Zoek.exe v5.0.0.0 Updated 04-May-2015 Tool run by startklaar on vr 14-08-2015 at 12:34:05,06. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\startklaar\Downloads\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2014-12-20-201150.log 68543 bytes ==== Empty Folders Check ====================== C:\Program Files\Google deleted successfully C:\Program Files\PDFCreator deleted successfully C:\Users\Margriet\AppData\Local\VirtualStore deleted successfully C:\Users\startklaar\AppData\Local\Downloaded Installations deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-2464016002-4038100577-3986015274-1000\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully HKEY_USERS\S-1-5-21-2464016002-4038100577-3986015274-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully HKEY_USERS\S-1-5-21-2464016002-4038100577-3986015274-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4169044D-6BA4-4661-B7D6-E29274F1F458} deleted successfully HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4169044D-6BA4-4661-B7D6-E29274F1F458} deleted successfully HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4169044D-6BA4-4661-B7D6-E29274F1F458} deleted successfully HKEY_USERS\S-1-5-21-2464016002-4038100577-3986015274-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4169044D-6BA4-4661-B7D6-E29274F1F458} deleted successfully HKEY_USERS\S-1-5-21-2464016002-4038100577-3986015274-1000\Software\Classes\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4169044D-6BA4-4661-B7D6-E29274F1F458} deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4169044D-6BA4-4661-B7D6-E29274F1F458} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{4169044D-6BA4-4661-B7D6-E29274F1F458} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TuneUp.UtilitiesSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\TuneUp.UtilitiesSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ReimageRealTimeProtector deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\ReimageRealTimeProtector deleted successfully ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 Options\hwsetup.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mediacontroller.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\smartfacevsetting.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tacsprop.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tcrdmain.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tfcconf.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tintouch.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tosdifileassociation.exe] Options\tosdimonitor.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\toshibaregistration.exe] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\trmclcher.exe] ==== Deleting Files \ Folders ====================== C:\PROGRA~2\AVG Web TuneUp deleted C:\Program Files (x86)\AVG\AVG PC TuneUp deleted C:\Program Files\Reimage deleted C:\Users\startklaar\AppData\Roaming\ParetoLogic deleted C:\Users\startklaar\AppData\Roaming\DriverCure deleted C:\PROGRA~3\AVG Security Toolbar deleted C:\PROGRA~3\Reimage Protector deleted C:\PROGRA~3\ParetoLogic deleted C:\Users\Margriet\AppData\LocalLow\AVG Web TuneUp deleted C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\AVG Web TuneUp deleted C:\Windows\Reimage.ini deleted C:\windows\SysNative\tasks\ReimageUpdater deleted C:\Windows\SysNative\config\systemprofile\Searches deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2015-08-12 13:38:57 B32189BDFF6E577A92BAA61AD49264E6 193536 ----a-w- C:\Windows\notepad.exe ====== C:\Users\STARTK~1\AppData\Local\Temp ==== 2015-08-14 10:30:31 E6794640B6725B5606EEB67D53F03D14 71168 ----a-w- C:\Users\startklaar\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp6alovw.dll ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2015-08-13 09:34:49 4FA66A573E9A45D05AD5A25B1E76A35D 103120 ----a-w- C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-08-12 13:41:38 DC18FFFF3175376ABD38E6D48309F7F9 3934656 ----a-w- C:\Windows\SysWOW64\ntoskrnl.exe 2015-08-12 13:41:37 5792E7C663FAA39335D4F787B9499490 1311768 ----a-w- C:\Windows\SysWOW64\ntdll.dll 2015-08-12 13:41:36 6C95D6264810F816E92780E7DB81F7B1 3989952 ----a-w- C:\Windows\SysWOW64\ntkrnlpa.exe 2015-08-12 13:41:35 A38E10B4143A19F32D64517B6A1FCB98 1114112 ----a-w- C:\Windows\SysWOW64\kernel32.dll 2015-08-12 13:41:34 FC85BC746818EE9B5181EA0B1C882778 552960 ----a-w- C:\Windows\SysWOW64\kerberos.dll 2015-08-12 13:41:33 FE748FEAA8A5A7677DA1C2C6CE405ADE 248832 ----a-w- C:\Windows\SysWOW64\schannel.dll 2015-08-12 13:41:33 15400F593C9023CDC1D144C30BBDA47A 259584 ----a-w- C:\Windows\SysWOW64\msv1_0.dll 2015-08-12 13:41:32 E70054ADA6AAB84659AB20D137747ACF 43008 ----a-w- C:\Windows\SysWOW64\srclient.dll 2015-08-12 13:41:32 A2C5FAE51BC43B29525AAA5BF0B31259 50176 ----a-w- C:\Windows\SysWOW64\auditpol.exe 2015-08-12 13:41:32 75706C0F199BC7658A98BEE452964587 36864 ----a-w- C:\Windows\SysWOW64\cryptbase.dll 2015-08-12 13:41:32 650B603F5C040727788F19AD0B8D09BC 221184 ----a-w- C:\Windows\SysWOW64\ncrypt.dll 2015-08-12 13:41:32 51C161D5638465251857B2207BD535CB 172032 ----a-w- C:\Windows\SysWOW64\wdigest.dll 2015-08-12 13:41:32 4C2D57F3DDBC07D3CC59160CDC400AC0 65536 ----a-w- C:\Windows\SysWOW64\TSpkg.dll 2015-08-12 13:41:32 2506A1507B7CBFE069BC0289349786ED 14336 ----a-w- C:\Windows\SysWOW64\ntvdm64.dll 2015-08-12 13:41:32 0A4CE9AAA18F9DE7414C1E7BE572F5FA 274944 ----a-w- C:\Windows\SysWOW64\KernelBase.dll 2015-08-12 13:41:32 086A1544FACAA91CD6F95FC4CDE16913 25600 ----a-w- C:\Windows\SysWOW64\setup16.exe 2015-08-12 13:41:31 8A82C9C4A205266DC22BB1C8F2E1AB2D 17408 ----a-w- C:\Windows\SysWOW64\credssp.dll 2015-08-12 13:41:31 3982911B4C4F42B156D7347C1543CF9F 22016 ----a-w- C:\Windows\SysWOW64\secur32.dll 2015-08-12 13:41:31 37CE74C8094AD7D1D3B79A8D2849803E 665088 ----a-w- C:\Windows\SysWOW64\rpcrt4.dll 2015-08-12 13:41:30 DD8BCBBC1C383F38F284E25CE39C136C 96768 ----a-w- C:\Windows\SysWOW64\sspicli.dll 2015-08-12 13:41:30 9E94CD7C6CBDC2C9B6A87AD9D5E4EF80 5120 ----a-w- C:\Windows\SysWOW64\wow32.dll 2015-08-12 13:41:27 C899E7E3A4F42B802DA1E97F9908BD26 6656 ----a-w- C:\Windows\SysWOW64\apisetschema.dll 2015-08-12 13:41:27 832494A551C2B2CCB616B2BE13A696A1 7680 ----a-w- C:\Windows\SysWOW64\instnm.exe 2015-08-12 13:41:26 D5F9C627C221A3B4B6944EDBE90D642C 60416 ----a-w- C:\Windows\SysWOW64\msobjs.dll 2015-08-12 13:41:26 1EA1328207A915C9EB10AA1D102C0B52 686080 ----a-w- C:\Windows\SysWOW64\adtschema.dll 2015-08-12 13:41:26 03A179385219FD37CDFB3E603F912CA7 2048 ----a-w- C:\Windows\SysWOW64\user.exe 2015-08-12 13:41:26 008BDC16E15B3B6EFB6E8B6684022F36 146432 ----a-w- C:\Windows\SysWOW64\msaudite.dll 2015-08-12 13:39:40 C989240A97D4E0B4354679CCF7E66389 30720 ----a-w- C:\Windows\SysWOW64\iernonce.dll 2015-08-12 13:39:40 BDC048308B74B2146495BBB8D4CD4974 47616 ----a-w- C:\Windows\SysWOW64\ieetwproxystub.dll 2015-08-12 13:39:39 FCDCEB29CD1129C6C86AD9700A7E5BD1 76288 ----a-w- C:\Windows\SysWOW64\mshtmled.dll 2015-08-12 13:39:39 A37FEDFC0BC9E96AD3DFFF41D5805F04 2279424 ----a-w- C:\Windows\SysWOW64\iertutil.dll 2015-08-12 13:39:38 C929BFB3FD2460B570553AE7344640BC 60416 ----a-w- C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-08-12 13:39:38 BD3E3A13423C40E8CF4BE531EE68BAF0 1310720 ----a-w- C:\Windows\SysWOW64\urlmon.dll 2015-08-12 13:39:38 67DA0EE95026FB2D3577F664F2187F98 342736 ----a-w- C:\Windows\SysWOW64\iedkcs32.dll 2015-08-12 13:39:38 358D91656E54B03B8FFE3CF4D535A6C8 504320 ----a-w- C:\Windows\SysWOW64\vbscript.dll 2015-08-12 13:39:37 C98AF04E9FC94DBF57B29A9891597664 689152 ----a-w- C:\Windows\SysWOW64\msfeeds.dll 2015-08-12 13:39:37 