Zoek.exe v5.0.0.0 Updated 28-06-2014 Tool run by arjanenlinette on ma 30-06-2014 at 17:05:51,17. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\arjanenlinette\Downloads\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2014-06-30-145400.log 1343 bytes ==== Reset Hosts File ====================== # Copyright (c) 1993-2006 Microsoft Corp. # # This is a sample HOSTS file used by Microsoft TCP/IP for Windows. # # This file contains the mappings of IP addresses to host names. Each # entry should be kept on an individual line. The IP address should # be placed in the first column followed by the corresponding host name. # The IP address and the host name should be separated by at least one # space. # # Additionally, comments (such as these) may be inserted on individual # lines or following the machine name denoted by a '#' symbol. # # For example: # # 102.54.94.97 rhino.acme.com # source server # 38.25.63.10 x.acme.com # x client host # localhost name resolution is handle within DNS itself. 127.0.0.1 localhost ::1 localhost ==== Empty Folders Check ====================== C:\PROGRA~2\AGEIA Technologies deleted successfully C:\PROGRA~2\glindorus deleted successfully C:\PROGRA~2\MSXML 4.0 deleted successfully C:\PROGRA~2\predm deleted successfully C:\PROGRA~2\Sony Ericsson deleted successfully C:\PROGRA~3\Babylon deleted successfully C:\PROGRA~3\Oracle deleted successfully C:\PROGRA~3\Sony Ericsson deleted successfully C:\Users\arjanenlinette\AppData\Roaming\Advanced System Protector deleted successfully C:\Users\arjanenlinette\AppData\Roaming\PerformerSoft deleted successfully C:\Users\arjanenlinette\AppData\Roaming\Systweak deleted successfully C:\Windows\serviceprofiles\Localservice\AppData\Roaming\Xfire deleted successfully C:\Users\arjanenlinette\AppData\Local\cache deleted successfully C:\Users\arjanenlinette\AppData\Local\genienext deleted successfully C:\Users\arjanenlinette\AppData\Local\Unity deleted successfully C:\Users\arjanenlinette\AppData\Local\WarThunder deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3621487324-1695687905-2697646970-1000\Software\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5} deleted successfully HKEY_CLASSES_ROOT\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{ae07101b-46d4-4a98-af68-0333ea26e113} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{ae07101b-46d4-4a98-af68-0333ea26e113} deleted successfully ==== Installed Programs ====================== Adobe Flash Player 13 ActiveX Adobe Flash Player 14 Plugin Adobe Reader XI (11.0.07) - Nederlands Adobe Shockwave Player 12.0 Basissoftware voor HP Officejet 6700 BlackBerry Desktop Software 7.1 CCleaner eReg Free RAR Extractor - 1.2 Packages Free RAR Extractor G Data AntiVirus 2014 GeForce Experience NvStream Client Components Google Chrome Google Update Helper HD Tune Pro 5.50 High-Definition Video Playback HP FWUpdateEDO2 HP Officejet 6700 Haelp HP Photo Creations HP Update HPDiagnosticAlert I.R.I.S. OCR Java 7 Update 55 Java Auto Updater LightScribe System Software Logitech SetPoint 6.51 Media Go Media Go Video Playback Engine 1.96.120.08260 Microsoft .NET Framework 4.5.1 Microsoft .NET Framework 4.5.1 (Nederlands) Microsoft .NET Framework 4.5.1 (NLD) Microsoft Silverlight Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Mozilla Firefox 30.0 (x86 nl) Mozilla Maintenance Service MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) Nero 10 Movie ThemePack 1 Nero 10 