Zoek.exe Version 4.0.0.4 Updated 27-September-2013 Tool run by Carl on vr 27-09-2013 at 10:55:56,64. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Carl\Desktop\zoek\zoek.exe [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 27-9-2013 10:57:43 Zoek.exe System Restore Point Created Succesfully. ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-2933088546-3681253345-4175927268-1004\Software\Microsoft\Internet Explorer\SearchScopes\{F7526B46-0EB0-4F1A-B312-8B973EDFAE1A} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== FireFox Fix ====================== Deleted from C:\Users\Carl\AppData\Roaming\Mozilla\Firefox\Profiles\mouyl68m.default\prefs.js: user_pref("browser.startup.homepage", "http://feed.snapdo.com/?publisher=SnapdoOCYB&dpid=SnapdoOCYB&co=NL&userid=1a6fc32b-6e04-2961-2e91-24216047d985&searchtype=hp&installDate=17/08/2013"); user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q="); user_pref("browser.newtab.url", "about:blank"); user_pref("browser.search.defaultengine", "Google"); user_pref("browser.search.defaultenginename", "Google"); user_pref("browser.search.order.1", "Google"); user_pref("keyword.URL", "http://feed.snapdo.com/?publisher=SnapdoOCYB&dpid=SnapdoOCYB&co=NL&userid=1a6fc32b-6e04-2961-2e91-24216047d985&searchtype=ds&installDate=17/08/2013&q="); user_pref("browser.search.useDBForOrder", true); Added to C:\Users\Carl\AppData\Roaming\Mozilla\Firefox\Profiles\mouyl68m.default\prefs.js: user_pref("browser.startup.homepage", "http://www.google.com"); user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q="); user_pref("browser.newtab.url", "http://www.google.com/"); user_pref("browser.search.defaultengine", "Google"); user_pref("browser.search.defaultenginename", "Google"); user_pref("browser.search.selectedEngine", "Google"); user_pref("browser.search.order.1", "Google"); user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q="); user_pref("browser.search.suggest.enabled", true); user_pref("browser.search.useDBForOrder", true); ProfilePath: C:\Users\Carl\AppData\Roaming\Mozilla\Firefox\Profiles\mouyl68m.default user.js not found ---- Lines snapdo removed from prefs.js ---- ---- Lines snapdo modified from prefs.js ---- ---- Lines yontoo removed from prefs.js ---- ---- Lines yontoo modified from prefs.js ---- user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"{BBDA0591-3099-440a-AA10-41764D9DB4DB}\":{\"descriptor\":\"C:\\\\ProgramData\\\\Norton\\\\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\\\\NIS_20.4.0.40\\\\IPSFFPlgn\",\"mtime\":1372498132201},\"{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}\":{\"descriptor\":\"C:\\\\ProgramData\\\\Norton\\\\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\\\\NIS_20.4.0.40\\\\coFFPlgn\",\"mtime\":1372588570694}}},{\"name\":\"app-global\",\"addons\":{\"{972ce4c6-7e08-4474-a285-3208198ce6fd}\":{\"descriptor\":\"C:\\\\Program Files\\\\Mozilla Firefox\\\\extensions\\\\{972ce4c6-7e08-4474-a285-3208198ce6fd}\",\"mtime\":1365783561916}}},{\"name\":\"app-profile\",\"addons\":{\"plugin@yontoo.com\":{\"descriptor\":\"C:\\\\Users\\\\Carl\\\\AppData\\\\Roaming\\\\Mozilla\\\\Firefox\\\\Profiles\\\\mouyl68m.default\\\\extensions\\\\plugin@yontoo.com\",\"mtime\":1367074168015},\"{ACAA314B-EEBA-48e4-AD47-84E31C44796C}\":{\"descriptor\":\"C:\\\\Users\\\\Carl\\\\AppData\\\\Roaming\\\\Mozilla\\\\Firefox\\\\Profiles\\\\mouyl68m.default\\\\extensions\\\\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}\",\"mtime\":1370012609534}}}]"); ---- FireFox user.js and prefs.js backups ---- prefs_22-04-2013_1131_.backup prefs_27-09-2013_1103_.backup ==== Deleting Files \ Folders ====================== "C:\DelFix.txt" deleted "C:\Users\Carl\AppData\Roaming\pdfperformer" deleted "C:\Users\Carl\AppData\Local\WavXMapDrive.bat" not deleted "C:\Windows\system32\Tasks\GoforFilesUpdate" deleted "C:\Program Files\iMesh Applications" deleted "C:\ProgramData\{298BA33A-35F8-4D44-BBAF-AF7DC74476F8}" deleted "C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521}" deleted "C:\ProgramData\Babylon" deleted "C:\Program Files\iMesh Applications" deleted "C:\Program Files\GoforFiles" deleted "C:\Program Files\Denzi" deleted "C:\Users\Carl\AppData\Roaming\GoforFiles" deleted "C:\Users\Carl\AppData\Roaming\PerformerSoft" deleted "C:\ProgramData\Babylon" deleted "C:\Users\Carl\AppData\Local\iMesh" deleted "C:\Users\Carl\AppData\Local\PackageAware" deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\Carl\AppData\Local\Temp ==== 2013-09-26 12:07:29 C8E3A30A36D8D0B9BEFFC7DD57836D24 163208 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\psmachine.dll 2013-09-26 12:07:29 A1BFA262494126239059107536E1FE44 163208 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\psuser.dll 2013-09-26 12:07:28 F8C26E4B5F2F825447F6AD06C3F3E927 30600 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_ta.dll 2013-09-26 12:07:28 F0C8ABD69704E11925041C5174DD681D 29576 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_pt-BR.dll 2013-09-26 12:07:28 EF8353F31B1BDD03F8642C0C2DD9D7F8 29576 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_tr.dll 2013-09-26 12:07:28 E98669B536DACF2787FD6154E12A7683 29576 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_pt-PT.dll 2013-09-26 12:07:28 E96572950B69CEAC7E2C66829A17C12B 30088 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_sk.dll 2013-09-26 12:07:28 E5232A64BBF10ABA6A291CBA54091FC8 29576 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_sw.dll 2013-09-26 12:07:28 E1D8D77EA7DCB8CF7D47818344A43499 30600 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_pl.dll 2013-09-26 12:07:28 D537997DAE22B0CFA1B526A7A559E6DD 30088 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_sl.dll 2013-09-26 12:07:28 D433CC6F80DA76DF2925DCA8F27F7818 29576 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_sv.dll 2013-09-26 12:07:28 D123AD3E10C9E35DFFD0375568D61299 29576 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_sr.dll 2013-09-26 12:07:28 A87413F8C1B653A276E61108C293C08D 28040 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_th.dll 2013-09-26 12:07:28 A1DFCCC8B8C51E19B36E421BDAB8EB0D 29064 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_uk.dll 2013-09-26 12:07:28 9ACBB54B4E2AE326B803381E9B55845D 29064 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_ru.dll 2013-09-26 12:07:28 9AB8814EDCC19CF0452FC0D57B1FE0C2 22408 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_zh-TW.dll 2013-09-26 12:07:28 9A06E4B6141B96B4DDA813DE4AB25EC7 29576 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_te.dll 2013-09-26 12:07:28 98125CF7995E7B996BC0BDB2B99A95EA 22408 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_zh-CN.dll 2013-09-26 12:07:28 772012541F329D8D480116F121BC72DF 29576 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_no.dll 2013-09-26 12:07:28 6236C338A1B64CEC2E02B7D84BA2294E 29064 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_ur.dll 2013-09-26 12:07:28 533A1D06B60470B7367DC8ED1E384BEC 28552 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_vi.dll 2013-09-26 12:07:28 2B9B307857123EC84238190E9CDC4E65 30088 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_ro.dll 2013-09-26 12:07:28 101700E93EB905992B518256CB441829 592776 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\npGoogleUpdate3.dll 2013-09-26 12:07:27 D76226C985181233DE48604C48C7568B 24968 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_ja.dll 2013-09-26 12:07:27 BEE8474CD79FFCCA8CC8604804449313 28552 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_ms.dll 2013-09-26 12:07:27 BC0C179F269495F6F149834D0DC0DF2C 28552 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_id.dll 2013-09-26 12:07:27 B5084A6EC55F03A98F09B312132FB4B6 29064 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_is.dll 2013-09-26 12:07:27 B3CB64EAAFE3779F223B70E07DC8765F 30088 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_kn.dll 2013-09-26 12:07:27 B2F2F7B5D9E91B41CA91C1258BF0050A 23944 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_ko.dll 2013-09-26 12:07:27 B1BC0614AAE765F74D508A4E1D100D3E 30088 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_hu.dll 2013-09-26 12:07:27 9131C5DB2FB1DFBB745E0519CE9327FE 31112 