BAAAC903BF7F9CA5F1129C972AEDE6BD 19870208 ----a-w- C:\Windows\SysWOW64\mshtml.dll 2015-08-12 13:39:37 32664FC06B115923C449DC22D47CD8A6 285696 ----a-w- C:\Windows\SysWOW64\dxtrans.dll 2015-08-12 13:39:36 E3762A30F1EC29C30AC85CC2B8CAA3F3 2724864 ----a-w- C:\Windows\SysWOW64\mshtml.tlb 2015-08-12 13:39:36 D1D3DB57C68A2A62E03DD973F53CEA18 2052608 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl 2015-08-12 13:39:36 728188684708FEF4F18E2CAB46C54DBB 710144 ----a-w- C:\Windows\SysWOW64\ieapfltr.dll 2015-08-12 13:39:36 0E9529DC8BA5AD3C06B99F115D0D804D 62464 ----a-w- C:\Windows\SysWOW64\iesetup.dll 2015-08-12 13:39:35 FB1B7D2B2D500E067B96C56EE0B4DDAD 664064 ----a-w- C:\Windows\SysWOW64\jscript.dll 2015-08-12 13:39:35 D7FDD5E8B88ADE9107772B4C879FDF94 115712 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe 2015-08-12 13:39:35 8B6B89D3FEDB34CA38055B82A790545F 620032 ----a-w- C:\Windows\SysWOW64\jscript9diag.dll 2015-08-12 13:39:35 1CB9D50EE52BED7DEBF394CEA8A971A5 47104 ----a-w- C:\Windows\SysWOW64\jsproxy.dll 2015-08-12 13:39:34 793F71F873D106A611DB79741327038C 418304 ----a-w- C:\Windows\SysWOW64\dxtmsft.dll 2015-08-12 13:39:34 3E168B5E5FEE3D09C2D4E97861B5F4B3 479232 ----a-w- C:\Windows\SysWOW64\ieui.dll 2015-08-12 13:39:34 3C74EA1EC43A694060F09B7D754446C6 12856832 ----a-w- C:\Windows\SysWOW64\ieframe.dll 2015-08-12 13:39:32 ECF459774AE6A273F0F59D7C072DB3C4 64000 ----a-w- C:\Windows\SysWOW64\MshtmlDac.dll 2015-08-12 13:39:32 AB6A3699E478DEF677D48B126B223C54 4520448 ----a-w- C:\Windows\SysWOW64\jscript9.dll 2015-08-12 13:39:32 53DE75BD2C7A3EA29770147EAC8A8D5A 1155072 ----a-w- C:\Windows\SysWOW64\mshtmlmedia.dll 2015-08-12 13:39:32 4D036506C8359185FC52EB49DB891743 341504 ----a-w- C:\Windows\SysWOW64\html.iec 2015-08-12 13:39:32 445DB8651F05684F8259D4054A15BC50 168960 ----a-w- C:\Windows\SysWOW64\msrating.dll 2015-08-12 13:39:32 0AC8CD2138FD10C4A0E2FF08F892359C 1951232 ----a-w- C:\Windows\SysWOW64\wininet.dll 2015-08-12 13:39:20 6B003E11CDBDA3B45A3D16E5A9D3F73B 82432 ----a-w- C:\Windows\SysWOW64\davclnt.dll 2015-08-12 13:39:20 55C70654420DBF429604FD567E6F3CD3 206848 ----a-w- C:\Windows\SysWOW64\WebClnt.dll 2015-08-12 13:39:17 EA1BE72A8CD5CEA7B6E6649D1FD78BA1 1241088 ----a-w- C:\Windows\SysWOW64\msxml3.dll 2015-08-12 13:39:17 B6F9E4CDA3069B03F654B650A5379E60 2048 ----a-w- C:\Windows\SysWOW64\msxml3r.dll 2015-08-12 13:39:17 127EE7F36CEA127ECCA55BECBC230398 2048 ----a-w- C:\Windows\SysWOW64\msxml6r.dll 2015-08-12 13:39:17 121E2E789BE080EB86DA71F95B611DF2 1390592 ----a-w- C:\Windows\SysWOW64\msxml6.dll 2015-08-12 13:39:14 CE21524C53E9671A7108B28FB9B4E474 1251328 ----a-w- C:\Windows\SysWOW64\DWrite.dll 2015-08-12 13:39:12 680D463893C9846CC6A1DA6012DD0FE5 299520 ----a-w- C:\Windows\SysWOW64\atmfd.dll 2015-08-12 13:39:11 965CFC7687F0D188F215DC142FC8F6A1 1987584 ----a-w- C:\Windows\SysWOW64\d3d10warp.dll 2015-08-12 13:39:11 400C20D6967A83EA69D6953EBB8D3FA3 34304 ----a-w- C:\Windows\SysWOW64\atmlib.dll 2015-08-12 13:39:10 9E2F12744DD9810961031C56FBB691F4 25600 ----a-w- C:\Windows\SysWOW64\lpk.dll 2015-08-12 13:39:10 7983F3481E89B96074FAE9AFCC24079C 70656 ----a-w- C:\Windows\SysWOW64\fontsub.dll 2015-08-12 13:39:10 520AEC6C64AF2CFD74B469DB98611D4A 10240 ----a-w- C:\Windows\SysWOW64\dciman32.dll 2015-08-12 13:38:57 A4F6DF0E33E644E802C8798ED94D80EA 179712 ----a-w- C:\Windows\SysWOW64\notepad.exe 2015-08-12 13:38:55 44886B1E7B230F39BF3789E0EC748765 4922368 ----a-w- C:\Windows\SysWOW64\mstscax.dll 2015-08-12 13:38:55 11741998816D58791B62A6BB3DDA461D 269824 ----a-w- C:\Windows\SysWOW64\aaclient.dll 2015-08-12 13:38:54 C49240FA601351BBFB1EE30906EA5B29 37376 ----a-w- C:\Windows\SysWOW64\tsgqec.dll 2015-08-12 13:35:46 4478348E3942AD9EED9AB263AFE7CD83 12875776 ----a-w- C:\Windows\SysWOW64\shell32.dll 2015-08-12 13:35:42 FBECE2B32A3658AEB609DC5A1021100F 30208 ----a-w- C:\Windows\SysWOW64\wups.dll 2015-08-12 13:35:42 E96D0EEAAE0446F664EE15703BB32A34 93184 ----a-w- C:\Windows\SysWOW64\wudriver.dll 2015-08-12 13:35:42 A02515B58D318F427FBA64437FB0EDDF 566784 ----a-w- C:\Windows\SysWOW64\wuapi.dll 2015-08-12 13:35:42 742AC3EF3C7C30F0EBF628D6D03BB399 34816 ----a-w- C:\Windows\SysWOW64\wuapp.exe 2015-08-12 13:35:42 4447FD20A6B48D05E8392B6E18A194A8 173056 ----a-w- C:\Windows\SysWOW64\wuwebv.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== 2015-08-13 09:34:49 52ED64BF80D360B0EA2B6E5F1504CDFF 124624 ----a-w- C:\Windows\Sysnative\PresentationCFFRasterizerNative_v0300.dll 2015-08-12 13:42:07 DD91D9EAAA415B26EB30EC9CF768BF03 743424 ----a-w- C:\Windows\Sysnative\generaltel.dll 2015-08-12 13:42:07 400E0B72AEB663360E1A3AB33DDD6A87 1116672 ----a-w- C:\Windows\Sysnative\appraiser.dll 2015-08-12 13:42:07 36DA2E5BD218764CB48B8A13CF0B091F 437760 ----a-w- C:\Windows\Sysnative\devinv.dll 2015-08-12 13:42:06 EEAFBC5A31C68438AF67531C52410A3D 227328 ----a-w- C:\Windows\Sysnative\aepdu.dll 2015-08-12 13:42:06 EC9178A8037D3EF938F38B6793EAF990 774656 ----a-w- C:\Windows\Sysnative\invagent.dll 2015-08-12 13:42:06 E99A30142A108B11381C47B0A30283B0 17344 ----a-w- C:\Windows\Sysnative\CompatTelRunner.exe 2015-08-12 13:42:06 A3D0A038A6C03E368E80CDDEFC473140 1148416 ----a-w- C:\Windows\Sysnative\aeinv.dll 2015-08-12 13:42:06 4FEB4397B066DEEDDDED0D1CEDA1C887 69120 ----a-w- C:\Windows\Sysnative\acmigration.dll 2015-08-12 13:41:39 B9A07A9807A4BAC067498CC8D77F3D4D 5568960 ----a-w- C:\Windows\Sysnative\ntoskrnl.exe 2015-08-12 13:41:39 3F63C62D9183235792A46C0B66EAAD04 1730496 ----a-w- C:\Windows\Sysnative\ntdll.dll 2015-08-12 13:41:38 72585BDAF2EC5237EBD71D540657D6A2 1163264 ----a-w- C:\Windows\Sysnative\kernel32.dll 2015-08-12 13:41:37 2E730941CC5BF6200A4F56D1E9C24AAD 1743360 ----a-w- C:\Windows\Sysnative\sysmain.dll 2015-08-12 13:41:36 AF249D7461E228EBBD1C7E98D99B3B12 1461760 ----a-w- C:\Windows\Sysnative\lsasrv.dll 2015-08-12 13:41:35 DAF50D708FF79AC4AE0A1C256A9BEE33 243712 ----a-w- C:\Windows\Sysnative\wow64.dll 2015-08-12 13:41:35 B892459EC8441FFB9E045CCE73862868 424960 ----a-w- C:\Windows\Sysnative\KernelBase.dll 2015-08-12 13:41:35 99D1FAA337A4EF3C33E256C79DC708F8 296960 ----a-w- C:\Windows\Sysnative\rstrui.exe 2015-08-12 13:41:34 E80CA72FA43BF258E72C408CEF9839BE 215040 ----a-w- C:\Windows\Sysnative\winsrv.dll 2015-08-12 13:41:34 A0502BF52867F00FD9C67D1C355F6C91 1216512 ----a-w- C:\Windows\Sysnative\rpcrt4.dll 2015-08-12 13:41:34 6DC249682EA708DA1C4B5CBD9C016F21 729088 ----a-w- C:\Windows\Sysnative\kerberos.dll 2015-08-12 13:41:34 35766EDA62E3FA02B897182219EEDF8A 503808 ----a-w- C:\Windows\Sysnative\srcore.dll 2015-08-12 13:41:33 D6431591DEED9D47E9266890FB2BFBBC 210944 ----a-w- C:\Windows\Sysnative\wdigest.dll 2015-08-12 13:41:33 6518A42BE5B157EF3DC3ED4F8BE4CA46 315392 ----a-w- C:\Windows\Sysnative\msv1_0.dll 2015-08-12 13:41:33 53632BBEFB00BDA1DCFC9E155E0C6B53 43520 ----a-w- C:\Windows\Sysnative\csrsrv.dll 2015-08-12 13:41:33 46041293D887F4D89979874015F26B30 342016 ----a-w- C:\Windows\Sysnative\schannel.dll 2015-08-12 13:41:33 354D59027DE2BFB3A63E8E7DBAF081D8 338432 ----a-w- C:\Windows\Sysnative\conhost.exe 2015-08-12 13:41:32 EBB9C6638109A3486EBA51D28837495C 64000 ----a-w- C:\Windows\Sysnative\auditpol.exe 2015-08-12 13:41:32 E6D24098FDB4A9C29007696B79389DB9 16384 ----a-w- C:\Windows\Sysnative\ntvdm64.dll 2015-08-12 13:41:32 E615E2FF68D64B52CEFDCD24332D61F5 136192 ----a-w- C:\Windows\Sysnative\sspicli.dll 2015-08-12 13:41:32 98AFEF63F857FA67FA1BDD3969F40366 50176 ----a-w- C:\Windows\Sysnative\srclient.dll 2015-08-12 13:41:32 98432481E11B9EDB54A2B069E465D1CB 44032 ----a-w- C:\Windows\Sysnative\cryptbase.dll 2015-08-12 13:41:32 7ADF0CB99051D1E0DB7F65DA1D8099F1 11264 ----a-w- C:\Windows\Sysnative\msmmsp.dll 