Zoek.exe v5.0.0.0 Updated 21-December-2014 Tool run by marcwoutes on zo 21/12/2014 at 14:07:17,28. Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\marcwoutes\Desktop\zoek.exe.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 21/12/2014 14:11:15 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\Defender WIndows deleted successfully C:\PROGRA~2\Digiarty deleted successfully C:\PROGRA~2\DVDFab 8 deleted successfully C:\PROGRA~2\DVDneXtCOPY3 deleted successfully C:\PROGRA~2\Elecard deleted successfully C:\PROGRA~2\Fotoalbum deleted successfully C:\PROGRA~2\Fotoservice deleted successfully C:\PROGRA~2\iSkysoft deleted successfully C:\PROGRA~2\michaelkaesper.de Software deleted successfully C:\PROGRA~2\Moyea deleted successfully C:\PROGRA~2\NCH deleted successfully C:\PROGRA~2\Nvidia deleted successfully C:\PROGRA~2\ProShow MediaSource - Wedding Essentials deleted successfully C:\PROGRA~2\URUSoft deleted successfully C:\PROGRA~2\WinAVI deleted successfully C:\PROGRA~2\Winnydows deleted successfully C:\PROGRA~2\Xara deleted successfully C:\Program Files\log deleted successfully C:\Program Files\Symantec deleted successfully C:\PROGRA~3\Avira deleted successfully C:\PROGRA~3\Elaborate Bytes deleted successfully C:\PROGRA~3\PhotoStitch deleted successfully C:\PROGRA~3\xml_param deleted successfully C:\PROGRA~3\ZoomBrowser deleted successfully C:\PROGRA~3\{35733029-9859-49C7-8475-1E78E2AAE413} deleted successfully C:\PROGRA~3\{93E26451-CD9A-43A5-A2FA-C42392EA4001} deleted successfully C:\PROGRA~3\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} deleted successfully C:\PROGRA~3\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} deleted successfully C:\Users\marcwoutes\AppData\Roaming\10431 deleted successfully C:\Users\marcwoutes\AppData\Roaming\10459 deleted successfully C:\Users\marcwoutes\AppData\Roaming\10676 deleted successfully C:\Users\marcwoutes\AppData\Roaming\10813 deleted successfully C:\Users\marcwoutes\AppData\Roaming\16331 deleted successfully C:\Users\marcwoutes\AppData\Roaming\19293 deleted successfully C:\Users\marcwoutes\AppData\Roaming\19901 deleted successfully C:\Users\marcwoutes\AppData\Roaming\22386 deleted successfully C:\Users\marcwoutes\AppData\Roaming\25940 deleted successfully C:\Users\marcwoutes\AppData\Roaming\26625 deleted successfully C:\Users\marcwoutes\AppData\Roaming\28117 deleted successfully C:\Users\marcwoutes\AppData\Roaming\28624 deleted successfully C:\Users\marcwoutes\AppData\Roaming\29235 deleted successfully C:\Users\marcwoutes\AppData\Roaming\337Games deleted successfully C:\Users\marcwoutes\AppData\Roaming\4843 deleted successfully C:\Users\marcwoutes\AppData\Roaming\7753 deleted successfully C:\Users\marcwoutes\AppData\Roaming\Abzyty deleted successfully C:\Users\marcwoutes\AppData\Roaming\AccurateRip deleted successfully C:\Users\marcwoutes\AppData\Roaming\Azureus deleted successfully C:\Users\marcwoutes\AppData\Roaming\BDREBUILDER deleted successfully C:\Users\marcwoutes\AppData\Roaming\Ipswitch deleted successfully C:\Users\marcwoutes\AppData\Roaming\Media Player Classic deleted successfully C:\Users\marcwoutes\AppData\Roaming\NeroDigital(TM) deleted successfully C:\Users\marcwoutes\AppData\Roaming\Octoshape deleted successfully C:\Users\marcwoutes\AppData\Roaming\Publish Providers deleted successfully C:\Users\marcwoutes\AppData\Roaming\svchostwindows deleted successfully C:\Users\marcwoutes\AppData\Roaming\TP deleted successfully C:\Users\marcwoutes\AppData\Roaming\Windows Defender deleted successfully C:\Users\marcwoutes\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A} deleted successfully C:\Users\marcwoutes\AppData\Local\cache deleted successfully C:\Users\marcwoutes\AppData\Local\Downloaded Installations deleted successfully C:\Users\marcwoutes\AppData\Local\DrmRemoval deleted successfully C:\Users\marcwoutes\AppData\Local\Jaksta_Technologies_Pty_L deleted successfully C:\Users\marcwoutes\AppData\Local\kbdmmc3D deleted successfully C:\Users\marcwoutes\AppData\Local\Sparta deleted successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\CrashDumps deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E1499FE7-129D-4B6E-B681-DDF21E14172C} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E1499FE7-129D-4B6E-B681-DDF21E14172C} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{13EE6854-EB24-47F0-A3E0-AD630AC2BA0} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2DA87D7A-624B-48E9-AF92-CBFA7F524C89} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5032FDA6-95AD-4BE0-9B8E-80E961B4D9F8} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{74AF08A1-D529-4379-9494-B22A55FE7EFA} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7BA03978-8008-47B9-A00-AB17E44B1B37} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B4EBE3CA-563A-4281-8268-804ADD0968} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B6195454-1792-4411-B51E-6E3259E2637B} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BE99316D-E6B0-42D8-A1B9-1D7257F8F7DC} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D1ADE51A-859E-4661-8CE7-CF57C16525AD} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D9DA5624-8177-4E57-9AF1-5E294327D2} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F67EF6EB-10A-453C-8759-4C166CB2F224} deleted successfully HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6915E42-68E1-4104-B5E9-FAB0E14AF88C} deleted successfully HKEY_CLASSES_ROOT\CLSID\{E1499FE7-129D-4B6E-B681-DDF21E14172C} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{E1499FE7-129D-4B6E-B681-DDF21E14172C} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E1499FE7-129D-4B6E-B681-DDF21E14172C} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E1499FE7-129D-4B6E-B681-DDF21E14172C} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5} deleted successfully HKEY_CLASSES_ROOT\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5} deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} deleted successfully ==== Running Processes ====================== C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc2.exe C:\Program Files (x86)\Elex-tech\YAC\iSafeTray.exe C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe C:\Program Files (x86)\AirVideoServer HD\AirVideoServerStarter.exe C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe C:\Temp\explorer.exe C:\Program Files (x86)\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe C:\hp\support\hpsysdrv.exe C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Windows\SysWOW64\svchost.exe C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe c:\hp\HPEZBTN\HPBtnSrv.exe C:\Program Files (X86)\Intel\Intel Matrix Storage Manager\Iaantmon.exe C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe C:\Program Files (x86)\Microsoft SQL Server\MSSQL\Binn\sqlservr.exe C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe C:\Program Files (x86)\AirVideoServer HD\AirVideoServerUI.exe C:\Program Files (x86)\Common Files\Apple\Internet Services\APSDaemon.exe C:\Program Files (x86)\AirVideoServer HD\ExternalEncoder.exe C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe C:\Windows\SysWOW64\DllHost.exe C:\hp\kbd\kbd.exe C:\Windows\SysWOW64\DllHost.exe C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_235_ActiveX.exe C:\Program Files (x86)\iTunes\iTunes.exe C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe C:\Users\marcwoutes\Desktop\zoek.exe.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\SysWOW64\conime.exe C:\Windows\SysWOW64\cmd.exe C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine\21.6.0.32\NIS.exe C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine\21.6.0.32\NIS.exe C:\Windows\SysWOW64\cmd.exe ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ssnfd deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\ssnfd deleted successfully ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\Google Chrome.UUSWOC4L5Z5RWABXKRG7I4MSVI\shell\open\command] @="C:\\Users\\marcwoutes\\AppData\\Local\\Google\\Chrome\\Application\\chrome.