Zoek.exe v5.0.0.1 Updated 31-December-2015 Tool run by Sinvudyo on do 26-05-2016 at 21:04:09,69. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Sinvudyo\Downloads\zoek.exe [Scan all users] [Script inserted] ==== System Restore Info ====================== 26-5-2016 21:05:33 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\Users\Sinvudyo\AppData\Roaming\Publish Providers deleted successfully C:\Users\Sinvudyo\AppData\Local\EmieBrowserModeList deleted successfully C:\Users\Sinvudyo\AppData\Local\EmieSiteList deleted successfully C:\Users\Sinvudyo\AppData\Local\EmieUserList deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-4145310989-2222849673-927776117-1004\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Installed Programs ====================== ęTorrent 7-Zip 9.20 (x64 edition) Action Adobe Acrobat Reader DC - Nederlands Adobe After Effects CS5.5 Adobe AIR Adobe Community Help Adobe Flash Player 11 ActiveX 64-bit Adobe Refresh Manager Adobe Shockwave Player 12.2 Apple Application Support (32-bit) Apple Application Support (64-bit) Apple Mobile Device Support Apple Software Update AVS Video Converter 9.1 Bandisoft MPEG-1 Decoder Bonjour D3DX10 De SimsT 3 De SimsT 3 Luxe Accessoires De SimsT 3 Na Middernacht Dropbox Dropbox Update Helper Empires Dawn of the Modern World Final Fantasy X X-2 HD Remaster Fraps (remove only) Free YouTube to MP3 Converter version 3.12.50.1122 Google Chrome Google Update Helper GrabIt 1.7.2 Beta 6 (build 1008) Grand Theft Auto V version 1.6.8 iBackupBot 5.3.8 Intel(R) Processor Graphics iTunes Java 8 Update 91 (64-bit) Java Auto Updater Junk Mail filter update League of Legends Logitech G430 Driver Logitech Gaming Software Logitech Gaming Software 8.58 Malwarebytes Anti-Malware versie 2.2.1.1043 Microsoft .NET Framework 4.6.1 Microsoft .NET Framework 4.6.1 (Nederlands) Microsoft .NET Framework 4.6.1 (NLD) Microsoft Antimalware Service NL-NL Language Pack Microsoft Application Error Reporting Microsoft ASP.NET MVC 4 Runtime Microsoft Office Klik-en-Klaar 2010 Microsoft Office Starter 2010 - Nederlands Microsoft Office XP Professional Microsoft Security Client Microsoft Security Client NL-NL Language Pack Microsoft Security Essentials Microsoft Silverlight Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.23506 Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.23506 Microsoft_VC80_ATL_x86 Microsoft_VC80_ATL_x86_x64 Microsoft_VC80_CRT_x86 Microsoft_VC80_CRT_x86_x64 Microsoft_VC80_MFC_x86 Microsoft_VC80_MFC_x86_x64 Microsoft_VC80_MFCLOC_x86 Microsoft_VC80_MFCLOC_x86_x64 Microsoft_VC90_ATL_x86 Microsoft_VC90_ATL_x86_x64 Microsoft_VC90_CRT_x86 Microsoft_VC90_CRT_x86_x64 Microsoft_VC90_MFC_x86 Microsoft_VC90_MFC_x86_x64 Microsoft_VC90_MFCLOC_x86 Microsoft_VC90_MFCLOC_x86_x64 MSVCRT MSVCRT_amd64 MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) Nero Burning ROM 10 Nero BurningROM 10 Help (CHM) Nero BurnRights 10 Nero BurnRights 10 Help (CHM) Nero Control Center 10 Nero ControlCenter 10 Help (CHM) Nero Core Components 10 NVIDIA-configuratiescherm 368.22 NVIDIA 3D Vision controllerstuurprogramma 364.44 NVIDIA 3D Vision stuurprogramma 368.22 NVIDIA GeForce Experience 2.11.3.5 NVIDIA GeForce Experience Service NVIDIA Grafisch stuurprogramma 368.22 NVIDIA HD Audio-stuurprogramma 1.3.34.14 NVIDIA Install Application NVIDIA LED Visualizer 1.0 NVIDIA Network Service NVIDIA PhysX Systeem Software 9.16.0318 NVIDIA ShadowPlay 2.11.3.5 NVIDIA Stereoscopic 3D Driver NVIDIA Update 2.11.3.5 NVIDIA Update Core NVIDIA Virtual Audio 1.2.40 Origin PCSX2 - Playstation 2 Emulator QuickPar 0.9 Realtek Ethernet Controller Driver Realtek High Definition Audio Driver ROCCAT Isku Keyboard Driver ROCCAT Kone Pure Mouse Driver Rockstar Games Social Club Rummi 6.0.37 Security Update for Microsoft .NET Framework 4.6.1 (KB3122661) Security Update for Microsoft .NET Framework 4.6.1 (KB3127233) Security Update for Microsoft .NET Framework 4.6.1 (KB3136000) Security Update for Microsoft .NET Framework 4.6.1 (KB3136000v2) Security Update for Microsoft .NET Framework 4.6.1 (KB3142037) Security Update for Microsoft .NET Framework 4.6.1 (KB3143693) SHIELD Streaming SHIELD Wireless Controller Driver SkypeT 7.24 Spotify Spotnet SpyHunter 4 Steam swMSM Unity Web Player Vegas Pro 9.0 (64-bit) VLC media player 2.1.3 Vulkan Run Time Libraries 1.0.11.1 Vulkan Run Time Libraries 1.0.3.0 Windows Live Communications Platform Windows Live Essentials Windows Live ID Sign-in Assistant Windows Live Installer Windows Live Language Selector Windows Live Mail Windows Live Messenger Windows Live MIME IFilter Windows Live Movie Maker Windows Live Photo Common Windows Live Photo Gallery Windows Live PIMT Platform Windows Live SOXE Windows Live SOXE Definitions Windows Live UX Platform Windows Live UX Platform Language Pack Windows Live Writer Windows Live Writer Resources WinRAR Xilisoft iPhone Ringtone Maker Xilisoft Video Converter Platinum Youtube Downloader HD v. 2.9.9.27 ==== Running Processes ====================== C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\ProgramData\Logic Handler\set.exe C:\Fraps\fraps.exe C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe C:\Windows\system32\PnkBstrA.exe C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe C:\ProgramData\xifs\xifs.exe C:\Users\Sinvudyo\AppData\Roaming\Spotify\SpotifyWebHelper.exe C:\Program Files (x86)\Remote Mouse\RemoteMouse.exe C:\Program Files (x86)\ROCCAT\Kone Pure Mouse\KonePureMonitor.exe C:\Program Files (x86)\ROCCAT\Isku Keyboard\IskuMonitor.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\Dropbox\Client\Dropbox.exe C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Sinvudyo\Downloads\zoek.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Time deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Time deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\GalaxyCommunication deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\GalaxyCommunication deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\xifs deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\xifs deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\QMUdisk deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\QMUdisk deleted successfully ==== Deleting Files \ Folders ====================== C:\PROGRA~3\xifss deleted C:\Users\Klant\daemonprocess.txt deleted C:\Users\Klant\.android deleted C:\PROGRA~2\COMMON~1\DVDVideoSoft\bin deleted C:\PROGRA~2\QuickSearch deleted C:\PROGRA~2\COMMON~1\Tencent deleted C:\Users\Sinvudyo\AppData\Roaming\Tencent deleted C:\Windows\sysWoW64\config\systemprofile\AppData\Roaming\Tencent deleted C:\PROGRA~3\hash.dat deleted C:\PROGRA~3\xldl.dll deleted C:\PROGRA~3\TXQMPC deleted C:\PROGRA~3\Tencent deleted C:\PROGRA~3\Package Cache deleted C:\Users\Klant\AppData\Local\Mobogenie deleted C:\Users\Klant\AppData\Local\cache deleted C:\Users\Sinvudyo\AppData\Local\Unity deleted C:\Users\Sinvudyo\AppData\LocalLow\Unity deleted C:\windows\SysNative\drivers\TFsFltX64.sys deleted C:\end deleted C:\Windows\SysNative\config\systemprofile\Searches deleted C:\windows\SysNative\GroupPolicy\Machine deleted C:\windows\SysNative\GroupPolicy\User deleted C:\windows\SysNative\GroupPolicy\gpt.ini deleted C:\Windows\Syswow64\~GLH00c9.TMP deleted C:\Windows\SysWow64\AI_RecycleBin deleted "C:\PROGRA~3\xifs" deleted "C:\ProgramData\xifs" deleted ==== System Specs ====================== Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601) Memory (RAM): 8145 MB CPU Info: Intel(R) Core(TM) i3-2120 CPU @ 3.30GHz CPU Speed: 3306,0 MHz Sound Card: Luidsprekers (High Definition A | Display Adapters: NVIDIA GeForce GT 630 | NVIDIA GeForce GT 630 | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver Monitors: 1x; Algemeen PnP-beeldscherm | Screen Resolution: 1024 X 768 - 32 bit Network: Network Present Network Adapters: Realtek PCIe GBE Family Controller #2 CD / DVD Drives: 1x (E: | ) E: ATAPI iHAS124 W Ports: COM1 LPT1 Mouse: 8 Button Wheel Mouse Present Hard Disks: C: 345,5GB | D: 585,9GB | F: 931,5GB | Q: 0,0MB Hard Disks - Free: C: 118,8GB | D: 379,8GB | F: 446,4GB | Q: 0,0MB Manufacturer *: American Megatrends Inc. BIOS Info: AT/AT COMPATIBLE | 07/10/13 | ALASKA - 1072009 Time Zone: West-Europa (standaardtijd) Motherboard *: MSI H61M-P31/W8 (MS-7788) Country: Nederland Language: NLD ==== System Specs (Software) ====================== AV: Microsoft Security Essentials *Enabled/Updated* {768124D7-F5F7-6D2F-DDC2-94DFA4017C95} SP: Microsoft Security Essentials *Enabled/Updated* {CDE0C533-D3CD-62A1-E772-AFADDF863628} SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} Default Browser: Google Chrome 50.0.2661.102 Internet Explorer Version: 11.0.9600.18314 Google Chrome version: 50.0.2661.102 Adobe Reader version: 15.16.20039.185268 Sun Java version: 1.8.0_91 (32-bit) Sun Java version: 1.8.0_91 (64-bit) Shockwave Player version: 12.2.4r194 ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\Sinvudyo\AppData\Local\Temp ==== 2016-05-25 15:56:43 98C4B9A629535131FAC7339B47E29BA9 41774720 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\SkypeSetup.exe 2016-05-24 11:26:50 114DB3EB57A02CDB39D49FB6D1500658 218304 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\Tencent\QQPCMgr\~70166\UpdateTrayIcon.exe 2016-05-24 11:25:51 059F30F08CD841829B5805B5B2BE6BE2 51987648 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\qqpcmgr_v11.5.17490.219_45530_Silence.exe 2016-05-24 11:24:19 EFF4607746ABD619F5F046633EE60328 5632 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\J61H8x\run.exe 2016-05-24 11:24:19 7750DBE2A7F3AE0961CF13867C9FB510 5632 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\J61H8a\add.exe 2016-05-24 11:24:19 055EB501A529597D231DA22F146A24C4 49152 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\J61H8a\Interop.IWshRuntimeLibrary.dll 2016-05-24 11:23:00 99A5EC46ACF979644E9A6568392E4FE1 2089472 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\RarSFX0\LogicHandler.exe 2016-05-24 11:22:16 0A68090893D36E75766A73F7A8EDAA14 6798384 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\InstallCharityEngine.2015-S12-05-WW.exe 2016-05-24 11:21:13 153B46122AD875E4484FAB0017752EFE 457224 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\Rar$EX00.756\AnonymousPlayer__6629_i1920306970_il176962_26.exe ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2016-05-26 12:44:40 D0E32C5CDD2CA10200BEB79A8F1A240B 2397 ----a-w- C:\Windows\SysWOW64\findit.xml 2016-05-23 14:55:18 7CBDA85276EBBFFEA41990A5147D6C73 113208 ----a-w- C:\Windows\SysWOW64\nvStreaming.exe 2016-05-23 14:52:24 4B969D31D64DE79801E5F5D07847574C 394912 ----a-w- C:\Windows\SysWOW64\nvumdshim.dll 2016-05-23 14:52:23 E9B339198DAD6F326254CA4184D11DA6 3001792 ----a-w- C:\Windows\SysWOW64\nvcuvid.dll 2016-05-23 14:52:23 E7DE1E8FD721BFD89B9F586272FBA14C 594 ----a-w- C:\Windows\SysWOW64\nv-vk32.json 2016-05-23 14:52:23 DA57A5352BA70D970CA4E74FDF608DC1 708032 ----a-w- C:\Windows\SysWOW64\NvIFR.dll 2016-05-23 14:52:23 A8A42F0E2CFEF05FF44C8E71C3594F6B 25372096 ----a-w- C:\Windows\SysWOW64\nvoglv32.dll 2016-05-23 14:52:23 979221E59778EEBBABF84049D202419F 8733096 ----a-w- C:\Windows\SysWOW64\nvptxJitCompiler.dll 2016-05-23 14:52:23 7FA1F4B67E527453663B010AEF2E3D78 17732936 ----a-w- C:\Windows\SysWOW64\nvcuda.dll 2016-05-23 14:52:23 6811D8C2160D3A19A3BA1EFABEDE6E71 565392 ----a-w- C:\Windows\SysWOW64\nvfatbinaryLoader.dll 2016-05-23 14:52:23 5F0D47674480841A0FC59F62F94C0C3B 18138232 ----a-w- C:\Windows\SysWOW64\nvopencl.dll 2016-05-23 14:52:23 54B12F8EB14CF53552B1E130E36E4B4A 131584 ----a-w- C:\Windows\SysWOW64\nvoglshim32.dll 2016-05-23 14:52:23 53F399A344EF8F8530CAFE6563E74F64 770496 ----a-w- C:\Windows\SysWOW64\NvFBC.dll 2016-05-23 14:52:23 39F246E6FC7293ACF1EA2352BA7A0959 155768 ----a-w- C:\Windows\SysWOW64\nvinit.dll 2016-05-23 14:52:23 09F93F5CAEE7DA98172D8E02E0858D86 35117112 ----a-w- C:\Windows\SysWOW64\nvcompiler.dll 2016-05-14 05:40:31 9A48E678E9AE3AAAC6C60D39E7F7DE56 16693208 ----a-w- C:\Windows\SysWOW64\nvwgf2um.dll 2016-05-14 05:27:56 3CFC92C43EE7723A3CD0C84FDD2DCA2D 102976 ----a-w- C:\Windows\SysWOW64\nvaudcap32v.