Zoek.exe v5.0.0.1 Updated 31-December-2015 Tool run by Xena on vr 04/03/2016 at 13:39:37,54. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Xena\Downloads\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 4/03/2016 13:41:16 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\PROGRA~2\COMMON~1\Symantec Shared deleted successfully C:\Users\Xena\AppData\Roaming\hpqLog deleted successfully C:\Users\Xena\AppData\Local\VirtualStore deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3471289812-1826325329-3906041262-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5C255C8A-E604-49b4-9D64-90988571CECB} deleted successfully HKEY_USERS\S-1-5-21-3471289812-1826325329-3906041262-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully HKEY_USERS\S-1-5-21-3471289812-1826325329-3906041262-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully HKEY_USERS\S-1-5-21-3471289812-1826325329-3906041262-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully HKEY_USERS\S-1-5-21-3471289812-1826325329-3906041262-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully HKEY_USERS\S-1-5-21-3471289812-1826325329-3906041262-1001\Software\Microsoft\Internet Explorer\SearchScopes\{E22CE006-652E-4B34-BE96-3719030B584C} deleted successfully HKEY_USERS\S-1-5-21-3471289812-1826325329-3906041262-1001\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{E22CE006-652E-4B34-BE96-3719030B584C} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E22CE006-652E-4B34-BE96-3719030B584C} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\dojygici deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\dojygici deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\rowugoqo deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\rowugoqo deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\tifypejozbt deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\tifypejozbt deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wucotusy deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\wucotusy deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\zigipyro deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\zigipyro deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SSFK deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\SSFK deleted successfully ==== FireFox Fix ====================== ProfilePath: C:\Users\Xena\AppData\Roaming\Mozilla\Firefox\Profiles\9gbwmbrm.default user.js not found ---- Lines Search removed from prefs.js ---- user_pref("extensions.xpiState", "{\"app-global\":{\"{972ce4c6-7e08-4474-a285-3208198ce6fd}\":{\"d\":\"C:\\\\Program Files (x86)\\\\Mozilla Firefox\\\ ---- FireFox user.js and prefs.js backups ---- prefs_20160403_1428_.backup ==== Registry Fix Code ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command] @="C:\\Program Files (x86)\\Mozilla Firefox\\firefox.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command] @="C:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command] @="C:\\Program Files (x86)\\Internet Explorer\\iexplore.exe" ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}] [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "Bing Bar"=- ==== Deleting Files \ Folders ====================== C:\PROGRA~3\Hayzumflexs deleted C:\PROGRA~2\Windows Live SkyDrive deleted C:\Users\Xena\AppData\Roaming\ASPackage deleted C:\Program Files (x86)\30464E43-1457014258-5732-3847-60EB696DE4A9 deleted C:\Users\Xena\AppData\Local\win_en_77 deleted C:\PROGRA~2\SFK deleted C:\Users\Xena\AppData\Roaming\uninstall_temp.ico deleted C:\PROGRA~3\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat deleted C:\PROGRA~3\{8D274659-3D84-4410-A197-C170D180BC76} deleted C:\Users\Xena\AppData\Local\30464E43-1457017969-5732-3847-60EB696DE4A9 deleted C:\Users\Xena\AppData\Local\30464E43-1457100036-5732-3847-60EB696DE4A9 deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC deleted C:\Users\Xena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpaceSoundPro 1.0 deleted C:\Users\Xena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASPackage deleted C:\Users\Public\Desktop\MPC Cleaner.lnk deleted C:\Users\Xena\Desktop\SpaceSoundPro.lnk deleted C:\Users\Xena\AppData\Roaming\Keynimin.exe deleted C:\Users\Xena\AppData\Roaming\Zamnix.exe deleted C:\Users\Xena\AppData\Roaming\Mozilla\Firefox\Profiles\9gbwmbrm.default\extensions\deskCutv2@gmail.com deleted "C:\Users\Xena\AppData\Roaming\Mozilla\Firefox\Profiles\9gbwmbrm.default\searchplugins\istartpageing.xml" deleted "C:\PROGRA~3\Hayzumflex\AlphaCore.dat" not deleted "C:\PROGRA~3\Hayzumflex\Config.xml" deleted "C:\PROGRA~3\Hayzumflex\Hayzumflex.d.dat" not deleted "C:\PROGRA~3\Hayzumflex\Hayzumflex.dat" not deleted "C:\PROGRA~3\Hayzumflex\Hayzumflex.exe" deleted "C:\PROGRA~3\Hayzumflex\Itdex.dll" deleted "C:\PROGRA~2\MPC Cleaner\AdbWinApi.dll" not deleted "C:\PROGRA~2\MPC Cleaner\AdbWinUsbApi.dll" not deleted "C:\PROGRA~2\MPC Cleaner\AdcManager.dll" not deleted "C:\PROGRA~2\MPC Cleaner\AndriodServer.dll" not deleted "C:\PROGRA~2\MPC Cleaner\BrowserPlugIn.dll" not deleted "C:\PROGRA~2\MPC Cleaner\CeBase.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Cleaner.dll" not deleted "C:\PROGRA~2\MPC Cleaner\CrashReport.exe" not deleted "C:\PROGRA~2\MPC Cleaner\Database.dll" not deleted "C:\PROGRA~2\MPC Cleaner\dbgkpt.dll" not deleted "C:\PROGRA~2\MPC Cleaner\isafechlp.dll" not deleted "C:\PROGRA~2\MPC Cleaner\LogReport.dll" not deleted "C:\PROGRA~2\MPC Cleaner\LpcManager.dll" not deleted "C:\PROGRA~2\MPC Cleaner\MainFrame.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Microsoft.VC90.CRT.manifest" not deleted "C:\PROGRA~2\MPC Cleaner\Monitor.dll" not deleted "C:\PROGRA~2\MPC Cleaner\MPC.exe" not deleted "C:\PROGRA~2\MPC Cleaner\MPCAutoClean.exe" not deleted "C:\PROGRA~2\MPC Cleaner\MPCBS.dll" not deleted "C:\PROGRA~2\MPC Cleaner\MPCNews.exe" not deleted "C:\PROGRA~2\MPC Cleaner\MPCProtectService.exe" not deleted "C:\PROGRA~2\MPC Cleaner\MpcSafeDll.dll" not deleted "C:\PROGRA~2\MPC Cleaner\MpcSafeDll64.dll" not deleted "C:\PROGRA~2\MPC Cleaner\MPCSecurity.exe" not deleted "C:\PROGRA~2\MPC Cleaner\MPCSetting.exe" not deleted "C:\PROGRA~2\MPC Cleaner\MPCTray.exe" not deleted "C:\PROGRA~2\MPC Cleaner\MPCTray64.exe" not deleted "C:\PROGRA~2\MPC Cleaner\msvcm90.dll" not deleted "C:\PROGRA~2\MPC Cleaner\msvcp110.dll" not deleted "C:\PROGRA~2\MPC Cleaner\msvcp90.dll" not deleted "C:\PROGRA~2\MPC Cleaner\msvcr110.dll" not deleted "C:\PROGRA~2\MPC Cleaner\msvcr90.dll" not deleted "C:\PROGRA~2\MPC Cleaner\nmlct" not deleted "C:\PROGRA~2\MPC Cleaner\Report.dll" not deleted "C:\PROGRA~2\MPC Cleaner\SafeNavi.dll" not deleted "C:\PROGRA~2\MPC Cleaner\SafeNavi64.dll" not deleted "C:\PROGRA~2\MPC Cleaner\SafeProtect.dll" not deleted "C:\PROGRA~2\MPC Cleaner\SetupFrame.dll" not deleted "C:\PROGRA~2\MPC Cleaner\snh.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Support.dll" not deleted "C:\PROGRA~2\MPC Cleaner\symsrv.dll" not deleted "C:\PROGRA~2\MPC Cleaner\symsrv.yes" not deleted "C:\PROGRA~2\MPC Cleaner\TrayFrame.dll" not deleted "C:\PROGRA~2\MPC Cleaner\udpx" not deleted "C:\PROGRA~2\MPC Cleaner\Uninstall.exe" not deleted "C:\PROGRA~2\MPC Cleaner\UninstallFrame.dll" not deleted "C:\PROGRA~2\MPC Cleaner\UninstDelete.exe" not deleted "C:\PROGRA~2\MPC Cleaner\Update.dll" not deleted "C:\PROGRA~2\MPC Cleaner\UpdateHost.exe" not deleted "C:\PROGRA~2\MPC Cleaner\Upgrade.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Utility.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Web.dll" not deleted "C:\PROGRA~2\MPC Cleaner\wfhxte.dat" not deleted "C:\PROGRA~2\MPC Cleaner\WinService.dll" not deleted "C:\PROGRA~2\MPC Cleaner\xadb.exe" not deleted "C:\PROGRA~2\MPC Cleaner\XBus.dll" not deleted "C:\PROGRA~2\MPC Cleaner\XProcessBus.dll" not deleted "C:\PROGRA~2\MPC Cleaner\XSkin.dll" not deleted "C:\Program Files (x86)\MSN Toolbar\Platform\5.0.1438.0\mswinext.exe" deleted "C:\Program Files (x86)\MSN Toolbar\Platform\5.0.1438.0\xmllite.dll" deleted "C:\PROGRA~2\MPC Cleaner\Config\Clean.