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\Safari.exe\shell\open\command] @="C:\\Program Files (x86)\\Safari\\Safari.exe" ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E1499FE7-129D-4B6E-B681-DDF21E14172C}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E1499FE7-129D-4B6E-B681-DDF21E14172C}] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Freecorder FLV Service] ==== Deleting Files \ Folders ====================== C:\Users\marcwoutes\AppData\Roaming\337Games not found C:\PROGRA~3\{35733029-9859-49C7-8475-1E78E2AAE413} not found C:\PROGRA~3\{93E26451-CD9A-43A5-A2FA-C42392EA4001} not found C:\PROGRA~3\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} not found C:\PROGRA~3\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} not found "C:\Windows\Installer\1ee400.msi" not found C:\Users\marcwoutes\Documents\iTools deleted C:\Program Files (x86)\MyPC Backup deleted C:\Users\marcwoutes\AppData\Roaming\dll-files.com deleted C:\Program Files (x86)\Dll-Files.com Fixer deleted C:\Users\marcwoutes\AppData\Roaming\0F1L1I1P0H1L1E1E1F deleted C:\Windows\syswow64\appdata deleted C:\PROGRA~2\Photo Notifier and Animation Creator deleted C:\PROGRA~2\Photo Print Calendar from YOKOHAMA Ver.3.00E beta deleted C:\PROGRA~2\ProtectDisc Driver Installer deleted C:\PROGRA~2\iSafe deleted C:\extensions.sqlite deleted C:\extensions.ini deleted C:\found.000 deleted C:\found.001 deleted C:\Users\marcwoutes\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Search.lnk deleted C:\Users\marcwoutes\AppData\Roaming\MAGIX deleted C:\Users\marcwoutes\AppData\Roaming\AutoGK.ini deleted C:\Users\marcwoutes\AppData\Roaming\die.bat deleted C:\Users\marcwoutes\AppData\Roaming\~LM00001.tmp deleted C:\Users\marcwoutes\AppData\Roaming\~LM00002.tmp deleted C:\Users\marcwoutes\AppData\Roaming\~LM00003.tmp deleted C:\Users\marcwoutes\AppData\Roaming\~LM00004.tmp deleted C:\Users\marcwoutes\AppData\Roaming\data.dat deleted C:\Users\marcwoutes\AppData\Roaming\iSafe deleted C:\Windows\sysWoW64\config\systemprofile\AppData\Roaming\Hotspot Shield deleted C:\PROGRA~3\MAGIX deleted C:\PROGRA~3\Package Cache deleted C:\PROGRA~3\EmailNotifier deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YAC deleted C:\Users\marcwoutes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup deleted C:\Users\marcwoutes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk deleted C:\Windows\SysNative\roboot64.exe deleted C:\Users\marcwoutes\Downloads\HSS-2.90-install-e-395-conduit.exe deleted C:\Windows\tasks\DLL-Files.Com Fixer_Updates.job deleted C:\windows\SysNative\tasks\DLL-Files.Com Fixer_Updates deleted C:\windows\SysNative\drivers\{5e3e9883-9c0d-443b-ab98-b792663acb63}Gt64.sys deleted C:\windows\SysNative\GroupPolicy\Machine deleted C:\windows\SysNative\GroupPolicy\User deleted C:\windows\SysNative\GroupPolicy\GPT.INI deleted C:\Windows\Syswow64\GroupPolicy\gpt.ini deleted C:\Users\Public\Desktop\YAC.lnk deleted C:\Users\marcwoutes\AppData\Roaming\DVDFabPasskey8004Beta.exe deleted C:\Users\marcwoutes\AppData\Roaming\OJR4MGZSV1.exe deleted C:\Users\MARCWO~1\AppData\Roaming\Mozilla\firefox\Profiles\dGaUgCEO.default\extensions\abs@avira.com deleted "C:\Users\marcwoutes\AppData\Roaming\chrtmp" deleted "C:\Users\marcwoutes\AppData\Roaming\Pyok\elpi.gyd" deleted "C:\Users\marcwoutes\AppData\Roaming\Pyok\elpi.tmp" deleted "C:\Users\marcwoutes\AppData\Roaming\Xyro\ostio.exe" deleted "C:\Users\marcwoutes\AppData\Roaming\Luupbu\layvy.ebe" deleted "C:\Users\marcwoutes\AppData\Roaming\install\server.exe" deleted "C:\Users\marcwoutes\AppData\Roaming\Pyok" deleted "C:\Users\marcwoutes\AppData\Roaming\Xyro" deleted "C:\Users\marcwoutes\AppData\Roaming\Luupbu" deleted "C:\Users\marcwoutes\AppData\Roaming\install" deleted ==== System Specs ====================== Windows: Windows Vista Home Premium Edition (64-bit) Service Pack 2 (Build 6002) Memory (RAM): 5119 MB CPU Info: Intel(R) Core(TM)2 Quad CPU Q9450 @ 2.66GHz CPU Speed: 2664,7 MHz Sound Card: Luidsprekers (Realtek High Defi | Realtek HDMI Output (Realtek Hi | Realtek Digital Output (Realtek | Display Adapters: NVIDIA GeForce 9600 GS | NVIDIA GeForce 9600 GS | RDPDD Chained DD | RDP Encoder Mirror Driver Monitors: 1x; Algemeen PnP-beeldscherm | Screen Resolution: 1680 X 1050 - 32 bit Network: Network Present Network Adapters: Anchorfree HSS VPN Adapter | USB Wireless 802.11 b/g Adaptor | Realtek RTL8168C(P)/8111C(P) Family PCI-E Gigabit Ethernet NIC (NDIS 6.0) CD / DVD Drives: 2x (F: | G: | ) F: HL-DT-STBD-RE GBW-H20L | G: EZBSYS ISO CDVD DRIVE Ports: COM6 | COM7 | COM10 | COM11 | COM12 | COM13 | COM14 | COM20 | COM21 | COM22 LPT Port NOT Present. Mouse: 3 Button Wheel Mouse Present Hard Disks: C: 453,8GB | D: 12,0GB | E: 465,8GB | H: 465,6GB | K: 465,8GB | N: 298,1GB | Q: 0,0MB Hard Disks - Free: C: 132,2GB | D: 1,6GB | E: 352,5GB | H: 337,9GB | K: 415,1GB | N: 90,7GB | Q: 0,0MB Manufacturer *: American Megatrends Inc. BIOS Info: AT/AT COMPATIBLE | 04/21/08 | HPQOEM - 20080421 Time Zone: Romance (standaardtijd) Motherboard *: PEGATRON CORPORATION Benicia Country: Belgi‰ Language: NLB ==== System Specs (Software) ====================== Anti-Virus: Norton Internet Security On-access scanning disabled (Outdated) Anti-Spyware: Norton Internet Security disabled (Outdated) Anti-Spyware: Windows Defender disabled (Outdated) Firewall: Norton Internet Security disabled Internet Explorer Version: 9.0.8112.16421 Mozilla Firefox version: 34.0.5 (x86 nl) Google Chrome version: 39.0.2171.95 Adobe Reader version: 11.0.8.4 Sun Java version: 1.8.0_25 (32-bit) Sun Java version: 1.8.0_25 (64-bit) Flash Player version: 15.0.0.246 Shockwave Player version: 12.0.7r148 ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\MARCWO~1\AppData\Local\Temp ==== 2014-12-10 18:31:01 5AE358EE14B934AF5727DBDF4B3516B2 3691008 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\applications\bdcore\nero.bdcore.msi 2014-12-10 18:30:40 0F8DAD9C6F5EA45623717DAC1D4FB180 5583360 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\applications\corecomponents\nero.corecomponents.msi 2014-12-10 18:30:39 EA9427EC579789CFB4AB78688AECE724 1066496 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\applications\dolbyfiles\nero.dolbyfiles.msi 2014-12-10 18:28:10 1139DCDA4CCF4A4453C643132B0CA3B1 2095616 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\applications\kwikmedia\nero.kwikmedia.msi 2014-12-10 18:28:06 12712300280CC6BCE7C8835A749ADE3B 1217536 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\applications\moviethemebase\nero.moviethemebase.msi 2014-12-10 18:28:04 158D660D231DF78EE7A59E1C1232695E 1202688 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\applications\moviethemepack1\nero.moviethemepack1.msi 2014-12-10 18:27:49 4459939588320476C1F38224748CF6BC 1292800 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\applications\moviethemepack2\nero.moviethemepack2.msi 2014-12-10 18:27:09 7B360455725CA1133F7A9666CB6AD880 1359360 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\applications\moviethemepack3\nero.moviethemepack3.msi 2014-12-10 18:26:54 0DBF80D7091424FA504FB41116F8F7B5 1307648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\applications\moviethemepack4paid\nero.moviethemepack4paid.msi 2014-12-10 18:26:32 7D4B790B19A3FBE50AF835EA63AEC622 1371136 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\applications\moviethemepack5\nero.moviethemepack5.msi 2014-12-10 18:26:31 EB701DEF7D0809E8DA765A752AB42BE5 95576 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx9\DSETUP.dll 2014-12-10 18:26:31 EB701DEF7D0809E8DA765A752AB42BE5 95576 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx11\DSETUP.dll 