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2016-05-23 14:52:24 8848D5DBFA0AF589FEFE0334B6FC30EB 46024 ----a-w- C:\Windows\Sysnative\nvhdap64.dll 2016-05-23 14:52:24 700BB5E42A4D3F361EA0627519F547E0 1581624 ----a-w- C:\Windows\Sysnative\nvhdagenco64.dll 2016-05-23 14:52:24 27E3B5E90DE2F07A719CD386D6DAFB54 476848 ----a-w- C:\Windows\Sysnative\nvumdshimx.dll 2016-05-23 14:52:23 EC68858783D29F0975F45FF993D76214 911416 ----a-w- C:\Windows\Sysnative\NvIFR64.dll 2016-05-23 14:52:23 D1DA0C263BCFDDA892747832396C5971 177952 ----a-w- C:\Windows\Sysnative\nvinitx.dll 2016-05-23 14:52:23 C7735C014D08B645592D48E8A34FAD9B 31600696 ----a-w- C:\Windows\Sysnative\nvoglv64.dll 2016-05-23 14:52:23 C42DECA85B059EFB837E1127BA891C23 39979576 ----a-w- C:\Windows\Sysnative\nvcompiler.dll 2016-05-23 14:52:23 B05CDD2A4FFC07A0BFF4CD600D9CABD5 1573432 ----a-w- C:\Windows\Sysnative\nvdispgenco6436822.dll 2016-05-23 14:52:23 AD76CC08486B5E136367A4DC2A996469 669952 ----a-w- C:\Windows\Sysnative\nvfatbinaryLoader.dll 2016-05-23 14:52:23 78B1DD0BE630C276E98347088A76CE30 594 ----a-w- C:\Windows\Sysnative\nv-vk64.json 2016-05-23 14:52:23 72711821D9C2C6B6911E85D8C8B79DB7 3447232 ----a-w- C:\Windows\Sysnative\nvcuvid.dll 2016-05-23 14:52:23 68A409BD0998C7729AB5C748BFCF180A 21794064 ----a-w- C:\Windows\Sysnative\nvopencl.dll 2016-05-23 14:52:23 61AE3F5356FEABC2DDD4C95AA2C61B2D 10642728 ----a-w- C:\Windows\Sysnative\nvptxJitCompiler.dll 2016-05-23 14:52:23 5878F39F8CFE90549C99C548FC254F25 153232 ----a-w- C:\Windows\Sysnative\nvoglshim64.dll 2016-05-23 14:52:23 2ED0CDF572028269AC5A9D81CBED580D 984512 ----a-w- C:\Windows\Sysnative\NvFBC64.dll 2016-05-23 14:52:23 2678C8AAA8EEAB1A765794D2D041365D 1922496 ----a-w- C:\Windows\Sysnative\nvdispco6436822.dll 2016-05-23 14:52:23 0FB76C09AF078733F91DF54BD13B6B93 21336720 ----a-w- C:\Windows\Sysnative\nvcuda.dll 2016-05-23 14:52:23 0AB1A3170CD960DED00651FF6D12E2D2 17236560 ----a-w- C:\Windows\Sysnative\nvd3dumx.dll 2016-05-14 05:40:30 F0D6993CD967B02A7ECD82648AEB5A1F 1922496 ----a-w- C:\Windows\Sysnative\nvdispco6436519.dll 2016-05-14 05:40:30 48099571A55534FAC0B8FE6F2D910071 1573432 ----a-w- C:\Windows\Sysnative\nvdispgenco6436519.dll 2016-05-14 05:27:56 FDAEA352F1D8ED10AA1404B8AD9B6F50 113216 ----a-w- C:\Windows\Sysnative\nvaudcap64v.dll ====== C:\Windows\Sysnative\drivers ===== 2016-05-24 17:29:28 3B32CAA07D672F8A2E0DF5CB3A873F45 22704 ----a-w- C:\Windows\Sysnative\drivers\EsgScanner.sys 2016-05-24 11:28:56 08728AF70D2ADEAB57EF8F6C97D6D9BC 54904 ----a-w- C:\Windows\Sysnative\drivers\TSSKX64.sys 2016-05-23 14:52:24 1F99AD85DC4F9E322CDE2363378CD374 141256 ----a-w- C:\Windows\Sysnative\drivers\nvhda64v.sys 2016-05-23 14:52:23 B67A5ECFA7043F3CE21CBA39B2682976 13412408 ----a-w- C:\Windows\Sysnative\drivers\nvlddmkm.sys 2016-05-14 11:23:47 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\Sysnative\drivers\Msft_Kernel_xusb21_01007.Wdf 2016-05-14 05:27:56 F37FE6B15A987AEEC08EEF531F2FAED7 56384 ----a-w- C:\Windows\Sysnative\drivers\nvvad64v.sys 2016-05-11 14:21:49 4371705697BBB2CAA7C7523058109CE9 264936 ----a-w- C:\Windows\Sysnative\drivers\dxgmms1.sys 2016-05-11 14:21:49 3A9D7D464BDB3B70D7ECF689ADABBD4D 986344 ----a-w- C:\Windows\Sysnative\drivers\dxgkrnl.sys 2016-05-11 14:21:15 C08CCCE2BE68D04E6C142614736959DA 154344 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys 2016-05-11 14:21:15 8308FC2E9147D7632221E3279BB14660 291328 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb10.sys 2016-05-11 14:21:15 1F8DA4ECAEA7E2BCD97E738795817431 129536 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb20.sys 2016-05-11 14:21:15 035C0A9A63DF3F3A52B90D8F6BF0F166 159744 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb.sys 2016-05-11 14:21:14 6474F8823C7188D2DA579F01FB6CED6B 62464 ----a-w- C:\Windows\Sysnative\drivers\appid.sys 2016-05-11 14:21:14 0878723427BA190E5ABA5AA0112FA4D4 95464 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys ====== C:\Windows\Tasks ====== 2016-05-25 11:52:23 D4C06195B97F001DFAE4020D4CB38321 1018 ----a-w- C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job 2016-05-25 11:52:23 0CC383E51E730F485E8DE2D1CEFD01E0 4014 ----a-w- C:\Windows\Sysnative\Tasks\DropboxUpdateTaskMachineUA 2016-05-25 11:52:22 BE30EAE206D5791D19939ACB1548E575 3762 ----a-w- C:\Windows\Sysnative\Tasks\DropboxUpdateTaskMachineCore 2016-05-25 11:52:22 09DA3823A0935104886200F97AD5EF0A 1014 ----a-w- C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job 2016-05-24 18:03:08 DDFDF3E2ACE21327D3123DD10C4386C8 3102 ----a-w- C:\Windows\Sysnative\Tasks\SpyHunter4 2016-05-24 18:03:08 AB4F0BBCC1AB6A5FB784CC6921DAAF88 400 ----a-w- C:\Windows\Tasks\SpyHunter4.job 2016-05-18 16:49:59 3B3E2FC492F8BD198B687BEF7740E728 3156 ----a-w- C:\Windows\Sysnative\Tasks\FRAPS ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2016-05-25 12:11:33 -------- d-----w- C:\Program Files\trend micro 2016-05-24 17:29:25 -------- d-----w- C:\Program Files\Enigma Software Group 2016-05-24 11:28:37 -------- d-----w- C:\Program Files\Common Files\Tencent 2016-05-24 11:24:22 -------- d-----w- C:\Program Files\BitTorrent 2016-05-18 17:42:03 -------- d-----w- C:\Program Files\iPod 2016-05-18 17:42:02 -------- d-----w- C:\Program Files\iTunes ======= C:\PROGRA~2 ===== 2016-05-25 11:52:20 -------- d-----w- C:\PROGRA~2\Dropbox 2016-05-18 17:42:03 -------- d-----w- C:\PROGRA~2\iTunes 2016-05-17 19:11:00 -------- d-----w- C:\PROGRA~2\PCSX2 1.4.0 2016-05-17 18:23:55 -------- d-----w- C:\PROGRA~2\Final Fantasy X X-2 HD Remaster ======= C: ===== 2016-05-24 17:52:40 D07138915E1B489BA08D2DBDFF441A60 285747 ----a-w- C:\shldr 2016-05-24 17:52:40 025926B83A938B5215F3C1DCC882F21C 8192 ----a-w- C:\shldr.mbr 2016-05-24 17:51:27 3750F27A67189D5EE92B32F853BC33CA 53058 ----a-w- C:\spyhunter.fix 2016-05-24 17:30:10 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\autoexec.bat 2016-05-24 16:27:26 4EC8FE8F74DA385AE7982C825B06FC60 2320 ----a-w- C:\ipconfig.txt ====== C:\Users\Sinvudyo\AppData\Roaming ====== 2016-05-25 11:52:37 -------- d-----w- C:\Users\Sinvudyo\AppData\Roaming\Dropbox 2016-05-25 11:52:20 -------- d-----w- C:\Users\Sinvudyo\AppData\Local\Dropbox 2016-05-24 17:29:50 -------- d-----w- C:\Users\Sinvudyo\AppData\Roaming\Enigma Software Group 2016-05-24 12:15:11 -------- d-----w- C:\Users\Sinvudyo\AppData\Local\ElevatedDiagnostics 2016-05-24 11:25:29 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Local\zdengine 2016-05-24 11:22:47 949752062AB15BF1770522F060A22D46 18432 ----a-w- C:\Users\Sinvudyo\AppData\Roaming\Main.dat 2016-05-24 11:22:44 9B850BA6AEA2E6C2A60F90749618EA30 6859776 ----a-w- C:\Users\Sinvudyo\AppData\Roaming\agent.dat 2016-05-24 11:22:24 9B3AABDD19E97ECB8BF1BE90D0A87DCE 127488 ----a-w- C:\Users\Sinvudyo\AppData\Roaming\Installer.dat 2016-05-14 10:40:11 -------- d-----w- C:\Users\Sinvudyo\AppData\Roaming\Xilisoft 2016-05-14 10:13:12 -------- d-----w- C:\Users\Sinvudyo\AppData\Local\AnyMP4 Studio 2016-05-05 12:03:16 -------- d-----w- C:\Users\Sinvudyo\AppData\Local\DeSmuME 2016-05-05 10:30:21 -------- d-----w- C:\Users\Sinvudyo\AppData\Local\MyNes ====== C:\Users\Sinvudyo ====== 2016-05-25 11:55:55 -------- d-----r- C:\Users\Sinvudyo\Dropbox 2016-05-25 11:54:04 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2016-05-25 11:52:20 -------- d-----w- C:\ProgramData\Dropbox 2016-05-24 17:29:43 -------- d-----w- C:\Users\Sinvudyo\Start Menu 2016-05-24 11:25:50 -------- d-----w- C:\Users\Public\Thunder Network 2016-05-24 11:25:49 -------- d-----w- C:\ProgramData\Thunder Network 2016-05-24 11:25:47 -------- d-----w- C:\ProgramData\download 2016-05-24 11:23:00 -------- d-----w- C:\ProgramData\Logic Handler 2016-05-18 17:42:29 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2016-05-17 19:11:08 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PCSX2 2016-05-17 18:37:26 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Final Fantasy X X-2 HD Remaster 2016-05-14 10:39:53 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xilisoft 2016-05-14 10:39:19 -------- d-----w- C:\ProgramData\Xilisoft ====== C: exe-files == 2016-05-26 19:08:53 D0278FA8947ED54A112893F71917F46A 2133504 -c--a-w- C:\Users\Sinvudyo\AppData\Roaming\uTorrent\updates\3.4.7_42330.exe 2016-05-26 05:21:07 131B582B7C9967F07EC2D48B015EBFF0 383488 ----a-w- C:\Program Files\BitTorrent\BitTorrent.exe 2016-05-25 15:56:43 98C4B9A629535131FAC7339B47E29BA9 41774720 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\SkypeSetup.exe 2016-05-25 12:11:33 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Sinvudyo.exe 2016-05-25 11:53:40 0482FA9A448910B523FB62E8C0B73EA9 18392 ----a-w- C:\Program Files (x86)\Dropbox\Client\QtWebEngineProcess.exe 2016-05-25 11:53:36 AE6A072A7E1A966FD0137DAEF06D24B8 173288 ----a-w- C:\Program Files (x86)\Dropbox\Client\DropboxUninstaller.exe 2016-05-25 11:53:36 9B101707D60B7F0FA49C6A98BFFF04A3 29992 ----a-w- C:\Program Files (x86)\Dropbox\Client\driver_amd64\dbxsvc.exe 2016-05-25 11:53:36 64BF1684A37DD8B0755E2C236E7B3854 23745808 ----a-w- C:\Program Files (x86)\Dropbox\Client\Dropbox.exe 2016-05-25 11:53:36 4E07FB0935AC41C31BD75D6C798CD37E 29480 ----a-w- C:\Program Files (x86)\Dropbox\Client\driver_x86\dbxsvc.exe 2016-05-25 11:52:33 648E438F1F431B6F28513FCE33FF1EAA 68761224 ----a-w- C:\Program Files (x86)\Dropbox\Update\Download\{CC46080E-4C33-4981-859A-BBA2F780F31E}\3.20.1\DropboxClient_3.20.1.exe 2016-05-25 11:52:21 905955734427F016218E74E2AA8E47F5 87848 ----atw- C:\Program Files (x86)\Dropbox\Update\1.3.41.1\DropboxUpdateOnDemand.exe 2016-05-25 11:52:21 6A0DF963E3B936BC1A25F2FBB285201B 87336 ----atw- C:\Program Files (x86)\Dropbox\Update\1.3.41.1\DropboxUpdateBroker.exe 2016-05-25 11:52:20 A1F58FFF448E4099297D6EE0641D4D0E 143144 ----atw- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe 2016-05-25 11:52:20 A1F58FFF448E4099297D6EE0641D4D0E 143144 ----atw- C:\Program Files (x86)\Dropbox\Update\1.3.41.1\DropboxUpdate.exe 2016-05-25 11:52:20 6F01D46205AF347BFAA2BF983FE1132A 143144 ----atw- C:\Program Files (x86)\Dropbox\Update\1.3.41.1\DropboxCrashHandler.exe 2016-05-24 17:29:50 A752F420A0920E5D7A00F9BBF5D3BF51 3286400 ----a-w- C:\Users\Sinvudyo\AppData\Roaming\Enigma Software Group\sh_installer.exe 2016-05-24 17:29:28 77703E5928A62BCF65CA12088575F57F 29864 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\native.exe 2016-05-24 17:29:27 4D02FD58F561225D67EDDF0E10496217 1072296 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe 2016-05-24 17:29:27 3B946021A35AC10C74805EA895027DB9 7175552 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe 2016-05-24 17:28:26 3A7C9C1A78ABB742DFA4C90B8865727E 8080168 ----a-w- C:\Users\Sinvudyo\AppData\Local\NVIDIA\NvBackend\Packages\00008b03\DAO.20786415.exe 2016-05-24 17:25:03 3D7E4B9E28D54ABD218B34E4427772B4 3040680 ----a-w- C:\Program Files\BitTorrent\bin\11f2c6a1-d64e-41fc-8e67-d2e929366aa1\Jackson.exe 2016-05-24 17:24:52 EB3740E2E86AA0D2AFE52C060F1FF2D9 52736 ----a-w- C:\Program Files\BitTorrent\bin\11f2c6a1-d64e-41fc-8e67-d2e929366aa1\xtc.exe 2016-05-24 15:31:44 CD132875F5121F6F02D4210953CC4214 835512 ----a-w- C:\Users\Sinvudyo\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe 2016-05-24 15:31:40 E5C164AA768362F0BE370ABCB40E6ACC 403896 ----a-w- C:\Users\Sinvudyo\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\OAWrapper.exe 2016-05-24 11:26:50 114DB3EB57A02CDB39D49FB6D1500658 218304 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\Tencent\QQPCMgr\~70166\UpdateTrayIcon.exe 2016-05-24 11:25:51 059F30F08CD841829B5805B5B2BE6BE2 51987648 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\qqpcmgr_v11.5.17490.219_45530_Silence.exe 2016-05-24 11:25:48 F0372FF8A6148498B19E04203DBB9E69 73160 ----a-w- C:\ProgramData\download\ThunderFW.exe 2016-05-24 11:25:47 E2E9483568DC53F68BE0B80C34FE27FB 268744 ----a-w- C:\ProgramData\download\MiniThunderPlatform.exe 2016-05-24 11:25:47 58BB62E88687791AD2EA5D8D6E3FE18B 59848 ----a-w- C:\ProgramData\download\MiniTPFw.exe 2016-05-24 11:24:19 EFF4607746ABD619F5F046633EE60328 5632 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\J61H8x\run.exe 2016-05-24 11:24:19 7750DBE2A7F3AE0961CF13867C9FB510 5632 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\J61H8a\add.exe 2016-05-24 11:23:01 99A5EC46ACF979644E9A6568392E4FE1 2089472 ----a-w- C:\ProgramData\Logic Handler\set.exe 2016-05-24 11:23:00 99A5EC46ACF979644E9A6568392E4FE1 2089472 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\RarSFX0\LogicHandler.exe 2016-05-24 11:22:16 0A68090893D36E75766A73F7A8EDAA14 6798384 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\InstallCharityEngine.2015-S12-05-WW.exe 2016-05-24 11:21:51 7E043D9105E5D123910A7723A7760C1C 723456 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\LocalCopy\{AEB27897-F23E-88C5-ACF7-20EC2A112230}-AnonymousPlayer__6629_i1920306970_il176962.exe 2016-05-24 11:21:26 B8C8713D8981506B5102C0214038044A 457224 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\LocalCopy\{7A21E7DF-CE3A-1402-1EBD-7C580974E235}-AnonymousPlayer__6629_i1920306970_il176962_26.exe 2016-05-24 11:21:26 7E043D9105E5D123910A7723A7760C1C 723456 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\LocalCopy\{389BA1A8-938C-1064-4D08-1619A76A9472}-AnonymousPlayer__6629_i1920306970_il176962.exe 2016-05-24 11:21:13 153B46122AD875E4484FAB0017752EFE 457224 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\Rar$EX00.756\AnonymousPlayer__6629_i1920306970_il176962_26.exe 2016-05-23 14:55:18 FFA2686B614251DE6496FB9BE87F5732 446008 ----a-w- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstreg.exe 2016-05-23 14:55:18 D40C528361609A67ED84B10BB445EFE9 7856184 ----a-w- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\NVStWiz.exe 2016-05-23 14:55:18 CD0E4856D20207AD92AA8FE04B4306B3 1725496 ----a-w- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe 2016-05-23 14:55:18 A997C1C426A85E1D51E82560BC1342C9 607800 ----a-w- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe 2016-05-23 14:55:18 8441BCB1F4B42FF2F1CA95494BA9582A 326712 ----a-w- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe 2016-05-23 14:55:18 7CBDA85276EBBFFEA41990A5147D6C73 113208 ----a-w- C:\Windows\SysWOW64\nvStreaming.exe 2016-05-23 14:55:18 6B0FA27E3DFA390D86D6376937C53E42 2437176 ----a-w- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvsttest.exe 2016-05-23 14:55:17 6CA24371388324DD13B3E75DF207F333 904760 ----a-w- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\NvStereoUtilityOGL.exe 2016-05-23 14:55:15 215AC49E16A2E5E31CEA79C6E20B0860 426040 ----a-w- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe 2016-05-23 14:52:24 A4893FB9A70049AE61C7A87E334E47E1 13605464 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{083F8F0B-02B8-4B40-95FA-5A1C7FBDDA2B}\VulkanRT-Installer.exe 2016-05-23 14:52:24 3D2027F4D81DF4F4282A78DC5A8757AE 17154064 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.3DVision.{A13F8D08-314B-4C04-B22D-5E1E9FB1F11B}\3DVision.exe 2016-05-23 14:52:23 B1EF8B263A26FBB24BBB4DF50EC8AFA4 96973184 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{083F8F0B-02B8-4B40-95FA-5A1C7FBDDA2B}\NvCplSetupInt.exe 2016-05-23 14:52:23 55E41DD3A269BFCC907CC099E6197028 459320 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{083F8F0B-02B8-4B40-95FA-5A1C7FBDDA2B}\dbInstaller.exe 2016-05-23 14:52:23 55E41DD3A269BFCC907CC099E6197028 459320 ----a-w- C:\Program Files\NVIDIA Corporation\Drs\dbInstaller.exe 2016-05-23 14:51:31 B6A2F63C7488E3D974D3F08CB1BD82B9 1881144 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\installer.{EC2E6DCB-0E5C-4A43-B602-73144A8802F1}\NVNetworkService.exe 2016-05-21 20:49:38 46050B17917DC5533941ADE193F67663 8044384 ----a-w- C:\Users\Klant\AppData\Local\NVIDIA\NvBackend\Packages\00008ae1\DAO.20774600.exe 2016-05-20 09:23:14 86A1CE2B5FCA103811394A6979F4C5FD 835512 ----a-w- C:\Users\Klant\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe 2016-05-20 09:23:10 3C8BF6E94376A6772E643C0B6D0D2D24 403896 ----a-w- C:\Users\Klant\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\OAWrapper.exe === C: other files == 2016-05-25 11:53:36 CD0B329D17316316E236BC16F5CF09D3 51824 ----a-w- C:\Program Files (x86)\Dropbox\Client\driver_x86\dbx-stable.sys 2016-05-25 11:53:36 602534C6AF65E07ACD260AFA55D89D0F 52848 ----a-w- C:\Program Files (x86)\Dropbox\Client\driver_x86\dbx-dev.sys 2016-05-25 11:53:36 602534C6AF65E07ACD260AFA55D89D0F 52848 ----a-w- C:\Program Files (x86)\Dropbox\Client\driver_x86\dbx-canary.sys 2016-05-25 11:53:36 5A83DA46A3C55A0756230C8A02CA8696 63088 ----a-w- C:\Program Files (x86)\Dropbox\Client\driver_amd64\dbx-dev.sys 2016-05-25 11:53:36 5A83DA46A3C55A0756230C8A02CA8696 63088 ----a-w- C:\Program Files (x86)\Dropbox\Client\driver_amd64\dbx-canary.sys 2016-05-25 11:53:36 584EC6F441240F575753BCF270891059 61552 ----a-w- C:\Program Files (x86)\Dropbox\Client\driver_amd64\dbx-stable.sys 2016-05-24 17:30:10 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\autoexec.bat 2016-05-24 17:29:30 7D5DABA82E4B4421CC6DB333F2E89EE4 8521384 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.com 2016-05-24 17:29:28 7AEC5E76816178BF6C543A155D8208B6 15920 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys 2016-05-24 17:29:28 3B32CAA07D672F8A2E0DF5CB3A873F45 22704 ----a-w- C:\Windows\System32\drivers\EsgScanner.sys 2016-05-24 17:29:28 3B32CAA07D672F8A2E0DF5CB3A873F45 22704 ----a-w- C:\Program Files\Enigma Software Group\SpyHunter\EsgScanner.sys 2016-05-24 11:31:28 71A68E871592E4E23218857A12B53122 6862973 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\sdkclient_1.0.0.510.zip 2016-05-24 11:28:56 08728AF70D2ADEAB57EF8F6C97D6D9BC 54904 ----a-w- C:\Windows\System32\drivers\TSSKX64.sys 2016-05-24 11:21:26 0EEE93A3A4319AEFBEFEB09D96B811E4 302 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\LocalCopy\{1298360A-5FBD-4664-D568-45F190337152}-StubInstallerCleanUp.bat 2016-05-24 11:21:24 76DDD6B2C4EB2A4E6A0082E49860D3D1 302 ----a-w- C:\Users\Sinvudyo\AppData\Local\Temp\Rar$EX00.756\StubInstallerCleanUp.bat 2016-05-23 14:52:24 B3B6697779D78FCCE6D18CB87B17CB31 100664 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\HDAudio.Driver.{6C5B2F5B-D2AF-4B59-B297-D7F12F0C6D4C}\nvhda32.sys 2016-05-23 14:52:24 73071A75C08872226A070CC1D0FF5F60 467912 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.NVIRUSB.{51383F0B-94E9-4847-98FB-43E576346081}\nvstusb64.sys 2016-05-23 14:52:24 71492A2A9BC390CCBB9B0B3EFAF2DFEB 116168 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\HDAudio.Driver.{6C5B2F5B-D2AF-4B59-B297-D7F12F0C6D4C}\nvhda32v.sys 2016-05-23 14:52:24 670DA633CB393CF5DBD5C7DC20ACC169 451400 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.NVIRUSB.{51383F0B-94E9-4847-98FB-43E576346081}\nvstusb32.sys 2016-05-23 14:52:24 6567123E7C874715A72D23CFAB29BB07 119864 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\HDAudio.Driver.{6C5B2F5B-D2AF-4B59-B297-D7F12F0C6D4C}\nvhda64.sys 2016-05-23 14:52:24 1F99AD85DC4F9E322CDE2363378CD374 141256 ----a-w- C:\Windows\System32\drivers\nvhda64v.sys 2016-05-23 14:52:24 1F99AD85DC4F9E322CDE2363378CD374 141256 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\HDAudio.Driver.{6C5B2F5B-D2AF-4B59-B297-D7F12F0C6D4C}\nvhda64v.sys 2016-05-23 14:52:23 B67A5ECFA7043F3CE21CBA39B2682976 13412408 ----a-w- C:\Windows\System32\drivers\nvlddmkm.sys ==== Orphaned Tasks deleted from Registry ====================== {A930E311-AB85-44CF-92A6-22AE15CAF985} deleted ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-4145310989-2222849673-927776117-1004\Software\Microsoft\Windows\CurrentVersion\Run] "Akamai NetSession Interface"="C:\Users\Sinvudyo\AppData\Local\Akamai\netsession_win.exe" "Spotify Web Helper"="C:\Users\Sinvudyo\AppData\Roaming\Spotify\SpotifyWebHelper.exe" "iCloudServices"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" "ApplePhotoStreams"="C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" "Remote Mouse"="C:\Program Files (x86)\Remote Mouse\RemoteMouse.exe" "GalaxyClient"="C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe /launchViaAutoStart" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RoccatKonePure"="C:\Program Files (x86)\ROCCAT\Kone Pure Mouse\KonePureMonitor.EXE" "APSDaemon"="C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" "RoccatIsku"="C:\Program Files (x86)\ROCCAT\Isku Keyboard\IskuMonitor.EXE" "mobilegeni daemon"="C:\Program Files (x86)\Mobogenie\DaemonProcess.exe" "SwitchBoard"="C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" "AdobeCS5.5ServiceManager"="C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe -launchedbylogin" "BlueStacks Agent"="C:\Program Files (x86)\BlueStacks\HD-Agent.exe" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" "Dropbox"="C:\Program Files (x86)\Dropbox\Client\Dropbox.exe /systemstartup" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Akamai NetSession Interface"="C:\Users\Sinvudyo\AppData\Local\Akamai\netsession_win.exe" "Spotify Web Helper"="C:\Users\Sinvudyo\AppData\Roaming\Spotify\SpotifyWebHelper.exe" "iCloudServices"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" "ApplePhotoStreams"="C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" "Remote Mouse"="C:\Program Files (x86)\Remote Mouse\RemoteMouse.exe" "GalaxyClient"="C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe /launchViaAutoStart" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\\ProgramData\\xifs\\Saotom.dll" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s" "MSC"="C:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey" "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "NvBackend"="C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" "ShadowPlay"="C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart" "AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" "Launch LCore"="C:\Program Files\Logitech Gaming Software\LCore.exe /minimized" "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\\ProgramData\\xifs\\Sol-Lab.dll" ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Acrobat Assistant 8.0] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Acrobat Assistant 8.0" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Adobe\\Acrobat 11.0\\Acrobat\\Acrotray.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\iFunBox Fast App Install Handler] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="iFunBox Fast App Install Handler" "hkey"="HKCU" "command"="C:\\Program Files (x86)\\i-Funbox DevTeam\\iFunBox_x64.exe /tray" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Remote Mouse] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Remote Mouse" "hkey"="HKCU" "command"="C:\\Program Files (x86)\\Remote Mouse\\RemoteMouse.