Zoek.exe v5.0.0.1 Updated 31-December-2015 Tool run by Elize on zo 14-08-2016 at 18:14:31,38. Microsoft Windows 10 Home 10.0.10586 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Elize\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2016-08-14-161121.log 12622 bytes ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-161117978-2925262177-180644262-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2f23ab71-4ac6-41f2-a955-ea576e553146} deleted successfully HKEY_USERS\S-1-5-21-161117978-2925262177-180644262-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A6B5317-31E3-4EAE-8CE5-A3A4E4837DBC} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{2f23ab71-4ac6-41f2-a955-ea576e553146} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2f23ab71-4ac6-41f2-a955-ea576e553146} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{6A6B5317-31E3-4EAE-8CE5-A3A4E4837DBC} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A6B5317-31E3-4EAE-8CE5-A3A4E4837DBC} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "vProt"=- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] ==== Deleting Files \ Folders ====================== C:\Program Files (x86)\AVG Web TuneUp not found C:\ProgramData\Essentware not found C:\ProgramData\AVG Web TuneUp not found C:\windows\SysNative\Tasks\ElizeCadgesAffectionateV2 deleted C:\Users\Elize\AppData\Local\AVG Web TuneUp deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WaNetworkEn deleted C:\Users\Elize\Documents\PC Speed Maximizer deleted C:\Program Files\AVG Web TuneUp deleted C:\Program Files\Reimage deleted C:\PROGRA~2\COMMON~1\AVG Secure Search deleted C:\PROGRA~3\Package Cache deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ByteFence Anti-Malware deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair deleted C:\WINDOWS\Reimage.ini deleted C:\windows\SysNative\tasks\ByteFence Scan deleted C:\windows\SysNative\GroupPolicy\Machine deleted C:\windows\SysNative\GroupPolicy\User deleted C:\windows\SysNative\GroupPolicy\GPT.INI deleted C:\WINDOWS\Syswow64\GroupPolicy\gpt.ini deleted C:\Users\Elize\AppData\Roaming\Mozilla\Firefox\Profiles\x27adgab.default\searchplugins\avg-secure-search.xml deleted "C:\PROGRA~3\ByteFence\RTOP\uclogfile.bin" not deleted "C:\Users\Elize\AppData\Roaming\WOW" deleted "C:\PROGRA~3\ByteFence" not deleted "C:\PROGRA~3\ByteFence\RTOP" not deleted ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== ====== C:\Users\Elize\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== ====== C:\WINDOWS\Sysnative\drivers ===== 2016-07-20 06:46:16 B6F34BE914F7CF7D8B7203AB6241AC8B 313088 ----a-w- C:\WINDOWS\Sysnative\drivers\avgwfpa.sys 2016-07-19 10:27:12 A1E22774E01EDB88EC9620EF017B3ABE 261888 ----a-w- C:\WINDOWS\Sysnative\drivers\avgmfx64.sys ====== C:\WINDOWS\Tasks ====== ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== ======= C:\PROGRA~2 ===== 2016-08-13 10:15:39 -------- d-----w- C:\PROGRA~2\trend micro 2016-08-13 10:12:44 -------- d-----w- C:\PROGRA~2\Mozilla Maintenance Service 2016-08-04 21:07:22 -------- d-----w- C:\PROGRA~2\Google ======= C: ===== ====== C:\Users\Elize\AppData\Roaming ====== 2016-08-12 21:41:02 -------- d-----w- C:\Users\Elize\AppData\Local\Essentware 2016-08-12 21:29:13 -------- d-----w- C:\Users\Elize\AppData\Local\CEF 2016-08-04 21:07:20 -------- d-----w- C:\Users\Elize\AppData\Local\Google ====== C:\Users\Elize ====== 2016-08-13 10:35:20 DAAB3BCC6FA56354DECC22F4B9104F7F 339991 ----a-w- C:\Users\Elize\Desktop\RSIT-1.06.exe 2016-08-13 10:34:49 DAAB3BCC6FA56354DECC22F4B9104F7F 339991 ----a-w- C:\Users\Elize\Downloads\RSIT-1.06(1).exe 2016-08-13 10:15:13 DAAB3BCC6FA56354DECC22F4B9104F7F 339991 ----a-w- C:\Users\Elize\Downloads\RSIT-1.06.exe 2016-08-13 10:11:00 85314BD9E56C05372CB2CFA5BF7CAF1C 242216 ----a-w- C:\Users\Elize\Downloads\Firefox Setup Stub 48.0.exe 2016-08-12 21:51:52 -------- d-----w- C:\ProgramData\panda_url_filtering 2016-08-12 21:48:35 71CF4B286F3D39327298DF3B66C8904C 2342176 ----a-w- C:\Users\Elize\Downloads\PANDAFREEAV.exe 2016-08-12 21:38:33 350D904C80D7B735967995520FF80294 1430744 ----a-w- C:\Users\Elize\Downloads\PCKeeper Installer.exe 2016-08-12 21:26:45 E94B33328F987FD7A6E73624A19B72E7 6253640 ----a-w- C:\Users\Elize\Downloads\avast_free_antivirus_setup_online.exe 2016-08-12 20:44:02 F06FB41BFD2EF13A49447E4492C76CC7 603824 ----a-w- C:\Users\Elize\Downloads\ReimageRepair.exe 