2014-12-10 18:26:31 EB701DEF7D0809E8DA765A752AB42BE5 95576 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx10\DSETUP.dll 2014-12-10 18:26:31 EB701DEF7D0809E8DA765A752AB42BE5 95576 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dcsx\DSETUP.dll 2014-12-10 18:26:31 D8FA7BB4FE10251A239ED75055DD6F73 1566040 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx9\dsetup32.dll 2014-12-10 18:26:31 D8FA7BB4FE10251A239ED75055DD6F73 1566040 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx11\dsetup32.dll 2014-12-10 18:26:31 D8FA7BB4FE10251A239ED75055DD6F73 1566040 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx10\dsetup32.dll 2014-12-10 18:26:31 D8FA7BB4FE10251A239ED75055DD6F73 1566040 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dcsx\dsetup32.dll 2014-12-10 18:26:31 BF3F290275C21BDD3951955C9C3CF32C 517976 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx9\DXSETUP.exe 2014-12-10 18:26:31 BF3F290275C21BDD3951955C9C3CF32C 517976 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx11\DXSETUP.exe 2014-12-10 18:26:31 BF3F290275C21BDD3951955C9C3CF32C 517976 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx10\DXSETUP.exe 2014-12-10 18:26:31 BF3F290275C21BDD3951955C9C3CF32C 517976 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dcsx\DXSETUP.exe 2014-12-10 18:26:31 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx11\PRQStarter-1.exe 2014-12-10 18:26:31 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx10\PRQStarter-1.exe 2014-12-10 18:26:31 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dcsx\PRQStarter-1.exe 2014-12-10 18:26:31 955D3230EB3C5E9DFB112AB016882EE6 1165824 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\applications\prerequisites\nero.prerequisites.msi 2014-12-10 18:26:31 5D9E34C01ECD70AB49D3FB6A7596F1D8 1308160 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\applications\update\Nero.Update.msi 2014-12-10 18:26:31 11B945D08409A8CF07209F7C84A22512 867328 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\applications\sharedvideocodecs\nero.sharedvideocodecs.msi 2014-12-10 18:26:30 EB701DEF7D0809E8DA765A752AB42BE5 95576 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3dHlslCompiler9.29.952.3111\DSETUP.dll 2014-12-10 18:26:30 D8FA7BB4FE10251A239ED75055DD6F73 1566040 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3dHlslCompiler9.29.952.3111\dsetup32.dll 2014-12-10 18:26:30 BF3F290275C21BDD3951955C9C3CF32C 517976 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3dHlslCompiler9.29.952.3111\DXSETUP.exe 2014-12-10 18:26:30 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx9\PRQStarter-1.exe 2014-12-10 18:26:29 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\microsoftVcRedist2010Sp1X86\PRQStarter-1.exe 2014-12-10 18:26:29 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\direct3dHlslCompiler9.29.952.3111\PRQStarter-1.exe 2014-12-10 18:26:27 CEDE02D7AF62449A2C38C49ABECC0CD3 4995416 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\microsoftVcRedist2010Sp1X86\vcredist_x86.exe 2014-12-10 18:26:26 1F4ED75763580FD592B78FC8EA053212 2067280 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\microsoftVcRedist2012X86\PRQStarter-1.exe 2014-12-10 18:26:24 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\msi4.5ForWindows6.0X64\PRQStarter-1.exe 2014-12-10 18:26:24 7F52A19ECAF7DB3C163DD164BE3E592E 6554576 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\microsoftVcRedist2012X86\vcredist_x86.exe 2014-12-10 18:26:23 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\msi4.5ForWindows6.0X86\PRQStarter-1.exe 2014-12-10 18:26:22 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\msi4.5ForWindowsxpX86\PRQStarter-1.exe 2014-12-10 18:26:21 448447E0BA4560CD558EDDB5F5B0809E 3327000 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\msi4.5ForWindowsxpX86\WindowsXP-KB942288-v3-x86.exe 2014-12-10 18:26:20 D3937A0BC18B2C2EF26FBC31E4C3304D 29416960 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\nero.neromediahomeunlimited.msi 2014-12-10 18:26:20 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\systemRequirementValidator\PRQStarter-1.exe 2014-12-10 18:26:20 907A58F5F25B25AA5A054A4DE8D65547 737000 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\setup.exe 2014-12-10 18:26:20 5416A634F698DF728283307F666A1294 2094928 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\rebootValidator\PRQStarter-1.exe 2014-12-10 18:26:20 3FCCD20F89D4D186890128EF3F878366 2566416 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20140829084931510\ISSetupPrerequisites\systemRequirementValidator\NeroOSValidator.exe 2014-12-10 17:33:51 5AE358EE14B934AF5727DBDF4B3516B2 3691008 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\bdcore\nero.bdcore.msi 2014-12-10 17:33:05 12F10CADA36F7D901F38C269AF6D82EA 3847680 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\burningcore\nero.burningcore.msi 2014-12-10 17:33:04 227F735EAE3E64CCF2DAC59343808362 4176384 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\burningrom\nero.burningrom.msi 2014-12-10 17:32:53 A2C1728040E2DA9F076AA254404F2806 2143232 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\controlcenter\nero.controlcenter.msi 2014-12-10 17:32:13 8A0D41A1FF8881C936F8177F4F504E2A 5583360 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\corecomponents\nero.corecomponents.msi 2014-12-10 17:32:12 F18EB0A6EE5A4F27AF87A7FDE4A97D32 867840 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\deviceupdates\nero.deviceupdates.msi 2014-12-10 17:31:44 CF09D631891DF84A7C7155328173D4E1 3930624 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\disc2device\nero.disc2device.msi 2014-12-10 17:31:42 EA9427EC579789CFB4AB78688AECE724 1066496 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\dolbyfiles\nero.dolbyfiles.msi 2014-12-10 17:31:40 A47AD48F0B784F2E60DE55E75FB3131A 1217536 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\effectsbasic\nero.effectsbasic.msi 2014-12-10 17:31:39 5860FB251883F6E3EF0F00CB5CB1999F 4025344 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\express\nero.express.msi 2014-12-10 17:31:35 81DA5958AC9449AD8A1DA40706D9DA1D 1170432 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\info\nero.info.msi 2014-12-10 17:30:04 991CA56A462C6CF2A6A61E5A61D55417 2096128 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\kwikmedia\nero.kwikmedia.msi 2014-12-10 17:30:00 E34A0A425807A24390703D46C75215C2 4324864 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\launcher\nero.launcher.msi 2014-12-10 17:29:56 6D388936FF5C911E6FB8ECDCB529FEA8 1200128 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\menutemplatepackbasic\nero.menutemplatepackbasic.msi 2014-12-10 17:29:49 12712300280CC6BCE7C8835A749ADE3B 1217536 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\moviethemebase\nero.moviethemebase.msi 2014-12-10 17:29:46 345353713D35775EEA27AF6E80071735 1219072 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\pipfxbasic\nero.pipfxbasic.msi 2014-12-10 17:29:45 BD4BAFEDD59CB961ACC121641E98ADA7 1165824 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\prerequisites\nero.prerequisites.msi 2014-12-10 17:28:26 9E16C3938BE90E272A79BFBFBD2793AF 4161536 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\recode\nero.recode.msi 2014-12-10 17:28:18 12312FB63E6CD5871B606DB53A9A32DA 5209088 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\rescueagent\nero.rescueagent.msi 2014-12-10 17:28:09 5D9E34C01ECD70AB49D3FB6A7596F1D8 1308160 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\update\Nero.Update.msi 2014-12-10 17:28:09 11B945D08409A8CF07209F7C84A22512 867328 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\sharedvideocodecs\nero.sharedvideocodecs.msi 2014-12-10 17:27:11 EB701DEF7D0809E8DA765A752AB42BE5 95576 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx10\DSETUP.dll 