework 4.5.2 (KB3035490) Security Update for Microsoft .NET Framework 4.5.2 (KB3037581) Security Update for Microsoft .NET Framework 4.5.2 (KB3048077) Security Update for Microsoft .NET Framework 4.5.2 (KB3072310) Security Update for Microsoft .NET Framework 4.5.2 (KB3074230) Security Update for Microsoft .NET Framework 4.5.2 (KB3074550) Security Update for Microsoft .NET Framework 4.5.2 (KB3097996) Security Update for Microsoft .NET Framework 4.5.2 (KB3098781) Security Update for Microsoft .NET Framework 4.5.2 (KB3099869) Security Update for Microsoft .NET Framework 4.5.2 (KB3122656) Security Update for Microsoft .NET Framework 4.5.2 (KB3127229) Security Update for Microsoft Office 2007 suites (KB2596650) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2687409) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2825645) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2880507) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2880508) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2881067) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2881069) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2920795) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB3085549) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB3085616) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB3085620) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB3114742) 32-Bit Edition Security Update for Microsoft Office Access 2007 (KB2596614) 32-Bit Edition Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB3114548) 32-Bit Edition Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB3114745) 32-Bit Edition Security Update for Microsoft Office Excel 2007 (KB3114741) 32-Bit Edition Security Update for Microsoft Office InfoPath 2007 (KB2687406) 32-Bit Edition Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition Security Update for Microsoft Office OneNote 2007 (KB2889915) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB3114429) 32-Bit Edition Security Update for Microsoft Office Publisher 2007 (KB2880506) 32-Bit Edition Security Update for Microsoft Office Word 2007 (KB3114748) 32-Bit Edition Segoe UI Skype Click to Call SkypeT 7.18 Smart Defrag 2 Smart Defrag 4 Software Informer 1.0 BETA SpeedBit Video Accelerator Spelling Dictionaries Support For Adobe Reader 8 Surfing Protection Taalpakket voor Microsoft .NET Framework 3.5 SP1 - NL Taalpakket voor Microsoft Visual Studio 2010 Tools for Office Runtime (x86) - NLD TuneUp Utilities 2013 TuneUp Utilities Language Pack (nl-NL) Ulead VideoStudio SE DVD Update for 2007 Microsoft Office System (KB967642) Update for Microsoft .NET Framework 3.5 SP1 (KB963707) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2965286) 32-Bit Edition Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition Update for Microsoft Office Outlook 2007 Junk Email Filter (KB3114743) 32-Bit Edition Update voor Microsoft Office Excel 2007 Help (KB963678) Update voor Microsoft Office Powerpoint 2007 Help (KB963669) Update voor Microsoft Office Word 2007 Help (KB963665) USB2.0 Capture Device VCRedistSetup VideoPad Video Editor Visual Studio 2012 x86 Redistributables VLC media player Winamp Windows 7 Upgrade Advisor Windows Live Communications Platform Windows Live Essentials Windows Live Family Safety Windows Live ID Sign-in Assistant Windows Live Installer Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen Windows Live Mesh Windows Live Messenger Windows Live Messenger Companion Core Windows Live Movie Maker Windows Live Photo Common Windows Live Photo Gallery Windows Live PIMT Platform Windows Live Remote Client Windows Live Remote Client Resources Windows Live Remote Service Windows Live Remote Service Resources Windows Live SOXE Windows Live SOXE Definitions Windows Live UX Platform Windows Live UX Platform Language Pack Windows Live Writer Windows Live Writer Resources WinRAR 5.30 beta 5 (32-bit) WinZip Self-Extractor X10 Hardware(TM) ==== Deleting Services ====================== ==== FireFox Fix ====================== ProfilePath: C:\Users\JEAN\AppData\Roaming\Mozilla\Firefox\Profiles\3ov9jk1c.default-1449582130791 user.js not found ---- Lines speedbit removed from prefs.js ---- user_pref("keyword.URL", "http://go.speedbit.com/search.aspx?site=shdefault&pid=s&shr=d&q={searchTerms}"); ---- FireFox user.js and prefs.js backups ---- prefs_20161502_1427_.backup ProfilePath: C:\Users\JEAN\AppData\Roaming\Mozilla\Firefox\Profiles\h95dk60a.default-1450264869328 user.js not found ---- FireFox user.js and prefs.js backups ---- prefs_20161502_1427_.backup ==== Deleting Files \ Folders ====================== C:\Program Files\Anvisoft not found C:\Program Files\AppendInit not found C:\Program Files\BearShare Applications not found C:\Program Files\TampaEngine not found C:\Program Files\TerminusMaker not found C:\Program Files\UpgradeLeader not found C:\Program Files\Wondershare not found C:\PROGRA~2\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} not found C:\PROGRA~2\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98} not found "C:\Program Files\shopperz" not found C:\Users\JEAN\AppData\Local\Wondershare deleted C:\Windows\system32\Tasks\0116avUpdateInfo deleted C:\Windows\tasks\0116avUpdateInfo.job deleted C:\PROGRA~2\{085d3556-38eb-4489-085d-d355638ed558} deleted C:\PROGRA~2\{2a05d8d1-ae55-5090-2a05-5d8d1ae56346} deleted C:\PROGRA~2\{2a26637c-d50b-7599-2a26-6637cd508df3} deleted C:\PROGRA~2\{60eb2333-3734-1160-60eb-b23333738ccc} deleted C:\PROGRA~2\{85a45614-39ee-adfa-85a4-4561439e5850} deleted C:\PROGRA~2\{d8ef6a4e-fb18-1b6e-d8ef-f6a4efb1a93b} deleted C:\Users\JEAN\Documents\OneSafe PC Cleaner deleted C:\Program Files\Common Files\1a0254e4-d458-47fa-82a0-6940ee729f6c deleted C:\Program Files\Common Files\Wondershare deleted C:\Program Files\Common Files\SpeedBit deleted C:\filterdesc (2).xml deleted C:\filterdesc.xml deleted C:\properties (2).xml deleted C:\properties.xml deleted C:\found.000 deleted C:\found.001 deleted C:\found.002 deleted C:\Users\JEAN\AppData\Roaming\Solvusoft deleted C:\Users\JEAN\AppData\Roaming\Wondershare deleted C:\Users\JEAN\AppData\Roaming\LogFile.txt deleted C:\Users\JEAN\AppData\Roaming\ProductData deleted C:\Users\JEAN\AppData\Roaming\Registry Mechanic deleted C:\PROGRA~2\SPL1692.tmp deleted C:\PROGRA~2\SPL4B51.tmp deleted C:\PROGRA~2\SPL641E.tmp deleted C:\PROGRA~2\SPL721.tmp deleted C:\PROGRA~2\SPL904.tmp deleted C:\PROGRA~2\SPL97EB.tmp deleted C:\PROGRA~2\SPLA161.tmp deleted C:\PROGRA~2\SPLC614.tmp deleted C:\PROGRA~2\SPLD906.tmp deleted C:\PROGRA~2\SPLDE64.tmp deleted C:\PROGRA~2\Avg_Update_0116av deleted C:\PROGRA~2\Reimage Protector deleted C:\PROGRA~2\ProductData deleted C:\PROGRA~2\SpeedBit deleted C:\PROGRA~2\{5A85B23A-4B58-47D1-9B9C-DFBD7866099F} deleted C:\PROGRA~2\{746B37DB-B7A6-43BE-85D2-74478CF434B4} deleted C:\PROGRA~2\{ACBCD40A-42A8-4FF9-BD42-ABCD14998CBA} deleted