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_fr.dll 2013-09-26 12:07:27 8D10E4831349F62B4CC701984705A193 29576 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_hi.dll 2013-09-26 12:07:27 8B007B9A195551181F2F6CB68ED61EFB 28552 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_lt.dll 2013-09-26 12:07:27 8A1A4CA0F830608AB8B031ADAE70E14B 31112 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_it.dll 2013-09-26 12:07:27 88E54C3C78043525E85CD6634E1BC916 30600 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_fil.dll 2013-09-26 12:07:27 77D28299F6BEB8BF6C3185595F092B04 26504 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_iw.dll 2013-09-26 12:07:27 533E49B3F988EA1605F22B69DE609071 32136 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_ml.dll 2013-09-26 12:07:27 51D8B7C6FE575F535EA0C75C3EACE7D7 30088 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_hr.dll 2013-09-26 12:07:27 3D5EEE5C7FFA265C5BDF56DDB37E0E9C 30600 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_lv.dll 2013-09-26 12:07:27 390B76ABD9D936C2943194FDE081E43E 29064 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_gu.dll 2013-09-26 12:07:27 36E8494EBFF3159CEB38B3A3E674FC08 29064 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_mr.dll 2013-09-26 12:07:27 14DA7788DCFEC3D29FC1D9E67D8E0DA8 30600 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_nl.dll 2013-09-26 12:07:26 FF60B8C5BBE73B0790B3332783B6FD81 853896 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdate.dll 2013-09-26 12:07:26 FC782883E4FD85F24B0DBE887011E1D9 29576 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_da.dll 2013-09-26 12:07:26 FC401C26526E8885DDE09C2CE345E9A6 31624 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_es.dll 2013-09-26 12:07:26 F87DA39F71F5E5FC85FAC42986CCC642 30088 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_ca.dll 2013-09-26 12:07:26 F71CAB8F4B1374AD47681C0934924E7B 29576 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_fi.dll 2013-09-26 12:07:26 E926C08A0A4F49E2E845ACCC6C058498 31624 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_de.dll 2013-09-26 12:07:26 D9A08472D8D0218A0AE2C9D9F63EA531 290696 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\GoogleCrashHandler64.exe 2013-09-26 12:07:26 D6375AFE58052AEB5EE88CD96A4CD30E 27016 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_ar.dll 2013-09-26 12:07:26 A6F8D4FBC12177A75AB4C06D059229B6 784664 ----a-w- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\GoogleUpdateSetup.exe 2013-09-26 12:07:26 9D1FC3737A86F6B516152DFF025F2FC7 26112 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\GoogleUpdateHelper.msi 2013-09-26 12:07:26 963A364F76E84C33D571D5487A7C7974 28040 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_fa.dll 2013-09-26 12:07:26 903CBF069F622B5142E1D221021C8E42 29064 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_cs.dll 2013-09-26 12:07:26 8726802EA4FBFFA3FD54FD2449BF51D4 217992 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\GoogleCrashHandler.exe 2013-09-26 12:07:26 7FDB3A07128CDE5484C1EC9B3F618BAE 29576 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_es-419.dll 2013-09-26 12:07:26 7B277EE2FB2F98312CF2B664CF0E8462 31112 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_el.dll 2013-09-26 12:07:26 690AC6BBC42258593E829FB27A80575A 28040 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_en.dll 2013-09-26 12:07:26 6466C051022547489D3409205128881B 59784 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\GoogleUpdateBroker.exe 2013-09-26 12:07:26 5A11AD1C4EEDF06E6DDFA3C2565E7E45 25480 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_am.dll 2013-09-26 12:07:26 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\GoogleUpdate.exe 2013-09-26 12:07:26 3BB83E5D05F06553A01A742435987AFD 28552 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_en-GB.dll 2013-09-26 12:07:26 2D633739BC8FD3EEC868A5856BD3660B 28552 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_et.dll 2013-09-26 12:07:26 1CA3976D1B1FE826ADF339F90AC25C60 59784 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\GoogleUpdateOnDemand.exe 2013-09-26 12:07:26 