Movie ThemePack Basic Nero BurnRights 10 Nero BurnRights 10 Help (CHM) Nero Control Center 10 Nero ControlCenter 10 Help (CHM) Nero Core Components 10 Nero CoverDesigner 10 Nero CoverDesigner 10 Help (CHM) Nero DiscSpeed 10 Nero DiscSpeed 10 Help (CHM) Nero Express 10 Nero Express 10 Help (CHM) Nero InfoTool 10 Nero InfoTool 10 Help (CHM) Nero MediaHub 10 Nero MediaHub 10 Help (CHM) Nero Multimedia Suite 10 Essentials Nero RescueAgent 10 Nero RescueAgent 10 Help (CHM) Nero StartSmart 10 Nero StartSmart 10 Help (CHM) Nero Update NVIDIA-configuratiescherm 332.21 NVIDIA 3D Vision controllerstuurprogramma 332.21 NVIDIA 3D Vision stuurprogramma 332.21 NVIDIA GeForce Experience 1.8.1 NVIDIA Grafisch stuurprogramma 332.21 NVIDIA HD Audio-stuurprogramma 1.3.30.1 NVIDIA Install Application NVIDIA LED Visualizer 1.0 NVIDIA Network Service NVIDIA PhysX NVIDIA PhysX systeemsoftware 9.13.0725 NVIDIA ShadowPlay 10.11.15 NVIDIA Stereoscopic 3D Driver NVIDIA Update 10.11.15 NVIDIA Update Core NVIDIA Virtual Audio 1.2.19 OpenOffice.org 3.4.1 PlayStation(R)Network Downloader PlayStation(R)Store PokerStars.eu Productverbeteringonderzoek HP Officejet 6700 Realtek Ethernet Controller Driver Security Update for Microsoft .NET Framework 4.5.1 (KB2898869) Security Update for Microsoft .NET Framework 4.5.1 (KB2901126) Security Update for Microsoft .NET Framework 4.5.1 (KB2931368) SHIELD Streaming SkypeT 6.16 Sony PC Companion 2.10.197 swMSM Tombraider Updater Service VLC media player 2.1.3 War Thunder Launcher 1.0.1.152 World of Tanks World of Warplanes WPM17.8.0.3159 Xfire ==== Running Processes ====================== C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKService.exe C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe C:\Program Files (x86)\Skype\Phone\Skype.exe C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe C:\Program Files (x86)\G Data\AntiVirus\AVKTray\AVKTray.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\Nero\Update\NASvc.exe C:\Users\arjanenlinette\Downloads\zoek.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\cmd.exe ==== Deleting Services ====================== ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=- [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command] @="C:\\Program Files\\Internet Explorer\\iexplore.exe" ==== Deleting Files \ Folders ====================== C:\Users\arjanenlinette\daemonprocess.txt deleted C:\Users\arjanenlinette\.android deleted C:\PROGRA~2\SopCast deleted C:\PROGRA~2\SearchProtect deleted C:\PROGRA~2\Bench deleted C:\PROGRA~2\File Scout deleted C:\found.000 deleted C:\Users\arjanenlinette\AppData\Roaming\newnext.me deleted C:\Users\arjanenlinette\AppData\Roaming\aartemis deleted C:\Users\arjanenlinette\AppData\Roaming\Babylon deleted C:\Users\arjanenlinette\AppData\Roaming\File Scout deleted C:\Users\arjanenlinette\AppData\Roaming\OpenCandy deleted C:\PROGRA~3\Application Data deleted C:\PROGRA~3\WPM deleted C:\PROGRA~3\IBUpdaterService deleted C:\Users\arjanenlinette\AppData\Local\SearchProtect deleted C:\Users\arjanenlinette\AppData\Local\Mobogenie deleted C:\Users\arjanenlinette\AppData\Local\Coupon Server deleted C:\Windows\SysNative\roboot64.exe deleted C:\Users\arjanenlinette\Downloads\iLividSetup-r1237-n-bc.exe deleted C:\Users\arjanenlinette\Downloads\iLividSetup.exe deleted C:\Users\arjanenlinette\Downloads\SopCast-3.5.0 (1).exe deleted C:\Users\arjanenlinette\Downloads\SopCast-3.5.0.exe deleted