Zoek.exe v5.0.0.1 Updated 31-December-2015 Tool run by Daems Jonas on do 26/05/2016 at 12:46:37,02. Microsoft Windows 10 Home 10.0.10586 x64 Running in: Normal Mode Internet Access Detected Launched: d:\Users\Daems Jonas\Downloads\zoek (1).exe [Scan all users] [Script inserted] ==== Older Logs ====================== C:\zoek-results2016-05-26-092856.log 30015 bytes ==== Empty Folders Check ====================== C:\Users\Daems Jonas\AppData\Local\ActiveSync deleted successfully C:\Users\Daems Jonas\AppData\Local\VirtualStore deleted successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\NetworkTiles deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\Program Files\Common Files\AVG Secure Search deleted ==== Folders Found ====================== 2015-10-30 07:24:48 2015-10-30 07:24:48 -------- d-----w- C:\Windows\Microsoft.NET\assembly\GAC_32\Microsoft.SecureBoot.Commands 2016-02-13 12:53:45 2016-02-13 12:53:45 -------- d-----w- C:\Windows\Microsoft.NET\assembly\GAC_32\Microsoft.SecureBoot.Commands.Resources 2015-10-30 07:24:48 2015-10-30 07:24:48 -------- d-----w- C:\Windows\Microsoft.NET\assembly\GAC_64\Microsoft.SecureBoot.Commands 2016-02-13 12:53:45 2016-02-13 12:53:45 -------- d-----w- C:\Windows\Microsoft.NET\assembly\GAC_64\Microsoft.SecureBoot.Commands.Resources 1601-01-01 00:00:00 1601-01-01 00:00:00 -------- d-----w- C:\Windows\System32\SecureBootUpdates 2015-10-30 07:24:25 2016-02-13 12:53:44 -------- d-s---w- C:\Windows\System32\WindowsPowerShell\v1.0\Modules\SecureBoot 2015-10-30 07:24:25 2016-02-13 12:53:44 -------- d-s---w- C:\Windows\SysWOW64\WindowsPowerShell\v1.0\Modules\SecureBoot 2015-10-30 07:18:51 2015-10-30 07:29:04 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-onecore-codeintegrity-secure_31bf3856ad364e35_10.0.10586.0_none_1d6ae15632b58d19 2015-10-30 07:18:43 2016-02-13 13:48:22 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup-core_31bf3856ad364e35_10.0.10586.0_none_c1603e419c762c03 2016-04-22 11:52:11 2016-04-22 11:52:11 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup-core_31bf3856ad364e35_10.0.10586.212_none_a203cfa6510dfd54 2016-02-13 12:56:50 2016-04-30 12:21:24 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup-core_31bf3856ad364e35_10.0.10586.35_none_b8de09f2a2dd4807 2015-10-30 07:18:48 2016-04-30 12:21:26 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup-cpl_31bf3856ad364e35_10.0.10586.0_none_e40befad356f92df 2016-04-22 11:41:53 2016-04-30 12:21:28 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup-cpl_31bf3856ad364e35_10.0.10586.212_none_c4af8111ea076430 2015-10-30 07:18:43 2015-10-30 07:18:43 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup-notify_31bf3856ad364e35_10.0.10586.0_none_a97803b65256f4fd 2015-10-30 07:18:48 2015-10-30 07:43:14 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup-prompt_31bf3856ad364e35_10.0.10586.0_none_7c95057a8e4b59be 2015-10-30 07:18:43 2016-04-30 12:21:30 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup-service_31bf3856ad364e35_10.0.10586.0_none_f12b4c654f6eb875 2016-04-22 11:41:53 2016-04-22 11:52:31 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup-service_31bf3856ad364e35_10.0.10586.212_none_d1ceddca040689c6 2015-10-30 07:18:43 2015-10-30 07:18:43 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup-tool-exe_31bf3856ad364e35_10.0.10586.0_none_86a0561061ad8599 2015-10-30 07:18:48 2015-10-30 07:18:48 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup-tool_31bf3856ad364e35_10.0.10586.0_none_c8e697f997a0e05c 2015-10-30 07:18:43 2016-04-30 12:21:31 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup-ui-libs_31bf3856ad364e35_10.0.10586.0_none_c83af7bfe714725d 2016-04-22 11:41:53 2016-04-22 11:52:31 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup-ui-libs_31bf3856ad364e35_10.0.10586.212_none_a8de89249bac43ae 2015-10-30 07:18:43 2015-10-30 07:18:43 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup-unlock_31bf3856ad364e35_10.0.10586.0_none_f11b495ed6d01b88 2015-10-30 07:18:43 2015-10-30 07:18:43 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup-wmi_31bf3856ad364e35_10.0.10586.0_none_ed07ee2b2fa64d93 2015-10-30 07:18:43 2015-10-30 07:18:43 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup_31bf3856ad364e35_10.0.10586.0_none_f9b38e79386f305f 2016-02-13 12:52:41 2016-02-13 12:52:41 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft.secureboot.commands.resources_31bf3856ad364e35_10.0.10586.0_en-us_1a6c7569572e00e0 2015-10-30 07:17:50 2015-10-30 07:17:50 -------- d-----w- C:\Windows\WinSxS\amd64_microsoft.secureboot.commands_31bf3856ad364e35_10.0.10586.0_none_c4bfa17ace1d5ad9 2016-02-13 12:52:52 2016-02-13 12:52:52 -------- d-----w- C:\Windows\WinSxS\x86_microsoft.secureboot.commands.resources_31bf3856ad364e35_10.0.10586.0_en-us_be4dd9e59ed08faa 2015-10-30 07:18:23 2015-10-30 07:18:23 -------- d-----w- C:\Windows\WinSxS\x86_microsoft.secureboot.commands_31bf3856ad364e35_10.0.10586.0_none_68a105f715bfe9a3 2016-05-26 09:24:14 2016-05-26 09:24:14 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Common Files_AVG Secure Search 2016-05-26 10:55:21 2016-05-26 10:55:21 -------- d---a-w- C:\zoek_backup\C_Program Files_Common Files_AVG Secure Search 2016-05-26 09:24:14 2016-05-26 09:24:14 -------- d---a-w- C:\zoek_backup\C_ProgramData_AVG Secure Search 2016-05-26 09:24:17 2016-05-26 09:24:17 -------- d---a-w- C:\zoek_backup\C_PROGRA~2_COMMON~1_AVG Secure Search 2016-05-26 09:24:17 2016-05-04 09:26:31 -------- d---a-w- C:\zoek_backup\C_PROGRA~3_AVG Secure Search 2016-05-26 09:24:13 2016-05-26 09:24:13 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_AVG Web TuneUp\ChromeRes\AVG Secure Search 2016-05-26 09:24:16 2016-05-26 09:24:16 -------- d---a-w- C:\zoek_backup\C_PROGRA~2_AVG Web TuneUp\ChromeRes\AVG Secure Search 2016-04-24 11:43:56 2016-04-24 11:43:57 -------- d-----w- C:\Program Files (x86)\AVG\Av\Tuneup 2016-05-04 09:26:49 2016-05-04 09:26:51 -------- d-----w- C:\Users\Daems Jonas\AppData\Local\Packages\windows_ie_ac_001\AC\AVG Web TuneUp 2016-04-24 11:44:10 2016-04-24 11:44:10 -------- d-----w- C:\Users\Daems Jonas\AppData\Roaming\TuneUp Software 2016-05-05 08:37:14 2016-05-05 08:37:14 -------- d-----w- C:\Users\Default\AppData\Roaming\TuneUp Software 2016-05-26 09:24:12 2016-05-26 09:24:14 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_AVG Web TuneUp 2016-05-26 09:24:15 2016-05-16 07:22:51 -------- d---a-w- C:\zoek_backup\C_Program Files_AVG Web TuneUp 2016-05-26 09:24:14 2016-05-26 09:24:15 -------- d---a-w- C:\zoek_backup\C_ProgramData_AVG Web TuneUp 2016-05-26 09:24:16 2016-05-26 09:24:16 -------- d---a-w- C:\zoek_backup\C_PROGRA~2_AVG Web TuneUp 2016-05-26 09:24:17 2016-05-26 09:24:17 -------- d---a-w- C:\zoek_backup\C_PROGRA~3_AVG Web TuneUp 2016-05-26 09:24:15 2016-05-26 09:24:15 -------- d---a-w- C:\zoek_backup\C_Users_Daems Jonas_AppData_Local_AVG Web TuneUp 2016-05-26 09:24:13 2016-05-26 09:24:13 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_AVG Web TuneUp\ChromeRes\AVG Web TuneUp 2016-05-26 09:24:16 2016-05-26 09:24:16 -------- d---a-w- C:\zoek_backup\C_PROGRA~2_AVG Web TuneUp\ChromeRes\AVG Web TuneUp ==== Files Found ====================== --- C:\Program Files (x86)\Microsoft Office\root\Office16\FORMS\1043\SECURE.CFG --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 674 Created time: 2016-04-25 10:45:23 Modified time: 2016-04-25 10:45:23 MD5: 9F67E428FB72366513E42FA8D71915D5 SHA1: 185AAE8B3C5C3CF09C1DE236FBBC3C58DF9BAEF7 --- C:\Users\Daems Jonas\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 33347 Created time: 2016-04-24 11:58:39 Modified time: 2016-05-26 10:35:18 MD5: 712B54E238B436D7E506B25308A63539 SHA1: F651ED7CC765ECFAD1626C9D47CA66F045E65E74 --- C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.S1bc92e04#\3ef818cbcb539cf43a77da31930c10cb\Microsoft.SecureBoot.Commands.ni.dll --- Company: Microsoft Corporation File Description: File Version: 10.0.10586.0 Product Name: Microsoft (R) Windows (R) Operating System Copyright: Copyright (c) Microsoft Corporation. All rights reserved. Original Filename: Microsoft.SecureBoot.Commands.dll File type: ----a-w- File size: 95744 Created time: 2016-05-14 01:35:21 Modified time: 2016-05-14 01:35:21 MD5: D5BAD9E0493C33A8160672320B893396 SHA1: 84DECA11874C274C48B999581FA34370B1F890A1 --- C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.S1bc92e04#\3ef818cbcb539cf43a77da31930c10cb\Microsoft.SecureBoot.Commands.ni.dll.aux --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 608 Created time: 2016-05-14 01:35:21 Modified time: 2016-05-14 01:35:21 MD5: 4FB7A0C1A23AEDB26D3F8B366C4AFCD3 SHA1: F2B5AD6146B5403B0BC90B5E6118A6238878AC85 --- C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.S1bc92e04#\767472be193bd1b6ce925e78fb3772ff\Microsoft.SecureBoot.Commands.ni.dll --- Company: Microsoft Corporation File Description: File Version: 10.0.10586.0 Product Name: Microsoft (R) Windows (R) Operating System Copyright: Copyright (c) Microsoft Corporation. All rights reserved. Original Filename: Microsoft.SecureBoot.Commands.dll File type: ----a-w- File size: 118784 Created time: 2016-05-14 01:37:22 Modified time: 2016-05-14 01:37:22 MD5: 3400FA3E421ACCF9616825A04146B922 SHA1: D73CC1990E8F46BBFD18F15C34490BDF2066E7B7 --- C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.S1bc92e04#\767472be193bd1b6ce925e78fb3772ff\Microsoft.SecureBoot.Commands.ni.dll.aux --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 608 Created time: 2016-05-14 01:37:22 Modified time: 2016-05-14 01:37:22 MD5: 67A1E92FA85FE18B204242A164E5C8A1 SHA1: 0DDA399D3A7B95CB40C0AC54CC1A5ACA294D44CF --- C:\Windows\Microsoft.NET\assembly\GAC_32\Microsoft.SecureBoot.Commands\v4.0_10.0.0.0__31bf3856ad364e35\Microsoft.SecureBoot.Commands.dll --- Company: Microsoft Corporation File Description: File Version: 10.0.10586.0 Product Name: Microsoft (R) Windows (R) Operating System Copyright: Copyright (c) Microsoft Corporation. All rights reserved. Original Filename: Microsoft.SecureBoot.Commands.dll File type: ----a-w- File size: 36352 Created time: 2015-10-30 07:18:22 Modified time: 2015-10-30 07:18:22 MD5: 8376D5EBB226C9E11851860BA092B51D SHA1: 4A46F0D9F3ECB78C726C662012AD34AB5E5103F0 --- C:\Windows\Microsoft.NET\assembly\GAC_32\Microsoft.SecureBoot.Commands\v4.0_10.0.0.0__31bf3856ad364e35\SecureBoot.psd1 --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 506 Created time: 2015-10-30 07:18:22 Modified time: 2015-10-30 07:18:22 MD5: A6D69A6A847A7A62CE94A446B7F7990E SHA1: 6D6F4873ACA0743A23D6C1CA72752E9C6E047482 --- C:\Windows\Microsoft.NET\assembly\GAC_32\Microsoft.SecureBoot.Commands.Resources\v4.0_10.0.0.0_en_31bf3856ad364e35\Microsoft.SecureBoot.Commands.Resources.dll --- Company: Microsoft Corporation File Description: File Version: 10.0.10586.0 Product Name: Microsoft (R) Windows (R) Operating System Copyright: Copyright (c) Microsoft Corporation. All rights reserved. Original Filename: Microsoft.SecureBoot.Commands.resources.dll File type: ----a-w- File size: 6656 Created time: 2016-02-13 12:52:52 Modified time: 2016-02-13 12:52:52 MD5: C084692EC51F60504B1CB5407A52C258 SHA1: 93F2C135CD633CD23A118BD461B82230218A0655 --- C:\Windows\Microsoft.NET\assembly\GAC_64\Microsoft.SecureBoot.Commands\v4.0_10.0.0.0__31bf3856ad364e35\Microsoft.SecureBoot.Commands.dll --- Company: Microsoft Corporation File Description: File Version: 10.0.10586.0 