Zoek.exe v5.0.0.1 Updated 31-December-2015 Tool run by Lien on di 21/06/2016 at 21:36:55,11. Microsoft Windows 8.1 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Lien\Documents\Mijn PC-beveiliging\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 21/06/2016 21:42:52 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\PROGRA~2\MSXML 4.0 deleted successfully C:\PROGRA~3\Origin deleted successfully C:\PROGRA~3\Validity deleted successfully C:\Users\Lien\AppData\Roaming\Origin deleted successfully C:\Users\Lien\AppData\Local\EmieSiteList deleted successfully C:\Users\Lien\AppData\Local\EmieUserList deleted successfully C:\Users\Lien\AppData\Local\LG Electronics deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-4063213393-2851906856-2747515572-1002\Software\Microsoft\Internet Explorer\SearchScopes\{72302923-89D1-499E-8D8B-566888BCFE05} deleted successfully HKEY_USERS\S-1-5-21-4063213393-2851906856-2747515572-1002\Software\Microsoft\Internet Explorer\SearchScopes\{BC328811-F0AC-42FE-80D8-57A768C7184C} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{BC328811-F0AC-42FE-80D8-57A768C7184C} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BC328811-F0AC-42FE-80D8-57A768C7184C} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] ""=- ==== Deleting Files \ Folders ====================== C:\Users\Lien\.android deleted C:\PROGRA~2\Connected Music powered by Universal Music Group deleted C:\PROGRA~2\Splashtop deleted C:\Users\Lien\AppData\Roaming\Network Meter_Usage.ini deleted C:\Users\Lien\AppData\Roaming\Network Monitor II_#0_Traffic.ini deleted C:\PROGRA~3\{18165758-115C-4DC0-9EC2-FF89F725767F} deleted C:\PROGRA~3\Package Cache deleted C:\Users\Lien\AppData\Local\CrashRpt deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted C:\WINDOWS\wininit.ini deleted C:\WINDOWS\SysNative\config\systemprofile\Searches deleted C:\WINDOWS\Syswow64\SET517A.tmp deleted C:\WINDOWS\Syswow64\SET539F.tmp deleted C:\WINDOWS\Syswow64\SET6101.tmp deleted "C:\WINDOWS\Installer\133763.msi" deleted "C:\Windows\Installer\1ea30c9a.msi" deleted ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== ====== C:\Users\Lien\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== 2016-06-15 20:11:05 8696752284B4F5786BA82ED4BA90F48A 12879872 ----a-w- C:\WINDOWS\SysWOW64\twinui.dll 2016-06-15 20:08:15 6F13635E333CF70AD87A8FDEB2DBFA12 2464768 ----a-w- C:\WINDOWS\SysWOW64\authui.dll 2016-06-15 20:08:14 15439CD1D00346692DAEBDDA3107171D 3607040 ----a-w- C:\WINDOWS\SysWOW64\msi.dll 2016-06-14 20:28:10 FE55BDCEB1F9E12FEB0DE7B302C6331B 20341248 ----a-w- C:\WINDOWS\SysWOW64\mshtml.dll 2016-06-14 20:28:04 BF95219E932B347B9A96191E7596AA78 13815808 ----a-w- C:\WINDOWS\SysWOW64\ieframe.dll 2016-06-14 20:28:03 D7A447FCDAAB634414A70A7FB43550D3 4610048 ----a-w- C:\WINDOWS\SysWOW64\jscript9.dll 2016-06-14 20:28:01 B6B994FDE6F10910D3DD217FC9148892 2287104 ----a-w- C:\WINDOWS\SysWOW64\iertutil.dll 2016-06-14 20:28:01 0D3E6ED5056221DBEE27ADD0FBB12AAE 1310208 ----a-w- C:\WINDOWS\SysWOW64\urlmon.dll 2016-06-14 20:28:00 FDD35A049C278F21F475C488FDA918AB 2121216 ----a-w- C:\WINDOWS\SysWOW64\wininet.dll 2016-06-14 20:28:00 B060248F84C8DB2039BF4FACCC25F971 497664 ----a-w- C:\WINDOWS\SysWOW64\vbscript.dll 2016-06-14 20:27:58 E75E3B84A96A632DC50DA9B4A72BADC2 693248 ----a-w- C:\WINDOWS\SysWOW64\msfeeds.dll 2016-06-14 20:27:58 5B89A8DE3B6E1B2BD460005829152F9E 2055680 ----a-w- C:\WINDOWS\SysWOW64\inetcpl.cpl 2016-06-14 20:27:57 CED67573CD8200D6C1A4EA9DA8212CAC 230400 ----a-w- C:\WINDOWS\SysWOW64\webcheck.dll 2016-06-14 20:27:57 B0F308E17518440F05493E7E633997F0 128000 ----a-w- C:\WINDOWS\SysWOW64\iepeers.dll 2016-06-14 20:27:57 5562C4FD66AEE54979BDC1D0E022621A 64000 ----a-w- C:\WINDOWS\SysWOW64\MshtmlDac.dll 2016-06-14 20:27:57 49408A35D8CA83980F834D9DA6302258 