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Config\PlugIn.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Drivers\MPCBase_32.sys" not deleted "C:\PROGRA~2\MPC Cleaner\Drivers\MPCKpt.inf" not deleted "C:\PROGRA~2\MPC Cleaner\Drivers\MPCKpt.sys" not deleted "C:\PROGRA~2\MPC Cleaner\Drivers\MPCKpt_vista_32.sys" not deleted "C:\PROGRA~2\MPC Cleaner\Drivers\MPCKpt_vista_64.sys" not deleted "C:\PROGRA~2\MPC Cleaner\Drivers\MPCKpt_xp_32.sys" not deleted "C:\PROGRA~2\MPC Cleaner\Exe\ADC_qd00000.exe" not deleted "C:\PROGRA~2\MPC Cleaner\Image\ad_gray.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\ad_green.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\ad_org.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\ad_red.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g1.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g10.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g11.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g12.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g2.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g3.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g4.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g5.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g6.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g7.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g8.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g9.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q1.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q10.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q11.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q12.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q2.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q3.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q4.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q5.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q6.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q7.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q8.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q9.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r1.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r10.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r11.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r12.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r2.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r3.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r4.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r5.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r6.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r7.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r8.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r9.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\sys_gray.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\sys_green.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\sys_org.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\sys_red.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y1.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y10.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y11.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y12.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y2.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y3.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y4.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y5.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y6.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y7.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y8.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y9.png" not deleted "C:\PROGRA~2\MPC Cleaner\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest" not deleted "C:\PROGRA~2\MPC Cleaner\Microsoft.VC90.CRT\msvcm90.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Microsoft.VC90.CRT\msvcp90.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Microsoft.VC90.CRT\msvcr90.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Config\DB\as.db" not deleted "C:\PROGRA~2\MPC Cleaner\Config\DB\cf.db" not deleted "C:\PROGRA~2\MPC Cleaner\Config\DB\run.db" not deleted "C:\PROGRA~2\MPC Cleaner\Config\DB\st.db" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SearchIcon\search_{08DA4B46-E0EB-4B4D-8C8B-558C967AF6C5}.ico" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SearchIcon\search_{22A8D5A3-F368-4C6B-BF4D-3C901EBCF242}.ico" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SearchIcon\search_{3F9A707D-2C36-4344-8621-B8E4ADC95C18}.ico" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SearchIcon\search_{D8EC46AF-529F-4636-963B-C086429C73DA}.ico" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SearchIcon\search_{DE37CD8C-DE7B-481F-A676-303ABAFBEE04}.ico" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SearchIcon\search_{F154C596-75A9-4028-90E8-9752BD7CA05B}.ico" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SearchIcon\toasts_waring.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SgIcon\adcapp.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SgIcon\adcweb.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SgIcon\block.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SgIcon\home.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SgIcon\ie.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SgIcon\search.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\AR_green.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\AR_org.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\AR_red.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\Bp_green.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\Bp_org.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\Bp_red.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\SpeedUp_green.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\SpeedUp_org.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\SpeedUp_red.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\SVC_green.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\SVC_org.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\SVC_red.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\TSK_green.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\TSK_org.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\TSK_red.png" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\Cleaner\Lang.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\Cleaner\Skin.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\CrashReport\Lang.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\CrashReport\Skin.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\News\Lang.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\News\Skin.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\Tray\Lang.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\Tray\Skin.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\Uninstall\Lang.