Zoek.exe v5.0.0.1 Updated 31-December-2015 Tool run by DABL_Bart on di 01/03/2016 at 18:40:45,00. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\DABL_Bart\Downloads\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 1/03/2016 18:41:37 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\Users\DABL_Bart\AppData\Local\CrashDumps deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\ProgramData\Avg_Update_1215avz deleted C:\windows\SysNative\Tasks\1215avzUpdateInfo deleted C:\Windows\tasks\1215avzUpdateInfo.job deleted C:\PROGRA~3\Package Cache deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2016-02-16 15:20:28 9D77CC4A36FEEA644D002CFB9B2D42C0 3231232 ----a-w- C:\Windows\explorer.exe ====== C:\Users\DABL_B~1\AppData\Local\Temp ==== 2016-03-01 14:01:05 F293B373A655686501203FBE09D4F23F 336896 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797_permissionsCopy\updates\7.9.5_41373\utorrentie.exe 2016-03-01 14:01:05 EA0A9681795139347B1EE6C4D94196F6 1836648 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797_permissionsCopy\updates\7.9.5_41163.exe 2016-03-01 14:01:05 DCEED703FC3B958B18A690A79D94E43A 1977192 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797_permissionsCopy\updates\7.9.5_41203.exe 2016-03-01 14:01:05 C4ACBE11BCC9195781E204EC088D5FFC 1903648 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797_permissionsCopy\updates\7.9.5_41713.exe 2016-03-01 14:01:05 8FE478638E87F790EF1BBE01BD60D22C 1873952 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797_permissionsCopy\updates\7.9.5_41373.exe 2016-03-01 14:01:05 571C245CC6163F491D005E8CB2E908C7 335872 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797_permissionsCopy\updates\7.9.5_41713\utorrentie.exe 2016-03-01 14:01:05 4033E1802B2008A595D432482ED2C54C 336896 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797_permissionsCopy\updates\7.9.5_41163\utorrentie.exe 2016-03-01 14:01:05 249B39859BD6EDD3F102BD442199769F 336896 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797_permissionsCopy\updates\7.9.5_41203\utorrentie.exe ====== Java Cache ===== 2016-02-07 14:05:53 008F5EF764068AE984CE9D9F1155590B 150146 ----a-w- C:\Users\DABL_Bart\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\46\2f37ccae-6bcc4d37 ====== C:\Windows\SysWOW64 ===== ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== ====== C:\Windows\Sysnative\drivers ===== 2016-03-01 13:57:50 78488AF2AB2111D67B3C4044707A519B 192216 ----a-w- C:\Windows\Sysnative\drivers\MBAMSwissArmy.sys 2016-03-01 13:57:32 D61070CFAD43038DC56AEAD9BFE9CE2A 63704 ----a-w- C:\Windows\Sysnative\drivers\mwac.sys 2016-03-01 13:57:32 CFBC6C6D8A492697CABD1D353EE64933 25816 ----a-w- C:\Windows\Sysnative\drivers\mbam.sys 2016-03-01 13:57:32 42B3F5C9FBC9B3F0E0BA6B5D7FC8E849 109272 ----a-w- C:\Windows\Sysnative\drivers\mbamchameleon.sys 2016-02-16 15:21:11 D7ADC2B83CA0B0381F75A98351F72CEE 141312 ----a-w- C:\Windows\Sysnative\drivers\mrxdav.sys 2016-02-16 15:20:43 BA500732D160C61E889E8180EE53C86F 154560 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys 2016-02-16 15:20:43 A16FC9323A85CAEA5804D04646A91CF9 290816 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb10.sys 2016-02-16 15:20:43 7BDDD24C5A148534D3737DBFA96B3E69 95680 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys 2016-02-16 15:20:43 355DF71D1DD1999E8AEDF986534B233C 159232 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb.sys 2016-02-16 15:20:42 2539BE615440BA1EA4CF84A66B6C0AF9 129024 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb20.sys ====== C:\Windows\Tasks ====== ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2016-03-01 14:08:16 -------- d-----w- C:\Program Files\trend micro ======= C:\PROGRA~2 ===== 2016-02-27 15:24:07 -------- d-----w- C:\PROGRA~2\COMMON~1\DESIGNER 2016-02-07 14:25:15 -------- d-----w- C:\PROGRA~2\COMMON~1\Java ======= C: ===== ====== C:\Users\DABL_Bart\AppData\Roaming ====== ====== C:\Users\DABL_Bart ====== 2016-03-01 14:07:41 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\DABL_Bart\Downloads\RSITx64.exe 2016-03-01 13:52:39 49E3825ACB348F848D9B841E4D48FD3B 22908888 ----a-w- C:\Users\DABL_Bart\Downloads\mbam-setup-2.2.0.1024.exe 2016-03-01 13:47:11 BB3219EBC560B80551F94BFC70EA60C2 6837784 ----a-w- C:\Users\DABL_Bart\Downloads\ccsetup515.exe 2016-02-28 17:17:57 7D54D51615F50430009B9532CCAF4D97 125168408 ----a-w- C:\Users\DABL_Bart\Downloads\icloudsetup.exe ====== C: exe-files == 2016-03-01 14:08:18 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\DABL_Bart.exe 2016-03-01 14:07:41 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\DABL_Bart\Downloads\RSITx64.exe 2016-03-01 14:01:05 F293B373A655686501203FBE09D4F23F 336896 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797_permissionsCopy\updates\7.9.5_41373\utorrentie.exe 2016-03-01 14:01:05 EA0A9681795139347B1EE6C4D94196F6 1836648 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797_permissionsCopy\updates\7.9.5_41163.exe 2016-03-01 14:01:05 DCEED703FC3B958B18A690A79D94E43A 1977192 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797_permissionsCopy\updates\7.9.5_41203.exe 2016-03-01 14:01:05 C4ACBE11BCC9195781E204EC088D5FFC 1903648 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797_permissionsCopy\updates\7.9.5_41713.exe 2016-03-01 14:01:05 8FE478638E87F790EF1BBE01BD60D22C 1873952 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797_permissionsCopy\updates\7.9.5_41373.exe 2016-03-01 14:01:05 571C245CC6163F491D005E8CB2E908C7 335872 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797_permissionsCopy\updates\7.9.5_41713\utorrentie.exe 2016-03-01 14:01:05 4033E1802B2008A595D432482ED2C54C 336896 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797_permissionsCopy\updates\7.9.5_41163\utorrentie.exe 2016-03-01 14:01:05 249B39859BD6EDD3F102BD442199769F 336896 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797_permissionsCopy\updates\7.9.5_41203\utorrentie.exe 2016-03-01 13:52:39 49E3825ACB348F848D9B841E4D48FD3B 22908888 ----a-w- C:\Users\DABL_Bart\Downloads\mbam-setup-2.2.0.1024.exe 2016-03-01 13:47:11 BB3219EBC560B80551F94BFC70EA60C2 6837784 ----a-w- C:\Users\DABL_Bart\Downloads\ccsetup515.exe 2016-02-28 17:17:57 7D54D51615F50430009B9532CCAF4D97 125168408 ----a-w- C:\Users\DABL_Bart\Downloads\icloudsetup.exe 2016-02-28 15:58:00 D8ABB1EE680D7984B056580C5E7B8388 2235816 ----a-w- C:\Program Files (x86)\AVG\Setup\avgsetupwrkx.exe 2016-02-28 15:57:59 F55C3197CEFAB359BFE1146AD85F5506 3147176 ----a-w- C:\Program Files (x86)\AVG\Setup\avgsetupx.exe 2016-02-28 15:57:59 731F28E5D839DE0C0E133631036A566D 675240 ----a-w- C:\Program Files (x86)\AVG\Setup\avgntdumpx.exe 2016-02-27 15:47:50 8D677EE90317A10D3369C3885C93B268 1579416 ----a-w- C:\Users\DABL_Bart\AppData\Local\Google\Chrome\User Data\SwReporter\6.44.4\software_reporter_tool.exe 2016-02-27 15:19:34 BDA4BA159FFFA115914F2181B4537B28 223944 ----a-w- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\MSOXMLED.EXE 2016-02-27 15:19:31 E403C4902035CF27E578E17012BCA5B0 121544 ----a-w- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\CSISYNCCLIENT.EXE 