2015-08-12 13:41:32 7245C8C33397B90E376B9BB54E2A96C8 309760 ----a-w- C:\Windows\Sysnative\ncrypt.dll 2015-08-12 13:41:32 61024C6DE4EEBC6BCC92422F0AE3CE94 86528 ----a-w- C:\Windows\Sysnative\TSpkg.dll 2015-08-12 13:41:32 55C48343919A72B0C8F5C42E4C798FCA 112640 ----a-w- C:\Windows\Sysnative\smss.exe 2015-08-12 13:41:32 1BE3823E3206785F2BA8F26B2FAD3FBE 28160 ----a-w- C:\Windows\Sysnative\secur32.dll 2015-08-12 13:41:32 0D48E93C6BE3143C0198CB252B992D16 31232 ----a-w- C:\Windows\Sysnative\lsass.exe 2015-08-12 13:41:31 BD6BDB13F5D8FA13166CF8B3CBD6976A 13312 ----a-w- C:\Windows\Sysnative\wow64cpu.dll 2015-08-12 13:41:31 77E88D36E88FDC825DCCBF269F81ED3E 362496 ----a-w- C:\Windows\Sysnative\wow64win.dll 2015-08-12 13:41:31 219DF0B319E46EA2601D90101C4C330A 29184 ----a-w- C:\Windows\Sysnative\sspisrv.dll 2015-08-12 13:41:31 0797A4FDBA2766B88FB563BBB7646FCE 22016 ----a-w- C:\Windows\Sysnative\credssp.dll 2015-08-12 13:41:27 BC48CD24D35FA0E18D66A97E502BFAE2 6656 ----a-w- C:\Windows\Sysnative\apisetschema.dll 2015-08-12 13:41:26 FFAD95FF2FE4B14F91E437E03D1F68BA 146432 ----a-w- C:\Windows\Sysnative\msaudite.dll 2015-08-12 13:41:26 46CB68A774B67187B722FA1156672A23 60416 ----a-w- C:\Windows\Sysnative\msobjs.dll 2015-08-12 13:41:26 25AADF664F576D1C264F8AC27B4838DF 686080 ----a-w- C:\Windows\Sysnative\adtschema.dll 2015-08-12 13:40:35 168EA9CD9BD6056BB6F60B57D5304BBE 52736 ----a-w- C:\Windows\Sysnative\basesrv.dll 2015-08-12 13:39:40 92E60B0F2E864336737091554370E658 114688 ----a-w- C:\Windows\Sysnative\ieetwcollector.exe 2015-08-12 13:39:40 4E37600CED71FFCE7EEBB129A90B3431 2885632 ----a-w- C:\Windows\Sysnative\iertutil.dll 2015-08-12 13:39:39 ACE8BB2BECFEC66A738EE3DDDFF0CA07 720384 ----a-w- C:\Windows\Sysnative\ie4uinit.exe 2015-08-12 13:39:39 890E3A6A6DB6D15EB242460D2353D39C 48640 ----a-w- C:\Windows\Sysnative\ieetwproxystub.dll 2015-08-12 13:39:39 2319CA59AF0AA295EC254528DD558E37 2724864 ----a-w- C:\Windows\Sysnative\mshtml.tlb 2015-08-12 13:39:38 D0A52A4F631172E2AC35A84CCDF28FA4 34304 ----a-w- C:\Windows\Sysnative\iernonce.dll 2015-08-12 13:39:37 B2ADFD1217625A68A484E9838C608F51 77824 ----a-w- C:\Windows\Sysnative\JavaScriptCollectionAgent.dll 2015-08-12 13:39:36 9CAC3401B481383936A9D66EF1B80307 389840 ----a-w- C:\Windows\Sysnative\iedkcs32.dll 2015-08-12 13:39:36 158C1D034080B9DC0A9A2CD9E8DB0199 1545728 ----a-w- C:\Windows\Sysnative\urlmon.dll 2015-08-12 13:39:35 B8322A1FCD5686F2D97B6BCA1862C9B8 4096 ----a-w- C:\Windows\Sysnative\ieetwcollectorres.dll 2015-08-12 13:39:35 427D40AF9BCAE05125F3513E770706E1 968704 ----a-w- C:\Windows\Sysnative\MsSpellCheckingFacility.exe 2015-08-12 13:39:34 F9C6645800D1EDE9033858C60903F00C 66560 ----a-w- C:\Windows\Sysnative\iesetup.dll 2015-08-12 13:39:34 C580215DE134617942FF1740A1235CE4 800768 ----a-w- C:\Windows\Sysnative\ieapfltr.dll 2015-08-12 13:39:34 857D9F533F7F9838B68C2CEF8AB68412 316928 ----a-w- C:\Windows\Sysnative\dxtrans.dll 2015-08-12 13:39:34 3E4568FFE110FE81CA1A75BF1149153B 801280 ----a-w- C:\Windows\Sysnative\msfeeds.dll 2015-08-12 13:39:33 43AF91A40E44205272335E33B7BBA4C3 2125824 ----a-w- C:\Windows\Sysnative\inetcpl.cpl 2015-08-12 13:39:32 95C5B29740852D171CA03BAE61B670FE 144384 ----a-w- C:\Windows\Sysnative\ieUnatt.exe 2015-08-12 13:39:32 62FC1CC7DFC11B5F6A25763375F765BF 54784 ----a-w- C:\Windows\Sysnative\jsproxy.dll 2015-08-12 13:39:32 39E11AA344781CD5773BE9E2472C84E4 584192 ----a-w- C:\Windows\Sysnative\vbscript.dll 2015-08-12 13:39:31 E892688BB1C8B0B485C27436F2B963CF 615936 ----a-w- C:\Windows\Sysnative\ieui.dll 2015-08-12 13:39:31 995797E4DE4215715CA2040BB81F4594 14451200 ----a-w- C:\Windows\Sysnative\ieframe.dll 2015-08-12 13:39:31 6E3D6B8844FF524D7B27EE7FFB3EF6F5 490496 ----a-w- C:\Windows\Sysnative\dxtmsft.dll 2015-08-12 13:39:30 ECA4CCA74F61C6288734B786089765B0 814080 ----a-w- C:\Windows\Sysnative\jscript9diag.dll 2015-08-12 13:39:30 C6960223A6BAB3CF83DB09565D191844 5923328 ----a-w- C:\Windows\Sysnative\jscript9.dll 2015-08-12 13:39:30 AD31A019C2195C75B26DF3337EE8F9FE 92160 ----a-w- C:\Windows\Sysnative\mshtmled.dll 2015-08-12 13:39:30 9C7B3D3A9A945AED5CC97C6535C9D857 816640 ----a-w- C:\Windows\Sysnative\jscript.dll 2015-08-12 13:39:30 56E1A08F9CDF246CCAB75EA32B87B2DA 1359360 ----a-w- C:\Windows\Sysnative\mshtmlmedia.dll 2015-08-12 13:39:29 C555B5C8142844DED9E3BD94E6313000 2427904 ----a-w- C:\Windows\Sysnative\wininet.dll 2015-08-12 13:39:29 77A4FEE4031F90DBB5C16F6A8FC855BC 417792 ----a-w- C:\Windows\Sysnative\html.iec 2015-08-12 13:39:28 E6CF1778145272A83E58C4AB66358AF3 25192448 ----a-w- C:\Windows\Sysnative\mshtml.dll 2015-08-12 13:39:28 2D9A67695E80C889FAD5C92651D5E641 88064 ----a-w- C:\Windows\Sysnative\MshtmlDac.dll 2015-08-12 13:39:28 080E99BE131C2433FD7E6813F77F08FD 199680 ----a-w- C:\Windows\Sysnative\msrating.dll 2015-08-12 13:39:20 4E89FC53493704BF835F0300DC201C34 260096 ----a-w- C:\Windows\Sysnative\WebClnt.dll 2015-08-12 13:39:20 16FD9A0F6EDEF091A72D7D3B77574008 102912 ----a-w- C:\Windows\Sysnative\davclnt.dll 2015-08-12 13:39:18 32A74A5BC52EF569BC65252AF6F28578 1887232 ----a-w- C:\Windows\Sysnative\msxml3.dll 2015-08-12 13:39:17 99119778A8E44F077E46B0870B8DD6A8 2048 ----a-w- C:\Windows\Sysnative\msxml3r.dll 2015-08-12 13:39:17 40EA064E91C6A63FDBC83259FC5BD4F8 2004992 ----a-w- C:\Windows\Sysnative\msxml6.dll 2015-08-12 13:39:17 22DC6C17443DECC9EBE258220906DCAC 2048 ----a-w- C:\Windows\Sysnative\msxml6r.dll 2015-08-12 13:39:14 DB94C47BD7F2AD9C58DEC46026D5FD08 1648128 ----a-w- C:\Windows\Sysnative\DWrite.dll 2015-08-12 13:39:14 D5A775990A7C202A037378FDBCDB6141 1180160 ----a-w- C:\Windows\Sysnative\FntCache.dll 2015-08-12 13:39:13 F97A0CFC495C92FF2F6A03933157D115 3208192 ----a-w- C:\Windows\Sysnative\win32k.sys 2015-08-12 13:39:13 F8C0AF84AB602D395FFC89BC7CF3CE18 372736 ----a-w- C:\Windows\Sysnative\atmfd.dll 2015-08-12 13:39:11 D4FB2E00F49711C9DD3E2C2646D7C767 2565120 ----a-w- C:\Windows\Sysnative\d3d10warp.dll 2015-08-12 13:39:11 15113A4CD09E0F06894495FCE8BF2BF8 46080 ----a-w- C:\Windows\Sysnative\atmlib.dll 2015-08-12 13:39:11 0365E7AED8A38CB5FFF1DFB4458C0593 41984 ----a-w- C:\Windows\Sysnative\lpk.dll 2015-08-12 13:39:10 B45F7BC413F905ECA9DE679E3FF09472 100864 ----a-w- C:\Windows\Sysnative\fontsub.dll 2015-08-12 13:39:10 52DE81006E192EAA09B3BDE763D80BC8 14336 ----a-w- C:\Windows\Sysnative\dciman32.dll 2015-08-12 13:38:57 B32189BDFF6E577A92BAA61AD49264E6 193536 ----a-w- C:\Windows\Sysnative\notepad.exe 2015-08-12 13:38:55 FCCEC2081623C9F4CF87FE596C344D3D 5779456 ----a-w- C:\Windows\Sysnative\mstscax.dll 2015-08-12 13:38:55 0EEB15058126F30607D29DAEFA2BE55B 322560 ----a-w- C:\Windows\Sysnative\aaclient.dll 2015-08-12 13:38:54 8E43FDE7430E7F9B25D0556CA33013FC 44032 ----a-w- C:\Windows\Sysnative\tsgqec.dll 2015-08-12 13:35:48 733BC760342A816D3B5A8CE2C7EF1D92 14177280 ----a-w- C:\Windows\Sysnative\shell32.dll 2015-08-12 13:35:42 DE1B5089D48291BD81F6A5CCFB832E53 36864 ----a-w- C:\Windows\Sysnative\wups.dll 2015-08-12 13:35:42 D1E38F98DDA581BF70B6A89882E6E6F6 12288 ----a-w- C:\Windows\Sysnative\wu.upgrade.ps.dll 2015-08-12 13:35:42 C980982C7F8ECB462C52CBEC759CBBDC 3154944 ----a-w- C:\Windows\Sysnative\wucltux.dll 2015-08-12 13:35:42 C0DA341908CC3A0209A63FBD4B521C2A 91136 ----a-w- C:\Windows\Sysnative\WinSetupUI.dll 2015-08-12 13:35:42 B0FBE5C8E18EB3BD677846DAB54037D5 696320 ----a-w- C:\Windows\Sysnative\wuapi.dll 2015-08-12 13:35:42 A6848EF3860E81A835AA4982ADBA1884 37888 ----a-w- C:\Windows\Sysnative\wups2.dll 2015-08-12 13:35:42 7CFCC5210E226AA85F2A21098FA01F29 37376 ----a-w- C:\Windows\Sysnative\wuapp.exe 2015-08-12 13:35:42 6FDC1FAD277AEF0A89B0D28F5675679C 139776 ----a-w- C:\Windows\Sysnative\wuauclt.exe 