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^Sinvudyo^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Action!.lnk] "path"="C:\\Users\\Sinvudyo\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Action!.lnk" "backup"="C:\\Windows\\pss\\Action!.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\PROGRA~2\\Mirillis\\Action!\\Action.exe " "item"="Action!" ==== Startup Folders ====================== 2014-07-24 10:51:57 1991 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\DropboxUpdateTaskMachineCore.job --a------ [Undetermined Task] C:\Windows\tasks\DropboxUpdateTaskMachineUA.job --a------ [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ [Undetermined Task] C:\Windows\tasks\SpyHunter4.job --a------ C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe [17-12-2015 16:24] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\SysNative\tasks\AdobeAAMUpdater-1.0-SAMANTHASTEVEN-Sinvudyo" [C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\DropboxUpdateTaskMachineCore" [C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe] "C:\Windows\SysNative\tasks\DropboxUpdateTaskMachineUA" [C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe] "C:\Windows\SysNative\tasks\FRAPS" [C:\Fraps\fraps.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\SpyHunter4" [C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{039B7213-EEB4-418C-A478-11D1E84A63D8}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\{62679367-65F5-4AB8-B2D3-4FD9354C7A47}" ["c:\program files (x86)\google\chrome\application\chrome.exe"] "C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Fake Chromium Profiles Check ====================== Fake profile C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome deleted ==== Chromium Look ====================== Google Chrome Version: 46.0.2490.86 Google Docs - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Wallet - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Google Docs - Klant\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Klant\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Klant\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Bleach Theme by VikiTech - Klant\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokeigaokhnljfganpekoenocmjlmjfp Google Search - Klant\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Docs Offline - Klant\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Chrome Web Store Payments - Klant\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Klant\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Google Slides - Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek iCloud - Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Extensions\agedgfbdadefbodjkkkcpihgcmibpcff Forge of Empires - Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Extensions\anaphblkfplenhkephgneolhnmjminjg Google Docs - Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Bleach Theme by VikiTech - Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokeigaokhnljfganpekoenocmjlmjfp Realm of the Mad God - Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhjfmaldpppkmjjgkmadddbanpabfflp Google Sheets - Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Google Docs Offline - Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Chrome Web Store Payments - Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Fix ====================== C:\Users\Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_search.safefinder.com_0.localstorage deleted successfully C:\Users\Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_search.safefinder.com_0.localstorage-journal deleted successfully C:\Users\Klant\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ads1.msads.net_0.localstorage deleted successfully C:\Users\Klant\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ads1.msads.net_0.localstorage-journal deleted successfully C:\Users\Klant\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage deleted successfully C:\Users\Klant\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage-journal deleted successfully C:\Users\Klant\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage deleted successfully C:\Users\Klant\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage-journal deleted successfully C:\Users\Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage deleted successfully C:\Users\Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRYEqQao2TxTGptbOxpBNZOZ6ItKBvTtE_s7S8ukoW-7uv3TBH5KYK_LTRQMTU1xrrpKszZkDm5tehaZvTOS6Ou1uGKGfgzQjkzgrA89ye-qUnTTVz-r8yas5N2efCp5bWuhhKwUve9fMnqN7pKDYAv2ruHMXfqSUjUun8X_8jH63hqW9bWLcraphsBDgMp8," "SearchAssistant"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYEqQao2TxTGptbOxpBNZOZ6ItKBvTtE_s7S8ukoW-7uv3TBH5KYK_LTRQMTU1xrrpKszZkDm5tehaZvTOS6Ou1uGKGfgzQjkzSqkJw57_JbPCtQzyFBLwReXed6DiixrX5gItP8LLDPL1xAylngnNF-k2w97bugN28kTioE0Yu9CH6pJNn8ggUoKdynpHg,&q={searchTerms}" "Search Bar"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYEqQao2TxTGptbOxpBNZOZ6ItKBvTtE_s7S8ukoW-7uv3TBH5KYK_LTRQMTU1xrrpKszZkDm5tehaZvTOS6Ou1uGKGfgzQjkzSqkJw57_JbPCtQzyFBLwReXed6DiixrX5gItP8LLDPL1xAylngnNF-k2w97bugN28kTioE0Yu9CH6pJNn8ggUoKdynpHg,&q={searchTerms}" "Search Page"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYEqQao2TxTGptbOxpBNZOZ6ItKBvTtE_s7S8ukoW-7uv3TBH5KYK_LTRQMTU1xrrpKszZkDm5tehaZvTOS6Ou1uGKGfgzQjkzSqkJw57_JbPCtQzyFBLwReXed6DiixrX5gItP8LLDPL1xAylngnNF-k2w97bugN28kTioE0Yu9CH6pJNn8ggUoKdynpHg,&q={searchTerms}" "Use Search Asst"="yes" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl] "Default"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYEqQao2TxTGptbOxpBNZOZ6ItKBvTtE_s7S8ukoW-7uv3TBH5KYK_LTRQMTU1xrrpKszZkDm5tehaZvTOS6Ou1uGKGfgzQjkzSqkJw57_JbPCtQzyFBLwReXed6DiixrX5gItP8LLDPL1xAylngnNF-k2w97bugN28kTioE0Yu9CH6pJNn8ggUoKdynpHg,&q={searchTerms}" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl] "Default"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYEqQao2TxTGptbOxpBNZOZ6ItKBvTtE_s7S8ukoW-7uv3TBH5KYK_LTRQMTU1xrrpKszZkDm5tehaZvTOS6Ou1uGKGfgzQjkzSqkJw57_JbPCtQzyFBLwReXed6DiixrX5gItP8LLDPL1xAylngnNF-k2w97bugN28kTioE0Yu9CH6pJNn8ggUoKdynpHg,&q={searchTerms}" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "Default"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYEqQao2TxTGptbOxpBNZOZ6ItKBvTtE_s7S8ukoW-7uv3TBH5KYK_LTRQMTU1xrrpKszZkDm5tehaZvTOS6Ou1uGKGfgzQjkzSqkJw57_JbPCtQzyFBLwReXed6DiixrX5gItP8LLDPL1xAylngnNF-k2w97bugN28kTioE0Yu9CH6pJNn8ggUoKdynpHg,&q={searchTerms}" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYEqQao2TxTGptbOxpBNZOZ6ItKBvTtE_s7S8ukoW-7uv3TBH5KYK_LTRQMTU1xrrpKszZkDm5tehaZvTOS6Ou1uGKGfgzQjkzSqkJw57_JbPCtQzyFBLwReXed6DiixrX5gItP8LLDPL1xAylngnNF-k2w97bugN28kTioE0Yu9CH6pJNn8ggUoKdynpHg,&q={searchTerms}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{ielnksrch}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ielnksrch}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "SearchAssistant"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://www.google.com" "Use Search Asst"="no" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" ==== All HKLM and HKCU SearchScopes ====================== HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKLM\Wow6432Node\SearchScopes "DefaultScope"="{ielnksrch}" HKLM\Wow6432Node\SearchScopes\ielnksrch - http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRYEqQao2TxTGptbOxpBNZOZ6ItKBvTtE_s7S8ukoW-7uv3TBH5KYK_LTRQMTU1xrrpKszZkDm5tehaZvTOS6Ou1uGKGfgzQjkzSqkJw57_JbPCtQzyFBLwReXed6DiixrX5gItP8LLDPL1xAylngnNF-k2w97bugN28kTioE0Yu9CH6pJNn8ggUoKdynpHg,&q={searchTerms} HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02 ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-4145310989-2222849673-927776117-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9} deleted successfully HKEY_USERS\S-1-5-21-4145310989-2222849673-927776117-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DBC80044-A445-435B-BC74-9C25C1C588A9} deleted successfully HKEY_CLASSES_ROOT\CLSID\{DBC80044-A445-435B-BC74-9C25C1C588A9} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{DBC80044-A445-435B-BC74-9C25C1C588A9} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435B-BC74-9C25C1C588A9} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435B-BC74-9C25C1C588A9} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== shortcuts on Users Desktops ====================== C:\Users\Gast\Desktop\Empires Dawn of the Modern World.lnk - C:\Program Files (x86)\Activision\Empires Dawn of the Modern World\Empires_DMW.exe C:\Users\Gast\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=apsnapdoam&co=NL&userid=cebf63c6-04ef-1a0d-010e-707002c4136e&searchtype=sc&installDate=26-05-2016&barcodeid=50046888&channelid=888&av=windows C:\Users\Gast\Desktop\GTA San Andreas.lnk - C:\Program Files (x86)\Rockstar Games\GTA San Andreas\gta_sa.exe C:\Users\Gast\Desktop\Legend of Edda Global.lnk - C:\JCPlanet\Legend of Edda Global\Launcher.exe C:\Users\Gast\Desktop\LimeWire 5.6.2.lnk - C:\Program Files (x86)\LimeWire\LimeWire.exe C:\Users\Gast\Desktop\Magebot.lnk - C:\Program Files (x86)\Magebot\magebotv55.exe C:\Users\Gast\Desktop\Magebot_SAFEMODE.lnk - C:\Program Files (x86)\Magebot\magebotv55_SAFEMODE.exe C:\Users\Gast\Desktop\Rummi.lnk - C:\Program Files (x86)\Rummi\Rummi.exe C:\Users\Klant\Desktop\Empires Dawn of the Modern World.lnk - C:\Program Files (x86)\Activision\Empires Dawn of the Modern World\Empires_DMW.exe C:\Users\Klant\Desktop\Legend of Edda Global.lnk - C:\JCPlanet\Legend of Edda Global\Launcher.exe C:\Users\Klant\Desktop\QuickPar.lnk - C:\Program Files (x86)\QuickPar\QuickPar.exe C:\Users\Klant\Desktop\Rummi.lnk - C:\Program Files (x86)\Rummi\Rummi.exe C:\Users\Sinvudyo\Desktop\Documenten - Snelkoppeling.lnk - C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Libraries\Documents.library-ms C:\Users\Sinvudyo\Desktop\Final Fantasy X X-2 HD Remaster.lnk - C:\Program Files (x86)\Final Fantasy X X-2 HD Remaster\FFX&X-2_LAUNCHER.exe C:\Users\Sinvudyo\Desktop\Mapopties - Snelkoppeling.lnk - C:\Users\Sinvudyo\Desktop\NES.lnk - F:\Emulators + Roms\Nintendo NES\VirtuaNES.exe C:\Users\Sinvudyo\Desktop\Nintendo 64.lnk - F:\Emulators + Roms\Nintendo 64\Project64.exe C:\Users\Sinvudyo\Desktop\Nintendo DS.lnk - F:\Emulators + Roms\Nintendo DS\DeSmuME_0.9.11_x64.exe C:\Users\Sinvudyo\Desktop\Nintendo Gameboy (Color).lnk - F:\Emulators + Roms\Nintendo Gameboy (Color)\bgb.exe C:\Users\Sinvudyo\Desktop\Nintendo Gameboy Advance.lnk - F:\Emulators + Roms\Nintendo Gameboy Advance\VisualBoyAdvance-1.8.0-511.exe C:\Users\Sinvudyo\Desktop\Playstation I.lnk - F:\Emulators + Roms\Sony Playstation 1\ePSXe.exe C:\Users\Sinvudyo\Desktop\Sega Genesis - Megadrive - Master System.lnk - F:\Emulators + Roms\Sega Genesis - Megadrive - Master System\Fusion.exe C:\Users\Sinvudyo\Desktop\SNES.lnk - F:\Emulators + Roms\Nintendo SNES\snes9x.exe C:\Users\UpdatusUser\Desktop\Empires Dawn of the Modern World.lnk - C:\Program Files (x86)\Activision\Empires Dawn of the Modern World\Empires_DMW.exe C:\Users\UpdatusUser\Desktop\QuickPar.lnk - C:\Program Files (x86)\QuickPar\QuickPar.exe ==== shortcuts on All Users Desktop ====================== C:\Users\Public\Desktop\Playstation 2.lnk - C:\Program Files (x86)\PCSX2 1.4.0\pcsx2.exe ==== shortcuts in Users Start Menu ====================== C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=apsnapdoam&co=NL&userid=cebf63c6-04ef-1a0d-010e-707002c4136e&searchtype=sc&installDate=26-05-2016&barcodeid=50046888&channelid=888&av=windows C:\Users\Klant\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=apsnapdoam&co=NL&userid=cebf63c6-04ef-1a0d-010e-707002c4136e&searchtype=sc&installDate=26-05-2016&barcodeid=50046888&channelid=888&av=windows C:\Users\Klant\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft\Audio Converter\Readme.lnk - C:\Program Files (x86)\Xilisoft\Audio Converter\readme.htm C:\Users\Klant\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft\Audio Converter\Uninstall.lnk - C:\Program Files (x86)\Xilisoft\Audio Converter\Uninstall.exe C:\Users\Klant\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft\Audio Converter\Xilisoft Audio Converter Help.lnk - C:\Program Files (x86)\Xilisoft\Audio Converter\audioenc.chm C:\Users\Klant\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft\Audio Converter\Xilisoft Audio Converter.lnk - C:\Program Files (x86)\Xilisoft\Audio Converter\audioenc.