Zoek.exe v5.0.0.0 Updated 23-09-2015 Tool run by Steven on za 26/09/2015 at 8:08:51,64. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Steven\Downloads\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 26/09/2015 8:10:25 Zoek.exe System Restore Point Created Successfully. ==== Torpig Check ====================== HKEY_CLASSES_ROOT\Directory\shellex\CopyHookHandlers\FileSystem {217FC9C0-3AEA-1069-A2DB-08002B30309D} %SystemRoot%\system32\shell32.dll HKEY_CLASSES_ROOT\Directory\shellex\CopyHookHandlers\Sharing {40dd6e20-7c17-11ce-a804-00aa003ca9f6} %SystemRoot%\system32\ntshrui.dll ==== Empty Folders Check ====================== C:\PROGRA~2\FreeTime deleted successfully C:\PROGRA~3\Avg deleted successfully C:\PROGRA~3\WinZip deleted successfully C:\Users\Steven\AppData\Roaming\DAEMON Tools Lite deleted successfully C:\Users\Steven\AppData\Local\EmieBrowserModeList deleted successfully C:\Users\Steven\AppData\Local\EmieSiteList deleted successfully C:\Users\Steven\AppData\Local\EmieUserList deleted successfully C:\Users\Steven\AppData\Local\NCSOFT deleted successfully C:\Users\Steven\AppData\Local\VirtualStore deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Files \ Folders ====================== C:\PROGRA~2\FreeTime not found C:\Users\Steven\AppData\Roaming\QuickScan deleted C:\PROGRA~3\Avg_Update_0215pi deleted C:\PROGRA~3\Package Cache deleted C:\Windows\wininit.ini deleted C:\Windows\SysNative\config\systemprofile\Searches deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2015-09-17 00:41:24 B2B47781BAF0D40770A4D51A81359A76 47462 ----a-w- C:\Windows\icm32.exe ====== C:\Users\Steven\AppData\Local\Temp ==== 2015-09-25 17:48:23 5C8F188B5A623DDFE78E98CF17BD2884 40500224 ----a-w- C:\Users\Steven\AppData\Local\Temp\AvgSetup_2cd25579-8334-42dd-901a-6c98f5133bca\install\libcef.dll 2015-09-25 17:48:19 7BB17968CE33DA5EDA2A5FF8A9237304 2423720 ----a-w- C:\Users\Steven\AppData\Local\Temp\AvgSetup_2cd25579-8334-42dd-901a-6c98f5133bca\install\avgsetupuix.dll 2015-09-25 17:48:07 C209C1E20EC20811EE415A165A8DEC01 2875304 ----a-w- C:\Users\Steven\AppData\Local\Temp\AvgSetup_2cd25579-8334-42dd-901a-6c98f5133bca\install\avgsetupx.exe 2015-09-25 17:48:07 94A3F185B7D4B68219EA064E5F22A3C2 4799400 ----a-w- C:\Users\Steven\AppData\Local\Temp\AvgSetup_2cd25579-8334-42dd-901a-6c98f5133bca\install\avgsetupapix.dll 2015-09-15 02:11:52 E0DC8C6BBC787B972A9A468648DBFD85 1008128 ----a-w- C:\Users\Steven\AppData\Local\Temp\jrt\libiconv2.dll 2015-09-15 02:11:52 D34DE397C882E8E71FB0966D28F07CB1 71992 ----a-w- C:\Users\Steven\AppData\Local\Temp\jrt\CreateRestorePoint.exe 2015-09-15 02:11:52 D202BAA425176287017FFE1FB5D1B77C 103424 ----a-w- C:\Users\Steven\AppData\Local\Temp\jrt\libintl3.dll 2015-09-15 02:11:52 57CAC848FA14AE38F14F9441F8933282 140288 ----a-w- C:\Users\Steven\AppData\Local\Temp\jrt\pcre3.dll 2015-09-15 02:11:52 547C43567AB8C08EB30F6C6BACB479A3 79360 ----a-w- C:\Users\Steven\AppData\Local\Temp\jrt\regex2.dll 2015-09-15 02:11:52 2F9C7FDA92C346CB5AA32091536AE0CB 43520 ----a-w- C:\Users\Steven\AppData\Local\Temp\jrt\nfo\nircmdc.exe ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2015-09-18 03:25:11 CF3E9B128832C28673B432526ED58B74 778440 ----a-w- C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-09-18 03:25:11 65E84971B2EE451B3819628E64836D66 142536 ----a-w- C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-09-17 23:41:06 !HASH: COULD NOT OPEN FILE !!!!! 