Zoek.exe v5.0.0.0 Updated 09-Januari-2014 Tool run by Rajni on zo 12-01-2014 at 0:47:24,90. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Rajni\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 12-1-2014 0:49:03 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\AGEIA Technologies deleted successfully C:\ProgramData\Oracle deleted successfully C:\Users\Rajni\AppData\Roaming\Samsung deleted successfully C:\Users\Rajni\AppData\Roaming\Windows Live Writer deleted successfully C:\Users\Rajni\AppData\Local\CutePDF Writer deleted successfully C:\Users\Rajni\AppData\Local\PackageAware deleted successfully C:\Users\Rajni\AppData\Local\Samsung deleted successfully C:\Users\Rajni\AppData\Local\VirtualStore deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1679131429-403256407-2411578191-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110411361128} deleted successfully HKEY_CLASSES_ROOT\CLSID\{11111111-1111-1111-1111-110411361128} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{11111111-1111-1111-1111-110411361128} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411361128} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411361128} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== FireFox Fix ====================== ProfilePath: C:\Users\Rajni\AppData\Roaming\Mozilla\Firefox\Profiles\uv3dniqn.default ---- Lines Search removed from prefs.js ---- user_pref("extensions.a008abed2b43a46c99a5ba771c87b82da1ad61d532bdc4484a26bb888ecae1906com43628.43628.description", "Enhance your search results with ---- FireFox user.js and prefs.js backups ---- user_12-01-2014_0053_.backup prefs_12-01-2014_0053_.backup ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411361128}] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411361128}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}] ==== Deleting Files \ Folders ====================== C:\Users\Rajni\AppData\Roaming\Mozilla\Firefox\Profiles\uv3dniqn.default\extensions\008abed2-b43a-46c9-9a5b-a771c87b82da...88ecae1906.com not found C:\Users\Rajni\AppData\Roaming\Mozilla\Firefox\Profiles\uv3dniqn.default\extensions\3f85ebca-5ee0-4042-935e-20d7bb38c127...1cad391506.com not found C:\Program Files (x86)\weDownload Manager Pro deleted C:\ProgramData\{A3A26C56-02C3-4F76-A033-12EE2FB52AE6} deleted C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} deleted C:\Users\Rajni\AppData\Roaming\OpenCandy deleted C:\PROGRA~2\COMMON~1\DVDVideoSoft\bin deleted C:\Users\Rajni\AppData\LocalLow\weDownload Manager Pro deleted C:\windows\SysNative\tasks\weDownload Manager Pro-chromeinstaller deleted C:\windows\SysNative\tasks\weDownload Manager Pro-codedownloader deleted C:\windows\SysNative\tasks\weDownload Manager Pro-enabler deleted C:\windows\SysNative\tasks\weDownload Manager Pro-firefoxinstaller deleted C:\windows\SysNative\tasks\weDownload Manager Pro-updater deleted C:\Windows\tasks\weDownload Manager Pro-chromeinstaller.job deleted C:\Windows\tasks\weDownload Manager Pro-codedownloader.job deleted C:\Windows\tasks\weDownload Manager Pro-enabler.job deleted C:\Windows\tasks\weDownload Manager Pro-firefoxinstaller.job deleted C:\Windows\tasks\weDownload Manager Pro-updater.job deleted C:\Users\Rajni\AppData\Roaming\Mozilla\Firefox\Profiles\uv3dniqn.default\extensions\008abed2-b43a-46c9-9a5b-a771c87b82da@1ad61d53-2bdc-4484-a26b-b888ecae1906.com deleted C:\Users\Rajni\AppData\Roaming\Mozilla\Firefox\Profiles\uv3dniqn.default\extensions\3f85ebca-5ee0-4042-935e-20d7bb38c127@f20b526a-b828-41ab-9361-de1cad391506.com deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2013-12-20 21:12:29 332FEAB1435662FC6C672E25BEB37BE3 2871808 ----a-w- C:\Windows\explorer.exe 2013-12-20 21:12:29 127AA81343A7C6F665C22CB1293B0A90 67072 ----a-w- C:\Windows\splwow64.exe 2013-12-20 20:16:14 317CD1CE327B6520BF4EE007BCD39E61 71168 ----a-w- C:\Windows\bfsvc.exe 2013-12-20 20:16:14 163A95975E1D8819E653AA3E961371CA 51200 ----a-w- C:\Windows\twain_32.dll 2013-12-20 17:35:29 027FD87605A59E4B46B90288D3D501BF 22 ----a-w- C:\Windows\GPU-Z.INI ====== C:\Users\Rajni\AppData\Local\Temp ==== 2014-01-10 01:37:41 C6AD5D899D37B805D400422407D27076 407040 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia15\mWinRunExec.dll 2014-01-10 01:37:41 A91F7EE9C40F6F3394CCE58B20839C1B 274944 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia15\Fences.msi 2014-01-10 01:37:41 4B6B25740F420BED84318ADA1292DF47 438272 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia15\mMSIExec.dll 2014-01-10 01:37:41 0788DB28756D241D7777B9D60CF495EA 406528 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia15\mDotNetExec.dll 2014-01-10 01:23:06 C6AD5D899D37B805D400422407D27076 407040 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia14\mWinRunExec.dll 2014-01-10 01:23:06 8172E40BCD2530064E80A4D38E21430F 274944 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia14\Fences.msi 2014-01-10 01:23:06 4B6B25740F420BED84318ADA1292DF47 438272 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia14\mMSIExec.dll 2014-01-10 01:23:06 0788DB28756D241D7777B9D60CF495EA 406528 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia14\mDotNetExec.dll 2014-01-10 01:22:28 C6AD5D899D37B805D400422407D27076 407040 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia13\mWinRunExec.dll 2014-01-10 01:22:28 4B6B25740F420BED84318ADA1292DF47 438272 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia13\mMSIExec.dll 2014-01-10 01:22:28 2778606A510801601EF1FE8934288C11 274944 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia13\Fences.msi 2014-01-10 01:22:28 0788DB28756D241D7777B9D60CF495EA 406528 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia13\mDotNetExec.dll 2014-01-08 21:05:40 EFE3A4D5DCD79577F4BB5ABC24B16477 104296 ----a-w- C:\Users\Rajni\AppData\Local\Temp\lu\lws_1100_helpmainfix.exe 2014-01-05 19:47:39 91ADC0E26FAEA06BB588AC7C215452CA 17838984 ----a-w- C:\Users\Rajni\AppData\Local\Temp\fp_pl_pfs_installer-2.exe 2014-01-05 15:14:28 7214289A259EFD6FB3175E4A91756CFD 10962432 ----a-w- C:\Users\Rajni\AppData\Local\Temp\lu\lws\914\VideoMaskMaker_Release_x86.msi 