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk - C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Adobe After Effects CS5.5.lnk - C:\Program Files (x86)\Adobe\Adobe After Effects CS5.5\Support Files\AfterFX.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=apsnapdoam&co=NL&userid=cebf63c6-04ef-1a0d-010e-707002c4136e&searchtype=sc&installDate=26-05-2016&barcodeid=50046888&channelid=888&av=windows C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk - C:\Users\Sinvudyo\AppData\Roaming\Spotify\Spotify.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk - C:\Windows\system32\cmd.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk - C:\Windows\system32\notepad.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk - C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk - C:\Windows\explorer.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk - C:\Windows\system32\control.exe /name Microsoft.EaseOfAccessCenter C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk - C:\Windows\system32\magnify.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk - C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk - C:\Windows\system32\osk.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk - C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk - C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe -extoff C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk - C:\Windows\system32\eudcedit.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU\De-installeren.lnk - C:\Program Files (x86)\AVS4YOU\Uninstall.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU\Uninstall.lnk - C:\Program Files (x86)\AVS4YOU\Uninstall.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Empires Dawn of the Modern WorldT.lnk - C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\App-opstartprogramma van Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --show-app-list C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iTunes\iTunes.lnk - C:\Program Files\iTunes\iTunes.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk - C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam\Steam.lnk - C:\Program Files (x86)\Steam\Steam.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Console RAR-handleiding.lnk - C:\Program Files (x86)\WinRAR\Rar.txt C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR help.lnk - C:\Program Files (x86)\WinRAR\WinRAR.chm C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk - C:\Program Files (x86)\WinRAR\WinRAR.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft\Audio Converter\Readme.lnk - C:\Program Files (x86)\Xilisoft\Audio Converter\readme.htm C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft\Audio Converter\Uninstall.lnk - C:\Program Files (x86)\Xilisoft\Audio Converter\Uninstall.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft\Audio Converter\Xilisoft Audio Converter Help.lnk - C:\Program Files (x86)\Xilisoft\Audio Converter\audioenc.chm C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft\Audio Converter\Xilisoft Audio Converter.lnk - C:\Program Files (x86)\Xilisoft\Audio Converter\audioenc.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft\Video Converter Platinum\Buy.lnk - C:\Program Files (x86)\Xilisoft\Video Converter Platinum\vc5.exe -buyurl C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft\Video Converter Platinum\Uninstall.lnk - C:\Program Files (x86)\Xilisoft\Video Converter Platinum\Uninstall.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft\Video Converter Platinum\Xilisoft Video Converter Platinum Help.lnk - C:\Program Files (x86)\Xilisoft\Video Converter Platinum\vc5.exe -help C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft\Video Converter Platinum\Xilisoft Video Converter Platinum.lnk - C:\Program Files (x86)\Xilisoft\Video Converter Platinum\vcloader.exe ==== shortcuts in All Users Start Menu ====================== C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk - C:\Windows\system32\control.exe /name Microsoft.DefaultPrograms C:\ProgramData\Microsoft\Windows\Start Menu\Nieuw Office-document.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\misc.exe -n C:\ProgramData\Microsoft\Windows\Start Menu\Office-document openen.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\misc.exe -f C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk - C:\Windows\system32\wuapp.exe startmenu C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk - C:\Windows\Installer\{AC76BA86-7AD7-1043-7B44-AC0F074E4100}\SC_Reader.ico C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects CS5.5.lnk - C:\Program Files (x86)\Adobe\Adobe After Effects CS5.5\Support Files\AfterFX.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS5.1.lnk - C:\Program Files (x86)\Adobe\Adobe Bridge CS5.1\Bridge.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Device Central CS5.5.lnk - C:\Program Files (x86)\Adobe\Adobe Device Central CS5.5\DeviceCentral.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS5.5.lnk - C:\Program Files (x86)\Adobe\Adobe Utilities - CS5.5\ExtendScript Toolkit CS5.5\ExtendScript Toolkit.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS5.5.lnk - C:\Program Files (x86)\Adobe\Adobe Extension Manager CS5.5\Adobe Extension Manager CS5.5.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk - C:\Program Files (x86)\Adobe\Adobe Help\Adobe Help.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Media Encoder CS5.5.lnk - C:\Program Files (x86)\Adobe\Adobe Media Encoder CS5.5\Adobe Media Encoder.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Pixel Bender Toolkit 2.6.lnk - C:\Program Files (x86)\Adobe\Adobe Utilities - CS5.5\Pixel Bender Toolkit 2.6\Pixel Bender Toolkit.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk - C:\Windows\Installer\{56EC47AA-5813-4FF6-8E75-544026FBEA83}\AppleSoftwareUpdateIco.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=apsnapdoam&co=NL&userid=cebf63c6-04ef-1a0d-010e-707002c4136e&searchtype=sc&installDate=26-05-2016&barcodeid=50046888&channelid=888&av=windows C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk - C:\Windows\ehome\ehshell.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Excel.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\xlicons.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft PowerPoint.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\pptico.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk - C:\Program Files (x86)\Microsoft Security Client\msseces.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Word.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\wordicon.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mocha for After Effects CS5.5.lnk - C:\Program Files (x86)\Adobe\Adobe After Effects CS5.5\mocha\bin\mocha4ae_adobe.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk - C:\Program Files (x86)\Windows Sidebar\sidebar.exe /showgadgets C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk - C:\Program Files (x86)\Windows Live\Mail\wlmail.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk - C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk - C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk - C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk - C:\Windows\system32\xpsrchvw.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip\7-Zip File Manager.lnk - C:\Program Files (x86)\7-Zip\7zFM.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip\7-Zip Help.lnk - C:\Program Files (x86)\7-Zip\7-zip.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk - C:\Windows\system32\calc.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\displayswitch.lnk - C:\Windows\system32\displayswitch.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk - C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Mobility Center.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk - C:\Windows\system32\mspaint.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk - C:\Windows\system32\mstsc.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sync Center.lnk - C:\Windows\System32\mobsync.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Welcome Center.lnk - C:\Windows\system32\rundll32.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk - C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Speech Recognition.lnk - C:\Windows\Speech\Common\sapisvr.exe -SpeechUX C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk - C:\Windows\system32\charmap.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\dfrgui.lnk - C:\Windows\system32\dfrgui.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Disk Cleanup.lnk - C:\Windows\system32\cleanmgr.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Resource Monitor.lnk - C:\Windows\system32\perfmon.exe /res C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Information.lnk - C:\Windows\system32\msinfo32.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Restore.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Task Scheduler.lnk - C:\Windows\system32\taskschd.msc /s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer Reports.lnk - C:\Windows\system32\migwiz\postmig.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer.lnk - C:\Windows\system32\migwiz\migwiz.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\ShapeCollector.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\TabTip.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\Windows Journal.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell (x86).lnk - C:\Windows\syswow64\WindowsPowerShell\v1.0\powershell.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE (x86).lnk - C:\Windows\sysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE.lnk - C:\Windows\system32\WindowsPowerShell\v1.0\PowerShell_ISE.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell.lnk - C:\Windows\system32\WindowsPowerShell\v1.0\powershell.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk - C:\Windows\system32\comexp.msc C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk - C:\Windows\system32\compmgmt.msc /s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Data Sources (ODBC).lnk - C:\Windows\system32\odbcad32.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk - C:\Windows\system32\eventvwr.msc /s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk - C:\Windows\system32\iscsicpl.