180224 --sha-r- C:\Windows\SysWOW64\setup169.dll ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== ====== C:\Windows\Sysnative\drivers ===== 2015-09-09 10:20:40 E4DC0909B5EACB5BF50F6252095BCFF2 155584 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys 2015-09-09 10:20:40 A405647429DE231CD954D93F792CFBA2 95680 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys 2015-09-09 10:20:39 7D65B5E9573A26C204AA547457DBF544 129024 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb20.sys 2015-09-09 10:20:39 62CEA59FF56B66154E08BD51D87392C2 290816 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb10.sys 2015-09-09 10:20:39 43E1F4B0EFDC244D2A83995CCD7846F7 159232 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb.sys 2015-09-09 10:20:35 A0711D119BA4B48A1470C768D301013E 61440 ----a-w- C:\Windows\Sysnative\drivers\appid.sys ====== C:\Windows\Tasks ====== 2015-09-18 03:25:11 A3146CBCBA5404C3B35BB261AA6478D4 940 ----a-w- C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-09-18 03:25:11 735E68DE9C250F8375B9FBE009BDBD09 3878 ----a-w- C:\Windows\Sysnative\Tasks\Adobe Flash Player Updater 2015-09-17 23:41:06 FBDA484E6276938E98BD4917301E3501 2586 ----a-w- C:\Windows\Sysnative\Tasks\STHSGI 2015-09-17 23:41:06 AE87B82BECDA57E6B0C72E7CAF3DD1C6 306 ----a-w- C:\Windows\Tasks\STHSGI.job 2015-09-17 00:41:27 22FE693472DBDA9B4B92FADC694273DC 3328 ----a-w- C:\Windows\Sysnative\Tasks\RegIdleBackup 2015-09-06 02:21:16 02A2D633B7547099101AB77291F94D1A 2964 ----a-w- C:\Windows\Sysnative\Tasks\{3CC493F5-10D4-4393-9F72-8B512D1B9BF1} ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-09-03 23:53:17 -------- d-----w- C:\Program Files\railroad tycoon 3 ======= C:\PROGRA~2 ===== 2015-09-25 14:32:24 -------- d-----w- C:\PROGRA~2\ESET 2015-09-09 23:35:07 -------- d-----w- C:\PROGRA~2\OpenAL 2015-09-07 22:18:27 -------- d-----w- C:\PROGRA~2\Microsoft XNA 2015-09-03 23:52:51 -------- d-----w- C:\PROGRA~2\directx 2015-08-29 15:01:30 -------- d-----w- C:\PROGRA~2\COMMON~1\Java ======= C: ===== ====== C:\Users\Steven\AppData\Roaming ====== 2015-09-23 02:26:45 -------- d-----w- C:\Users\Steven\AppData\Locallow\uTorrent 2015-09-22 21:24:21 -------- d-----w- C:\Users\Steven\AppData\Local\CCP 2015-09-21 08:59:19 -------- d-----w- C:\Users\Steven\AppData\Roaming\Frontier Developments 2015-09-21 08:59:19 -------- d-----w- C:\Users\Steven\AppData\Local\Frontier Developments 2015-09-21 08:58:17 -------- d-----w- C:\Users\Steven\AppData\Local\Frontier_Developments 2015-09-17 19:01:55 -------- d-----w- C:\Users\Steven\AppData\Local\Skyrim 2015-09-17 17:33:30 -------- d-----w- C:\Users\Steven\AppData\Roaming\The Walking Dead 2015-09-17 00:50:21 -------- d-----w- C:\Users\Steven\AppData\Roaming\Life Is Strange 2015-09-16 11:23:28 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Local\AvgSetupLog 2015-09-15 01:53:58 -------- d-----w- C:\Windows\SysNative\config\systemprofile\AppData\Local\Avg 2015-09-15 01:53:28 -------- d-----w- C:\Users\Steven\AppData\Local\AvgSetupLog 2015-09-10 22:48:31 -------- d-----w- C:\Users\Steven\AppData\Roaming\Bioshock 2015-09-06 09:46:03 -------- d-----w- C:\Users\Steven\AppData\Local\SEGA 2015-09-06 02:22:01 -------- d-----w- C:\Users\Steven\AppData\Local\ElevatedDiagnostics 2015-09-01 16:26:25 -------- d-----w- C:\Users\Steven\AppData\Local\Bilago 2015-08-29 15:01:22 -------- d-----w- C:\Users\Steven\AppData\Roaming\Sun 2015-08-29 15:01:03 -------- d-----w- C:\Users\Steven\AppData\Locallow\Oracle 2015-08-27 19:19:36 -------- d-----w- C:\Users\Steven\AppData\Roaming\MegaMan ====== C:\Users\Steven ====== 2015-09-25 14:32:22 C5B68AC8EC40CAB217AB4F479B953B54 2870984 ----a-w- C:\Users\Steven\Downloads\esetsmartinstaller_enu.exe 2015-09-24 16:35:13 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Steven\Downloads\RSITx64.exe 2015-09-22 21:12:58 -------- d-----w- C:\ProgramData\CCP 2015-09-19 21:04:04 D3B6FA14CB7E12B7FBC0B3AA26235898 24345872 ----a-w- C:\Users\Steven\Downloads\mbam-setup-2.1.8.1057.exe 2015-09-17 23:41:01 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\.oracle_jre_usage 2015-09-15 20:07:02 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SimCity™ 2015-09-15 02:11:50 319EB0E105821609DAE2A53BD883E74B 1800104 ----a-w- C:\Users\Steven\Downloads\JRT.exe 2015-09-15 02:09:41 8B968045D75783A09592C3105F2865DA 688992 ------r- C:\Users\Steven\Downloads\dds.com 2015-09-15 02:08:34 1152FCAD72A5E38D21747824B69F9659 2190848 ----a-w- C:\Users\Steven\Downloads\FRST64.exe 2015-09-15 02:03:44 080B16BA75F35930D761A96C073131C7 1660416 ----a-w- C:\Users\Steven\Downloads\adwcleaner_5.007.exe 2015-09-15 02:00:03 6F2AF2D358750FBACA1CBCF0E5D9745F 39480 ----a-w- C:\Users\Steven\Downloads\qsinstaller.exe 2015-09-11 13:47:25 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Construction Simulator 2015 2015-08-29 15:01:22 -------- d-----w- C:\Users\Steven\.oracle_jre_usage ====== C: exe-files == 2015-09-25 18:57:00 4719799B56E0B4BEE6C62552FC7FC7E0 936016 ----a-w- C:\Program Files (x86)\Google\Update\Install\{20D984A2-ADC4-425F-A759-B396AE87D709}\45.0.2454.101_45.0.2454.99_chrome_updater.exe 2015-09-25 18:57:00 4719799B56E0B4BEE6C62552FC7FC7E0 936016 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\45.0.2454.101\45.0.2454.101_45.0.2454.99_chrome_updater.exe 2015-09-25 17:48:07 C209C1E20EC20811EE415A165A8DEC01 2875304 ----a-w- C:\Users\Steven\AppData\Local\Temp\AvgSetup_2cd25579-8334-42dd-901a-6c98f5133bca\install\avgsetupx.exe 2015-09-25 14:32:28 F0B5FAE0268D84B1CE6EA3B98D4D69EB 331464 ----a-w- C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineCmdLineScannerA.exe 2015-09-25 14:32:28 E78517BD20C282FBCA150D2B3ACCC760 2870984 ----a-w- C:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe 2015-09-25 14:32:28 B23901621E5BD2EF1AAC3E6E6CB9E7FF 422600 ----a-w- C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineCmdLineScanner.exe 2015-09-25 14:32:28 4B0F506ACF0A8AE6D6B3E4CF6778B722 122568 ----a-w- C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe 2015-09-25 14:32:28 21B9AB1916917F9476B767F605345E62 532168 ----a-w- C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineScannerApp.exe 2015-09-25 14:32:22 C5B68AC8EC40CAB217AB4F479B953B54 2870984 ----a-w- C:\Users\Steven\Downloads\esetsmartinstaller_enu.exe 2015-09-24 16:35:13 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Steven\Downloads\RSITx64.exe 2015-09-21 18:57:22 F051A6D1D7D27C094928DB1157291E5A 2934864 ----a-w- C:\Program Files (x86)\Google\Update\Install\{B66C73B3-44CC-41BC-AA65-D18CCDF00C85}\45.0.2454.99_45.0.2454.93_chrome_updater.exe 2015-09-19 21:04:04 D3B6FA14CB7E12B7FBC0B3AA26235898 24345872 ----a-w- C:\Users\Steven\Downloads\mbam-setup-2.1.8.1057.exe 2015-09-19 19:46:47 3360C4A280A7BC92C5F7612F01779756 336896 ----a-w- C:\Users\Steven\AppData\Roaming\uTorrent\updates\3.4.5_41073\utorrentie.exe 2015-09-19 19:19:18 14EE6C0E28D6E407DB35F7B12E3FAC03 1774432 ----a-w- C:\Users\Steven\AppData\Roaming\uTorrent\updates\3.4.5_41073.exe === C: other files == 2015-09-25 15:41:06 9E0A2F5AB30517809B95A1FF1DD98C53 49 ----a-w- C:\Windows\Temp\~unins2205.bat 2015-09-24 16:41:04 9E0A2F5AB30517809B95A1FF1DD98C53 49 ----a-w- C:\Windows\Temp\~unins7884.bat 2015-09-21 19:41:02 9E0A2F5AB30517809B95A1FF1DD98C53 49 ----a-w- C:\Windows\Temp\~unins6866.bat 2015-09-20 20:41:05 9E0A2F5AB30517809B95A1FF1DD98C53 49 ----a-w- C:\Windows\Temp\~unins7746.bat 2015-09-19 21:41:03 9E0A2F5AB30517809B95A1FF1DD98C53 49 ----a-w- C:\Windows\Temp\~unins3851.bat ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" ==== Startup Folders ====================== 2015-07-09 16:24:43 0 ----a-w- C:\Users\Steven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip 2015-06-02 13:17:58 1893 ----a-w- C:\Users\Steven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\setup.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ [Undetermined Task] C:\Windows\tasks\STHSGI.job --a------ [Undetermined Task] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\RegIdleBackup" ["C:\windows\icm32.exe"] "C:\Windows\SysNative\tasks\STHSGI" [C:\Windows\system32\rundll32.exe "C:\Windows\SysWOW64\setup169.dll",KEIGN] "C:\Windows\SysNative\tasks\{3CC493F5-10D4-4393-9F72-8B512D1B9BF1}" [H:\RollerCoaster Tycoon 3 Platinum\RCT3plus.exe] ==== Folders in C:\PROGRA~3 0-6 Months Old ====================== 2015-05-21 08:15:42 -------- d-sh--we C:\PROGRA~3\Bureaublad 2015-05-21 08:15:42 -------- d-sh--we C:\PROGRA~3\Documenten 2015-05-21 08:15:42 -------- d-sh--we C:\PROGRA~3\Favorieten 2015-05-21 08:15:42 -------- d-sh--we C:\PROGRA~3\Menu Start 2015-05-21 08:15:42 -------- d-sh--we C:\PROGRA~3\Sjablonen 2015-05-21 13:44:50 -------- d-----w- C:\PROGRA~3\AMD 2015-05-22 09:46:07 -------- d-----w- C:\PROGRA~3\Oracle 2015-05-22 09:46:20 -------- d-----w- C:\PROGRA~3\Sun 2015-05-22 10:40:53 -------- d-----w- C:\PROGRA~3\Electronic Arts 2015-05-22 10:40:54 -------- d-----w- C:\PROGRA~3\Origin 2015-05-22 10:44:11 -------- d-----w- C:\PROGRA~3\BitRaider 2015-05-22 10:48:12 -------- d-----w- C:\PROGRA~3\LogiShrd 2015-06-02 00:21:58 -------- d-----w- C:\PROGRA~3\Codemasters 2015-06-02 13:17:08 -------- d-----w- C:\PROGRA~3\DAEMON Tools Lite 2015-06-02 13:28:25 -------- d-----w- C:\PROGRA~3\MFAData 2015-06-02 13:28:25 -------- d--h--w- C:\PROGRA~3\Common Files 2015-06-02 13:29:12 -------- d-----w- C:\PROGRA~3\AVG2015 2015-06-02 13:31:33 -------- d-----w- C:\PROGRA~3\Steam 2015-06-06 17:24:20 -------- d-----w- C:\PROGRA~3\Malwarebytes 2015-06-12 22:30:12 -------- d-----w- C:\PROGRA~3\DAEMON Tools Pro 2015-06-17 14:30:13 -------- d-----w- C:\PROGRA~3\Guitar Pro 6 2015-06-19 11:22:00 -------- d-----w- C:\PROGRA~3\Adobe 2015-06-29 10:11:33 -------- d-----w- C:\PROGRA~3\.mono 2015-07-03 10:58:27 -------- d-----w- C:\PROGRA~3\PowerUp Software 2015-07-08 22:20:58 -------- d-----w- C:\PROGRA~3\RELOADED 2015-07-09 14:55:23 -------- d-----w- C:\PROGRA~3\Battle.net 2015-07-09 14:58:40 -------- d-----w- C:\PROGRA~3\Blizzard Entertainment 2015-07-23 14:59:29 -------- d-----w- C:\PROGRA~3\Baidu 2015-08-01 11:38:47 -------- d-----w- C:\PROGRA~3\ATI 2015-08-11 23:34:09 -------- d-----w- C:\PROGRA~3\UniqueId 2015-09-22 21:12:58 -------- d-----w- C:\PROGRA~3\CCP ==== Chromium Look ====================== Google Slides - Steven\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Steven\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Steven\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Steven\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo selector is not a valid CSS selector - Steven\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb Google Search - Steven\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Sheets - Steven\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Google Docs Offline - Steven\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Google Wallet - Steven\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Steven\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: New Values: [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\adwcleaner_5.005.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AnVir.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AutoLogger.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avz.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CCleaner.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CCleaner64.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FRST.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FRST64.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\HiJackThis.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mbam.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedit.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RegWorks.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RSIT.exe deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RSITx64.exe deleted successfully ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Steven\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Steven\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Steven\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=43 folders=45 44707401 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Steven\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Steven\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on za 26/09/2015 at 8:20:10,71 ======================