2016-08-04 21:07:13 C162162A47D610D2D2D9DB21E984B40C 987728 ----a-w- C:\Users\Elize\Downloads\ChromeSetup.exe ====== C: exe-files == 2016-08-13 10:45:38 03C893380DAF90499F15339580C2FC03 257192 ----a-w- C:\Windows\Temp\DPTF\esif_assist_64.exe 2016-08-13 10:35:20 DAAB3BCC6FA56354DECC22F4B9104F7F 339991 ----a-w- C:\Users\Elize\Desktop\RSIT-1.06.exe 2016-08-13 10:34:49 DAAB3BCC6FA56354DECC22F4B9104F7F 339991 ----a-w- C:\Users\Elize\Downloads\RSIT-1.06(1).exe 2016-08-13 10:15:40 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files (x86)\trend micro\Elize.exe 2016-08-13 10:15:13 DAAB3BCC6FA56354DECC22F4B9104F7F 339991 ----a-w- C:\Users\Elize\Downloads\RSIT-1.06.exe 2016-08-13 10:12:45 A1F659CA9FDA35A61101BED2BE8CD170 88670 ----a-w- C:\Program Files (x86)\Mozilla Maintenance Service\Uninstall.exe 2016-08-13 10:12:44 C01441BA6F99890B7FF6CD0260B7750A 146888 ----a-w- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 2016-08-13 10:11:49 946E8C3705E54367A10DB76B0E3B19BA 1554424 ----a-w- C:\Users\Elize\AppData\Local\Google\Chrome\User Data\SwReporter\8.62.4\software_reporter_tool.exe 2016-08-13 10:11:00 85314BD9E56C05372CB2CFA5BF7CAF1C 242216 ----a-w- C:\Users\Elize\Downloads\Firefox Setup Stub 48.0.exe 2016-08-13 09:06:07 C99AD59FAC80FAA0266493AFD566D83A 78608 ----a-w- C:\ProgramData\Avg\Setup\av\avguirux.exe 2016-08-13 09:06:07 059AFB5B1037DCE5ADE6743FB12DBDE1 6107296 ----a-w- C:\ProgramData\Avg\Setup\av\avgmfapx.exe 2016-08-12 21:49:09 338293691A201EA3FFA834876C78DAB9 67654312 ----a-w- C:\Users\Elize\AppData\Local\Temp\{28B2D3DE-35F8-4BC7-9DD8-4AE5038BF36B}.exe 2016-08-12 21:48:35 71CF4B286F3D39327298DF3B66C8904C 2342176 ----a-w- C:\Users\Elize\Downloads\PANDAFREEAV.exe 2016-08-12 21:38:33 350D904C80D7B735967995520FF80294 1430744 ----a-w- C:\Users\Elize\Downloads\PCKeeper Installer.exe 2016-08-12 21:26:45 E94B33328F987FD7A6E73624A19B72E7 6253640 ----a-w- C:\Users\Elize\Downloads\avast_free_antivirus_setup_online.exe 2016-08-12 21:15:03 E1824144DE1705E15A4D2101C61844BB 13264096 ----a-w- C:\Users\Elize\AppData\Local\Temp\ReimagePackage.exe 2016-08-12 20:44:02 F06FB41BFD2EF13A49447E4492C76CC7 603824 ----a-w- C:\Users\Elize\Downloads\ReimageRepair.exe === C: other files == 2016-08-13 10:25:05 814AA02E02A54770CF06226A2AC68F50 2027433 ----a-w- C:\Users\Elize\AppData\Roaming\Mozilla\Firefox\Profiles\x27adgab.default\features\{169805af-09c3-428a-8af1-bbfee91331ca}\loop@mozilla.org.xpi 2016-08-13 10:25:05 42910AD54D5C1E030808FE0871BF87B1 781661 ----a-w- C:\Users\Elize\AppData\Roaming\Mozilla\Firefox\Profiles\x27adgab.default\features\{169805af-09c3-428a-8af1-bbfee91331ca}\firefox@getpocket.com.xpi 2016-08-13 10:25:05 21D3AEE8E1C0F87AAC15B3AFA26C1FB8 6351 ----a-w- C:\Users\Elize\AppData\Roaming\Mozilla\Firefox\Profiles\x27adgab.default\features\{169805af-09c3-428a-8af1-bbfee91331ca}\e10srollout@mozilla.org.xpi 2016-08-12 21:51:53 4A8697BB94C97EC09415E22199F2904D 188 ----a-w- C:\ProgramData\panda_url_filtering\white.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-21-161117978-2925262177-180644262-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] "panda"="reg.exe delete HKCU\Software\AppDataLow\Software\panda /f" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AvgUi"="C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe /lps=fmw" "AVG_UI"="C:\Program Files (x86)\AVG\Av\avuirunnerx.exe C:\Program Files (x86)\AVG\Av\avgui.exe" "vProt"="C:\Program Files (x86)\AVG Web TuneUp\vprot.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce] "panda"="reg.exe delete HKCU\Software\AppDataLow\Software\panda /f" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s" ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\ByteFence" [C:\Program Files\ByteFence\ByteFence.exe] "C:\WINDOWS\SysNative\tasks\DNSWAXHAW" [dnswaxhaw.exe] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{9AA64710-A759-4530-836B-39EEACEBB680}" [C:\Windows\system32\msfeedssync.exe] "C:\WINDOWS\SysNative\tasks\{B5DFC585-B7DB-28B8-C4AF-F4502595F640}" [C:\Windows\system32\regsvr32.exe] ==== Firefox Start and Search pages ====================== ProfilePath: C:\Users\Elize\AppData\Roaming\Mozilla\Firefox\Profiles\x27adgab.default user_pref("browser.startup.homepage", "www.google.nl"); ==== Firefox Extensions ====================== ProfilePath: C:\Users\Elize\AppData\Roaming\Mozilla\Firefox\Profiles\x27adgab.default - AVG Web TuneUp - %ProfilePath%\extensions\avg@toolbar.xpi AppDir: C:\Program Files (x86)\Mozilla Firefox - Undetermined - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi ==== Firefox Plugins ====================== ==== Deleted Firefox Extensions ====================== C:\Users\Elize\AppData\Roaming\Mozilla\Firefox\Profiles\x27adgab.default\extensions\avg@toolbar.xpi deleted ==== Chromium Look ====================== HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions chfdnecihphmhljaaejmgoiahnihplgn - No path found[] AVG Web TuneUp - Elize\AppData\Local\Google\Chrome\User Data\Default\Extensions\chfdnecihphmhljaaejmgoiahnihplgn Chrome Media Router - Elize\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm ==== Chromium Fix ====================== C:\Users\Elize\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_cdncache-a.akamaihd.net_0.localstorage deleted successfully C:\Users\Elize\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_cdncache-a.akamaihd.net_0.localstorage-journal deleted successfully C:\Users\Elize\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pckeeper.com_0.localstorage deleted successfully C:\Users\Elize\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pckeeper.com_0.localstorage-journal deleted successfully C:\Users\Elize\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.coupontime00.coupontime.co_0.localstorage deleted successfully C:\Users\Elize\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.coupontime00.coupontime.co_0.localstorage-journal deleted successfully C:\Users\Elize\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage deleted successfully C:\Users\Elize\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage-journal deleted successfully C:\Users\Elize\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage deleted successfully C:\Users\Elize\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage-journal deleted successfully C:\Users\Elize\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_panda-free-antivirus.nl.softonic.com_0.localstorage deleted successfully C:\Users\Elize\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_panda-free-antivirus.nl.softonic.com_0.localstorage-journal deleted successfully C:\Users\Elize\AppData\Local\Google\Chrome\User Data\Default\Extensions\chfdnecihphmhljaaejmgoiahnihplgn deleted successfully C:\Users\Elize\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_chfdnecihphmhljaaejmgoiahnihplgn_0.localstorage deleted successfully C:\Users\Elize\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_chfdnecihphmhljaaejmgoiahnihplgn_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.msn.com/" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs] "Tabs"="res://ieframe.dll/tabswelcome.htm" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs] "Tabs"="res://ieframe.dll/tabswelcome.htm" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{95B7759C-8C7F-4BF1-B163-73684A933233}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.msn.com/" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs] "Tabs"="about:newtab" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs] "Tabs"="about:newtab" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" ==== All HKLM and HKCU SearchScopes ====================== HKLM\SearchScopes "DefaultScope"="{6A6B5317-31E3-4EAE-8CE5-A3A4E4837DBC}" HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKLM\Wow6432Node\SearchScopes "DefaultScope"="{6A6B5317-31E3-4EAE-8CE5-A3A4E4837DBC}" HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC ==== shortcuts on Users Desktops ====================== C:\Users\Elize\Desktop\Downloads - Snelkoppeling.lnk - C:\Users\Elize\Downloads ==== shortcuts on All Users Desktop ====================== C:\Users\Public\Desktop\AVG.lnk - C:\Program Files (x86)\AVG\Framework\Common\avguix.exe /zen.open_ui C:\Users\Public\Desktop\BS.Player FREE.lnk - C:\Program Files (x86)\Webteh\BSPlayer\bsplayer.exe C:\Users\Public\Desktop\De Sims™ 3 Beestenbende.lnk - C:\Users\Public\Desktop\De Sims™ 3.lnk - C:\Users\Public\Desktop\LibreOffice 5.1.lnk - C:\Program Files (x86)\LibreOffice 5\program\soffice.exe C:\Users\Public\Desktop\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Users\Public\Desktop\Origin.lnk - C:\Program Files (x86)\Origin\Origin.exe C:\Users\Public\Desktop\VLC media player.