Zoek.exe v5.0.0.1 Updated 31-December-2015 Tool run by Jo on ma 01-02-2016 at 17:18:14,33. Microsoft Windows 10 Pro 10.0.10586 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Jo\Downloads\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 1-2-2016 17:21:28 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\Program Files\DJI Product deleted successfully C:\Program Files\Freemake deleted successfully C:\Program Files\PokerStars.BE deleted successfully C:\PROGRA~2\Comms deleted successfully C:\PROGRA~2\Freemake deleted successfully C:\PROGRA~2\SoftwareDistribution deleted successfully C:\PROGRA~2\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} deleted successfully C:\Users\DefaultAppPool\AppData\LocalLow deleted successfully C:\Users\Jo\AppData\Local\ActiveSync deleted successfully C:\Users\Jo\AppData\Local\EmieBrowserModeList deleted successfully C:\Users\Jo\AppData\Local\EmieSiteList deleted successfully C:\Users\Jo\AppData\Local\EmieUserList deleted successfully C:\Users\Jo\AppData\Local\NetworkTiles deleted successfully C:\Users\Jo\AppData\Local\Opera Software deleted successfully C:\Users\Jo\AppData\Local\PeerDistRepub deleted successfully C:\Users\Jo\AppData\Local\Skype deleted successfully C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistPub deleted successfully C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistRepub deleted successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\NetworkTiles deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== FireFox Fix ====================== ProfilePath: C:\Users\Jo\AppData\Roaming\Mozilla\Firefox\Profiles\w1k9b9wh.default ---- Lines mindspark removed from prefs.js ---- user_pref("extensions.toolbar.mindspark._65Members_.BUTTON_STRUCTURE", "[{\"b\":221359615,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":221359616, user_pref("extensions.toolbar.mindspark._65Members_.firstKnownVersion", "6.33.3.43040"); user_pref("extensions.toolbar.mindspark._65Members_.homepage", "http://home.tb.ask.com/index.jhtml?n=780c6da2&p2=^Y6^xpi000^YYA^"); user_pref("extensions.toolbar.mindspark._65Members_.initialized", true); user_pref("extensions.toolbar.mindspark._65Members_.installation.contextKey", ""); user_pref("extensions.toolbar.mindspark._65Members_.installation.installDate", "2014080418"); user_pref("extensions.toolbar.mindspark._65Members_.installation.partnerId", "^Y6^xpi000^YYA^"); user_pref("extensions.toolbar.mindspark._65Members_.installation.partnerSubId", ""); user_pref("extensions.toolbar.mindspark._65Members_.installation.success", false); user_pref("extensions.toolbar.mindspark._65Members_.isCompliantUninstallImplementation", true); user_pref("extensions.toolbar.mindspark._65Members_.lastKnownVersion", "6.33.3.43040"); user_pref("extensions.toolbar.mindspark._65Members_.options.defaultSearch", false); user_pref("extensions.toolbar.mindspark._65Members_.options.homePageEnabled", false); user_pref("extensions.toolbar.mindspark._65Members_.options.keywordEnabled", false); user_pref("extensions.toolbar.mindspark._65Members_.options.tabEnabled", false); user_pref("extensions.toolbar.mindspark._65Members_.successUrl", "http://fromdoctopdf.dl.tb.ask.com/installComplete.jhtml"); user_pref("extensions.toolbar.mindspark._65Members_.toolbarCollapsed", false); user_pref("extensions.toolbar.mindspark.lastInstalled", "fromdoctopdf@mindspark.com"); ---- FireFox user.js and prefs.js backups ---- user_01-02-2016_1735_.backup prefs_01-02-2016_1735_.backup ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "MalwareProtectionLive"=- ==== Deleting Files \ Folders ====================== C:\Program Files\DJI Product not found C:\Program Files\Freemake not found C:\Program Files\PokerStars.BE not found C:\PROGRA~2\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} not found C:\Users\Jo\AppData\Local\PokerStars.BE deleted C:\Users\Jo\AppData\Local\MalwareProtectionLive deleted C:\ProgramData\Avg_Update_0415av deleted C:\ProgramData\Avg_Update_0615av deleted C:\ProgramData\Avg_Update_0715av deleted C:\ProgramData\Avg_Update_0915av deleted C:\ProgramData\Avg_Update_1015av deleted C:\Users\Jo\AppData\Roaming\DVDVideoSoft deleted C:\Program Files\GUM9DB7.tmp deleted C:\Program Files\Uniblue\SpeedUpMyPC deleted C:\PROGRA~2\Avg_Update_0414b deleted C:\PROGRA~2\Avg_Update_0814av deleted C:\PROGRA~2\BSD deleted C:\PROGRA~2\Package Cache deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted C:\WINDOWS\Tasks\SpeedUpMyPC Maintenance.job deleted C:\WINDOWS\Tasks\SpeedUpMyPC Startup.job deleted C:\WINDOWS\system32\Tasks\SpeedUpMyPC Maintenance deleted C:\WINDOWS\system32\Tasks\SpeedUpMyPC Startup deleted C:\WINDOWS\tasks\0415avUpdateInfo.job deleted C:\WINDOWS\tasks\0615avUpdateInfo.job deleted C:\WINDOWS\tasks\0715avUpdateInfo.job deleted C:\WINDOWS\tasks\0915avUpdateInfo.job deleted C:\WINDOWS\tasks\1015avUpdateInfo.job deleted C:\WINDOWS\system32\GroupPolicy\ADM deleted C:\WINDOWS\system32\GroupPolicy\Machine deleted C:\WINDOWS\system32\GroupPolicy\User deleted C:\WINDOWS\system32\GroupPolicy\gpt.ini deleted C:\Users\Jo\AppData\Roaming\Mozilla\Firefox\Profiles\w1k9b9wh.default\FromDocToPDF_65 deleted C:\Users\Public\Desktop\SpeedUpMyPC.lnk deleted C:\Users\Public\Desktop\Free YouTube Downloader.lnk deleted "C:\Windows\Installer\a21283.msi" deleted ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2016-01-08 00:59:09 E11E1FA6F02422FC8CEA83B28582BB5C 65776 ----a-w- C:\WINDOWS\agrsmdel.exe ====== C:\Users\Jo\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\system32 ===== 2016-01-27 18:59:47 D44345210CAC304817FAFBD4F0671E2C 6971752 ----a-w- C:\WINDOWS\System32\Windows.Media.Protection.PlayReady.dll 2016-01-27 18:59:45 AE6803B8484965EB2B92E4B2AF016B43 