C:\PROGRA~2\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705} deleted C:\PROGRA~2\{D76294E6-03B8-4971-AF2E-3F846161A690} deleted C:\PROGRA~2\{EC76B119-3D47-4A2C-8BDC-5CCE7F3C15AB} deleted C:\PROGRA~2\Package Cache deleted C:\Users\JEAN\AppData\Local\BearShare deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare deleted C:\rei deleted C:\Users\JEAN\AppData\LocalLow\Company deleted C:\Windows\system32\config\systemprofile\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A} deleted C:\Windows\Reimage.ini deleted C:\Windows\system32\tasks\ASC9_PerformanceMonitor deleted C:\Windows\system32\tasks\SBW_UpdateTask_Time_313431313733333531332d3437415a556c2a3223346c41 deleted C:\Windows\system32\GroupPolicy\Machine deleted C:\Windows\system32\GroupPolicy\User deleted C:\Windows\system32\GroupPolicy\gpt.ini deleted C:\Windows\system32\drivers\DrvAgent32.sys deleted C:\Windows\System32\SETBCAC.tmp deleted C:\Windows\System32\AniGIF.ocx deleted C:\Users\JEAN\AppData\Roaming\Mozilla\Firefox\Profiles\h95dk60a.default-1450264869328\jetpack deleted C:\Users\Public\Desktop\OSDownloader.lnk deleted "C:\ProgramData\lxdj" deleted "C:\PROGRA~2\SPLC14C.tmp" not deleted "C:\Users\JEAN\AppData\Local\AVAST Software\APM\JEAN\7D6Jn6k5wsxcSfX8\kv_pam.db" not deleted "C:\Users\JEAN\AppData\Local\AVAST Software\APM\JEAN\7D6Jn6k5wsxcSfX8\kv_pamcore.db" not deleted "C:\Users\JEAN\AppData\Local\AVAST Software\APM\JEAN\7D6Jn6k5wsxcSfX8\kv_pampub.db" not deleted "C:\Users\JEAN\AppData\Local\AVAST Software\APM\JEAN\7D6Jn6k5wsxcSfX8\pam.db" not deleted "C:\Users\JEAN\AppData\Local\AVAST Software" not deleted "C:\Users\JEAN\AppData\Local\AVAST Software\APM" not deleted "C:\Users\JEAN\AppData\Local\AVAST Software\APM\JEAN" not deleted "C:\Users\JEAN\AppData\Local\AVAST Software\APM\JEAN\7D6Jn6k5wsxcSfX8" not deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2016-02-12 16:46:24 9A4721C52C4746019879D9F8033DCA00 52184 ----a-w- C:\Windows\avastSS.scr ====== C:\Users\JEAN\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\system32 ===== 2016-02-13 14:51:23 E038ECA1655EFFE1F53D9BFE15CC6E83 57344 ----a-w- C:\Windows\System32\iasads.dll 2016-02-13 14:51:23 8CB860A1D6BCA46ED92F4F04A9481374 80896 ----a-w- C:\Windows\System32\MSNP.ax 2016-02-13 14:51:23 4F19FE1CAC322FDB86DECE3625715364 153088 ----a-w- C:\Windows\System32\sbeio.dll 2016-02-13 14:51:23 39B1BB21D9E201F8995B4994D00B16EA 293376 ----a-w- C:\Windows\System32\psisdecd.dll 2016-02-13 14:51:23 25BF95C4AE83CE749A2CEE2F2EFA2D6D 119296 ----a-w- C:\Windows\System32\iasrecst.dll 2016-02-13 14:51:23 1ECEA6CEFD0021252EE11C807309C364 17408 ----a-w- C:\Windows\System32\iashost.exe 2016-02-13 14:51:23 198C793DD8553820B961B3A5D72F570C 57856 ----a-w- C:\Windows\System32\MSDvbNP.ax 2016-02-13 14:51:23 0F7B03E1E1424F608EB6DEB47F859D52 324608 ----a-w- C:\Windows\System32\sdohlp.dll 2016-02-13 14:51:23 0729F32F20B0B2007792518500957E84 48128 ----a-w- C:\Windows\System32\iasdatastore.dll 2016-02-13 14:51:22 C8676F9F0B06981F0316A7D915EEBFFE 323072 ----a-w- C:\Windows\System32\sbe.dll 2016-02-13 14:51:22 C77DF9986EF903911656D5C786688CC0 107520 ----a-w- C:\Windows\System32\mtxoci.dll 2016-02-13 14:51:22 7347F3EF8694C9189D0280AEB0882853 180224 ----a-w- C:\Windows\System32\msorcl32.dll 2016-02-13 14:51:22 7160644ED3AB313AD2904440AE684122 217600 ----a-w- C:\Windows\System32\psisrndr.ax 2016-02-13 14:51:22 23A5CEB465904CF34513A73605CDF5E1 429056 ----a-w- C:\Windows\System32\EncDec.dll 2016-02-13 14:51:22 0064FE12151A441A3C7F3B8873348B4A 69632 ----a-w- C:\Windows\System32\Mpeg2Data.ax 2016-02-13 14:47:14 969D2B980B30DE09941D038A0764359B 1129472 ----a-w- C:\Windows\System32\wininet.dll 2016-02-13 14:47:14 1BAA18CD8F2E26B4D09F5679360534F4 65536 ----a-w- C:\Windows\System32\jsproxy.dll 2016-02-13 14:47:13 C2016A860AA61366116AB94CB41450B6 223232 ----a-w- C:\Windows\System32\dxtrans.dll 2016-02-13 14:47:13 AFA94F317F44D3A424D3F77E4435E2C1 353792 ----a-w- C:\Windows\System32\dxtmsft.dll 2016-02-13 14:47:13 668962E6555B05EEAF5BD452CE6AD4BC 10752 ----a-w- C:\Windows\System32\msfeedssync.exe 2016-02-13 14:47:13 54012A08191A803466AAD9B01CFDC2C8 41472 ----a-w- C:\Windows\System32\msfeedsbs.dll 2016-02-13 14:47:12 D1C1D78F1D7CACCA68AFEC8D56CD10A3 176640 ----a-w- C:\Windows\System32\ieui.dll 2016-02-13 14:47:12 C4A642BE2524203709E781B294103A12 607744 ----a-w- C:\Windows\System32\msfeeds.dll 2016-02-13 14:47:12 76547D27D5C049FEF9D14D17F63C9266 9753600 ----a-w- C:\Windows\System32\ieframe.dll 2016-02-13 14:47:09 E8931C0B7F15CB1828C45D6BE025E95D 11776 ----a-w- C:\Windows\System32\mshta.exe 2016-02-13 14:47:09 C9DE6205C0E80FD299EF3747A2EF6C74 73216 ----a-w- C:\Windows\System32\mshtmled.dll 2016-02-13 14:47:09 3B947D7F4FE162D5A10D22DB81423667 367616 ----a-w- C:\Windows\System32\html.iec 2016-02-13 14:47:08 DFF67FCB000C1435D40464DB7BA8FE8D 12391424 ----a-w- C:\Windows\System32\mshtml.dll 2016-02-13 14:47:08 DA3546FC1BE22FB628C03252FB5B7385 2382848 ----a-w- C:\Windows\System32\mshtml.tlb 2016-02-13 14:47:05 D26C05CA32AE0CA1F0BD87D557E66609 1427968 ----a-w- C:\Windows\System32\inetcpl.cpl 2016-02-13 14:47:04 9B1CC5E0C72C3347460AC4E55D88465B 142848 ----a-w- C:\Windows\System32\ieUnatt.exe 2016-02-13 14:47:03 D96AD7253D88799562B77F5BF6D85258 1804800 ----a-w- C:\Windows\System32\iertutil.dll 2016-02-13 14:47:03 83355604D3E948D5324BD32931DB67D3 231936 ----a-w- C:\Windows\System32\url.dll 2016-02-13 14:47:03 81B283380A45C79BE1BB8929BB933292 1140224 ----a-w- C:\Windows\System32\urlmon.dll 2016-02-13 14:47:02 F555ECC999B92C77236E03F79CE6653D 718848 ----a-w- C:\Windows\System32\jscript.dll 2016-02-13 14:47:02 B93B7D2E749DE9D548CABFF8467E90C9 1815552 ----a-w- C:\Windows\System32\jscript9.dll 2016-02-13 14:47:02 516FB2A58C2B29C48734B05FBEA707A2 424960 ----a-w- C:\Windows\System32\vbscript.dll 2016-02-13 14:46:14 3D5804461D7C6FB2AB5D05C7C49DF093 2068480 ----a-w- C:\Windows\System32\win32k.sys 2016-02-13 14:45:21 DE05829EC81B0C90B16D4637B8BD69CC 49664 ----a-w- C:\Windows\System32\csrsrv.dll 2016-02-13 14:45:21 545A82822D255D9D693162C68B625EC1 802304 ----a-w- C:\Windows\System32\advapi32.dll 2016-02-13 14:45:19 1D01CEDB5EA0D3E84D2AC74BBED83C5D 1316864 ----a-w- C:\Windows\System32\ole32.dll 2016-02-13 14:45:18 CCA3062BC694572D9EB23649B89789EC 894976 ----a-w- C:\Windows\System32\kernel32.dll 2016-02-13 14:45:18 B46E68EF3C7074667ED2F2279DEFE8A7 1208776 ----a-w- C:\Windows\System32\ntdll.dll 2016-02-13 14:45:18 3A63D64CA4FBA5C36F67E775DF0271D7 783872 ----a-w- C:\Windows\System32\rpcrt4.dll 2016-02-13 14:45:17 FCE937930B316DC751A8CE12EC25B8EE 64000 ----a-w- C:\Windows\System32\smss.exe 2016-02-13 14:45:17 B93B0B9BB444967C29841F18893D22D2 3556800 ----a-w- C:\Windows\System32\ntoskrnl.exe 2016-02-13 14:45:17 135A723BCABA82E24459F3AC4E41762A 3609024 ----a-w- C:\Windows\System32\ntkrnlpa.exe 2016-02-13 14:18:18 89BCA72508F26900207403E5FA92D9BC 501760 ----a-w- C:\Windows\System32\kerberos.dll 