279040 ----a-w- C:\WINDOWS\SysWOW64\dxtrans.dll 2016-06-14 20:27:56 95EC9FA095A5DED5E926125D605CACB5 880128 ----a-w- C:\WINDOWS\SysWOW64\inetcomm.dll 2016-06-14 20:27:56 5CA7DB66D6A2A8091C423C2E43463C86 663552 ----a-w- C:\WINDOWS\SysWOW64\jscript.dll 2016-06-14 20:27:55 CC69A28D14007B2AC7EC80739DA42C01 710144 ----a-w- C:\WINDOWS\SysWOW64\ieapfltr.dll 2016-06-14 20:25:58 F098034055C3B1AE2DEC3600E47618E6 115704 ----a-w- C:\WINDOWS\SysWOW64\gpapi.dll 2016-06-14 20:25:58 BD5051CAE3AE0CBC402085A6E57B3CA9 291328 ----a-w- C:\WINDOWS\SysWOW64\polstore.dll 2016-06-14 20:25:58 789AD6DFEF198B32EBD12646D99CD2A1 50176 ----a-w- C:\WINDOWS\SysWOW64\FwRemoteSvr.dll 2016-06-14 20:25:52 DDD98338F1D4B71AAB293CCF98F398DD 503808 ----a-w- C:\WINDOWS\SysWOW64\StructuredQuery.dll 2016-06-14 20:25:46 850E959E341D6B707EA663BE7271DAB9 5270016 ----a-w- C:\WINDOWS\SysWOW64\glcndFilter.dll 2016-06-14 20:25:46 2DF8DA1C51430CDA9B7CA16DF1D79B49 5265920 ----a-w- C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2016-06-14 20:25:12 CE0B0014EE83E134452B5E9DDA28B10D 340872 ----a-w- C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2016-06-14 20:25:12 6950A7C2B965556075C8B59F9EE102E8 324096 ----a-w- C:\WINDOWS\SysWOW64\certcli.dll 2016-06-14 20:25:07 70C0968AB49382522DDBE31B2733F367 35840 ----a-w- C:\WINDOWS\SysWOW64\atmlib.dll 2016-06-14 20:25:07 5542F554514612D38958F25B4F2848ED 315224 ----a-w- C:\WINDOWS\SysWOW64\atmfd.dll 2016-06-14 20:24:47 9EC46A87625EC33C94EB3E2990680F7D 1097216 ----a-w- C:\WINDOWS\SysWOW64\gdi32.dll 2016-06-14 20:24:42 F1EEBAFC8DB948A7089CD1B8152548DC 320720 ----a-w- C:\WINDOWS\SysWOW64\ws2_32.dll 2016-06-14 20:24:42 5A540777BD31438E397ED863AED1A5B9 286208 ----a-w- C:\WINDOWS\SysWOW64\mswsock.dll 2016-06-14 20:24:42 4B5838786CA1FE753E840E05FB3CEAB7 631808 ----a-w- C:\WINDOWS\SysWOW64\winhttp.dll ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2016-06-15 20:11:06 60CA12F17FBFCF2ABCBA36D126F52156 14467584 ----a-w- C:\WINDOWS\Sysnative\twinui.dll 2016-06-15 20:08:31 E9C0AC5E3625B1E7473D40AF8945F917 1413120 ----a-w- C:\WINDOWS\Sysnative\appraiser.dll 2016-06-15 20:08:30 A7ED244E74B4FC8EA842E08702FCC4E5 265216 ----a-w- C:\WINDOWS\Sysnative\centel.dll 2016-06-15 20:08:30 939258F1561BF6238EFE51DC5AE3CEE9 76800 ----a-w- C:\WINDOWS\Sysnative\acmigration.dll 2016-06-15 20:08:30 73096B911326367BB12B0AF6A3EFC2A9 50352 ----a-w- C:\WINDOWS\Sysnative\CompatTelRunner.exe 2016-06-15 20:08:30 69EA596DB7E47BFF956FC06BF89973B9 276480 ----a-w- C:\WINDOWS\Sysnative\invagent.dll 2016-06-15 20:08:30 695BC8DB86A4AEBA05EBFF4C6D2226C6 569856 ----a-w- C:\WINDOWS\Sysnative\generaltel.dll 2016-06-15 20:08:30 1DD4ACCD6405DDCF8E30C9BF1B169B76 1204224 ----a-w- C:\WINDOWS\Sysnative\aeinv.dll 2016-06-15 20:08:30 0F0AD193BF34F532852DAA53F0557F3A 544256 ----a-w- C:\WINDOWS\Sysnative\devinv.dll 2016-06-15 20:08:30 0A2DF1055FEEA30DFF73DAC0DA45FDE4 472576 ----a-w- C:\WINDOWS\Sysnative\pcasvc.dll 2016-06-15 20:08:15 C2D4CF36ABEAC5DE9B5CAF25D4B56967 2778624 ----a-w- C:\WINDOWS\Sysnative\authui.dll 2016-06-15 20:08:14 734622FBA766DBD65B1803549B24A04A 110080 ----a-w- C:\WINDOWS\Sysnative\appinfo.dll 2016-06-15 20:08:14 600D506FEA867E0BAEAFFEFCE54F35B3 118624 ----a-w- C:\WINDOWS\Sysnative\consent.exe 2016-06-15 20:08:14 31C3CEB4DA4A56BE736D4C81BB406C4A 3320832 ----a-w- C:\WINDOWS\Sysnative\msi.dll 2016-06-14 20:28:12 5D0EA73A910A2004A5A6598BDB26857B 25802752 ----a-w- C:\WINDOWS\Sysnative\mshtml.dll 2016-06-14 20:28:06 62EE27CE91167F082DF73E48C9ACE1CA 6051328 ----a-w- C:\WINDOWS\Sysnative\jscript9.dll 2016-06-14 20:28:05 3AF1BBD3EFDD53823A8687A3AD24E137 15420928 ----a-w- C:\WINDOWS\Sysnative\ieframe.dll 2016-06-14 20:28:03 EA1B9D3C7D11CA407AA89CBB266139CF 2597888 ----a-w- C:\WINDOWS\Sysnative\wininet.dll 2016-06-14 20:28:03 97105AEB06F9E3D28CC8D77015DF5EFC 