2014-12-10 17:27:11 EB701DEF7D0809E8DA765A752AB42BE5 95576 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dcsx\DSETUP.dll 2014-12-10 17:27:11 D8FA7BB4FE10251A239ED75055DD6F73 1566040 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dcsx\dsetup32.dll 2014-12-10 17:27:11 BF3F290275C21BDD3951955C9C3CF32C 517976 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dcsx\DXSETUP.exe 2014-12-10 17:27:11 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dcsx\PRQStarter-1.exe 2014-12-10 17:27:11 330D66F74574509C50735E17F3B7FF68 5761024 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\applications\vision\nero.vision.msi 2014-12-10 17:27:10 EB701DEF7D0809E8DA765A752AB42BE5 95576 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx9\DSETUP.dll 2014-12-10 17:27:10 EB701DEF7D0809E8DA765A752AB42BE5 95576 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx11\DSETUP.dll 2014-12-10 17:27:10 D8FA7BB4FE10251A239ED75055DD6F73 1566040 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx11\dsetup32.dll 2014-12-10 17:27:10 D8FA7BB4FE10251A239ED75055DD6F73 1566040 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx10\dsetup32.dll 2014-12-10 17:27:10 BF3F290275C21BDD3951955C9C3CF32C 517976 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx11\DXSETUP.exe 2014-12-10 17:27:10 BF3F290275C21BDD3951955C9C3CF32C 517976 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx10\DXSETUP.exe 2014-12-10 17:27:10 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx11\PRQStarter-1.exe 2014-12-10 17:27:10 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx10\PRQStarter-1.exe 2014-12-10 17:27:09 EB701DEF7D0809E8DA765A752AB42BE5 95576 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3dHlslCompiler9.29.952.3111\DSETUP.dll 2014-12-10 17:27:09 D8FA7BB4FE10251A239ED75055DD6F73 1566040 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3dHlslCompiler9.29.952.3111\dsetup32.dll 2014-12-10 17:27:09 D8FA7BB4FE10251A239ED75055DD6F73 1566040 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx9\dsetup32.dll 2014-12-10 17:27:09 BF3F290275C21BDD3951955C9C3CF32C 517976 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3dHlslCompiler9.29.952.3111\DXSETUP.exe 2014-12-10 17:27:09 BF3F290275C21BDD3951955C9C3CF32C 517976 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx9\DXSETUP.exe 2014-12-10 17:27:09 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3dHlslCompiler9.29.952.3111\PRQStarter-1.exe 2014-12-10 17:27:09 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\direct3d10.1Extensions9.29.952.3111D3dx9\PRQStarter-1.exe 2014-12-10 17:27:08 92A1B1C178AF342AD1E85CEE782ED046 81920 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\lightscribeSystemSoftware\LSDriveDetect.exe 2014-12-10 17:27:06 F4C3B67E5392B5926C3AAAA302EECC50 11838976 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\lightscribeSystemSoftware\LS_HSI.msi 2014-12-10 17:27:06 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\microsoftVcRedist2010Sp1X86\PRQStarter-1.exe 2014-12-10 17:27:06 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\lightscribeSystemSoftware\PRQStarter-1.exe 2014-12-10 17:27:06 A525514358477366B548299468A77EAD 90384 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\lightscribeSystemSoftware\LS_LAUNCHER.exe 2014-12-10 17:27:05 CEDE02D7AF62449A2C38C49ABECC0CD3 4995416 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\microsoftVcRedist2010Sp1X86\vcredist_x86.exe 2014-12-10 17:27:05 1F4ED75763580FD592B78FC8EA053212 2067280 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\microsoftVcRedist2012X86\PRQStarter-1.exe 2014-12-10 17:27:04 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\msi4.5ForWindows6.0X64\PRQStarter-1.exe 2014-12-10 17:27:04 7F52A19ECAF7DB3C163DD164BE3E592E 6554576 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\microsoftVcRedist2012X86\vcredist_x86.exe 2014-12-10 17:27:03 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\msi4.5ForWindowsxpX86\PRQStarter-1.exe 2014-12-10 17:27:03 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\msi4.5ForWindows6.0X86\PRQStarter-1.exe 2014-12-10 17:27:02 B632F265AF1745A79FF5CF5BEB10F273 165648 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\systemRequirementValidator\PRQStarter-1.exe 2014-12-10 17:27:02 5416A634F698DF728283307F666A1294 2094928 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\rebootValidator\PRQStarter-1.exe 2014-12-10 17:27:02 448447E0BA4560CD558EDDB5F5B0809E 3327000 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\msi4.5ForWindowsxpX86\WindowsXP-KB942288-v3-x86.exe 2014-12-10 17:27:02 3FCCD20F89D4D186890128EF3F878366 2566416 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\ISSetupPrerequisites\systemRequirementValidator\NeroOSValidator.exe 2014-12-10 17:26:57 C9624C982589BA31D6A70610294511BE 29824512 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\nero.nero2015esd.msi 2014-12-10 17:26:56 25361626EBF901AF23172E096CEB395A 734880 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\NeroInstallFiles\NERO20141205123823883\setup.exe 2014-12-09 17:39:24 50754352847B5E71E11ABF4D30407148 441220 ------w- C:\Users\marcwoutes\AppData\Local\Temp\jna\jna2701086347020965217.dll 2014-12-08 18:32:12 C1B84205CF4D70DEA5DE0A5CCA96F0C1 15783672 ----a-w- C:\Users\marcwoutes\AppData\Local\Temp\DVDFabMediaPlayer2441.exe ====== Java Cache ===== 2014-12-07 11:46:45 D3402B16016FCA36C663351848BD54C0 78875 ----a-w- C:\Users\marcwoutes\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\42\2adce06a-4a9b2bb2 2014-12-07 11:46:40 880EB61DE48A93C0D7E690765CA2DC38 37 ----a-w- C:\Users\marcwoutes\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\48\7f69c2b0-a037464e1ed4c34881f67913419d548c48139fb3263b338aec81f07916b1ae43-6.0.lap ====== C:\Windows\SysWOW64 ===== 2014-12-19 00:26:13 9BC1E3EB2495ABB8D2CFD7A92A46E1CD 97176 ----a-w- C:\Windows\SysWOW64\ElbyCDIO.dll 2014-12-14 09:55:07 D7E28676D83AE6568CCF99BD01700734 2048 ----a-w- C:\Windows\SysWOW64\tzres.dll 2014-12-14 09:53:47 F074BF1F79D749FCB8C2B739651CD816 974848 ----a-w- C:\Windows\SysWOW64\WindowsCodecs.dll 2014-12-14 09:49:06 A2083D925A6677229CDE79E9F14A1FBC 278528 ----a-w- C:\Windows\SysWOW64\schannel.dll 2014-12-10 16:12:40 ED7DBB46D75BD5DE33E9E06C7CCDC4E8 2382848 ----a-w- C:\Windows\SysWOW64\mshtml.tlb 2014-12-10 16:12:40 C23F63949092BC7086BD23743A28C46B 176640 ----a-w- C:\Windows\SysWOW64\ieui.dll 2014-12-10 16:12:40 AA680F0065A505118BDD9181BCE7C83D 1129472 ----a-w- C:\Windows\SysWOW64\wininet.dll 2014-12-10 16:12:40 823B559B2EF3D86DB920EA16102858E1 353792 ----a-w- C:\Windows\SysWOW64\dxtmsft.dll 2014-12-10 16:12:40 5281C1E96FDE868A822260478694BA54 421376 ----a-w- C:\Windows\SysWOW64\vbscript.dll 2014-12-10 16:12:40 4C0FA381EC7348F05432B2976924A031 1810944 ----a-w- C:\Windows\SysWOW64\jscript9.dll 2014-12-10 16:12:39 7247B8F630630FCF495B809962D52970 73216 ----a-w- C:\Windows\SysWOW64\mshtmled.dll 2014-12-10 16:12:39 5E251125799567959443D8F466DBEA28 223232 ----a-w- C:\Windows\SysWOW64\dxtrans.dll 2014-12-10 16:12:39 407FD4AAE5E119A441CCEAA4C3276DDF 717824 ----a-w- C:\Windows\SysWOW64\jscript.dll 2014-12-10 16:12:37 91F488C0ED1D8B1FDC112F95A4965CC6 12369920 ----a-w- C:\Windows\SysWOW64\mshtml.dll 2014-12-10 16:12:34 70DD19C20344660B1D32057603A9820D 11776 ----a-w- C:\Windows\SysWOW64\mshta.exe 2014-12-10 16:12:32 3F0A7F435BAB0ED4070BBCE73F1918F3 1139712 ----a-w- C:\Windows\SysWOW64\urlmon.dll 2014-12-10 16:12:31 F18D4C903AE56BD9852D1D9E02CF1730 1427968 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl 2014-12-10 16:12:31 E633199D0EE2682618FA5B762D892F04 607744 ----a-w- C:\Windows\SysWOW64\msfeeds.dll 2014-12-10 16:12:31 D32B633111A9F99F8DCE36F1A6278FC7 231936 ----a-w- C:\Windows\SysWOW64\url.dll 2014-12-10 16:12:31 898479188B3DBCB7F2BAC888D6456636 1802752 ----a-w- C:\Windows\SysWOW64\iertutil.dll 2014-12-10 