C:\Users\arjanenlinette\Downloads\SopCast.zip deleted C:\Users\arjanenlinette\Searches deleted C:\Users\arjanenlinette\AppData\LocalLow\Minibar deleted C:\windows\SysNative\tasks\bench-S-1-5-21-3621487324-1695687905-2697646970-1000 deleted C:\windows\SysNative\tasks\bench-sys deleted C:\Windows\tasks\bench-S-1-5-21-3621487324-1695687905-2697646970-1000.job deleted C:\Windows\tasks\bench-sys.job deleted C:\Windows\SysNative\config\systemprofile\Searches deleted C:\Users\wangzhisong deleted C:\Windows\SysWow64\searchplugins deleted C:\Windows\SysWow64\Extensions deleted C:\Users\arjanenlinette\Documents\Mobogenie deleted ==== System Specs ====================== Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601) Memory (RAM): 8141 MB CPU Info: Intel(R) Core(TM) i5-3570 CPU @ 3.40GHz CPU Speed: 3362,9 MHz Sound Card: Luidsprekers (3- High Definitio | Display Adapters: NVIDIA GeForce GTX 560 | NVIDIA GeForce GTX 560 | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver Monitors: 1x; Algemeen PnP-beeldscherm | Screen Resolution: 1920 X 1080 - 32 bit Network: Network Present Network Adapters: Realtek PCIe GBE Family Controller CD / DVD Drives: 1x (D: | ) D: HL-DT-STBD-RE BH10LS38 Ports: COM3 | COM4 LPT Port NOT Present. Mouse: 16 Button Wheel Mouse Present Hard Disks: C: 1863,0GB Hard Disks - Free: C: 1628,2GB Manufacturer *: American Megatrends Inc. BIOS Info: AT/AT COMPATIBLE | 06/19/12 | ALASKA - 1072009 Time Zone: West-Europa (standaardtijd) Motherboard *: MSI Z77A-G43 (MS-7758) Country: Nederland Language: NLD ==== System Specs (Software) ====================== Anti-Virus: G Data AntiVirus 2014 On-access scanning disabled (Outdated) Anti-Spyware: G Data AntiVirus 2014 disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Default Browser: Google Chrome 35.0.1916.153 Internet Explorer Version: 11.0.9600.17126 Mozilla Firefox version: 30.0 (x86 nl) Google Chrome version: 35.0.1916.153 Adobe Reader version: 11.0.07.79 Sun Java version: 1.7.0_55 (32-bit) Flash Player version: 14.0.0.125 Shockwave Player version: 12.0.5r146 ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\ARJANE~1\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2014-06-29 07:48:19 204882085A7D984D455AA4DE7B7074C6 5694464 ----a-w- C:\Windows\SysWOW64\mstscax.dll 2014-06-28 20:23:33 AB5EFB103DB01C1912C9D2F545EA5621 17920 ----a-w- C:\Windows\SysWOW64\wksprtPS.dll 2014-06-28 20:23:33 8DEEE20D8D30E9B0FBDCA31E58A027BD 53248 ----a-w- C:\Windows\SysWOW64\tsgqec.dll 2014-06-28 20:23:33 4676AAA9DDF52A50C829FEDB4EA81E54 1068544 ----a-w- C:\Windows\SysWOW64\mstsc.exe 2014-06-28 20:23:33 2EFB1279E7BEA7D12D9F4D6508D27880 50176 ----a-w- C:\Windows\SysWOW64\MsRdpWebAccess.dll 2014-06-28 20:23:32 5E676B296B762E211D83B87635F2C330 855552 ----a-w- C:\Windows\SysWOW64\rdvidcrl.dll 2014-06-28 20:22:58 AAB5D8C5ABE71873DC19ED004EF25009 792576 ----a-w- C:\Windows\SysWOW64\TSWorkspace.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2014-06-29 07:48:19 879A3F94118D686E63041A386FE91EBE 6574592 ----a-w- C:\Windows\Sysnative\mstscax.dll 2014-06-28 20:23:52 DDED7C5558B3AE09F568945281A9A6D1 44544 ----a-w- C:\Windows\Sysnative\TsUsbGDCoInstaller.dll 2014-06-28 20:23:34 FEC6178962DFF33074D39CA907971405 12800 ----a-w- C:\Windows\Sysnative\TsUsbRedirectionGroupPolicyExtension.dll 2014-06-28 20:23:34 108C257D765AAD2E6EC46557DA0B02BD 13824 ----a-w- C:\Windows\Sysnative\TsUsbRedirectionGroupPolicyControl.exe 2014-06-28 20:23:33 