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\Uninstall\Skin.xf" not deleted "C:\PROGRA~3\Hayzumflex" not deleted "C:\Program Files (x86)\MSN Toolbar" deleted "C:\PROGRA~2\MPC Cleaner" not deleted "C:\Program Files (x86)\MSN Toolbar\Platform" deleted "C:\Program Files (x86)\MSN Toolbar\Platform\5.0.1438.0" deleted "C:\PROGRA~2\MPC Cleaner\Config" not deleted "C:\PROGRA~2\MPC Cleaner\Drivers" not deleted "C:\PROGRA~2\MPC Cleaner\Exe" not deleted "C:\PROGRA~2\MPC Cleaner\Image" not deleted "C:\PROGRA~2\MPC Cleaner\Microsoft.VC90.CRT" not deleted "C:\PROGRA~2\MPC Cleaner\Skin" not deleted "C:\PROGRA~2\MPC Cleaner\Config\DB" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SearchIcon" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SgIcon" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\Cleaner" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\CrashReport" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\News" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\Tray" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\Uninstall" not deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== 2016-03-01 09:50:28 A0CC725A2D9346021D8AC458E4F2C73F 1058 ----a-w- C:\Windows\run.vbs ====== C:\Users\Xena\AppData\Local\Temp ==== 2016-03-04 13:16:03 BF712F32249029466FA86756F5546950 11264 ----a-w- C:\Users\Xena\AppData\Local\Temp\nsv457B.tmp\System.dll 2016-03-04 13:16:03 132E6153717A7F9710DCEA4536F364CD 6144 ----a-w- C:\Users\Xena\AppData\Local\Temp\nsv457B.tmp\nsExec.dll 2016-03-04 13:16:01 640BFF73A5F8E37B202D911E4749B2E9 25088 ----a-w- C:\Users\Xena\AppData\Local\Temp\nsv457B.tmp\INetC.dll 2016-03-04 13:05:51 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\F645.tmp.exe 2016-03-04 13:00:21 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\EAA1.tmp.exe 2016-03-04 12:43:06 BF712F32249029466FA86756F5546950 11264 ----a-w- C:\Users\Xena\AppData\Local\Temp\nsd1D71.tmp\System.dll 2016-03-04 12:43:06 132E6153717A7F9710DCEA4536F364CD 6144 ----a-w- C:\Users\Xena\AppData\Local\Temp\nsd1D71.tmp\nsExec.dll 2016-03-04 12:43:05 640BFF73A5F8E37B202D911E4749B2E9 25088 ----a-w- C:\Users\Xena\AppData\Local\Temp\nsd1D71.tmp\INetC.dll 2016-03-04 12:42:27 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\8A28.tmp.exe 2016-03-04 12:37:02 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\9493.tmp.exe 2016-03-04 12:35:59 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\9BB3.tmp.exe 2016-03-04 12:30:20 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\7167.tmp.exe 2016-03-04 12:30:04 FE3F848E2A306D586AB8F5433738D8DB 58368 ----a-w- C:\Users\Xena\AppData\Local\Temp\nssDE5D.tmp\nsCBHTML5.dll 2016-03-04 12:29:43 C17103AE9072A06DA581DEC998343FC1 11264 ----a-w- C:\Users\Xena\AppData\Local\Temp\nssDE5D.tmp\System.dll 2016-03-04 12:29:43 C10E04DD4AD4277D5ADC951BB331C777 9728 ----a-w- C:\Users\Xena\AppData\Local\Temp\nssDE5D.tmp\nsDialogs.dll 2016-03-04 12:29:43 B140459077C7C39BE4BEF249C2F84535 67584 ----a-w- C:\Users\Xena\AppData\Local\Temp\nssDE5D.tmp\Math.dll 2016-03-04 12:29:43 2B7007ED0262CA02EF69D8990815CBEB 25088 ----a-w- C:\Users\Xena\AppData\Local\Temp\nssDE5D.tmp\registry.dll 2016-03-04 12:29:26 4D630A438478DE31E9B9571DC8AAAABD 1741951 ----a-w- C:\Users\Xena\AppData\Local\Temp\UEWR4RVFHD\win.exe 2016-03-04 12:27:31 54609002553FD9E44F53BFFB035E74F4 764416 ----a-w- C:\Users\Xena\AppData\Local\Temp\3OYDP20CU\release.exe 2016-03-04 12:27:30 FA00E9E8B2F00ED64DC298BFB483F76C 4722280 ----a-w- C:\Users\Xena\AppData\Local\Temp\SWEIKIFK6\SWEIKIFK6.exe 2016-03-04 12:27:21 2ED8C64668A2566384E5CF2172256708 1895936 ----a-w- C:\Users\Xena\AppData\Local\Temp\UEWR4RVFHD\testversion.exe 2016-03-04 12:27:15 2E0F3F274CF2BCE8947E87A83FAAA05F 4141585 ----a-w- C:\Users\Xena\AppData\Local\Temp\QFSOIFIZYX.exe 2016-03-03 14:58:02 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\E370.tmp.exe 2016-03-03 14:45:59 7B1977DCA8506D7AA3B23732AECA6A26 336896 ----a-w- C:\Users\Xena\AppData\Local\Temp\f9626892-7a78-3199-abd2-97bbce96297b\OfferInstaller.exe 2016-03-03 14:45:34 A3078153A7A53BFC0A7A0B8FD20D757A 3030016 ----a-w- C:\Users\Xena\AppData\Local\Temp\fsd6D63.exe 2016-03-03 14:34:18 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\27BE.tmp.exe 2016-03-03 14:28:16 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\A2F4.tmp.exe 2016-03-03 14:25:43 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\4C6B.tmp.exe 2016-03-03 14:08:06 115D328ABF7D75E236856BD986D9B966 232180 ----a-w- C:\Users\Xena\AppData\Local\Temp\InstallManager.exe 2016-03-03 13:29:23 C164367524767CE049E3E50C87CE7376 780352 ----a-w- C:\Users\Xena\AppData\Local\Temp\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}_NIS_8244.exe ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== 2016-03-04 12:30:51 2DBF8994FEB3884119B44095477FE080 97888 ----a-w- C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2016-03-04 12:29:43 524E7233EE31BA77D318E3442883C055 2393 ----a-w- C:\Windows\SysWOW64\findit.xml ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== ====== C:\Windows\Sysnative\drivers ===== 2016-03-03 14:22:51 2E8A0EC3E17A37D13DC7EFC0AE0803F2 59112 ----a-w- C:\Windows\Sysnative\drivers\MPCKpt.sys ====== C:\Windows\Tasks ====== 2016-03-03 13:00:43 F50FD1F5E5124DDA1218CACB5582F355 1056 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-03-03 13:00:43 93E593739339AA6B287E091453EA3766 4052 ----a-w- C:\Windows\Sysnative\Tasks\GoogleUpdateTaskMachineUA 2016-03-03 13:00:42 837A09D7A196B94F19F6FA8D86C839B8 3800 ----a-w- C:\Windows\Sysnative\Tasks\GoogleUpdateTaskMachineCore 2016-03-03 13:00:41 BB7F5EA03F7DE44634C6AF81DE0AAB5E 1052 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2016-03-04 12:27:15 -------- d-----w- C:\Program Files\SpaceSoundPro 2016-03-03 14:11:02 -------- d-----w- C:\Program Files\trend micro 2016-03-03 13:01:01 -------- d-----w- C:\Program Files\Google ======= C:\PROGRA~2 ===== 2016-03-04 12:32:08 -------- d-----w- C:\PROGRA~2\COMMON~1\Java 2016-03-04 12:29:32 -------- d-----w- C:\PROGRA~2\win_en_77 2016-03-04 12:29:24 -------- d-----w- C:\PROGRA~2\COMMON~1\Tempdax 2016-03-03 14:23:37 -------- d-----w- C:\PROGRA~2\CleanBrowser 2016-03-03 14:22:43 -------- d-----w- C:\PROGRA~2\MPC Cleaner 2016-03-03 13:00:39 -------- d-----w- C:\PROGRA~2\Google ======= C: ===== ====== C:\Users\Xena\AppData\Roaming ====== 2016-03-04 12:36:13 -------- d-----w- C:\Windows\SysNative\config\systemprofile\AppData\Locallow\Sun 2016-03-04 12:31:48 -------- d-----w- C:\Users\Xena\AppData\Roaming\Sun 2016-03-04 12:31:48 -------- d-----w- C:\Users\Xena\AppData\Locallow\Sun 2016-03-04 12:29:28 -------- d-----w- C:\Users\Xena\AppData\Local\Programs 2016-03-04 12:29:19 912F6F6ACDC3847D566D59987195BB9C 18432 ----a-w- C:\Users\Xena\AppData\Roaming\Main.dat 2016-03-04 12:29:19 6FEB3E97ECA83D795922AC1AC21F4E6A 65040 ----a-w- C:\Users\Xena\AppData\Roaming\Config.xml 2016-03-04 12:29:19 22551653DFC902B25002E70A391E00E1 126464 ----a-w- C:\Users\Xena\AppData\Roaming\noah.dat 2016-03-04 12:29:18 90900233AF4695FE6693E6B706A41EDE 8037888 ----a-w- C:\Users\Xena\AppData\Roaming\agent.dat 2016-03-04 12:29:18 7131BFEECE3AA3153F8C20D65A36368B 1902373 ----a-w- C:\Users\Xena\AppData\Roaming\Zamnix.tst 2016-03-04 12:29:11 B740BA3DEBD61187D6B2EF17D21991DB 5568 ----a-w- C:\Users\Xena\AppData\Roaming\md.xml 2016-03-04 12:29:11 71694778FAFCC81920D2E3F9817A5DAD 54272 ----a-w- C:\Users\Xena\AppData\Roaming\ApplicationHosting.dat 2016-03-04 12:29:11 22551653DFC902B25002E70A391E00E1 126464 ----a-w- C:\Users\Xena\AppData\Roaming\lobby.dat 2016-03-04 12:29:11 18E703232CB5590CCC43C308D1F10004 72858 ----a-w- C:\Users\Xena\AppData\Roaming\Keynimin.tst 2016-03-04 12:28:55 AB5A0869270738CF7720CC06FA79E23A 848437 ----a-w- C:\Users\Xena\AppData\Roaming\Zentax.bin 2016-03-04 12:27:32 F8573CAA4B79D3DE359FA2C41D08DA7F 15744 ----a-w- C:\Users\Xena\AppData\Roaming\InstallationConfiguration.xml 2016-03-04 12:27:32 09698FEE092B3550F0C61541395AB84D 127488 ----a-w- C:\Users\Xena\AppData\Roaming\Installer.dat 2016-03-04 12:27:28 -------- d-----w- C:\Users\Xena\AppData\Locallow\Oracle 2016-03-03 14:58:27 -------- d-----w- C:\Users\Xena\AppData\Local\Cyberlink 2016-03-03 14:24:28 -------- d-----w- C:\Users\Xena\AppData\Local\app 2016-03-03 13:11:35 -------- d-----w- C:\Users\Xena\AppData\Roaming\Tific 2016-03-03 13:00:39 -------- d-----w- C:\Users\Xena\AppData\Local\Google ====== C:\Users\Xena ====== 2016-03-04 12:38:42 7A1EFC058324169EC6083AD10CDC9939 735328 ----a-w- C:\Users\Xena\Downloads\chromeinstall-8u73 (1).exe 2016-03-04 12:31:48 -------- d-----w- C:\Users\Xena\.oracle_jre_usage 2016-03-04 12:30:37 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2016-03-04 12:29:43 -------- d-----w- C:\ProgramData\Oracle 2016-03-04 12:29:19 -------- d-----w- C:\ProgramData\Hayzumflex 2016-03-04 12:29:12 -------- d-----w- C:\ProgramData\CloudPrinter 2016-03-04 12:28:19 -------- d-----w- C:\ProgramData\ae655817-04f3-0 2016-03-04 12:28:14 -------- d-----w- C:\ProgramData\ae655817-0667-1 2016-03-04 12:27:12 7A1EFC058324169EC6083AD10CDC9939 735328 ----a-w- C:\Users\Xena\Downloads\chromeinstall-8u73.exe 