2016-02-27 15:19:31 4023F9DB5DF2FDE169C06D1722ED8F5D 185544 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSREC.EXE 2016-02-27 15:19:26 8CB9E83F662F247CD1DB96F7E50D67FE 49864 ----a-w- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesX64\Microsoft Office\Office16\AppSharingHookController64.exe 2016-02-27 15:19:25 68E1291A9A75DB97729CC3101739D0B9 754888 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\protocolhandler.exe 2016-02-27 15:19:20 B3E352350FBCEC27645D230256E3916D 5896904 ----a-w- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\CMigrate.exe 2016-02-27 15:19:17 D4C09C1C77A5388A49A559D6209B6476 192712 ----a-w- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\MSOSQM.EXE 2016-02-27 15:19:14 F30470CEC914950C10328D433FD5E847 8671432 ----a-w- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\CMigrate.exe 2016-02-27 15:18:16 36DDB6B00D16E7B5EB8A339A19E2CB77 104672 ----a-w- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Analysis Services\AS OLEDB\110\SQLDumper.exe 2016-02-27 15:18:13 B76E405F3F8FF9F09411BBA94D7CE257 28928 ----a-w- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\Smart Tag\SmartTagInstall.exe 2016-02-27 15:18:13 4708DC527C988315627302B212F22E1C 212176 ----a-w- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\Source Engine\OSE.EXE 2016-02-27 15:17:39 6C1BCE4A8DF5D3AD80F41248B0E48738 624832 ----a-w- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\MSOICONS.EXE 2016-02-27 15:17:34 21D63F5B2A4572A3737020398735B500 296160 ----a-w- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\FLTLDR.EXE 2016-02-27 15:17:26 5F89462D21CD9640F6012C378B79EAA0 954136 ----a-w- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\DW\DW20.EXE 2016-02-27 15:17:26 18334025E619C2876B41E84990EA1C8C 193864 ----a-w- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\DW\DWTRIG20.EXE 2016-02-27 15:17:22 595577751D5D97699DB7F858C24D965F 3695808 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\XLICONS.EXE 2016-02-27 15:17:16 03B78CCC1C3FD90F1452EEBDA753E9E7 3025600 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\WORDICON.EXE 2016-02-27 15:17:13 76E8C55FBA8A7A33A14759F3DCD11F5E 3519688 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\PPTICO.EXE 2016-02-27 15:16:42 03D5FB8AB755A5E54E9A8754279D7318 1036992 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\misc.exe 2016-02-27 15:16:15 CFC6A19E44A7A42D468DE92C693250DF 28440 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\ADDINS\Microsoft Power Query for Excel Integrated\bin\Microsoft.Mashup.Container.NetFX40.exe 2016-02-27 15:16:08 AC1D0EA2AE138B0BC82BB800A29DD5F8 28440 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\ADDINS\Microsoft Power Query for Excel Integrated\bin\Microsoft.Mashup.Container.NetFX45.exe 2016-02-27 15:16:08 0478081936FB7A5466852AEA02CB135B 28440 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\ADDINS\Microsoft Power Query for Excel Integrated\bin\Microsoft.Mashup.Container.exe 2016-02-27 15:15:42 B5F9F6795AB49C1DF8A4695EE3361F96 2469664 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Integration\Integrator.exe 2016-02-27 15:15:42 A34157E51E538CAC7BC1196B77A24174 3758272 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\ACCICONS.EXE 2016-02-27 15:15:41 70F19BA053C372D66266BE37FE2BB1DE 10306248 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\PDFREFLOW.EXE 2016-02-27 15:15:41 1CC47D0372C03CA04D1E38295D63F118 53504 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Flattener\Flattener.exe 2016-02-27 15:15:40 