8E75B1112C374EBDF18FD640DA2F0655 1147392 ----a-w- C:\Windows\Sysnative\mstsc.exe 2014-06-28 20:23:33 7BD2E6E2458A5B95F8341244C7FC7DD4 18944 ----a-w- C:\Windows\Sysnative\wksprtPS.dll 2014-06-28 20:23:33 79EE5ECB4BE89343E4CF1E48F7769F59 420864 ----a-w- C:\Windows\Sysnative\wksprt.exe 2014-06-28 20:23:33 5289A00E2D21BB3A7D6761646543ED5C 62976 ----a-w- C:\Windows\Sysnative\tsgqec.dll 2014-06-28 20:23:33 149A388C17F04AD1F99B477A43BE1A9F 56832 ----a-w- C:\Windows\Sysnative\MsRdpWebAccess.dll 2014-06-28 20:23:33 0D2C2FAC4F29B5868D39B7267058CFEF 83968 ----a-w- C:\Windows\Sysnative\TSWbPrxy.exe 2014-06-28 20:23:32 A4420969E5AB94856E5C0C02E6099D3F 1057280 ----a-w- C:\Windows\Sysnative\rdvidcrl.dll 2014-06-28 20:22:58 9E2EDE952A3EC44754A829F048CE93A0 1030144 ----a-w- C:\Windows\Sysnative\TSWorkspace.dll ====== C:\Windows\Sysnative\drivers ===== 2014-06-28 20:23:34 E9981ECE8D894CEF7038FD1D040EB426 56832 ----a-w- C:\Windows\Sysnative\drivers\TsUsbFlt.sys 2014-06-11 08:32:02 17F685B67C74B8F7BFED4308790B71DE 288192 ----a-w- C:\Windows\Sysnative\drivers\FWPKCLNT.SYS 2014-06-11 08:32:02 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E 1903552 ----a-w- C:\Windows\Sysnative\drivers\tcpip.sys ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-06-30 11:48:15 -------- d-----w- C:\Program Files\trend micro 2014-06-29 14:19:29 -------- d-----w- C:\Program Files\Microsoft Silverlight ======= C:\PROGRA~2 ===== 2014-06-30 11:11:08 -------- d-----w- C:\PROGRA~2\HD Tune Pro 2014-06-29 14:19:29 -------- d-----w- C:\PROGRA~2\Microsoft Silverlight ======= C: ===== ====== C:\Users\arjanenlinette\AppData\Roaming ====== 2014-06-30 11:11:13 -------- d-----w- C:\Users\arjanenlinette\AppData\Roaming\HD Tune Pro 2014-06-28 22:05:41 D6B265D4EBB93F5A7E00300FD7CCB940 7643 ----a-w- C:\Users\arjanenlinette\AppData\Local\Resmon.ResmonCfg 2014-06-25 11:02:01 -------- d-----w- C:\Users\arjanenlinette\AppData\Roaming\NVIDIA ====== C:\Users\arjanenlinette ====== 2014-06-30 11:48:04 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\arjanenlinette\Downloads\RSITx64.exe 2014-06-30 11:11:08 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune Pro 2014-06-30 11:10:45 2616C2FB0EAB3DE29B2E2CB02F9715F3 2195900 ----a-w- C:\Users\arjanenlinette\Downloads\hdtunepro_550_trial.exe 2014-06-29 14:20:45 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-06-22 08:22:24 387C0A29C7491F1128578B8516622AB8 1058200 ----a-w- C:\Users\arjanenlinette\Downloads\install_flashplayer14x32au_mssd_aaa_aih.exe ====== C: exe-files == 2014-06-30 15:05:43 92E68680D92CC49BBDA8160CEB21C716 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3621487324-1695687905-2697646970-1000\$IV80SRY.exe 2014-06-30 15:04:37 352E8561E633B17ED22012366721FFDC 1285120 ----a-w- C:\$Recycle.Bin\S-1-5-21-3621487324-1695687905-2697646970-1000\$RV80SRY.exe 2014-06-30 11:48:16 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\arjanenlinette.exe 2014-06-30 11:48:04 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\arjanenlinette\Downloads\RSITx64.exe 2014-06-30 11:11:08 63ABC2E67A080888AEA74E47C07FA345 714526 ----a-w- C:\Program Files (x86)\HD Tune Pro\unins000.exe 2014-06-30 11:11:08 454563ED971883ACF2D58C3B0EA4F299 970752 ----a-w- C:\Program Files (x86)\HD Tune Pro\HDTuneProDriveStatus.exe 2014-06-30 11:11:08 0BE0A505718AC6797954D31BE27A19FC 1314816 ----a-w- C:\Program Files (x86)\HD Tune Pro\HDTunePro.exe 2014-06-30 11:10:45 2616C2FB0EAB3DE29B2E2CB02F9715F3 2195900 ----a-w- C:\Users\arjanenlinette\Downloads\hdtunepro_550_trial.exe 2014-06-28 20:23:34 108C257D765AAD2E6EC46557DA0B02BD 13824 ----a-w- C:\Windows\System32\TsUsbRedirectionGroupPolicyControl.exe 2014-06-28 20:23:33 8E75B1112C374EBDF18FD640DA2F0655 1147392 ----a-w- C:\Windows\System32\mstsc.exe 2014-06-28 20:23:33 79EE5ECB4BE89343E4CF1E48F7769F59 420864 ----a-w- C:\Windows\System32\wksprt.exe 2014-06-28 20:23:33 4676AAA9DDF52A50C829FEDB4EA81E54 1068544 ----a-w- C:\Windows\SysWOW64\mstsc.exe 2014-06-28 20:23:33 0D2C2FAC4F29B5868D39B7267058CFEF 83968 ----a-w- C:\Windows\System32\TSWbPrxy.exe 2014-06-28 19:25:24 5D81E417C571674343B13662DF834E2F 13301104 ----a-w- C:\Users\arjanenlinette\AppData\Local\NVIDIA\NvBackend\Packages\00005c61\vops-war_thunder.18637768.exe 2014-06-28 19:25:14 6E6A30788242C8D2AA83DA1195B848E3 12531848 ----a-w- C:\Users\arjanenlinette\AppData\Local\NVIDIA\NvBackend\Packages\00005c63\vops-world_of_tanks.18637768.exe 2014-06-28 19:25:07 879BCD238423638038AA101BD5877079 3708096 ----a-w- C:\Users\arjanenlinette\AppData\Local\NVIDIA\NvBackend\Packages\00005c76\DAO.18641604.exe 2014-06-25 06:37:49 983AADF13FE3BF0E63B86C1A95B1E87A 3016584 ----a-w- C:\Program Files (x86)\War Thunder\launcher_upd\WarThunderLauncher_1.0.1.370_updGSWBXGHP.exe 2014-06-24 18:53:28 C3CFA5587C7938BC317E0BCDE1A06E79 3656928 ----a-w- C:\Users\arjanenlinette\AppData\Local\NVIDIA\NvBackend\Packages\00005c3b\DAO.18629648.exe === C: other files == 2014-06-30 11:00:54 9A0CEDF573CBF4D81E660501A2B3AA8D 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3621487324-1695687905-2697646970-1000\$IZO5SFZ.zip 2014-06-28 20:23:34 E9981ECE8D894CEF7038FD1D040EB426 56832 ----a-w- C:\Windows\System32\drivers\TsUsbFlt.sys 2014-06-26 19:37:22 76CDB2BAD9582D23C1F6F4D868218D6C 22 ----a-w- C:\$Recycle.Bin\S-1-5-21-3621487324-1695687905-2697646970-1000\$RZO5SFZ.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-3621487324-1695687905-2697646970-1000\Software\Microsoft\Windows\CurrentVersion\Run] "LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden" "HP Officejet 6700 (NET)"="C:\Program Files\HP\HP Officejet 6700\Bin\ScanToPCActivationApp.exe -deviceID CN1CR1H0DY05RQ:NW -scfn HP Officejet 6700 (NET) -AutoStart 1" "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "HP Software Update"="C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe" "RIMBBLaunchAgent.exe"="C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe" "G Data AntiVirus Tray"="C:\Program Files (x86)\G Data\AntiVirus\AVKTray\AVKTray.exe" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] "Coupon Server-repairJob"="wscript.exe C:\Users\arjanenlinette\AppData\Local\Coupon Server\repair.js Coupon Server-repairJob" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden" "HP Officejet 6700 (NET)"="C:\Program Files\HP\HP Officejet 6700\Bin\ScanToPCActivationApp.exe -deviceID CN1CR1H0DY05RQ:NW -scfn HP Officejet 6700 (NET) -AutoStart 1" "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "EvtMgr6"="C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming" "Logitech Download Assistant"="C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch" "Nvtmru"="C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" "ShadowPlay"="C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart" "NvBackend"="C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\\PROGRA~2\\SearchProtect\\SearchProtect\\bin\\SPVC64Loader.dll" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [28-06-2014 