16:12:31 5C3D2065153E4A4273DEDD87A8BC1805 65536 ----a-w- C:\Windows\SysWOW64\jsproxy.dll 2014-12-10 16:12:31 4D6B5B1CE39F6A2477FDE3117D84BDAB 367104 ----a-w- C:\Windows\SysWOW64\html.iec 2014-12-10 16:12:31 117980ADC4A9E349571810D20B14BFB8 41472 ----a-w- C:\Windows\SysWOW64\msfeedsbs.dll 2014-12-10 16:12:29 829532FD1584422EB7F4C49F767D1E4B 9740800 ----a-w- C:\Windows\SysWOW64\ieframe.dll 2014-12-10 16:12:29 5310BF0FF12033B7F79F163805BE721A 142848 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe 2014-12-10 16:12:28 D3FE7135827884946E5ED4E4DD96B472 10752 ----a-w- C:\Windows\SysWOW64\msfeedssync.exe ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2014-12-14 09:55:07 D6DE49CA70329E173EC219397BBC5690 2048 ----a-w- C:\Windows\Sysnative\tzres.dll 2014-12-14 09:53:47 F27D37CA227EAD38BF73F73C7F7E5125 1209856 ----a-w- C:\Windows\Sysnative\WindowsCodecs.dll 2014-12-14 09:49:06 403E5F568F6FFB703FDBCD2702413549 347136 ----a-w- C:\Windows\Sysnative\schannel.dll 2014-12-10 16:13:04 EE7E34E94C2DA0DF294A5816E437AEA0 2339840 ----a-w- C:\Windows\Sysnative\jscript9.dll 2014-12-10 16:12:40 AB6C755B728AF5925669DE894EE2B901 2382848 ----a-w- C:\Windows\Sysnative\mshtml.tlb 2014-12-10 16:12:39 FB75F96C453949E05240B81F0F8ECA01 816640 ----a-w- C:\Windows\Sysnative\jscript.dll 2014-12-10 16:12:39 E84BA21C08BB824F086632A342FF6A6D 453120 ----a-w- C:\Windows\Sysnative\dxtmsft.dll 2014-12-10 16:12:39 BC38D79383F2B4CD435063AED75228D0 1392128 ----a-w- C:\Windows\Sysnative\wininet.dll 2014-12-10 16:12:39 779401704C7663411C0AAEEDE2CA177F 599040 ----a-w- C:\Windows\Sysnative\vbscript.dll 2014-12-10 16:12:39 757F4559D41F1DE2D47BB3757DC30C91 248320 ----a-w- C:\Windows\Sysnative\ieui.dll 2014-12-10 16:12:39 4206EEDD21670F847908E57E48428DA7 86016 ----a-w- C:\Windows\Sysnative\jsproxy.dll 2014-12-10 16:12:39 09D891747EEC342BFBB4F70DAA5E69E0 96768 ----a-w- C:\Windows\Sysnative\mshtmled.dll 2014-12-10 16:12:36 1AA565CD5B0BC54A34A13AE2C2E97E85 282112 ----a-w- C:\Windows\Sysnative\dxtrans.dll 2014-12-10 16:12:35 912A7D052F551B9D4F2241E60A7900B5 17874432 ----a-w- C:\Windows\Sysnative\mshtml.dll 2014-12-10 16:12:33 A1EFBE251AC6749DA37A1641524A471D 12800 ----a-w- C:\Windows\Sysnative\mshta.exe 2014-12-10 16:12:32 F2401BE0EC0D1048268BBB88C23BDFAB 173056 ----a-w- C:\Windows\Sysnative\ieUnatt.exe 2014-12-10 16:12:32 9C0CD82E441944F6A3A8666AF2B95DA4 55296 ----a-w- C:\Windows\Sysnative\msfeedsbs.dll 2014-12-10 16:12:31 F47C52A74602614AE99B4139FC62378E 1494016 ----a-w- C:\Windows\Sysnative\inetcpl.cpl 2014-12-10 16:12:31 D6CC3CA81EC7223C065A3FB347D6801C 237056 ----a-w- C:\Windows\Sysnative\url.dll 2014-12-10 16:12:31 95C185629127E781D5B9A8B7A28DD4BC 729088 ----a-w- C:\Windows\Sysnative\msfeeds.dll 2014-12-10 16:12:31 8BEB36649186772E94AC06876EF08D75 2157056 ----a-w- C:\Windows\Sysnative\iertutil.dll 2014-12-10 16:12:31 5526A3CCC98DAEE45E86011D72811609 1388032 ----a-w- C:\Windows\Sysnative\urlmon.dll 2014-12-10 16:12:31 2427101E33FDE673C5217ED2ECD6C73D 448512 ----a-w- C:\Windows\Sysnative\html.iec 2014-12-10 16:12:30 5DC3BB795F5DCA8C0BABAB3E45AB9D14 10921984 ----a-w- C:\Windows\Sysnative\ieframe.dll 2014-12-10 16:12:28 4C18DCB75F84D4DB2B3FE17552CA1FA0 11264 ----a-w- C:\Windows\Sysnative\msfeedssync.exe ====== C:\Windows\Sysnative\drivers ===== 2014-12-19 00:26:13 BFD364B56C838BA6B1E727840970DDA1 40344 ----a-w- C:\Windows\Sysnative\drivers\ElbyCDIO.sys ====== C:\Windows\Tasks ====== 2014-12-13 12:22:32 FC240800F586BFB7A7F9A6A8BF062F2A 3902 ----a-w- C:\Windows\Sysnative\Tasks\GoogleUpdateTaskMachineUA 2014-12-13 12:22:32 A7CD281162EC3519E459847FC68D6654 906 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-12-13 12:22:32 66B68AF3E034304A9235589DD389B8B4 3650 ----a-w- C:\Windows\Sysnative\Tasks\GoogleUpdateTaskMachineCore 2014-12-13 12:22:32 006D34A90D1452C72A10D75E5B9280EE 902 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-12-05 18:51:00 60C5AC392BBDA34D1BA12FDE0A1D8E9C 3024 ----a-w- C:\Windows\Sysnative\Tasks\{DBCD5BB7-445D-4EC9-BC9C-B357C302DEF7} 2014-12-05 18:42:03 60C5AC392BBDA34D1BA12FDE0A1D8E9C 3024 ----a-w- C:\Windows\Sysnative\Tasks\{DC2CFE2D-9831-4B46-B197-BD861DC5032C} ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-12-20 19:52:24 -------- d-----w- C:\Program Files\trend micro ======= C:\PROGRA~2 ===== 2014-12-20 17:58:41 -------- d-----w- C:\PROGRA~2\Advanced Fix 2014 2014-12-20 12:16:33 -------- d-----w- C:\PROGRA~2\PCFixKit 2014-12-20 12:13:39 -------- d-----w- C:\PROGRA~2\Advanced Fix 2014-12-13 12:22:31 -------- d-----w- C:\PROGRA~2\Google 2014-12-10 18:53:14 -------- d-----w- C:\PROGRA~2\Hobbyist Software 2014-12-07 18:29:31 -------- d-----w- C:\PROGRA~2\AVCHDCoder 2014-12-06 13:02:51 -------- d-----w- C:\PROGRA~2\Mozilla Maintenance Service 2014-12-02 17:50:03 -------- d-----w- C:\PROGRA~2\GET DVD Maker Ultimate 2014-11-29 21:26:38 -------- d-----w- C:\PROGRA~2\Nero ======= C: ===== ====== C:\Users\marcwoutes\AppData\Roaming ====== 2014-12-20 12:16:37 -------- d-----w- C:\Users\marcwoutes\AppData\Roaming\PCFixKit 2014-12-20 11:31:25 -------- d-----w- C:\Users\marcwoutes\AppData\Local\Elaborate Bytes 2014-12-20 11:29:38 -------- d-----w- C:\Users\marcwoutes\AppData\Roaming\Elaborate Bytes 2014-12-20 11:28:18 -------- d-----w- C:\Windows\SysNative\config\systemprofile\AppData\Local\Google 2014-12-09 18:11:21 -------- d-----w- C:\Users\marcwoutes\AppData\Roaming\FreeHideIP 2014-12-06 13:02:58 -------- d-----w- C:\Users\marcwoutes\AppData\Local\Mozilla 2014-12-06 12:57:16 -------- d-----w- C:\Users\marcwoutes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-12-02 17:50:10 -------- d-----w- C:\Users\marcwoutes\AppData\Roaming\g_dvd_maker 2014-11-29 12:51:21 -------- d-----w- C:\Users\marcwoutes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\337Games ====== C:\Users\marcwoutes ====== 2014-12-20 19:46:48 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dll-Files Fixer 2014-12-20 17:58:42 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Fix 2014 2014-12-13 12:22:49 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2014-12-10 18:53:16 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VLC Streamer 2014-12-09 18:11:21 -------- d-----w- C:\ProgramData\FreeHideIP 2014-12-07 18:32:58 -------- d-----w- C:\ProgramData\Twan Wintjes 2014-12-07 18:32:02 -------- d-----w- C:\Users\marcwoutes\AVCHDCoder 2014-12-07 18:29:30 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVCHDCoder 2014-12-06 13:02:51 -------- d-----w- C:\ProgramData\Mozilla 2014-12-02 17:50:11 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GET DVD Maker Ultimate 2014-11-27 17:25:48 -------- d-----w- C:\ProgramData\Nero ====== C: exe-files == 2014-12-20 20:20:21 F0A15343179D44D0CCB6AD99597B65B6 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1530221515-459145888-4162723692-1000\$I4AFAVU.exe 2014-12-20 20:20:21 DC6D5C8E6F72345EB8EC6A1897FEB5D1 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1530221515-459145888-4162723692-1000\$IKWZISI.exe 2014-12-20 20:20:21 C768A73F08791E34D6A27BE40D278057 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1530221515-459145888-4162723692-1000\$I0MQ5PH.exe 2014-12-20 20:20:21 B9826050942E04A7815B6689F08A71CD 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1530221515-459145888-4162723692-1000\$IH64QMB.exe 2014-12-20 20:20:21 B2CD6BA2C1D2F765E5C506839BA06648 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1530221515-459145888-4162723692-1000\$IQQ6U6I.exe 2014-12-20 20:20:21 91FC0A98865A87FC0EA6E789BEB2B895 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1530221515-459145888-4162723692-1000\$IPVY7TR.exe 2014-12-20 20:20:21 6E23265AA1255F1201EB43EE3EDE6036 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1530221515-459145888-4162723692-1000\$IGJKWJG.exe 2014-12-20 19:52:24 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\marcwoutes.exe 