F4F6B916E5C5EC586B990B2AF9D6A37D 105160 ----a-w- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesX64\Microsoft Office\Office16\MSOHTMED.EXE 2016-02-27 15:15:40 0B23E5EBEB235ABC7C18DA674F8825EF 232648 ----a-w- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLED.EXE 2016-02-27 15:14:47 8A68ED7DDE217A65D0517AFC8B487E40 57544 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\SCANPST.EXE 2016-02-27 15:14:47 33EFAD0E799E0AE4EB6C292F388CCCCC 203464 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\IEContentService.exe 2016-02-27 15:13:57 EDFB0BC1B76FA5C1081BBD9FDC639FEC 89800 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOHTMED.EXE 2016-02-27 15:13:57 AD4B11D086D6D4C54E08C7C72D26EB08 775368 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\FIRSTRUN.EXE 2016-02-27 15:13:57 9D89239CB376A5D5F9CC58A6048C3B59 4418760 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\GRAPH.EXE 2016-02-27 15:13:57 78BBCABC1632F676EA77D6B7770DF46B 38088 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\Wordconv.exe 2016-02-27 15:13:57 4BD9F092210CF4F5CE59ABDCCD9EE92C 375496 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\SELFCERT.EXE 2016-02-27 15:13:57 39B4371AD10FA3D828280ED2200CFDD9 112840 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\NAMECONTROLSERVER.EXE 2016-02-27 15:13:57 205DBFBC39853DB8EA8B5BDE54B49855 389832 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\CLVIEW.EXE 2016-02-27 15:13:57 152301B5463B663AD54AE3A82EB670A7 135368 ----a-w- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\OLicenseHeartbeat.exe 2016-02-27 15:13:56 C9F9F917A12AF622617558978DE42046 26010312 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\excelcnv.exe 2016-02-27 15:13:54 EE02A54FBECEB1430C2925DE2EB9CADF 705224 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\MSQRY32.EXE 2016-02-27 15:13:54 C727AB1A7FE4942C1BAC1C29D00C11DE 178376 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\CNFNOT32.EXE 2016-02-27 15:13:54 BD486A1B5AD7328B240CDC1E1C68C1D0 468168 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSYNC.EXE 2016-02-27 15:13:54 A828D3707E565D429B022702546EC94B 532672 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOUC.EXE 2016-02-27 15:13:54 7676F09CCBE01FD0F2D7DF27CF3B1D97 66760 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\SETLANG.EXE 2016-02-27 15:13:54 62DBE0012FFF4EC5E8C8F46D0EA8E1E9 576704 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\ORGCHART.EXE 2016-02-27 15:13:51 53668CB70C594008C275D8DC9611E82F 317640 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\VPREVIEW.EXE 2016-02-27 15:12:41 E2112E22C8BF7682854DC410F4FD6EBC 215768 ----a-w- C:\Program Files (x86)\Microsoft Office\root\client\AppVDllSurrogate32.exe 2016-02-27 15:12:41 5304413D853D4B6893A362B43340E66B 255192 ----a-w- C:\Program Files (x86)\Microsoft Office\root\client\AppVDllSurrogate64.exe 2016-02-27 15:12:41 2A7436CC64A5910569D0C243100079E8 378520 ----a-w- C:\Program Files (x86)\Microsoft Office\root\client\AppVLP.exe 2016-02-27 15:12:36 DD9884B22DFEEBA015B95FF5C8F76BD8 15770824 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE 2016-02-27 15:12:18 583C17B8C5DBAED4C50228655F6FA451 1697992 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE 2016-02-27 15:12:18 1606923D84FEBEBAFB949A4B307FC393 171208 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE 2016-02-27 15:12:04 32F2FD5851E01EDECFA338427FCB7065 25589960 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE 2016-02-27 15:12:03 1D8395F93748B8B8A3753CC13356050D 1859784 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE 2016-02-27 15:12:02 2084EDEF3E6FEAEFA9BF9FEF6ACF248F 1937608 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE 2016-02-27 15:12:01 775CA5FAB6B52478C940C7E2D6626391 10659016 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE 2016-02-27 15:11:49 58F4DEA084C371E21410E84E6178196E 29826760 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE 2016-02-27 15:10:55 41641B6DC6CCC1ACD5DBFC7D8ABABA88 325320 ----a-w- C:\Program Files (x86)\Microsoft Office\root\Office16\PerfBoost.exe 2016-02-27 15:01:25 EF8734A6337EA8EE02CAC1A1E8A2AB6E 444416 ----a-w- C:\Windows\SysWOW64\GWX\GWX.exe 2016-02-27 15:01:25 C37C03EFE49DBC4CE3DA1B31FFCA345A 355328 ----a-w- C:\Windows\System32\GWX\GWXDetector.exe 2016-02-27 15:01:25 7149E33CBE7E8413A160CA338CB9CE43 520704 ----a-w- C:\Windows\System32\GWX\GWX.exe 2016-02-27 15:01:25 6DABFABC761F2DC1F0D159CC591C2A3B 119296 ----a-w- C:\Windows\System32\GWX\GWXUX.exe 2016-02-27 15:01:25 5D0B8192510ADAF8A579C3647AAADA50 753152 ----a-w- C:\Windows\System32\GWX\GWXConfigManager.exe 2016-02-27 15:01:25 4A5EB6541A61048377C9E8C8DE898134 396080 ----a-w- C:\Windows\System32\GWX\GWXUXWorker.exe 2016-02-27 14:57:37 99C9B328F8CEDD2087605EA0A876032E 337472 ----a-w- C:\Users\DABL_Bart\AppData\Local\RfUserData\Temp\Update2.exe 2016-02-27 14:57:37 5388841FA41B949A3687067D84123CA8 13376 ----a-w- C:\Users\DABL_Bart\AppData\Local\RfUserData\Temp\MenuUninstaller.exe 2016-02-24 16:39:51 1AE696B7B72EF13F63F49074E32E63F8 2093120 ----a-w- C:\Users\DABL_Bart\AppData\Local\RushFilesV2\FirstTime\uninstall.exe 2016-02-24 16:39:50 D4BE505CE76FA0DD025AA7479DD0DDDD 337472 ----a-w- C:\Users\DABL_Bart\AppData\Local\RushFilesV2\Updater\Update2.exe 2016-02-24 16:39:50 CA6BCD5A3A3918F92805119E2F24F340 672320 ----a-w- C:\Users\DABL_Bart\AppData\Local\RushFilesV2\RfClientPCV2.exe 2016-02-24 16:39:50 C8717DC0BB532D4E460C99F08C58D4AC 16448 ----a-w- C:\Users\DABL_Bart\AppData\Local\RushFilesV2\Installer.exe 2016-02-24 16:39:50 C662148558605823A38938088F1CEA26 10240 ----a-w- C:\Users\DABL_Bart\AppData\Local\RushFilesV2\RushFilesShelLContextMenuInstaller.exe 2016-02-24 16:39:50 9DD356D5054047FAA58E9375B344D73A 14400 ----a-w- C:\Users\DABL_Bart\AppData\Local\RushFilesV2\UpdateSettings.exe 2016-02-24 16:39:50 85BBB1C28AA442D8F5B3D752069A566C 13376 ----a-w- C:\Users\DABL_Bart\AppData\Local\RushFilesV2\MenuCommunicator.exe 2016-02-24 16:39:50 21716048A8A2D99061418B7F3E4EAAF8 13376 ----a-w- C:\Users\DABL_Bart\AppData\Local\RushFilesV2\Updater\MenuUninstaller.exe === C: other files == 2016-03-01 17:38:32 DE0983FE4B830699312D35A990B3AE1B 1945 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\_MEI42682\resources\chrome_ext\nknebiagdodnminbdpflhpkgfpeijdbf_live.crx 2016-03-01 17:38:32 82F5C942549405F61A8808D0EA0FA9E2 25575 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\_MEI42682\resources\chrome_ext\apdfllckaahabafndbhieahigkjlhalf_live.crx 2016-03-01 17:38:31 1AFC5EE4C059D9190B87BD5F9962C483 6950 ----a-w- C:\Users\DABL_Bart\AppData\Local\RfUserData\Logs\2016-03-01 15-26-51.zip 2016-03-01 14:26:51 ABD0FA3C0ADD2C0E611701EE50DAD026 5383 ----a-w- C:\Users\DABL_Bart\AppData\Local\RfUserData\Logs\2016-03-01 14-35-27.zip 2016-03-01 14:02:18 C333F116A87F64EF8A484F9CAD8EDED5 111 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\uttF8B1.tmp.bat 2016-03-01 13:59:57 0CC4B73BA5B9B30B01555C5571910F6C 1771853 ----a-w- C:\Users\DABL_Bart\AppData\Local\Temp\HYDD411.tmp.1456840797\HTA\install.1456840797.zip 2016-03-01 13:57:50 78488AF2AB2111D67B3C4044707A519B 192216 