Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Lenovo PC slows to a crawl & IE has script issues [Solved]


  • This topic is locked This topic is locked

#1
Tuttle68

Tuttle68

    New Member

  • Member
  • Pip
  • 8 posts

I have a PC that has gotten to be quite a handful to work with.  After a reboot the system appears to work pretty well but after a bit of usage it gets to be very slow and unresponsive just running applications of any type.  When surfing with Internet Explorer it is very slow and huffingtonpost.com consistently throws a script error or provides a non-responsive script message.  While viewing huffingtonpost.com with IE McAfee actually blocked a script from running.

 

With IE acting very strange I installed Chrome on the PC and it appeared to work better but the PC responsiveness issue persisted after a bit of usage.  

 

So step one to getting a fix was to install Chrome, Adobe Flash, Java and MalwareBytes on the PC.  Ran MalwareBytes and removed a few things and the performance improved but never seemed right.  When surfing huffingtonpost.com with Chrome I do not get the script error.

 

Just recently the PC began to run extremely slow and actually presented a message at the bottom right corner of the screen that the copy of Windows 7 on the PC was not legitimate.  At this point MalwareBytes almost seemed to be part of the problem.  Hard shutdown of the PC followed by uninstalling MalwareBytes in Safe Mode and then running Spybot Search & Destroy which was previously installed on the system.  Spybot removed some items and I also ran CCleaner and removed old temporary files (I did not make any changes to the Registery with CCleaner) after a reboot the message about an illegal copy of Windows 7 was gone but the erratic slow behavior of the PC and scripting issues with IE and huffingtonpost.com are still there.

 

Interestingly if I do not connect the PC to my network it seems to run better which gives me the impression something odd is going on behind the scenes.

 

For giggles I re-installed MalwareBytes and it comes back with a variety of issues (mostly Registery Keys) but they are all listed as PUPS:

- Aartemis

- Aartemis.A

- Qone8

- SafeMonitor.A

- OptimizerPro.A

- TubeDimmer

- DynConIE.A

- MySearchDial.A

- Linksicle

 

The OTL log is as follows:

OTL logfile created on: 7/9/2014 6:12:22 PM - Run 2
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\heinkenszand\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17207)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
 
3.60 Gb Total Physical Memory | 2.56 Gb Available Physical Memory | 71.11% Memory free
7.20 Gb Paging File | 5.97 Gb Available in Paging File | 82.97% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 254.14 Gb Total Space | 212.64 Gb Free Space | 83.67% Space Free | Partition Type: NTFS
Drive D: | 29.00 Gb Total Space | 27.17 Gb Free Space | 93.71% Space Free | Partition Type: NTFS
 
Computer Name: HEINKENSZAND-PC | User Name: heinkenszand | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - [2014/07/09 16:16:52 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\heinkenszand\Desktop\OTL.exe
PRC - [2014/05/12 07:24:40 | 001,809,720 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
PRC - [2013/12/21 01:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/07/05 22:16:08 | 000,329,056 | ---- | M] (Lenovo) -- C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
PRC - [2011/05/25 05:33:34 | 000,336,384 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
PRC - [2011/01/28 18:29:36 | 000,136,488 | ---- | M] (CyberLink) -- C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
PRC - [2010/11/05 13:54:36 | 000,407,920 | ---- | M] (Egis Technology Inc.) -- C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
PRC - [2010/11/05 13:54:24 | 000,202,096 | ---- | M] (Egis Technology Inc.) -- C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
PRC - [2010/10/22 09:37:42 | 000,364,400 | ---- | M] (Egis Technology Inc. ) -- C:\Program Files (x86)\EgisTec Port Locker\EgisPLTSR.exe
PRC - [2010/10/22 09:37:24 | 000,327,024 | ---- | M] (Egis Technology Inc. ) -- C:\Program Files (x86)\EgisTec Port Locker\Egishlpsvc.exe
PRC - [2010/01/15 06:38:46 | 000,536,576 | ---- | M] (Vimicro) -- C:\Program Files (x86)\USB Camera\VM331_STI.EXE
PRC - [2009/01/26 15:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
 