19338752 ----a-w- C:\WINDOWS\System32\mshtml.dll 2016-01-27 18:59:41 C95A1EC1C230BCCF0984CEDFCBCF8836 12126208 ----a-w- C:\WINDOWS\System32\ieframe.dll 2016-01-27 18:59:41 8B160B088DA953EE6C16595AD5DA7787 9918976 ----a-w- C:\WINDOWS\System32\twinui.dll 2016-01-27 18:59:40 A1EB9EF86954DF012BD3A48803DB36C8 6297088 ----a-w- C:\WINDOWS\System32\mos.dll 2016-01-27 18:59:37 E9FD92C0D2CD0DD877ECD086C6D6F99B 5238360 ----a-w- C:\WINDOWS\System32\windows.storage.dll 2016-01-27 18:59:36 1C22BFBABCF389F2A985A32C01819467 5202944 ----a-w- C:\WINDOWS\System32\BingMaps.dll 2016-01-27 18:59:35 6F260156AB9C4C38A7AF7C333F641746 1793024 ----a-w- C:\WINDOWS\System32\NetworkMobileSettings.dll 2016-01-27 18:59:34 76D96571FE1FA529C3741B17B57F9696 21125400 ----a-w- C:\WINDOWS\System32\shell32.dll 2016-01-27 18:59:33 CBB102963C67F260E72ADC765824271D 826880 ----a-w- C:\WINDOWS\System32\audiosrv.dll 2016-01-27 18:59:33 AFA5A77BB7F6FEFBDB9CAE34D3A215CF 1944576 ----a-w- C:\WINDOWS\System32\InputService.dll 2016-01-27 18:59:33 ADF1802719E1C3F5B3093EB2566F109E 18678272 ----a-w- C:\WINDOWS\System32\edgehtml.dll 2016-01-27 18:59:31 8FA6855FCD9F683BC6761B97F7F48408 13018624 ----a-w- C:\WINDOWS\System32\Windows.UI.Xaml.dll 2016-01-27 18:59:30 86128937B83E51BF543CBCB854AE4FFC 405568 ----a-w- C:\WINDOWS\System32\AudioSes.dll 2016-01-27 18:59:30 76D352B877C990F96B7B85CA95C15BD3 608256 ----a-w- C:\WINDOWS\System32\MapsStore.dll 2016-01-27 18:59:30 104ED5E318C5EED6178BE9F4B4E1E5A2 4759040 ----a-w- C:\WINDOWS\System32\d2d1.dll 2016-01-27 18:59:29 9F403CC92DC7B18F204FC364CE89FE7C 297072 ----a-w- C:\WINDOWS\System32\audiodg.exe 2016-01-27 18:59:29 973E60E30EA0364525DC5F359CB061EA 1552896 ----a-w- C:\WINDOWS\System32\wlidsvc.dll 2016-01-27 18:59:29 8A26A15B852AF385469AD62865CCAE7F 2050048 ----a-w- C:\WINDOWS\System32\inetcpl.cpl 2016-01-27 18:59:29 5814754D92DBD471D5AB7437B20EE3F0 687616 ----a-w- C:\WINDOWS\System32\msfeeds.dll 2016-01-27 18:59:29 2236E31FDBF29B5C4B6E36F355347DD8 1300016 ----a-w- C:\WINDOWS\System32\WpcMon.exe 2016-01-27 18:59:29 0B202554398DBFDEE5777CDC2E6C8254 364168 ----a-w- C:\WINDOWS\System32\services.exe 2016-01-27 18:59:28 F9EB151571AB85B2F7A035B5CAB6475F 959840 ----a-w- C:\WINDOWS\System32\aeinv.dll 2016-01-27 18:59:28 A680339559FBC02BC0854D73DDE85C7B 1174008 ----a-w- C:\WINDOWS\System32\msctf.dll 2016-01-27 18:59:28 848606B6742D80BF6A7DD30E580BA7A9 1626624 ----a-w- C:\WINDOWS\System32\dwmcore.dll 2016-01-27 18:59:28 7D81335F3FCD9C37DE3C8C9989428C99 431240 ----a-w- C:\WINDOWS\System32\WWanAPI.dll 2016-01-27 18:59:28 789FB26FFDE8D0B6FAA6B778853CF0B4 1223168 ----a-w- C:\WINDOWS\System32\RecoveryDrive.exe 2016-01-27 18:59:28 53F74B2F4AEA9C6A7BB9DABDCC3C7431 613888 ----a-w- C:\WINDOWS\System32\winhttp.dll 2016-01-27 18:59:28 3A280280AEA583EAB0375C330F7A6CE9 335872 ----a-w- C:\WINDOWS\System32\iedkcs32.dll 2016-01-27 18:59:27 B470D227166B2193174278AF6CD248FD 2977280 ----a-w- C:\WINDOWS\System32\win32kfull.sys 2016-01-27 18:59:27 5E312BF7E912AAE9DA472B0027C4B8A9 709688 ----a-w- C:\WINDOWS\System32\mfsvr.dll 2016-01-27 18:59:27 502937AB9A06F98B60232ACFAA2BF404 186368 ----a-w- C:\WINDOWS\System32\ie4uinit.exe 2016-01-27 18:59:27 3F8B09A6D234877025A5EBECF9151F58 162816 ----a-w- C:\WINDOWS\System32\MTF.dll 2016-01-27 18:59:27 3F0A974B1FF6979681AB9F52C3C5BDC0 238080 ----a-w- C:\WINDOWS\System32\AudioEndpointBuilder.dll 2016-01-27 18:59:27 38AE24B1BB6C1D67ED81E63951B781FC 144384 ----a-w- C:\WINDOWS\System32\wscsvc.dll 2016-01-27 18:59:26 B44BC5CC78CF476028D1939A7712BD93 652312 ----a-w- C:\WINDOWS\System32\evr.dll 2016-01-27 18:59:26 A589CD44BDB433F727EE84792FCCF0C0 87040 ----a-w- C:\WINDOWS\System32\MapsBtSvc.dll 2016-01-27 18:59:26 7A48941BD36C50DC2D66F0BBA701A73E 176128 ----a-w- C:\WINDOWS\System32\MTFServer.dll 2016-01-27 18:59:26 4A49EC3B4063CC569134D2BA64FA5022 350720 ----a-w- C:\WINDOWS\System32\CredProvDataModel.dll 2016-01-27 18:59:25 DDC479FA1A36285BFC1EF25B547403C3 273408 ----a-w- C:\WINDOWS\System32\SensorsApi.dll 2016-01-27 18:59:25 B1173096FD6DC41F03B6999354BC1CE4 497664 ----a-w- C:\WINDOWS\System32\StorSvc.dll 2016-01-27 18:59:25 2003BE1653553FBC9D809BA40AEE4D68 1542656 ----a-w- C:\WINDOWS\System32\quartz.dll 2016-01-27 18:59:24 FFC1668489B3FD901A152CEAA5145BEA 168360 ----a-w- C:\WINDOWS\System32\wscapi.dll 2016-01-27 18:59:24 F70E740860B62BB2AFF19095933D8D1B 398848 ----a-w- C:\WINDOWS\System32\srcore.dll 2016-01-27 18:59:24 A18F8AAC3EEBDF2D98A82A66C327404F 411136 ----a-w- C:\WINDOWS\System32\SmsRouterSvc.dll 2016-01-27 18:59:23 A60B02C7D70EEBF8E362BA5C06339177 366224 ----a-w- C:\WINDOWS\System32\AUDIOKSE.dll 2016-01-27 18:59:22 FAA5A3DE34FD44C220691C4527E88453 157696 ----a-w- C:\WINDOWS\System32\SimCfg.dll 2016-01-27 18:59:22 EADB21EC74FCD3391A3C6631CCDE9B2C 1028608 ----a-w- C:\WINDOWS\System32\wifinetworkmanager.dll 2016-01-27 18:59:22 B3A8463C47E0E7007382A12176ACBD46 200704 ----a-w- C:\WINDOWS\System32\DisplayManager.dll 2016-01-27 18:59:22 B33A7EE529960BB112C95F875875491B 433504 ----a-w- C:\WINDOWS\System32\devinv.dll 2016-01-27 18:59:22 8984242A86764C5BD97D539EA40FA9B4 60416 ----a-w- C:\WINDOWS\System32\SMSRouter.dll 2016-01-27 18:59:22 8880848DC5DEE8BF8FE34DBC57C5655C 129024 ----a-w- C:\WINDOWS\System32\SimAuth.dll 2016-01-27 18:59:22 559358D3C39A1EC0D944714C32FAD582 799744 ----a-w- C:\WINDOWS\System32\rasdlg.dll 2016-01-27 18:59:22 5561E40D95AC576A9CCDF6D0BA577354 599904 ----a-w- C:\WINDOWS\System32\invagent.dll 2016-01-27 18:59:22 3DC2B14F0D9AB2358F1F99B75B4DA076 325120 ----a-w- C:\WINDOWS\System32\MusUpdateHandlers.dll 2016-01-27 18:59:22 220AC8BC8061A93A1A962CE8A4C4AB00 140800 ----a-w- C:\WINDOWS\System32\MusNotification.exe 2016-01-27 18:59:22 163520CFB807FF90F8E0605BDE52EFF7 48128 ----a-w- C:\WINDOWS\System32\MusNotificationUx.exe 2016-01-27 18:59:22 04A0DAFAD2CA21DE28057F05BF63A967 463360 ----a-w- C:\WINDOWS\System32\enterprisecsps.dll 2016-01-27 18:59:21 DBE39E4BDCC3D8F49A2B0277652120D0 41984 ----a-w- C:\WINDOWS\System32\pcaui.exe 2016-01-27 18:59:21 9797BB52F1943B78CD245B41AE833E1F 653312 ----a-w- C:\WINDOWS\System32\rasapi32.dll 2016-01-27 18:59:21 966DFA9D02276E67B3EBC0EC911E193B 438784 ----a-w- C:\WINDOWS\System32\Windows.Networking.UX.EapRequestHandler.dll 2016-01-27 18:59:21 5FDEA752B7EB1D1C403709636E22E21F 396800 ----a-w- C:\WINDOWS\System32\ipnathlp.dll 2016-01-27 18:59:21 5A414B58FE411CC4F3F84CE0ABDB68F3 133632 ----a-w- C:\WINDOWS\System32\Windows.UI.Core.TextInput.dll 2016-01-27 18:59:21 1C1DC38D8D6E075DE06ED174B9E81FE9 535040 ----a-w- C:\WINDOWS\System32\rastls.dll 2016-01-27 18:59:20 E8E1211E912DB0137E21EA0837E68FFD 11776 ----a-w- C:\WINDOWS\System32\sscoreext.dll 2016-01-27 18:59:20 E465DE0CC69C65F2C88126257B416144 942592 ----a-w- C:\WINDOWS\System32\reseteng.dll 2016-01-27 18:59:20 DAAEFA9CDDAFC2096B8D0D0F2F0AD6F0 107520 ----a-w- C:\WINDOWS\System32\FilterDS.dll 2016-01-27 18:59:20 CF17C8CA575EC10ACDE1671CDED01B73 17408 ----a-w- C:\WINDOWS\System32\rasautou.exe 2016-01-27 18:59:20 B7B67257F01B0B814066F245DAD34367 93696 ----a-w- C:\WINDOWS\System32\winbio.dll 2016-01-27 18:59:20 B745ED5B35D628C4F4D8918930E25188 335360 ----a-w- C:\WINDOWS\System32\DDDS.dll 2016-01-27 18:59:20 9D0BD0FF21F86AE74245A50F657A9F77 382976 ----a-w- C:\WINDOWS\System32\wbiosrvc.dll 2016-01-27 18:59:20 9CBBFF383012199E612FE72877299882 93184 ----a-w- C:\WINDOWS\System32\rasauto.dll 2016-01-27 18:59:20 96D60277EF8CB48BD3D920298C9D7F83 11776 ----a-w- C:\WINDOWS\System32\rastlsext.dll 2016-01-27 18:59:20 650A2E42A8965FEEF24105EF3D19780B 510976 ----a-w- C:\WINDOWS\System32\wlidcli.dll 2016-01-27 18:59:20 4A2AD2C3B186FFE8EFE4DC7AB492F73E 79360 ----a-w- C:\WINDOWS\System32\winhttpcom.dll 2016-01-27 18:59:20 27C3814755F5078A06B3B95CC6BAD111 13312 ----a-w- C:\WINDOWS\System32\rasadhlp.dll 2016-01-27 18:06:21 AD780450655553B8A55B327E2051D42F 2180128 ----a-w- C:\WINDOWS\System32\mfcore.dll 2016-01-27 18:06:20 FB105327027BFD691840687456690BBA 2796032 ----a-w- C:\WINDOWS\System32\Windows.Media.dll 2016-01-27 18:06:08 1F7C4CBC0C5788E3E91C08A3D32F7BB9 1118208 ----a-w- C:\WINDOWS\System32\mfnetsrc.dll 2016-01-27 18:06:07 44CBF47585584D74C3D0C2320031E539 569856 ----a-w- C:\WINDOWS\System32\qdvd.dll 2016-01-27 18:06:05 75C2983A9423BC164FEF05C5DB86022F 5798240 ----a-w- C:\WINDOWS\System32\ntoskrnl.exe 2016-01-27 18:06:03 1661BE40F2ADC5FABF3EEA50655AEA42 5660160 ----a-w- C:\WINDOWS\System32\Chakra.dll 2016-01-27 18:06:02 AD509AC05E94B96768165FA744642AD9 703840 ----a-w- C:\WINDOWS\System32\WWAHost.exe 2016-01-27 18:06:02 15CBF93FDCD9CA05C94FC83722E7F364 706048 ----a-w- C:\WINDOWS\System32\usermgr.dll 2016-01-27 18:06:01 EF3D963CD01DBBBAA7394BB1A638A1BB 116728 ----a-w- C:\WINDOWS\System32\mfps.dll 2016-01-27 18:06:01 6E7BF3FB027D46B7DEFCFFBEF8C4511D 2026736 ----a-w- C:\WINDOWS\System32\msxml6.dll 2016-01-27 18:06:01 0B7C5790893F3650162BED4BEA35D9A6 695752 ----a-w- C:\WINDOWS\System32\WMADMOD.DLL 2016-01-27 18:06:01 0A8409C137B580A3EEB80E33649044F3 701384 ----a-w- C:\WINDOWS\System32\mfnetcore.dll 2016-01-27 18:06:00 A2D4D3DC17A53C0FE5BA36F041F8E9C1 641728 ----a-w- C:\WINDOWS\System32\generaltel.dll 2016-01-27 18:06:00 59ED6F0C5F7AE0311EFB5C57925F02C9 233984 ----a-w- C:\WINDOWS\System32\facecredentialprovider.dll 2016-01-27 18:05:59 B582395C45BEE500A33FDD1F4D6F9F47 3667456 ----a-w- C:\WINDOWS\System32\jscript9.dll 2016-01-27 18:05:59 B01DD7F864A983748A18A7EDAC7EE5E5 1925120 ----a-w- C:\WINDOWS\System32\wuaueng.dll 2016-01-27 18:05:58 D1DCC52ECBC85AB123509C683E8F12AC 123904 ----a-w- C:\WINDOWS\System32\DeviceCensus.exe 2016-01-27 18:05:58 C8892F76C2D15CB1175E3F7A04D07904 890880 ----a-w- C:\WINDOWS\System32\WMSPDMOD.DLL 2016-01-27 18:05:58 2B6C84CF3AE5E1CEE5C763115DAF5FB4 389120 ----a-w- C:\WINDOWS\System32\schannel.dll 2016-01-27 18:05:57 70A2A6670F4F38F66D0759FEA36458D1 1051584 ----a-w- C:\WINDOWS\System32\winload.efi 2016-01-27 18:05:57 30D9F2E3C7195227AF1F5E839A2A5106 926560 ----a-w- C:\WINDOWS\System32\winload.exe 2016-01-27 18:05:56 7BA4B67BDA4222B55FA700E31B63F32D 208176 ----a-w- C:\WINDOWS\System32\mftranscode.dll 2016-01-27 18:05:56 6F9FEEB36510524C956E6E8D987CB1D5 1696176 ----a-w- C:\WINDOWS\System32\WMALFXGFXDSP.dll 2016-01-27 18:05:56 30C2700A2CDEF6042585C9296ABC9054 499432 ----a-w- C:\WINDOWS\System32\advapi32.dll 2016-01-27 18:05:56 0B8C82099C16CC3AF45ABBE9BADC0B0C 498176 ----a-w- C:\WINDOWS\System32\MessagingDataModel2.dll 2016-01-27 18:05:55 A9E33F498846F8440DAC18991BE2B584 1137856 ----a-w- C:\WINDOWS\System32\appraiser.dll 2016-01-27 18:05:55 79061676C5B8CB6C8658D31367CBC548 588288 ----a-w- C:\WINDOWS\System32\PhoneService.dll 2016-01-27 18:05:55 66FC7843E349C68F424EB79E0A17D8D2 493056 ----a-w- C:\WINDOWS\System32\winlogon.exe 2016-01-27 18:05:55 51B550A0FBFA6E04F8595ED0BD99C202 100160 ----a-w- C:\WINDOWS\System32\MP3DMOD.DLL 2016-01-27 18:05:54 D0C48E54B65F6FCF9695D3988E24FB39 149504 ----a-w- C:\WINDOWS\System32\storewuauth.dll 2016-01-27 18:05:54 6CE4F5BC53932C885B2276C2B352065C 34816 ----a-w- C:\WINDOWS\System32\usermgrcli.dll 2016-01-27 18:05:54 627DC6C1A8D38FFC64BF884C2DE90410 573440 ----a-w- C:\WINDOWS\System32\qedit.dll 2016-01-27 18:05:54 626E736B04150EC59601D2D3EEFEDA6D 123392 ----a-w- C:\WINDOWS\System32\ProximityCommon.dll 2016-01-27 18:05:53 94A99147A62D9830676B47D2BFA8FA46 125440 ----a-w- C:\WINDOWS\System32\wshom.ocx 2016-01-27 18:05:53 231B2A35098FF389FF5D7DCC6B9A6E7A 122368 ----a-w- C:\WINDOWS\System32\omadmclient.exe 2016-01-27 18:05:52 4E5E9DF5290C7D41E3E7F57C1DAB616F 353792 ----a-w- C:\WINDOWS\System32\DscCore.dll 