Product Name: Microsoft (R) Windows (R) Operating System Copyright: Copyright (c) Microsoft Corporation. All rights reserved. Original Filename: Microsoft.SecureBoot.Commands.dll File type: ----a-w- File size: 36352 Created time: 2015-10-30 07:17:50 Modified time: 2015-10-30 07:17:50 MD5: C87CD0F0CDE3BBDB7E33A3359D1C0B70 SHA1: 35C0722ECBA841FA597A459F6A3AEFB5409C132E --- C:\Windows\Microsoft.NET\assembly\GAC_64\Microsoft.SecureBoot.Commands\v4.0_10.0.0.0__31bf3856ad364e35\SecureBoot.psd1 --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 506 Created time: 2015-10-30 07:17:50 Modified time: 2015-10-30 07:17:50 MD5: A6D69A6A847A7A62CE94A446B7F7990E SHA1: 6D6F4873ACA0743A23D6C1CA72752E9C6E047482 --- C:\Windows\Microsoft.NET\assembly\GAC_64\Microsoft.SecureBoot.Commands.Resources\v4.0_10.0.0.0_en_31bf3856ad364e35\Microsoft.SecureBoot.Commands.Resources.dll --- Company: Microsoft Corporation File Description: File Version: 10.0.10586.0 Product Name: Microsoft (R) Windows (R) Operating System Copyright: Copyright (c) Microsoft Corporation. All rights reserved. Original Filename: Microsoft.SecureBoot.Commands.resources.dll File type: ----a-w- File size: 6656 Created time: 2016-02-13 12:52:40 Modified time: 2016-02-13 12:52:40 MD5: B8398F7E83AEF8380E1F38F0C3B8192D SHA1: 22390C8E934139DB7CE5487EA1924AB7C3726972 --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-base-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 9030 Created time: 2016-02-13 12:50:33 Modified time: 2015-10-30 17:03:22 MD5: BECAFF3C44E49E3E798D3535E53E64D3 SHA1: F88619C7FFFC95EC0A4E955181979FFE27EF9F5D --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-base-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.mum --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 1101 Created time: 2016-02-13 12:50:33 Modified time: 2015-10-30 15:37:02 MD5: 4B652246832BB24412F74CB1BA0D8CC1 SHA1: 3C536BDEA35E1816FE5C1FB703BDC79F604E96CA --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 9602 Created time: 2015-10-30 07:11:40 Modified time: 2015-10-30 06:10:03 MD5: D5256A7C197A803CFE81ADF3869F7631 SHA1: 6588729EAD8857F8D37534F5EDCE882B52EE2092 --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 1028 Created time: 2015-10-30 07:11:40 Modified time: 2015-10-30 03:26:43 MD5: 26F3E140668392D5046FDAB2FF974401 SHA1: B8BDD1D6C7C01B172C68EFE20845976E7D5AC2DE --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-Foundation-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 10174 Created time: 2016-02-13 12:50:33 Modified time: 2015-10-30 17:03:24 MD5: E24A4BE45E98DBA394B5B9346C45B99F SHA1: 68278060F33CB92768B14AF5E2899BEAAA901418 --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-Foundation-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.mum --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 1485 Created time: 2016-02-13 12:50:33 Modified time: 2015-10-30 15:37:02 MD5: F50716C488BBFC6B83DA685D1EB3D570 SHA1: E32666972ED50A120841514E8BC4700EA573B007 --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-Foundation-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 11334 Created time: 2015-10-30 07:11:40 Modified time: 2015-10-30 06:10:06 MD5: 841867CC7D7C8782E281AFAC22EA83F8 SHA1: 0D3D37602D0AB2CC492E47545AF85A5625C67CAA --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-Foundation-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 1660 Created time: 2015-10-30 07:11:40 Modified time: 2015-10-30 03:26:13 MD5: F2D5DA1CAB4B90BE19451FEE65E4CF79 SHA1: D530774B3FE258CFDBFB34AA11C3FD314C53BCBC --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-Foundation-WOW64-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 9030 Created time: 2016-02-13 12:50:34 Modified time: 2015-10-30 17:03:24 MD5: 83C537ECB05E0BC8F1E89B7B704AA3C7 SHA1: 016904138920F5147FC4DA20C5F24543AD49CBB0 --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-Foundation-WOW64-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.mum --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 1198 Created time: 2016-02-13 12:50:34 Modified time: 2015-10-30 15:37:02 MD5: 5EA1D149062B4F61F83A89B0380A7295 SHA1: 5CA3D665C0985B62824003D7032B74F50B3E60AC --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-Foundation-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 9798 Created time: 2015-10-30 07:11:41 Modified time: 2015-10-30 06:10:06 MD5: 71D6433B517EAF06C93A84A827BCC22C SHA1: A6CEBB55B5024E25F82572B0B7D3FAAE311FB7DF --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-Foundation-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 1127 Created time: 2015-10-30 07:11:41 Modified time: 2015-10-30 03:26:13 MD5: AFBCBBB660328569715298E50A7E6B41 SHA1: 0359508D4E6FF39A7F7C74CC3B84582C5049107E --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 8841 Created time: 2016-02-13 12:50:33 Modified time: 2015-10-30 17:32:36 MD5: 4162393533E79F00D5D37DAD666D6328 SHA1: 79B4E740B6EE7AC058D47AB09F07FADAB49DBCF7 --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.mum --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 1431 Created time: 2016-02-13 12:50:33 Modified time: 2015-10-30 15:36:38 MD5: 5A8F648F9918581067DEF3620816D19E SHA1: 7F5518608ABE1B302EFC1416F19F6221F8F824A0 --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 8841 Created time: 2015-10-30 07:11:40 Modified time: 2015-10-30 06:15:25 MD5: 40A79477EC97181A2F2CE713E007E960 SHA1: 0DDFFDEAD480E438E9DB0D873539E75ACF406BB0 --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 1544 Created time: 2015-10-30 07:11:40 Modified time: 2015-10-30 03:26:43 MD5: D3947E9293F62915927F104C687CCC4C SHA1: 29A15859E17757B7BC42AA2325982DF2ED486A76 --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-WOW64-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 8841 Created time: 2016-02-13 12:50:34 Modified time: 2015-10-30 17:32:36 MD5: 12E9D96F59618B9744021B2CF276BC3F SHA1: 7500C5B185B193342505D4D5AD81EDF2093FACA9 --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-WOW64-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.mum --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 1111 Created time: 2016-02-13 12:50:34 Modified time: 2015-10-30 15:36:38 MD5: 5FF39D767B4941584364D32C9E1AF620 SHA1: A26B30E91E97ACF9A6D653711C0C8D74A54379E0 --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 8838 Created time: 2015-10-30 07:11:41 Modified time: 2015-10-30 06:15:26 MD5: BF1D02088FEB7A3AD1FF56426E208F7E SHA1: 4F86EF23994B79D302F1830CE0474B4E5DDF0AB2 --- C:\Windows\servicing\Packages\Microsoft-OneCore-SecureStartup-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 1071 Created time: 2015-10-30 07:11:41 Modified time: 2015-10-30 03:26:43 MD5: 7E0E95061DC4CE650519DCF705611457 SHA1: DBA8424D07A12E64E168083CF7B881672F75E4EC --- C:\Windows\servicing\Packages\Microsoft-Windows-SecureStartup-Basic-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 14414 Created time: 2016-02-13 12:50:36 Modified time: 2015-10-30 17:03:32 MD5: 659564CDB1424AA5573B4D296690DF13 SHA1: 93EA0E1017C47DCE8F5011C5BFABDCB4F8A927CD --- C:\Windows\servicing\Packages\Microsoft-Windows-SecureStartup-Basic-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.mum --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 2247 Created time: 2016-02-13 12:50:36 Modified time: 2015-10-30 15:37:06 MD5: D6BEF8198F4401AD44793CDAF12C88A1 SHA1: A08FBBF745B350DF4AFEC26077FC52043333F8FF --- C:\Windows\servicing\Packages\Microsoft-Windows-SecureStartup-Basic-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 27880 Created time: 2015-10-30 07:11:41 Modified time: 2015-10-30 06:10:12 MD5: 2598B655A241F6FCA270351AAD09792A SHA1: CEC1D1A420D16A238E56EEBE479FA2F40D566594 --- C:\Windows\servicing\Packages\Microsoft-Windows-SecureStartup-Basic-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 2073 Created time: 2015-10-30 07:11:41 Modified time: 2015-10-30 03:34:53 MD5: 8DD47B2B796051394F60F5767503D8A0 SHA1: C9376B341F4C8B0DCBE4B426984089B5E16EB419 --- C:\Windows\servicing\Packages\Microsoft-Windows-SecureStartup-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 15949 Created time: 2016-02-13 12:50:36 Modified time: 2015-10-30 17:03:30 MD5: B36A209E3BD972C19BE5DD0A7CF69AF1 SHA1: D2BC2982D036DEBB2AE2FC62507E248D62D14F6E --- C:\Windows\servicing\Packages\Microsoft-Windows-SecureStartup-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.mum --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 2271 Created time: 2016-02-13 12:50:36 Modified time: 2015-10-30 15:37:06 MD5: 949F4B3D7E79CC890A5D305B73135C0A SHA1: F58A099BA5BBF9341E88479F3233183B4F7BF085 --- C:\Windows\servicing\Packages\Microsoft-Windows-SecureStartup-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 46868 Created time: 2015-10-30 07:11:43 Modified time: 2015-10-30 06:10:08 MD5: A7E1D45B020F9466F6C746A17A5797DB SHA1: 874C16906BD3821A575EB1B4C8ADBC27149D0BDA --- C:\Windows\servicing\Packages\Microsoft-Windows-SecureStartup-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 2100 Created time: 2015-10-30 07:11:43 Modified time: 2015-10-30 03:34:53 MD5: C292AB212F5608985A9D5224008365B3 SHA1: 54A8495FBA32F6F17DC5627E85B697BF86141EF6 --- C:\Windows\System32\WerFaultSecure.exe --- Company: Microsoft Corporation File Description: Windows Foutrapportage File Version: 10.0.10586.0 (th2_release.151029-1700) Product Name: Microsoft® Windows®-besturingssysteem Copyright: © Microsoft Corporation. Alle rechten voorbehouden. Original Filename: WerFaultSecure.exe.mui File type: ----a-w- File size: 117824 Created time: 2015-10-30 07:18:38 Modified time: 2015-10-30 07:18:38 MD5: 63D0FBE869A1DF51C2C11D1D8ED3320A SHA1: 654230115E14AEBA328AD02068C65E019211BC93 --- C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-OneCore-SecureStartup-base-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 9030 Created time: 2016-02-13 12:50:33 Modified time: 2015-10-30 17:03:22 MD5: BECAFF3C44E49E3E798D3535E53E64D3 SHA1: F88619C7FFFC95EC0A4E955181979FFE27EF9F5D --- C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-OneCore-SecureStartup-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 9602 Created time: 2015-10-30 07:11:40 Modified time: 2015-10-30 06:10:03 MD5: D5256A7C197A803CFE81ADF3869F7631 SHA1: 6588729EAD8857F8D37534F5EDCE882B52EE2092 --- C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-OneCore-SecureStartup-Foundation-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 10174 Created time: 2016-02-13 12:50:33 Modified time: 2015-10-30 17:03:24 MD5: E24A4BE45E98DBA394B5B9346C45B99F SHA1: 68278060F33CB92768B14AF5E2899BEAAA901418 --- C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-OneCore-SecureStartup-Foundation-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 11334 Created time: 2015-10-30 07:11:40 Modified time: 2015-10-30 06:10:06 MD5: 841867CC7D7C8782E281AFAC22EA83F8 SHA1: 0D3D37602D0AB2CC492E47545AF85A5625C67CAA --- C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-OneCore-SecureStartup-Foundation-WOW64-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 9030 Created time: 2016-02-13 12:50:34 Modified time: 2015-10-30 17:03:24 MD5: 83C537ECB05E0BC8F1E89B7B704AA3C7 SHA1: 016904138920F5147FC4DA20C5F24543AD49CBB0 --- C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-OneCore-SecureStartup-Foundation-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 9798 Created time: 2015-10-30 07:11:41 Modified