2014-01-05 14:36:32 CE7D300D95BEC7B39B0F98B0F1905FFF 274944 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia12\Fences.msi 2014-01-05 14:36:32 C6AD5D899D37B805D400422407D27076 407040 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia12\mWinRunExec.dll 2014-01-05 14:36:32 4B6B25740F420BED84318ADA1292DF47 438272 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia12\mMSIExec.dll 2014-01-05 14:36:32 0788DB28756D241D7777B9D60CF495EA 406528 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia12\mDotNetExec.dll 2014-01-05 14:31:14 C7F895DB50F6B6DD16393B64C0696D81 274944 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia11\Fences.msi 2014-01-05 14:31:14 C6AD5D899D37B805D400422407D27076 407040 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia11\mWinRunExec.dll 2014-01-05 14:31:14 4B6B25740F420BED84318ADA1292DF47 438272 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia11\mMSIExec.dll 2014-01-05 14:31:14 0788DB28756D241D7777B9D60CF495EA 406528 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia11\mDotNetExec.dll 2014-01-05 14:30:23 C6AD5D899D37B805D400422407D27076 407040 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia10\mWinRunExec.dll 2014-01-05 14:30:23 4B6B25740F420BED84318ADA1292DF47 438272 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia10\mMSIExec.dll 2014-01-05 14:30:23 25E3EFBACF6C136E8F25B8663D69AF0F 274944 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia10\Fences.msi 2014-01-05 14:30:23 0788DB28756D241D7777B9D60CF495EA 406528 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia10\mDotNetExec.dll 2014-01-05 14:29:35 C6AD5D899D37B805D400422407D27076 407040 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia9\mWinRunExec.dll 2014-01-05 14:29:35 C54BCDA1E5B303618D57ACF56B46C0ED 274944 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia9\Fences.msi 2014-01-05 14:29:35 4B6B25740F420BED84318ADA1292DF47 438272 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia9\mMSIExec.dll 2014-01-05 14:29:35 0788DB28756D241D7777B9D60CF495EA 406528 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia9\mDotNetExec.dll 2014-01-05 14:26:44 E5B25C790D993420AF7249C3453E98A2 274944 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia8\Fences.msi 2014-01-05 14:26:44 C6AD5D899D37B805D400422407D27076 407040 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia8\mWinRunExec.dll 2014-01-05 14:26:44 4B6B25740F420BED84318ADA1292DF47 438272 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia8\mMSIExec.dll 2014-01-05 14:26:44 0788DB28756D241D7777B9D60CF495EA 406528 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia8\mDotNetExec.dll 2014-01-05 14:20:29 2459308B46FDE807B05E541ED484AF4F 2081792 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01051520-00000c94-n0zay745qm\dw20sharedamd64.msi 2014-01-05 14:20:21 1C26A77F50BFCA590760BDAC24E84E03 4680704 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01051520-00000c94-h9nm970set\crt90.msi 2014-01-05 14:20:20 B6874AF023443AD4BFF84DDD4A219AA7 659456 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01051520-00000c94-v64gt0ia42\crt110.msi 2014-01-05 14:20:19 9D00662905F6DD9961853FD6F5AA4D2B 684032 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01051520-00000c94-qez0wh40rz\crt110_amd64.msi 2014-01-05 14:20:17 7787432A872051F91E0C8226A51E909D 3734016 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01051520-00000c94-fjnfv39hit\crt90_amd64.msi 2014-01-05 14:20:16 BD549DCED8EEADC5054733BE465768FB 8565760 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01051520-00000c94-ja2zs9wa7t\WLXSuite.msi 2014-01-05 01:19:02 C6AD5D899D37B805D400422407D27076 407040 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia7\mWinRunExec.dll 2014-01-05 01:19:02 4B6B25740F420BED84318ADA1292DF47 438272 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia7\mMSIExec.dll 2014-01-05 01:19:02 16BD34A108CC0A0BBD6A9C860C97400E 274944 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia7\Fences.msi 2014-01-05 01:19:02 0788DB28756D241D7777B9D60CF495EA 406528 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia7\mDotNetExec.dll 2014-01-05 01:18:24 C6AD5D899D37B805D400422407D27076 407040 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia6\mWinRunExec.dll 2014-01-05 01:18:24 AF061681B439FC8F7C5D8B992218BD2A 274944 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia6\Fences.msi 2014-01-05 01:18:24 4B6B25740F420BED84318ADA1292DF47 438272 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia6\mMSIExec.dll 2014-01-05 01:18:24 0788DB28756D241D7777B9D60CF495EA 406528 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia6\mDotNetExec.dll 2014-01-05 01:07:49 2459308B46FDE807B05E541ED484AF4F 2081792 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01050207-00000700-bydlx9xwks\dw20sharedamd64.msi 2014-01-05 01:07:48 B6874AF023443AD4BFF84DDD4A219AA7 659456 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01050207-00000700-91rdy9outf\crt110.msi 2014-01-05 01:07:48 1C26A77F50BFCA590760BDAC24E84E03 4680704 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01050207-00000700-flqla7567w\crt90.msi 2014-01-05 01:07:47 9D00662905F6DD9961853FD6F5AA4D2B 684032 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01050207-00000700-bdbqp96q4u\crt110_amd64.msi 2014-01-05 01:07:47 7787432A872051F91E0C8226A51E909D 3734016 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01050207-00000700-re08qp3kkf\crt90_amd64.msi 2014-01-05 01:07:46 BD549DCED8EEADC5054733BE465768FB 8565760 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01050207-00000700-gk7enq4f35\WLXSuite.msi 2014-01-05 00:46:35 8235C4BCD9959CA43B900643B16C80A7 5604768 ----a-w- C:\Users\Rajni\AppData\Local\Temp\1385723452_wedownload_manager_pro.exe 2014-01-05 00:46:29 B6753B0788DAEE441BF22AA0C1BF093B 231816 ----a-w- C:\Users\Rajni\AppData\Local\Temp\BetterBrowseSetup.exe 2014-01-05 00:38:11 21403C7550D92A51D7D3FA5FDA928F6D 1350424 ----a-w- C:\Users\Rajni\AppData\Local\Temp\DownloadManager.exe 2014-01-04 23:28:16 C6AD5D899D37B805D400422407D27076 407040 