2016-03-03 14:10:48 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Xena\Downloads\RSITx64.exe 2016-03-03 13:00:58 -------- d-----w- C:\ProgramData\Google 2016-02-21 17:55:45 -------- d-----w- C:\Users\Public\Documents\microsoft ====== C: exe-files == 2016-03-04 13:05:51 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\F645.tmp.exe 2016-03-04 13:00:21 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\EAA1.tmp.exe 2016-03-04 12:42:27 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\8A28.tmp.exe 2016-03-04 12:38:42 7A1EFC058324169EC6083AD10CDC9939 735328 ----a-w- C:\Users\Xena\Downloads\chromeinstall-8u73 (1).exe 2016-03-04 12:37:02 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\9493.tmp.exe 2016-03-04 12:35:59 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\9BB3.tmp.exe 2016-03-04 12:30:55 5B98DCE4893425BA4F08C2BE134CABE5 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaw.exe 2016-03-04 12:30:55 2211C51BABE577798343D69F818E25AB 0 ----a-we C:\ProgramData\Oracle\Java\javapath\javaws.exe 2016-03-04 12:30:53 249C1C8BD8AC9568E5C5A0EC2FB39018 0 ----a-we C:\ProgramData\Oracle\Java\javapath\java.exe 2016-03-04 12:30:20 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\7167.tmp.exe 2016-03-04 12:30:07 DB409F9BD2FA779E75835B1E0FE1181C 159328 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\unpack200.exe 2016-03-04 12:30:07 ABC1BAF673FA608029D45EB6C78E1D04 50784 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssvagent.exe 2016-03-04 12:30:07 8BD1E7120713F9581645D5FDD14B8D25 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\rmid.exe 2016-03-04 12:30:07 3B74EE580794FCBDE389639E9D8ECEFB 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\rmiregistry.exe 2016-03-04 12:30:07 2942578781EFB763366176C015F09ACD 16480 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\tnameserv.exe 2016-03-04 12:30:07 0A7708846A0629D518739075A40DDD06 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\servertool.exe 2016-03-04 12:30:06 C84504D069A78BE5E4444EA06AA5E102 16480 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\orbd.exe 2016-03-04 12:30:06 AB6E988F108E2437E65536F3F5550BA2 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\ktab.exe 2016-03-04 12:30:06 A3AA0A0935506C7ECA6EF2F584CD416F 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\policytool.exe 2016-03-04 12:30:06 876744373E18627410A9F23C348C5D9E 76896 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2launcher.exe 2016-03-04 12:30:06 6ABADA3CA8DC4AC2AFDA69A6836C362F 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\pack200.exe 2016-03-04 12:30:06 66550F1F363BC66AFD9A530AD8CB6570 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\kinit.exe 2016-03-04 12:30:06 4383D5735FD7743D01AD04E9AAD1D6CF 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\keytool.exe 2016-03-04 12:30:06 16E2FE80EE89DCCA1907D97E34656E19 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\jjs.exe 2016-03-04 12:30:06 04E0265E964D9ECB07B105D456B96982 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\klist.exe 2016-03-04 12:30:05 B100697A0837596183F3BBD94448F68E 30816 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\jabswitch.exe 2016-03-04 12:30:05 5B98DCE4893425BA4F08C2BE134CABE5 191584 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\javaw.exe 2016-03-04 12:30:05 328A57535A2B74C924FA34DD29039E9D 15968 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\java-rmi.exe 2016-03-04 12:30:05 249C1C8BD8AC9568E5C5A0EC2FB39018 191072 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\java.exe 2016-03-04 12:30:05 237CDD69D6E3866533B402F321A11A4E 68192 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\javacpl.exe 2016-03-04 12:30:05 2211C51BABE577798343D69F818E25AB 278624 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\bin\javaws.exe 2016-03-04 12:29:32 91594325356F6A90F1143EC692B33824 718497 ----a-w- C:\Program Files (x86)\win_en_77\win_en_77 - uninstall.exe 2016-03-04 12:29:32 235592F1B8472B2FA263C85930AAFA7A 3971800 ----a-w- C:\Program Files (x86)\win_en_77\win_en_77.exe 2016-03-04 12:29:26 4D630A438478DE31E9B9571DC8AAAABD 1741951 ----a-w- C:\Users\Xena\AppData\Local\Temp\UEWR4RVFHD\win.exe 2016-03-04 12:29:24 54609002553FD9E44F53BFFB035E74F4 764416 ----a-w- C:\Program Files (x86)\Common Files\Tempdax\uninstall.exe 2016-03-04 12:29:12 54609002553FD9E44F53BFFB035E74F4 764416 ----a-w- C:\ProgramData\CloudPrinter\CloudPrinter.exe 2016-03-04 12:27:31 54609002553FD9E44F53BFFB035E74F4 764416 ----a-w- C:\Users\Xena\AppData\Local\Temp\3OYDP20CU\release.exe 2016-03-04 12:27:30 FA00E9E8B2F00ED64DC298BFB483F76C 4722280 ----a-w- C:\Users\Xena\AppData\Local\Temp\SWEIKIFK6\SWEIKIFK6.exe 2016-03-04 12:27:21 2ED8C64668A2566384E5CF2172256708 1895936 ----a-w- C:\Users\Xena\AppData\Local\Temp\UEWR4RVFHD\testversion.exe 2016-03-04 12:27:20 59A633ADE02D65C64E54189A2377B048 251392 ----a-w- C:\Program Files\SpaceSoundPro\uninstaller.exe 2016-03-04 12:27:19 8268496B3C1186AD2239D55669ECC29D 288256 ----a-w- C:\Program Files\SpaceSoundPro\idscservice.exe 2016-03-04 12:27:17 4B6BB8032156F13D184915E967543E0A 64638 ----a-w- C:\Program Files\SpaceSoundPro\Uninstall.exe 2016-03-04 12:27:15 2E0F3F274CF2BCE8947E87A83FAAA05F 4141585 ----a-w- C:\Users\Xena\AppData\Local\Temp\QFSOIFIZYX.exe 2016-03-04 12:27:12 7A1EFC058324169EC6083AD10CDC9939 735328 ----a-w- C:\Users\Xena\Downloads\chromeinstall-8u73.exe 2016-03-03 15:12:50 3D8B2D2B1F8BB5674FC634A39C0CA793 232184 ----a-w- C:\Users\Xena\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5R4Y8UO4\VuuPC_VO2_8907[1].exe 2016-03-03 15:10:42 8D677EE90317A10D3369C3885C93B268 1579416 ----a-w- C:\Users\Xena\AppData\Local\Google\Chrome\User Data\SwReporter\6.44.4\software_reporter_tool.exe 2016-03-03 14:58:02 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\E370.tmp.exe 2016-03-03 14:45:59 7B1977DCA8506D7AA3B23732AECA6A26 336896 ----a-w- C:\Users\Xena\AppData\Local\Temp\f9626892-7a78-3199-abd2-97bbce96297b\OfferInstaller.exe 2016-03-03 14:45:34 A3078153A7A53BFC0A7A0B8FD20D757A 3030016 ----a-w- C:\Users\Xena\AppData\Local\Temp\fsd6D63.exe 2016-03-03 14:45:32 A3078153A7A53BFC0A7A0B8FD20D757A 3030016 ----a-w- C:\Users\Xena\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IYNHXUOR\FinalInstaller_dotnet4[1].exe 2016-03-03 14:34:18 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\27BE.tmp.exe 2016-03-03 14:28:16 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\A2F4.tmp.exe 2016-03-03 14:25:43 CDB37B31840DF526120388CE4049EEB3 1041831 ----a-w- C:\Users\Xena\AppData\Local\Temp\4C6B.tmp.exe 2016-03-03 14:23:37 3A5231D094F733540FC5CBBE9D0AE560 240640 ----a-w- C:\Program Files (x86)\CleanBrowser\uninstall.exe 2016-03-03 14:22:45 BD5DC46AB65A2CC4A91C5FBFD821197F 1018848 ----a-w- C:\Program Files (x86)\MPC Cleaner\xadb.exe 2016-03-03 14:22:44 D4654B4B0622D95CE31C1C4E2055D772 299488 ----a-w- C:\Program Files (x86)\MPC Cleaner\UpdateHost.exe 2016-03-03 14:22:44 BCE626DC7D0E6A25F8119450AB85D17E 166880 ----a-w- C:\Program Files (x86)\MPC Cleaner\MPCTray.exe 2016-03-03 14:22:44 B4A78EAAA15C3B5C7815BEC687D5F045 348640 ----a-w- C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe 2016-03-03 14:22:44 7D4F75C9BB90D20B17BB1BFD894C8D6E 199648 ----a-w- C:\Program Files (x86)\MPC Cleaner\UninstDelete.exe 2016-03-03 14:22:44 5E2ED808EAB51E45EF46DB69F4E14BE5 159712 ----a-w- C:\Program Files (x86)\MPC Cleaner\Uninstall.exe 2016-03-03 14:22:44 32826D8BA32C56B093432A88D25795A0 282592 ----a-w- C:\Program Files (x86)\MPC Cleaner\MPCAutoClean.exe 2016-03-03 14:22:44 1F2C623883EE00ADEAB4AB1081624352 167392 ----a-w- C:\Program Files (x86)\MPC Cleaner\MPC.exe 2016-03-03 14:22:44 1764D5D3366F088431AD7227B715951D 271328 ----a-w- C:\Program Files (x86)\MPC Cleaner\MPCNews.exe 2016-03-03 14:22:44 0E7A3CF9BB6739F7AFFB3D52934792B0 105952 ----a-w- C:\Program Files (x86)\MPC Cleaner\MPCTray64.exe 2016-03-03 14:22:44 0258690FD379988CA8AD17BA27277880 230880 ----a-w- C:\Program Files (x86)\MPC Cleaner\MPCSetting.exe 2016-03-03 14:22:43 84B5E0C4E6B0BCE009207A12068A5F48 