2016-01-27 18:05:52 29EF8EC898FE21680DB5FB15DB513EC8 235008 ----a-w- C:\WINDOWS\System32\ksproxy.ax 2016-01-27 18:05:52 132209E26098FCDDEC023B460E68EBEB 1070080 ----a-w- C:\WINDOWS\System32\WMSPDMOE.DLL 2016-01-27 18:05:52 04174F7AC86FBC4C28762DDBC7A8F2A7 1496064 ----a-w- C:\WINDOWS\System32\aitstatic.exe 2016-01-27 18:05:51 EDD93EDB3758471A4862D3CF70FE9007 503296 ----a-w- C:\WINDOWS\System32\vbscript.dll 2016-01-27 18:05:51 866A9F8875D17A47B0D9B08A782D97FF 176128 ----a-w- C:\WINDOWS\System32\aepic.dll 2016-01-27 18:05:51 64F7A89D4DBFA69D40C7C1FF5BB4457E 166912 ----a-w- C:\WINDOWS\System32\UserMgrProxy.dll ====== C:\WINDOWS\system32\drivers ===== 2016-01-27 18:59:24 CF5C7A0974B3EC155D3D8AF8E83C0966 1714016 ----a-w- C:\WINDOWS\System32\drivers\dxgkrnl.sys 2016-01-27 18:59:23 AF074D39573EB28E78D285BFA5891052 483680 ----a-w- C:\WINDOWS\System32\drivers\dxgmms2.sys 2016-01-27 18:59:22 D0D7E162E702F4790A6EA4C0C1102258 771424 ----a-w- C:\WINDOWS\System32\drivers\http.sys 2016-01-27 18:59:20 BE2A61419D971AC8A3C00E027E1FC43F 48640 ----a-w- C:\WINDOWS\System32\drivers\usbser.sys 2016-01-27 18:44:47 22EC3B0EA37CDF4355AE627004F3103C 17008 ----a-w- C:\WINDOWS\System32\drivers\FBIOSDRV.sys 2016-01-27 18:11:57 DF1580E031CE16988B7EBD3CBD93DD84 13312 ----a-w- C:\WINDOWS\System32\drivers\Acceler.sys 2016-01-27 18:11:57 A83FE41FF7731D7D11B59CCAB2DBC3E1 15912 ----a-w- C:\WINDOWS\System32\drivers\stdflt.sys 2016-01-27 18:05:53 A9FADCCBCF0AD8BADB2C117DCD38A31F 743936 ----a-w- C:\WINDOWS\System32\drivers\bthport.sys 2016-01-08 01:00:33 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\System32\drivers\Msft_Kernel_ST_Accel_01009.Wdf 2016-01-08 01:00:31 9E37C04B3ACBB84A7F67F117DD20063C 18992 ----a-w- C:\WINDOWS\System32\drivers\stdcfltn.sys 2016-01-08 00:59:19 ED00DE74768B4B3ED28CF2DDA735CD5C 16896 ----a-w- C:\WINDOWS\System32\drivers\FSCSLII.sys 2016-01-08 00:59:18 C8524293E46A0868CDB749A074BB88B4 176128 ----a-w- C:\WINDOWS\System32\drivers\gtuhsbus.sys 2016-01-08 00:59:17 2CB6FF323E9EADF4C084940806A1CCB8 16384 ----a-w- C:\WINDOWS\System32\drivers\cykbfltr.sys 2016-01-08 00:59:16 47B9225276ECD49FB306F58F7B522CD1 88240 ----a-w- C:\WINDOWS\System32\drivers\ST_Accel.sys 2016-01-08 00:59:13 7E4F338BC6E7C4ECE56ECB6B5BFC81C0 36832 ----a-w- C:\WINDOWS\System32\drivers\btcusb.sys 2016-01-08 00:59:12 B4E9B84C2EFF6E2F28403A8E44926EB5 7424 ----a-w- C:\WINDOWS\System32\drivers\whfltr2k.sys 2016-01-08 00:59:11 1FDEC1042A740A59F2147E34B05E9119 51984 ----a-w- C:\WINDOWS\System32\drivers\amdkmpfd.sys 2016-01-08 00:59:10 B0F7FF5DF8253161DF4C567A2E6D18B7 42496 ----a-w- C:\WINDOWS\System32\drivers\flashud.sys 2016-01-08 00:59:10 4D77C3533F058D90527413FAB4178A4C 29952 ----a-w- C:\WINDOWS\System32\drivers\FscGabi.sys 2016-01-08 00:59:08 68A98D1D7E9E935ECDB6D0B8A2E4AF33 1163680 ----a-w- C:\WINDOWS\System32\drivers\AGRSM.sys 2016-01-08 00:59:06 667CFDB801DF771F47B7C39373C2D850 41216 ----a-w- C:\WINDOWS\System32\drivers\ifxtpm.sys 2016-01-08 00:59:05 D331913BD5FBA600FF020402FC92DE68 80056 ----a-w- C:\WINDOWS\System32\drivers\oz776.sys 2016-01-08 00:59:03 49B4CDED9617FE8F059E6C98AFBB8991 18448 ----a-w- C:\WINDOWS\System32\drivers\necbatt.sys ====== C:\WINDOWS\Tasks ====== 2016-01-29 10:13:35 EAC0B9DC76F8AF9F4E92665C74ECE6CF 284 ----a-w- C:\WINDOWS\Tasks\Uniblue SpeedUpMyPC Nag.job 2016-01-29 10:13:35 EAB2F07D13B2745F7938B4335D8B993A 3006 ----a-w- C:\WINDOWS\system32\Tasks\Uniblue SpeedUpMyPC Nag 2016-01-29 10:13:35 AEBFCF12D8AB6A2F88CBA9A5E2A94248 2528 ----a-w- C:\WINDOWS\system32\Tasks\Uniblue SpeedUpMyPC 2016-01-29 10:13:35 87A22A075AF3AF7737A0E64CC7D2A397 406 ----a-w- C:\WINDOWS\Tasks\Uniblue SpeedUpMyPC.job 2016-01-08 00:13:22 -------- d-----w- C:\WINDOWS\system32\Tasks\TweakBit ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2016-01-29 10:13:18 -------- d-----w- C:\Program Files\Uniblue 2016-01-29 08:45:41 -------- d-----w- C:\Program Files\trend micro 2016-01-27 17:12:41 -------- d-----w- C:\Program Files\Fujitsu Siemens Computers 2016-01-27 17:12:41 -------- d-----w- C:\Program Files\Common Files\Fujitsu Siemens Computers 2016-01-27 17:12:13 -------- d-----w- C:\Program Files\ArcSoft 2016-01-27 17:11:35 -------- d--h--w- C:\Program Files\InstallShield Installation Information 2016-01-08 04:32:31 -------- d-----w- C:\Program Files\Mozilla Maintenance Service 2016-01-08 01:00:25 -------- d-----w- C:\Program Files\STMicroelectronics 2016-01-08 00:59:52 -------- d---a-w- C:\Program Files\LSI SoftModem 2016-01-07 21:22:57 -------- d-----w- C:\Program Files\TweakBit ======= C: ===== ====== C:\Users\Jo\AppData\Roaming ====== 2016-01-08 05:35:23 -------- d-s---r- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2016-01-08 05:35:23 -------- d-----w- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2016-01-08 05:35:23 -------- d-----w- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools 2016-01-08 05:35:23 -------- d-----w- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility 2016-01-08 05:35:23 -------- d-----w- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs 2016-01-08 05:35:23 -------- d-----w- C:\Users\DefaultAppPool\AppData\Roaming 2016-01-08 05:35:23 -------- d-----w- C:\Users\DefaultAppPool\AppData\Local\Temp 2016-01-08 05:35:23 -------- d-----w- C:\Users\DefaultAppPool\AppData\Local\Microsoft Help 2016-01-08 05:35:23 -------- d-----w- C:\Users\DefaultAppPool\AppData\Local\Microsoft 2016-01-08 05:35:23 -------- d-----w- C:\Users\DefaultAppPool\AppData\Local 2016-01-08 05:35:23 -------- d-----r- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2016-01-08 05:35:23 -------- d-----r- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2016-01-08 05:35:23 -------- d-----r- C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2016-01-07 