1BC4D05BEFB1F6164DF13299E67F1EA0 30600 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_bg.dll 2013-09-26 12:07:26 19CA594BEED7E50BE122736B6CC7D62F 29064 ----atw- C:\Users\Carl\AppData\Local\Temp\{65EB074C-4334-491E-A5D3-33AFAFEE18D2}\goopdateres_bn.dll ====== Java Cache ===== ====== C:\Windows\system32 ===== 2013-09-15 20:52:03 AE47A8A5FE8193BB84FFCD338115D8EF 662288 ----a-w- C:\Windows\System32\MSCOMCT2.OCX 2013-09-15 20:52:03 5CA984BA87D2F268F8DC96A38E67ED34 95416 ----a-w- C:\Windows\System32\pdfcmon.dll 2013-09-15 20:52:01 6EC9A8DC8508D724E7456600B0CCB995 23552 ----a-w- C:\Windows\System32\MSMPIDE.DLL ====== C:\Windows\system32\drivers ===== ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2013-09-24 09:59:32 -------- d-----w- C:\Program Files\iPod 2013-09-24 09:59:31 -------- d-----w- C:\Program Files\iTunes 2013-09-24 09:57:50 -------- d-----w- C:\Program Files\Bonjour ======= C: ===== ====== C:\Users\Carl\AppData\Roaming ====== 2013-09-24 17:43:35 -------- d-----w- C:\Users\Carl\AppData\Local\Spotify 2013-09-24 17:42:53 -------- d-----w- C:\Users\Carl\AppData\Roaming\Spotify 2013-09-24 10:02:38 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Locallow\Apple Computer 2013-09-20 14:35:56 -------- d-----w- C:\Users\Carl\AppData\Local\avgchrome ====== C:\Users\Carl ====== 2013-09-26 19:28:02 30D0AD41CC60C6A62277BB350A1EBE4E 4369632 ----a-w- C:\Users\Carl\Desktop\ccsetup406.exe 2013-09-26 19:18:52 69CA82A7482A00D8EE063D2B97FC4338 781383 ----a-w- C:\Users\Carl\Desktop\RSIT.exe 2013-09-15 20:52:07 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator ====== C: exe-files == 2013-09-26 19:20:10 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\Trend Micro\Carl.exe 2013-09-26 12:07:32 7E830B241EC1059079D2A53AB3E875BD 2243552 ----a-w- C:\Program Files\Google\Update\Download\{F69EABDD-A4BB-4555-BE7E-1EA5F59BBA24}\0.0.0.0\googletoolbarinstaller_en32_signed.exe === C: other files == 2013-09-24 17:43:32 E256249EC0B63C13F7E86E200F2FCC03 2490904 ----a-w- C:\Users\Carl\AppData\Roaming\Spotify\Data\resources.zip 2013-09-24 17:43:32 6C94D41E575C2E285DE8441CF6662169 5369177 ----a-w- C:\Users\Carl\AppData\Roaming\Spotify\Data\apps.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-2933088546-3681253345-4175927268-1004\Software\Microsoft\Windows\CurrentVersion\Run] "VoipBuster"="C:\Program Files\VoipBuster.com\VoipBuster\voipbuster.exe -nosplash -minimized" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" "EPLTarget\P0000000000000000"="C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIJAE.EXE /EPT EPLTarget\P0000000000000000 /M XP-800 Series" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "WavXMgr"="C:\Program Files\Wave Systems Corp\Services Manager\Docmgr\bin\WavXDocMgr.exe" "SecureUpgrade"="C:\Program Files\Wave Systems Corp\SecureUpgrade.exe" "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s" "RemoteControl8"="C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe" "BackupManagerTray"="C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe -h -k" "AutoLockProcess"="C:\Program Files\Acer\Empowering Technology\eLock\autolockprocess\autolockprocess.exe" "Acer SmartBoot"="C:\Program Files\Acer\Acer SmartBoot\ASLTray.exe" "Acer PowerSaver"="C:\Program Files\Acer\Acer PowerSaver\PowerSaverTray.exe" "EEventManager"="C:\Program Files\Epson Software\Event Manager\EEventManager.exe" "RealTray"="C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER" "LVCOMS"="C:\Program Files\Common Files\Logitech\QCDriver3\LVCOMS.EXE" "LifeCam"="C:\Program Files\Microsoft LifeCam\LifeExp.exe" "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "APSDaemon"="C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" "QuickTime Task"="C:\Program Files\QuickTime\qttask.exe -atboottime" "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "AdobeAAMUpdater-1.0"="C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "VoipBuster"="C:\Program Files\VoipBuster.com\VoipBuster\voipbuster.exe -nosplash -minimized" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" "EPLTarget\P0000000000000000"="C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIJAE.EXE /EPT EPLTarget\P0000000000000000 /M XP-800 Series" ==== Startup Folders ====================== 2012-01-17 14:13:17 1940 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Ralink Wireless Utility.