2016-02-13 14:10:35 210D03805702EC2F19399D3FFDECEC60 334280 ----a-w- C:\Windows\System32\aswBoot.exe 2016-02-07 19:59:36 07E244F0B12F224A91EC8330884DC5C7 474392 ----a-w- C:\Windows\System32\FNTCACHE.DAT 2016-02-05 12:07:54 EE2AE5E64FBBBE9317AA8B72FD576733 344064 ----a-w- C:\Windows\System32\lxdjcoin.dll 2016-02-05 12:05:33 803464C7F064192797BE1531BB06BADA 44 ----a-w- C:\Windows\System32\lxdjrwrd.ini 2016-02-05 12:05:20 D9C8CFE122263A5CFEAC995E1F0B5237 413696 ----a-w- C:\Windows\System32\lxdjinpa.dll 2016-02-05 12:05:20 86CECD3189A10B92FCDA886039531A5F 286720 ----a-w- C:\Windows\System32\lxdjinst.dll 2016-02-05 12:05:20 67EF3BF083D77763D7167C01984DCE95 397312 ----a-w- C:\Windows\System32\lxdjiesc.dll 2016-02-05 12:05:20 40185F213E85D62E959BD7D364E19F95 323584 ----a-w- C:\Windows\System32\lxdjhcp.dll 2016-02-05 12:05:19 85BA242F455B91494B678B2CFDAC64C4 999424 ----a-w- C:\Windows\System32\lxdjusb1.dll 2016-02-05 12:05:19 829AA14F2FFA9D558BC43D424ED14EFD 1232896 ----a-w- C:\Windows\System32\lxdjserv.dll 2016-02-05 12:05:19 3D00BE29F5D516B011D5D7CBD82EEB19 503808 ----a-w- C:\Windows\System32\lxdjutil.dll 2016-02-05 12:05:18 D46B45B4F50DDBBF6BA1EEA7E35E252D 143360 ----a-w- C:\Windows\System32\lxdjjswr.dll 2016-02-05 12:05:18 71362D2737FE5EE3D45AAF0B36E93BBD 163840 ----a-w- C:\Windows\System32\lxdjprox.dll 2016-02-05 12:05:18 535B97F7800C53C70B2FF07747E3FC66 643072 ----a-w- C:\Windows\System32\lxdjpmui.dll 2016-02-05 12:05:18 2AFCF15FB5590B28E8526BCAE7B709E3 585728 ----a-w- C:\Windows\System32\lxdjlmpm.dll 2016-02-05 12:05:18 1160CD60BD0E45100D6428E3E11401ED 94208 ----a-w- C:\Windows\System32\lxdjpplc.dll 2016-02-05 12:05:17 DE709C1C743118A704C5F1020A7AD4D1 723639 ----a-w- C:\Windows\System32\lxdjhelp.chm 2016-02-05 12:05:17 AE474EE9B8BC51BAFB9A7DA260D5A5D1 176128 ----a-w- C:\Windows\System32\lxdjins.dll 2016-02-05 12:05:17 955EAF14A4FEC83C0784ECB553FA3B1E 110592 ----a-w- C:\Windows\System32\lxdjinsr.dll 2016-02-05 12:05:17 8B3B362916D2E1787901984DC09F5C7F 200704 ----a-w- C:\Windows\System32\lxdjinsb.dll 2016-02-05 12:05:17 226934F458953D1C7B1D2121C88B9B0E 385968 ----a-w- C:\Windows\System32\lxdjih.exe 2016-02-05 12:05:16 B14FF5D3D661AD4B2056EF636CC87019 983121 ----a-w- C:\Windows\System32\lxdjgf.dll 2016-02-05 12:05:16 2D64A20A0142C88C916FBF01C224EB73 700416 ----a-w- C:\Windows\System32\lxdjhbn3.dll 2016-02-05 12:05:16 27C5842D6520F86B1B8C77030ED2762F 208896 ----a-w- C:\Windows\System32\lxdjgrd.dll 2016-02-05 12:05:15 E09875AAAAE86502BE47A2E3A4450864 77824 ----a-w- C:\Windows\System32\lxdjcu.dll 2016-02-05 12:05:15 A1E9A2AEB61E02365234175C27DE55F5 684032 ----a-w- C:\Windows\System32\lxdjcomc.dll 2016-02-05 12:05:15 8CD1EC982C3ED27018E4933BEAD2B2E9 86016 ----a-w- C:\Windows\System32\lxdjcub.dll 2016-02-05 12:05:15 890C81812D5D6ECCEACAB66F4D730BAC 36864 ----a-w- C:\Windows\System32\lxdjcur.dll 2016-02-05 12:05:15 67A7DF397FB6A186F7C3BF629853038A 425984 ----a-w- C:\Windows\System32\lxdjcomm.dll 2016-02-05 12:05:15 2338B4CFFF30E103841E90B6E9FA5340 537520 ----a-w- C:\Windows\System32\lxdjcoms.exe 2016-02-05 12:05:14 C603CF7623D29F04461523721E5D5DC6 394160 ----a-w- C:\Windows\System32\lxdjcfg.exe 2016-02-05 12:05:14 ADE9B72B5DDCEECD385BABE6D2F86E3B 1828 ----a-w- C:\Windows\System32\lxdj.loc 2016-02-05 12:05:14 6330BF02881199D863E84C2042990DA1 77906 ----a-w- C:\Windows\System32\lxdjcfg.dll 2016-02-05 12:05:14 5F74788DC0620985498407B465AEB4EE 66768 ----a-w- C:\Windows\System32\LexFiles.ulf ====== C:\Windows\system32\drivers ===== 2016-02-13 14:29:39 DADF6D90942C198CD15D345A9F6CF4CD 115200 ----a-w- C:\Windows\System32\drivers\mrxdav.sys 2016-02-12 16:47:08 22A6F5BA31049C17A455B3CDD47850CC 58016 ----a-w- C:\Windows\System32\drivers\aswFB76.tmp 2016-02-12 16:47:08 00B3DEF0865A109311BACBA6D0BA48A8 165104 ----a-w- C:\Windows\System32\drivers\aswFB17.tmp 2016-02-12 16:47:07 E47257FDFEFFFE7FC1ACACF6FEE03FFD 55200 ----a-w- C:\Windows\System32\drivers\aswF98B.tmp 2016-02-12 16:47:07 DFBCA0C03EF45590835BDF2D72A432C7 812208 ----a-w- C:\Windows\System32\drivers\aswF8EE.tmp 2016-02-12 16:47:07 B5C181CA3960FA8FC698D76380907713 209432 ----a-w- C:\Windows\System32\drivers\aswFAD8.tmp 2016-02-12 16:47:07 966A26534CDBCA6CD54CCF94A2706E6C 49776 ----a-w- C:\Windows\System32\drivers\aswFA78.tmp 2016-02-12 16:47:07 805D12380B865C70E608FBCD9BFC08FD 449384 ----a-w- C:\Windows\System32\drivers\aswFAA8.tmp 2016-02-12 16:47:07 37B7A4D3AED08A1CF205235064B5DCCA 81168 ----a-w- C:\Windows\System32\drivers\aswFA39.tmp 2016-02-12 16:47:07 2C3D73CF3776E2A872B92B1ABF24F1D8 24016 ----a-w- C:\Windows\System32\drivers\aswFA18.tmp 2016-02-12 16:41:16 B5C181CA3960FA8FC698D76380907713 209432 ----a-w- C:\Windows\System32\drivers\asw9C43.tmp 2016-02-12 16:41:16 22A6F5BA31049C17A455B3CDD47850CC 58016 ----a-w- C:\Windows\System32\drivers\asw9E76.tmp 2016-02-12 16:41:16 00B3DEF0865A109311BACBA6D0BA48A8 165104 ----a-w- C:\Windows\System32\drivers\asw9D7C.tmp 2016-02-12 16:41:15 966A26534CDBCA6CD54CCF94A2706E6C 49776 ----a-w- C:\Windows\System32\drivers\asw9944.tmp 2016-02-12 16:41:15 805D12380B865C70E608FBCD9BFC08FD 449384 ----a-w- C:\Windows\System32\drivers\asw9ADB.tmp 2016-02-12 16:41:14 E47257FDFEFFFE7FC1ACACF6FEE03FFD 55200 ----a-w- C:\Windows\System32\drivers\asw95B9.tmp 2016-02-12 16:41:14 37B7A4D3AED08A1CF205235064B5DCCA 81168 ----a-w- C:\Windows\System32\drivers\asw9760.tmp 2016-02-12 16:41:14 2C3D73CF3776E2A872B92B1ABF24F1D8 24016 ----a-w- C:\Windows\System32\drivers\asw9646.tmp 2016-02-12 16:41:12 DFBCA0C03EF45590835BDF2D72A432C7 812208 ----a-w- C:\Windows\System32\drivers\asw8F61.tmp 2016-02-10 03:35:55 22A6F5BA31049C17A455B3CDD47850CC 58016 ----a-w- C:\Windows\System32\drivers\aswAFE.tmp 2016-02-10 03:35:55 00B3DEF0865A109311BACBA6D0BA48A8 165104 ----a-w- C:\Windows\System32\drivers\asw987.tmp 2016-02-10 03:35:54 B5C181CA3960FA8FC698D76380907713 209432 ----a-w- C:\Windows\System32\drivers\asw8AB.tmp 2016-02-10 03:35:54 805D12380B865C70E608FBCD9BFC08FD 449384 ----a-w- C:\Windows\System32\drivers\asw7E0.tmp 2016-02-10 03:35:53 966A26534CDBCA6CD54CCF94A2706E6C 49776 ----a-w- C:\Windows\System32\drivers\asw408.tmp 2016-02-10 03:35:53 37B7A4D3AED08A1CF205235064B5DCCA 81168 ----a-w- C:\Windows\System32\drivers\asw242.tmp 2016-02-10 03:35:52 E47257FDFEFFFE7FC1ACACF6FEE03FFD 55200 ----a-w- C:\Windows\System32\drivers\aswFE1C.tmp 2016-02-10 03:35:52 2C3D73CF3776E2A872B92B1ABF24F1D8 24016 ----a-w- C:\Windows\System32\drivers\asw10.tmp 2016-02-10 03:35:50 DFBCA0C03EF45590835BDF2D72A432C7 812208 ----a-w- C:\Windows\System32\drivers\aswF841.tmp 2016-02-02 12:31:39 D3377858173DC52002631D6DA7F2F3BC 447848 ----a-w- C:\Windows\System32\drivers\aswSP.sys 2016-02-02 12:31:39 C0C9D9E50C9B52D885FBA22CE9DF0B49 67088 ----a-w- C:\Windows\System32\drivers\aswTdi.sys 2016-02-02 12:31:39 56FCF9F1086B80B0CEE022BFB7FF7B25 171608 ----a-w- C:\Windows\System32\drivers\aswStmXP.sys 2016-02-02 12:31:39 43646E5D17727D4F2E1F8FFA06F1472C 