2015-08-12 13:35:42 499034D7F1F6AF49F9EE12F8822793CB 2606080 ----a-w- C:\Windows\Sysnative\wuaueng.dll 2015-08-12 13:35:42 1956D89C3E24A8388840489371B3A428 98304 ----a-w- C:\Windows\Sysnative\wudriver.dll 2015-08-12 13:35:42 0F72B73EBE4F6F86EE569598D377165E 192000 ----a-w- C:\Windows\Sysnative\wuwebv.dll 2015-08-12 13:35:22 53405CDA694982E5C6A0E9454AC1D407 493504 ----a-w- C:\Windows\Sysnative\mcupdate_GenuineIntel.dll ====== C:\Windows\Sysnative\drivers ===== 2015-08-12 13:41:36 67050452C0118BAF2883928E6FCCFE47 94656 ----a-w- C:\Windows\Sysnative\drivers\mountmgr.sys 2015-08-12 13:41:32 67A1743377EBB5D9A370A8C2086CFDCC 95680 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys 2015-08-12 13:41:32 522A1595D5701800DD41B2D472F5AAED 155584 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys 2015-08-12 13:41:31 B2081803D510DCE174992BA880EDCA70 159232 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb.sys 2015-08-12 13:41:31 552FA62B0EFECD22D8D52499324BCA4F 290816 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb10.sys 2015-08-12 13:41:30 97687971F9CB30E2633DE0F1296B9F61 129024 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb20.sys 2015-07-28 09:02:14 0CC611CDA005070B9F5A496352124EFF 312752 ----a-w- C:\Windows\Sysnative\drivers\avgidsdrivera.sys 2015-07-28 09:01:38 39B8968350B71EEF6A0E0F9C6C2D61FD 245680 ----a-w- C:\Windows\Sysnative\drivers\avgmfx64.sys ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-07-19 22:32:56 -------- d-----w- C:\Program Files\iPod 2015-07-19 22:32:55 -------- d-----w- C:\Program Files\iTunes ======= C:\PROGRA~2 ===== 2015-08-14 10:17:15 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2015-07-19 22:32:56 -------- d-----w- C:\PROGRA~2\iTunes ======= C: ===== ====== C:\Users\startklaar\AppData\Roaming ====== 2015-08-14 09:51:46 C1F77C29D97BD9724F3A1E051864D69A 194904 ----a-w- C:\Windows\serviceprofiles\Localservice\AppData\Local\FontCache3.0.0.0.dat 2015-08-11 08:26:34 -------- d-----w- C:\Users\startklaar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-07-18 20:57:12 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\CrashDumps ====== C:\Users\startklaar ====== 2015-08-14 10:15:51 -------- d-----w- C:\ProgramData\Oracle 2015-08-14 10:14:56 64E42747CB3B719A7C7F7736AD948CFE 563296 ----a-w- C:\Users\startklaar\Downloads\chromeinstall-8u51.exe 2015-08-13 18:02:54 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\startklaar\Downloads\RSITx64 (1).exe 2015-07-21 15:22:44 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud 2015-07-19 22:35:00 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes ====== C: exe-files == 2015-08-14 10:16:07 A4D1AC4078F1A819ECECC546F64907A1 0 ----a-we C:\ProgramData\Oracle\Java\javapath\java.exe 2015-08-14 10:16:07 9A474C07C5242EF2AE12FF6BF387F334 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaws.exe 2015-08-14 10:16:07 4E022C0940633A9538892CB26B65BD0D 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaw.exe 2015-08-14 10:15:58 F3D19B026E09B8150D9FF40D537C8F2A 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\rmid.exe 2015-08-14 10:15:58 EF442149A0502661D49628A66A69F33C 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\policytool.exe 2015-08-14 10:15:58 C4B3393396204E759E6EDFF92A9CAA50 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\tnameserv.exe 2015-08-14 10:15:58 8B09EF707CE0895D5478300CC2CE90DB 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\rmiregistry.exe 2015-08-14 10:15:58 8516D08420A7AB22A9B722FAF631E320 50784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssvagent.exe 2015-08-14 10:15:58 5E1561548895218973EB5C833D96BD60 159328 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\unpack200.exe 2015-08-14 10:15:58 56C175D9B0D7EE7D1DA92B8D8A12772A 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\servertool.exe 2015-08-14 10:15:57 F52607E7F53DA8FE1C4A3C1F11CE2AE7 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\java-rmi.exe 2015-08-14 10:15:57 E7ABC6445E6A2F1EDE5F8BB082ECEEA1 30304 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\jabswitch.exe 2015-08-14 10:15:57 D50189686D9D144CB4EC807652640FC0 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\ktab.exe 2015-08-14 10:15:57 BC66611222047778694C7650B7814978 68192 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\javacpl.exe 2015-08-14 10:15:57 B5AA17A9ACE57080909B9CB47CD74C39 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\kinit.exe 2015-08-14 10:15:57 A4D1AC4078F1A819ECECC546F64907A1 190560 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\java.exe 2015-08-14 10:15:57 9A474C07C5242EF2AE12FF6BF387F334 273504 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\javaws.exe 2015-08-14 10:15:57 76BD4372DD5C5A316F64D562C2404BF8 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\orbd.exe 2015-08-14 10:15:57 6790CB3F51E280A2A3EEAA3C5BD58EFF 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\keytool.exe 2015-08-14 10:15:57 547F9D4CB6FAAC8E941F1689D5555CDB 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\jjs.exe 2015-08-14 10:15:57 4E022C0940633A9538892CB26B65BD0D 191584 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\javaw.exe 2015-08-14 10:15:57 46AD9258E9B6EA56AFC8723CEFDF8425 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\pack200.exe 2015-08-14 10:15:57 235015745A6A6FE26BCDA8F227C9132B 15456 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\klist.exe 2015-08-14 10:15:57 0CFCEE90C8711D4DEAD9EC7046918A45 77920 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2launcher.exe 2015-08-14 10:14:56 64E42747CB3B719A7C7F7736AD948CFE 563296 ----a-w- C:\Users\startklaar\Downloads\chromeinstall-8u51.exe 2015-08-13 18:02:54 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\startklaar\Downloads\RSITx64 (1).exe 2015-08-13 15:32:51 D1FD0793E44303E42A19B1437BC5AB68 42980432 ----a-w- C:\Program Files (x86)\Google\Update\Install\{F98DADBE-94F9-4969-8A17-FEE9F239929E}\44.0.2403.155_chrome_installer.exe 2015-08-13 15:32:49 D1FD0793E44303E42A19B1437BC5AB68 42980432 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\44.0.2403.155\44.0.2403.155_chrome_installer.exe 2015-08-13 08:50:06 C7B8503492B6F4B318DA68F0CC45628E 2821200 ----a-w- C:\Program Files (x86)\Google\Update\Install\{60B5361C-2A44-4FED-9800-672C58CB9D16}\44.0.2403.155_44.0.2403.130_chrome_updater.exe 2015-08-13 08:50:06 C7B8503492B6F4B318DA68F0CC45628E 2821200 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\44.0.2403.155\44.0.2403.155_44.0.2403.130_chrome_updater.exe 2015-08-12 13:39:39 F666B5E4A99DAE8E243189C89E9AFA74 221184 ----a-w- C:\Program Files (x86)\Internet Explorer\ielowutil.exe 2015-08-12 13:39:36 E595881896AA929A7FA8936DFCF8D3FE 473600 ----a-w- C:\Program Files (x86)\Internet Explorer\ieinstal.exe 2015-08-12 13:39:36 2B1D4B6004AE4BE9EB19CAD4AB924944 222720 ----a-w- C:\Program Files\Internet Explorer\ielowutil.exe 2015-08-12 13:39:35 C2A6A7E10E872F62F261637B67AFB248 815312 ----a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe 2015-08-12 13:39:33 AA12B1DD4C32F01995A07774D9A44C47 814288 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe 2015-08-12 13:39:33 66CD0B90DA1E7219759821F9846A29CB 491008 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe 2015-08-12 13:38:57 B32189BDFF6E577A92BAA61AD49264E6 193536 ----a-w- C:\Windows\notepad.exe 2015-08-11 08:25:35 A7209D8ACB8309F7747D44AE5830B8EC 48886904 ----a-w- C:\Users\startklaar\AppData\Local\Dropbox\Update\Download\{CC46080E-4C33-4981-859A-BBA2F780F31E}\3.8.6\DropboxClient_3.8.6.exe === C: other files == 2015-08-14 10:15:58 5F7B14A65C88D4AEB0E3DF49C6A0941F 14130 