time: 2015-10-30 06:10:06 MD5: 71D6433B517EAF06C93A84A827BCC22C SHA1: A6CEBB55B5024E25F82572B0B7D3FAAE311FB7DF --- C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-OneCore-SecureStartup-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 8841 Created time: 2016-02-13 12:50:33 Modified time: 2015-10-30 17:32:36 MD5: 4162393533E79F00D5D37DAD666D6328 SHA1: 79B4E740B6EE7AC058D47AB09F07FADAB49DBCF7 --- C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-OneCore-SecureStartup-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 8841 Created time: 2015-10-30 07:11:40 Modified time: 2015-10-30 06:15:25 MD5: 40A79477EC97181A2F2CE713E007E960 SHA1: 0DDFFDEAD480E438E9DB0D873539E75ACF406BB0 --- C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-OneCore-SecureStartup-WOW64-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 8841 Created time: 2016-02-13 12:50:34 Modified time: 2015-10-30 17:32:36 MD5: 12E9D96F59618B9744021B2CF276BC3F SHA1: 7500C5B185B193342505D4D5AD81EDF2093FACA9 --- C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-OneCore-SecureStartup-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 8838 Created time: 2015-10-30 07:11:41 Modified time: 2015-10-30 06:15:26 MD5: BF1D02088FEB7A3AD1FF56426E208F7E SHA1: 4F86EF23994B79D302F1830CE0474B4E5DDF0AB2 --- C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-SecureStartup-Basic-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 14414 Created time: 2016-02-13 12:50:36 Modified time: 2015-10-30 17:03:32 MD5: 659564CDB1424AA5573B4D296690DF13 SHA1: 93EA0E1017C47DCE8F5011C5BFABDCB4F8A927CD --- C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-SecureStartup-Basic-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 27880 Created time: 2015-10-30 07:11:41 Modified time: 2015-10-30 06:10:12 MD5: 2598B655A241F6FCA270351AAD09792A SHA1: CEC1D1A420D16A238E56EEBE479FA2F40D566594 --- C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-SecureStartup-Package~31bf3856ad364e35~amd64~nl-NL~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 15949 Created time: 2016-02-13 12:50:36 Modified time: 2015-10-30 17:03:30 MD5: B36A209E3BD972C19BE5DD0A7CF69AF1 SHA1: D2BC2982D036DEBB2AE2FC62507E248D62D14F6E --- C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-SecureStartup-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 46868 Created time: 2015-10-30 07:11:43 Modified time: 2015-10-30 06:10:08 MD5: A7E1D45B020F9466F6C746A17A5797DB SHA1: 874C16906BD3821A575EB1B4C8ADBC27149D0BDA --- C:\Windows\System32\nl-NL\WerFaultSecure.exe.mui --- Company: Microsoft Corporation File Description: Windows Foutrapportage File Version: 10.0.10586.0 (th2_release.151029-1700) Product Name: Microsoft® Windows®-besturingssysteem Copyright: © Microsoft Corporation. Alle rechten voorbehouden. Original Filename: WerFaultSecure.exe.mui File type: ----a-w- File size: 8192 Created time: 2016-02-13 12:52:58 Modified time: 2016-02-13 12:52:58 MD5: 2C55F1A3B8F7EC9BB4E5D714913EC722 SHA1: D67F93FCF6C88710ECB1F1B9FE434C8A69D6CF02 --- C:\Windows\System32\WindowsPowerShell\v1.0\Modules\SecureBoot\SecureBoot.psd1 --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 506 Created time: 2015-10-30 07:18:22 Modified time: 2015-10-30 07:18:22 MD5: A6D69A6A847A7A62CE94A446B7F7990E SHA1: 6D6F4873ACA0743A23D6C1CA72752E9C6E047482 --- C:\Windows\SysWOW64\WerFaultSecure.exe --- Company: Microsoft Corporation File Description: Windows Foutrapportage File Version: 10.0.10586.0 (th2_release.151029-1700) Product Name: Microsoft® Windows®-besturingssysteem Copyright: © Microsoft Corporation. Alle rechten voorbehouden. Original Filename: WerFaultSecure.exe.mui File type: ----a-w- File size: 117824 Created time: 2015-10-30 07:18:38 Modified time: 2015-10-30 07:18:38 MD5: 63D0FBE869A1DF51C2C11D1D8ED3320A SHA1: 654230115E14AEBA328AD02068C65E019211BC93 --- C:\Windows\SysWOW64\nl-NL\WerFaultSecure.exe.mui --- Company: Microsoft Corporation File Description: Windows Foutrapportage File Version: 10.0.10586.0 (th2_release.151029-1700) Product Name: Microsoft® Windows®-besturingssysteem Copyright: © Microsoft Corporation. Alle rechten voorbehouden. Original Filename: WerFaultSecure.exe.mui File type: ----a-w- File size: 8192 Created time: 2016-02-13 12:52:58 Modified time: 2016-02-13 12:52:58 MD5: 2C55F1A3B8F7EC9BB4E5D714913EC722 SHA1: D67F93FCF6C88710ECB1F1B9FE434C8A69D6CF02 --- C:\Windows\SysWOW64\WindowsPowerShell\v1.0\Modules\SecureBoot\SecureBoot.psd1 --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 506 Created time: 2015-10-30 07:18:22 Modified time: 2015-10-30 07:18:22 MD5: A6D69A6A847A7A62CE94A446B7F7990E SHA1: 6D6F4873ACA0743A23D6C1CA72752E9C6E047482 --- C:\Windows\WinSxS\amd64_microsoft-onecore-i..atedusermode-kernel_31bf3856ad364e35_10.0.10586.0_none_7441d0ef3efb5d32\securekernel.exe --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 162650 Created time: 2015-10-30 07:18:50 Modified time: 2015-10-30 07:29:04 MD5: F407E1D3EADB1EB262918D9BD467EFB2 SHA1: 7CE3739E4B5949493515F043BFDC37B37E4573AB --- C:\Windows\WinSxS\amd64_microsoft-onecore-i..atedusermode-kernel_31bf3856ad364e35_10.0.10586.103_none_54f130a3f38a2ec2\securekernel.exe --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 162942 Created time: 2016-02-13 12:56:47 Modified time: 2016-02-13 13:40:22 MD5: 6D26A69ABCF9553167B7215C86DE83C5 SHA1: 8D3856F83D0970FFB2F99A6F6970839314FFA1FF --- C:\Windows\WinSxS\amd64_microsoft-onecore-i..atedusermode-kernel_31bf3856ad364e35_10.0.10586.306_none_54f4354df3877515\securekernel.exe --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 163092 Created time: 2016-05-11 20:36:45 Modified time: 2016-05-14 01:35:03 MD5: 2E014417AF4799E6DE8D0A79F5C48783 SHA1: ED9C76AA67CE11084B5B7CB1BC4C1F9856B5003A --- C:\Windows\WinSxS\amd64_microsoft-windows-e..ingfaults.resources_31bf3856ad364e35_10.0.10586.0_nl-nl_bc1de982621c7856\WerFaultSecure.exe.mui --- Company: Microsoft Corporation File Description: Windows Foutrapportage File Version: 10.0.10586.0 (th2_release.151029-1700) Product Name: Microsoft® Windows®-besturingssysteem Copyright: © Microsoft Corporation. Alle rechten voorbehouden. Original Filename: WerFaultSecure.exe.mui File type: ----a-w- File size: 8192 Created time: 2016-02-13 12:52:50 Modified time: 2016-02-13 12:52:50 MD5: 1DEC14E0B23448F824FD5FDB30D798A0 SHA1: 8B194B5215E156C5D9F9A00A9FE05871C9EF208A --- C:\Windows\WinSxS\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10586.0_none_fc8cb4fae720846a\WerFaultSecure.exe --- Company: Microsoft Corporation File Description: Windows Fault Reporting File Version: 10.0.10586.0 (th2_release.151029-1700) Product Name: Microsoft® Windows® Operating System Copyright: © Microsoft Corporation. All rights reserved. Original Filename: WerFaultSecure.exe File type: ----a-w- File size: 122504 Created time: 2015-10-30 07:18:19 Modified time: 2015-10-30 07:18:19 MD5: 9B648A52A2E452672B33384683779C3A SHA1: 20C5E3B9218CD5E70CDE90B86593EAE0B8C93F93 --- C:\Windows\WinSxS\amd64_microsoft-windows-m..ementmanifests-base_31bf3856ad364e35_10.0.10586.0_none_527efdc3446f9236\Microsoft-Windows-SecureStartup-FilterDriver-Replacement.man --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 3735 Created time: 2015-10-30 07:17:47 Modified time: 2015-10-30 07:17:47 MD5: E8E1DE819AE2F9C282577D52DBBAB93F SHA1: 347193BF52E67FC082B15542CD07E27BA47E8E98 --- C:\Windows\WinSxS\amd64_microsoft-windows-securestartup_31bf3856ad364e35_10.0.10586.0_none_f9b38e79386f305f\SecureStartupFeature-ppdlic.xrm-ms --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 3377 Created time: 2015-10-30 07:18:43 Modified time: 2015-10-30 07:18:43 MD5: 02218BC41681D9FE8E0647A95C5BA8FD SHA1: 14ECF721A7064B4F8269DD06B1CFD4263239A8EC --- C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack-boot_31bf3856ad364e35_10.0.10586.0_none_7ec3caa94f97a0d2\securebootai.dll --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 12 Created time: 2015-10-30 06:31:04 Modified time: 2016-04-30 12:21:48 MD5: 20CE5935810F0F56E37A7F65806DA343 SHA1: D406D5C36E9E5B0B4B542D9E4D99EC151A27CA9D --- C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack-boot_31bf3856ad364e35_10.0.10586.168_none_5f374c48045298bb\securebootai.dll --- Company: Microsoft Corporation File Description: CSI Secure Boot Servicing Plugin File Version: 10.0.10586.0 (th2_release.151029-1700) Product Name: Microsoft® Windows® Operating System Copyright: © Microsoft Corporation. All rights reserved. Original Filename: securebootai.dll File type: ----a-w- File size: 22016 Created time: 2015-10-30 06:31:04 Modified time: 2015-10-30 06:31:04 MD5: B25E3A691A1A92C5D7D85F13D895C5F6 SHA1: 9CCD75891A7344D11007015C0C7F141A0E4DB1F8 --- C:\Windows\WinSxS\amd64_microsoft-windows-t..ure-time-aggregator_31bf3856ad364e35_10.0.10586.0_none_e13820d402e71622\SecureTimeAggregator.dll --- Company: Microsoft Corporation File Description: Secure Time Aggregator File Version: 10.0.10586.0 (th2_release.151029-1700) Product Name: Microsoft® Windows® Operating System Copyright: © Microsoft Corporation. All rights reserved. Original Filename: SecureTimeAggregator File type: ----a-w- File size: 93696 Created time: 2015-10-30 07:17:52 Modified time: 2015-10-30 07:17:52 MD5: B98564CBE449BC3A8A8F78E62FB3105D SHA1: 67A6329B6ABECD9AD5F2F34DAA47A3093717F50F --- C:\Windows\WinSxS\amd64_microsoft.secureboot.commands.resources_31bf3856ad364e35_10.0.10586.0_en-us_1a6c7569572e00e0\Microsoft.SecureBoot.Commands.Resources.dll --- Company: Microsoft Corporation File Description: File Version: 10.0.10586.0 Product Name: Microsoft (R) Windows (R) Operating System Copyright: Copyright (c) Microsoft Corporation. All rights reserved. Original Filename: Microsoft.SecureBoot.Commands.resources.dll File type: ----a-w- File size: 6656 Created time: 2016-02-13 12:52:40 Modified time: 2016-02-13 12:52:40 MD5: B8398F7E83AEF8380E1F38F0C3B8192D SHA1: 22390C8E934139DB7CE5487EA1924AB7C3726972 --- C:\Windows\WinSxS\amd64_microsoft.secureboot.commands_31bf3856ad364e35_10.0.10586.0_none_c4bfa17ace1d5ad9\Microsoft.SecureBoot.Commands.dll --- Company: Microsoft Corporation File Description: File Version: 10.0.10586.0 Product Name: Microsoft (R) Windows (R) Operating System Copyright: Copyright (c) Microsoft Corporation. All rights reserved. Original Filename: Microsoft.SecureBoot.Commands.dll File type: ----a-w- File size: 36352 Created time: 2015-10-30 07:17:50 Modified time: 2015-10-30 07:17:50 MD5: C87CD0F0CDE3BBDB7E33A3359D1C0B70 SHA1: 35C0722ECBA841FA597A459F6A3AEFB5409C132E --- C:\Windows\WinSxS\amd64_microsoft.secureboot.commands_31bf3856ad364e35_10.0.10586.0_none_c4bfa17ace1d5ad9\SecureBoot.psd1 --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 506 Created time: 2015-10-30 07:17:50 Modified time: 2015-10-30 07:17:50 MD5: A6D69A6A847A7A62CE94A446B7F7990E SHA1: 6D6F4873ACA0743A23D6C1CA72752E9C6E047482 --- C:\Windows\WinSxS\FileMaps\$$_system32_securebootupdates_26bd7695a6545733.cdf-ms --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 748 Created time: 2015-10-30 07:24:26 Modified time: 2015-10-30 07:21:26 MD5: A11BE28840C06187F019C37C2152DEA9 SHA1: FDE12A5627D5F7E7CAA23025812EA9C63EFC7AE4 --- C:\Windows\WinSxS\FileMaps\$$_system32_windowspowershell_v1.0_modules_secureboot_9d07353d2b857be7.cdf-ms --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 684 Created time: 2015-10-30 07:24:26 Modified time: 2016-02-13 12:53:31 MD5: 1531180B21474FF84B7CCF5089145928 SHA1: 31323C96C97CEA92AD80F1ADFA3CCCC6EE391402 --- C:\Windows\WinSxS\FileMaps\$$_system32_windowspowershell_v1.0_modules_secureboot_en-us_98b3d517bfdaf04b.cdf-ms --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 668 Created time: 2016-02-13 12:53:39 Modified time: 2016-02-13 12:53:31 MD5: 178889A9648FA47704707932C02696D1 SHA1: 72637F152DF77BEEAF90C9FC46C97613FDE9EF6B --- C:\Windows\WinSxS\FileMaps\$$_syswow64_windowspowershell_v1.0_modules_secureboot_150f0cc835cc8893.cdf-ms --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 680 Created time: 2015-10-30 07:24:25 Modified time: 2016-02-13 12:53:30 MD5: 8D7BE7316B5590DB610739742A623DB0 SHA1: 37D30198CDD2B1945B5487F4F8735DFE248E57B3 --- C:\Windows\WinSxS\FileMaps\$$_syswow64_windowspowershell_v1.0_modules_secureboot_en-us_186f7f4e113fea17.cdf-ms --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 664 Created time: 2016-02-13 12:53:39 Modified time: 2016-02-13 12:53:30 MD5: 9347D1CAEDD325E0567EC08BB595F209 SHA1: 0B6ABD2BC9591918E82C8D8CEF5C4245667C1EBC --- C:\Windows\WinSxS\Manifests\amd64_microsoft-onecore-codeintegrity-secure_31bf3856ad364e35_10.0.10586.0_none_1d6ae15632b58d19.