16:01:04 -------- d-----w- C:\Users\Jo\AppData\Local\niemiro 2016-01-05 08:34:39 -------- d-----w- C:\Users\Jo\AppData\Local\Mega Limited ====== C:\Users\Jo ====== 2016-02-01 13:36:18 12B0836D10022CFC6BE3B5A669D9E16B 2001540 ----a-w- C:\Users\Jo\Downloads\pc-decrapifier-3.0.0.exe 2016-02-01 13:20:26 A752F420A0920E5D7A00F9BBF5D3BF51 3286400 ----a-w- C:\Users\Jo\Downloads\SpyHunter-Installer.exe 2016-01-29 10:16:35 7A9E546675D513F2202168C4DCE88FCE 1339440 ----a-w- C:\Users\Jo\Downloads\speedupmypc.exe 2016-01-29 10:13:19 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpeedUpMyPC 3 2016-01-29 08:44:13 8685FAF50C04F9A9C2F56FF64B0B7ACB 1107968 ----a-w- C:\Users\Jo\Downloads\RSIT.exe 2016-01-27 19:51:18 51109B8B12EC0A481AE9ADBDA69EA504 2489760 ----a-w- C:\Users\Jo\Downloads\FTSDeskUpdate(1).exe 2016-01-27 19:47:13 -------- d-----w- C:\ProgramData\Fujitsu 2016-01-27 19:46:53 51109B8B12EC0A481AE9ADBDA69EA504 2489760 ----a-w- C:\Users\Jo\Downloads\FTSDeskUpdate.exe 2016-01-27 18:43:26 7E6954EC3D355F857C094C62D4237911 206013 ----a-w- C:\Users\Jo\Downloads\BIOS_DRV_V1.0.0.2_WIN7-32_CA41534-9022.EXE 2016-01-08 05:35:27 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\DefaultAppPool\ntuser.ini 2016-01-08 05:35:23 -------- d--h--w- C:\Users\DefaultAppPool\AppData 2016-01-08 05:35:23 -------- d-----w- C:\Users\DefaultAppPool\Saved Games 2016-01-08 05:35:23 -------- d-----w- C:\Users\DefaultAppPool\Cookies 2016-01-08 05:35:23 -------- d-----r- C:\Users\DefaultAppPool\Videos 2016-01-08 05:35:23 -------- d-----r- C:\Users\DefaultAppPool\Pictures 2016-01-08 05:35:23 -------- d-----r- C:\Users\DefaultAppPool\Music 2016-01-08 05:35:23 -------- d-----r- C:\Users\DefaultAppPool\Links 2016-01-08 05:35:23 -------- d-----r- C:\Users\DefaultAppPool\Favorites 2016-01-08 05:35:23 -------- d-----r- C:\Users\DefaultAppPool\Downloads 2016-01-08 05:35:23 -------- d-----r- C:\Users\DefaultAppPool\Documents 2016-01-08 05:35:23 -------- d-----r- C:\Users\DefaultAppPool\Desktop 2016-01-07 21:23:00 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TweakBit 2016-01-07 21:01:10 -------- d-----w- C:\ProgramData\TweakBit 2016-01-05 08:34:32 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEGAsync 2016-01-05 08:34:29 -------- d-----w- C:\ProgramData\MEGAsync ====== C: exe-files == 2016-02-01 15:28:49 403ED78A7F9607513C85F32055CDB765 128 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1921061712-3564466377-3991862175-1000\$IFFLNST.exe 2016-02-01 13:36:18 12B0836D10022CFC6BE3B5A669D9E16B 2001540 ----a-w- C:\Users\Jo\Downloads\pc-decrapifier-3.0.0.exe 2016-02-01 13:20:26 A752F420A0920E5D7A00F9BBF5D3BF51 3286400 ----a-w- C:\Users\Jo\Downloads\SpyHunter-Installer.exe 2016-01-29 10:16:35 7A9E546675D513F2202168C4DCE88FCE 1339440 ----a-w- C:\Users\Jo\Downloads\speedupmypc.exe 2016-01-29 10:13:19 AF521E400AB12D1F3FC051F79298DEDC 54552 ----a-w- C:\Program Files\Uniblue\SpeedUpMyPC 3\KillSUMP.exe 2016-01-29 10:13:18 C0D3B3C7C9D9BC72771D7DEAC5F8E82B 691545 ----a-w- C:\Program Files\Uniblue\SpeedUpMyPC 3\unins000.exe 2016-01-29 10:13:18 A6E84CFD108F024313C08AB99DFB4198 156952 ----a-w- C:\Program Files\Uniblue\SpeedUpMyPC 3\StartSUMP2.exe 2016-01-29 10:13:18 8C862B9C28BC7190526ABFDCD2D0FC24 9442584 ----a-w- C:\Program Files\Uniblue\SpeedUpMyPC 3\SpeedUpMyPC.exe 2016-01-29 10:13:18 17C5F68E8093D3BC2FC9EDE6DD28D255 156952 ----a-w- C:\Program Files\Uniblue\SpeedUpMyPC 3\StartSUMP.exe 2016-01-29 08:45:42 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Jo.exe 2016-01-29 08:44:13 8685FAF50C04F9A9C2F56FF64B0B7ACB 1107968 ----a-w- C:\Users\Jo\Downloads\RSIT.exe 2016-01-27 19:51:18 51109B8B12EC0A481AE9ADBDA69EA504 2489760 ----a-w- C:\Users\Jo\Downloads\FTSDeskUpdate(1).exe 2016-01-27 19:46:53 51109B8B12EC0A481AE9ADBDA69EA504 2489760 ----a-w- C:\Users\Jo\Downloads\FTSDeskUpdate.exe 2016-01-27 18:59:35 41B7A5B9B47FEE9EADA56C45E6FE27EF 5055856 ----a-w- C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe 2016-01-27 18:59:29 9F403CC92DC7B18F204FC364CE89FE7C 297072 ----a-w- C:\Windows\System32\audiodg.exe 2016-01-27 18:59:29 2236E31FDBF29B5C4B6E36F355347DD8 1300016 ----a-w- C:\Windows\System32\WpcMon.exe 2016-01-27 18:59:29 0B202554398DBFDEE5777CDC2E6C8254 364168 ----a-w- C:\Windows\System32\services.exe 2016-01-27 18:59:28 789FB26FFDE8D0B6FAA6B778853CF0B4 1223168 ----a-w- C:\Windows\System32\RecoveryDrive.exe 2016-01-27 18:59:27 502937AB9A06F98B60232ACFAA2BF404 186368 ----a-w- C:\Windows\System32\ie4uinit.exe 2016-01-27 18:59:22 220AC8BC8061A93A1A962CE8A4C4AB00 140800 ----a-w- C:\Windows\System32\MusNotification.exe 2016-01-27 18:59:22 163520CFB807FF90F8E0605BDE52EFF7 48128 ----a-w- C:\Windows\System32\MusNotificationUx.exe 2016-01-27 18:59:21 DBE39E4BDCC3D8F49A2B0277652120D0 41984 ----a-w- C:\Windows\System32\pcaui.exe 2016-01-27 18:59:21 8DA5574E1AB018766B499E78B8E242F4 116224 ----a-w- C:\Windows\System32\oobe\windeploy.exe 2016-01-27 18:59:20 CF17C8CA575EC10ACDE1671CDED01B73 17408 ----a-w- C:\Windows\System32\rasautou.exe 2016-01-27 18:59:20 5BD26C1FD29FE0A3A42141CCAF21D5B3 491520 ----a-w- C:\Windows\System32\IME\IMEJP\IMJPDCT.EXE 2016-01-27 18:59:20 382373ABEE845935E34BCBAD50E4D5C5 250368 ----a-w- C:\Windows\System32\IME\SHARED\ImeBroker.exe 2016-01-27 18:44:47 8863ED094B8E0EAAD9A0FBAE213FBD73 91312 ----a-w- C:\drivers\BIOS_DRV_V1.0.0.2_WIN7-32_CA41534-9022\Setup.exe 2016-01-27 18:43:26 7E6954EC3D355F857C094C62D4237911 206013 ----a-w- C:\Users\Jo\Downloads\BIOS_DRV_V1.0.0.2_WIN7-32_CA41534-9022.EXE 2016-01-27 18:11:57 E4B1414D0F5AE3DC2942FCD9384D7B2D 74752 ----a-w- C:\Program Files\STMicroelectronics\Accelerometer\devcon.exe 2016-01-27 18:11:57 DCF1612095BA851189629E2A0CF2F9E9 65536 ----a-w- C:\Program