2014-12-20 19:15:13 77BC1E4A212C657FBFD738714870B795 28822 ----a-w- C:\$Recycle.Bin\S-1-5-21-1530221515-459145888-4162723692-1000\$R4AFAVU.exe 2014-12-20 17:58:42 F6FD798FE8113AF4EB8FB2092799B7DD 14472 ----a-w- C:\Program Files (x86)\Advanced Fix 2014\NtRegDfrg64.exe 2014-12-20 17:58:42 C69A10E809E773856EF1CCB592337D61 12936 ----a-w- C:\Program Files (x86)\Advanced Fix 2014\NtRegDfrg32.exe 2014-12-20 17:58:41 CD3DBC661034373B8BC78D7E24D381F2 1173184 ----a-w- C:\Program Files (x86)\Advanced Fix 2014\unins000.exe 2014-12-20 17:58:41 A4C7022452EC9813A5213D1E5DFAA35F 19888696 ----a-w- C:\Program Files (x86)\Advanced Fix 2014\AdvancedFix.exe 2014-12-19 22:55:12 AEB7FD8413A00174013DBEA03896958B 5619048 ----a-w- C:\$Recycle.Bin\S-1-5-21-1530221515-459145888-4162723692-1000\$RH64QMB.exe 2014-12-19 22:55:10 521A2060384D4F26FE702269584115E2 4616128 ----a-w- C:\$Recycle.Bin\S-1-5-21-1530221515-459145888-4162723692-1000\$RGJKWJG.exe 2014-12-19 22:55:08 1493C0DD910DA39DC3E996EEF21F8602 22863360 ----a-w- C:\$Recycle.Bin\S-1-5-21-1530221515-459145888-4162723692-1000\$RQQ6U6I.exe 2014-12-16 18:12:59 C7C21D72170A3288958C89784A4D4C2F 31666248 ----a-w- C:\ProgramData\NVIDIA Corporation\NetService\GeForce_Experience_Update_v2.1.5.0.exe === C: other files == 2014-12-21 13:30:55 BF20BA7C20FCBA8FDC0D94240E7B961B 254718 ----a-w- C:\Program Files (x86)\Elex-tech\YAC\tmp\786c6c57c64e05452d263ff19aa27fe9_target.zip 2014-12-21 13:30:31 481403C368A70FD3F125ED4C3E752494 92272 ----a-w- C:\Program Files (x86)\Elex-tech\YAC\tmp\cc49b50ad13894a66db0855dbc70e0dd_packet.zip 2014-12-21 12:29:32 DEB6D73E2E7B2FCE1FB04256AB8F693F 47805 ----a-w- C:\Program Files (x86)\Elex-tech\YAC\tmp\4426179E.zip 2014-12-21 12:29:31 C744430AFD69A58A7B86D48E30296D36 77884 ----a-w- C:\Program Files (x86)\Elex-tech\YAC\tmp\44226DA1.zip 2014-12-21 12:00:00 07D9074F656B442B7101177A12C7FD36 104802 ----a-w- C:\Program Files (x86)\Elex-tech\YAC\tmp\2D8B787D.zip 2014-12-21 11:59:59 F575FB224E9E7AA61925135E6AF67582 140815 ----a-w- C:\Program Files (x86)\Elex-tech\YAC\tmp\2D884E81.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /detectMem" [HKEY_USERS\S-1-5-21-1530221515-459145888-4162723692-1000\Software\Microsoft\Windows\CurrentVersion\Run] "ApplePhotoStreams"="C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" "ehTray.exe"="C:\Windows\ehome\ehTray.exe" "MobileDocuments"="C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe" "AirVideoServerHD"="C:\Program Files (x86)\AirVideoServer HD\AirVideoServerStarter.exe" "iCloudServices"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" "AdobeUpdate"="C:\TEMP\explorer.exe" "DVDFab Passkey"="C:\Program Files (x86)\DVDFab Passkey\DVDFabPasskey.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "hpsysdrv"="c:\hp\support\hpsysdrv.exe" "OsdMaestro"="c:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD64.exe" "BePCSC"="C:\Program Files (x86)\EmvSmartCardReader\BePCSC.exe" "APSDaemon"="C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" "KBD"="C:\HP\KBD\KbdStub.EXE" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "ApplePhotoStreams"="C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" "ehTray.exe"="C:\Windows\ehome\ehTray.exe" "MobileDocuments"="C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe" "AirVideoServerHD"="C:\Program Files (x86)\AirVideoServer HD\AirVideoServerStarter.exe" "iCloudServices"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" "AdobeUpdate"="C:\TEMP\explorer.exe" "DVDFab Passkey"="C:\Program Files (x86)\DVDFab Passkey\DVDFabPasskey.exe" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IAAnotif"="C:\Program Files (X86)\Intel\Intel Matrix Storage Manager\Iaanotif.exe" "NvBackend"="C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\firefox] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\nokiamusic faststart] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run-] "Google Update"="\"C:\\Users\\marcwoutes\\AppData\\Local\\Google\\Update\\GoogleUpdate.exe\" /c" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-] "iTunesHelper"="\"C:\\Program Files (x86)\\iTunes\\iTunesHelper.exe\"" "QuickTime Task"="\"C:\\Program Files (x86)\\QuickTime\\QTTask.exe\" -atboottime" "Adobe ARM"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AdobeAAMUpdater-1.0] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="AdobeAAMUpdater-1.0" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\OOBE\\PDApp\\UWA\\UpdaterStartupUtility.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AdobeBridge] "command"="" "hkey"="HKCU" "item"="AdobeBridge" "key"="Software\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AdobeCS5ServiceManager] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="AdobeCS5ServiceManager" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\CS5ServiceManager\\CS5ServiceManager.exe\" -launchedbylogin" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AnyDVD] "command"="\"C:\\Program Files (x86)\\SlySoft\\AnyDVD\\AnyDVD.exe\"" "hkey"="HKCU" "item"="AnyDVD" "key"="Software\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AnyDVD1] "command"="C:\\Program Files (x86)\\SlySoft\\AnyDVD\\AnyDVDtray.exe" "hkey"="HKCU" "item"="AnyDVD" "key"="Software\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Audiogalaxy] "command"="\"C:\\Users\\marcwoutes\\AppData\\Local\\Audiogalaxy\\Audiogalaxy.exe\" /startup" "hkey"="HKCU" "item"="Audiogalaxy" "key"="Software\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\beid] "command"="\"C:\\Program Files (x86)\\Belgium Identity Card\\beid35gui.exe\" /startup" "hkey"="HKLM" "item"="beid" "key"="Software\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\DVDFab Passkey] "hkey"="HKCU" "item"="DVDFab Passkey" "key"="Software\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Firefox] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Firefox" "hkey"="HKCU" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IncrediMail] "command"="C:\\Program Files (x86)\\IncrediMail\\bin\\IncMail.exe /c" "hkey"="HKCU" "item"="IncrediMail" "key"="Software\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\NBKeyScan] "command"="\"C:\\Program Files (x86)\\Nero\\Nero BackItUp 4\\NBKeyScan.exe\"" "hkey"="HKLM" "item"="NBKeyScan" "key"="Software\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\NokiaMServer] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="NokiaMServer" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\Common Files\\Nokia\\MPlatform\\NokiaMServer /watchfiles startup" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\NokiaMusic FastStart] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="NokiaMusic FastStart" "hkey"="HKLM" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\NvCplDaemon] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="NvCplDaemon" "hkey"="HKLM" "command"="RUNDLL32.EXE C:\\Windows\\system32\\NvCpl.dll,NvStartup" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\NvMediaCenter] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="NvMediaCenter" "hkey"="HKLM" "command"="RUNDLL32.EXE C:\\Windows\\system32\\NvMcTray.dll,NvTaskbarInit" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Olympus ib] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Olympus ib" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Olympus\\ib\\olycamdetect.exe\" /Startup" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PrinterProDesktop] "command"="C:\\Program Files (x86)\\Printer Pro Desktop\\PrinterProDesktop.exe /autorun" "hkey"="HKCU" "item"="PrinterProDesktop" "key"="Software\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\QuickTime Task] "command"="\"C:\\Program Files (x86)\\QuickTime\\QTTask.exe\" -atboottime" "hkey"="HKLM" "item"="QuickTime Task" "key"="Software\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Skype] "command"="\"C:\\Program Files (x86)\\Skype\\Phone\\Skype.exe\" /minimized /regrun" "hkey"="HKCU" "item"="Skype" "key"="Software\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SpybotSD TeaTimer] "command"="C:\\Program Files (x86)\\Spybot - Search & Destroy\\TeaTimer.exe" "hkey"="HKCU" "item"="SpybotSD TeaTimer" "key"="Software\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SwitchBoard] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="SwitchBoard" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\SwitchBoard\\SwitchBoard.