221240 ----a-w- C:\Windows\System32\drivers\aswVmm.sys 2016-02-02 12:31:39 303A4C67F046564508F82F515CB0A322 58776 ----a-w- C:\Windows\System32\drivers\aswRvrt.sys 2016-02-02 12:31:38 F609AD9C5973A835955A8DCFA89BD350 812720 ----a-w- C:\Windows\System32\drivers\aswSnx.sys 2016-02-02 12:31:38 C3F5C4413DFE6DF0A6439D18C3345418 32792 ----a-w- C:\Windows\System32\drivers\aswHwid.sys 2016-02-02 12:31:38 A65B8BE010DEF207F35081A9F7AFD685 91168 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys 2016-02-02 12:31:38 1FC67745A457BF62DEA46CF0D4FD821B 64272 ----a-w- C:\Windows\System32\drivers\aswRdr.sys 2016-01-22 14:13:44 A6FC2014F95D196DE657F3BD00AB443C 198576 ----a-w- C:\Windows\System32\drivers\avgmfx86.sys ====== C:\Windows\Tasks ====== 2016-02-02 12:31:49 57D1A5FE10BDF687B4B4255F9F0B5E79 4182 ----a-w- C:\Windows\system32\Tasks\avast! Emergency Update ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2016-02-14 07:37:48 -------- d-----w- C:\Program Files\Common Files\Java 2016-02-13 21:00:41 -------- d-----w- C:\Program Files\ESET 2016-02-12 19:08:43 -------- d-----w- C:\Program Files\Mozilla Maintenance Service(2138) 2016-02-10 04:43:49 -------- d-----w- C:\Program Files\Lexmark 1400 Series(1538) 2016-02-09 19:54:41 -------- d-----w- C:\Program Files\Lexmark 1400 Series(1914) 2016-02-09 16:20:34 -------- d-----w- C:\Program Files\Lexmark 1400 Series(1497) 2016-02-05 12:05:08 -------- d-----w- C:\Program Files\Lexmark 1400 Series 2016-01-20 12:05:56 -------- d-----w- C:\Program Files\IncrediMail ======= C: ===== 2016-02-13 21:21:02 8370514FF8D3E4496BDB15122A18C929 1730 -c--a-w- C:\DelFix.txt ====== C:\Users\JEAN\AppData\Roaming ====== 2016-02-11 16:54:57 -------- d-----w- C:\Users\JEAN\AppData\Local\Adobe 2016-02-07 18:22:54 1C28A794FF56049DA1E9AE637A74B871 137024 ----a-w- C:\Users\JEAN\AppData\Local\GDIPFONTCACHEV1.DAT 2016-02-07 09:42:30 86EC044B55726267C6817D02BAFBEE9A 680 ----a-w- C:\Windows\serviceprofiles\networkservice\AppData\Local\d3d9caps.dat 2016-02-02 10:05:49 -------- d-----w- C:\Users\JEAN\AppData\Local\Avg 2016-02-01 21:19:56 -------- d-----w- C:\Users\JEAN\AppData\Roaming\AVG ====== C:\Users\JEAN ====== 2016-02-15 10:57:58 9A8C873C4EA39888F35C303EE53A969A 814783 ----a-w- C:\ProgramData\SPLC14C.tmp 2016-02-14 07:58:32 760FE17BA150512DBDA5C5E62B2789E1 13506520 -c--a-w- C:\Users\JEAN\DOWNLOADS\IncrediMailSetup_nl(1).exe 2016-02-13 19:45:48 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IncrediMail 2016-02-13 19:42:44 2BAAA42218DEB7B3E29F088222942631 12908968 -c--a-w- C:\Users\JEAN\DOWNLOADS\IncrediMailSetup_nl.exe 2016-02-13 19:37:16 2BAAA42218DEB7B3E29F088222942631 12908968 -c--a-w- C:\Users\JEAN\DOWNLOADS\IncrediMailSetup_nl(7).exe 2016-02-13 19:09:16 9780F37864E305E6C5439538C6609013 307728 -c--a-w- C:\Users\JEAN\DOWNLOADS\del_run(2).exe 2016-02-13 19:04:34 9780F37864E305E6C5439538C6609013 307728 -c--a-w- C:\Users\JEAN\DOWNLOADS\del_run(1).exe 2016-02-13 14:17:57 85E8D8F3831561389B4D7AE353934273 46160152 ----a-w- C:\Users\JEAN\DOWNLOADS\Firefox Setup 43.0.1.exe 2016-02-12 15:08:42 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvisoft 2016-02-05 12:05:32 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lexmark 1400 Series 2016-02-02 12:57:48 -------- d-----w- C:\Users\JEAN\.oracle_jre_usage 2016-02-02 12:29:25 AB9E4DFECAB959D832FB057BCD7CCE8B 5080376 -c----w- C:\Users\JEAN\DOWNLOADS\avast_free_antivirus_setup_online.exe 2016-01-27 10:27:43 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter ====== C: exe-files == 2016-02-14 07:58:46 EDE9BD29CA15BAA528A2EF00405EEDC8 112648 ----a-w- C:\Program Files\IncrediMail\Bin\ImpCnt.exe 2016-02-14 07:58:46 ECC0DDDB8251265E8436963897A28163 296968 ----a-w- C:\Program Files\IncrediMail\Bin\ImApp.exe 2016-02-14 07:58:46 D9D7FA5367EAAEF892EE70FFB4B3E719 43832 ----a-r- C:\Program Files\IncrediMail\Bin\ImSc.exe 2016-02-14 07:58:46 D83A3A75698C53E2677FC91151899DEE 67592 ----a-w- C:\Program Files\IncrediMail\Bin\ImLpp.exe 2016-02-14 07:58:46 A829767214398DE67798F90B23420CF6 120840 ----a-w- C:\Program Files\IncrediMail\Bin\ImSetup.exe 2016-02-14 07:58:46 893F7A7BEFE3D5EF259674C0880A8FFC 27656 ----a-w- C:\Program Files\IncrediMail\Bin\AE\aeldr.exe 2016-02-14 07:58:46 862545CB64EC97D6C766596D9730B736 444424 ----a-w- C:\Program Files\IncrediMail\Bin\IncMail.exe 2016-02-14 07:58:46 85FAA4203F8BA97236BE4BAEF13408E5 129032 ----a-w- C:\Program Files\IncrediMail\Bin\ImBpp.exe 2016-02-14 07:58:46 6A0DC6354595775774E9A0FFDE2638FB 260104 ----a-w- C:\Program Files\IncrediMail\Bin\ImNotfy.exe 2016-02-14 07:58:46 214268B502F3F1FBBF82F210CE9F0CB7 104456 ----a-w- C:\Program Files\IncrediMail\Bin\ImPackr.exe 2016-02-14 07:58:46 1405130E94BBDAEC1D1CB90D5F597465 309256 ----a-w- C:\Program Files\IncrediMail\Bin\ImLc.exe 2016-02-14 07:36:57 F3D7DA0CA42ABA19763572AADEFA79B3 15968 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\policytool.exe 2016-02-14 07:36:57 EE3FD290ABF05A545BB1BB0C3FA09937 16480 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\tnameserv.exe 2016-02-14 07:36:57 ED46E659B1C05DF3EADD89AC47892833 15968 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\rmid.exe 2016-02-14 07:36:57 E4F1F03709605E03D340FF9AD218C980 51808 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\ssvagent.exe 2016-02-14 07:36:57 D4DBBDDC76C532022E8CB8AFF9478AE3 15968 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\pack200.exe 2016-02-14 07:36:57 C39D54245E0735950DFB49966313FAEC 15968 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\servertool.exe 2016-02-14 07:36:57 ABB810BC71476C45E058BD22BA640CDB 15968 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\klist.exe 2016-02-14 07:36:57 87D0619ADE0721BC6FB096C88974611D 16480 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\orbd.exe 2016-02-14 07:36:57 8501B322CCFD60EAECC987FF9EDB816C 15968 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\jjs.exe 2016-02-14 07:36:57 6401CDA3FB118B776A4969A44200C04A 15968 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\rmiregistry.exe 2016-02-14 07:36:57 540EAAF89EBB244E1E3241A424ADC332 15968 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\keytool.exe 2016-02-14 07:36:57 35F6E2F9FD4E619FA619D8CFF68D57CE 77920 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\jp2launcher.exe 2016-02-14 07:36:57 147B7BA248AB1BBE0E54753E0B6EA3FD 15968 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\ktab.exe 2016-02-14 07:36:57 0DD35461A8259AF3E0AAF9332E6EDF67 15968 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\kinit.exe 2016-02-14 07:36:57 03255F4EE5C4D1933EE83E2E34F3D94E 159328 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\unpack200.exe 2016-02-14 07:36:54 F41E9C661B9C782388D2E134AC1D1658 268384 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\javaws.exe 2016-02-14 07:36:54 B3226465FF61165298D2FC35E918D014 191584 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\javaw.exe 