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys 2016-03-01 13:57:32 D61070CFAD43038DC56AEAD9BFE9CE2A 63704 ----a-w- C:\Windows\System32\drivers\mwac.sys 2016-03-01 13:57:32 CFBC6C6D8A492697CABD1D353EE64933 25816 ----a-w- C:\Windows\System32\drivers\mbam.sys 2016-03-01 13:57:32 42B3F5C9FBC9B3F0E0BA6B5D7FC8E849 109272 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys 2016-03-01 13:35:27 B759FA695728B2CBDF75D9B579972C70 5698 ----a-w- C:\Users\DABL_Bart\AppData\Local\RfUserData\Logs\2016-02-29 18-33-14.zip 2016-02-29 17:33:14 83A6A4A67875F6C85FD097876016762C 8334 ----a-w- C:\Users\DABL_Bart\AppData\Local\RfUserData\Logs\2016-02-29 09-19-46.zip 2016-02-29 08:19:46 0D850B8BB032E05D251845AF1A77FAA5 2164 ----a-w- C:\Users\DABL_Bart\AppData\Local\RfUserData\Logs\2016-02-29 02-04-13.zip 2016-02-29 01:04:13 C3EF61C4DE016F214FACB2F334E8DB4D 3131 ----a-w- C:\Users\DABL_Bart\AppData\Local\RfUserData\Logs\2016-02-29 01-05-43.zip 2016-02-29 00:05:43 F7920094583061C68C1B259031F8E0C3 4015 ----a-w- C:\Users\DABL_Bart\AppData\Local\RfUserData\Logs\2016-02-28 17-57-36.zip 2016-02-28 16:57:36 324B363CCF6A6B5D88F4D13631E9EC2D 4859 ----a-w- C:\Users\DABL_Bart\AppData\Local\RfUserData\Logs\2016-02-28 15-36-30.zip 2016-02-28 14:36:30 CDA1E9CE7C3C29D757CDE857190FFA0C 13550 ----a-w- C:\Users\DABL_Bart\AppData\Local\RfUserData\Logs\2016-02-27 16-50-26.zip 2016-02-28 01:00:22 B526C8D6E0180E390BF864D830252D6F 89888 ----a-w- C:\Users\DABL_Bart\AppData\Roaming\Kodi\addons\packages\plugin.video.syfy-3.0.1.zip 2016-02-27 16:17:40 49D9161ACC25163C1A931BCF8EF516CD 3759746 ----a-w- C:\Users\DABL_Bart\Downloads\drupal-7.43.zip 2016-02-27 15:50:26 D828D53914048A44C882FF1AAE51A2F0 5791 ----a-w- C:\Users\DABL_Bart\AppData\Local\RfUserData\Logs\2016-02-27 15-57-50.zip 2016-02-27 14:57:51 B36566ABA87AEF6E9DAFCF87B88DD6E0 671 ----a-w- C:\Users\DABL_Bart\AppData\Local\RfUserData\Logs\2016-02-27 15-57-36.zip 2016-02-27 14:57:39 4AA4F162E1FECCF7E63D18E833ED37E2 7538115 ----a-w- C:\Users\DABL_Bart\AppData\Local\RfUserData\Temp\Update.zip 2016-02-27 14:57:36 08022C67E8E470C9027E87C4A2653590 4832 ----a-w- C:\Users\DABL_Bart\AppData\Local\RfUserData\Logs\2016-02-20 13-25-52.zip 2016-02-24 16:39:50 5A794869F1FF2725E513936F050A2B5A 7279 ----a-w- C:\Users\DABL_Bart\AppData\Local\RushFilesV2\Rushfiles_service_add.bat 2016-02-24 16:39:50 4CFCBA7775E4C4ED19801B503D28B126 155 ----a-w- C:\Users\DABL_Bart\AppData\Local\RushFilesV2\setDriveName.vbs ==== Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-1181156633-550352494-2945657525-1000\Software\Microsoft\Windows\CurrentVersion\Run] "OneDrive"="C:\Users\DABL_Bart\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" "GoogleDriveSync"="C:\Program Files (x86)\Google\Drive\googledrivesync.exe /autostart" "GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" "RushfilesV2"="C:\Users\DABL_Bart\AppData\Local\RushFilesV2\RfClientPCV2.exe" "BitTorrent"="C:\Users\DABL_Bart\AppData\Roaming\BitTorrent\BitTorrent.exe /MINIMIZED" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-21-1181156633-550352494-2945657525-1000\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Uninstall C:\Users\DABL_Bart\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\amd64"="C:\Windows\system32\cmd.exe /q /c rmdir /s /q C:\Users\DABL_Bart\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\amd64" "Uninstall C:\Users\DABL_Bart\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\amd64"="C:\Windows\system32\cmd.exe /q /c rmdir /s /q C:\Users\DABL_Bart\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\amd64" "Uninstall