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk - C:\Windows\system32\perfmon.msc /s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk - C:\Windows\system32\services.msc C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk - C:\Windows\system32\taskschd.msc /s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk - C:\Windows\system32\WF.msc C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell Modules.lnk - C:\Windows\system32\WindowsPowerShell\v1.0\powershell.exe -NoExit -ImportSystemModules C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU\Activation.lnk - C:\Program Files (x86)\AVS4YOU\Registration.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU\Activering.lnk - C:\Program Files (x86)\AVS4YOU\Registration.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU\Help.lnk - C:\Program Files (x86)\AVS4YOU\AVS4YOUHelp.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU\License Agreement.lnk - C:\Program Files (x86)\AVS4YOU\License Agreement.rtf C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU\Licentieovereenkomst.lnk - C:\Program Files (x86)\AVS4YOU\License Agreement.rtf C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU\Video\AVS Video Converter.lnk - C:\Program Files (x86)\AVS4YOU\AVSVideoConverter\AVSVideoConverter.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Program Files (x86)\Dropbox\Client\Dropbox.exe /home C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft\DVDVideoSoft Free Studio.lnk - C:\Program Files (x86)\Common Files\DVDVideoSoft\FreeStudioManager.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft\Free YouTube to MP3 Converter.lnk - C:\Program Files (x86)\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft\Log Report.lnk - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\DVSSysReport.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft\Premium Membership.lnk - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\PremiumMembershipOffer.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft\Uninstall.lnk - C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\Uninstall.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\dzrepack games\Grand Theft Auto V\Grand Theft Auto V.lnk - C:\Program Files (x86)\dzrepack games\Grand Theft Auto V\GTAVLauncher.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\dzrepack games\Grand Theft Auto V\Uninstall Grand Theft Auto V.lnk - C:\Program Files (x86)\dzrepack games\Grand Theft Auto V\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Empires Dawn of the Modern World\Empires Dawn of the Modern World (Safe Mode).lnk - C:\Program Files (x86)\Activision\Empires Dawn of the Modern World\EDMW_ResSet.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Empires Dawn of the Modern World\Help.lnk - C:\Program Files (x86)\Activision\Empires Dawn of the Modern World\Docs\Help\index.htm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Empires Dawn of the Modern World\Manual.lnk - C:\PROGRA~2\ACTIVI~1\EMPIRE~1\Docs\Help\Manuals\Manual_Dutch.doc C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Empires Dawn of the Modern World\Play Empires Dawn of the Modern World.lnk - C:\Program Files (x86)\Activision\Empires Dawn of the Modern World\Empires_DMW.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Empires Dawn of the Modern World\Uninstall Empires Dawn of the Modern World.lnk - C:\Program Files (x86)\Activision\Empires Dawn of the Modern World\Uninstall\UNWISE.EXE /u install.log C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Empires Dawn of the Modern World\Update Empires.lnk - C:\Program Files (x86)\Activision\Empires Dawn of the Modern World\Update Empires.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Final Fantasy X X-2 HD Remaster\Final Fantasy X X-2 HD Remaster.lnk - C:\Program Files (x86)\Final Fantasy X X-2 HD Remaster\FFX&X-2_LAUNCHER.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Final Fantasy X X-2 HD Remaster\Uninstall Final Fantasy X X-2 HD Remaster.lnk - C:\Program Files (x86)\Final Fantasy X X-2 HD Remaster\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps\Fraps.lnk - C:\Fraps\fraps.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps\Uninstall.lnk - C:\Fraps\uninstall.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Chess.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\De SimsT 3 Luxe Accessoires.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\De SimsT 3 Na Middernacht.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\De SimsT 3.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\FreeCell.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\GameExplorer.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Hearts.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Internet Backgammon.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Internet Checkers.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Internet Spades.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Mahjong.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Minesweeper.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\More Games from Microsoft.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Purble Place.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\SimCityT.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Solitaire.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Spider Solitaire.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\STAR WARST The Old RepublicT.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\STAR WARS™ The Old Republic™.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GrabIt\Changes.lnk - C:\Program Files (x86)\GrabIt\Changes.txt C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GrabIt\GrabIt.lnk - C:\Program Files (x86)\GrabIt\GrabIt.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GrabIt\License.lnk - C:\Program Files (x86)\GrabIt\License.txt C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GrabIt\Uninstall GrabIt.lnk - C:\Program Files (x86)\GrabIt\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GrabIt\Visit the GrabIt website.lnk - C:\Program Files (x86)\GrabIt\Website.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\Info iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.Resources\nl.lproj\About iTunes.rtf C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk - C:\Program Files (x86)\Java\jre1.8.0_91\bin\javacpl.exe -tab about C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk - C:\Program Files (x86)\Java\jre1.8.0_91\bin\javacpl.exe -tab update C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk - C:\Program Files (x86)\Java\jre1.8.0_91\bin\javacpl.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends\League of Legends.lnk - C:\Riot Games\League of Legends\lol.launcher.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Legend of Edda Global\Legend of Edda Global.lnk - C:\JCPlanet\Legend of Edda Global\Launcher.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Legend of Edda Global\Uninstall.lnk - C:\JCPlanet\Legend of Edda Global\uninst.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech\Logitech Gaming Software 8.58.lnk - C:\Program Files (x86)\Logitech Gaming Software\LCore.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Backup and Restore Center.lnk - C:\Windows\System32\control.exe /name Microsoft.BackupAndRestore C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Create Recovery Disc.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Remote Assistance.lnk - C:\Windows\system32\msra.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware.lnk - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Verwijder Malwarebytes Anti-Malware.lnk - C:\Program Files (x86)\Malwarebytes Anti-Malware\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk - C:\Program Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\chameleon.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Nederlands)\Microsoft Excel Starter 2010.lnk - C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE "Microsoft Excel Starter 2010 9014006604130000" C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Nederlands)\Microsoft Word Starter 2010.lnk - C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE "Microsoft Word Starter 2010 9014006604130000" C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Nederlands)\Microsoft Office 2010-hulpprogramma's\Microsoft Mediagalerie.lnk - C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE "Microsoft Mediagalerie 9014006604130000" C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Nederlands)\Microsoft Office 2010-hulpprogramma's\Microsoft Office 2010 Upload Center.lnk - C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE "Microsoft Office 2010 Upload Center 9014006604130000" C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Nederlands)\Microsoft Office 2010-hulpprogramma's\Microsoft Office Picture Manager.lnk - C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE "Microsoft Office Picture Manager 9014006604130000" C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Nederlands)\Microsoft Office 2010-hulpprogramma's\Microsoft Office Starter To-Go Device Manager 2010.lnk - C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE "Microsoft Office Starter To-Go Device Manager 2010 9014006604130000" C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office-hulpprogramma's\Microsoft Clip Organizer.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\cagicon.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office-hulpprogramma's\Microsoft Office Document Imaging.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\mspicons.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office-hulpprogramma's\Microsoft Office Document Scanning.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\mspicons.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office-hulpprogramma's\Microsoft Office XP-taalinstellingen.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\misc.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office-hulpprogramma's\Microsoft Office-toepassingsherstel.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\misc.exe -c C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office-hulpprogramma's\Product activeren.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\misc.exe -z C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office-hulpprogramma's\Wizard Mijn instellingen opslaan.lnk - C:\Windows\Installer\{90110413-6000-11D3-8CFE-0050048383C9}\opwicon.exe /u C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk - C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\Silverlight.Configuration.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mirillis\Action.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mirillis\Action\User Manual JP.lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Nero Burning ROM.lnk - C:\Windows\Installer\{7A5D731D-B4B3-490E-B339-75685712BAAB}\ScBurningROMStartM_FF88F478D1E748AC86035D457D563142.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Nero ControlCenter.lnk - C:\Windows\Installer\{6DFB899F-17A2-48F0-A533-ED8D6866CF38}\ScControlCenterSta_FC2653898C5047A6A872CAF6433C43A8.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero Burning ROM\Chinees (Traditioneel).lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurningRom_zh-TW.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero Burning ROM\Chinees (Vereenvoudigd).lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurningRom_zh-CN.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero Burning ROM\Duits.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurningRom_de-DE.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero Burning ROM\Engels.