2016-02-14 07:36:53 FBBCAC40ADA6C2EB980239296E40B99D 191072 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\java.exe 2016-02-14 07:36:53 F05B19E8DB93DCA0649CCAC3FA7902A7 15968 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\java-rmi.exe 2016-02-14 07:36:53 EB1F4939117B5A6892E2D185B79EBB5B 68704 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\javacpl.exe 2016-02-14 07:36:53 C3FD5ADE09371561126973A7EFEFFA2F 30816 ----a-w- C:\Program Files\Java\jre1.8.0_74\bin\jabswitch.exe 2016-02-13 21:00:49 F0B5FAE0268D84B1CE6EA3B98D4D69EB 331464 ----a-w- C:\Program Files\ESET\ESET Online Scanner\OnlineCmdLineScannerA.exe 2016-02-13 21:00:49 E78517BD20C282FBCA150D2B3ACCC760 2870984 ----a-w- C:\Program Files\ESET\ESET Online Scanner\ESETSmartInstaller.exe 2016-02-13 21:00:49 B23901621E5BD2EF1AAC3E6E6CB9E7FF 422600 ----a-w- C:\Program Files\ESET\ESET Online Scanner\OnlineCmdLineScanner.exe 2016-02-13 21:00:49 4B0F506ACF0A8AE6D6B3E4CF6778B722 122568 ----a-w- C:\Program Files\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe 2016-02-13 21:00:49 21B9AB1916917F9476B767F605345E62 532168 ----a-w- C:\Program Files\ESET\ESET Online Scanner\OnlineScannerApp.exe 2016-02-13 20:40:53 CCF7EC25C67A7C2C359294D9159E52D6 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$INDCOF7.exe 2016-02-13 20:40:53 5AF63989CFA9E58EA8FFED57BB5C5386 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$I8729XB.exe 2016-02-13 20:40:53 28F2728C51943A88FFCC6226F37F4C6C 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IRG0CKB.exe 2016-02-13 20:39:59 7EA0260488F304D68067A50B33A23AC2 1309184 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$R8729XB.exe 2016-02-13 20:39:39 7EA0260488F304D68067A50B33A23AC2 1309184 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$RRG0CKB.exe 2016-02-13 20:34:36 A3A016372D0A4BDEA7CEDBB021DC2D11 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IO28ES5.exe 2016-02-13 20:34:36 885F78F930F0096C16F602AED1EAB4AD 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IGPJT2B.exe 2016-02-13 20:34:36 7DDBF48FAE5B29AE216BC39F6B566F6C 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IZFGJPN.exe 2016-02-13 20:34:36 69416630C289DA522016323BF6D1EECA 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IVANUKA.exe 2016-02-13 20:34:36 50DF86ACA5702AB0F6DCFF0BE70E084D 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IS0DLW2.exe 2016-02-13 20:34:36 411557980DF56554462B9013BDFF46CF 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IEL9I1C.exe 2016-02-13 20:34:36 307FA936CE8EF58A83DE5714BB98A725 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IGNXD8Y.exe 2016-02-13 20:34:36 210AC40F9695B1F0D601D0BA4D53EF4C 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$II4P3S3.exe 2016-02-13 20:34:36 1DBB138BCB9219E4CCA15A3766A41F2A 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IA3J6FO.exe 2016-02-13 20:33:25 7EA0260488F304D68067A50B33A23AC2 1309184 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$RNDCOF7.exe 2016-02-13 20:27:27 7EA0260488F304D68067A50B33A23AC2 1309184 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$RZFGJPN.exe 2016-02-13 20:25:03 7EA0260488F304D68067A50B33A23AC2 1309184 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$RGNXD8Y.exe 2016-02-13 20:24:21 7EA0260488F304D68067A50B33A23AC2 1309184 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$REL9I1C.exe 2016-02-13 20:23:25 7EA0260488F304D68067A50B33A23AC2 1309184 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$RI4P3S3.exe 2016-02-13 20:22:54 7EA0260488F304D68067A50B33A23AC2 1309184 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$RO28ES5.exe 2016-02-13 20:22:21 7EA0260488F304D68067A50B33A23AC2 1309184 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$RVANUKA.exe 2016-02-13 20:21:29 7EA0260488F304D68067A50B33A23AC2 1309184 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$RA3J6FO.exe 2016-02-13 20:20:06 7EA0260488F304D68067A50B33A23AC2 1309184 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$RS0DLW2.exe 2016-02-13 20:18:11 7EA0260488F304D68067A50B33A23AC2 1309184 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$RGPJT2B.exe 2016-02-13 19:44:37 E5ACB78E14051A5892FC094FA5E116F9 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$I9ERM8E.exe 2016-02-13 19:44:37 CFDCE61261111E98B3D4E25FDAAF0F3B 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$I2YFNQF.exe 2016-02-13 19:44:37 A6E5712B5EB103537DB5E9FEF5B4632A 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IHJCX0U.exe 2016-02-13 19:44:37 83576E9CAB28A1A55B71228B063E9A62 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$I1PUKKD.exe 2016-02-13 19:44:37 1ABDFB13C8982974AE2C92781869777E 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IKTJ15Q.exe 2016-02-13 19:44:16 E1D9692D90E8B280730D17BCD5A9E02E 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$I1AR67X.exe 2016-02-13 19:43:50 11FE0011E95C6DFC3F936B45D619B902 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IZDJ53G.exe 2016-02-13 19:43:45 84EF8F4F8D3904191EF90A07F2AF8BFA 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IRH2965.exe 2016-02-13 19:41:30 C98CB8AF3EAB0166005CF3A70953A3D3 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IRUCLIG.exe 2016-02-13 15:18:25 D9D7FA5367EAAEF892EE70FFB4B3E719 43832 ----a-r- C:\Program Files\IncrediMail\Bin\ImSc_IObitDel.exe 2016-02-13 15:15:23 2BAAA42218DEB7B3E29F088222942631 12908968 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$R9ERM8E.exe 2016-02-13 15:00:29 2BAAA42218DEB7B3E29F088222942631 12908968 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$RKTJ15Q.exe 2016-02-13 14:56:24 F5D83C1BC7A4079561CD5D8680C19F37 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$I86F66D.exe 2016-02-13 14:56:24 E38B34C788F1A1AAB60C8F5205714C18 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IEDQ9JD.exe 2016-02-13 14:56:24 95BAA5D7F8BE96BCAC382D92491A6C91 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IPP0543.exe 2016-02-13 14:56:24 706BEB3EF7C52A411A07FB9948F3D1D6 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IN9S52I.exe 2016-02-13 14:56:24 55BC1BD25086C27C4CB29A82D10C8611 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IMPTQMM.exe 2016-02-13 14:56:24 46029705C48EED7EE3096786C1585EB5 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IRZZQ2D.exe 2016-02-13 14:56:24 211154991F3002249344535BA487BD72 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IPLZ9W2.exe 2016-02-13 14:56:24 08947B1480F53051A3913BDB586070A1 544 -c--a-w- C:\$RECYCLE.BIN\S-1-5-21-3978713732-936569717-2525818349-1000\$IQIYS5S.exe 2016-02-13 14:47:06 2264859229A859465C8CF2D3E99A0B5A 223232 ----a-w- C:\Program Files\Internet Explorer\ielowutil.exe 2016-02-13 14:47:05 5C0C5F297ECDA038EE1655F3B3CEEEA4 22528 ----a-w- C:\Program Files\Internet Explorer\ExtExport.exe 2016-02-13 14:47:05 3F2C8032B7AA3FA1BF261AB59DFBD309 474624 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe 2016-02-13 14:47:04 66239A66590F83CDBDE54098AB069831 758000 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe === C: other files == 2016-02-15 10:00:49 8C69F521E5F5C03AEEDEE1EDE520D535 96 ---ha-w- C:\Program Files\Common Files\X10\Common\x10prod.sys 2016-02-14 07:36:57 9CD6EC6439D0519B1D73F59581E5C13A 14130 ----a-w- C:\Program Files\Java\jre1.8.0_74\lib\deploy\ffjcext.zip ==== Orphaned Tasks deleted from Registry ====================== 0116avUpdateInfo deleted ASC9_PerformanceMonitor deleted avast Emergency Update deleted LaunchSignup deleted RegClean Pro deleted ROC_JAN2013_TB_rmv deleted SBW_UpdateTask_Time_313431313733333531332d3437415a556c2a3223346c41 deleted ==== Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "Advanced SystemCare 9"="C:\Program Files\IObit\Advanced SystemCare\ASCTray.exe /Auto" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "Advanced SystemCare 9"="C:\Program Files\IObit\Advanced SystemCare\ASCTray.exe /Auto" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvastUI.exe /nogui" "IObit Malware Fighter"="C:\Program Files\IObit\IObit Malware Fighter\IMF.exe /autostart" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Acrobat Assistant 8.0] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Acrobat Assistant 8.0" "hkey"="HKLM" "command"="\"C:\\Program Files\\Adobe\\Acrobat 11.0\\Acrobat\\Acrotray.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe Reader Speed Launcher] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe Reader Speed Launcher" "hkey"="HKLM" "command"="\"C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AdobeAAMUpdater-1.0] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="AdobeAAMUpdater-1.0" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Adobe\\OOBE\\PDApp\\UWA\\UpdaterStartupUtility.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Advanced SystemCare 8] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Advanced SystemCare 8" "hkey"="HKCU" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Advanced SystemCare 9] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Advanced SystemCare 9" "hkey"="HKCU" "command"="\"C:\\Program Files\\IObit\\Advanced SystemCare\\ASCTray.exe\" /Auto" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CCleaner Monitoring] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="CCleaner Monitoring" "hkey"="HKCU" "command"="\"C:\\Program Files\\CCleaner\\CCleaner.exe\" /MONITOR" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ehTray.exe] "command"="c:\\windows\\ehome\\ehtray.exe" "hkey"="HKCU" "item"="ehTray.exe" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IObit Malware Fighter] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="IObit Malware Fighter" "hkey"="HKLM" "command"="\"C:\\Program Files\\IObit\\IObit Malware Fighter\\IMF.exe\" /autostart" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\lxdjamon] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="lxdjamon" "hkey"="HKLM" "command"="\"C:\\Program Files\\Lexmark 1400 Series\\lxdjamon.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\LXDJCATS] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="LXDJCATS" "hkey"="HKLM" "command"="rundll32 C:\\Windows\\system32\\spool\\DRIVERS\\W32X86\\3\\LXDJtime.dll,_RunDLLEntry@16" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\QuickTime Task] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="QuickTime Task" "hkey"="HKLM" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RTHDVCPL] "command"="\"C:\\Program Files\\Realtek\\Audio\\HDA\\RtHDVCpl.exe\" -s" "hkey"="HKLM" "item"="RTHDVCPL" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SpeedBitVideoAccelerator] "command"="\"c:\\program files\\speedbit video accelerator\\videoaccelerator.exe\" /startup" "hkey"="HKCU" "item"="SpeedBitVideoAccelerator" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SSDMonitor] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SSDMonitor" "hkey"="HKLM" "command"="C:\\Program Files\\Common Files\\PC Tools\\sMonitor\\SSDMonitor.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SunJavaUpdateSched" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Java\\Java Update\\jusched.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^JEAN^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^StartUp^Dropbox.lnk] "item"="Dropbox" "backup"="C:\\Windows\\pss\\Dropbox.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\Users\\JEAN\\AppData\\Roaming\\Dropbox\\bin\\Dropbox.exe" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [14/02/2016 08:38] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [03/10/2015 14:54] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ [Undetermined Task] C:\Windows\tasks\RMAutoUpdate.job --a------ C:\Program Files\PC Tools\PC Tools Registry Mechanic\SULauncher.exe [21/08/2012 14:44] ==== Other Scheduled Tasks ====================== "C:\Windows\system32\tasks\Adobe Acrobat Update Task" [C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\system32\tasks\ASC9_SkipUac_JEAN" ["C:\Program Files\IObit\Advanced SystemCare\ASC.exe" /SkipUac] "C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\system32\tasks\Driver Booster Scheduler" [C:\Program Files\IObit\Driver Booster\Scheduler.exe] "C:\Windows\system32\tasks\Driver Booster SkipUAC (JEAN)" [C:\Program Files\IObit\Driver Booster\DriverBooster.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe] "C:\Windows\system32\tasks\JetBoost_AutoUpdate" [C:\Program Files\BlueSprig\JetBoost\AutoUpdate.exe] "C:\Windows\system32\tasks\JetCleanLoginCheckUpdate" [C:\Program Files\BlueSprig\JetClean\AutoUpdate.exe] "C:\Windows\system32\tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-3978713732-936569717-2525818349-1000" [C:\Program Files\Real\RealUpgrade\RealUpgrade.exe] "C:\Windows\system32\tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-3978713732-936569717-2525818349-1000" [C:\Program Files\Real\RealUpgrade\RealUpgrade.exe] "C:\Windows\system32\tasks\RMAutoUpdate" [C:\Program Files\PC Tools\PC Tools Registry Mechanic\SULauncher.exe] "C:\Windows\system32\tasks\SmartDefrag4_Startup" [C:\Program Files\IObit\Smart Defrag 4\SmartDefrag.exe] "C:\Windows\system32\tasks\SmartDefrag4_Update" [C:\Program Files\IObit\Smart Defrag 4\AutoUpdate.exe] "C:\Windows\system32\tasks\TuneUpUtilities_Task_BkGndMaintenance2013" [C:\Program Files\TuneUp Utilities 2013\OneClick.exe] "C:\Windows\system32\tasks\Uninstaller_SkipUac_JEAN" [C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe] "C:\Windows\system32\tasks\User_Feed_Synchronization-{967768D1-D14E-4645-A8FF-A2DC5B79E8DA}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe] "C:\Windows\system32\tasks\NCH Software\DebutReminder" [C:\Program Files\NCH Software\Debut\Debut.exe] "C:\Windows\system32\tasks\NCH Software\ExpressBurnDowngrade" [C:\Program Files\NCH Software\ExpressBurn\ExpressBurn.exe] "C:\Windows\system32\tasks\NCH