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia5\mWinRunExec.dll 2014-01-04 23:28:16 54E308B9749929D495C2A26CDC6814AD 274944 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia5\Fences.msi 2014-01-04 23:28:16 4B6B25740F420BED84318ADA1292DF47 438272 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia5\mMSIExec.dll 2014-01-04 23:28:16 0788DB28756D241D7777B9D60CF495EA 406528 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia5\mDotNetExec.dll 2014-01-04 23:28:04 C6AD5D899D37B805D400422407D27076 407040 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia4\mWinRunExec.dll 2014-01-04 23:28:04 6B00E97A6C40333ABE0AF722CEB59130 274944 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia4\Fences.msi 2014-01-04 23:28:04 4B6B25740F420BED84318ADA1292DF47 438272 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia4\mMSIExec.dll 2014-01-04 23:28:04 0788DB28756D241D7777B9D60CF495EA 406528 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia4\mDotNetExec.dll 2014-01-04 23:27:49 C6AD5D899D37B805D400422407D27076 407040 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia3\mWinRunExec.dll 2014-01-04 23:27:49 B0E5150505A0D1A32D7BE6AB4DB0536A 274944 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia3\Fences.msi 2014-01-04 23:27:49 4B6B25740F420BED84318ADA1292DF47 438272 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia3\mMSIExec.dll 2014-01-04 23:27:49 0788DB28756D241D7777B9D60CF495EA 406528 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia3\mDotNetExec.dll 2014-01-04 23:15:38 C6AD5D899D37B805D400422407D27076 407040 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia2\mWinRunExec.dll 2014-01-04 23:15:38 528C799B91C61DE97C105C666DE8763C 274944 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia2\Fences.msi 2014-01-04 23:15:38 4B6B25740F420BED84318ADA1292DF47 438272 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia2\mMSIExec.dll 2014-01-04 23:15:38 0788DB28756D241D7777B9D60CF495EA 406528 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia2\mDotNetExec.dll 2014-01-04 23:15:32 C6AD5D899D37B805D400422407D27076 407040 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia1\mWinRunExec.dll 2014-01-04 23:15:32 4B6B25740F420BED84318ADA1292DF47 438272 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia1\mMSIExec.dll 2014-01-04 23:15:32 0788DB28756D241D7777B9D60CF495EA 406528 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia1\mDotNetExec.dll 2014-01-04 23:15:32 07628D45CD7AA0422A9A115DC1B7F340 274944 ----a-w- C:\Users\Rajni\AppData\Local\Temp\mia1\Fences.msi 2014-01-04 23:06:07 2459308B46FDE807B05E541ED484AF4F 2081792 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01050006-000002c0-dgakn13trc\dw20sharedamd64.msi 2014-01-04 23:06:06 1C26A77F50BFCA590760BDAC24E84E03 4680704 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01050006-000002c0-51n468pkdk\crt90.msi 2014-01-04 23:06:05 B6874AF023443AD4BFF84DDD4A219AA7 659456 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01050006-000002c0-go095mxmb2\crt110.msi 2014-01-04 23:06:05 9D00662905F6DD9961853FD6F5AA4D2B 684032 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01050006-000002c0-21w7qlxkil\crt110_amd64.msi 2014-01-04 23:06:04 BD549DCED8EEADC5054733BE465768FB 8565760 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01050006-000002c0-qxtkcp61vj\WLXSuite.msi 2014-01-04 23:06:04 7787432A872051F91E0C8226A51E909D 3734016 -c--a-w- C:\Users\Rajni\AppData\Local\Temp\01050006-000002c0-a7cpyzm7vx\crt90_amd64.msi ====== Java Cache ===== 2013-12-20 22:37:24 C1BBA7F1278F193AB584FFF460DB5E2A 17878 ----a-w- C:\Users\Rajni\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\12\eef218c-7e7c1eee 2013-12-20 22:37:21 415FC9732A3F4D89A0E01251CD66E136 646 ----a-w- C:\Users\Rajni\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17\49a00451-192dfcc4 2013-12-20 22:37:21 77ED0A1D0049977AC3150F0A10806C2F 99 ----a-w- C:\Users\Rajni\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17\49a00451-6.0.lap 2013-12-20 22:37:20 415FC9732A3F4D89A0E01251CD66E136 646 ----a-w- C:\Users\Rajni\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\18\3cb32f52-1c336056 2013-12-20 22:37:21 34FA8033B50A3F99D3AB8209C72C0ABA 6860 ----a-w- C:\Users\Rajni\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\43\1ca2666b-3f42cf56 ====== C:\Windows\SysWOW64 ===== 2014-01-05 14:48:11 37655385D1CF8560A52027B8008FAE0E 821824 ----a-w- C:\Windows\SysWOW64\dgderapi.dll 2014-01-05 00:07:11 EBE768B199EB3E741AB64BE55CCF0F66 71048 ----a-w- C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-05 00:07:11 52FA726F8D37412122EC4EF1DF09D80F 692616 ----a-w- C:\Windows\SysWOW64\FlashPlayerApp.exe ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== ====== C:\Windows\Sysnative\drivers ===== 2014-01-05 14:28:48 95314C3A08589471983C2C8173F23CDA 16376 ----a-w- C:\Windows\Sysnative\drivers\TVMonitor.sys 2014-01-04 23:40:53 F19E5E37ED8134B9E5F6287F2D3A75D7 177312 ----a-w- C:\Windows\Sysnative\drivers\SYMEVENT64x86.SYS 2014-01-04 23:40:53 9D9C047446821A064AE1A5C4AED636FA 854 ----a-w- C:\Windows\Sysnative\drivers\SYMEVENT64x86.INF 2014-01-04 23:40:53 3DA43F1C05B62945A33EC3153327EE77 7631 ----a-w- C:\Windows\Sysnative\drivers\SYMEVENT64x86.CAT 2013-12-20 21:41:00 0BB97D43299910CBFBA59C461B99B910 25928 ----a-w- C:\Windows\Sysnative\drivers\mbam.sys 2013-12-20 21:10:01 E73A7A04FDAC9DD46EE2A4257F09E91C 325120 ----a-w- C:\Windows\Sysnative\drivers\usbport.sys 2013-12-20 21:10:01 ACCEA6BC68D0C9A78EB97EE159028B4E 99840 ----a-w- C:\Windows\Sysnative\drivers\usbccgp.sys 2013-12-20 21:10:01 A83D0EC9AE4C31704442099D40BA2471 30720 ----a-w- C:\Windows\Sysnative\drivers\usbuhci.sys 2013-12-20 21:10:01 9406D801042FAF859CF81B2C886413DC 25600 ----a-w- C:\Windows\Sysnative\drivers\usbohci.sys 2013-12-20 21:10:01 861C197502A5057E68F0AC75D9EFCDD7 7808 ----a-w- C:\Windows\Sysnative\drivers\usbd.sys 2013-12-20 21:10:01 311C1DD1088E55BEAE15954D17F50646 52736 ----a-w- C:\Windows\Sysnative\drivers\usbehci.sys 2013-12-20 21:10:01 280E90CBF4B2DDD169F0728CB44D726F 343040 ----a-w- C:\Windows\Sysnative\drivers\usbhub.sys 2013-12-20 20:45:37 