3838056 ----a-w- C:\Program Files (x86)\MPC Cleaner\Exe\ADC_qd00000.exe 2016-03-03 14:22:43 28CCCD74F8F36A9699DB3AE8585EBD61 192480 ----a-w- C:\Program Files (x86)\MPC Cleaner\CrashReport.exe 2016-03-03 14:22:05 574FC5B1FD42421402D1118B4A3F7427 4656101 ----a-w- C:\Users\Xena\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5R4Y8UO4\vnl1[1].exe 2016-03-03 14:12:51 66B458821DA8405AE93AA4DF2406F877 225792 ----a-w- C:\Users\Xena\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SQZLVQ0N\SU_Srv[1].exe 2016-03-03 14:12:51 3E7C395E6DBDA56E217259083C2ED725 562688 ----a-w- C:\Users\Xena\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5R4Y8UO4\Update_Notifier[1].exe 2016-03-03 14:12:50 370DDCB3A28F29794D21B1C41EA51F1F 118784 ----a-w- C:\Users\Xena\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5R4Y8UO4\runasu[2].exe 2016-03-03 14:12:39 1FDE4C9010DDD619499C0C427692D331 601342 ----a-w- C:\Users\Xena\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5R4Y8UO4\SFSetup[1].exe 2016-03-03 14:11:19 6CD6AF4F327CB03A3DA204FBF4E3CDA5 416256 ----a-w- C:\Users\Xena\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IYNHXUOR\2ELCaRk[1].exe 2016-03-03 14:11:14 F337673102998171F8E981CC809A7A59 284160 ----a-w- C:\Users\Xena\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IQMY6AT2\JOSrv[1].exe 2016-03-03 14:11:03 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\Xena.exe 2016-03-03 14:10:48 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\Xena\Downloads\RSITx64.exe 2016-03-03 14:10:08 C48D3DAC014A84DA0F71293E7C2B749D 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3471289812-1826325329-3906041262-1001\$IMRZ2R8.exe 2016-03-03 14:09:03 937D920EF3114A9481E0FF21C5219F3B 920484 ----a-w- C:\Users\Xena\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IYNHXUOR\ASIns[1].exe 2016-03-03 14:08:06 115D328ABF7D75E236856BD986D9B966 232180 ----a-w- C:\Users\Xena\AppData\Local\Temp\InstallManager.exe 2016-03-03 14:08:06 115D328ABF7D75E236856BD986D9B966 232180 ----a-w- C:\Users\Xena\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IYNHXUOR\Little_Registry_Cleaner_2238[1].exe 2016-03-03 14:05:09 7279B17EB90A9103A71030E2352BF1A4 5518392 ----a-w- C:\$Recycle.Bin\S-1-5-21-3471289812-1826325329-3906041262-1001\$RMRZ2R8.exe 2016-03-03 13:29:23 C164367524767CE049E3E50C87CE7376 780352 ----a-w- C:\Users\Xena\AppData\Local\Temp\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}_NIS_8244.exe 2016-03-03 13:06:48 F489BF87E4B3E9CCEFA102CC347F180F 95048 ----atw- C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleUpdateWebPlugin.exe 2016-03-03 13:06:48 A70C804C5BCC0BBFCB7E9173C32B0221 95048 ----atw- C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleUpdateOnDemand.exe 2016-03-03 13:06:48 A4C58EA455234AFD3B622D838CDE4C39 987728 ----a-w- C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleUpdateSetup.exe 2016-03-03 13:06:48 1457C6AC71CAEC4D692FDD62155A9745 95048 ----atw- C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleUpdateBroker.exe 2016-03-03 13:06:39 ABF64234F3462571E66527828040219B 252232 ----atw- C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe 2016-03-03 13:06:39 8C17EAF5E4883284A75FC560C7F021AB 137544 ----atw- C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleUpdateComRegisterShell64.exe 2016-03-03 13:06:39 2E6215108125A42160A1EC17208A50F0 313672 ----atw- C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe 2016-03-03 13:06:38 750446ED76A5D13E902174DDDDA1A62B 154440 ----atw- C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleUpdate.exe 2016-03-03 13:05:18 A4C58EA455234AFD3B622D838CDE4C39 987728 ----a-w- C:\Program Files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.29.5\GoogleUpdateSetup.exe 2016-03-03 13:01:21 5BD34A050D2F357CE64E15912E9D8DA6 44828064 ----a-w- C:\Program Files (x86)\Google\Update\Download\{8A69D345-D564-463C-AFF1-A69D9E530F96}\49.0.2623.75\49.0.2623.75_chrome_installer.exe 2016-03-03 13:01:01 5D61BE7DB55B026A5D61A3EED09D0EAD 39408 ----a-w- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe 2016-03-03 13:01:00 5D4BC124FAAE6730AC002CDB67BF1A1C 194032 ----a-w- C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe 2016-03-03 13:00:59 DF1E952D0800039424D069703E6014B6 400840 ----a-w- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_64.exe 2016-03-03 13:00:59 CED03CA40BC986E7A23CF4DF3DA1F6BB 309704 ----a-w- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe 2016-03-03 13:00:58 DF1E952D0800039424D069703E6014B6 400840 ----a-w- C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarUser_64_4D9709C1FA1422BA.exe 2016-03-03 13:00:58 CED03CA40BC986E7A23CF4DF3DA1F6BB 309704 ----a-w- C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarUser_32_52E818EF81C83A9B.exe 2016-03-03 13:00:58 CCB5979D91A2FD43A4D14E71538A6A64 1105864 ----a-w- C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarManager_A6282D74FF5C38C8.exe 2016-03-03 13:00:58 4BEAF576CB43358C4DB9F45AC7C09CDB 194032 ----a-w- C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleUpdaterService_B33FC4DD36A473C6.exe 2016-03-03 13:00:58 1F2AFAB903C0D48480561F3BBD4539C2 739640 ----a-w- C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleUpdateSetup_5CC4B0F53D73AD88.exe 2016-03-03 13:00:58 0CEED1D533CAE0741D56D83AB5CB004F 1525064 ----a-w- C:\Program Files (x86)\Google\Google Toolbar\Component\SearchWithGoogleUpdate_CA8A7236098B8F9A.exe 2016-03-03 13:00:57 F6E7FEECE69272AECCDB3969F2869EA9 5033816 ----a-w- C:\Program Files (x86)\Google\Update\Download\{F69EABDD-A4BB-4555-BE7E-1EA5F59BBA24}\0.0.0.0\googletoolbarinstaller_en_signed.exe 2016-03-03 13:00:40 750446ED76A5D13E902174DDDDA1A62B 154440 ----atw- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe === C: other files == 2016-03-04 12:30:10 EFE4B4EBEBBF14DE84461AFCC281DA12 14130 ----a-w- C:\Program Files (x86)\Java\jre1.8.0_73\lib\deploy\ffjcext.zip 2016-03-03 14:25:19 D18396F433E6F36786D9FE990D057FD5 576022 ----a-w- C:\Users\Xena\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IQMY6AT2\2[1].zip 2016-03-03 14:24:38 60ABF08BBD000264F29901F9B72D7B23 1090049 ----a-w- C:\Users\Xena\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IYNHXUOR\1[1].zip 2016-03-03 14:22:51 2E8A0EC3E17A37D13DC7EFC0AE0803F2 59112 ----a-w- C:\Windows\System32\drivers\MPCKpt.sys 2016-03-03 14:22:51 2E8A0EC3E17A37D13DC7EFC0AE0803F2 59112 ----a-w- C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt.sys 2016-03-03 14:22:43 C2DF7EC2473145F3DA2232B5962960DB 29032 ----a-w- C:\Program Files (x86)\MPC Cleaner\Drivers\MPCBase_32.sys 2016-03-03 14:22:43 7E726D013ACAEE2D8F29652DAFB390CA 53224 ----a-w- C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt_xp_32.sys 2016-03-03 14:22:43 4D19414D1EF3CB82364D5FC496F8D8FC 52456 ----a-w- C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt_vista_32.sys 2016-03-03 14:22:43 2E8A0EC3E17A37D13DC7EFC0AE0803F2 59112 ----a-w- C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt_vista_64.sys 2016-03-01 09:50:28 A0CC725A2D9346021D8AC458E4F2C73F 1058 ----a-w- C:\Windows\run.vbs ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-3471289812-1826325329-3906041262-1001\Software\Microsoft\Windows\CurrentVersion\Run] "HPAdvisorDock"="C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe" "LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:http://go.microsoft.com/fwlink/?LinkID=122915 /build:7601" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce] "SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:http://go.microsoft.com/fwlink/?LinkID=122915 /build:7601" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Microsoft Default Manager"="C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe -resume" "HP Quick Launch"="C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe" "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "Adobe Reader Speed Launcher"="C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" "Easybits Recovery"="C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe" "Magic Desktop for HP