 
========== Modules (No Company Name) ==========
 
MOD - [2011/07/05 22:16:05 | 000,013,664 | ---- | M] () -- C:\Program Files (x86)\Lenovo\VeriFace\ChooseLang.dll
 
 
========== Services (SafeList) ==========
 
SRV:64bit: - [2014/06/18 19:24:12 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:64bit: - [2014/04/25 18:34:42 | 000,178,528 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\mcafee\msc\McAPExe.exe -- (McAPExe)
SRV:64bit: - [2014/04/03 17:15:34 | 000,189,912 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Windows\SysNative\mfevtps.exe -- (mfevtp)
SRV:64bit: - [2014/04/03 17:07:34 | 000,219,752 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe -- (mfefire)
SRV:64bit: - [2014/03/18 08:39:34 | 001,041,192 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe -- (mfecore)
SRV:64bit: - [2013/08/02 17:52:58 | 000,602,944 | ---- | M] (McAfee, Inc.) [On_Demand | Start_Pending] -- C:\Program Files\mcafee\virusscan\mcods.exe -- (McODS)
SRV:64bit: - [2013/07/30 12:45:02 | 000,328,928 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe -- (McProxy)
SRV:64bit: - [2013/07/30 12:45:02 | 000,328,928 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe -- (mcpltsvc)
SRV:64bit: - [2013/07/30 12:45:02 | 000,328,928 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe -- (McNaiAnn)
SRV:64bit: - [2013/07/30 12:45:02 | 000,328,928 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (McMPFSvc)
SRV:64bit: - [2013/07/30 12:45:02 | 000,328,928 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (HomeNetSvc)
SRV:64bit: - [2013/05/27 00:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2012/08/31 13:20:06 | 000,201,304 | ---- | M] (McAfee, Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe -- (McOobeSv)
SRV:64bit: - [2012/08/31 13:20:06 | 000,201,304 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McAfee SiteAdvisor Service)
SRV:64bit: - [2011/05/18 22:01:18 | 000,203,776 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2011/01/28 07:28:54 | 000,225,216 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- c:\Program Files\mcafee\msc\McAWFwk.exe -- (McAWFwk)
SRV:64bit: - [2010/12/17 03:46:34 | 000,198,784 | ---- | M] (Conexant Systems Inc.) [Auto | Running] -- C:\Windows\SysNative\CxAudMsg64.exe -- (CxAudMsg)
SRV:64bit: - [2010/09/22 13:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:64bit: - [2009/07/13 20:39:31 | 000,045,568 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\windows\SysNative\rundll32.exe -- (70e6ca8c)
SRV - [2014/07/08 19:26:27 | 000,262,320 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014/05/12 07:24:42 | 000,860,472 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2014/05/12 07:24:40 | 001,809,720 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2013/12/21 01:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/09/11 22:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/12/13 18:59:28 | 000,703,856 | ---- | M] (Egis Technology Inc. ) [Auto | Stopped] -- C:\Program Files (x86)\EgisTec BioExcess\EgisService.exe -- (EgisTec Service)
SRV - [2010/12/13 18:58:32 | 000,650,096 | ---- | M] (Egis Technology Inc. ) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe -- (EgisTec Ticket Service)
SRV - [2010/10/22 09:37:24 | 000,327,024 | ---- | M] (Egis Technology Inc. ) [Auto | Running] -- C:\Program Files (x86)\EgisTec Port Locker\Egishlpsvc.exe -- (EgisTec Service Help)
SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
 