313F68E1A3E6345A4F47A36B07062F34 19456 ----a-w- C:\Windows\Sysnative\drivers\rdpvideominiport.sys 2013-12-20 20:45:37 17C6B51CBCCDED95B3CC14E22791F85E 57856 ----a-w- C:\Windows\Sysnative\drivers\TsUsbFlt.sys 2013-12-20 20:38:03 1B16D0BD9841794A6E0CDE0CEF744ABC 45568 ----a-w- C:\Windows\Sysnative\drivers\tcpipreg.sys 2013-12-20 20:37:52 EBF28856F69CF094A902F884CF989706 458712 ----a-w- C:\Windows\Sysnative\drivers\cng.sys 2013-12-20 20:37:52 8F489706472F7E9A06BAAA198703FA64 95680 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys 2013-12-20 20:37:52 868A2CAAB12EFC7A021682BCA0EEC54C 154560 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys 2013-12-20 20:37:41 E2C933EDBC389386EBE6D2BA953F43D8 785624 ----a-w- C:\Windows\Sysnative\drivers\Wdf01000.sys 2013-12-20 20:37:40 E0D3CD5841E5C7BE7B94BA946AF1E498 116736 ----a-w- C:\Windows\Sysnative\drivers\drmk.sys 2013-12-20 20:37:40 79059559E89D06E8B80CE2944BE20228 497152 ----a-w- C:\Windows\Sysnative\drivers\afd.sys 2013-12-20 20:37:40 1E0B4CBBA91C6B041A14ECC2186F7E24 230400 ----a-w- C:\Windows\Sysnative\drivers\portcls.sys 2013-12-20 20:37:40 059F00DEF82BF41E433B7ED465847726 155584 ----a-w- C:\Windows\Sysnative\drivers\ataport.sys 2013-12-20 20:37:38 B0435098C81D04CAFFF80DDB746CD3A2 109824 ----a-w- C:\Windows\Sysnative\drivers\USBAUDIO.sys 2013-12-20 20:37:38 80B0F7D5CCF86CEB5D402EAAF61FEC31 100864 ----a-w- C:\Windows\Sysnative\drivers\usbcir.sys 2013-12-20 20:37:36 40AF23633D197905F03AB5628C558C51 1903552 ----a-w- C:\Windows\Sysnative\drivers\tcpip.sys 2013-12-20 20:37:35 856E76B3641746ABBC2946BED1372098 32896 ----a-w- C:\Windows\Sysnative\drivers\hidparse.sys 2013-12-20 20:37:35 760E38053BF56E501D562B70AD796B88 950128 ----a-w- C:\Windows\Sysnative\drivers\ndis.sys 2013-12-20 20:37:35 597C3699384E53CC59587ED50CCE5CA2 76800 ----a-w- C:\Windows\Sysnative\drivers\hidclass.sys 2013-12-20 20:37:35 1A4F75E63C9FB84B85DFFC6B63FD5404 140800 ----a-w- C:\Windows\Sysnative\drivers\mrxdav.sys 2013-12-20 20:37:35 0E01641D96889BDEB22DE12D30575B08 41472 ----a-w- C:\Windows\Sysnative\drivers\RNDISMP.sys 2013-12-20 20:37:34 4CE278FC9671BA81A138D70823FCAA09 39936 ----a-w- C:\Windows\Sysnative\drivers\tssecsrv.sys 2013-12-20 20:35:14 88612F1CE3BF42256913BF6E61C70D52 983488 ----a-w- C:\Windows\Sysnative\drivers\dxgkrnl.sys 2013-12-20 20:35:14 1F04CFB79DD5FB7694468CE3FB3DCC31 265064 ----a-w- C:\Windows\Sysnative\drivers\dxgmms1.sys 2013-12-20 20:16:32 D931D7309DEB2317035B07C9F9E6B0BD 273792 ----a-w- C:\Windows\Sysnative\drivers\msiscsi.sys 2013-12-20 20:16:29 0EA7DE1ACB728DD5A369FD742D6EEE28 753664 ----a-w- C:\Windows\Sysnative\drivers\http.sys 2013-12-20 20:16:27 DDAD5A7AB24D8B65F8D724F5C20FD806 119296 ----a-w- C:\Windows\Sysnative\drivers\tdx.sys 2013-12-20 20:16:27 09594D1089C523423B32A4229263F068 261632 ----a-w- C:\Windows\Sysnative\drivers\netbt.sys 2013-12-20 20:16:26 2CE2DF28C83AEAF30084E1B1EB253CBB 215936 ----a-w- C:\Windows\Sysnative\drivers\vhdmp.sys 2013-12-20 20:16:25 A87D604AEA360176311474C87A63BB88 229888 ----a-w- C:\Windows\Sysnative\drivers\1394ohci.sys 2013-12-20 20:16:25 77F665941019A1594D887A74F301FA2F 309248 ----a-w- C:\Windows\Sysnative\drivers\rdbss.sys 2013-12-20 20:16:25 759A9EEB0FA9ED79DA1FB7D4EF78866D 366976 ----a-w- C:\Windows\Sysnative\drivers\msrpc.sys 2013-12-20 20:16:24 FF4232A1A64012BAA1FD97C7B67DF593 328192 ----a-w- C:\Windows\Sysnative\drivers\udfs.sys 2013-12-20 20:16:24 DA6B67270FD9DB3697B20FCE94950741 289664 ----a-w- C:\Windows\Sysnative\drivers\fltMgr.sys 2013-12-20 20:16:23 94575C0571D1462A0F70BDE6BD6EE6B3 184704 ----a-w- C:\Windows\Sysnative\drivers\pci.sys 2013-12-20 20:16:23 471815800AE33E6F1C32FB1B97C490CA 129536 ----a-w- C:\Windows\Sysnative\drivers\rasl2tp.sys 2013-12-20 20:16:22 DB801A638D011B9633829EB6F663C900 140672 ----a-w- C:\Windows\Sysnative\drivers\msdsm.sys 2013-12-20 20:16:22 D2AAFD421940F640B407AEFAAEBD91B0 71552 ----a-w- C:\Windows\Sysnative\drivers\volmgr.sys 2013-12-20 20:16:22 C9F0E1BD74365A8771590E9008D22AB6 82944 ----a-w- C:\Windows\Sysnative\drivers\ipfltdrv.sys 2013-12-20 20:16:22 ACFAD0B512226C7A83C7CB09FD55A9AD 179072 ----a-w- C:\Windows\Sysnative\drivers\Classpnp.sys 2013-12-20 20:16:22 39D2ABCD392F3D8A6DCE7B60AE7B8EFC 78720 ----a-w- C:\Windows\Sysnative\drivers\HpSAMD.sys 2013-12-20 20:16:21 D81D9E70B8A6DD14D42D7B4EFA65D5F2 334208 ----a-w- C:\Windows\Sysnative\drivers\acpi.sys 2013-12-20 20:16:21 C25F0BAFA182CBCA2DD3C851C2E75796 31104 ----a-w- C:\Windows\Sysnative\drivers\msahci.sys 2013-12-20 20:16:21 561E7E1F06895D78DE991E01DD0FB6E5 63360 ----a-w- C:\Windows\Sysnative\drivers\termdd.sys 2013-12-20 20:16:21 53F7305169863F0A2BDDC49E116C2E11 164352 ----a-w- C:\Windows\Sysnative\drivers\ndiswan.sys 2013-12-20 20:16:20 F92A2C41117A11A00BE01CA01A7FCDE9 111104 ----a-w- C:\Windows\Sysnative\drivers\raspptp.sys 2013-12-20 20:16:20 AC03AF3329579FFFB455AA2DAABBE22B 103808 ----a-w- C:\Windows\Sysnative\drivers\sbp2port.sys 2013-12-20 20:16:20 24FBF5CC5C04150073C315A7C83521EE 243712 ----a-w- C:\Windows\Sysnative\drivers\ks.sys 2013-12-20 20:16:19 356AFD78A6ED4457169241AC3965230C 88576 ----a-w- C:\Windows\Sysnative\drivers\wanarp.sys 2013-12-20 20:16:18 A255814907C89BE58B79EF2F189B843B 363392 ----a-w- C:\Windows\Sysnative\drivers\volmgrx.sys 2013-12-20 20:16:18 34ED295FA0121C241BFEF24764FC4520 213888 ----a-w- C:\Windows\Sysnative\drivers\rdyboost.sys 2013-12-20 20:16:18 32E7A3D591D671A6DF2DB515A5CBE0FA 94592 ----a-w- C:\Windows\Sysnative\drivers\mountmgr.sys 2013-12-20 20:16:18 1B1E264203D4EF9D3DA1987AD70355AB 171392 ----a-w- C:\Windows\Sysnative\drivers\scsiport.sys 2013-12-20 20:16:17 A5462BD6884960C9DC85ED49D34FF392 14720 ----a-w- C:\Windows\Sysnative\drivers\hwpolicy.sys 2013-12-20 20:16:16 A44B420D30BD56E145D6A2BC8768EC58 155008 ----a-w- C:\Windows\Sysnative\drivers\mpio.sys 2013-12-20 20:16:15 015C0D8E0E0421B4CFD48CFFE2825879 57856 ----a-w- C:\Windows\Sysnative\drivers\ndproxy.sys 2013-12-20 20:16:14 DC54A574663A895C8763AF0FA1FF7561 48640 ----a-w- C:\Windows\Sysnative\drivers\umbus.sys 2013-12-20 20:16:13 CAF88D6573D21CD2AA27001DDBFDC74D 146432 ----a-w- C:\Windows\Sysnative\drivers\rmcast.sys 2013-12-20 20:16:13 136185F9FB2CC61E573E676AA5402356 56832 ----a-w- C:\Windows\Sysnative\drivers\ndisuio.sys 2013-12-20 20:16:13 0557CF5A2556BD58E26384169D72438D 131584 ----a-w- C:\Windows\Sysnative\drivers\pacer.sys 2013-12-20 20:16:12 C3EC945DEC43C00E2AD4C98DDDD064C7 31744 ----a-w- C:\Windows\Sysnative\drivers\usbrpm.sys 2013-12-20 20:16:12 9BB2EF44EAA163B29C4A4587887A0FE4 102400 ----a-w- C:\Windows\Sysnative\drivers\dfsc.sys 2013-12-20 20:16:12 99F8E788246D495CE3794D7E7821D2CA 12800 ----a-w- C:\Windows\Sysnative\drivers\acpipmi.sys 2013-12-20 20:16:12 9592090A7E2B61CD582B612B6DF70536 30208 ----a-w- C:\Windows\Sysnative\drivers\hidusb.sys 2013-12-20 20:16:12 89A69C3F2F319B43379399547526D952 61440 ----a-w- C:\Windows\Sysnative\drivers\appid.sys 2013-12-20 20:16:12 6F020A220388ECA0AB6062DC27BD16B6 26624 ----a-w- C:\Windows\Sysnative\drivers\tdi.sys 2013-12-20 20:16:12 3566A8DAAFA27AF944F5D705EAA64894 125440 ----a-w- C:\Windows\Sysnative\drivers\tunnel.sys 2013-12-20 20:16:12 292A8E03B3FCE04E39B5BE9B14132030 32896 ----a-w- C:\Windows\Sysnative\drivers\USBCAMD2.sys 2013-12-20 20:16:12 03EDB043586CCEBA243D689BDDA370A8 38912 ----a-w- C:\Windows\Sysnative\drivers\CompositeBus.sys 2013-12-20 20:16:11 F036CE71586E93D94DAB220D7BDF4416 147456 ----a-w- C:\Windows\Sysnative\drivers\cdrom.sys 2013-12-20 20:16:11 DD85B78243A19B59F0637DCF284DA63C 14336 ----a-w- C:\Windows\Sysnative\drivers\sffp_sd.sys 2013-12-20 20:16:11 97BFED39B6B79EB12CDDBFEED51F56BB 122368 ----a-w- C:\Windows\Sysnative\drivers\hdaudbus.sys 2013-12-20 20:16:11 975761C778E33CD22498059B91E7373A 350208 ----a-w- C:\Windows\Sysnative\drivers\HdAudio.sys 2013-12-20 20:16:11 253F38D0D7074C02FF8DEB9836C97D2B 29696 ----a-w- C:\Windows\Sysnative\drivers\scfilter.sys 2013-12-20 20:16:11 0FC1AEA580957AA8817B8F305D18CA3A 78848 ----a-w- C:\Windows\Sysnative\drivers\IPMIDrv.sys 2013-12-20 20:16:11 0705EFF5B42A9DB58548EEC3B26BB484 33280 ----a-w- C:\Windows\Sysnative\drivers\kbdhid.sys 2013-12-20 20:11:41 FED648B01349A3C8395A5169DB5FB7D6 91648 ----a-w- C:\Windows\Sysnative\drivers\USBSTOR.SYS 2013-12-20 20:11:41 DAB0E87525C10052BF65F06152F37E4A 166272 ----a-w- C:\Windows\Sysnative\drivers\nvstor.sys 2013-12-20 20:11:41 D4121AE6D0C0E7E13AA221AA57EF2D49 107904 ----a-w- C:\Windows\Sysnative\drivers\amdsata.sys 2013-12-20 20:11:41 AAAF44DB3BD0B9D1FB6969B23ECC8366 410496 ----a-w- C:\Windows\Sysnative\drivers\iaStorV.sys 2013-12-20 20:11:41 540DAF1CEA6094886D72126FD7C33048 27008 ----a-w- C:\Windows\Sysnative\drivers\amdxata.sys 2013-12-20 20:11:41 19CB37AC38B802BE9C441D094521A29A 189824 ----a-w- C:\Windows\Sysnative\drivers\storport.sys 2013-12-20 20:11:41 0A92CB65770442ED0DC44834632F66AD 148352 ----a-w- C:\Windows\Sysnative\drivers\nvraid.sys 2013-12-20 17:35:39 385044010950C76471A4F1AE47435157 15648 ----a-w- C:\Windows\Sysnative\drivers\nvflash.sys 2013-12-20 17:23:13 AEA0A67275CFBA0E463E00C6E9A1DDAE 54376 ----a-w- C:\Windows\Sysnative\drivers\WdfLdr.sys 2013-12-20 17:23:13 933222B19FF3E7EA5F65517EA1F7D57E 3 ----a-w- C:\Windows\Sysnative\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2013-12-20 17:08:23 6BD9295CC032DD3077C671FCCF579A7B 23408 ----a-w- C:\Windows\Sysnative\drivers\fs_rec.sys 2013-12-20 17:06:50 B98F8C6E31CD07B2E6F71F7F648E38C0 1656680 ----a-w- C:\Windows\Sysnative\drivers\ntfs.sys 2013-12-20 17:06:36 D711B3C1D5F42C0C2415687BE09FC163 288768 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb10.sys 2013-12-20 17:06:36 A5D9106A73DC88564C825D317CAC68AC 158208 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb.sys 2013-12-20 17:06:36 9423E9D355C8D303E76B8CFBD8A5C30C 128000 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb20.sys 2013-12-20 17:06:33 92B3172E8C14C1444682F510843A9988 19968 ----a-w- C:\Windows\Sysnative\drivers\usb8023.sys 2013-12-20 17:06:32 9BBD8B5855BC6578957F82341F9CDE5A 27520 ----a-w- C:\Windows\Sysnative\drivers\Diskdump.sys 2013-12-20 17:04:06 B4ADEBBF5E3677CCE9651E0F01F7CC28 410112 ----a-w- C:\Windows\Sysnative\drivers\srv2.sys 2013-12-20 17:04:06 441FBA48BFF01FDB9D5969EBC1838F0B 467456 ----a-w- C:\Windows\Sysnative\drivers\srv.sys 2013-12-20 17:04:06 27E461F0BE5BFF5FC737328F749538C3 168448 ----a-w- C:\Windows\Sysnative\drivers\srvnet.sys 2013-12-20 17:04:05 7942B7AC3FF598F8A1736D51ADAF04E8 376688 ----a-w- C:\Windows\Sysnative\drivers\netio.sys 2013-12-20 17:04:05 41C67E4205C606A103DEC8651D0B6FE6 288088 ----a-w- C:\Windows\Sysnative\drivers\FWPKCLNT.SYS 2013-12-20 17:03:51 E61608AA35E98999AF9AAEEEA6114B0A 210944 ----a-w- C:\Windows\Sysnative\drivers\rdpwd.sys 2013-12-20 17:03:41 E9766131EEADE40A27DC27D2D68FBA9C 75120 ----a-w- C:\Windows\Sysnative\drivers\partmgr.sys 2013-12-20 17:03:38 8F6322049018354F45F05A2FD2D4E5E0 223752 ----a-w- C:\Windows\Sysnative\drivers\fvevol.sys 2013-12-20 17:03:37 6C02A83164F5CC0A262F4199F0871CF5 90624 ----a-w- C:\Windows\Sysnative\drivers\bowser.sys 2013-12-20 17:01:34 51C5ECEB1CDEE2468A1748BE550CFBC8 23552 ----a-w- C:\Windows\Sysnative\drivers\tdtcp.sys ====== C:\Windows\Tasks ====== 2014-01-05 19:47:18 D657E0116AEFB35226AF2C650C32C08B 3878 ----a-w- C:\Windows\Sysnative\Tasks\Adobe Flash Player Updater 2014-01-05 19:47:18 732EF1F25D9E43BAF52EE2669E6E4BA0 940 ----a-w- C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-04 23:08:10 C3DF45EEC622B6113764F2C83A6A788E 3130 ----a-w- C:\Windows\Sysnative\Tasks\{44BCB5AB-3B10-4FE1-B47B-D4762F58344C} 2013-12-20 17:51:15 C658419BA6762383DE8B1DEEB263A94C 3536 ----a-w- C:\Windows\Sysnative\Tasks\CreateChoiceProcessTask ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-01-10 01:56:30 -------- d-----w- C:\Program Files\trend micro 2014-01-05 16:00:17 -------- d-----w- C:\Program Files\Windows Live 2014-01-05 15:22:28 -------- d-----w- C:\Program Files\Canon 2013-12-20 21:53:48 -------- d-----w- C:\Program Files\Microsoft Silverlight ======= C:\PROGRA~2 ===== 2014-01-05 16:00:12 -------- d-----w- C:\PROGRA~2\Windows Live 2014-01-05 14:42:34 -------- d-----w- C:\PROGRA~2\K-Lite Codec Pack 2014-01-05 00:41:51 -------- d-----w- C:\PROGRA~2\COMMON~1\Skype 