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Acer Registration Reminder.job --a------ C:\Program Files\Acer\Registration\GREG.exe [28-08-2009 11:40] C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [26-09-2013 13:53] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [24-11-2010 20:47] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ [Undetermined Task] ==== Firefox Extensions ====================== AppDir: C:\Program Files\Mozilla Firefox - Default - %AppDir%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Carl\AppData\Roaming\Mozilla\Firefox\Profiles\mouyl68m.default ABCB4A6EAB701C629378255ABCB308E5 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U25 D7324EB1EDCB8990F8522DE0311359E9 - C:\Windows\system32\npdeployJava1.dll - Java Deployment Toolkit 7.0.250.17 101700E93EB905992B518256CB441829 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll - Google Update 7550FC1ADE982582D5920BEA6430E3D4 - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin DB988B4550DB9BCE86F9199D961057FC - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll - Adobe Acrobat 711A2E6A55EC7BFD59B5F649D58B704B - C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll - Silverlight Plug-In C517E5EA7CEE783F3681F62D2A362E5B - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live? Photo Gallery DDDEC049BC6C8C18CC2E4F0753E0343B - C:\Program Files\QuickTime\Plugins\npqtplugin7.dll - QuickTime Plug-in 7.7.1 A2DECD9050DE2FFD6C3F51A85A63E4A6 - C:\Program Files\QuickTime\Plugins\npqtplugin6.dll - QuickTime Plug-in 7.7.1 BC405F582CAAC78AEDE4488E8A259FA1 - C:\Program Files\QuickTime\Plugins\npqtplugin5.dll - QuickTime Plug-in 7.7.1 C560D8A34A372EE10235938FD2D34CC3 - C:\Program Files\QuickTime\Plugins\npqtplugin4.dll - QuickTime Plug-in 7.7.1 AF28C98E0897F0475833D02D3CCFFF77 - C:\Program Files\QuickTime\Plugins\npqtplugin3.dll - QuickTime Plug-in 7.7.1 CABA1A399C7C7471DEBA73CB3BA5AADB - C:\Program Files\QuickTime\Plugins\npqtplugin2.dll - QuickTime Plug-in 7.7.1 1D10BD2720963F6B6DB25ACB1F5CF8E9 - C:\Program Files\QuickTime\Plugins\npqtplugin.dll - QuickTime Plug-in 7.7.1 7A75CCAA7E3CE0B14F7428F1731CF4C9 - C:\Windows\system32\Npindeo.dll - Intel Indeo® video 5.1 PD Plug-In F647D0BEA553C1D0C251CE07DA6A5511 - C:\Program Files\Adobe\Reader 10.0\Reader\browser\nppdf32.dll - Adobe Acrobat 15E298B5EC5B89C5994A59863969D9FF - C:\Windows\system32\npmproxy.dll - Microsoft® Windows® Operating System 21A55BABD31DA624449F06A591AE73ED - C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrlui.dll - Microsoft (R) Silverlight ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions mkfokfffehpeedafpekjeddnmnjhmcmk - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\Exts\Chrome.crx[12-09-2013 17:26] Docs - Carl - Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Carl - Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Carl - Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Carl - Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Norton Identity Protection - Carl - Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk Gmail - Carl - Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com/" "Search Page"="http://www.google.com" "Search Bar"="http://www.google.com" "Use Search Asst"="yes" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl] "Default"="http://feed.snapdo.com/?publisher=SnapdoOCYB&dpid=SnapdoOCYB&co=NL&userid=1a6fc32b-6e04-2961-2e91-24216047d985&searchtype=ds&q={searchTerms}&installDate=17/08/2013" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" "Default"="http://feed.snapdo.com/?publisher=SnapdoOCYB&dpid=SnapdoOCYB&co=NL&userid=1a6fc32b-6e04-2961-2e91-24216047d985&searchtype=ds&q={searchTerms}&installDate=17/08/2013" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "SearchAssistant"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://www.google.com/" "Use Search