notification"="C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe" "win_en_77"="C:\Program Files (x86)\win_en_77\win_en_77.exe" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "HPAdvisorDock"="C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe" "LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\\ProgramData\\Hayzumflex\\Itdex.dll" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="C:\Windows\system32\igfxtray.exe" "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" "Persistence"="C:\Windows\system32\igfxpers.exe" "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s" "HPWirelessAssistant"="C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe /hidden" "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" "SpaceSoundPro"="C:\Program Files\SpaceSoundPro\SpaceSoundPro.exe" "IDSCPRODUCT"="C:\Program Files\SpaceSoundPro\\idscservice.exe" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\\ProgramData\\Hayzumflex\\Bamfax.dll" ==== Task Scheduler Jobs ====================== C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [03/03/2016 14:05] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\RecoveryCDWin7" ["C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe"] "C:\Windows\SysNative\tasks\Registration" ["C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe"] "C:\Windows\SysNative\tasks\ServicePlan" ["C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe"] "C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\Windows\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] ==== Firefox Start and Search pages ====================== ProfilePath: C:\Users\Xena\AppData\Roaming\Mozilla\Firefox\Profiles\9gbwmbrm.default user_pref("browser.startup.homepage", "C:\ProgramData\Hayzumflexs\ff.HP"); user_pref("browser.newtab.url", "C:\ProgramData\Hayzumflexs\ff.NT"); ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "deskCutv2@gmail.com"="C:\Users\Xena\AppData\Roaming\Mozilla\Firefox\Profiles\9gbwmbrm.default\extensions\deskCutv2@gmail.com" [] ==== Firefox Extensions ====================== AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Xena\AppData\Roaming\Mozilla\Firefox\Profiles\9gbwmbrm.default 31DA97B4682187C6639BBE2215814FDA - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll - Shockwave for Director / Shockwave for Director ==== Chromium Look ====================== Google Slides - Xena\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Xena\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Xena\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Xena\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Sheets - Xena\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Google Docs Offline - Xena\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Chrome Web Store Payments - Xena\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Xena\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBKhl918K0qpwZ-oGyKHypSvgFBLZPjgsuHl3W8dQOHRM8xJN9XJlVh6S27yOJcvfx3-xSLpDRPY4vwd4zRNc_dCaRJCwLdJbjMynakbyWD7JUq1vcG_d4BftmONqOKu_JsEwZruUBmVHcOHkm72fnvbzv1lWBJsBnwhhJf48rBDq2aCwJm4hsv" "Search Page"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBKhl918K0qpwZ-oGyKHypSvgFBLZPjgsuHl3W8dQOHRM8xJN9XJlVh6S27yOJcvfx3-xSLpDRPY4vwd4zRNc_dCaRJCw428GtyClUxCoscokYPvs5BSvjMTO-cOhd_DbXNM0BqK2kE65qdpcQcDVC0AY7f9cPCCQzyA__JJddw7gDT5wz6Ap2K&q={searchTerms}" "Search Bar"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBKhl918K0qpwZ-oGyKHypSvgFBLZPjgsuHl3W8dQOHRM8xJN9XJlVh6S27yOJcvfx3-xSLpDRPY4vwd4zRNc_dCaRJCw428GtyClUxCoscokYPvs5BSvjMTO-cOhd_DbXNM0BqK2kE65qdpcQcDVC0AY7f9cPCCQzyA__JJddw7gDT5wz6Ap2K&q={searchTerms}" "SearchAssistant"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBKhl918K0qpwZ-oGyKHypSvgFBLZPjgsuHl3W8dQOHRM8xJN9XJlVh6S27yOJcvfx3-xSLpDRPY4vwd4zRNc_dCaRJCw428GtyClUxCoscokYPvs5BSvjMTO-cOhd_DbXNM0BqK2kE65qdpcQcDVC0AY7f9cPCCQzyA__JJddw7gDT5wz6Ap2K&q={searchTerms}" "Use Search Asst"="yes" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl] "Default"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBKhl918K0qpwZ-oGyKHypSvgFBLZPjgsuHl3W8dQOHRM8xJN9XJlVh6S27yOJcvfx3-xSLpDRPY4vwd4zRNc_dCaRJCw428GtyClUxCoscokYPvs5BSvjMTO-cOhd_DbXNM0BqK2kE65qdpcQcDVC0AY7f9cPCCQzyA__JJddw7gDT5wz6Ap2K&q={searchTerms}" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl] "Default"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBKhl918K0qpwZ-oGyKHypSvgFBLZPjgsuHl3W8dQOHRM8xJN9XJlVh6S27yOJcvfx3-xSLpDRPY4vwd4zRNc_dCaRJCw428GtyClUxCoscokYPvs5BSvjMTO-cOhd_DbXNM0BqK2kE65qdpcQcDVC0AY7f9cPCCQzyA__JJddw7gDT5wz6Ap2K&q={searchTerms}" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "Default"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBKhl918K0qpwZ-oGyKHypSvgFBLZPjgsuHl3W8dQOHRM8xJN9XJlVh6S27yOJcvfx3-xSLpDRPY4vwd4zRNc_dCaRJCw428GtyClUxCoscokYPvs5BSvjMTO-cOhd_DbXNM0BqK2kE65qdpcQcDVC0AY7f9cPCCQzyA__JJddw7gDT5wz6Ap2K&q={searchTerms}" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs] "Tabs"="res://ieframe.dll/tabswelcome.htm" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs] "Tabs"="res://ieframe.dll/tabswelcome.htm" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBKhl918K0qpwZ-oGyKHypSvgFBLZPjgsuHl3W8dQOHRM8xJN9XJlVh6S27yOJcvfx3-xSLpDRPY4vwd4zRNc_dCaRJCw428GtyClUxCoscokYPvs5BSvjMTO-cOhd_DbXNM0BqK2kE65qdpcQcDVC0AY7f9cPCCQzyA__JJddw7gDT5wz6Ap2K&q={searchTerms}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{ielnksrch}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ielnksrch}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896" "SearchAssistant"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://www.google.com" "Use Search Asst"="no" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="http://search.msn.com/results.asp?q=%s" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs] "Tabs"="about:newtab" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs] "Tabs"="about:newtab" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" ==== All HKLM and HKCU SearchScopes ====================== HKLM\SearchScopes "DefaultScope"="{B815E8A5-906E-4B5E-B9EC-E09899B1B35C}" HKLM\SearchScopes\{1D3F1490-1EEC-43AA-833F-6EB14C527F67} - http://nl.wikipedia.org/wiki/Special:Search?search={searchTerms} HKLM\SearchScopes\{B815E8A5-906E-4B5E-B9EC-E09899B1B35C} - http://www.bing.com/search?q={searchTerms}&form=CPNTDF&pc=CPNTDF&src=IE-SearchBox HKLM\Wow6432Node\SearchScopes "DefaultScope"="{ielnksrch}" HKLM\Wow6432Node\SearchScopes\ielnksrch - http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBKhl918K0qpwZ-oGyKHypSvgFBLZPjgsuHl3W8dQOHRM8xJN9XJlVh6S27yOJcvfx3-xSLpDRPY4vwd4zRNc_dCaRJCw428GtyClUxCoscokYPvs5BSvjMTO-cOhd_DbXNM0BqK2kE65qdpcQcDVC0AY7f9cPCCQzyA__JJddw7gDT5wz6Ap2K&q={searchTerms} HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - No_Url_Value HKLM\Wow6432Node\SearchScopes\{1D3F1490-1EEC-43AA-833F-6EB14C527F67} - http://nl.wikipedia.org/wiki/Special:Search?search={searchTerms} HKLM\Wow6432Node\SearchScopes\{B815E8A5-906E-4B5E-B9EC-E09899B1B35C} - http://www.bing.com/search?q={searchTerms}&form=CPNTDF&pc=CPNTDF&src=IE-SearchBox HKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC HKCU\SearchScopes\{1D3F1490-1EEC-43AA-833F-6EB14C527F67} - http://nl.wikipedia.org/wiki/Special:Search?search={searchTerms} HKCU\SearchScopes\{B815E8A5-906E-4B5E-B9EC-E09899B1B35C} - http://www.bing.com/search?q={searchTerms}&form=CPNTDF&pc=CPNTDF&src=IE-SearchBox ==== Reset Google Chrome ====================== C:\Users\Xena\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\Xena\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully C:\Users\Xena\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\Xena\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully C:\Users\Xena\AppData\Local\Google\Chrome\User Data\Default\Web DataX was reset successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\msntoolbar@msn.com deleted successfully HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\deskCutv2@gmail.com deleted successfully ==== shortcuts on All Users Desktop ====================== C:\Users\Public\Desktop\Bezoek eBay.be.lnk - C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe http://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cnnb&locale=nl_be&bd=all&c=104 C:\Users\Public\Desktop\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe C:\Users\Public\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=APSFL2Apps&co=BE&userid=8f077627-f06b-f556-c606-975cc9cc5b80&searchtype=sc&installDate=04/03/2016&barcodeid=51117003&channelid=3&av=windows C:\Users\Public\Desktop\HP Support Assistant.lnk - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe C:\Users\Public\Desktop\iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.exe C:\Users\Public\Desktop\Magic Desktop.lnk - C:\Program Files (x86)\EasyBits For Kids\ezSecShield.exe C:\Users\Public\Desktop\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\ProgramData\Hayzumflexs\snp.sc C:\Users\Public\Desktop\Play HP Games.lnk - C:\Program Files (x86)\HP Games\onplay\onplay.exe "C:\Program Files (x86)\HP Games\HP Game Console\GameConsole-wt.exe" /src desktopoem C:\Users\Public\Desktop\Skype.lnk - C:\Program Files (x86)\Online Services\Skype\SkypeSetup.exe ==== shortcuts in Users Start Menu ====================== C:\Users\Xena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=APSFL2Apps&co=BE&userid=8f077627-f06b-f556-c606-975cc9cc5b80&searchtype=sc&installDate=04/03/2016&barcodeid=51117003&channelid=3&av=windows C:\Users\Xena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IMVU\Run IMVU.lnk - C:\Users\Xena\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe C:\Users\Xena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IMVU\Uninstall.lnk - C:\Users\Xena\AppData\Roaming\IMVUClient\Uninstall.exe ==== shortcuts in All Users Start Menu ====================== C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk - C:\Windows\Installer\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}\AppleSoftwareUpdateIco.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=APSFL2Apps&co=BE&userid=8f077627-f06b-f556-c606-975cc9cc5b80&searchtype=sc&installDate=04/03/2016&barcodeid=51117003&channelid=3&av=windows C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\ProgramData\Hayzumflexs\snp.sc C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\Info iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.Resources\nl.lproj\About iTunes.rtf C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk - C:\Program Files (x86)\Java\jre1.8.0_73\bin\javacpl.exe -tab about C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk - C:\Program Files (x86)\Java\jre1.8.0_73\bin\javacpl.exe -tab update C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk - C:\Program Files (x86)\Java\jre1.8.0_73\bin\javacpl.exe ==== shortcuts in Quick Launch ====================== C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Xena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=APSFL2Apps&co=BE&userid=8f077627-f06b-f556-c606-975cc9cc5b80&searchtype=sc&installDate=04/03/2016&barcodeid=51117003&channelid=3&av=windows C:\Users\Xena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=APSFL2Apps&co=BE&userid=8f077627-f06b-f556-c606-975cc9cc5b80&searchtype=sc&installDate=04/03/2016&barcodeid=51117003&channelid=3&av=windows C:\Users\Xena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Xena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Xena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe C:\Users\Xena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=APSFL2Apps&co=BE&userid=8f077627-f06b-f556-c606-975cc9cc5b80&searchtype=sc&installDate=04/03/2016&barcodeid=51117003&channelid=3&av=windows C:\Users\Xena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\HPAdvisor.lnk - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe view=DOCKVIEW,SYSTRAY C:\Users\Xena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D?publisher=APSFL2Apps&co=BE&userid=8f077627-f06b-f556-c606-975cc9cc5b80&searchtype=sc&installDate=04/03/2016&barcodeid=51117003&channelid=3&av=windows C:\Users\Xena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\ProgramData\Hayzumflexs\snp.sc C:\Users\Xena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk - C:\Windows\explorer.exe C:\Users\Xena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 ==== shortcuts After Repair ====================== C:\Users\Public\Desktop\Bezoek eBay.be.lnk - C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe C:\Users\Public\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Public\Desktop\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Users\Xena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Users\Xena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Xena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\Xena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Xena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\Xena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ASPackage deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\SpaceSoundPro deleted successfully ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Xena\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Xena\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== C:\Users\Xena\AppData\Local\Mozilla\Firefox\Profiles\9gbwmbrm.default\cache2 emptied successfully ==== Empty Chrome Cache ====================== C:\Users\Xena\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=313 folders=75 164085115 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Xena\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Xena\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\PROGRA~3\Hayzumflex\AlphaCore.dat" not found "C:\PROGRA~3\Hayzumflex\Hayzumflex.d.dat" not found "C:\PROGRA~3\Hayzumflex\Hayzumflex.dat" not found "C:\PROGRA~2\MPC Cleaner\AdbWinApi.dll" not deleted "C:\PROGRA~2\MPC Cleaner\AdbWinUsbApi.dll" not deleted "C:\PROGRA~2\MPC Cleaner\AdcManager.dll" not deleted "C:\PROGRA~2\MPC Cleaner\AndriodServer.dll" not deleted "C:\PROGRA~2\MPC Cleaner\BrowserPlugIn.dll" not deleted "C:\PROGRA~2\MPC Cleaner\CeBase.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Cleaner.dll" not deleted "C:\PROGRA~2\MPC Cleaner\CrashReport.exe" not deleted "C:\PROGRA~2\MPC Cleaner\Database.dll" not deleted "C:\PROGRA~2\MPC Cleaner\dbgkpt.dll" not deleted "C:\PROGRA~2\MPC Cleaner\isafechlp.dll" not deleted "C:\PROGRA~2\MPC Cleaner\LogReport.dll" not deleted "C:\PROGRA~2\MPC Cleaner\LpcManager.dll" not deleted "C:\PROGRA~2\MPC Cleaner\MainFrame.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Microsoft.VC90.CRT.manifest" not deleted "C:\PROGRA~2\MPC Cleaner\Monitor.dll" not deleted "C:\PROGRA~2\MPC Cleaner\MPC.exe" not deleted "C:\PROGRA~2\MPC Cleaner\MPCAutoClean.exe" not deleted "C:\PROGRA~2\MPC Cleaner\MPCBS.dll" not deleted "C:\PROGRA~2\MPC Cleaner\MPCNews.exe" not deleted "C:\PROGRA~2\MPC Cleaner\MPCProtectService.exe" not deleted "C:\PROGRA~2\MPC Cleaner\MpcSafeDll.dll" not deleted "C:\PROGRA~2\MPC Cleaner\MpcSafeDll64.dll" not deleted "C:\PROGRA~2\MPC Cleaner\MPCSecurity.exe" not deleted "C:\PROGRA~2\MPC Cleaner\MPCSetting.exe" not deleted "C:\PROGRA~2\MPC Cleaner\MPCTray.exe" not deleted "C:\PROGRA~2\MPC Cleaner\MPCTray64.exe" not deleted "C:\PROGRA~2\MPC Cleaner\msvcm90.dll" not deleted "C:\PROGRA~2\MPC Cleaner\msvcp110.dll" not deleted "C:\PROGRA~2\MPC Cleaner\msvcp90.dll" not deleted "C:\PROGRA~2\MPC Cleaner\msvcr110.dll" not deleted "C:\PROGRA~2\MPC Cleaner\msvcr90.dll" not deleted "C:\PROGRA~2\MPC Cleaner\nmlct" not deleted "C:\PROGRA~2\MPC Cleaner\Report.dll" not deleted "C:\PROGRA~2\MPC Cleaner\SafeNavi.dll" not deleted "C:\PROGRA~2\MPC Cleaner\SafeNavi64.dll" not deleted "C:\PROGRA~2\MPC Cleaner\SafeProtect.dll" not deleted "C:\PROGRA~2\MPC Cleaner\SetupFrame.dll" not deleted "C:\PROGRA~2\MPC Cleaner\snh.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Support.dll" not deleted "C:\PROGRA~2\MPC Cleaner\symsrv.dll" not deleted "C:\PROGRA~2\MPC Cleaner\symsrv.yes" not deleted "C:\PROGRA~2\MPC Cleaner\TrayFrame.dll" not deleted "C:\PROGRA~2\MPC Cleaner\udpx" not deleted "C:\PROGRA~2\MPC Cleaner\Uninstall.exe" not deleted "C:\PROGRA~2\MPC Cleaner\UninstallFrame.dll" not deleted "C:\PROGRA~2\MPC Cleaner\UninstDelete.exe" not deleted "C:\PROGRA~2\MPC Cleaner\Update.dll" not deleted "C:\PROGRA~2\MPC Cleaner\UpdateHost.exe" not deleted "C:\PROGRA~2\MPC Cleaner\Upgrade.