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurningRom_en-US.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero Burning ROM\Frans.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurningRom_fr-FR.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero Burning ROM\Italiaans.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurningRom_it-IT.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero Burning ROM\Japans.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurningRom_ja-JP.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero Burning ROM\Koreaans.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurningRom_ko-KR.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero Burning ROM\Nederlands.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurningRom_nl-NL.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero Burning ROM\Pools.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurningRom_pl-PL.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero Burning ROM\Portugees (Braziliė).lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero Burning ROM\Russisch.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurningRom_ru-RU.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero Burning ROM\Spaans.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurningRom_es-ES.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero Burning ROM\Tsjechisch.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurningRom_cs-CZ.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero Burning ROM\Zweeds.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurningRom_sv-SE.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero BurnRights\Chinees (Traditioneel).lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurnRights_zh-TW.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero BurnRights\Chinees (Vereenvoudigd).lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurnRights_zh-CN.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero BurnRights\Duits.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurnRights_de-DE.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero BurnRights\Engels.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurnRights_en-US.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero BurnRights\Frans.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurnRights_fr-FR.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero BurnRights\Italiaans.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurnRights_it-IT.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero BurnRights\Japans.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurnRights_ja-JP.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero BurnRights\Koreaans.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurnRights_ko-KR.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero BurnRights\Nederlands.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurnRights_nl-NL.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero BurnRights\Pools.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurnRights_pl-PL.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero BurnRights\Portugees (Portugal).lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurnRights_pt-PT.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero BurnRights\Russisch.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurnRights_ru-RU.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero BurnRights\Spaans.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurnRights_es-ES.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero BurnRights\Tsjechisch.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurnRights_cs-CZ.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero BurnRights\Zweeds.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroBurnRights_sv-SE.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero ControlCenter\Chinees (Traditioneel).lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroControlCenter_zh-TW.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero ControlCenter\Chinees (Vereenvoudigd).lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroControlCenter_zh-CN.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero ControlCenter\Duits.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroControlCenter_de-DE.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero ControlCenter\Engels.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroControlCenter_en-US.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero ControlCenter\Frans.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroControlCenter_fr-FR.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero ControlCenter\Italiaans.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroControlCenter_it-IT.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero ControlCenter\Japans.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroControlCenter_ja-JP.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero ControlCenter\Koreaans.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroControlCenter_ko-KR.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero ControlCenter\Nederlands.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroControlCenter_nl-NL.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero ControlCenter\Pools.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroControlCenter_pl-PL.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero ControlCenter\Portugees (Braziliė).lnk - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero ControlCenter\Portugees (Portugal).lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroControlCenter_pt-PT.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero ControlCenter\Russisch.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroControlCenter_ru-RU.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero ControlCenter\Spaans.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroControlCenter_es-ES.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero ControlCenter\Tsjechisch.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroControlCenter_cs-CZ.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero\Nero 10\Online help\Nero ControlCenter\Zweeds.lnk - C:\Program Files (x86)\Nero\Nero 10\Help\NeroControlCenter_sv-SE.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\GeForce Experience.lnk - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\LaunchGFExperience.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\3D Vision Photo Viewer.lnk - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\3D Vision preview pack 1.lnk - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe /show C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\Disable 3D Vision.lnk - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe /disable C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\Enable 3D Vision.lnk - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe /enable C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Origin Error Reporter.lnk - C:\Program Files (x86)\Origin\OriginER.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Origin verwijderen.lnk - C:\Program Files (x86)\Origin\OriginUninstall.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Origin.lnk - C:\Program Files (x86)\Origin\Origin.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PCSX2\Frequently Asked Questions.lnk - C:\Program Files (x86)\PCSX2 1.4.0\Docs\PCSX2_FAQ.pdf C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PCSX2\PCSX2 1.4.0.lnk - C:\Program Files (x86)\PCSX2 1.4.0\pcsx2.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PCSX2\Readme.lnk - C:\Program Files (x86)\PCSX2 1.4.0\Docs\PCSX2_Readme.pdf C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PCSX2\Uninstall PCSX2 1.4.0.lnk - C:\Program Files (x86)\PCSX2 1.4.0\Uninst-pcsx2 1.4.0.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickPar\QuickPar.lnk - C:\Program Files (x86)\QuickPar\QuickPar.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickPar\Uninstall.lnk - C:\Program Files (x86)\QuickPar\uninst.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickPar\Website.lnk - C:\Program Files (x86)\QuickPar\QuickPar.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT\Isku Keyboard\Isku Driver.lnk - C:\Program Files (x86)\ROCCAT\Isku Keyboard\IskuMonitor.exe 1 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT\Isku Keyboard\Uninstall Driver.lnk - C:\Windows\system32\RunDll32.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT\Kone Pure Mouse\Kone Pure Driver.lnk - C:\Program Files (x86)\ROCCAT\Kone Pure Mouse\KonePureMonitor.exe 1 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT\Kone Pure Mouse\Uninstall Driver.lnk - C:\Windows\system32\RunDll32.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rummi\Rummi op het Web.lnk - C:\Program Files (x86)\Rummi\Rummi.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rummi\Rummi.lnk - C:\Program Files (x86)\Rummi\Rummi.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rummi\Verwijder Rummi.lnk - C:\Program Files (x86)\Rummi\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony\Vegas Pro 9.0\Vegas Pro 9.0 (64-bit).lnk - C:\Program Files (x86)\Sony\Vegas Pro 9.0\vegas90.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony\Vegas Pro 9.0\Vegas Pro 9.0 Network Render Service (64-bit).lnk - C:\Program Files (x86)\Sony\Vegas Pro 9.0\VegSrv90.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony\Vegas Pro 9.0\Vegas Pro 9.0 Readme.lnk - C:\Program Files (x86)\Sony\Vegas Pro 9.0\Readme\Vegas_readme.htm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony\Vegas Pro 9.0\Video Capture 6.0 Readme.lnk - C:\Program Files (x86)\Sony\Vegas Pro 9.0\Readme\Videocapture_readme.htm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spotnet\Spotnet.lnk - C:\Program Files (x86)\Spotnet\Spotnet.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk - C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE -b -l C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam\Steam.lnk - C:\Program Files (x86)\Steam\Steam.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Documentation.lnk - C:\Program Files (x86)\VideoLAN\VLC\Documentation.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Release Notes.lnk - C:\Program Files (x86)\VideoLAN\VLC\NEWS.txt C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Reset VLC media player preferences and cache files.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe --reset-config --reset-plugins-cache vlc://quit C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VideoLAN Website.lnk - C:\Program Files (x86)\VideoLAN\VLC\VideoLAN Website.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player - reset preferences and cache files.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe --reset-config --reset-plugins-cache vlc://quit C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player skinned.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe -Iskins C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VOWSoft iPod Software\iBackupBot for iTunes\iBackupBot for iTunes.lnk - C:\Program Files (x86)\VOWSoft iPod Software\iBackupBot for iTunes\iBackupBot.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VOWSoft iPod Software\iBackupBot for iTunes\Uninstall.lnk - C:\Program Files (x86)\VOWSoft iPod Software\iBackupBot for iTunes\uninst.