2014-01-05 00:25:07 -------- d-----w- C:\PROGRA~2\Mozilla Maintenance Service 2014-01-05 00:09:58 -------- d-----w- C:\PROGRA~2\COMMON~1\Adobe 2014-01-05 00:05:14 -------- d-----w- C:\PROGRA~2\COMMON~1\Adobe AIR 2014-01-05 00:05:14 -------- d-----w- C:\PROGRA~2\Adobe 2013-12-20 22:36:46 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2013-12-20 22:36:41 -------- d-----w- C:\PROGRA~2\Java 2013-12-20 22:03:53 -------- d-----w- C:\PROGRA~2\Canon 2013-12-20 22:02:00 -------- d-----w- C:\PROGRA~2\COMMON~1\EZB Systems 2013-12-20 21:53:48 -------- d-----w- C:\PROGRA~2\Microsoft Silverlight 2013-12-20 21:53:42 -------- d-----w- C:\PROGRA~2\Microsoft CAPICOM 2.1.0.2 2013-12-20 21:52:56 -------- d-----w- C:\PROGRA~2\GPLGS 2013-12-20 21:52:45 -------- d-----w- C:\PROGRA~2\Acro Software 2013-12-20 21:49:24 -------- d-----w- C:\PROGRA~2\COMMON~1\Windows Live 2013-12-20 21:37:27 -------- d-----w- C:\PROGRA~2\COMMON~1\DVDVideoSoft 2013-12-20 21:23:39 -------- d-----w- C:\PROGRA~2\COMMON~1\LWS 2013-12-20 20:09:16 -------- d-----w- C:\PROGRA~2\Microsoft.NET ======= C: ===== ====== C:\Users\Rajni\AppData\Roaming ====== 2014-01-05 15:32:29 -------- d-----w- C:\Users\Rajni\AppData\Roaming\HandBrake 2014-01-05 15:32:25 -------- d-----w- C:\Users\Rajni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Handbrake 2014-01-05 14:43:58 -------- d-----w- C:\Users\Rajni\AppData\Roaming\Media Player Classic 2014-01-05 14:38:41 -------- d-----w- C:\Users\Rajni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-01-05 01:26:20 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\Rajni\AppData\Roaming\Stardockfences_debug_snapshot.dat 2014-01-05 00:19:20 -------- d-----w- C:\Users\Rajni\AppData\Roaming\AVG 2014-01-04 23:17:15 294DD88996E8AFCA8A2CB737A7BB01AA 64024 ----a-w- C:\Users\Rajni\AppData\Local\GDIPFONTCACHEV1.DAT 2013-12-29 21:11:05 -------- d-----w- C:\Users\Rajni\AppData\Roaming\vlc 2013-12-29 20:07:28 -------- d-----w- C:\Users\Rajni\AppData\Roaming\MPC-HC 2013-12-28 20:44:22 -------- d-----w- C:\Users\Rajni\AppData\Local\Diagnostics 2013-12-23 21:27:46 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\PnrpSqm 2013-12-23 21:22:43 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Roaming\PeerNetworking 2013-12-23 20:53:11 -------- d-----w- C:\Users\Rajni\AppData\Roaming\OpenOffice 2013-12-22 18:00:22 -------- d-----w- C:\Users\Rajni\AppData\Local\Akamai 2013-12-21 22:23:49 -------- d-s---w- C:\Windows\serviceprofiles\Localservice\AppData\Locallow\Microsoft 2013-12-20 23:49:57 -------- d-----w- C:\Users\Rajni\AppData\Roaming\TeamViewer 2013-12-20 23:22:30 -------- d-----w- C:\Users\Rajni\AppData\Local\Windows Live Writer 2013-12-20 22:36:20 -------- d-----w- C:\Users\Rajni\AppData\Locallow\Sun 2013-12-20 22:30:41 -------- d-----w- C:\Users\Rajni\AppData\Locallow\Adobe 2013-12-20 22:06:56 -------- d-----w- C:\Users\Rajni\AppData\Roaming\WinRAR 2013-12-20 22:00:50 -------- d-----w- C:\Users\Rajni\AppData\Roaming\Stardock 2013-12-20 21:49:38 -------- d-----w- C:\Users\Rajni\AppData\Local\Windows Live 2013-12-20 21:49:10 -------- d-----w- C:\Users\Rajni\AppData\Roaming\WinBar 2013-12-20 21:43:41 -------- d-----w- C:\Users\Rajni\AppData\Roaming\Skype 2013-12-20 21:41:27 -------- d-----w- C:\Users\Rajni\AppData\Local\tango 2013-12-20 21:39:05 -------- d-----w- C:\Users\Rajni\AppData\Local\Downloaded Installations 2013-12-20 21:37:27 -------- d-----w- C:\Users\Rajni\AppData\Roaming\DVDVideoSoft 2013-12-20 21:36:45 -------- d-----w- C:\Users\Rajni\AppData\Local\Programs 2013-12-20 21:36:38 -------- d-----w- C:\Users\Rajni\AppData\Local\Evernote 2013-12-20 21:36:35 -------- d-----w- C:\Users\Rajni\AppData\Locallow\Evernote 2013-12-20 21:24:52 -------- d-----w- C:\Users\Rajni\AppData\Roaming\Leadertech 2013-12-20 17:55:40 -------- d-----w- C:\Users\Rajni\AppData\Local\Adobe 2013-12-20 17:53:26 -------- d-----w- C:\Users\Rajni\AppData\Roaming\Mozilla 2013-12-20 17:53:26 -------- d-----w- C:\Users\Rajni\AppData\Local\Mozilla 2013-12-20 17:34:11 -------- d-----w- C:\Users\Rajni\AppData\Roaming\NVIDIA 2013-12-20 17:33:37 -------- d-----w- C:\Users\Rajni\AppData\Roaming\Adobe ====== C:\Users\Rajni ====== 2014-01-10 01:55:59 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\Rajni\Desktop\RSITx64.exe 2014-01-10 01:42:28 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stardock 2014-01-05 15:40:58 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote 2014-01-05 15:00:23 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraISO 2014-01-05 14:48:14 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung 2014-01-05 14:42:36 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2014-01-05 14:38:41 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-01-05 01:11:09 344B5C8ABC20DFE2AD0AAF65624CE8DA 1243120 ----a-w- C:\Users\Rajni\Downloads\wlsetup-web.exe 2014-01-05 00:54:32 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinBar 2014-01-05 00:41:52 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-01-05 00:19:12 -------- d-----w- C:\ProgramData\AVG 2014-01-05 00:19:11 -------- d--h--w- C:\ProgramData\Common Files 2014-01-03 00:00:10 -------- d-----w- C:\ProgramData\TEMP 2013-12-20 22:40:18 -------- d-----w- C:\ProgramData\BootRacer 2013-12-20 22:36:46 -------- d-----w- C:\ProgramData\Sun 2013-12-20 22:36:44 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2013-12-20 22:28:46 -------- d-----w- C:\ProgramData\Adobe 2013-12-20 22:03:54 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities 2013-12-20 21:54:17 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2013-12-20 21:52:46 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CutePDF 2013-12-20 21:49:08 -------- d-----w- C:\ProgramData\WinBar 2013-12-20 21:45:50 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2013-12-20 21:44:37 -------- d-----w- C:\Users\Public\temp 2013-12-20 21:43:36 -------- d-----w- C:\ProgramData\Skype 2013-12-20 21:39:32 -------- d-----w- C:\ProgramData\Samsung 2013-12-20 21:38:57 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Handbrake 2013-12-20 21:37:33 