 
========== Driver Services (SafeList) ==========
 
DRV:64bit: - [2014/05/12 07:26:10 | 000,063,704 | ---- | M] (Malwarebytes Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mwac.sys -- (MBAMWebAccessControl)
DRV:64bit: - [2014/05/12 07:25:56 | 000,025,816 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2014/04/03 17:23:54 | 000,070,592 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\cfwids.sys -- (cfwids)
DRV:64bit: - [2014/04/03 17:16:04 | 000,346,760 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\mfewfpk.sys -- (mfewfpk)
DRV:64bit: - [2014/04/03 17:10:34 | 000,784,760 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\mfehidk.sys -- (mfehidk)
DRV:64bit: - [2014/04/03 17:08:04 | 000,522,360 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfefirek.sys -- (mfefirek)
DRV:64bit: - [2014/04/03 17:06:04 | 000,311,856 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfeavfk.sys -- (mfeavfk)
DRV:64bit: - [2014/04/03 17:03:32 | 000,177,544 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfeapfk.sys -- (mfeapfk)
DRV:64bit: - [2014/03/18 07:08:50 | 000,096,592 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mfencrk.sys -- (mfencrk)
DRV:64bit: - [2014/03/18 07:08:26 | 000,441,264 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfencbdc.sys -- (mfencbdc)
DRV:64bit: - [2013/09/23 13:49:22 | 000,197,704 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HipShieldK.sys -- (HipShieldK)
DRV:64bit: - [2013/02/25 10:12:04 | 002,426,672 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\netr28x.sys -- (netr28x)
DRV:64bit: - [2012/03/01 01:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011/09/15 07:02:40 | 000,036,656 | ---- | M] (Egis Technology Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\FPSensor.sys -- (FPSensor)
DRV:64bit: - [2011/07/05 22:42:20 | 000,057,952 | ---- | M] (Lenovo) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\fbfmon.sys -- (fbfmon)
DRV:64bit: - [2011/07/05 22:42:20 | 000,013,408 | ---- | M] (Lenovo) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BPntDrv.sys -- (BPntDrv)
DRV:64bit: - [2011/07/05 22:39:42 | 000,039,008 | ---- | M] (Lenovo.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\LhdX64.sys -- (LHDmgr)
DRV:64bit: - [2011/07/05 22:39:32 | 000,029,792 | ---- | M] (Lenovo Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AcpiVpc.sys -- (ACPIVPC)
DRV:64bit: - [2011/07/05 22:15:30 | 000,055,880 | ---- | M] (Egis Technology Inc.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\EgisTecFF.sys -- (EgisTecFF)
DRV:64bit: - [2011/07/05 22:06:15 | 000,062,584 | ---- | M] (Egis Technology Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\mwlPSDVDisk.sys -- (mwlPSDVDisk)
DRV:64bit: - [2011/07/05 22:06:15 | 000,022,912 | ---- | M] (Egis Technology Inc.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\mwlPSDFilter.sys -- (mwlPSDFilter)
DRV:64bit: - [2011/07/05 22:06:15 | 000,020,328 | ---- | M] (Egis Technology Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\mwlPSDNserv.sys -- (mwlPSDNServ)
DRV:64bit: - [2011/06/10 06:34:52 | 000,539,240 | ---- | M] (Realtek                                            ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2011/05/19 00:36:50 | 009,079,296 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2011/05/18 21:24:44 | 000,299,520 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2011/03/10 04:01:40 | 001,581,184 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CHDRT64.sys -- (CnxtHdAudService)
DRV:64bit: - [2011/01/28 18:29:58 | 000,031,088 | ---- | M] (CyberLink Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\clwvd.sys -- (clwvd)
DRV:64bit: - [2010/12/15 06:56:06 | 001,402,416 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2010/11/30 01:40:04 | 000,307,304 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rtsuvstor.sys -- (RSUSBVSTOR)
DRV:64bit: - [2010/11/29 03:50:38 | 000,044,672 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2010/11/20 22:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 22:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 22:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2010/11/17 07:04:32 | 000,115,216 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2010/10/21 05:05:22 | 000,228,224 | ---- | M] (Vimicro Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vm331avs.sys -- (vm331avs)
DRV:64bit: - [2010/08/16 04:28:50 | 000,008,320 | ---- | M] (Vimicro Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vmuvcflt.sys -- (vmuvcflt)
DRV:64bit: - [2010/04/07 00:57:08 | 000,073,784 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2010/04/07 00:57:08 | 000,028,728 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2009/07/21 09:20:06 | 000,121,840 | ---- | M] (CyberLink) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wsvd.sys -- (wsvd)
DRV:64bit: - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2009/07/13 20:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = about:blank
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.lenovo.com/ [binary data]
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE:64bit: - HKLM\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://www.aartemis....q={searchTerms}
IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = about:blank
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.lenovo.com/ [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7
 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKCU\..\URLSearchHook: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
IE - HKCU\..\SearchScopes,DefaultScope = {74009B78-775A-4628-95A9-A6AFB9B43812}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKCU\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.co...1I7LENN_enUS447
IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7
IE - HKCU\..\SearchScopes\{74009B78-775A-4628-95A9-A6AFB9B43812}: "URL" = http://search.yahoo....p={SearchTerms}
IE - HKCU\..\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}: "URL" = http://www.google.co...1I7LENN_enUS447
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
========== FireFox ==========
 