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_51\lib\deploy\ffjcext.zip 2015-08-12 13:41:36 67050452C0118BAF2883928E6FCCFE47 94656 ----a-w- C:\Windows\System32\drivers\mountmgr.sys 2015-08-12 13:41:32 67A1743377EBB5D9A370A8C2086CFDCC 95680 ----a-w- C:\Windows\System32\drivers\ksecdd.sys 2015-08-12 13:41:32 522A1595D5701800DD41B2D472F5AAED 155584 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys 2015-08-12 13:41:31 B2081803D510DCE174992BA880EDCA70 159232 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys 2015-08-12 13:41:31 552FA62B0EFECD22D8D52499324BCA4F 290816 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys 2015-08-12 13:41:30 97687971F9CB30E2633DE0F1296B9F61 129024 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys 2015-08-12 13:39:13 F97A0CFC495C92FF2F6A03933157D115 3208192 ----a-w- C:\Windows\System32\win32k.sys ==== Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP" "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-2464016002-4038100577-3986015274-1000\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "Spotify"="C:\Users\startklaar\AppData\Roaming\Spotify\Spotify.exe /uri spotify:autostart " "Spotify Web Helper"="C:\Users\startklaar\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe " "EPLTarget\P0000000000000000"="C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHQE.EXE /EPT EPLTarget\P0000000000000000 /M Epson Stylus Photo PX730" "EPLTarget\P0000000000000001"="C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHQE.EXE /EPT EPLTarget\P0000000000000001 /M Epson Stylus Photo PX730" "iCloudServices"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" "Adobe Reader Synchronizer"="C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AdobeCollabSync.exe " "iCloudDrive"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe" "GoogleChromeAutoLaunch_D0980C58B3B322ACF8AFE03327AD161E"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window" "TomTomHOME.exe"="C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe" "Dropbox Update"="C:\Users\startklaar\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "iCloud"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe" "{90140000-003D-0000-0000-0000000FF1CE}"="C:\Windows\system32\cmd.exe /C del C:\ProgramData\Microsoft Help\Rgstrtn.lck /Q /A:H" "{90140000-001A-0413-0000-0000000FF1CE}"="C:\Windows\system32\cmd.exe /C del C:\ProgramData\Microsoft Help\Rgstrtn.lck /Q /A:H" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-21-2464016002-4038100577-3986015274-1000\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Uninstall C:\Users\startklaar\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\amd64"="C:\Windows\system32\cmd.exe /q /c rmdir /s /q C:\Users\startklaar\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\amd64" "Uninstall C:\Users\startklaar\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"="C:\Windows\system32\cmd.exe /q /c rmdir /s /q C:\Users\startklaar\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64" "Uninstall C:\Users\startklaar\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\amd64"="C:\Windows\system32\cmd.exe /q /c rmdir /s /q C:\Users\startklaar\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\amd64" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce] "iCloud"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe" "{90140000-003D-0000-0000-0000000FF1CE}"="C:\Windows\system32\cmd.exe /C del C:\ProgramData\Microsoft Help\Rgstrtn.lck /Q /A:H" "{90140000-001A-0413-0000-0000000FF1CE}"="C:\Windows\system32\cmd.exe /C del C:\ProgramData\Microsoft Help\Rgstrtn.lck /Q /A:H" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NBAgent"="c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe /WinStart " "ToshibaServiceStation"="C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe /hide:60" "APSDaemon"="C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe " "EEventManager"="C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe" "F-Secure Hoster (45123)"="C:\Program Files (x86)\Internetbeveiliging\fshoster32.exe -app -hosterid:1" "Adobe Creative Cloud"="C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe --showwindow=false --onOSstartup=true " "AVG_UI"="C:\Program Files (x86)\AVG\AVG2015\avgui.exe /TRAYONLY" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" "ITSecMng"="%ProgramFiles(x86)%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR" "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun" "Spotify"="C:\Users\startklaar\AppData\Roaming\Spotify\Spotify.exe /uri spotify:autostart " "Spotify Web Helper"="C:\Users\startklaar\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe " "EPLTarget\P0000000000000000"="C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHQE.EXE /EPT EPLTarget\P0000000000000000 /M Epson Stylus Photo PX730" "EPLTarget\P0000000000000001"="C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHQE.EXE /EPT EPLTarget\P0000000000000001 /M Epson Stylus Photo PX730" "iCloudServices"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" "Adobe Reader Synchronizer"="C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AdobeCollabSync.exe " "iCloudDrive"="C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe" "GoogleChromeAutoLaunch_D0980C58B3B322ACF8AFE03327AD161E"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window" "TomTomHOME.exe"="C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe" "Dropbox Update"="C:\Users\startklaar\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Uninstall C:\Users\startklaar\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\amd64"="C:\Windows\system32\cmd.exe /q /c rmdir /s /q C:\Users\startklaar\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\amd64" "Uninstall C:\Users\startklaar\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"="C:\Windows\system32\cmd.exe /q /c rmdir /s /q C:\Users\startklaar\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64" "Uninstall C:\Users\startklaar\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\amd64"="C:\Windows\system32\cmd.exe /q /c rmdir /s /q C:\Users\startklaar\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\amd64" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Toshiba TEMPRO"="C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe" "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "RtHDVBg"="C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE3 " "TosVolRegulator"="C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe " "Toshiba Registration"="C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe " "AtherosBtStack"="C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe " "AthBtTray"="C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe " "AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe " "TosNC"="%ProgramFiles%\Toshiba\BulletinBoard\TosNcCore.exe " "TosReelTimeMonitor"="%ProgramFiles%\TOSHIBA\ReelTime\TosReelTimeMonitor.exe " "TPwrMain"="C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE " "TCrdMain"="C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe " "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " "TosSENotify"="C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe" ==== Startup Registry Disabled ====================== [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run-] "Google Update"="\"C:\\Users\\startklaar\\AppData\\Local\\Google\\Update\\GoogleUpdate.exe\" /c " [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-] "Adobe ARM"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" "QuickTime Task"="\"C:\\Program Files (x86)\\QuickTime\\QTTask.exe\" -atboottime" "SunJavaUpdateSched"="\"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\"" "iTunesHelper"="\"C:\\Program Files (x86)\\iTunes\\iTunesHelper.exe\"" ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-] "iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\"" ==== Startup Folders ====================== 2011-05-02 14:43:27 1258 ----a-w- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk 2011-05-02 14:43:27 1258 ----a-w- C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk 2014-01-12 19:35:50 2006 ----a-w- C:\Users\Margriet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk 2012-09-26 12:40:37 1158 ----a-w- C:\Users\startklaar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk 2012-10-31 20:21:56 1267 ----a-w- C:\Users\startklaar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Schermopname en Snel starten.lnk 2011-05-02 15:11:12 773 ---ha-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Toshiba Places Icon Utility.