C:\Users\DABL_Bart\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64"="C:\Windows\system32\cmd.exe /q /c rmdir /s /q C:\Users\DABL_Bart\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AvgUi"="C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe /lps=fmw" "AVG_UI"="C:\Program Files (x86)\AVG\Av\avuirunnerx.exe C:\Program Files (x86)\AVG\Av\avgui.exe" "SwitchBoard"="C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" "AdobeCS6ServiceManager"="C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe -launchedbylogin" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "OneDrive"="C:\Users\DABL_Bart\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" "GoogleDriveSync"="C:\Program Files (x86)\Google\Drive\googledrivesync.exe /autostart" "GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" "RushfilesV2"="C:\Users\DABL_Bart\AppData\Local\RushFilesV2\RfClientPCV2.exe" "BitTorrent"="C:\Users\DABL_Bart\AppData\Roaming\BitTorrent\BitTorrent.exe /MINIMIZED" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Uninstall C:\Users\DABL_Bart\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\amd64"="C:\Windows\system32\cmd.exe /q /c rmdir /s /q C:\Users\DABL_Bart\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\amd64" "Uninstall C:\Users\DABL_Bart\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\amd64"="C:\Windows\system32\cmd.exe /q /c rmdir /s /q C:\Users\DABL_Bart\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\amd64" "Uninstall C:\Users\DABL_Bart\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64"="C:\Windows\system32\cmd.exe /q /c rmdir /s /q C:\Users\DABL_Bart\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" ==== Startup Folders ====================== 2015-09-19 19:19:53 1127 ----a-w- C:\Users\DABL_Bart\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [19/09/2015 14:57] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [19/09/2015 14:57] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\GarminUpdaterTask" [C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\PCDEventLauncherTask" ["C:\Program Files\Dell\SupportAssist\sessionchecker.exe"] "C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] ==== Firefox Extensions ====================== ProfilePath: C:\Users\DABL_B~1\AppData\Roaming\Thunderbird\Profiles\nqh8631x.default - Lightning - C:\Users\DABL_Bart\AppData\Roaming\Thunderbird\Profiles\nqh8631x.default\extensions\{e2fda1a4-762b-4020-b5ad-a41df1933103} - TT DeepDark - %ProfilePath%\extensions\{9ed238c0-af95-11e0-9f1c-0800200c9a66} - Lightning - %ProfilePath%\extensions\{e2fda1a4-762b-4020-b5ad-a41df1933103} - Stationery - %ProfilePath%\extensions\{d0e38b3a-0d60-46bf-bf01-83d4ba041015}.xpi - Nautipolis for Thunderbird - %ProfilePath%\extensions\{E2F592C8-CCD4-4951-9F93-6DFA76C4B062}.xpi - Walnut for Thunderbird - %ProfilePath%\extensions\{F3A60010-0E28-4503-B4AA-0E5F90275F77}.xpi AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== ==== Chromium Look ====================== HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions lmjegmlicamnimmfhcmpkclmigmmcbeh - No path found[] Google Slides - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Bejeweled - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\adpkifcfcacgmnggcbpbjbkdijciiigm BIODIGITAL HUMAN - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\agoenciogemlojlhccbcpcfflicgnaak Google Docs - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf Web Developer - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbameneiokkgbdmiekhjnmfkcnldhhm