FF:64bit: - HKLM\Software\MozillaPlugins\@bestbuy.com/npBestBuyPcAppDetector,version=1.0: C:\ProgramData\Best Buy pc app\npBestBuyPcAppDetector.dll (Best Buy)
FF:64bit: - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@bestbuy.com/npBestBuyPcAppDetector,version=1.0: C:\ProgramData\Best Buy pc app\npBestBuyPcAppDetector.dll (Best Buy)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.55.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{41ecbc0b-34d5-4cd4-935f-253a30e2cb7e}: C:\Program Files (x86)\EgisTec BioExcess\FFExt [2011/07/05 22:05:47 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}: C:\Program Files (x86)\McAfee\SiteAdvisor [2014/07/03 22:02:47 | 000,000,000 | ---D | M]
 
[2014/02/01 17:54:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\heinkenszand\AppData\Roaming\mozilla\Firefox\extensions
 
========== Chrome  ==========
 
CHR - default_search_provider: McAfee (Enabled)
CHR - default_search_provider: search_url = http://search.yahoo....p={searchTerms}
CHR - default_search_provider: suggest_url = ,
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\gcswf32.dll
CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Users\heinkenszand\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\McChPlg.dll
CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Windows Live\u00C3\u0083\u00C2\u0083\u00C3\u0082\u00C2\u0083\u00C3\u0083\u00C2\u0082\u00C3\u0082\u00C2\u0082\u00C3\u0083\u00C2\u0083\u00C3\u0082\u00C2\u00A2\u00C3\u0083\u00C2\u0082\u00C3\u0082\u00C2\u0084\u00C3\u0083\u00C2\u0082\u00C3\u0082\u00C2\u00A2 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Best Buy pc app Detector (Enabled) = C:\ProgramData\Best Buy pc app\npBestBuyPcAppDetector.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - plugin: McAfee SecurityCenter (Enabled) = c:\progra~2\mcafee\msc\npmcsn~1.dll
CHR - Extension: SiteAdvisor = C:\Users\heinkenszand\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.65.135.1_1\
CHR - Extension: Google Wallet = C:\Users\heinkenszand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: saver aboox = C:\Users\heinkenszand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkncjcmnlebamfmpgiabklekojpjfoji\5.1\
 