1544192 ----a-w- C:\WINDOWS\Sysnative\urlmon.dll 2016-06-14 20:28:02 660BE1FBC5BEF8BEA1D38E3A532A5749 2895360 ----a-w- C:\WINDOWS\Sysnative\iertutil.dll 2016-06-14 20:28:00 D87AB3135DD1024D0700C4DB9619E2B2 572416 ----a-w- C:\WINDOWS\Sysnative\vbscript.dll 2016-06-14 20:27:58 D4A12AC117664A2A3F958F9A8986DC8C 2131968 ----a-w- C:\WINDOWS\Sysnative\inetcpl.cpl 2016-06-14 20:27:58 8194F4EA4F0922EFB838659FD777618A 817664 ----a-w- C:\WINDOWS\Sysnative\jscript.dll 2016-06-14 20:27:58 68FCB2DE9B065939BC783C64210BACDB 806400 ----a-w- C:\WINDOWS\Sysnative\msfeeds.dll 2016-06-14 20:27:57 C0F2AD0D8287BF12AD1634088A85EC0C 315392 ----a-w- C:\WINDOWS\Sysnative\dxtrans.dll 2016-06-14 20:27:57 542AE8E0449B5914A2012A5337D15F81 145408 ----a-w- C:\WINDOWS\Sysnative\iepeers.dll 2016-06-14 20:27:57 42F653F5E45F1A26243FEE0D08FB3302 262144 ----a-w- C:\WINDOWS\Sysnative\webcheck.dll 2016-06-14 20:27:57 425658930CD7FA25EB25B21D1AE365EA 92160 ----a-w- C:\WINDOWS\Sysnative\mshtmled.dll 2016-06-14 20:27:57 12F17778DBD4454E1D2EDF90C19121E8 379392 ----a-w- C:\WINDOWS\Sysnative\iedkcs32.dll 2016-06-14 20:27:56 8F10460B9E74F93D58536FBD09FAEF3A 800768 ----a-w- C:\WINDOWS\Sysnative\ieapfltr.dll 2016-06-14 20:27:56 24451A901B0DDF54000D0E742FF17799 1032704 ----a-w- C:\WINDOWS\Sysnative\inetcomm.dll 2016-06-14 20:25:58 A4435F095929480018210E80EA9EFE4F 135336 ----a-w- C:\WINDOWS\Sysnative\gpapi.dll 2016-06-14 20:25:58 9678FD4747A4F2E2318245EE6099482E 1360896 ----a-w- C:\WINDOWS\Sysnative\gpsvc.dll 2016-06-14 20:25:58 36A8E751D0AE732D6387A9E5E2491D70 92160 ----a-w- C:\WINDOWS\Sysnative\FwRemoteSvr.dll 2016-06-14 20:25:58 244CF999D9D04E83388BCFE1242C18CE 331776 ----a-w- C:\WINDOWS\Sysnative\polstore.dll 2016-06-14 20:25:58 0FF8507A8B901B904E98EB36B9E347EE 398848 ----a-w- C:\WINDOWS\Sysnative\IPSECSVC.DLL 2016-06-14 20:25:52 B4BB66E7418C9A406D7DF34ADB1829D6 748544 ----a-w- C:\WINDOWS\Sysnative\StructuredQuery.dll 2016-06-14 20:25:50 07B1BDA9ACB4BDFC9ABD0FB87FEC2745 4169216 ----a-w- C:\WINDOWS\Sysnative\win32k.sys 2016-06-14 20:25:47 50D16F982079331D6E91AD933CAE3C4E 7793152 ----a-w- C:\WINDOWS\Sysnative\Windows.Data.Pdf.dll 2016-06-14 20:25:46 E483D103B7752B08A29E25F0589B6393 7075328 ----a-w- C:\WINDOWS\Sysnative\glcndFilter.dll 2016-06-14 20:25:12 45594E13801B2A1A79A3229E1CA06068 397224 ----a-w- C:\WINDOWS\Sysnative\bcryptprimitives.dll 2016-06-14 20:25:12 424275CB3C03CF4053E9A300AAE795FF 445440 ----a-w- C:\WINDOWS\Sysnative\certcli.dll 2016-06-14 20:25:07 D2FEB42A4D02D8DCC483E42EEFFAA582 44032 ----a-w- C:\WINDOWS\Sysnative\atmlib.dll 2016-06-14 20:25:07 1C0B0B5635A462AA5088C238BD0A9010 372568 ----a-w- C:\WINDOWS\Sysnative\atmfd.dll 2016-06-14 20:24:47 9CA977C6DF8750CDA61892E268F01AC0 1379040 ----a-w- C:\WINDOWS\Sysnative\gdi32.dll 2016-06-14 20:24:42 D3901AE5309630F4981D093AE2EF8A83 339456 ----a-w- C:\WINDOWS\Sysnative\mswsock.dll 2016-06-14 20:24:42 B9274FE20F2DA0A92A4B0B3E3CBE1C4C 363104 ----a-w- C:\WINDOWS\Sysnative\ws2_32.dll 2016-06-14 20:24:42 310388D06C11C507226CD7C2D21D5ACE 802816 ----a-w- C:\WINDOWS\Sysnative\winhttp.dll ====== C:\WINDOWS\Sysnative\drivers ===== 2016-06-14 20:25:12 CED8576CD925E83ABEB14F65EA205C29 675328 ----a-w- C:\WINDOWS\Sysnative\drivers\srv2.sys 2016-06-14 20:25:12 69DC128CF54009A686E0F0C57E2BA0DC 416768 ----a-w- C:\WINDOWS\Sysnative\drivers\srv.sys 2016-06-14 20:25:12 4396587119D8F4B72561ED24666E7567 243712 ----a-w- C:\WINDOWS\Sysnative\drivers\srvnet.sys 2016-06-14 20:25:12 38BED40B100C6A844C3DB1AEE2F0C6CF 178008 ----a-w- C:\WINDOWS\Sysnative\drivers\ksecpkg.sys 2016-06-14 20:25:12 1F20A2F59B7F979B39CBFA602E0D1F8E 563016 ----a-w- C:\WINDOWS\Sysnative\drivers\cng.sys 2016-06-14 20:24:42 9DC17B7D9D84C37C102D379FCC7D4942 281088 ----a-w- C:\WINDOWS\Sysnative\drivers\netbt.sys ====== C:\WINDOWS\Tasks ====== ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2016-06-18 17:30:29 -------- d-----w- C:\Program Files\trend micro ======= C:\PROGRA~2 ===== 2016-06-18 14:59:04 -------- d-----w- C:\PROGRA~2\Trend Micro 2016-05-28 13:30:45 -------- d-----w- C:\PROGRA~2\COMMON~1\Java ======= C: ===== ====== C:\Users\Lien\AppData\Roaming ====== 2016-06-20 11:27:27 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CrashDumps 2016-06-12 13:20:56 -------- d-----w- C:\Users\Lien\AppData\Roaming\App Launcher Gadget 2016-06-12 13:13:56 -------- d-----w- C:\Users\Lien\AppData\Local\Clipboarder 2016-06-12 13:13:40 -------- d-----w- C:\Users\Lien\AppData\Local\Sidebar7 2016-06-11 14:26:28 -------- d-----w- C:\Users\Lien\AppData\Local\CEF 2016-06-11 14:26:27 -------- d-----w- C:\Users\Lien\AppData\Local\FacebookGames 2016-06-11 14:26:12 -------- d-----w- C:\Users\Lien\AppData\Local\Facebook 2016-05-29 12:01:06 8ED68449015CEB205E6905406D205191 32255 ----a-w- C:\Users\Lien\AppData\Local\recently-used.xbel 2016-05-28 13:30:34 -------- d-----w- C:\Users\Lien\AppData\Roaming\Sun 2016-05-28 13:27:49 -------- d-----w- C:\Users\Lien\AppData\Locallow\Oracle ====== C:\Users\Lien ====== 2016-06-12 13:15:21 F38C5A00B05867F65FB126C82406E1A3 127 ----a-w- C:\Users\Lien\IP_Log_Data.js 2016-06-12 13:12:38 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\8GadgetPack 2016-05-28 13:30:34 -------- d-----w- C:\Users\Lien\.oracle_jre_usage ====== C: exe-files == 2016-06-21 19:14:17 99F920550FB892505FDAE720A30B31C5 2392064 ----a-w- C:\Users\Lien\AppData\Local\NVIDIA\NvBackend\Packages\00008dfd\vops-sims_4.20870146.exe 2016-06-21 19:14:17 3087B696FBC7B011562DFE14DD530647 1625440 ----a-w- C:\Users\Lien\AppData\Local\NVIDIA\NvBackend\Packages\00008e0b\vops-the_sims_3.20870146.exe 2016-06-21 19:14:09 3833307E51D4D745687BEBAC791A45BE 701320 ----a-w- C:\Users\Lien\AppData\Local\NVIDIA\NvBackend\Packages\00008df3\CoProc update.20869136.exe 2016-06-20 18:40:34 2F267899EFE3BED390AF60CC1371FC9B 8112416 ----a-w- C:\Users\Lien\AppData\Local\NVIDIA\NvBackend\Packages\00008ded\DAO.20867264.exe 2016-06-20 16:35:08 AFB60F217734CBDBAB0885FDA1ACFB71 346552 ----a-w- C:\Users\Lien\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe 2016-06-20 16:35:04 0A9AE7EE305CD4FCFCFD4B96E6240E1D 403896 ----a-w- C:\Users\Lien\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\OAWrapper.exe 2016-06-18 17:30:30 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Lien.exe 2016-06-18 09:27:57 C95EF70EE631E5D9782E34045F4A0DEE 2698328 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\51.0.2704.103\51.0.2704.103_51.0.2704.84_chrome_updater.exe 2016-06-15 15:43:26 9166CA88DEDA3CC3BEEB2778C2B2A327 65600 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\Detect_PendingActions.exe === C: other files == 2016-06-20 11:35:45 02D70BD1A1384F7B3065FA8E33A3E9B8 268106 ----a-w- C:\$Recycle.Bin\S-1-5-21-4063213393-2851906856-2747515572-1002\$RA2D6ML\WindSpun\AFBGShortDressShoesSnorkelBlueWindSpun-S2I-20160505.zip 2016-06-14 20:25:50 07B1BDA9ACB4BDFC9ABD0FB87FEC2745 4169216 ----a-w- C:\Windows\System32\win32k.sys 2016-06-14 20:25:12 CED8576CD925E83ABEB14F65EA205C29 675328 ----a-w- C:\Windows\System32\drivers\srv2.sys 2016-06-14 20:25:12 69DC128CF54009A686E0F0C57E2BA0DC 416768 ----a-w- C:\Windows\System32\drivers\srv.sys 2016-06-14 20:25:12 4396587119D8F4B72561ED24666E7567 243712 ----a-w- C:\Windows\System32\drivers\srvnet.sys 2016-06-14 20:25:12 38BED40B100C6A844C3DB1AEE2F0C6CF 178008 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys 2016-06-14 20:25:12 1F20A2F59B7F979B39CBFA602E0D1F8E 563016 ----a-w- C:\Windows\System32\drivers\cng.sys 2016-06-14 20:24:42 9DC17B7D9D84C37C102D379FCC7D4942 281088 ----a-w- C:\Windows\System32\drivers\netbt.