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 229 Created time: 2015-10-30 07:15:46 Modified time: 2015-10-30 07:15:45 MD5: 81764CDA1134BD76291468F25C4A13F2 SHA1: D93DA1EC409F8AF52BCE8B39750F6C86446BFBA0 --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-rpc-secure-kerberos_31bf3856ad364e35_10.0.10586.0_none_0c2e31e0ac309a6c.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 163 Created time: 2015-10-30 07:13:16 Modified time: 2015-10-30 07:13:15 MD5: 3BF8CD7763C581F7028B2E25460DA538 SHA1: 0C73FF25D28309DCE33F47786AC189BD00501964 --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-rpc-secure-negotiate_31bf3856ad364e35_10.0.10586.0_none_88abe19bb8931993.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 164 Created time: 2015-10-30 07:13:16 Modified time: 2015-10-30 07:13:15 MD5: FA0037C1FD488EF65A4064ED42F02D68 SHA1: AB10A06A742EE3896C523BB18C7F7CC504E0B6F7 --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-rpc-secure-ntlm_31bf3856ad364e35_10.0.10586.0_none_d4988888e6f35e66.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 161 Created time: 2015-10-30 07:13:16 Modified time: 2015-10-30 07:13:15 MD5: E876BDC10398C545437A7DFA99F07316 SHA1: 5C3EB9095E5052089E76C2214B5B035F6F6F6162 --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-rpc-secure-ssl_31bf3856ad364e35_10.0.10586.0_none_6d32b6606058513d.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 156 Created time: 2015-10-30 07:13:19 Modified time: 2015-10-30 07:13:18 MD5: 114F3344E842997D6DE50C059080D403 SHA1: 4E48337C70CC6308BE25C03AC421D3392FBE8F66 --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-securestartup-core_31bf3856ad364e35_10.0.10586.0_none_c1603e419c762c03.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 7466 Created time: 2015-10-30 07:14:18 Modified time: 2015-10-30 07:14:17 MD5: 57C9FA858646CCCCA2F79D293E13B359 SHA1: 2FB6F654C400D3882E6EBA6BAD754445EA42757F --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-securestartup-core_31bf3856ad364e35_10.0.10586.212_none_a203cfa6510dfd54.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ------w- File size: 7472 Created time: 2016-04-22 11:41:53 Modified time: 2016-04-22 11:41:42 MD5: A851F0C01C228EA7B67FF6F56418A498 SHA1: AEA5035FFFC06636E7C95BCB525DEF587C760916 --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-securestartup-core_31bf3856ad364e35_10.0.10586.35_none_b8de09f2a2dd4807.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 7465 Created time: 2016-02-13 12:55:59 Modified time: 2016-02-13 12:55:50 MD5: 84DEC8426DDAAB64DC1DC960C4581EB5 SHA1: 8B0B4DBC36A9D21BA863067D5258A8106883212B --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-securestartup-cpl_31bf3856ad364e35_10.0.10586.0_none_e40befad356f92df.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 2041 Created time: 2015-10-30 07:15:36 Modified time: 2015-10-30 07:15:35 MD5: 088976DA112E95CE2E57B58F2426CE25 SHA1: CCB8E7D590156F514765ACBF4D76D1881395D05A --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-securestartup-cpl_31bf3856ad364e35_10.0.10586.212_none_c4af8111ea076430.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ------w- File size: 2044 Created time: 2016-04-22 11:41:53 Modified time: 2016-04-22 11:41:43 MD5: 99E5C3715EAA16A5C30CA322E1302B19 SHA1: A5CDBCE99840389B99D6F910785DC27587D0EEDB --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-securestartup-notify_31bf3856ad364e35_10.0.10586.0_none_a97803b65256f4fd.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 264 Created time: 2015-10-30 07:14:18 Modified time: 2015-10-30 07:14:16 MD5: DCD1C2FDB85B56CE6BEF6A4B0E477328 SHA1: 05C72852B49D465E9B2FCD4A46B0D0CCD40A35B0 --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-securestartup-prompt_31bf3856ad364e35_10.0.10586.0_none_7c95057a8e4b59be.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 263 Created time: 2015-10-30 07:15:36 Modified time: 2015-10-30 07:15:35 MD5: 54B120A46BF422002FEF9355C57343F2 SHA1: 90E8E2C8164C893C827A45C6FCBCDB9C993C30F1 --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-securestartup-service_31bf3856ad364e35_10.0.10586.0_none_f12b4c654f6eb875.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 1381 Created time: 2015-10-30 07:14:18 Modified time: 2015-10-30 07:14:16 MD5: 318F9B36C486C8C9B5FCE96C0CF1F521 SHA1: D9E0D8D4D77BD231600518A8DD195F33F62D5D27 --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-securestartup-service_31bf3856ad364e35_10.0.10586.212_none_d1ceddca040689c6.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ------w- File size: 1388 Created time: 2016-04-22 11:41:53 Modified time: 2016-04-22 11:41:43 MD5: AADE0D943191CB48AFD738B600F3F3EC SHA1: 159B263196F082DFC9961A6F6555677AE7DD445A --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-securestartup-tool-exe_31bf3856ad364e35_10.0.10586.0_none_86a0561061ad8599.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 284 Created time: 2015-10-30 07:14:18 Modified time: 2015-10-30 07:14:16 MD5: A45673392D21D154FD14E08A883ECEB5 SHA1: F94A37C4CF31B9653B8CE0ECAAC531206995C93B --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-securestartup-tool_31bf3856ad364e35_10.0.10586.0_none_c8e697f997a0e05c.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 253 Created time: 2015-10-30 07:15:36 Modified time: 2015-10-30 07:15:35 MD5: FC01A7CBF8C28CA3CDC8F3844580A850 SHA1: 2FFCDEBDB7F5C4DE8199227FB76101AE38DDC5A6 --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-securestartup-ui-libs_31bf3856ad364e35_10.0.10586.0_none_c83af7bfe714725d.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 748 Created time: 2015-10-30 07:14:18 Modified time: 2015-10-30 07:14:17 MD5: 2881C40CB18C3956DF4B7DC60C25197A SHA1: ADF380E3590A4323D76FA4F95D61A40AFF501E0F --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-securestartup-ui-libs_31bf3856ad364e35_10.0.10586.212_none_a8de89249bac43ae.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ------w- File size: 754 Created time: 2016-04-22 11:41:53 Modified time: 2016-04-22 11:41:43 MD5: 03303EDBA6846F2E82C081EAB8D145B8 SHA1: 20B758DBB86B0A4B6086F9E584BCC0949D428FB5 --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-securestartup-unlock_31bf3856ad364e35_10.0.10586.0_none_f11b495ed6d01b88.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 522 Created time: 2015-10-30 07:14:18 Modified time: 2015-10-30 07:14:17 MD5: 5464AE2E5D50FC855330654DEFD4050D SHA1: D711D53315DF381BCB049A4DFB6A36DC33073AAD --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-securestartup-wmi_31bf3856ad364e35_10.0.10586.0_none_ed07ee2b2fa64d93.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 701 Created time: 2015-10-30 07:14:18 Modified time: 2015-10-30 07:14:16 MD5: A74C9B2E9C5BC8CB42975F0DA055E146 SHA1: B004BFEF8D6A0FD7704DFEE200C864A1A249E3B5 --- C:\Windows\WinSxS\Manifests\amd64_microsoft-windows-securestartup_31bf3856ad364e35_10.0.10586.0_none_f9b38e79386f305f.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 331 Created time: 2015-10-30 07:14:18 Modified time: 2015-10-30 07:14:16 MD5: 5D954F02C9C4B6E72C8DBBFCEC794BD9 SHA1: 5C9807E9CD0643FCA126CBE07552AAC62033C4EB --- C:\Windows\WinSxS\Manifests\amd64_microsoft.secureboot.commands.resources_31bf3856ad364e35_10.0.10586.0_en-us_1a6c7569572e00e0.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 281 Created time: 2016-02-13 12:51:27 Modified time: 2016-02-13 12:51:26 MD5: 42842E2BB9ED32D67AC352962EE3EC31 SHA1: CFE512E22F4E0860467F1A2C5B786594BF6CC67A --- C:\Windows\WinSxS\Manifests\amd64_microsoft.secureboot.commands_31bf3856ad364e35_10.0.10586.0_none_c4bfa17ace1d5ad9.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 428 Created time: 2015-10-30 07:12:57 Modified time: 2015-10-30 07:12:55 MD5: 011DE6006260E8602B7EBE02ECDE668C SHA1: 80C75CA5D840BB30311C1439E7BAB5BBB415059C --- C:\Windows\WinSxS\Manifests\wow64_microsoft-windows-rpc-secure-kerberos_31bf3856ad364e35_10.0.10586.0_none_1682dc32e0915c67.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 168 Created time: 2015-10-30 07:13:55 Modified time: 2015-10-30 07:13:54 MD5: 407800143F5B4A86C9ECB607C1802B3C SHA1: 7D3F63013947603734AD24665A630134D1042E56 --- C:\Windows\WinSxS\Manifests\wow64_microsoft-windows-rpc-secure-negotiate_31bf3856ad364e35_10.0.10586.0_none_93008bedecf3db8e.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 169 Created time: 2015-10-30 07:13:55 Modified time: 2015-10-30 07:13:54 MD5: 8205687C863896FD8DE568DE80DED8C7 SHA1: D3B75CA0F84A1B1420B4700E0622C794E89757AD --- C:\Windows\WinSxS\Manifests\wow64_microsoft-windows-rpc-secure-ntlm_31bf3856ad364e35_10.0.10586.0_none_deed32db1b542061.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 166 Created time: 2015-10-30 07:13:55 Modified time: 2015-10-30 07:13:54 MD5: 75982DDB6A983213F0CB245F6440866C SHA1: F9CD13C1BE21E936048B19989DD0D5A4E9219D42 --- C:\Windows\WinSxS\Manifests\x86_microsoft-windows-rpc-secure-ssl_31bf3856ad364e35_10.0.10586.0_none_11141adca7fae007.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 152 Created time: 2015-10-30 07:13:55 Modified time: 2015-10-30 07:13:55 MD5: D25E2A9F4BDCA955EC47BE54F2B60843 SHA1: E88339CB03AADE8C7D925116FBC3E34AC5A1FCA2 --- C:\Windows\WinSxS\Manifests\x86_microsoft.secureboot.commands.resources_31bf3856ad364e35_10.0.10586.0_en-us_be4dd9e59ed08faa.