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Utility.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Web.dll" not deleted "C:\PROGRA~2\MPC Cleaner\wfhxte.dat" not deleted "C:\PROGRA~2\MPC Cleaner\WinService.dll" not deleted "C:\PROGRA~2\MPC Cleaner\xadb.exe" not deleted "C:\PROGRA~2\MPC Cleaner\XBus.dll" not deleted "C:\PROGRA~2\MPC Cleaner\XProcessBus.dll" not deleted "C:\PROGRA~2\MPC Cleaner\XSkin.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Config\Clean.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Config\PlugIn.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Drivers\MPCBase_32.sys" not deleted "C:\PROGRA~2\MPC Cleaner\Drivers\MPCKpt.inf" not deleted "C:\PROGRA~2\MPC Cleaner\Drivers\MPCKpt.sys" not deleted "C:\PROGRA~2\MPC Cleaner\Drivers\MPCKpt_vista_32.sys" not deleted "C:\PROGRA~2\MPC Cleaner\Drivers\MPCKpt_vista_64.sys" not deleted "C:\PROGRA~2\MPC Cleaner\Drivers\MPCKpt_xp_32.sys" not deleted "C:\PROGRA~2\MPC Cleaner\Exe\ADC_qd00000.exe" not deleted "C:\PROGRA~2\MPC Cleaner\Image\ad_gray.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\ad_green.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\ad_org.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\ad_red.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g1.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g10.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g11.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g12.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g2.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g3.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g4.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g5.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g6.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g7.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g8.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\g9.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q1.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q10.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q11.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q12.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q2.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q3.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q4.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q5.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q6.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q7.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q8.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\q9.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r1.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r10.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r11.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r12.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r2.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r3.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r4.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r5.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r6.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r7.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r8.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\r9.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\sys_gray.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\sys_green.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\sys_org.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\sys_red.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y1.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y10.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y11.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y12.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y2.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y3.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y4.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y5.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y6.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y7.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y8.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\y9.png" not deleted "C:\PROGRA~2\MPC Cleaner\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest" not deleted "C:\PROGRA~2\MPC Cleaner\Microsoft.VC90.CRT\msvcm90.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Microsoft.VC90.CRT\msvcp90.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Microsoft.VC90.CRT\msvcr90.dll" not deleted "C:\PROGRA~2\MPC Cleaner\Config\DB\as.db" not deleted "C:\PROGRA~2\MPC Cleaner\Config\DB\cf.db" not deleted "C:\PROGRA~2\MPC Cleaner\Config\DB\run.db" not deleted "C:\PROGRA~2\MPC Cleaner\Config\DB\st.db" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SearchIcon\search_{08DA4B46-E0EB-4B4D-8C8B-558C967AF6C5}.ico" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SearchIcon\search_{22A8D5A3-F368-4C6B-BF4D-3C901EBCF242}.ico" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SearchIcon\search_{3F9A707D-2C36-4344-8621-B8E4ADC95C18}.ico" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SearchIcon\search_{D8EC46AF-529F-4636-963B-C086429C73DA}.ico" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SearchIcon\search_{DE37CD8C-DE7B-481F-A676-303ABAFBEE04}.ico" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SearchIcon\search_{F154C596-75A9-4028-90E8-9752BD7CA05B}.ico" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SearchIcon\toasts_waring.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SgIcon\adcapp.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SgIcon\adcweb.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SgIcon\block.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SgIcon\home.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SgIcon\ie.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SgIcon\search.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\AR_green.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\AR_org.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\AR_red.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\Bp_green.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\Bp_org.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\Bp_red.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\SpeedUp_green.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\SpeedUp_org.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\SpeedUp_red.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\SVC_green.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\SVC_org.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\SVC_red.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\TSK_green.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\TSK_org.png" not deleted "C:\PROGRA~2\MPC Cleaner\Image\SoIcon\TSK_red.png" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\Cleaner\Lang.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\Cleaner\Skin.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\CrashReport\Lang.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\CrashReport\Skin.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\News\Lang.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\News\Skin.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\Tray\Lang.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\Tray\Skin.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\Uninstall\Lang.xf" not deleted "C:\PROGRA~2\MPC Cleaner\Skin\Uninstall\Skin.xf" not deleted "C:\Users\Xena\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found "C:\PROGRA~3\Hayzumflex" not found "C:\PROGRA~2\MPC Cleaner" not deleted ==== EOF on vr 04/03/2016 at 14:52:02,73 ======================