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\VLC Streamer Configuration.exe] "command"="\"C:\\Program Files (x86)\\Hobbyist Software\\VLC Streamer\\VLC Streamer Configuration.exe\" /startup" "item"="VLC Streamer Configuration.exe" "hkey"="HKCU" "key"="Software\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Gamma Loader.lnk] "backup"="C:\\Windows\\pss\\Adobe Gamma Loader.lnk.CommonStartup" "backupExtension"=".CommonStartup" "command"="C:\\Program Files (x86)\\Common Files\\Adobe\\Calibration\\Adobe Gamma Loader.exe" "item"="Adobe Gamma Loader" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth Manager.lnk] "item"="Bluetooth Manager" "backup"="C:\\Windows\\pss\\Bluetooth Manager.lnk.CommonStartup" "backupExtension"=".CommonStartup" "command"="C:\\PROGRA~2\\Toshiba\\BLUETO~1\\TosBtMng.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^marcwoutes^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk] "backup"="C:\\Windows\\pss\\Dropbox.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\Users\\MARCWO~1\\AppData\\Roaming\\Dropbox\\bin\\Dropbox.exe" "item"="Dropbox" "path"="C:\\Users\\marcwoutes\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Dropbox.lnk" ==== Startup Folders ====================== 2010-07-03 11:03:55 2122 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Service Manager.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [12/12/2014 10:23] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1530221515-459145888-4162723692-1000Core.job --a------ C:\Users\marcwoutes\AppData\Local\Google\Update\GoogleUpdate.exe [29/06/2012 22:27] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1530221515-459145888-4162723692-1000UA.job --a------ C:\Users\marcwoutes\AppData\Local\Google\Update\GoogleUpdate.exe [29/06/2012 22:27] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\6eb29b0c" [C:\Users\MARCWO~1\AppData\Local\Temp\\setup397718860.exe] "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\Adobe online update program" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\SysNative\tasks\AdobeAAMUpdater-1.0-PC_van_marcwout-marcwoutes" [C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\WINDOWS\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\Google Updater and Installer" [C:\Users\marcwoutes\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-1530221515-459145888-4162723692-1000Core" [C:\Users\marcwoutes\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-1530221515-459145888-4162723692-1000UA" [C:\Users\marcwoutes\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\Java Update Scheduler" [C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe] "C:\Windows\SysNative\tasks\Norton WSC Integration" ["C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine\21.6.0.32\WSCStub.exe"] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{04000691-B369-4ACB-BA1F-3A63D42545BE}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\{1DED0C7B-6468-4B7F-BC38-F7EA13257F3B}" ["c:\program files (x86)\internet explorer\iexplore.exe" http://ui.skype.com/ui/0/6.2.0.106/nl/abandoninstall?source=lightinstaller&page=tsProgressBar] "C:\Windows\SysNative\tasks\{DBCD5BB7-445D-4EC9-BC9C-B357C302DEF7}" ["c:\program files (x86)\internet explorer\iexplore.exe" http://ui.skype.com/ui/0/6.22.73.107.456/nl/go/help.faq.installer?LastError=1603] "C:\Windows\SysNative\tasks\{DC2CFE2D-9831-4B46-B197-BD861DC5032C}" ["c:\program files (x86)\internet explorer\iexplore.exe" http://ui.skype.com/ui/0/6.22.73.107.456/nl/go/help.faq.installer?LastError=1603] "C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] "C:\Windows\SysNative\tasks\Norton Internet Security\Norton Error Analyzer" [C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine\21.6.0.32\SymErr.exe] "C:\Windows\SysNative\tasks\Norton Internet Security\Norton Error Processor" [C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine\21.6.0.32\SymErr.exe] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] "C:\Windows\SysNative\tasks\PC-Doctor\Scheduled Maintenance" [C:\Program Files (x86)\PC-Doctor 5 for Windows\RunProfiler.exe] "C:\Windows\SysNative\tasks\PC-Doctor\Scheduled Maintenance Swap" [C:\Program Files (x86)\PC-Doctor 5 for Windows\task_swap.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [] [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions] "{d5bc46d8-67c7-11dc-8c1d-0097498c2b7a}"="C:\Users\marcwoutes\Program Files (x86)\DNA" [09/11/2009 18:38] ==== Firefox Extensions ====================== ProfilePath: C:\Users\MARCWO~1\AppData\Roaming\Mozilla\firefox\Profiles\olx5sbmp.default - Undetermined - support@free-hideip.com - Free Hide IP - %ProfilePath%\extensions\support@free-hideip.com.xpi ProfilePath: C:\Users\MARCWO~1\AppData\Roaming\TomTom\HOME\Profiles\3mgpevxt.default - Undetermined - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com - Undetermined - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\baseTheme@tomtom.com - Emulator - %ProfilePath%\extensions\Navcore.8.562.438269@tomtom.com AppDir: C:\Program Files (x86)\Mozilla Firefox - Belgium eID - %AppDir%\extensions\belgiumeid@eid.belgium.be - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\marcwoutes\AppData\Roaming\Mozilla\Firefox\Profiles\olx5sbmp.default 9860727E477F17B88E39AF8B69B0407A - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_246.dll - Shockwave Flash F3B0E300AFC94E1A775A2D935A7D384F - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll - Shockwave for Director / Shockwave for Director 5E186625C3E195C1D28A0C1E6E8DEED8 - C:\Users\marcwoutes\AppData\Roaming\ProtectDisc\License Helper v2\NPPDLicenseHelper.dll - Protect Disc License Acquisition Plugin AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation ==== Chromium Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions flliilndjeohchalpbbcdekjklbdgfkk - No path found[] iikflkcanblccfahdhdonehdalibjnif - No path found[] mkfokfffehpeedafpekjeddnmnjhmcmk - C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine\21.6.0.32\Exts\Chrome.crx[20/09/2014 09:52] pcbfjofdecmhhgjdgcdjdiofnmjkjpkd - C:\Users\marcwoutes\AppData\Local\CRE\pcbfjofdecmhhgjdgcdjdiofnmjkjpkd.crx[] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions pcbfjofdecmhhgjdgcdjdiofnmjkjpkd - No path found[] Google Wallet - marcwoutes\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda ==== Chromium Fix ====================== C:\Users\marcwoutes\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage deleted successfully C:\Users\marcwoutes\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage-journal deleted successfully C:\Users\marcwoutes\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage deleted successfully C:\Users\marcwoutes\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal deleted successfully C:\Users\marcwoutes\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pcbfjofdecmhhgjdgcdjdiofnmjkjpkd deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" "Default_Page_URL"="http://www.google.com" "Search Page"="http://istart.webssearches.com/web/?type=ds&ts=1417265330&from=exp&uid=ST3500630AS_5QG2SRV9&q={searchTerms}" "Search Bar"="http://www.google.com" "Default_Search_URL"="http://istart.webssearches.com/web/?type=ds&ts=1417265330&from=exp&uid=ST3500630AS_5QG2SRV9&q={searchTerms}" "Use Search