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VOWSoft iPod Software\iBackupBot for iTunes\Website.lnk - C:\Program Files (x86)\VOWSoft iPod Software\iBackupBot for iTunes\iBackupBot.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vulkan 1.0.3.0\Demos\vulkaninfo.lnk - C:\Program Files (x86)\VulkanRT\1.0.3.0\vulkaninfo.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vulkan 1.0.3.0\Demos\vulkaninfo32.lnk - C:\Program Files (x86)\VulkanRT\1.0.3.0\vulkaninfo32.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Writer.lnk - C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriter.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Console RAR-handleiding.lnk - C:\Program Files (x86)\WinRAR\Rar.txt C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR help.lnk - C:\Program Files (x86)\WinRAR\WinRAR.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk - C:\Program Files (x86)\WinRAR\WinRAR.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WorldOfGoo\2D Boy on the Information Superhighway.lnk - C:\Program Files (x86)\WorldOfGoo\2DBoyOnTheInformationSuperhighway.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WorldOfGoo\Uninstall.lnk - C:\Program Files (x86)\WorldOfGoo\uninstall.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WorldOfGoo\World of Goo.lnk - C:\Program Files (x86)\WorldOfGoo\WorldOfGoo.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xilisoft\iPhone Ringtone Maker\Buy.lnk - C:\Program Files (x86)\Xilisoft\iPhone Ringtone Maker\iphoneringtone_buy.exe -buyurl C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xilisoft\iPhone Ringtone Maker\Uninstall.lnk - C:\Program Files (x86)\Xilisoft\iPhone Ringtone Maker\Uninstall.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xilisoft\iPhone Ringtone Maker\Xilisoft iPhone Ringtone Maker Help.lnk - C:\Program Files (x86)\Xilisoft\iPhone Ringtone Maker\iphoneringtone.exe -helpurl C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xilisoft\iPhone Ringtone Maker\Xilisoft iPhone Ringtone Maker.lnk - C:\Program Files (x86)\Xilisoft\iPhone Ringtone Maker\iphoneringtone.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Youtube Downloader HD\FLV Converter.lnk - C:\Program Files (x86)\Youtube Downloader HD\flv2avi.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Youtube Downloader HD\Visit Website.lnk - C:\Program Files (x86)\Youtube Downloader HD\YoutubeDownloaderHD.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Youtube Downloader HD\Youtube Downloader HD.lnk - C:\Program Files (x86)\Youtube Downloader HD\YouTubeDownloaderHD.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Youtube Downloader HD\Other free programs\Free Duplicate Photo Finder on the Web.lnk - C:\Program Files (x86)\Youtube Downloader HD\DuplicatePhotoFinder.url C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Youtube Downloader HD\Other free programs\Free Youtube to MP3 Converter on the Web.lnk - C:\Program Files (x86)\Youtube Downloader HD\YouTubeToMP3Converter.url ==== shortcuts in Quick Launch ====================== C:\Users\Gast\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=apsnapdoam&co=NL&userid=cebf63c6-04ef-1a0d-010e-707002c4136e&searchtype=sc&installDate=26-05-2016&barcodeid=50046888&channelid=888&av=windows C:\Users\Gast\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Gast\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Gast\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=apsnapdoam&co=NL&userid=cebf63c6-04ef-1a0d-010e-707002c4136e&searchtype=sc&installDate=26-05-2016&barcodeid=50046888&channelid=888&av=windows C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=apsnapdoam&co=NL&userid=cebf63c6-04ef-1a0d-010e-707002c4136e&searchtype=sc&installDate=26-05-2016&barcodeid=50046888&channelid=888&av=windows C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=apsnapdoam&co=NL&userid=cebf63c6-04ef-1a0d-010e-707002c4136e&searchtype=sc&installDate=26-05-2016&barcodeid=50046888&channelid=888&av=windows C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Action.lnk - C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Free YouTube to MP3 Converter.lnk - C:\Program Files (x86)\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=apsnapdoam&co=NL&userid=cebf63c6-04ef-1a0d-010e-707002c4136e&searchtype=sc&installDate=26-05-2016&barcodeid=50046888&channelid=888&av=windows C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\League of Legends.lnk - C:\Riot Games\League of Legends\lol.launcher.exe C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Notepad.lnk - C:\Windows\system32\notepad.exe C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Rummi.lnk - C:\Program Files (x86)\Rummi\Rummi.exe C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Spotnet.lnk - C:\Program Files (x86)\Spotnet\Spotnet.exe C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Vegas Pro 9.0 (64-bit).lnk - C:\Program Files (x86)\Sony\Vegas Pro 9.0\vegas90.exe C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Youtube Downloader HD.lnk - C:\Program Files (x86)\Youtube Downloader HD\YouTubeDownloaderHD.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\App-opstartprogramma van Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --show-app-list C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=apsnapdoam&co=NL&userid=cebf63c6-04ef-1a0d-010e-707002c4136e&searchtype=sc&installDate=26-05-2016&barcodeid=50046888&channelid=888&av=windows C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\GrabIt.lnk - C:\Program Files (x86)\GrabIt\GrabIt.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=apsnapdoam&co=NL&userid=cebf63c6-04ef-1a0d-010e-707002c4136e&searchtype=sc&installDate=26-05-2016&barcodeid=50046888&channelid=888&av=windows C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Xilisoft iPhone Ringtone Maker.lnk - C:\Program Files (x86)\Xilisoft\iPhone Ringtone Maker\iphoneringtone.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Xilisoft Video Converter Platinum.lnk - C:\Program Files (x86)\Xilisoft\Video Converter Platinum\vcloader.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Dropbox.lnk - C:\Program Files (x86)\Dropbox\Client\Dropbox.exe /home C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Fraps.lnk - C:\Fraps\fraps.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Free YouTube to MP3 Converter.lnk - C:\Program Files (x86)\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=apsnapdoam&co=NL&userid=cebf63c6-04ef-1a0d-010e-707002c4136e&searchtype=sc&installDate=26-05-2016&barcodeid=50046888&channelid=888&av=windows C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Notepad.lnk - C:\Windows\system32\notepad.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\PVP.net Patcher.lnk - C:\Riot Games\League of Legends\lol.launcher.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Spotnet.lnk - C:\Program Files (x86)\Spotnet\Spotnet.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\SpyHunter4 - Snelkoppeling.lnk - C:\Program Files (x86)\Enigma Software Group\SpyHunter\SpyHunter4.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Vegas Pro 9.0 (64-bit).lnk - C:\Program Files (x86)\Sony\Vegas Pro 9.0\vegas90.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Xilisoft iPhone Ringtone Maker.lnk - C:\Program Files (x86)\Xilisoft\iPhone Ringtone Maker\iphoneringtone.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Youtube Downloader HD.lnk - C:\Program Files (x86)\Youtube Downloader HD\YouTubeDownloaderHD.exe C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - ==== shortcuts After Repair ====================== C:\Users\Gast\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Klant\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Gast\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Gast\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\Klant\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Sinvudyo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==== Deleting Registry Keys ====================== HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\UnityWebPlayer deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0 deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iFunBox Fast App Install Handler deleted successfully ==== HijackThis Entries ====================== F2 - REG:system.ini: UserInit=userinit.exe, O2 - BHO: Aanmeldhulp voor Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O4 - HKLM\..\Run: [RoccatKonePure] "C:\Program Files (x86)\ROCCAT\Kone Pure Mouse\KonePureMonitor.EXE" O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [RoccatIsku] "C:\Program Files (x86)\ROCCAT\Isku Keyboard\IskuMonitor.EXE" O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [Dropbox] "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\Sinvudyo\AppData\Local\Akamai\netsession_win.exe" O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Sinvudyo\AppData\Roaming\Spotify\SpotifyWebHelper.exe" O4 - HKCU\..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe O4 - HKCU\..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe O4 - HKCU\..\Run: [Remote Mouse] C:\Program Files (x86)\Remote Mouse\RemoteMouse.exe O4 - HKCU\..\Run: [GalaxyClient] C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe /launchViaAutoStart O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - Global Startup: Microsoft Office.lnk = C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MIF5BA~1\Office10\EXCEL.EXE/3000 O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - Trusted Zone: *.clonewarsadventures.com O15 - Trusted Zone: *.freerealms.com O15 - Trusted Zone: *.soe.com O15 - Trusted Zone: *.sony.com O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O20 - AppInit_DLLs: C:\ProgramData\xifs\Saotom.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Background Logic Handler (backlh) - Unknown owner - C:\ProgramData\Logic Handler\set.exe O23 - Service: BitTorrent - Unknown owner - C:\Program Files\BitTorrent\BitTorrent.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe O23 - Service: Dropbox-update-service (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe O23 - Service: Dropbox-update-service (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Windows\system32\EasyAntiCheat.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: GalaxyClientService - Unknown owner - C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe (file missing) O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing) O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe O23 - Service: Trippletintax (pcoductproproducu) - Unknown owner - (no file) O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: SpyHunter 4 Service - Enigma Software Group USA, LLC. - C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Gast\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Klant\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Klant\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Sinvudyo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Sinvudyo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\Klant\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\Sinvudyo\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=578 folders=184 173445150 bytes) ==== Empty Temp Folders ====================== C:\Users\Gast\AppData\Local\Temp emptied successfully C:\Users\Klant\AppData\Local\Temp emptied successfully C:\Users\Sinvudyo\AppData\Local\Temp will be emptied at reboot C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Sinvudyo\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on do 26-05-2016 at 21:50:18,13 ======================