Software\ExpressBurnReminder" [C:\Program Files\NCH Software\ExpressBurn\ExpressBurn.exe] "C:\Windows\system32\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Start and Search pages ====================== ProfilePath: C:\Users\JEAN\AppData\Roaming\Mozilla\Firefox\Profiles\3ov9jk1c.default-1449582130791 user_pref("browser.search.selectedEngine", ""); ProfilePath: C:\Users\JEAN\AppData\Roaming\Mozilla\Firefox\Profiles\h95dk60a.default-1450264869328 user_pref("browser.startup.homepage", "https://www.google.be/"); ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "jid1-r1tDuNiNb4SEww@jetpack"="C:\Program Files\AVAST Software\Avast\pam\FF" [13/02/2016 16:27] ==== Firefox Extensions ====================== ProfilePath: C:\Users\JEAN\AppData\Roaming\Mozilla\Firefox\Profiles\h95dk60a.default-1450264869328 - Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi AppDir: C:\Program Files\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\JEAN\AppData\Roaming\Mozilla\Firefox\Profiles\3ov9jk1c.default-1449582130791 04AF8BC83A89D9B71F7E0BCAF9FDD768 - C:\Program Files\Adobe\Reader 8.0\Reader\browser\nppdf32.dll - Adobe Acrobat 637839AC6ED995510A411327C5C2DA61 - C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll - AdobeAAMDetect 005EBE4A4E6E9C9A7967F6C3F413C1DF - C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll - Adobe Acrobat 52CE0DBFD9738AE528CF525A0367EBEB - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin 558270B968CB82196CB8D045D13B0FF6 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll - RealDownloader Plugin 06E140A567B8DC7900173197FD059EE5 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll - RealNetworks(tm) RealDownloader HTML5VideoShim Plug-In (32-bit) 0ABF093757E9C827E30EC652868E5FAC - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll - RealNetworks(tm) RealDownloader PepperFlashVideoShim Plug-In (32-bit) FEF9ECECFA177AEC0F7564A08394D2C8 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll - RealNetworks(tm) RealDownloader Chrome Background Extension Plug-In (32-bit) EBEEC9B1FB8BC809C719713A36640966 - C:\Program Files\Real\RealPlayer\Netscape6\nprpplugin.dll - RealPlayer Download Plugin E18B5B26F41D8C37CCAA7256F29F6A15 - C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll - RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) AF238FE4B2943431A6706AA6541A3243 - C:\Program Files\Nitro\Reader 3\npnitromozilla.dll - Nitro PDF plugin for Firefox and Chrome AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation C517E5EA7CEE783F3681F62D2A362E5B - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live? Photo Gallery C31B6A791FCE695AF17177DB8D82AD4C - C:\Program Files\Java\jre1.8.0_66\bin\plugin2\npjp2.dll - Java(TM) Platform SE 8 U66 E968ABF8430AFEF01B69419279F19EFF - C:\Program Files\Java\jre1.8.0_66\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 8.0.660.17 5B4DA1113F240C3F06FFF9D52761528B - C:\Program Files\Google\Picasa3\npPicasa3.dll - Picasa 5B92CB0A3EEE50F6B9AE036B4F9B0F0C - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin CD714A672DD8DEA4332A4D98851B7B10 - C:\Program Files\Nitro\Reader 3\npdf.dll - Nitro PDF Library 1D8E7E814CF7E0DCBD80005061BBE561 - C:\Program Files\Nitro\Reader 3\npnitroie.dll - Nitro PDF plugin for Internet Explorer 4E31DE484AD120894D0D3E7740979108 - C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll - AdobeAAMDetect Profilepath: C:\Users\JEAN\AppData\Roaming\Mozilla\Firefox\Profiles\h95dk60a.default-1450264869328 04AF8BC83A89D9B71F7E0BCAF9FDD768 - C:\Program Files\Adobe\Reader 8.0\Reader\browser\nppdf32.dll - Adobe Acrobat 637839AC6ED995510A411327C5C2DA61 - C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll - AdobeAAMDetect 005EBE4A4E6E9C9A7967F6C3F413C1DF - C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll - Adobe Acrobat 52CE0DBFD9738AE528CF525A0367EBEB - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin AF8A94BCB98C299C49B28CC12EBC0ED2 - C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll - Google Update 558270B968CB82196CB8D045D13B0FF6 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll - RealDownloader Plugin 06E140A567B8DC7900173197FD059EE5 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll - RealNetworks(tm) RealDownloader HTML5VideoShim Plug-In (32-bit) 0ABF093757E9C827E30EC652868E5FAC - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll - RealNetworks(tm) RealDownloader PepperFlashVideoShim Plug-In (32-bit) FEF9ECECFA177AEC0F7564A08394D2C8 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll - RealNetworks(tm) RealDownloader Chrome Background Extension Plug-In (32-bit) EBEEC9B1FB8BC809C719713A36640966 - C:\Program Files\Real\RealPlayer\Netscape6\nprpplugin.dll - RealPlayer Download Plugin E18B5B26F41D8C37CCAA7256F29F6A15 - C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll - RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) AF238FE4B2943431A6706AA6541A3243 - C:\Program Files\Nitro\Reader 3\npnitromozilla.dll - Nitro PDF plugin for Firefox and Chrome AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation C517E5EA7CEE783F3681F62D2A362E5B - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live? Photo Gallery 1B743D5B6FD001660FAB17DD7C347A38 - c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll - Silverlight Plug-In D952747FC759C6078958A436192A63BE - C:\Program Files\Java\jre1.8.0_74\bin\plugin2\npjp2.dll - Java(TM) Platform SE 8 U74 2D69A78A3BFE4F66E7C664AFC2F2902D - C:\Program Files\Java\jre1.8.0_74\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 8.0.740.2 5B4DA1113F240C3F06FFF9D52761528B - C:\Program Files\Google\Picasa3\npPicasa3.dll - Picasa 5B92CB0A3EEE50F6B9AE036B4F9B0F0C - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin 6FE651F6E3025AD51CC1D54913AEEADC - C:\Windows\system32\Macromed\Flash\NPSWF32_20_0_0_306.dll - Shockwave Flash 4F3F6B17B4A5BDB68B3CB0367A2C214E - c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrlui.dll - Microsoft® Silverlight CD714A672DD8DEA4332A4D98851B7B10 - C:\Program Files\Nitro\Reader 3\npdf.dll - Nitro PDF Library 1D8E7E814CF7E0DCBD80005061BBE561 - C:\Program Files\Nitro\Reader 3\npnitroie.dll - Nitro PDF plugin for Internet Explorer 4E31DE484AD120894D0D3E7740979108 - C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll - AdobeAAMDetect Profilepath: C:\Users\JEAN\AppData\Roaming\Mozilla\Firefox\Profiles\lrhxwxy8.default 04AF8BC83A89D9B71F7E0BCAF9FDD768 - C:\Program Files\Adobe\Reader 8.0\Reader\browser\nppdf32.dll - Adobe Acrobat 637839AC6ED995510A411327C5C2DA61 - C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll - AdobeAAMDetect 005EBE4A4E6E9C9A7967F6C3F413C1DF - C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll - Adobe Acrobat 52CE0DBFD9738AE528CF525A0367EBEB - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin AF8A94BCB98C299C49B28CC12EBC0ED2 - C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll - Google Update 558270B968CB82196CB8D045D13B0FF6 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll - RealDownloader Plugin 06E140A567B8DC7900173197FD059EE5 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll - RealNetworks(tm) RealDownloader HTML5VideoShim Plug-In (32-bit) 0ABF093757E9C827E30EC652868E5FAC - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll - RealNetworks(tm) RealDownloader PepperFlashVideoShim Plug-In (32-bit) FEF9ECECFA177AEC0F7564A08394D2C8 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll - RealNetworks(tm) RealDownloader Chrome Background Extension Plug-In (32-bit) EBEEC9B1FB8BC809C719713A36640966 - C:\Program Files\Real\RealPlayer\Netscape6\nprpplugin.dll - RealPlayer Download Plugin E18B5B26F41D8C37CCAA7256F29F6A15 - C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll - RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) AF238FE4B2943431A6706AA6541A3243 - C:\Program Files\Nitro\Reader 3\npnitromozilla.dll - Nitro PDF plugin for Firefox and Chrome AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation C517E5EA7CEE783F3681F62D2A362E5B - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live? Photo Gallery 1B743D5B6FD001660FAB17DD7C347A38 - c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll - Silverlight Plug-In 1738F94BF1EA8A0F14C0B25C9B470EB8 - C:\Program Files\Java\jre1.8.0_72\bin\plugin2\npjp2.dll - Java(TM) Platform SE 8 U72 AE77DD2DFE3D4FF156BC4E0EA9DE05F3 - C:\Program Files\Java\jre1.8.0_72\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 8.0.720.15 5B4DA1113F240C3F06FFF9D52761528B - C:\Program Files\Google\Picasa3\npPicasa3.dll - Picasa 5B92CB0A3EEE50F6B9AE036B4F9B0F0C - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin 4E31DE484AD120894D0D3E7740979108 - C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll - AdobeAAMDetect 1D8E7E814CF7E0DCBD80005061BBE561 - C:\Program Files\Nitro\Reader 3\npnitroie.dll - Nitro PDF plugin for Internet Explorer CD714A672DD8DEA4332A4D98851B7B10 - C:\Program Files\Nitro\Reader 3\npdf.dll - Nitro PDF Library 4F3F6B17B4A5BDB68B3CB0367A2C214E - c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrlui.dll - Microsoft® Silverlight ==== Fake Chromium Profiles Check ====================== Fake profile C:\Users\JEAN\AppData\Local\Google\Chrome deleted ==== Chromium Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions efaidnbmnnnibpcajpcglclefindmkaj - C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx[08/05/2014 14:49] gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[12/02/2016 17:46] idhngdhcfkoamngbedgpaokgjbnpdiji - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx[29/11/2012 20:35] lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx[09/04/2012 10:23] Adobe Acrobat - C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj RealDownloader - C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji Skype Click to Call - C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl Chrome Web Store Payments - C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda ==== Chromium Fix ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage deleted successfully C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://www.google.com/?trackid=sp-006" "Search Page"="https://www.google.com/search?trackid=sp-006&q={searchTerms}" "Search Bar"="https://www.google.com/?trackid=sp-006" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://www.google.com/?trackid=sp-006" "Search Page"="https://www.google.com/search?trackid=sp-006&q={searchTerms}" "Search Bar"="https://www.google.com/?trackid=sp-006" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="https://www.google.com/?trackid=sp-006" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" ==== All HKLM and HKCU SearchScopes ====================== HKLM\SearchScopes "DefaultScope"="{E9410C70-B6AE-41FF-AB71-32F4B279EA5F}" HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKLM\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} - https://www.google.com/search?trackid=sp-006&q={searchTerms} HKCU\SearchScopes "DefaultScope"="{E9410C70-B6AE-41FF-AB71-32F4B279EA5F}" HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC HKCU\SearchScopes\{86790FF3-0E90-4153-835D-69D6DC029309} - https://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} - https://www.google.com/search?trackid=sp-006&q={searchTerms} ==== Reset Google Chrome ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Preferences.bad was reset successfully C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\Software\Policies\Google deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 8 deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task deleted successfully ==== Empty IE Cache ====================== C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\IUSR_NMPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\JEAN\AppData\Local\VirtualStore\Windows\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Local\Microsoft\Windows\Temporary Internet Files\Low(1406)\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\ServiceProfiles\LocalService\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Users\JEAN GELELEENS\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Users\JEAN GELELEENS\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Users\JEAN GELELEENS\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low(1406)\Content.IE5 emptied successfully C:\Users\JEAN\Documents\Users\JEAN GELELEENS\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\JEAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== C:\Users\JEAN\AppData\Local\Mozilla\Firefox\Profiles\h95dk60a.default-1450264869328\cache2 will be emptied at reboot ==== Empty Chrome Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=275 folders=99 168241782 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\IUSR_NMPR\AppData\Local\Temp emptied successfully C:\Users\JEAN\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\JEAN\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\PROGRA~2\SPLC14C.tmp" not found "C:\Users\JEAN\AppData\Local\AVAST Software\APM\JEAN\7D6Jn6k5wsxcSfX8\kv_pam.db" not deleted "C:\Users\JEAN\AppData\Local\AVAST Software\APM\JEAN\7D6Jn6k5wsxcSfX8\kv_pamcore.db" not deleted "C:\Users\JEAN\AppData\Local\AVAST Software\APM\JEAN\7D6Jn6k5wsxcSfX8\kv_pampub.db" not deleted "C:\Users\JEAN\AppData\Local\AVAST Software\APM\JEAN\7D6Jn6k5wsxcSfX8\pam.db" not deleted "C:\Users\JEAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted "C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted "C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted "C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\ehmsdri.log" not found "C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\ehRecvr.log" not found "C:\Users\JEAN\AppData\Local\AVAST Software" not deleted ==== EOF on ma 15/02/2016 at 15:55:21,56 ======================