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 282 Created time: 2016-02-13 12:51:48 Modified time: 2016-02-13 12:51:47 MD5: 3600A5E674B14E54068807628B78E5F2 SHA1: 1672F38BE0F2580DC16F5588DE9180D8762A7D48 --- C:\Windows\WinSxS\Manifests\x86_microsoft.secureboot.commands_31bf3856ad364e35_10.0.10586.0_none_68a105f715bfe9a3.manifest --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 425 Created time: 2015-10-30 07:13:37 Modified time: 2015-10-30 07:13:36 MD5: 867730F5DD74ECCF628DA31A805BF618 SHA1: 883E458F511BE9DBFDAEE527BF6C0C613A151B1D --- C:\Windows\WinSxS\x86_microsoft-windows-e..ingfaults.resources_31bf3856ad364e35_10.0.10586.0_nl-nl_5fff4dfea9bf0720\WerFaultSecure.exe.mui --- Company: Microsoft Corporation File Description: Windows Foutrapportage File Version: 10.0.10586.0 (th2_release.151029-1700) Product Name: Microsoft® Windows®-besturingssysteem Copyright: © Microsoft Corporation. Alle rechten voorbehouden. Original Filename: WerFaultSecure.exe.mui File type: ----a-w- File size: 8192 Created time: 2016-02-13 12:52:58 Modified time: 2016-02-13 12:52:58 MD5: 2C55F1A3B8F7EC9BB4E5D714913EC722 SHA1: D67F93FCF6C88710ECB1F1B9FE434C8A69D6CF02 --- C:\Windows\WinSxS\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10586.0_none_a06e19772ec31334\WerFaultSecure.exe --- Company: Microsoft Corporation File Description: Windows Fault Reporting File Version: 10.0.10586.0 (th2_release.151029-1700) Product Name: Microsoft® Windows® Operating System Copyright: © Microsoft Corporation. All rights reserved. Original Filename: WerFaultSecure.exe File type: ----a-w- File size: 117824 Created time: 2015-10-30 07:18:38 Modified time: 2015-10-30 07:18:38 MD5: 63D0FBE869A1DF51C2C11D1D8ED3320A SHA1: 654230115E14AEBA328AD02068C65E019211BC93 --- C:\Windows\WinSxS\x86_microsoft-windows-servicingstack-boot_31bf3856ad364e35_10.0.10586.0_none_22a52f25973a2f9c\securebootai.dll --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 12 Created time: 2015-10-30 06:31:02 Modified time: 2016-04-30 12:42:00 MD5: 20CE5935810F0F56E37A7F65806DA343 SHA1: D406D5C36E9E5B0B4B542D9E4D99EC151A27CA9D --- C:\Windows\WinSxS\x86_microsoft-windows-servicingstack-boot_31bf3856ad364e35_10.0.10586.168_none_0318b0c44bf52785\securebootai.dll --- Company: Microsoft Corporation File Description: CSI Secure Boot Servicing Plugin File Version: 10.0.10586.0 (th2_release.151029-1700) Product Name: Microsoft® Windows® Operating System Copyright: © Microsoft Corporation. All rights reserved. Original Filename: securebootai.dll File type: ----a-w- File size: 18944 Created time: 2015-10-30 06:31:02 Modified time: 2015-10-30 06:31:02 MD5: F2C1F3DA486142A93A5F54451F8B5E29 SHA1: B74F1DDD5B4AC02211E16D8825DDB7250204CF12 --- C:\Windows\WinSxS\x86_microsoft.secureboot.commands.resources_31bf3856ad364e35_10.0.10586.0_en-us_be4dd9e59ed08faa\Microsoft.SecureBoot.Commands.Resources.dll --- Company: Microsoft Corporation File Description: File Version: 10.0.10586.0 Product Name: Microsoft (R) Windows (R) Operating System Copyright: Copyright (c) Microsoft Corporation. All rights reserved. Original Filename: Microsoft.SecureBoot.Commands.resources.dll File type: ----a-w- File size: 6656 Created time: 2016-02-13 12:52:52 Modified time: 2016-02-13 12:52:52 MD5: C084692EC51F60504B1CB5407A52C258 SHA1: 93F2C135CD633CD23A118BD461B82230218A0655 --- C:\Windows\WinSxS\x86_microsoft.secureboot.commands_31bf3856ad364e35_10.0.10586.0_none_68a105f715bfe9a3\Microsoft.SecureBoot.Commands.dll --- Company: Microsoft Corporation File Description: File Version: 10.0.10586.0 Product Name: Microsoft (R) Windows (R) Operating System Copyright: Copyright (c) Microsoft Corporation. All rights reserved. Original Filename: Microsoft.SecureBoot.Commands.dll File type: ----a-w- File size: 36352 Created time: 2015-10-30 07:18:22 Modified time: 2015-10-30 07:18:22 MD5: 8376D5EBB226C9E11851860BA092B51D SHA1: 4A46F0D9F3ECB78C726C662012AD34AB5E5103F0 --- C:\Windows\WinSxS\x86_microsoft.secureboot.commands_31bf3856ad364e35_10.0.10586.0_none_68a105f715bfe9a3\SecureBoot.psd1 --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 506 Created time: 2015-10-30 07:18:22 Modified time: 2015-10-30 07:18:22 MD5: A6D69A6A847A7A62CE94A446B7F7990E SHA1: 6D6F4873ACA0743A23D6C1CA72752E9C6E047482 --- C:\zoek_backup\C_PROGRA~3_Avg_Update_0216pi\0216pi_AVG-Secure-Search-Update.exe --- Company: File Description: File Version: 2.16.10.31 Product Name: Copyright: Copyright (C) 2015 . All rights reserved. Original Filename: AVG-Secure-Search-Update.exe File type: ----a-w- File size: 2859592 Created time: 2016-05-26 09:24:17 Modified time: 2016-02-16 09:06:40 MD5: 7A9C1745E87990B3CB587CFB3941D4F6 SHA1: 5EBDDCA51D459A407659A3A19B43A68FF6F2BD45 --- C:\Program Files (x86)\AVG\Av\Tuneup\TuneUpAPI32.dll --- Company: File Description: Quick Tune File Version: 12.0.3013.3 Product Name: Quick Tune Copyright: Original Filename: File type: ----a-w- File size: 75616 Created time: 2016-04-06 14:58:02 Modified time: 2016-04-06 14:58:02 MD5: 9B996F4BFDC5E19E38500A82D117CA1C SHA1: 7111A9760E5B3B72447478ACF617E0D61BB1BAAC --- C:\Program Files (x86)\AVG\Av\Tuneup\TuneUpCore.bpl --- Company: File Description: Quick Tune File Version: 12.0.3013.3 Product Name: Quick Tune Copyright: Original Filename: File type: ----a-w- File size: 5227424 Created time: 2016-04-06 14:58:16 Modified time: 2016-04-06 14:58:16 MD5: 18C14616F3E4B3EBA3E380E42B34313A SHA1: BEA4D8374AF210A8501BC3FBAA1F9DAC73EC1072 --- C:\ProgramData\Avg\AV\SetupBackup\TuneUpa.cab --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 7585234 Created time: 2016-05-23 10:43:36 Modified time: 2016-05-23 10:27:33 MD5: D302B92D89C4D3029338F443D151BF2E SHA1: 89B4BAC358B8DDF5D203883BF374BCF575CA76D5 --- C:\Users\All Users\Avg\AV\SetupBackup\TuneUpa.cab --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 7585234 Created time: 2016-05-23 10:43:36 Modified time: 2016-05-23 10:27:33 MD5: D302B92D89C4D3029338F443D151BF2E SHA1: 89B4BAC358B8DDF5D203883BF374BCF575CA76D5 --- C:\zoek_backup\C_Program Files (x86)_AVG Web TuneUp\AVG Web TuneUp --- Company: AVG Technologies File Description: AVG Web TuneUp File Version: 4.3.1.831 Product Name: AVG Web TuneUp Copyright: Copyright (C) 2012 Original Filename: DSPPopUp.exe File type: ----a-w- File size: 26696 Created time: 2016-05-26 09:24:12 Modified time: 2016-05-16 07:22:43 MD5: ABEEC3300E271DB6F8A6894A706219BB SHA1: 0B03488688797873FA3B7E27550F1CAE2BD29039 --- C:\zoek_backup\C_Program Files (x86)_AVG Web TuneUp\4.2.9.726\AVG Web TuneUp.dll --- Company: AVG File Description: AVG Web TuneUp.dll File Version: 4.2.9.726 Product Name: AVG Web TuneUp Copyright: (c) AVG Netherlands BV. All rights reserved. Original Filename: AVG Web TuneUp.dll File type: ----a-w- File size: 2439240 Created time: 2016-05-26 09:24:13 Modified time: 2016-05-13 08:38:59 MD5: 1CAEB7B5352FD852F1EB2191D35E4BD3 SHA1: 8E74B0168D454E0BE6C6CA87AE743590045FA425 --- C:\zoek_backup\C_Program Files (x86)_AVG Web TuneUp\4.3.1.831\AVG Web TuneUp.dll --- Company: AVG File Description: AVG Web TuneUp.dll File Version: 4.3.1.831 Product Name: AVG Web TuneUp Copyright: (c) AVG Netherlands BV. All rights reserved. Original Filename: AVG Web TuneUp.dll File type: ----a-w- File size: 2243656 Created time: 2016-05-26 09:24:13 Modified time: 2016-05-16 07:22:45 MD5: 9AE0E2BE1CD25E8DDD0E26BB997A3D49 SHA1: 46087B208FD9012852A16A3F5C2AB6129B1CE6AD --- C:\zoek_backup\C_Program Files (x86)_AVG Web TuneUp\UninstallRes\ClientPackage\images\uninstaller\webtuneup.png --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 27420 Created time: 2016-05-26 09:24:14 Modified time: 2016-05-16 07:22:43 MD5: 5D84ECB2DE4B3E7661E0C2E01455FBF2 SHA1: B6843EB7DD1B2FA707600F8FCFBD98FA55E93290 --- C:\zoek_backup\C_Program Files_AVG Web TuneUp\4.2.9.726\AVG Web TuneUp.dll --- Company: AVG File Description: AVG Web TuneUp.dll File Version: 4.0.0.10 Product Name: AVG Web TuneUp Copyright: (c) AVG Netherlands BV. All rights reserved. Original Filename: AVG Web TuneUp.dll File type: ----a-w- File size: 2476104 Created time: 2016-05-26 09:24:15 Modified time: 2016-05-13 08:38:59 MD5: 020ED77257699F53DED80340410BDE48 SHA1: DA0F62938FE8FB4E719A1D57A389E35A012A34E3 --- C:\zoek_backup\C_Program Files_AVG Web TuneUp\4.3.1.831\AVG Web TuneUp.dll --- Company: AVG File Description: AVG Web TuneUp.dll File Version: 4.0.0.10 Product Name: AVG Web TuneUp Copyright: (c) AVG Netherlands BV. All rights reserved. Original Filename: AVG Web TuneUp.dll File type: ----a-w- File size: 2476104 Created time: 2016-05-26 09:24:15 Modified time: 2016-05-16 07:22:45 MD5: 9A026660DBC973A8427EB9C22F37673A SHA1: 1A9D571934A8AC8D961A1628182B0D58B46052F3 --- C:\zoek_backup\C_PROGRA~2_AVG Web TuneUp\AVG Web TuneUp --- Company: AVG Technologies File Description: AVG Web TuneUp File Version: 4.3.1.831 Product Name: AVG Web TuneUp Copyright: Copyright (C) 2012 Original Filename: DSPPopUp.exe File type: ----a-w- File size: 26696 Created time: 2016-05-26 09:24:16 Modified time: 2016-05-16 07:22:43 MD5: ABEEC3300E271DB6F8A6894A706219BB SHA1: 0B03488688797873FA3B7E27550F1CAE2BD29039 --- C:\zoek_backup\C_PROGRA~2_AVG Web TuneUp\4.2.9.726\AVG Web TuneUp.dll --- Company: AVG File Description: AVG Web TuneUp.dll File Version: 4.2.9.726 Product Name: AVG Web TuneUp Copyright: (c) AVG Netherlands BV. All rights reserved. Original Filename: AVG Web TuneUp.dll File type: ----a-w- File size: 2439240 Created time: 2016-05-26 09:24:16 Modified time: 2016-05-13 08:38:59 MD5: 1CAEB7B5352FD852F1EB2191D35E4BD3 SHA1: 8E74B0168D454E0BE6C6CA87AE743590045FA425 --- C:\zoek_backup\C_PROGRA~2_AVG Web TuneUp\4.3.1.831\AVG Web TuneUp.dll --- Company: AVG File Description: AVG Web TuneUp.dll File Version: 4.3.1.831 Product Name: AVG Web TuneUp Copyright: (c) AVG Netherlands BV. All rights reserved. Original Filename: AVG Web TuneUp.dll File type: ----a-w- File size: 2243656 Created time: 2016-05-26 09:24:16 Modified time: 2016-05-16 07:22:45 MD5: 9AE0E2BE1CD25E8DDD0E26BB997A3D49 SHA1: 46087B208FD9012852A16A3F5C2AB6129B1CE6AD --- C:\zoek_backup\C_PROGRA~2_AVG Web TuneUp\UninstallRes\ClientPackage\images\uninstaller\webtuneup.png --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 27420 Created time: 2016-05-26 09:24:17 Modified time: 2016-05-16 07:22:43 MD5: 5D84ECB2DE4B3E7661E0C2E01455FBF2 SHA1: B6843EB7DD1B2FA707600F8FCFBD98FA55E93290 --- C:\zoek_backup\C_Users_Daems Jonas_AppData_Local_Google_Chrome_User Data_Default_Extensions_chfdnecihphmhljaaejmgoiahnihplgn\4.2.5.169_0\popup\styles\fonts\8ba2c737.Webtuneup.woff --- Company: ------ File Description: ------ File Version: ------ Product Name: ------ Copyright: ------ Original Filename: ------ File type: ----a-w- File size: 10440 Created time: 2016-05-26 09:25:46 Modified time: 2015-12-21 07:48:20 MD5: 76ECAAC5B7E67DE8E81B13E36E9F7E88 SHA1: 3FC6EC1BCEA1B390E214C26BA5A97990FF4D9F66 ==== Registry Search Results for "secure" ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Avg Secure Update] [HKEY_LOCAL_MACHINE\SOFTWARE\Avg Secure Update\0216pi] [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Tuneup] "Common"="AVG Secure Search" [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp] "FFNativeApi"="C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\NativeBrowserApi\\40.3.1\\\\NativeBrowserApi.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\Initialize\DSP] "DISPLAY_NAME"="AVG Secure Search" [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\Initialize\DSP] "XML_FILE_NAME"="wtu-secure-search.xml" [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\Initialize\HOSTS] "3"="AVG Secure Search" [HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\NativeMessagingHosts\avgsh] @="C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\ScriptHelperInstaller\\40.3.1\\manifest.json" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Fusion\References\Microsoft.SecureBoot.Commands, Version=10.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=amd64] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Fusion\References\Microsoft.SecureBoot.Commands, Version=10.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=amd64\{2EC93463-B0C3-45E1-8364-327E96AEA856}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Fusion\References\Microsoft.SecureBoot.Commands, Version=10.