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ [Undetermined Task] C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-2464016002-4038100577-3986015274-1000Core.job --a------ C:\Users\startklaar\AppData\Local\Dropbox\Update\DropboxUpdate.exe [17-06-2015 17:40] C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-2464016002-4038100577-3986015274-1000UA.job --a------ [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [20-10-2014 17:31] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2464016002-4038100577-3986015274-1000Core.job --a------ C:\Users\startklaar\AppData\Local\Google\Update\GoogleUpdate.exe [27-09-2012 22:05] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2464016002-4038100577-3986015274-1000UA.job --a------ C:\Users\startklaar\AppData\Local\Google\Update\GoogleUpdate.exe [27-09-2012 22:05] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\Adobe Reader and Acrobat Manager" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\SysNative\tasks\AdobeAAMUpdater-1.0-MARGRIET-startklaar" [C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe] "C:\Windows\SysNative\tasks\Apple Diagnostics" [C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\ConfigFree Startup Programs" [C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\DropboxUpdateTaskUserS-1-5-21-2464016002-4038100577-3986015274-1000Core" [C:\Users\startklaar\AppData\Local\Dropbox\Update\DropboxUpdate.exe] "C:\Windows\SysNative\tasks\DropboxUpdateTaskUserS-1-5-21-2464016002-4038100577-3986015274-1000UA" [C:\Users\startklaar\AppData\Local\Dropbox\Update\DropboxUpdate.exe] "C:\Windows\SysNative\tasks\Google Updater and Installer" [C:\Users\startklaar\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-2464016002-4038100577-3986015274-1000Core" [C:\Users\startklaar\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-2464016002-4038100577-3986015274-1000UA" [C:\Users\startklaar\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\Java Update Scheduler" [C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe] "C:\Windows\SysNative\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe] "C:\Windows\SysNative\tasks\TuneUpUtilities_Task_BkGndMaintenance2013" [C:\Program Files (x86)\AVG\AVG PC TuneUp\OneClick.exe] "C:\Windows\SysNative\tasks\User_Feed_Synchronization-{145B6171-BB64-44FF-A4F4-FF081C8DF3ED}" [C:\Windows\system32\msfeedssync.exe] "C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "e-webprint@epson.com"="C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on" [08-12-2012 19:30] ==== Firefox Extensions ====================== ProfilePath: C:\Users\STARTK~1\AppData\Roaming\TomTom\HOME\Profiles\p256jzqg.default - Map status indicator - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com - TomTom HOME default theme - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\baseTheme@tomtom.com - Emulator - %ProfilePath%\extensions\Navcore.9.465.1074274@tomtom.com - Emulator - %ProfilePath%\extensions\Navcore.9.510.1234792@tomtom.com ==== Firefox Plugins ====================== ==== Chromium Look ====================== Google Chrome Version: 44.0.2403.155 HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[01-05-2015 11:17] Google Slides - Margriet\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Margriet\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Margriet\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Margriet\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Margriet\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Sheets - Margriet\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Skype Click to Call - Margriet\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl Gmail - Margriet\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia YouTube - startklaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - startklaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Calculator - startklaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\copciehbkikbfnppdndaegnlgkelahfe Lucidpress Layout and Design - startklaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdiljnnpfniifgbaippdemegmlhoohka iCloud Bookmarks - startklaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah Full Screen Flash - startklaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\gejijbmhbanhbllpkhfojmimfolkjgdl Pin It Button - startklaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpdjojdkbbmdfjfahjcgigfpmkopogic Free Visio Viewer - startklaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcpmofnlkemfkhgngcdppgbhncoflmpe Google Wallet - startklaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Photo Effect - startklaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogbfkfkphlihennbnenpccoobngcmgcc Gmail - startklaar\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Startpages ====================== C:\Users\startklaar\AppData\Local\Google\Chrome\User Data\Default\Preferences pe DL 110 x 220 mm\",\"height_microns\":220000,\"name\":\"ISO_DL\",\"vendor_id\":\"27\",\"width_microns\":110000},{\"custom_display_name\":\"Enveloppe C6 114 x 162 mm\",\"height_microns\":162000,\"name\":\"ISO_C6\",\"vendor_id\":\"31\",\"width_microns\":114000},{\"custom_display_name\":\"Letter 8 1/2 x 11 in\",\"height_microns\":279400,\"name\":\"NA_LETTER\",\"vendor_id\":\"1\",\"width_microns\":215900},{\"custom_display_name\":\"Legal 8 1/2 x 14 in\",\"height_microns\":355600,\"name\":\"NA_LEGAL\",\"vendor_id\":\"5\",\"width_microns\":215900},{\"custom_display_name\":\"A3 297 x 420 mm\",\"height_microns\":420000,\"name\":\"ISO_A3\",\"vendor_id\":\"8\",\"width_microns\":297000},{\"custom_display_name\":\"A3+ 329 x 483 mm\",\"height_microns\":483000,\"vendor_id\":\"258\",\"width_microns\":329000},{\"custom_display_name\":\"A2 420 x 594 mm\",\"height_microns\":594000,\"name\":\"ISO_A2\",\"vendor_id\":\"257\",\"width_microns\":420000},{\"custom_display_name\":\"B4 257 x 364 mm\",\"height_microns\":364000,\"name\":\"JIS_B4\",\"vendor_id\":\"12\",\"width_microns\":257000},{\"custom_display_name\":\"B3 364 x 515 mm\",\"height_microns\":515000,\"name\":\"JIS_B3\",\"vendor_id\":\"259\",\"width_microns\":364000}]},\"page_orientation\":{\"option\":[{\"is_default\":true,\"type\":\"PORTRAIT\"},{\"type\":\"LANDSCAPE\"},{\"type\":\"AUTO\"}]},\"supported_content_type\":[{\"content_type\":\"application/pdf\"}]},\"version\":\"1.0\"},\"mediaSize\":{\"custom_display_name\":\"A4 210 x 297 