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-4063213393-2851906856-2747515572-1002\Software\Microsoft\Windows\CurrentVersion\Run] "EPLTarget\P0000000000000000"="C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINFE.EXE /EPT EPLTarget\P0000000000000000 /M XP-225 Series" "EPLTarget\P0000000000000001"="C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINFE.EXE /EPT EPLTarget\P0000000000000001 /M XP-225 Series" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "HP Quick Launch"="C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe" "RemoteControl10"="C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" "PWRISOVM.EXE"="C:\Program Files (x86)\PowerISO\PWRISOVM.EXE -startup" "BlueStacks Agent"="C:\Program Files (x86)\BlueStacks\HD-Agent.exe" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "EPLTarget\P0000000000000000"="C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINFE.EXE /EPT EPLTarget\P0000000000000000 /M XP-225 Series" "EPLTarget\P0000000000000001"="C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINFE.EXE /EPT EPLTarget\P0000000000000001 /M XP-225 Series" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\\WINDOWS\\SysWOW64\\nvinit.dll" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "BTMTrayAgent"="rundll32.exe C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll,TrayApp" "NvBackend"="C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" "ShadowPlay"="C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart" "SysTrayApp"="C:\Program Files\IDT\WDM\sttray64.exe" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\\Windows\\system32\\nvinitx.dll,C:\\WINDOWS\\system32\\nvinitx.dll" ==== Startup Folders ====================== 2016-06-11 14:26:43 1207 ----a-w- C:\Users\Lien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\FacebookGamesNotifier.exe.lnk 2016-06-21 19:10:22 1041 ----a-w- C:\Users\Lien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar691.lnk ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\EPSON XP-225 Series Update {0749F396-B576-40A2-85AA-C46A3FAF8CB1}.job --a-------- C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSNFE.exe [22/11/2013 02:30] C:\WINDOWS\tasks\EPSON XP-225 Series Update {25631685-AC3D-42DF-A4E4-47ABD1C559FE}.job --a-------- C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSNFE.exe [22/11/2013 02:30] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [31/08/2015 21:00] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [31/08/2015 21:00] C:\WINDOWS\tasks\HPCeeScheduleForLien.job --a-------- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [13/09/2010 23:15] C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job --a-------- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [15/09/2012 00:09] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\CLMLSvc_P2G8" [C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe] "C:\WINDOWS\SysNative\tasks\CLVDLauncher" [C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe] "C:\WINDOWS\SysNative\tasks\EPSON XP-225 Series Update {0749F396-B576-40A2-85AA-C46A3FAF8CB1}" [C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSNFE.EXE] "C:\WINDOWS\SysNative\tasks\EPSON XP-225 Series Update {25631685-AC3D-42DF-A4E4-47ABD1C559FE}" [C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSNFE.EXE] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\HPCeeScheduleForLien" [C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe] "C:\WINDOWS\SysNative\tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse" [C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe] "C:\WINDOWS\SysNative\tasks\Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse" [C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe] "C:\WINDOWS\SysNative\tasks\McAfeeLogon" [C:\PROGRA~1\COMMON~1\McAfee\Platform\McUICnt.exe] "C:\WINDOWS\SysNative\tasks\MirageAgent" [C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{259FC3AF-07A1-4086-9A30-545625B4B01A}" [C:\WINDOWS\system32\msfeedssync.exe] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{DC6476B5-83E9-455F-9A9B-ABD79F63332E}" [C:\WINDOWS\system32\msfeedssync.