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=x86] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Fusion\References\Microsoft.SecureBoot.Commands, Version=10.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=x86\{2EC93463-B0C3-45E1-8364-327E96AEA856}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Fusion\References\Microsoft.SecureBoot.Commands.Resources, Version=10.0.0.0, Culture=en, PublicKeyToken=31bf3856ad364e35, processorArchitecture=amd64] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Fusion\References\Microsoft.SecureBoot.Commands.Resources, Version=10.0.0.0, Culture=en, PublicKeyToken=31bf3856ad364e35, processorArchitecture=amd64\{2EC93463-B0C3-45E1-8364-327E96AEA856}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Fusion\References\Microsoft.SecureBoot.Commands.Resources, Version=10.0.0.0, Culture=en, PublicKeyToken=31bf3856ad364e35, processorArchitecture=x86] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\Fusion\References\Microsoft.SecureBoot.Commands.Resources, Version=10.0.0.0, Culture=en, PublicKeyToken=31bf3856ad364e35, processorArchitecture=x86\{2EC93463-B0C3-45E1-8364-327E96AEA856}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.SecureBoot.Commands, Version=10.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=x86] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.SecureBoot.Commands, Version=10.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=x86\0] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Account Manager\Preconfigured\Active Directory GC] "LDAP Secure Connection"=dword:00000000 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\CRYPTO\BLOCKMIXEDIMAGES] "Text"="Block unsecured images with other mixed content" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\CRYPTO\SECURE] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\CRYPTO\SECURE] "Text"="Warn if changing between secure and not secure mode" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\CRYPTO\SSL2.0] "ValueName"="SecureProtocols" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\CRYPTO\SSL3.0] "ValueName"="SecureProtocols" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\CRYPTO\TLS1.0] "ValueName"="SecureProtocols" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\CRYPTO\TLS1.1] "ValueName"="SecureProtocols" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\CRYPTO\TLS1.2] "ValueName"="SecureProtocols" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}] "AppPath"="C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\ScriptHelperInstaller\\40.3.1" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MSDTC] "AllowOnlySecureRpcCalls"=dword:00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MSDTC] "FallbackToUnsecureRPCIfNecessary"=dword:00000000 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM] "DefaultSecuredHost"=dword:00000000 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WBEM\CIMOM\SecuredHostProviders] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Secure] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Secure Mime Handlers] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\TemplatePolicies\High] "DisplayName"="High safety (very secure)" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\TemplatePolicies\Low] "DisplayName"="Low safety (very insecure)" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\TemplatePolicies\MedLow] "DisplayName"="Intranet recommended safety (less secure)" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\XWizards\Components\{C100BED3-D33A-4A4B-BF23-BBEF4663D017}\Children\{D34BD150-6D84-443E-83EE-04C7682377E4}] @="Unsecured Net Connect Control Page" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\XWizards\Components\{D34BD150-6D84-443E-83EE-04C7682377E4}] @="Unsecured Net Connect Control Page" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] "EnableSecureUIAPaths"=dword:00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] "PromptOnSecureDesktop"=dword:00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media Foundation\SchemeHandlers\https:] "{37A61C8B-7F8E-4d08-B12B-248D73E9AB4F}"="Secure Http Scheme Handler" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media Foundation\SchemeHandlers\httpsd:] "{37A61C8B-7F8E-4d08-B12B-248D73E9AB4F}"="Secure Http Scheme Handler" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\system.ini\boot] "ScreenSaverIsSecure"="USR:Control Panel\\Desktop" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SecEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/EnableSecureUIAPaths] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SecEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/PromptOnSecureDesktop] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SecEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/SecurePipeServers/Winreg/AllowedExactPaths/Machine] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SecEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/SecurePipeServers/Winreg/AllowedPaths/Machine] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SecEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/Netlogon/Parameters/SealSecureChannel] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SecEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/Netlogon/Parameters/SignSecureChannel] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Media.Protection.PlayReady.PlayReadySecureStopIterable] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Media.Protection.PlayReady.PlayReadySecureStopServiceRequest] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\CLSID\{889d462e-ca69-3675-8b10-53aa9b377c5f}] "ActivatableClassId"="Windows.Media.Protection.PlayReady.PlayReadySecureStopIterable" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsRuntime\CLSID\{8e79c3ec-41d8-3bdf-9d70-3729fca347ef}] "ActivatableClassId"="Windows.Media.Protection.PlayReady.PlayReadySecureStopServiceRequest" [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin] "Path"="C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\SiteSafetyInstaller\\40.3.1\\\\npsitesafety.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{1F87137D-0E7C-44d5-8C73-4EFFB68962F2}] @="Microsoft WMI Provider Subsystem Secured Host" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{49BD2028-1523-11D1-AD79-00C04FD8FDFF}] @="Microsoft WBEM Unsecured Apartment" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F87137D-0E7C-44d5-8C73-4EFFB68962F2}] @="Microsoft WMI Provider Subsystem Secured Host" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{37A61C8B-7F8E-4d08-B12B-248D73E9AB4F}] @="Secure Http Scheme Handler" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}\LocalServer32] @="\"C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\ScriptHelperInstaller\\40.3.1\\ScriptHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}\LocalServer32] @="\"C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\ScriptHelperInstaller\\40.3.1\\ScriptHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CA3A5461-96B5-46DD-9341-5350D3C94615}\LocalServer32] @="\"C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\ScriptHelperInstaller\\40.3.1\\ScriptHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D34BD150-6D84-443E-83EE-04C7682377E4}] @="Unsecured Net Connect Control Class" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1CFABA8C-1523-11D1-AD79-00C04FD8FDFF}] @="IUnsecuredApartment" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1DCB3A0D-33ED-11D3-8470-00C04F79DBC0}] @="ISCPSecureQuery" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1DCB3A0E-33ED-11D3-8470-00C04F79DBC0}] @="ISCPSecureExchange" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1DCB3A0F-33ED-11D3-8470-00C04F79DBC0}] @="ISCPSecureAuthenticate" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{25f2ce20-8b1d-4971-a7cd-549dae201fc0}] @="IMsRdpClientSecuredSettings2" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{31739D04-3471-4CF4-9A7C-57A44AE71956}] @="IWbemUnsecuredApartment" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{605BEFCF-39C1-45CC-A811-068FB7BE346D}] @="IMsRdpClientSecuredSettings" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6C62FC7B-2690-483F-9D44-0A20CB35577C}] @="ISCPSecureExchange2" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AB4E77E4-8908-4B17-BD2A-B1DBE6DD69E1}] @="ISCPSecureExchange3" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B580CFAE-1672-47E2-ACAA-44BBECBCAE5B}] @="ISCPSecureAuthenticate2" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B7EDD1A2-4DAB-484B-B3C5-AD39B8B4C0B1}] @="ISCPSecureQuery3" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C9D65442-A0F9-45B2-8F73-D61D2DB8CBB6}] @="IMsTscSecuredSettings" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EBE17E25-4FD7-4632-AF46-6D93D4FCC72E}] @="ISCPSecureQuery2" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}\1.0\0\win32] @="C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\ScriptHelperInstaller\\40.3.1\\ScriptHelper.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}\1.0\HELPDIR] @="C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\ScriptHelperInstaller\\40.2.9" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1F87137D-0E7C-44d5-8C73-4EFFB68962F2}] @="Microsoft WMI Provider Subsystem Secured Host" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{37A61C8B-7F8E-4d08-B12B-248D73E9AB4F}] @="Secure Http Scheme Handler" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}\LocalServer32] @="\"C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\ScriptHelperInstaller\\40.3.1\\ScriptHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}\LocalServer32] @="\"C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\ScriptHelperInstaller\\40.3.1\\ScriptHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{CA3A5461-96B5-46DD-9341-5350D3C94615}\LocalServer32] @="\"C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\ScriptHelperInstaller\\40.3.1\\ScriptHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{D34BD150-6D84-443E-83EE-04C7682377E4}] @="Unsecured Net Connect Control Class" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{1CFABA8C-1523-11D1-AD79-00C04FD8FDFF}] @="IUnsecuredApartment" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{1DCB3A0D-33ED-11D3-8470-00C04F79DBC0}] @="ISCPSecureQuery" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{1DCB3A0E-33ED-11D3-8470-00C04F79DBC0}] @="ISCPSecureExchange" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{1DCB3A0F-33ED-11D3-8470-00C04F79DBC0}] @="ISCPSecureAuthenticate" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{25f2ce20-8b1d-4971-a7cd-549dae201fc0}] @="IMsRdpClientSecuredSettings2" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{31739D04-3471-4CF4-9A7C-57A44AE71956}] @="IWbemUnsecuredApartment" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{605BEFCF-39C1-45CC-A811-068FB7BE346D}] @="IMsRdpClientSecuredSettings" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{6C62FC7B-2690-483F-9D44-0A20CB35577C}] @="ISCPSecureExchange2" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{AB4E77E4-8908-4B17-BD2A-B1DBE6DD69E1}] @="ISCPSecureExchange3" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{B580CFAE-1672-47E2-ACAA-44BBECBCAE5B}] @="ISCPSecureAuthenticate2" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{B7EDD1A2-4DAB-484B-B3C5-AD39B8B4C0B1}] @="ISCPSecureQuery3" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{C9D65442-A0F9-45B2-8F73-D61D2DB8CBB6}] @="IMsTscSecuredSettings" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{EBE17E25-4FD7-4632-AF46-6D93D4FCC72E}] @="ISCPSecureQuery2" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\AppID\{1F87137D-0E7C-44d5-8C73-4EFFB68962F2}] @="Microsoft WMI Provider Subsystem Secured Host" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\AppID\{49BD2028-1523-11D1-AD79-00C04FD8FDFF}] @="Microsoft WBEM Unsecured Apartment" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}\1.0\0\win32] @="C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\ScriptHelperInstaller\\40.3.1\\ScriptHelper.