22:28] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [10-11-2012 23:12] C:\Windows\tasks\HP Photo Creations Communicator.job --a------ C:\ProgramData\HP Photo Creations\Communicator.exe [15-05-2013 14:28] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\HP Photo Creations Communicator" [C:\ProgramData\HP Photo Creations\Communicator.exe] "C:\Windows\SysNative\tasks\HPCustParticipation HP Officejet 6700" ["C:\Program Files\HP\HP Officejet 6700\Bin\HPCustPartic.exe"] "C:\Windows\SysNative\tasks\hpUrlLauncher.exe_{79B72A84-3E19-44F4-8BEC-10A22C941F85}" [C:\Program Files\HP\HP Officejet 6700\Bin\utils\hpUrlLauncher.exe] "C:\Windows\SysNative\tasks\MSIAfterburner" [C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "{F003DA68-8256-4b37-A6C4-350FA04494DF}"="C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt" [11-11-2012 15:19] ==== Firefox Extensions ====================== AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\arjanenlinette\AppData\Roaming\Mozilla\Firefox\Profiles\iaok85s4.default 738C29EAC995029E13333034C1402F56 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_125.dll - Shockwave Flash C2321043FA2CA4C32FF449DE6116B5D9 - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1205146.dll - Shockwave for Director / Shockwave for Director 1B05342DC6A8896A90952AF2084620F5 - C:\ProgramData\Visan\plugins\npRLSecurePluginLayer.dll - RocketLife Secure Plug-In Layer ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions edaibbiobngpbmeonadpbfafbkimjbdd - C:\ProgramData\Logitech\LogiSmoothChromeExt.crx[04-11-2012 18:46] kiplfnciaokpcennlkldkdaeaaomamof - C:\Users\arjanenlinette\AppData\Local\Torch\Plugins\TorchPlugin.crx[] Google Docs - arjanenlinette\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - arjanenlinette\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - arjanenlinette\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - arjanenlinette\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Wallet - arjanenlinette\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda 20-20 3D Viewer for IKEA - arjanenlinette\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfhldcakmgpmglboaclpfdedehjblalp Gmail - arjanenlinette\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Bar"="http://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuTU&co=NL&userid=6e389005-ed87-5873-e90c-f6e69b01ce72&searchtype=ds&q={searchTerms}&installDate=26/01/2014" "Use Search Asst"="yes" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl] "Default"="http://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuTU&co=NL&userid=6e389005-ed87-5873-e90c-f6e69b01ce72&searchtype=ds&q={searchTerms}&installDate=26/01/2014" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl] "Default"="http://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuTU&co=NL&userid=6e389005-ed87-5873-e90c-f6e69b01ce72&searchtype=ds&q={searchTerms}&installDate=26/01/2014" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "Default"="http://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuTU&co=NL&userid=6e389005-ed87-5873-e90c-f6e69b01ce72&searchtype=ds&q={searchTerms}&installDate=26/01/2014" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuTU&co=NL&userid=6e389005-ed87-5873-e90c-f6e69b01ce72&searchtype=ds&q={searchTerms}&installDate=26/01/2014" "SearchAssistant"="http://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuTU&co=NL&userid=6e389005-ed87-5873-e90c-f6e69b01ce72&searchtype=ds&q={searchTerms}&installDate=26/01/2014" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{006ee092-9658-4fd6-bd8e-a21a348e59f5}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" "Use