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe ==== shortcuts in Users Start Menu ====================== C:\Users\Elize\AppData\Roaming\Microsoft\Windows\Start Menu\ByteFence\ByteFence Anti-Malware.lnk - C:\Program Files (x86)\ByteFence\ByteFence.exe C:\Users\Elize\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aliexpress .lnk - C:\Windows\explorer.exe C:\Users\Elize\AppData\Local\CadgesAffectionate\Aliexpress.smenu.URL C:\Users\Elize\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Booking .lnk - C:\Windows\explorer.exe C:\Users\Elize\AppData\Local\CadgesAffectionate\Booking.smenu.URL C:\Users\Elize\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk - C:\Users\Elize\AppData\Local\Microsoft\OneDrive\OneDrive.exe C:\Users\Elize\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WorldofWarships.lnk - http://mmotraffic.com/catalog/goplay/1000974/MTE3NjYvLy8xMDAwOTc0/ C:\Users\Elize\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe ==== shortcuts in All Users Start Menu ====================== C:\ProgramData\Microsoft\Windows\Start Menu\BS.Player FREE.lnk - C:\Program Files (x86)\Webteh\BSPlayer\bsplayer.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG\AVG Protection.lnk - C:\Program Files (x86)\AVG\Av\avgui.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen\AVG.lnk - C:\Program Files (x86)\AVG\Framework\Common\avguix.exe /zen.open_ui C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BS.Player\BS.Player FREE.lnk - C:\Program Files (x86)\Webteh\BSPlayer\bsplayer.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BS.Player\Uninstall BS.Player FREE.lnk - C:\Program Files (x86)\Webteh\BSPlayer\uninstall.EXE C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk - C:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\Silverlight.Configuration.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos\DTS Audio Control Panel.lnk - C:\Windows\System32\rundll32.exe shell32.dll,Control_RunDLL RTSnMg64.cpl,, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OSDownloader\OSDownloader.lnk - C:\Program Files (x86)\OSDownloader\OSDownloader.exe ==== shortcuts in Quick Launch ====================== C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Elize\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\BS.Player FREE.lnk - C:\Program Files (x86)\Webteh\BSPlayer\bsplayer.exe C:\Users\Elize\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\OSDownloader.lnk - C:\Program Files (x86)\OSDownloader\OSDownloader.exe C:\Users\Elize\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Elize\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Elize\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WorldofWarships.lnk - http://mmotraffic.com/catalog/goplay/1000974/MTE3NjYvLy8xMDAwOTc0/ C:\Users\Elize\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk - C:\Users\Elize\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==== shortcuts After Repair ====================== C:\Users\Elize\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WorldofWarships.lnk - C:\Users\Elize\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WorldofWarships.lnk - ==== Deleting Registry Keys ====================== HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\chfdnecihphmhljaaejmgoiahnihplgn deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\AVG Web TuneUp deleted successfully HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Reimage Repair deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ByteFence deleted successfully HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\CadgesAffectionate deleted successfully HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\{4CC4620F-A5CB-45A8-DDBA-171E955DA71A} deleted successfully ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Users\Elize\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Elize\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Elize\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Elize\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== C:\Users\Elize\AppData\Local\Mozilla\Firefox\Profiles\x27adgab.default\cache2 emptied successfully ==== Empty Chrome Cache ====================== C:\Users\Elize\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== No Flash Cache Found ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp will be emptied at reboot