Show the YouTube Channel bar or the name - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn Ancient Map - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjcjaemihddenoopkkhaamlcoliiiain eID Chrome Extension - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkbdaodnaecdijpajecpncpdomgcoakc YouTube - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Facebook - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\boeajhmfdjldchidhphikilcgdacljfm Google Search - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google News - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\dllkocilcinkggkchnjgegijklcililc Google Calendar - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn Google Sheets - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Full Screen Weather - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkkaebihfmbofclegkcfkkemepfehibg Google Docs Offline - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Planetarium - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\gheikhdfflhlbemfmhcfpeblehemeklp Vertalen.nu - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\giapagjeblcapfphboclikepoeelhgkj AdBlock - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom Pin It Button - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpdjojdkbbmdfjfahjcgigfpmkopogic CircuitLab - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\haghanbgfkfpmepoohpigmglbfejljoj Google Keep - notes and lists - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki Local SWF Player - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdmbckedabpbgjagmkgcejooabcdnone Unit Convertor - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkaklafnbnpegjnlplfgadnobkgdkinf Google Play - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi Evernote Web - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbfehkoinhhcknnbdgnnmjhiladcgbol Google Drive App Launcher - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh Google Maps - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh WGT Golf Game - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpedbpkelbhcbkdaglillalioeeekbpb Drive - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfakdllpdfjjbfommlcnfkedmbigkfdo OneDrive - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\nffchahhjecejoiigmnhhicpoabngedk Chrome Web Store Payments - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Scientific Calculator - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\npoipmeppdioagbkigdlnpmjphnolaog Weather Underground - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjejbgheonogbpfkkjigbmahaljipoej Gmail - DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" ==== All HKLM and HKCU SearchScopes ====================== HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02 ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\DABL_Bart\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\DABL_Bart\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== C:\Users\DABL_Bart\AppData\Local\Mozilla\Firefox\Profiles\i11u1r6a.default\cache2 emptied successfully ==== Empty Chrome Cache ====================== C:\Users\DABL_Bart\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=20 folders=18 74403455 bytes) ==== Empty Temp Folders ====================== C:\Users\DABL_Bart\AppData\Local\Temp will be emptied at reboot C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\DABL_B~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on di 01/03/2016 at 19:02:31,60 ======================