mm\",\"height_microns\":297000,\"is_default\":true,\"name\":\"ISO_A4\",\"vendor_id\":\"9\",\"width_microns\":210000},\"selectedDestinationExtensionId\":\"\",\"selectedDestinationExtensionName\":\"\"}"}},"profile":{"avatar_bubble_tutorial_shown":1,"avatar_index":0,"content_settings":{"clear_on_exit_migrated":true,"exceptions":{"app_banner":{},"auto_select_certificate":{},"automatic_downloads":{"[*.]windowstechies.com,*":{"setting":1}},"cookies":{},"fullscreen":{"[*.]heftig.co,*":{"setting":1},"[*.]www.omroepbrabant.nl,*":{"setting":1},"https://[*.]mailhost.dreamsites.nl:443,*":{"setting":1}},"geolocation":{},"images":{},"javascript":{},"media_stream":{},"media_stream_camera":{"https://plus.google.com:443,*":{"setting":2}},"media_stream_mic":{"https://plus.google.com:443,*":{"setting":2}},"metro_switch_to_desktop":{},"midi_sysex":{},"mixed_script":{},"mouselock":{},"notifications":{},"plugins":{"*,*":{"per_resource":{"npsitesafety.dll":1}}},"popups":{},"ppapi_broker":{},"protocol_handlers":{},"push_messaging":{},"ssl_cert_decisions":{}},"pattern_pairs":{"*,*":{"per_plugin":{"npsitesafety.dll":1}},"[*.]heftig.co,*":{"fullscreen":1},"[*.]windowstechies.com,*":{"multiple-automatic-downloads":1},"[*.]www.omroepbrabant.nl,*":{"fullscreen":1},"https://[*.]mailhost.dreamsites.nl:443,*":{"fullscreen":1},"https://plus.google.com:443,*":{"media-stream-camera":2,"media-stream-mic":2}},"plugin_whitelist":{"npsitesafety":{"dll":true}},"pref_version":1},"default_content_settings":{},"exit_type":"Crashed","exited_cleanly":true,"gaia_info_update_time":"13084021846013183","icon_version":3,"managed_user_id":"","managed_users":{},"migrated_content_settings_exceptions":true,"migrated_default_content_settings":true,"migrated_default_media_stream_content_settings":true,"name":"ik","password_manager_groups_for_domains":[null,null,null,null,null,2],"per_host_zoom_levels":{},"using_default_name":false},"protection":{"macs":{}},"safebrowsing":{"extended_reporting_enabled":true},"savefile":{"default_directory":"C:\\Users\\startklaar\\Dropbox\\bestuur 80\\Vrijwilligers","type":1},"selectfile":{"last_directory":"C:\\rsit"},"session":{"restore_on_startup_migrated":true,"startup_urls_migration_time":"13063223945717313"},"spellcheck":{"dictionary":"nl","use_spelling_service":true},"sync":{"acknowledged_types":["Bookmarks","Preferences","Passwords","Autofill Profiles","Autofill","Themes","Typed URLs","Extensions","Search Engines","Sessions","Apps","App settings","Extension settings","App Notifications","Encryption keys"],"app_list":true,"app_notifications":true,"app_settings":true,"apps":true,"autofill":true,"autofill_profile":true,"bookmarks":true,"dictionary":true,"encryption_bootstrap_token":"AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAL935z+aYpkGnq3a0sTNTBgAAAAACAAAAAAAQZgAAAAEAACAAAAAtn9leEEu14XFD24oWHCiBgqZyYgwpNXweQO5Bb/EZSwAAAAAOgAAAAAIAACAAAABZiJuy0njBTYe65P1UcIR+vmqQZj2HyXnXbO69h/ffs0AAAABogfWRN8m2tvz6XDu0fQm0FuonIcdbFULmqv6e4Bzd9U+kHTkDbZaAloA+ew/aUJXFiBi8Gw0cc0FBCkUKHMSDQAAAAB7WjvWD9QOPHhyiqcS1IIezImkEf7CMb6lrXwEhqmcxhU/bPS4m4dQbzyLdrXicwsh3n0bkgAVDAmsO5pat0FU=","extension_settings":true,"extensions":true,"favicon_images":true,"favicon_tracking":true,"favicons_syncing_enabled":true,"first_sync_time":"13053547006388837","has_auth_error":true,"has_setup_completed":true,"history_delete_directives":true,"keep_everything_synced":true,"keystore_encryption_bootstrap_token":"AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAL935z+aYpkGnq3a0sTNTBgAAAAACAAAAAAAQZgAAAAEAACAAAACO7l7wrS8HgYAfCgDEpQOZmo0cAnch2ZNSwC3GEvNN4gAAAAAOgAAAAAIAACAAAABGtjVzxS+8xpHRsPmS1JWpW+2BSSVO6n77Er3N3QC1I1AAAAAGTEbwXJgayqbjSNcynVsykaUNgtjw8zHYHBkE6EeB43g1395/whbgHX/mEz9x888YrG01731DKpVhV72InGvIINWHonVoK17M6oRAxuONjEAAAAAZ8d6BjKr9HC5jvBqagBPGsBqrE4Nu4w2AiuQhRIX2kJQnoWCCj37eYe2EpL07h5JhMvD8eSau1ohAqNEISggJ","last_synced_time":"13084022602511739","managed_user_settings":true,"managed_user_shared_settings":true,"managed_user_whitelists":true,"managed_users":true,"memory_warning_count":0,"passwords":true,"preferences":true,"priority_preferences":true,"search_engines":true,"session_sync_guid":"session_sync12hej9S9KUGBRWqRP4NzJQ==","sessions":true,"shutdown_cleanly":false,"suppress_start":false,"synced_notifications":true,"tabs":true,"themes":true,"typed_urls":true},"sync_promo":{"show_ntp_bubble":false,"startup_count":3,"user_skipped":true,"view_count":4},"synced_notification":{"enabled_sending_services":["Google+"],"first_run":false,"initialized_sending_services":["Google+"]},"translate_accepted_count":{"af":0,"de":0,"el":0,"en":0,"es":0,"fr":1},"translate_blocked_languages":["en","nl"],"translate_denied_count":{"af":1,"de":7,"el":1,"en":7,"es":1,"fr":0},"translate_language_blacklist":["en"],"translate_last_denied_time":1416405348237.477,"translate_site_blacklist":["www.webfeud.com"],"translate_too_often_denied":true,"translate_whitelists":{}} impbcpahaombhbimeihdjnejgicl":"AD1D8F424E8CC4FF0A15F1B1AB8A32E6C5383BF48BFC8341B941036559CC1F82","gpdjojdkbbmdfjfahjcgigfpmkopogic":"A23F0F244D8B365A43C34422868E58907ED49FED314DE79086E3EDE24909B240","kmendfapggjehodndflmmgagdbamhnfd":"1F92AC6A9FE0A07A1FCA255244661F3A05F30426FF72189F7D2B51D553D7159F","lifbcibllhkdhoafpjfnlhfpfgnpldfl":"B6019373200A54FACC290819F9964C389BAC921CBB80DC859D8337C4D563BAC8","mcpmofnlkemfkhgngcdppgbhncoflmpe":"E5EA2A77699FAED68F719987627B5AED8E26B8E86ACBA648F70B2FE409021E72","mfehgcgbbipciphmccgaenjidiccnmng":"8627659CAF5DB5C9DFFBDC7DD975065FDCFE074CD4CB70BD00693A1AEA2657B0","mfffpogegjflfpflabcdkioaeobkgjik":"0A98D49450384288ABE38F843A00B6BE77E639E59F33F4A100EE0D68B3E250A8","mgndgikekgjfcpckkfioiadnlibdjbkf":"2EA3D3A86A7E611D3243AC081BE50967E1CC73E4FC018803CF6B8FA4AF1F1ED9","mhjfbmdgcfjbbpaeojofohoefgiehjai":"E74C9EA6D2996A932859B8769C3B7C5E5ADF5408B15555621998613D8B5B78E9","neajdppkdcdipfabeoofebfddakdcjhd":"B31E9C6170A4A35A65ED59D5A16185A05673255E4E2ECDF98745962E5CF6DB3D","nkeimhogjdpnpccoofpliimaahmaaome":"41D961A5BD8352F7B30CD6F25F6BB91428615A60E1219E35C1EC9E02715CFC54","nmmhkkegccagdldgiimedpiccmgmieda":"A0AB94AAC73718AD1659B18021897C53097448FB2E7CBC176BBB5DB1D3DECCA5","ogbfkfkphlihennbnenpccoobngcmgcc":"C887834B1B67DF7F70F787A3ECA80D854B2BB3861CCA1674FF3FD9B5D3F9DB51","okaanfjopopjbacedcgipnibbbpmndja":"E86B5C1306777558FF9E0F2EEC431857E5541CBF1C8367A7EBEC952D639CDFCE","pafkbggdmjlpgkdkcbjmhmfcdpncadgh":"8697B30784D246730D63FE4253ECAE6C1C4540C7044E46019D0E7ECF913AA6E4","pcpehlgijbdajfafffojllcaecaecngb":"C670B15244246C069228988749DDC70FE0CDEBFA15547745578B49D110EE16AB","pjkljhegncpnkpknbcohdijeoejaedia":"227EB3168F8979F1295F684FDA7C5ABAB43DC6A723EA4A72F774E5FDC98635BB"}},"google":{"services":{"account_id":"979C58EC5740F9801DCF711FC010646CBEA982343171014F9F837AB123EB6B26","last_username":"D9096579F9B62837C9C7745B28D1FF659AB5C0D29444743C3A297B0762D81467","username":"FDBCD200B152151D1668823DED5896D8EBAEEFAA8BE13A005B0037B91F0DF099"}},"homepage":"E2A39B9B1D8CDA0CA6536382E9023587FAF8EBCD760D43831DC1271E3FA823D1","homepage_is_newtabpage":"08A88A9E6778468460B9207E0A21D4FD5FAC5289B420594F380DD2C56592291F","pinned_tabs":"EAC0139F377A2C545D43F330BBDD10EBDA0972A51E8032F6C90E8D2BAF2FCF7B","prefs":{"preference_reset_time":"8D88C944FA98C249E571810BF0583C6DED8A197F7A51BE93ACF00AB01D1CB160"},"profile":{"reset_prompt_memento":"EB758FC3510EAD8056325BFAFBAE101F1A38EBE2BC4F2BC3EB2B8AE7D2605ACB"},"safebrowsing":{"incidents_sent":"402B981418B4A6BA5C3885FF3D852EB68311E65275241F048BA9E22F81E2DDDC"},"search_provider_overrides":"45B38500F4BA0B4056DC8A5EBA8AAC4C8DD86C631A4DF6F6B588E31C0E375B9B","session":{"restore_on_startup":"10D6FA88A2175142DDD567594DD063ECE571F8E51AAC1EC91D4297FEBDCA0BF1","startup_urls":"2FD478940B1B7A90335C542DACAF0594B8997E2C79C7BD498305058CF84A7F00"},"software_reporter":{"prompt_reason":"99571FD977C977DC9897CE2EFF606040BF28C2CEE2F631E58A649BC451405CB9","prompt_seed":"91669D618555F6135313