Files\STMicroelectronics\Accelerometer\cataInst.exe 2016-01-27 18:11:57 D1EB42A5C684F2ECEE0E5B7946BE8AD3 11776 ----a-w- C:\Program Files\STMicroelectronics\Accelerometer\addfltr.exe 2016-01-27 18:11:57 6AA65704531CE37F38C6636B2511FD75 10240 ----a-w- C:\Program Files\STMicroelectronics\Accelerometer\install.exe 2016-01-27 18:11:57 448CE26EDE120DC89DFFCE33640ABF5D 167936 ----a-w- C:\Program Files\STMicroelectronics\Accelerometer\DrvInst.exe 2016-01-27 18:11:56 1108B166160D6023AF76435B074052B6 455600 ----a-w- C:\Program Files\InstallShield Installation Information\{87434D51-51DB-4109-B68F-A829ECDCF380}\setup.exe 2016-01-27 18:06:14 5D06AD56F38BDB5694B5CDCA58212ED4 6082912 ----a-w- C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe 2016-01-27 18:06:13 D93FED9BDC1F20EA81B6EB9D1FDC47ED 80896 ----a-w- C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\ActionUriServer.exe 2016-01-27 18:06:12 E10892ABBCF7B7107E90BF418C015E07 171008 ----a-w- C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe 2016-01-27 18:06:05 75C2983A9423BC164FEF05C5DB86022F 5798240 ----a-w- C:\Windows\System32\ntoskrnl.exe 2016-01-27 18:06:02 AD509AC05E94B96768165FA744642AD9 703840 ----a-w- C:\Windows\System32\WWAHost.exe 2016-01-27 18:05:58 D1DCC52ECBC85AB123509C683E8F12AC 123904 ----a-w- C:\Windows\System32\DeviceCensus.exe 2016-01-27 18:05:57 30D9F2E3C7195227AF1F5E839A2A5106 926560 ----a-w- C:\Windows\System32\winload.exe 2016-01-27 18:05:57 30D9F2E3C7195227AF1F5E839A2A5106 926560 ----a-w- C:\Windows\System32\Boot\winload.exe 2016-01-27 18:05:55 66FC7843E349C68F424EB79E0A17D8D2 493056 ----a-w- C:\Windows\System32\winlogon.exe 2016-01-27 18:05:53 231B2A35098FF389FF5D7DCC6B9A6E7A 122368 ----a-w- C:\Windows\System32\omadmclient.exe 2016-01-27 18:05:52 04174F7AC86FBC4C28762DDBC7A8F2A7 1496064 ----a-w- C:\Windows\System32\aitstatic.exe === C: other files == 2016-01-29 14:00:36 224F9A3409264221343F5BBF5A2B507E 1727 ----a-w- C:\Users\Jo\AppData\Roaming\Uniblue\SpeedUpMyPC\backup\20160129.150036.zip 2016-01-27 18:59:27 B470D227166B2193174278AF6CD248FD 2977280 ----a-w- C:\Windows\System32\win32kfull.sys 2016-01-27 18:59:24 CF5C7A0974B3EC155D3D8AF8E83C0966 1714016 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys 2016-01-27 18:59:23 AF074D39573EB28E78D285BFA5891052 483680 ----a-w- C:\Windows\System32\drivers\dxgmms2.sys 2016-01-27 18:59:22 D0D7E162E702F4790A6EA4C0C1102258 771424 ----a-w- C:\Windows\System32\drivers\http.sys 2016-01-27 18:59:20 BE2A61419D971AC8A3C00E027E1FC43F 48640 ----a-w- C:\Windows\System32\DriverStore\FileRepository\usbser.inf_x86_81ad3a31b6920907\usbser.sys 2016-01-27 18:59:20 BE2A61419D971AC8A3C00E027E1FC43F 48640 ----a-w- C:\Windows\System32\drivers\usbser.sys 2016-01-27 18:44:47 22EC3B0EA37CDF4355AE627004F3103C 17008 ----a-w- C:\Windows\System32\DriverStore\FileRepository\fbiosdrv.inf_x86_52a5e1e7aba2e62f\FBIOSDRV.sys 2016-01-27 18:44:47 22EC3B0EA37CDF4355AE627004F3103C 17008 ----a-w- C:\Windows\System32\drivers\FBIOSDRV.sys 2016-01-27 18:44:47 22EC3B0EA37CDF4355AE627004F3103C 17008 ----a-w- C:\drivers\BIOS_DRV_V1.0.0.2_WIN7-32_CA41534-9022\!Set\fbiosdrv.sys 2016-01-27 18:32:53 E3EBDDA93BD751D29CBA021AAA4D91D1 12965 ----a-w- C:\Users\Jo\Downloads\FTS_FujitsuSiemensGABIBIOSinterfacedriver_6016_1024658(1).zip 2016-01-27 18:11:57 DF1580E031CE16988B7EBD3CBD93DD84 13312 ----a-w- C:\Windows\System32\DriverStore\FileRepository\acceler.inf_x86_608a8595e542ff37\Acceler.sys 2016-01-27 18:11:57 DF1580E031CE16988B7EBD3CBD93DD84 13312 ----a-w- C:\Windows\System32\drivers\Acceler.sys 2016-01-27 18:11:57 DF1580E031CE16988B7EBD3CBD93DD84 13312 ----a-w- C:\Program Files\STMicroelectronics\Accelerometer\Sensor Driver\acceler.sys 2016-01-27 18:11:57 A83FE41FF7731D7D11B59CCAB2DBC3E1 15912 ----a-w- C:\Windows\System32\drivers\stdflt.sys 2016-01-27 18:11:57 A83FE41FF7731D7D11B59CCAB2DBC3E1 15912 ----a-w- C:\Program Files\STMicroelectronics\Accelerometer\Filter Driver\stdflt.sys 2016-01-27 18:05:53 A9FADCCBCF0AD8BADB2C117DCD38A31F 743936 ----a-w- C:\Windows\System32\DriverStore\FileRepository\bth.inf_x86_4501ba03a44b9d1f\bthport.sys 2016-01-27 18:05:53 A9FADCCBCF0AD8BADB2C117DCD38A31F 743936 ----a-w- C:\Windows\System32\drivers\bthport.sys 2016-01-27 18:05:52 2139852EC395E6885181BE1777FA440B 200192 ----a-w- C:\Windows\System32\DriverStore\FileRepository\bthleenum.inf_x86_7cc514ea35449256\BthLEEnum.sys 2016-01-27 17:58:46 E3EBDDA93BD751D29CBA021AAA4D91D1 12965 ----a-w- C:\Users\Jo\Downloads\FTS_FujitsuSiemensGABIBIOSinterfacedriver_6016_1024658.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "GarminExpressTrayApp"="C:\Program Files\Garmin\Express Tray\ExpressTray.exe" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\System32\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\System32\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-21-1921061712-3564466377-3991862175-1000\Software\Microsoft\Windows\CurrentVersion\Run] "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner.exe /MONITOR" "iCloudServices"="C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe" "ApplePhotoStreams"="C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" "VoipConnect"="C:\Program Files\VoipConnect.com\VoipConnect\VoipConnect.exe -nosplash -minimized" "Dropbox Update"="C:\Users\Jo\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c" "OneDrive"="C:\Users\Jo\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "GarminExpressTrayApp"="C:\Program Files\Garmin\Express Tray\ExpressTray.