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}\1.0\HELPDIR] @="C:\\Program Files (x86)\\Common Files\\AVG Secure Search\\ScriptHelperInstaller\\40.2.9" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa] "SecureBoot"=dword:00000001 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecureBoot] [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecureBoot\State] [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecureBoot\State] "UEFISecureBootEnabled"=dword:00000001 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecurePipeServers] [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecurePipeServers\winreg] [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecurePipeServers\winreg\AllowedExactPaths] [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecurePipeServers\winreg\AllowedPaths] [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager\kernel] "ObUnsecureGlobalNames"=hex(7):6e,65,74,66,78,63,75,73,74,6f,6d,70,65,72,66,63,\ [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager\Power] "SecurePagesProcessed"=dword:00000000 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netlogon\Parameters] "SealSecureChannel"=dword:00000001 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Netlogon\Parameters] "SignSecureChannel"=dword:00000001 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\W32Time\SecureTimeLimits] [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\W32Time\SecureTimeLimits] "SecureTimeConfidence"=dword:00000006 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\W32Time\SecureTimeLimits] "SecureTimeEstimated"=hex(b):79,a4,3a,e2,3c,b7,d1,01 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\W32Time\SecureTimeLimits] "SecureTimeHigh"=hex(b):79,0c,ff,43,45,b7,d1,01 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\W32Time\SecureTimeLimits] "SecureTimeLow"=hex(b):79,3c,76,80,34,b7,d1,01 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\W32Time\SecureTimeLimits] "SecureTimeTickCount"=hex(b):0c,dc,4e,00,00,00,00,00 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\W32Time\TimeProviders\NtpServer] "RequireSecureTimeSyncRequests"=dword:00000000 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\WindowsTrustedRTProxy] "DisplayName"="@WindowsTrustedRTProxy.inf,%WindowsTrustedRTProxy.SVCDESC%;Microsoft Windows Trusted Runtime Secure Service" [HKEY_LOCAL_MACHINE\SYSTEM\DriverDatabase\DeviceIds\{4E815EE1-20F8-41EF-8CFF-3C283F02D722}\SecureService] [HKEY_LOCAL_MACHINE\SYSTEM\DriverDatabase\DriverPackages\genericusbfn.inf_amd64_39deff39eb161e07\Configurations\genericusbfn.InstallSecure.NT] [HKEY_LOCAL_MACHINE\SYSTEM\DriverDatabase\DriverPackages\genericusbfn.inf_amd64_39deff39eb161e07\Descriptors\USBFN\IpOverUSB] "Configuration"="genericusbfn.InstallSecure.NT" [HKEY_LOCAL_MACHINE\SYSTEM\DriverDatabase\DriverPackages\genericusbfn.inf_amd64_39deff39eb161e07\Descriptors\USBFN\MTP] "Configuration"="genericusbfn.InstallSecure.NT" [HKEY_LOCAL_MACHINE\SYSTEM\DriverDatabase\DriverPackages\sdbus.inf_amd64_be681b1aca076232\Strings] "acpi\\armh_pl180.devicedesc"="ARM Holdings PL180 Secure Digital host controller" [HKEY_LOCAL_MACHINE\SYSTEM\DriverDatabase\DriverPackages\sdbus.inf_amd64_be681b1aca076232\Strings] "pci\\ven_1180&dev_0822&subsys_c01a144d&rev_17"="Ricoh Secure Digital host controller R5C841" [HKEY_LOCAL_MACHINE\SYSTEM\DriverDatabase\DriverPackages\sdbus.inf_amd64_be681b1aca076232\Strings] "acpi\\qcom7002.devicedesc"="Qualcomm SoC Secure Digital host controller" [HKEY_LOCAL_MACHINE\SYSTEM\DriverDatabase\DriverPackages\sdbus.inf_amd64_be681b1aca076232\Strings] "acpi\\qcom2465.devicedesc"="Qualcomm SoC Secure Digital host controller" [HKEY_LOCAL_MACHINE\SYSTEM\DriverDatabase\DriverPackages\sdbus.inf_amd64_be681b1aca076232\Strings] "acpi\\qcom2466.devicedesc"="Qualcomm SoC Secure Digital host controller" [HKEY_LOCAL_MACHINE\SYSTEM\DriverDatabase\DriverPackages\sdbus.inf_amd64_be681b1aca076232\Strings] "pci\\ven_1106&dev_401b.devicedesc"="VIA Secure Digital host controller" [HKEY_LOCAL_MACHINE\SYSTEM\DriverDatabase\DriverPackages\sdbus.inf_amd64_be681b1aca076232\Strings] "pci\\ven_1106&dev_365b.devicedesc"="VIA Secure Digital host controller" [HKEY_LOCAL_MACHINE\SYSTEM\DriverDatabase\DriverPackages\sdbus.inf_amd64_be681b1aca076232\Strings] "pci\\ven_1106&dev_95d0.devicedesc"="VIA Secure Digital host controller" [HKEY_LOCAL_MACHINE\SYSTEM\DriverDatabase\DriverPackages\sdbus.inf_amd64_be681b1aca076232\Strings] "acpi\\qcom24bf.devicedesc"="Qualcomm SoC Secure Digital host controller" [HKEY_LOCAL_MACHINE\SYSTEM\DriverDatabase\DriverPackages\sdbus.inf_amd64_be681b1aca076232\Strings] "pci\\ven_104c&dev_ac9f.devicedesc"="Texas Instruments Secure Digital host controller" [HKEY_LOCAL_MACHINE\SYSTEM\DriverDatabase\DriverPackages\windowstrustedrtproxy.inf_amd64_577dd325df739ac9\Descriptors\{4E815EE1-20F8-41EF-8CFF-3C283F02D722}\SecureService] [HKEY_LOCAL_MACHINE\SYSTEM\DriverDatabase\DriverPackages\windowstrustedrtproxy.inf_amd64_577dd325df739ac9\Strings] "windowstrustedrtproxy.devicedesc"="Microsoft Windows Trusted Runtime Secure Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa] "SecureBoot"=dword:00000001 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecureBoot] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecureBoot\State] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecureBoot\State] "UEFISecureBootEnabled"=dword:00000001 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurePipeServers] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurePipeServers\winreg] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurePipeServers\winreg\AllowedExactPaths] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurePipeServers\winreg\AllowedPaths] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\kernel] "ObUnsecureGlobalNames"=hex(7):6e,65,74,66,78,63,75,73,74,6f,6d,70,65,72,66,63,\ [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Power] "SecurePagesProcessed"=dword:00000000 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Netlogon\Parameters] "SealSecureChannel"=dword:00000001 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Netlogon\Parameters] "SignSecureChannel"=dword:00000001 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\SecureTimeLimits] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\SecureTimeLimits] "SecureTimeConfidence"=dword:00000006 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\SecureTimeLimits] "SecureTimeEstimated"=hex(b):79,a4,3a,e2,3c,b7,d1,01 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\SecureTimeLimits] "SecureTimeHigh"=hex(b):79,0c,ff,43,45,b7,d1,01 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\SecureTimeLimits] "SecureTimeLow"=hex(b):79,3c,76,80,34,b7,d1,01 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\SecureTimeLimits] "SecureTimeTickCount"=hex(b):0c,dc,4e,00,00,00,00,00 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\TimeProviders\NtpServer] "RequireSecureTimeSyncRequests"=dword:00000000 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WindowsTrustedRTProxy] "DisplayName"="@WindowsTrustedRTProxy.inf,%WindowsTrustedRTProxy.SVCDESC%;Microsoft Windows Trusted Runtime Secure Service" [HKEY_USERS\.DEFAULT\Software\Avg Secure Update] [HKEY_USERS\.DEFAULT\Software\Avg Secure Update\0516av] [HKEY_USERS\.DEFAULT\Software\Avg Secure Update\0516tb] [HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\3d\18012CD5] "@%SystemRoot%\\system32\\sstpsvc.dll,-200"="Secure Socket Tunneling Protocol Service" [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Windows\\Temp\\7zS1B42.tmp\\AVG-Secure-Search-Update.exe"=hex:53,41,43,50,\ [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Windows\\Temp\\7zS53D0.tmp\\AVG-Secure-Search-Update.exe"=hex:53,41,43,50,\ [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\AuthCookies\Live\Default\DIDC] "Data"="ct%3D1464250546%26hashalg%3DSHA256%26bver%3D12%26appid%3DDefault%26da%3D%253CEncryptedData%2520xmlns%253D%2522http://www.w3.org/2001/04/xmlenc%2523%2522%2520Id%253D%2522devicesoftware%2522%2520Type%253D%2522http://www.w3.org/2001/04/xmlenc%2523Element%2522%253E%253CEncryptionMethod%2520Algorithm%253D%2522http://www.w3.org/2001/04/xmlenc%2523tripledes-cbc%2522%253E%253C/EncryptionMethod%253E%253Cds:KeyInfo%2520xmlns:ds%253D%2522http://www.w3.org/2000/09/xmldsig%2523%2522%253E%253Cds:KeyName%253Ehttp://Passport.NET/STS%253C/ds:KeyName%253E%253C/ds:KeyInfo%253E%253CCipherData%253E%253CCipherValue%253ECS5En25iBUr2QPpAnzQzqy2Lx40SUY/aS%252BbyYf%252BRftuV9CEsnrYzh5VRdjINECtrXHDfMrx3zwCA%252B4fVQwsqqSPD8k6JYwbj3mpix9f%252Bkrnt4uEIkqqapX7sHEbH%252BKNSFTj3jBFKDr/GWiEWh1bhOFTEx3f4e1UtxrKWxux5dKI14XIZZhn2oo8Jri/0IPEvlSKco8czMQ3h0YZcl9atJcEqIyx5oBNHgojYIAShoXRkIcxsjxHDOShnfaH2mBfD%252BLRvCPLt0yA1QzblWaHXkgRzv7frKXPOI2Q24lPlQ5x6o7ybrr8gFRSv715nJXI1Vja2LNP0YkWc2kb2bFWF84UrkCdhvqEWZUPoRxprHQT%252BlQ1f2cPaWno/orfK2W9b7372y6lnCqIlFT2yZbA5aQK6DxXwCczfecMqofHvtzeY/sLEw0xBbyYGoShMith2MDW7kjM%252BcnljyHniQ5OPdiO3GjOEOTYqggWpsNuJX8otwbbbJksFM5f4GMBxKP01YgarmDuMC%252Bk2AlLITjSO983RA%252BdioX20JnmuysvqPLx2WUMffrFYslZMMqYPA1EtheFL3C4hxT%252BopfJVAgEqlfk/GoLw/4zMKibgs57isjWwskx7g/YTPXYQdauaomJbH3oKII9SM10KRukJWQMYBWXrNmxKBvItWIyuVyuGQHCyrXCr9U8APhfav0xCoIx%252BQ2%252BNF%252Bighu4kYrNgd0u7WQMTYr/OWOb7KvQrsIrGwPau%253C/CipherValue%253E%253C/CipherData%253E%253C/EncryptedData%253E%26nonce%3DZfxd4s8TzLEvU50psxLowaNtViSgfAEz%26hash%3DGHeY7EM9KlBabnVBIbqAb2rt4idHaaptKq0RRJ13aw4%253D%26dd%3D1; path=/; domain=login.live.com; secure; httponly" [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] "SecureProtocols"=dword:00000a80 [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\AuthCookies\Live\Default\DIDC] "Data"="ct%3D1463142101%26hashalg%3DSHA256%26bver%3D12%26appid%3DDefault%26da%3D%253CEncryptedData%2520xmlns%253D%2522http://www.w3.org/2001/04/xmlenc%2523%2522%2520Id%253D%2522devicesoftware%2522%2520Type%253D%2522http://www.w3.org/2001/04/xmlenc%2523Element%2522%253E%253CEncryptionMethod%2520Algorithm%253D%2522http://www.w3.org/2001/04/xmlenc%2523tripledes-cbc%2522%253E%253C/EncryptionMethod%253E%253Cds:KeyInfo%2520xmlns:ds%253D%2522http://www.w3.org/2000/09/xmldsig%2523%2522%253E%253Cds:KeyName%253Ehttp://Passport.NET/STS%253C/ds:KeyName%253E%253C/ds:KeyInfo%253E%253CCipherData%253E%253CCipherValue%253ECRo/g6/hWs6TQWUI7DIWwwMMzRLW2EQBk6MVUoscdRc2FHNvvLOFf/KFDS6FQo03AaGgfnXkUH%252B6pmn/4BeBc7EsBObsuxWTshM1646SJeQzUbiJ/sX68b1VV1r%252BHC%252BVKrmCkBxZojXTlVrofVDVr3WzjM2a%252Bk3EO0tsBvgkjm4eg8ao8pxrGbMqXqsEGwo4WjWytMocctL6/xVUGSyeNdfULBVcO0saqufohvzUv1nT/5d/3dIfj80Gd8c/%252BBpwXmdRPJNiA72ONpNAFrWkLJqL/aIRfTp2Xojbuf6sfam50bm8E6gv5qm2ko0julWNwu0zfjkCajSEAg4BuTKOmZYeBcRd87vsxwJ5gI1yojm1WUunKwQWgHZ%252BWMlYWokeCPNx90tKKfDuJpxTGScSiAJQkQeg2oHekYAx%252BVnQLmE6IKevD1qSQHpPKHuahQ2MCQy3kWd9fQK0heJLZIXzEqv1DDOKmbJFKb9LujDdcoLeME2nydWqjCD4qHlrPiEooxRwipjwORUx70Kd5BnburT0KVg7XQOnlZBF9Rym70KU4ZqiT6UGZC5ibKuUTzTdcYIBLsqNieg6HojNcCuTDq0SHE5/6Pys7GwKxNkLKmu0AZRKCVXKden8KLwMOFCFe/fMXWUO0q2ID7KX/1TGHl%252BHrOOKuWlRzmr/KAKERIJx/0f%252BzwD4jO1mqSJanCrdOApsGlH/N0DNl5Hn5QTAxVkBiHtKMk0CvkluPa9S4mge%253C/CipherValue%253E%253C/CipherData%253E%253C/EncryptedData%253E%26nonce%3DDLNkWqH6voN1uCxcLRPCN%252B0zkAAb6Nh%252B%26hash%3DsbFF5Zl6WyhJbzSh00dR8nMYQlHGh9X2PkDarqwy5u8%253D%26dd%3D1; path=/; domain=login.live.com; secure; httponly" [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] "SecureProtocols"=dword:00000a80 [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001\SOFTWARE\Microsoft\AuthCookies\Live\Default\DIDC] "Data"="ct%3D1464250503%26hashalg%3DSHA256%26bver%3D12%26appid%3DDefault%26da%3D%253CEncryptedData%2520xmlns%253D%2522http://www.w3.org/2001/04/xmlenc%2523%2522%2520Id%253D%2522devicesoftware%2522%2520Type%253D%2522http://www.w3.org/2001/04/xmlenc%2523Element%2522%253E%253CEncryptionMethod%2520Algorithm%253D%2522http://www.w3.org/2001/04/xmlenc%2523tripledes-cbc%2522%253E%253C/EncryptionMethod%253E%253Cds:KeyInfo%2520xmlns:ds%253D%2522http://www.w3.org/2000/09/xmldsig%2523%2522%253E%253Cds:KeyName%253Ehttp://Passport.NET/STS%253C/ds:KeyName%253E%253C/ds:KeyInfo%253E%253CCipherData%253E%253CCipherValue%253ECShNw5dXNMGfdIQGd2xwlwOABTzMo0GsIHLsDh5WIdgphtgaIWlMEnCloN3DCjG/2QWUmhUv839KeKfG1bk2n1tBN4fOPKOwMFGAPBDD5521TStGkeUNGbiOfmiQsJGNmk9jGIdcwMxwPp/MRn9Oe/dUW2tI44akvTLvjETD2uneON2Eb95zwfdXb0F/eCfxZVE8lnxqLv1bDkEAhz28YlWs1wnh2oYFnX139fIbUYPA1NBCFNV6J6kFYCz13wnLKUSSYbzh86Q/ftTs/dfSErQhDDgVTG5mur0aFKF3X1YUpYZMyqRWGg6ovMgAVv%252BHOORAaDsXOficcS/cC8KIEzlM%252BG29o/WCgq/ywY%252BED4dVEQm3RoXClcnl7keADqzYExntvN5qiCo0qmLX58ASADcGnfbG4kHFZMN52pBywpRGYCxCzPm%252BPySHpCWH1mnkBAXfRvuKNNS6NCxWIxSTQv3tf2vwcw8liglXUhKVC48Jrdl5AxXVNKTgTqu5HflBP7c5lMqCRy7u5LRxLXpRYxlz869e/7hekStVc6a%252BncEazfmcHwv5VhDTbhZmYptr5C4LwNWWSFI2sTVWm7t7EobgzjTL53%252BnBgRoFU2VjALeZ0d5yV8ZVaJA0yZ9HBdvxJxZbhHmVFp5dZ4ROK7cbwjPvh0OCw%252BxQbi2fT97O9%252BUwINZA3txZ5oGNHtsz8YIicwUVk4bSBOPqet53viG%252BjxOI6kx0ZvCEDa%252B8GiaUyBu%253C/CipherValue%253E%253C/CipherData%253E%253C/EncryptedData%253E%26nonce%3D5vbdlt8j4%252BZ9J62P5FAFL1Swrk74%252FV0P%26hash%3Dww6gYm3P%252FCKnLVzq3kXu4%252FbSjgfEUoEmnVjpWxAzC0s%253D%26dd%3D1; path=/; domain=login.live.com; secure; httponly" [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] "SecureProtocols"=dword:00000a80 [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001\SOFTWARE\Microsoft\Windows Live Mail\mail] "Secure Safe Attachments"=dword:00000001 [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001\SOFTWARE\Classes\Local Settings\MuiCache\3d\18012CD5] "@%SystemRoot%\\system32\\sstpsvc.dll,-201"="Biedt ondersteuning voor SSTP (Secure Socket Tunneling Protocol) om verbinding te kunnen maken met externe computers via VPN. Als deze service is uitgeschakeld, kunnen gebruikers SSTP niet gebruiken om toegang te krijgen tot externe servers." [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001_Classes\Local Settings\MuiCache\3d\18012CD5] "@%SystemRoot%\\system32\\sstpsvc.dll,-201"="Biedt ondersteuning voor SSTP (Secure Socket Tunneling Protocol) om verbinding te kunnen maken met externe computers via VPN. Als deze service is uitgeschakeld, kunnen gebruikers SSTP niet gebruiken om toegang te krijgen tot externe servers." [HKEY_USERS\S-1-5-18\Software\Avg Secure Update] [HKEY_USERS\S-1-5-18\Software\Avg Secure Update\0516av] [HKEY_USERS\S-1-5-18\Software\Avg Secure Update\0516tb] [HKEY_USERS\S-1-5-18\Software\Classes\Local Settings\MuiCache\3d\18012CD5] "@%SystemRoot%\\system32\\sstpsvc.dll,-200"="Secure Socket Tunneling Protocol Service" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Windows\\Temp\\7zS1B42.tmp\\AVG-Secure-Search-Update.exe"=hex:53,41,43,50,\ [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\\Windows\\Temp\\7zS53D0.tmp\\AVG-Secure-Search-Update.exe"=hex:53,41,43,50,\ ==== Registry Search Results for "TuneUp" ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Avg\AV\Features] "fea_TuneUp"=dword:00001dae [HKEY_LOCAL_MACHINE\SOFTWARE\Avg\AV\Features] "fea_TuneUp__QTune"=dword:00000000 [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Tuneup] [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Tuneup] "Product Name"="AVG Web TuneUp" [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp] [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp] "ToolbarPath"="C:\\Program Files (x86)\\AVG Web TuneUp\\4.3.1.831" [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp] "ToolbarPath64"="C:\\Program Files\\AVG Web TuneUp\\4.3.1.831" [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp] "Uninstall"="C:\\Program Files (x86)\\AVG Web TuneUp\\UNINSTALL.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp] "TBAPIPath"="C:\\Program Files (x86)\\AVG Web TuneUp\\TBAPI.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\CH] [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\FF] [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\IE] [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\Initialize] [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\Initialize\CONFIGXML] [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\Initialize\CONFIGXML] "Installation/DSP/DisplayName"="AVG Web TuneUp" [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\Initialize\CP] [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\Initialize\DSP] [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\Initialize\General] [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\Initialize\General] "PARTNER_NAME"="AVG Web TuneUp" [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\Initialize\HOSTS] [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\Initialize\HP] [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\Initialize\IGTB] [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\Initialize\NT] [HKEY_LOCAL_MACHINE\SOFTWARE\AVG Web TuneUp\Initialize\STATS] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1152F8E0-69DB-4935-AFC3-59F8A5A86A30}] "LocalizedString"="@C:\\Program Files (x86)\\AVG\\Av\\Tuneup\\TUMicroScanner.exe,-31415" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1152F8E0-69DB-4935-AFC3-59F8A5A86A30}\Elevation] "IconReference"="@C:\\Program Files (x86)\\AVG\\Av\\Tuneup\\TUMicroScanner.exe,-27182" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1152F8E0-69DB-4935-AFC3-59F8A5A86A30}\LocalServer32] @="C:\\PROGRA~2\\AVG\\Av\\Tuneup\\TUMICR~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\40EA4B76D8AD8E1478BFED7FF9DBB066] "fea_TuneUp"="MainFea" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\40EA4B76D8AD8E1478BFED7FF9DBB066] "fea_TuneUp__QTune"="MainFea" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7}\1.0\0\win32] @="C:\\Program Files (x86)\\AVG Web TuneUp\\4.3.1.831\\AVG Web TuneUp.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7}\1.0\0\win64] @="C:\\Program Files\\AVG Web TuneUp\\4.3.1.831\\AVG Web TuneUp.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7}\1.0\HELPDIR] @="C:\\Program Files (x86)\\AVG Web TuneUp\\4.2.9.726" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{66694099-FBD8-4A98-AB9F-F19EAB4144C0}\1.0\0\win32] @="C:\\Program Files (x86)\\AVG\\Av\\Tuneup\\TUMicroScanner.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{66694099-FBD8-4A98-AB9F-F19EAB4144C0}\1.0\HELPDIR] @="C:\\Program Files (x86)\\AVG\\Av\\Tuneup\\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1152F8E0-69DB-4935-AFC3-59F8A5A86A30}] "LocalizedString"="@C:\\Program Files (x86)\\AVG\\Av\\Tuneup\\TUMicroScanner.exe,-31415" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1152F8E0-69DB-4935-AFC3-59F8A5A86A30}\Elevation] "IconReference"="@C:\\Program Files (x86)\\AVG\\Av\\Tuneup\\TUMicroScanner.exe,-27182" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1152F8E0-69DB-4935-AFC3-59F8A5A86A30}\LocalServer32] @="C:\\PROGRA~2\\AVG\\Av\\Tuneup\\TUMICR~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7}\1.0\0\win32] @="C:\\Program Files (x86)\\AVG Web TuneUp\\4.3.1.831\\AVG Web TuneUp.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7}\1.0\0\win64] @="C:\\Program Files\\AVG Web TuneUp\\4.3.1.831\\AVG Web TuneUp.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7}\1.0\HELPDIR] @="C:\\Program Files (x86)\\AVG Web TuneUp\\4.2.9.726" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\TypeLib\{66694099-FBD8-4A98-AB9F-F19EAB4144C0}\1.0\0\win32] @="C:\\Program Files (x86)\\AVG\\Av\\Tuneup\\TUMicroScanner.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\TypeLib\{66694099-FBD8-4A98-AB9F-F19EAB4144C0}\1.0\HELPDIR] @="C:\\Program Files (x86)\\AVG\\Av\\Tuneup\\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WtuServer.WtuServerObj] @="AVG Web TuneUp" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WtuServer.WtuServerObj.1] @="AVG Web TuneUp" [HKEY_USERS\.DEFAULT\Software\Microsoft\Office\16.0\Common\LanguageResources] "LangTuneUp"="OfficeCompleted" [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001\SOFTWARE\AVG Web TuneUp] [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001\SOFTWARE\AVG Web TuneUp] "cache_file_0"="C:\\Users\\Daems Jonas\\AppData\\Local\\AVG Web TuneUp\\cache\\dd0f090b66fa999f__exp__26-05-2016 10-12-47" [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001\SOFTWARE\AVG Web TuneUp\Campaigns] [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001\SOFTWARE\AVG Web TuneUp\Campaigns\0516av] [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001\SOFTWARE\AVG Web TuneUp\Campaigns\0516tb] [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001\SOFTWARE\AVG Web TuneUp\CH] [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001\SOFTWARE\AVG Web TuneUp\DNT] [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001\SOFTWARE\AVG Web TuneUp\DNT\Settings] [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001\SOFTWARE\AVG Web TuneUp\DNT\Tabs] [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001\SOFTWARE\AVG Web TuneUp\FF] [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001\SOFTWARE\AVG Web TuneUp\IE] [HKEY_USERS\S-1-5-21-3437685781-3899522879-2098296170-1001\SOFTWARE\Microsoft\Office\16.0\Common\LanguageResources] "LangTuneUp"="OfficeCompleted" [HKEY_USERS\S-1-5-18\Software\Microsoft\Office\16.0\Common\LanguageResources] "LangTuneUp"="OfficeCompleted" ==== Chromium Look ====================== ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" ==== All HKLM and HKCU SearchScopes ====================== HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02 ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Daems Jonas\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Daems Jonas\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Daems Jonas\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Daems Jonas\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Daems Jonas\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== No Flash Cache Found ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== C:\zoek_backup (files=482 folders=150 217754653 bytes) ==== Empty Temp Folders ====================== C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\DAEMSJ~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on do 26/05/2016 at 13:05:34,94 ======================