E28E4D0E4C186417946925EC254AFD42DFFABCF8F466","prompt_version":"06AB1DF9B9AA75C85345FDAA3475A9FCB5DD21E8742179D47D401938CCC0CAC0"},"sync":{"remaining_rollback_tries":"E47C08662486A724FE7A074DF4179583FA6294B69D3F4D58235EB6E02B70B0FB"}},"super_mac":"1D8862CA0A6806AC70983E6D575784D387CF20B069DDF1688C1D0E059CD8243A"},"session":{"startup_urls":["https://www.google.nl/"],"urls_to_restore_on_startup":["http://www.default-search.net?sid=476&aid=214&itype=n&ver=14733&tm=552&src=hmp"]},"sync":{"remaining_rollback_tries":0}} impbcpahaombhbimeihdjnejgicl":"AD1D8F424E8CC4FF0A15F1B1AB8A32E6C5383BF48BFC8341B941036559CC1F82","gpdjojdkbbmdfjfahjcgigfpmkopogic":"A23F0F244D8B365A43C34422868E58907ED49FED314DE79086E3EDE24909B240","kmendfapggjehodndflmmgagdbamhnfd":"1F92AC6A9FE0A07A1FCA255244661F3A05F30426FF72189F7D2B51D553D7159F","lifbcibllhkdhoafpjfnlhfpfgnpldfl":"B6019373200A54FACC290819F9964C389BAC921CBB80DC859D8337C4D563BAC8","mcpmofnlkemfkhgngcdppgbhncoflmpe":"E5EA2A77699FAED68F719987627B5AED8E26B8E86ACBA648F70B2FE409021E72","mfehgcgbbipciphmccgaenjidiccnmng":"8627659CAF5DB5C9DFFBDC7DD975065FDCFE074CD4CB70BD00693A1AEA2657B0","mfffpogegjflfpflabcdkioaeobkgjik":"0A98D49450384288ABE38F843A00B6BE77E639E59F33F4A100EE0D68B3E250A8","mgndgikekgjfcpckkfioiadnlibdjbkf":"2EA3D3A86A7E611D3243AC081BE50967E1CC73E4FC018803CF6B8FA4AF1F1ED9","mhjfbmdgcfjbbpaeojofohoefgiehjai":"E74C9EA6D2996A932859B8769C3B7C5E5ADF5408B15555621998613D8B5B78E9","neajdppkdcdipfabeoofebfddakdcjhd":"B31E9C6170A4A35A65ED59D5A16185A05673255E4E2ECDF98745962E5CF6DB3D","nkeimhogjdpnpccoofpliimaahmaaome":"41D961A5BD8352F7B30CD6F25F6BB91428615A60E1219E35C1EC9E02715CFC54","nmmhkkegccagdldgiimedpiccmgmieda":"A0AB94AAC73718AD1659B18021897C53097448FB2E7CBC176BBB5DB1D3DECCA5","ogbfkfkphlihennbnenpccoobngcmgcc":"C887834B1B67DF7F70F787A3ECA80D854B2BB3861CCA1674FF3FD9B5D3F9DB51","okaanfjopopjbacedcgipnibbbpmndja":"E86B5C1306777558FF9E0F2EEC431857E5541CBF1C8367A7EBEC952D639CDFCE","pafkbggdmjlpgkdkcbjmhmfcdpncadgh":"8697B30784D246730D63FE4253ECAE6C1C4540C7044E46019D0E7ECF913AA6E4","pcpehlgijbdajfafffojllcaecaecngb":"C670B15244246C069228988749DDC70FE0CDEBFA15547745578B49D110EE16AB","pjkljhegncpnkpknbcohdijeoejaedia":"227EB3168F8979F1295F684FDA7C5ABAB43DC6A723EA4A72F774E5FDC98635BB"}},"google":{"services":{"account_id":"979C58EC5740F9801DCF711FC010646CBEA982343171014F9F837AB123EB6B26","last_username":"D9096579F9B62837C9C7745B28D1FF659AB5C0D29444743C3A297B0762D81467","username":"FDBCD200B152151D1668823DED5896D8EBAEEFAA8BE13A005B0037B91F0DF099"}},"homepage":"E2A39B9B1D8CDA0CA6536382E9023587FAF8EBCD760D43831DC1271E3FA823D1","homepage_is_newtabpage":"08A88A9E6778468460B9207E0A21D4FD5FAC5289B420594F380DD2C56592291F","pinned_tabs":"EAC0139F377A2C545D43F330BBDD10EBDA0972A51E8032F6C90E8D2BAF2FCF7B","prefs":{"preference_reset_time":"8D88C944FA98C249E571810BF0583C6DED8A197F7A51BE93ACF00AB01D1CB160"},"profile":{"reset_prompt_memento":"EB758FC3510EAD8056325BFAFBAE101F1A38EBE2BC4F2BC3EB2B8AE7D2605ACB"},"safebrowsing":{"incidents_sent":"402B981418B4A6BA5C3885FF3D852EB68311E65275241F048BA9E22F81E2DDDC"},"search_provider_overrides":"45B38500F4BA0B4056DC8A5EBA8AAC4C8DD86C631A4DF6F6B588E31C0E375B9B","session":{"restore_on_startup":"10D6FA88A2175142DDD567594DD063ECE571F8E51AAC1EC91D4297FEBDCA0BF1","startup_urls":"2FD478940B1B7A90335C542DACAF0594B8997E2C79C7BD498305058CF84A7F00"},"software_reporter":{"prompt_reason":"99571FD977C977DC9897CE2EFF606040BF28C2CEE2F631E58A649BC451405CB9","prompt_seed":"91669D618555F6135313E28E4D0E4C186417946925EC254AFD42DFFABCF8F466","prompt_version":"06AB1DF9B9AA75C85345FDAA3475A9FCB5DD21E8742179D47D401938CCC0CAC0"},"sync":{"remaining_rollback_tries":"E47C08662486A724FE7A074DF4179583FA6294B69D3F4D58235EB6E02B70B0FB"}},"super_mac":"1D8862CA0A6806AC70983E6D575784D387CF20B069DDF1688C1D0E059CD8243A"},"session":{"startup_urls":["https://www.google.nl/"],"urls_to_restore_on_startup":["http://www.default-search.net?sid=476&aid=214&itype=n&ver=14733&tm=552&src=hmp"]},"sync":{"remaining_rollback_tries":0}} ==== Chromium Fix ====================== C:\Users\startklaar\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vacatures.trovit.nl_0.localstorage deleted successfully C:\Users\startklaar\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vacatures.trovit.nl_0.localstorage-journal deleted successfully C:\Users\startklaar\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_brildragervanhetjaar.specsavers.nl_0.localstorage deleted successfully C:\Users\startklaar\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_brildragervanhetjaar.specsavers.nl_0.localstorage-journal deleted successfully C:\Users\startklaar\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage deleted successfully C:\Users\startklaar\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://mysearch.avg.com/?cid={5005F213-E889-499A-9838-059F76228AD6}&mid=b61760bf394647d08b879d3bfff5d1d0-7a1329d1b5a4930164810a63b9a580084a959f0c&lang=nl&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2015-02-23 20:44:33&v=4.1.0.404&pid=wtu&sg=&sap=hp" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs] "Tabs"="res://ieframe.dll/tabswelcome.htm" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs] "Tabs"="res://ieframe.dll/tabswelcome.htm" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{95B7759C-8C7F-4BF1-B163-73684A933233}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs] "Tabs"="about:newtab" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs] "Tabs"="about:newtab" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02" {44DBB73A-BF61-4609-91A2-E9973C79490F} eBay Url="http://rover.ebay.com/rover/1/1346-71494-26233-7/4?satitle={searchTerms}" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7MXGB_nlNL509" {93ED6649-71DE-44DA-93CA-3ED997B2DEE7} Amazon Url="http://www.amazon.co.uk/gp/search?ie=UTF8&keywords={searchTerms}&tag=tochibauk-win7-ie-search-21&index=blended&linkCode=ur2" {BD429A78-EC6E-4D8A-A5DB-AEBDFBBA985A} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7MXGB_nlNL509" {DC2A87BD-5849-44EB-81FE-D530E50026AC} Bing Url="http://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox" ==== Reset Google Chrome ====================== C:\Users\Margriet\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\Margriet\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully C:\Users\startklaar\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\startklaar\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully C:\Users\Margriet\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\Margriet\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully C:\Users\startklaar\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\startklaar\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\help.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\hwsetup.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tosdimonitor.exe deleted successfully ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Margriet\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Margriet\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\startklaar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Margriet\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\startklaar\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=3205 folders=207 276401456 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Margriet\AppData\Local\Temp emptied successfully C:\Users\startklaar\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\STARTK~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted ==== EOF on vr 14-08-2015 at 18:39:35,82 ======================