Asst"="no" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} @ieframe.dll,-12512 Url="http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC" {67A2568C-7A0A-4EED-AECC-B5405DE63B64} Google Url="http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW_nl" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Reset Google Chrome ====================== C:\Users\Carl\AppData\Local\Google\Chrome\User Data\Default\preferences was reset successfully C:\Users\Carl\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully ==== HijackThis Entries ====================== R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [WavXMgr] "C:\Program Files\Wave Systems Corp\Services Manager\Docmgr\bin\WavXDocMgr.exe" O4 - HKLM\..\Run: [SecureUpgrade] "C:\Program Files\Wave Systems Corp\SecureUpgrade.exe" O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s O4 - HKLM\..\Run: [RemoteControl8] "C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe" O4 - HKLM\..\Run: [BackupManagerTray] "C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k O4 - HKLM\..\Run: [AutoLockProcess] C:\Program Files\Acer\Empowering Technology\eLock\autolockprocess\autolockprocess.exe O4 - HKLM\..\Run: [Acer SmartBoot] C:\Program Files\Acer\Acer SmartBoot\ASLTray.exe O4 - HKLM\..\Run: [Acer PowerSaver] C:\Program Files\Acer\Acer PowerSaver\PowerSaverTray.exe O4 - HKLM\..\Run: [EEventManager] "C:\Program Files\Epson Software\Event Manager\EEventManager.exe" O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Common Files\Logitech\QCDriver3\LVCOMS.EXE O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [VoipBuster] "C:\Program Files\VoipBuster.com\VoipBuster\voipbuster.exe" -nosplash -minimized O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIJAE.EXE /EPT "EPLTarget\P0000000000000000" /M "XP-800 Series" O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\Ralink\Common\RaUI.exe O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\Windows\system32\Shdocvw.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab O16 - DPF: {28B66320-9687-4B13-8757-36F901887AB5} (CanvasX Class) - http://foto.hema.nl/ips-opdata/layout/hema/objects/canvasx.cab O16 - DPF: {34DC6011-88B5-4EA9-BA7A-DC7B4F4437FE} (JordanUploader Class) - http://foto.hema.nl/ips-opdata/layout/hema/objects/jordan.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Active File Monitor V11 (AdobeActiveFileMonitor11.0) - Adobe Systems Incorporated - C:\Program Files\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Acer SmartBoot Service (ASLSvc) - Acer Incorporated - C:\Program Files\Acer\Acer SmartBoot\ASLSvc.exe O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Program Files\Acer\Empowering Technology\eLock\Service\eLockServ.exe O23 - Service: EPSON V5 Service4(04) (EPSON_EB_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50ST7.EXE O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:\Program Files\Acer\Registration\GregHSRW.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe O23 - Service: ProtexisLicensing - Unknown owner - C:\Windows\system32\PSIService.exe O23 - Service: Ralink Registry Writer (RalinkRegistryWriter) - Ralink Technology, Corp. - C:\Program Files\Ralink\Common\RaRegistry.exe O23 - Service: SecureStorageService - Wave Systems Corp. - C:\Program Files\Wave Systems Corp\Secure Storage Manager\SecureStorageService.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: Updater Service - Acer - C:\Program Files\Acer\Acer Updater\UpdaterService.exe ==== Empty IE Cache ====================== C:\Users\Carl\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Carl\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8OZPO6XV will be deleted at reboot C:\Users\Carl\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\Users\Carl\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Carl\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Carl\AppData\Local\WavXMapDrive.bat" not found "C:\Users\Carl\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Users\Carl\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8OZPO6XV" not found ==== EOF on vr 27-09-2013 at 11:13:57,97 ======================