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2013-12-20 21:35:58 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AM-DeadLink 2013-12-20 21:34:42 -------- d-s---w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.1 2013-12-20 17:53:23 -------- d-----w- C:\ProgramData\Mozilla ====== C: exe-files == 2014-01-10 01:56:30 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Rajni.exe 2014-01-10 01:55:59 662C39FC1E27131551D557862CEC47F0 935175 ----a-w- C:\Users\Rajni\Desktop\RSITx64.exe 2014-01-08 21:05:40 EFE3A4D5DCD79577F4BB5ABC24B16477 104296 ----a-w- C:\Users\Rajni\AppData\Local\Temp\lu\lws_1100_helpmainfix.exe 2014-01-05 19:47:39 91ADC0E26FAEA06BB588AC7C215452CA 17838984 ----a-w- C:\Users\Rajni\AppData\Local\Temp\fp_pl_pfs_installer-2.exe 2014-01-05 15:22:30 D67F427114DE61D4C497BC84722EFCE7 116328 ----a-w- C:\Program Files\Canon\MyPrinter\uninst.exe 2014-01-05 15:22:29 B28AD85B8C199CB573621FCE54D7E19C 1840720 ----a-w- C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE 2014-01-05 15:22:29 7661B379E69FC26E8F78CECE7A9405C8 46672 ----a-w- C:\Program Files\Canon\MyPrinter\BJMYRST.EXE 2014-01-05 15:22:20 D67F427114DE61D4C497BC84722EFCE7 116328 ----a-w- C:\Program Files (x86)\Canon\SolutionMenu\uninst.exe 2014-01-05 15:22:19 FEDB6110D3E0A7EFE6996F93CD8C48E7 644696 ----a-w- C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.EXE 2014-01-05 15:21:41 349F22D38948D90F71A041B391CB4611 95824 ----a-w- C:\Program Files (x86)\Canon\MP Navigator EX 1.0\MPNScan.exe 2014-01-05 15:21:22 EBD2DA9195D1C27C372EC5F4BAB79084 1045840 ----a-w- C:\Program Files (x86)\Canon\MP Navigator EX 1.0\mpncopy.exe 2014-01-05 15:21:22 69265454453781846AF3C141F7B5221A 5973328 ----a-w- C:\Program Files (x86)\Canon\MP Navigator EX 1.0\mpnex10.exe 2014-01-05 15:21:21 C4EB244C2CDF404CB56DF79482AC5514 308832 ---ha-w- C:\Program Files (x86)\Canon\MP Navigator EX 1.0\Maint.exe 2014-01-05 15:15:10 906F5592CD68267E58456B6260F07320 53248 ----a-r- C:\Users\Rajni\AppData\Roaming\Microsoft\Installer\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}\ARPPRODUCTICON.exe 2014-01-05 14:48:11 C46B351F1F6F83FBB3B0F6E73341CDCF 987744 ----a-w- C:\Program Files (x86)\InstallShield Installation Information\{758C8301-2696-4855-AF45-534B1200980A}\setup.exe 2014-01-05 14:42:36 AD937F57725167E2D5D7BE534FEED706 1048576 ----a-w- C:\Program Files (x86)\K-Lite Codec Pack\Tools\mediainfo.exe 2014-01-05 14:42:36 84551CD8625713FEEDFEBC769562A67D 443392 ----a-w- C:\Program Files (x86)\K-Lite Codec Pack\Tools\SetACL_x64.exe 2014-01-05 14:42:36 567BEFCC4CAF8EE4C1F68DED96562727 301056 ----a-w- C:\Program Files (x86)\K-Lite Codec Pack\Tools\SetACL_x86.exe 2014-01-05 14:42:36 08170EA8211B667ED378AABBA247D094 2627072 ----a-w- C:\Program Files (x86)\K-Lite Codec Pack\Tools\GraphStudioNext.exe 2014-01-05 14:42:35 32C67CE61370B21A539786A3A2E674CA 2636448 ----a-w- C:\Program Files (x86)\K-Lite Codec Pack\Filters\madVR\madHcCtrl.exe 2014-01-05 14:42:34 8EB5CB60390C1FEAD4EE674D466BBDAD 1324115 ----a-w- C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe 2014-01-05 14:42:34 29CD1D8A7ABBC8EEB424758E357450C0 1163776 ----a-w- C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe 2014-01-05 14:42:34 150A123EE610E812B7555CB7F056FE4C 5893120 ----a-w- C:\Program Files (x86)\K-Lite Codec Pack\Media Player Classic\mpc-hc.exe 2014-01-05 01:11:09 344B5C8ABC20DFE2AD0AAF65624CE8DA 1243120 ----a-w- C:\Users\Rajni\Downloads\wlsetup-web.exe 2014-01-05 00:46:35 8235C4BCD9959CA43B900643B16C80A7 5604768 ----a-w- C:\Users\Rajni\AppData\Local\Temp\1385723452_wedownload_manager_pro.exe 2014-01-05 00:46:29 B6753B0788DAEE441BF22AA0C1BF093B 231816 ----a-w- C:\Users\Rajni\AppData\Local\Temp\BetterBrowseSetup.exe 2014-01-05 00:38:11 21403C7550D92A51D7D3FA5FDA928F6D 1350424 ----a-w- C:\Users\Rajni\AppData\Local\Temp\DownloadManager.exe 2014-01-05 00:25:07 99F20CB58E61DAAD19935122AEE8B376 106212 ----a-w- C:\Program Files (x86)\Mozilla Maintenance Service\Uninstall.exe 2014-01-05 00:25:07 3B9398E0146855B1DC0E3D9769C80F01 119408 ----a-w- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 2014-01-05 00:10:52 B18B74942C0123FEAECC7D91228A8D93 88542 ----a-w- C:\Windows\SysWOW64\Adobe\Shockwave 12\uninstaller.exe 2014-01-05 00:07:11 52FA726F8D37412122EC4EF1DF09D80F 692616 ----a-w- C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-05 00:05:06 9973DCFD2D080C325F865C08D13610DB 130408 ----a-w- C:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR Application Installer.exe 2014-01-05 00:05:06 960FC5D26E103A124E0F4CE82D038C36 103272 ----a-w- C:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe 2014-01-05 00:05:06 77D4A137779DB57638C9CB9048973B68 54632 ----a-w- C:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\airappinstaller.exe 2014-01-05 00:05:06 77D4A137779DB57638C9CB9048973B68 54632 ----a-w- C:\Program Files (x86)\Adobe\Flash Player\AddIns\airappinstaller\airappinstaller.exe 2014-01-05 00:05:06 42D121320D4642A8E6212561F19F88B1 59392 ----a-w- C:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\template.exe === C: other files == 2014-01-05 14:28:48 95314C3A08589471983C2C8173F23CDA 16376 ----a-w- C:\Windows\System32\drivers\TVMonitor.