Asst"="yes" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" "Default_Page_URL"="http://www.google.com" "Default_Search_URL"="http://istart.webssearches.com/web/?type=ds&ts=1417265330&from=exp&uid=ST3500630AS_5QG2SRV9&q={searchTerms}" "Search Page"="http://istart.webssearches.com/web/?type=ds&ts=1417265330&from=exp&uid=ST3500630AS_5QG2SRV9&q={searchTerms}" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" "Default_Page_URL"="http://www.google.com" "Default_Search_URL"="http://istart.webssearches.com/web/?type=ds&ts=1417265330&from=exp&uid=ST3500630AS_5QG2SRV9&q={searchTerms}" "Search Page"="http://istart.webssearches.com/web/?type=ds&ts=1417265330&from=exp&uid=ST3500630AS_5QG2SRV9&q={searchTerms}" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl] "Default"="http://www.google.com" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl] "Default"="http://www.google.com" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "Default"="http://www.google.com" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://www.google.com" "SearchAssistant"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Start Page"="http://www.google.com" "Use Search Asst"="no" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0191A6B0-1154-4C22-9182-23A95BBE92D9}" {0191A6B0-1154-4C22-9182-23A95BBE92D9} Google Url="http://www.google.com/search?q={searchTerms}" ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\65F8E9A2B13CBBD4FB2EF0E48C913255 deleted successfully HKEY_LOCAL_MACHINE\Software\Policies\Google deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pcbfjofdecmhhgjdgcdjdiofnmjkjpkd deleted successfully HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\pcbfjofdecmhhgjdgcdjdiofnmjkjpkd deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{2A9E8F56-C31B-4DBB-BFE2-0F4EC8192355} deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AnyDVD deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AnyDVD1 deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\beid deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DVDFab Passkey deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Firefox deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMusic FastStart deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype deleted successfully ==== HijackThis Entries ====================== R3 - Default URLSearchHook is missing F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe O1 - Hosts: ::1 localhost O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine\21.6.0.32\coIEPlg.dll O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine\21.6.0.32\IPS\IPSBHO.DLL O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file) O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe O4 - HKLM\..\Run: [OsdMaestro] c:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD64.exe O4 - HKLM\..\Run: [BePCSC] C:\Program Files (x86)\EmvSmartCardReader\BePCSC.exe O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE O4 - HKCU\..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [MobileDocuments] C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe O4 - HKCU\..\Run: [AirVideoServerHD] C:\Program Files (x86)\AirVideoServer HD\AirVideoServerStarter.exe O4 - HKCU\..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe O4 - HKCU\..\Run: [AdobeUpdate] C:\TEMP\explorer.exe O4 - HKCU\..\Run: [DVDFab Passkey] "C:\Program Files (x86)\DVDFab Passkey\DVDFabPasskey.exe" O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE') O4 - Global Startup: Service Manager.lnk = C:\Program Files (x86)\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000 O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - Trusted Zone: http://*.hola.org O15 - Trusted Zone: http://www.runaware.com O16 - DPF: {28B66320-9687-4B13-8757-36F901887AB5} - http://foto.hema.be/ips-opdata/layout/hema/objects/canvasx.cab O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.0.cab O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://floridakeysmedia.tv/axiscam/Codebase/AxisCamControl.ocx O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O16 - DPF: {DB28CF23-0083-40B5-BF63-69925D672385} (CNeroSerialChecker Object) - http://www.nero.com/doc/NeroVersionChecker.cab O16 - DPF: {DC6FEBC5-0A2D-458A-A01B-5DB15EEC4305} (IlosoftImageUploadCtl Class) - http://webc.radio-annick.be/auth/controls/IlosoftImageUpload.dll O16 - DPF: {F8E691A0-C92E-4E42-9CDA-62FC07A9483B} (nvUnifiedControl Control) - http://www.thaicam.com/nvUnifiedControl.ocx O17 - HKLM\System\CCS\Services\Tcpip\..\{696038D2-D174-4F41-9876-25FAE94D0346}: NameServer = 216.87.84.209,216.87.84.211 O17 - HKLM\System\CS1\Services\Tcpip\..\{696038D2-D174-4F41-9876-25FAE94D0346}: NameServer = 216.87.84.209,216.87.84.211 O17 - HKLM\System\CS2\Services\Tcpip\..\{696038D2-D174-4F41-9876-25FAE94D0346}: NameServer = 216.87.84.209,216.87.84.211 O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - (no file) O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll O23 - Service: Adobe Active File Monitor V8 (AdobeActiveFileMonitor8.0) - Adobe Systems Incorporated - C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing) O23 - Service: EPSON V5 Service4(01) (EPSON_EB_RPCV4_01) - SEIKO EPSON CORPORATION - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40STB.EXE O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) - MAGIX AG - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) - Firebird Project - C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe O23 - Service: Firebird Server - DefaultInstance (FirebirdServerDefaultInstance) - Firebird Project - C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\My HP Game Console\GameConsoleService.exe O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe O23 - Service: HP Chasis Button Service (HPBtnSrv) - Unknown owner - c:\hp\HPEZBTN\HPBtnSrv.exe O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (X86)\Intel\Intel Matrix Storage Manager\Iaantmon.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: YAC Service (iSafeService) - Elex do Brasil Participações Ltda - C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine\21.6.0.32\NIS.exe O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: PostgreSQL Database Server (pgsql-8.0) - PostgreSQL Global Development Group - C:\Program Files (x86)\PostgreSQL\8.0\bin\pg_ctl.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: SpyHunter 4 Service - Enigma Software Group USA, LLC. - C:\PROGRA~2\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O23 - Service: Symantec RemoteAssist - Symantec, Inc. - C:\Program Files (x86)\Common Files\Symantec Shared\Support Controls\ssrc.exe O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: UPnPService - Magix AG - C:\Program Files (x86)\Common Files\MAGIX Shared\UPnPService\UPnPService.exe O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\marcwoutes\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\marcwoutes\AppData\Local\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\userpostgres35\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\marcwoutes\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== C:\Users\marcwoutes\AppData\Local\Mozilla\Firefox\Profiles\olx5sbmp.default\cache2 emptied successfully ==== Empty Chrome Cache ====================== No Chrome Cache found ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=4197 folders=609 1566495037 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\marcwoutes\AppData\Local\Temp will be emptied at reboot C:\Users\userpostgres35\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\MARCWO~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\marcwoutes\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted "C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted "C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted ==== EOF on zo 21/12/2014 at 14:54:23,86 ======================