Search Asst"="no" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\kiplfnciaokpcennlkldkdaeaaomamof deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WPM deleted successfully ==== HijackThis Entries ====================== F2 - REG:system.ini: UserInit=userinit.exe O1 - Hosts: ::1 localhost O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [RIMBBLaunchAgent.exe] C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe O4 - HKLM\..\Run: [G Data AntiVirus Tray] C:\Program Files (x86)\G Data\AntiVirus\AVKTray\AVKTray.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\RunOnce: [Coupon Server-repairJob] wscript.exe "C:\Users\arjanenlinette\AppData\Local\Coupon Server\repair.js" "Coupon Server-repairJob" O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden O4 - HKCU\..\Run: [HP Officejet 6700 (NET)] "C:\Program Files\HP\HP Officejet 6700\Bin\ScanToPCActivationApp.exe" -deviceID "CN1CR1H0DY05RQ:NW" -scfn "HP Officejet 6700 (NET)" -AutoStart 1 O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: G Data AntiVirus Proxy (AVKProxy) - G Data Software AG - C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe O23 - Service: G Data Scheduler (AVKService) - G Data Software AG - C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKService.exe O23 - Service: G Data Bestandssysteembewaker (AVKWCtl) - G Data Software AG - C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKWCtlX64.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: G Data Scanner (GDScan) - G Data Software AG - C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\arjanenlinette\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\244Y1XAM will be deleted at reboot C:\Users\arjanenlinette\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8LNVL24T will be deleted at reboot C:\Users\arjanenlinette\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IEQOVE will be deleted at reboot C:\Users\arjanenlinette\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FB5M6YKK will be deleted at reboot C:\Users\arjanenlinette\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OZRZXVQQ will be deleted at reboot ==== Empty FireFox Cache ====================== C:\Users\arjanenlinette\AppData\Local\Mozilla\Firefox\Profiles\iaok85s4.default\Cache emptied successfully ==== Empty Chrome Cache ====================== C:\Users\arjanenlinette\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1393 folders=166 114977782 bytes) ==== Empty Temp Folders ====================== C:\Users\arjanenlinette\AppData\Local\Temp will be emptied at reboot C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\ARJANE~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\arjanenlinette\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\244Y1XAM" not found "C:\Users\arjanenlinette\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8LNVL24T" not found "C:\Users\arjanenlinette\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IEQOVE" not found "C:\Users\arjanenlinette\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FB5M6YKK" not found "C:\Users\arjanenlinette\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OZRZXVQQ" not found ==== EOF on ma 30-06-2014 at 17:18:16,91 ======================