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-1679131429-403256407-2411578191-1000\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "Akamai NetSession Interface"="C:\Users\Rajni\AppData\Local\Akamai\netsession_win.exe" "WinBar (x64)"="D:\Winbar\WinBar.exe" "Logitech Vid"="C:\Program Files (x86)\Logitech\Vid\Vid.exe -bootmode" "Logitech Vid HD"="C:\Program Files (x86)\Logitech\Vid\vid.exe -bootmode" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:http://go.microsoft.com/fwlink/?LinkID=122915 /build:7601" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce] "SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:http://go.microsoft.com/fwlink/?LinkID=122915 /build:7601" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IMSS"="C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe" "USB3MON"="C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "KiesTrayAgent"="D:\Samsung Kies\Kies\KiesTrayAgent.exe" "LWS"="C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "Akamai NetSession Interface"="C:\Users\Rajni\AppData\Local\Akamai\netsession_win.exe" "WinBar (x64)"="D:\Winbar\WinBar.exe" "Logitech Vid"="C:\Program Files (x86)\Logitech\Vid\Vid.exe -bootmode" "Logitech Vid HD"="C:\Program Files (x86)\Logitech\Vid\vid.exe -bootmode" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s" "IAStorIcon"="C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe 60" "CanonMyPrinter"="C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon" "CanonSolutionMenu"="C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe /logon" ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe ARM" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CanonSolutionMenu] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="CanonSolutionMenu" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\Canon\\SolutionMenu\\CNSLMAIN.exe /logon" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesAirMessage] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="KiesAirMessage" "hkey"="HKCU" "command"="D:\\Samsung Kies\\Kies\\KiesAirMessage.exe -startup" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesPreload] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="KiesPreload" "hkey"="HKCU" "command"="D:\\Samsung Kies\\Kies\\Kies.exe /preload" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesTrayAgent] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="KiesTrayAgent" "hkey"="HKLM" "command"="F:\\Kies\\KiesTrayAgent.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Logitech Vid HD] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Logitech Vid HD" "hkey"="HKCU" "command"="\"F:\\Vid\\vid.exe\" -bootmode" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SunJavaUpdateSched" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^Rajni^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Logitech . Productregistratie.lnk] "item"="Logitech . Productregistratie" "path"="C:\\Users\\Rajni\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Logitech . Productregistratie.lnk" "backup"="C:\\Windows\\pss\\Logitech . Productregistratie.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\PROGRA~2\\Logitech\\Ereg\\eReg.exe" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [05-01-2014 20:47] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["D:\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\Norton WSC Integration" ["C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\WSCStub.exe"] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{54D4C510-58F4-4E4B-9134-3E1B0CBCD938}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\ASUS\ASUS Product Register Service" [F:\\aprp.exe] "C:\Windows\SysNative\tasks\ASUS\i-Setup164946" [C:\Windows\Chipset\AsusSetup.exe] "C:\Windows\SysNative\tasks\Norton Internet Security\Norton Error Analyzer" [C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\SymErr.exe] "C:\Windows\SysNative\tasks\Norton Internet Security\Norton Error Processor" [C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\SymErr.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}"="C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\coFFPlgn" [11-01-2014 21:25] ==== Firefox Extensions ====================== ProfilePath: C:\Users\Rajni\AppData\Roaming\Mozilla\Firefox\Profiles\uv3dniqn.default - Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\IPSFF - HTML5 Media Player - %ProfilePath%\extensions\html5player@horning.us.xpi - Turn Off the Lights - %ProfilePath%\extensions\stefanvandamme@stefanvd.net.xpi - Google Translator for Firefox - %ProfilePath%\extensions\translator@zoli.bod.xpi - Outlook Button - %ProfilePath%\extensions\{8f7dd41a-0441-4e16-a7d0-f25deb928fb1}.xpi - Download YouTube Videos as MP4 - %ProfilePath%\extensions\{b9bfaf1c-a63f-47cd-8b9a-29526ced9060}.xpi - Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi - Firefox 2 the theme reloaded - %ProfilePath%\extensions\{fd2f951f-77ea-4938-9493-0c892c027a13}.xpi ==== Firefox Plugins ====================== Profilepath: C:\Users\Rajni\AppData\Roaming\Mozilla\Firefox\Profiles\uv3dniqn.default F891089A6AB9E12FEDEBCC5EC0F40D66 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll - Shockwave Flash CBFE3156904AB2D1A097F5E74A6C62F3 - D:\Vlc Media Player\VLC\npvlc.dll - VLC Web Plugin F3B0E300AFC94E1A775A2D935A7D384F - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1207148.dll - Shockwave for Director / Shockwave for Director ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions mkfokfffehpeedafpekjeddnmnjhmcmk - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\Exts\Chrome.crx[12-09-2013 16:26] ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.nl/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.nl/" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{5EA43559-ABD9-4381-A7B4-6141107205DE}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Unknown Url="Not_Found" {5EA43559-ABD9-4381-A7B4-6141107205DE} Google Url="http://www.google.nl/search?hl=nl&q={searchTerms}" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1679131429-403256407-2411578191-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesAirMessage deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Vid HD deleted successfully ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Rajni\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Rajni\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Rajni\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== C:\Users\Rajni\AppData\Local\Mozilla\Firefox\Profiles\uv3dniqn.default\Cache emptied successfully ==== Empty Chrome Cache ====================== No Chrome User Data found ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=393 folders=55 101812607 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Users\Rajni\AppData\Local\Temp will be emptied at reboot C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Rajni\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on zo 12-01-2014 at 0:55:13,03 ======================