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe " "iSkysoft Helper Compact.exe"="C:\Program Files\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe" "EaseUS EPM tray"="C:\Program Files\EaseUS\EaseUS Partition Master 10.8\bin\EpmNews.exe" "EaseUS EPM Tray Agent"="C:\Program Files\EaseUS\EaseUS Partition Master 10.8\bin\TrayPopupE\TrayTipAgentE.exe" "EaseUS TB Tray Agent"="C:\Program Files\EaseUS\TrayPopup\TrayTipAgent.exe" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner.exe /MONITOR" "iCloudServices"="C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe" "ApplePhotoStreams"="C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" "VoipConnect"="C:\Program Files\VoipConnect.com\VoipConnect\VoipConnect.exe -nosplash -minimized" "Dropbox Update"="C:\Users\Jo\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c" "OneDrive"="C:\Users\Jo\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AppleIEDAV] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="AppleIEDAV" "hkey"="HKCU" "command"="C:\\Program Files\\Common Files\\Apple\\Internet Services\\AppleIEDAV.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ApplePhotoStreams] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="ApplePhotoStreams" "hkey"="HKCU" "command"="C:\\Program Files\\Common Files\\Apple\\Internet Services\\ApplePhotoStreams.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\iCloudServices] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="iCloudServices" "hkey"="HKCU" "command"="C:\\Program Files\\Common Files\\Apple\\Internet Services\\iCloudServices.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\iTunesHelper] "command"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\"" "hkey"="HKLM" "item"="iTunesHelper" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\QuickTime Task] "command"="\"C:\\Program Files\\QuickTime\\QTTask.exe\" -atboottime" "hkey"="HKLM" "item"="QuickTime Task" "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TuneUp.UtilitiesSvc] ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a-------- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [07-12-2015 20:06] C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job --a-------- C:\WINDOWS\explorer.exe [30-10-2015 06:45] C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-1921061712-3564466377-3991862175-1000Core1d0c26f7464a913.job --a-------- C:\Users\Jo\AppData\Local\Dropbox\Update\DropboxUpdate.exe [27-06-2015 10:12] C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-1921061712-3564466377-3991862175-1000Core.job --a-------- C:\Users\Jo\AppData\Local\Facebook\Update\FacebookUpdate.exe [04-02-2015 03:14] C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-1921061712-3564466377-3991862175-1000UA.job --a-------- C:\Users\Jo\AppData\Local\Facebook\Update\FacebookUpdate.exe [04-02-2015 03:14] C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job --a-------- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [06-08-2014 09:14] C:\WINDOWS\tasks\Uniblue SpeedUpMyPC Nag.job --a-------- C:\Program Files\Uniblue\SpeedUpMyPC 3\SpeedUpMyPC.exe [29-01-2008 09:46] C:\WINDOWS\tasks\Uniblue SpeedUpMyPC.job --a-------- C:\Program Files\Uniblue\SpeedUpMyPC 3\SpeedUpMyPC.exe [29-01-2008 09:46] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\system32\tasks\Adobe Acrobat Update Task" [C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\WINDOWS\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\WINDOWS\system32\tasks\Adobe-online actualiseringsprogramma" [C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\WINDOWS\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\WINDOWS\system32\tasks\FacebookUpdateTaskUserS-1-5-21-1921061712-3564466377-3991862175-1000Core" [C:\Users\Jo\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\WINDOWS\system32\tasks\FacebookUpdateTaskUserS-1-5-21-1921061712-3564466377-3991862175-1000UA" [C:\Users\Jo\AppData\Local\Facebook\Update\FacebookUpdate.exe] "C:\WINDOWS\system32\tasks\GarminUpdaterTask" [C:\Program Files\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe] "C:\WINDOWS\system32\tasks\Uniblue SpeedUpMyPC" [C:\Program Files\Uniblue\SpeedUpMyPC 3\SpeedUpMyPC.exe] "C:\WINDOWS\system32\tasks\Uniblue SpeedUpMyPC Nag" [C:\Program Files\Uniblue\SpeedUpMyPC 3\SpeedUpMyPC.exe] "C:\WINDOWS\system32\tasks\User_Feed_Synchronization-{21016933-59BE-4318-B837-35F2B2D67C2F}" [C:\WINDOWS\system32\msfeedssync.exe] "C:\WINDOWS\system32\tasks\TweakBit\Driver Updater\Start Driver Updater automatic scanning" [C:\Program Files\TweakBit\Driver Updater\DriverUpdater.exe] "C:\WINDOWS\system32\tasks\TweakBit\Driver Updater\Start Driver Updater ?n logon" [C:\Program Files\TweakBit\Driver Updater\DriverUpdater.exe] "C:\WINDOWS\system32\tasks\TweakBit\FixMyPC\Start FixMyPC automatic scanning" [C:\Program Files\TweakBit\FixMyPC\FixMyPC.exe] "C:\WINDOWS\system32\tasks\TweakBit\PCBooster\Start PCBooster ?n logon" [C:\Program Files\TweakBit\PCBooster\PCBooster.exe] "C:\WINDOWS\system32\tasks\TweakBit\PCCleaner\Start PCCleaner automatic scanning" [C:\Program Files\TweakBit\PCCleaner\PCCleaner.exe] "C:\WINDOWS\system32\tasks\TweakBit\PCCleaner\Start PCCleaner ?n logon" [C:\Program Files\TweakBit\PCCleaner\PCCleaner.exe] ==== Firefox Start and Search pages ====================== ProfilePath: C:\Users\Jo\AppData\Roaming\Mozilla\Firefox\Profiles\w1k9b9wh.default user_pref("browser.startup.homepage", "https://www.google.be/"); user_pref("browser.search.defaultenginename", "Bing "); user_pref("browser.search.selectedEngine", "Bing "); user_pref("keyword.URL", "http://www.bing.com/search?FORM=UP97DF&PC=UP97&q="); ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [07-05-2015 15:34] ==== Firefox Extensions ====================== AppDir: C:\Program Files\Mozilla Firefox - Belgium eID - %AppDir%\extensions\belgiumeid@eid.belgium.be - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Jo\AppData\Roaming\Mozilla\Firefox\Profiles\w1k9b9wh.default 999A833D87C8CD918B5EE8C3F8149D2B - C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll - Adobe Acrobat F0E80E561C3F715DB01ACCC97B72463A - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Photo Gallery C45A130CA14334073C0FF795897A1D22 - c:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll - Silverlight Plug-In BE40D3882DCDC3E4BD8B284B8D5F4FDB - C:\Program Files\Garmin GPS Plugin\npGarmin.dll - Garmin Communicator Plug-In 46A59E6F7F7C1679AC7C4655E055326D - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll - iTunes Application Detector 166FEB542F936C44924737D5DC4306FF - C:\Users\Jo\AppData\Roaming\D-Link\mydlink services plugin\1.0.2.6\npUplayer.dll - mydlink services plugin D2B5242013356AF422A42B9FAA4056C2 - C:\Users\Jo\AppData\Roaming\VASCO\VascoCardReaderPlugin\3.2.3.2\npVascoCardReaderPlugin.dll - VASCO Card Reader Plugin 3CD19649B2C3023D65E67C056457A2BC - C:\Users\Jo\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll - Facebook Video Calling Plugin B24F014C6DDA5A39CE7FCB2A8B862C5A - c:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrlui.dll - Microsoft® Silverlight ==== Chromium Look ====================== Google Slides - Jo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Jo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Jo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Jo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Jo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Sheets - Jo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Google Docs Offline - Jo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Avast Online Security - Jo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki Chrome Web Store Payments - Jo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Jo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="https://www.google.be/" "SearchMigratedDefaultURL"="http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] @="http://www.google.com/search?q=%s" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://www.google.com/ie" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "SearchAssistant"="http://www.google.com/ie" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "SearchMigratedDefaultURL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="https://www.google.be/" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm" ==== All HKLM and HKCU SearchScopes ====================== HKLM\SearchScopes "DefaultScope"="" HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKLM\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} - http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{0442484A-B4C2-4290-8135-6D738DB7D0ED} - http://www.google.be/search?hl=nl&q={searchTerms}&sourceid=ie8&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02 HKCU\SearchScopes\{226A6569-93FB-48B0-9402-D8B9FDD519E7} - http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8&rlz=1I7ADFA_nl HKCU\SearchScopes\{263EBD3D-8C7E-4ED1-8BB0-BE5F4356D21E} - https://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} - http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1921061712-3564466377-3991862175-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} deleted successfully HKEY_USERS\S-1-5-21-1921061712-3564466377-3991862175-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} deleted successfully HKEY_USERS\S-1-5-21-1921061712-3564466377-3991862175-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9} deleted successfully HKEY_USERS\S-1-5-21-1921061712-3564466377-3991862175-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DBC80044-A445-435B-BC74-9C25C1C588A9} deleted successfully HKEY_CLASSES_ROOT\CLSID\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} deleted successfully HKEY_CLASSES_ROOT\CLSID\{DBC80044-A445-435B-BC74-9C25C1C588A9} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_USERS\S-1-5-21-1921061712-3564466377-3991862175-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} deleted successfully HKEY_USERS\S-1-5-21-1921061712-3564466377-3991862175-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{DBC80044-A445-435B-BC74-9C25C1C588A9} deleted successfully ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\5392EF0065BF0144BAF56D7EC071172D deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{00FE2935-FB56-4410-AB5F-D6E70C1771D2} deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{EA0B13D1-B51B-45F3-BD50-1D2E6A4EB4EC} deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{62D64B30-6E10-4C49-95FE-EDD8F8165DED}_is1 deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E55B3271-7CA8-4D0C-AE06-69A24856E996}_is1 deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\5392EF0065BF0144BAF56D7EC071172D deleted successfully HKEY_CURRENT_USER\Software\Microsoft\Installer\Products\1D31B0AEB15B3F54DB05D1E2A6E44BCE deleted successfully HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task deleted successfully ==== Empty IE Cache ====================== C:\Users\Jo\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Jo\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\Users\TEMP\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Jo\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Jo\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== C:\Users\Jo\AppData\Local\Mozilla\Firefox\Profiles\w1k9b9wh.default\cache2 emptied successfully ==== Empty Chrome Cache ====================== C:\Users\Jo\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== No Flash Cache Found ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=112 folders=75 172827184 bytes) ==== Empty Temp Folders ====================== C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\Jo\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on ma 01-02-2016 at 17:47:34,27 ======================