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon" [C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPSFReport.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HPSFUpdaterRedux" [C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\Update Check" [C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "{4ED1F68A-5463-4931-9384-8FFF5ED91D92}"="C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi" [15/03/2016 15:29] [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "{4ED1F68A-5463-4931-9384-8FFF5ED91D92}"="C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi" [15/03/2016 15:29] ==== Chromium Look ====================== Google Chrome Version: 46.0.2490.86 HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions fegekclkdhbnfdcmomlpegkkndgnmfmo - C:\Program Files (x86)\HP SimplePass\tschrome.crx[01/04/2013 03:25] fheoggkfdfchfphceeifdbepaooicaho - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx[13/06/2016 11:18] kanflfepiobnpjbljmngfgegijhdpljm - C:\Program Files (x86)\HP SimplePass\tschrome.crx[01/04/2013 03:25] Google Docs - Lien\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Lien\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Lien\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo selector is not a valid CSS selector - Lien\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb Google Search - Lien\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Closed tabs - Lien\AppData\Local\Google\Chrome\User Data\Default\Extensions\eonffnnfmbfnmjpaiigdclmfelolemah SiteAdvisor - Lien\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho Google Docs Offline - Lien\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Share on Twitter - Lien\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkjgmeeoldebbdoehhngapnlfmdbmiie Supercounters.com Users online counter - Lien\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnkoiokcnieigonadidlhodpeloldojk Website Logon - Lien\AppData\Local\Google\Chrome\User Data\Default\Extensions\kanflfepiobnpjbljmngfgegijhdpljm Chrome Web Store Payments - Lien\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Lien\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Google Docs - s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Closed tabs - s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\eonffnnfmbfnmjpaiigdclmfelolemah Website Logon - s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fegekclkdhbnfdcmomlpegkkndgnmfmo SiteAdvisor - s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho Website Logon - s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\kanflfepiobnpjbljmngfgegijhdpljm Google Wallet - s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Startpages ====================== C:\Users\s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Preferences "homepage": "http://www.thesimsresource.com/", ==== Chromium Fix ====================== C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.azlyrics.com_0.localstorage-journal deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lyricsfreak.com_0.localstorage-journal deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vacatures.trovit.be_0.localstorage-journal deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ad.360yield.com_0.localstorage-journal deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ad.lkqd.net_0.localstorage-journal deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ads.ilykecdn.com_0.localstorage-journal deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ads.proboards.com_0.localstorage-journal deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage-journal deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.foodity.com_0.localstorage-journal deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ads1.msads.net_0.localstorage-journal deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage-journal deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage-journal deleted successfully C:\Users\s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage deleted successfully C:\Users\s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage-journal deleted successfully C:\Users\s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage deleted successfully C:\Users\s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage-journal deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d23716qn9q7omq.cloudfront.net_0.localstorage-journal deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d3jdlwnuo8nsnr.cloudfront.net_0.localstorage-journal deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_eliteunzip.dl.tb.ask.com_0.localstorage-journal deleted successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ask.com_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{72302923-89D1-499E-8D8B-566888BCFE05}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{72302923-89D1-499E-8D8B-566888BCFE05}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" ==== All HKLM and HKCU SearchScopes ====================== HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS HKLM\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} - http://rover.ebay.com/rover/1/1553-29906-12136-18/4 HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS HKLM\Wow6432Node\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} - http://rover.ebay.com/rover/1/1553-29906-12136-18/4 HKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS HKCU\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} - http://rover.ebay.com/rover/1/1553-29906-12136-18/4 ==== Reset Google Chrome ====================== C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully C:\Users\s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully C:\Users\s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A0A5CBD84C137C642B25B695E31AA178 deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8086A3D08B281BB4EBA5EA7DB5F3C620 deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{8DBC5A0A-31C4-46C7-B252-6B593EA11A87} deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0D3A6808-82B8-4BB1-BE5A-AED75B3F6C02} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\A0A5CBD84C137C642B25B695E31AA178 deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\8086A3D08B281BB4EBA5EA7DB5F3C620 deleted successfully ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Lien\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Lien\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\Users\s2i_r_000\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\s2i_r_000\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Lien\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Lien\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\Users\s2i_r_000\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\s2i_r_000\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Lien\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\s2i_r_000\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=122 folders=86 207272599 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Lien\AppData\Local\Temp will be emptied at reboot C:\Users\s2i_r_000\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\Lien\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on di 21/06/2016 at 22:33:53,71 ======================