O1 HOSTS File: ([2009/06/10 16:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (EgisPBIE Class) - {7B51CCBE-4AF9-44A6-BDAB-D7F7E4C4E6F9} - C:\Program Files (x86)\EgisTec BioExcess\x64\EgisPBIE.dll (Egis Technology Inc.)
O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:64bit: - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (EgisPBIE Class) - {7B51CCBE-4AF9-44A6-BDAB-D7F7E4C4E6F9} - C:\Program Files (x86)\EgisTec BioExcess\EgisPBIE.dll (Egis Technology Inc.)
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:64bit: - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O4:64bit: - HKLM..\Run: [Energy Management] C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe (Lenovo (Beijing) Limited)
O4:64bit: - HKLM..\Run: [EnergyUtility] C:\Program Files (x86)\Lenovo\Energy Management\utility.exe (Lenovo(beijing) Limited)
O4:64bit: - HKLM..\Run: [Lenovo EE Boot Optimizer] C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe (Lenovo)
O4 - HKLM..\Run: [331BigDog] C:\Program Files (x86)\USB Camera\VM331_STI.EXE (Vimicro)
O4 - HKLM..\Run: [EgisTecPMMUpdate] C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe (Egis Technology Inc.)
O4 - HKLM..\Run: [EgisUpdate] C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe (Egis Technology Inc.)
O4 - HKLM..\Run: [mcpltui_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
O4 - HKLM..\Run: [mcui_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
O4 - HKLM..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe File not found
O4 - HKLM..\Run: [PLTSR] C:\Program Files (x86)\EgisTec Port Locker\EgisPLTSR.exe (Egis Technology Inc. )
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [UpdateP2GShortCut] C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdatePRCShortCut] C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [VeriFaceManager] C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe (Lenovo)
O4 - HKLM..\Run: [VitaKeyTSR] C:\Program Files (x86)\EgisTec BioExcess\EgisTSR.exe (Egis Technology Inc. )
O4 - HKLM..\Run: [YouCam Mirage] C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe (CyberLink)
O4 - HKLM..\Run: [YouCam Tray] C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe (CyberLink Corp.)
O4 - HKCU..\Run: [Best Buy pc app] C:\Users\heinkenszand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Best Buy\Best Buy pc app.appref-ms ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2B4A7058-CF72-4FC7-9C3D-CD8DA9F5629B}: DhcpNameServer = 192.168.1.254
O18:64bit: - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18:64bit: - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll (McAfee, Inc.)
O18 - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.)
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\OPTIMI~1\OPTPRO~2.DLL) -  File not found
O20 - AppInit_DLLs: (c:\progra~2\optimi~1\optpro~1.dll) -  File not found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
========== Files/Folders - Created Within 30 Days ==========
 
[2014/07/09 18:15:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
[2014/07/09 16:30:04 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\heinkenszand\Desktop\OTL.exe
[2014/07/08 21:07:45 | 000,122,584 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\MBAMSwissArmy.sys
[2014/07/08 21:07:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
[2014/07/08 21:07:11 | 000,091,352 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbamchameleon.sys
[2014/07/08 21:07:11 | 000,063,704 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mwac.sys
[2014/07/08 21:07:11 | 000,025,816 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbam.sys
[2014/07/08 21:07:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
[2014/07/08 20:02:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
[2014/07/07 08:57:44 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{CFBBD2A0-804E-4B53-9EEE-FD15D034AD74}
[2014/07/06 11:28:40 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{16EA392B-1CA6-4935-B7AE-35352C7E0733}
[2014/07/05 19:29:15 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{4A18ECDE-D0FF-442C-BBA4-33CA68E86528}
[2014/07/03 21:14:14 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{3554CFDB-9B16-4CAD-9518-ADFA7302BD07}
[2014/07/03 09:14:01 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{2DA8C382-5DB4-49CD-9D92-AE7235C39F3A}
[2014/07/02 21:13:05 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{9B7D81D0-CEC6-4E84-AEE2-A52C660F1B8F}
[2014/07/01 14:03:49 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{182B7C1A-7A3E-4F43-BCC6-69F185631BA0}
[2014/07/01 02:03:35 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{69737C32-36E9-4349-AC2C-084D7CCC472C}
[2014/06/30 14:03:22 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{F1C6CBFE-2BA0-4518-8664-5D880A6AF3F3}
[2014/06/30 02:03:10 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{60BB09B2-BD73-407D-B422-117B635DDEAE}
[2014/06/29 14:02:56 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{ABB29193-A254-465E-8CE9-7F6D63C51A31}
[2014/06/28 11:00:59 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{D04A0C8D-3EEF-43FC-AA46-42EDED103637}
[2014/06/27 15:18:13 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{0316F0C9-EAAF-4999-A974-FD60332CC734}
[2014/06/27 03:18:00 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{B22D8A96-A10F-47E0-A28D-11080A2199AA}
[2014/06/26 15:17:06 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{4F2D3F25-B2CD-48AB-ABEE-60CE49F257E9}
[2014/06/26 03:16:53 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{9B37CF71-E704-4DB2-929C-1D4703526439}
[2014/06/25 15:16:39 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{DC4D7AFC-4A0E-489B-826C-7762BB3EB493}
[2014/06/24 22:22:26 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{7885144E-7961-4D8B-8DDF-0DB0CB24159C}
[2014/06/23 20:24:53 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{CBEEC396-2319-4F87-B774-40AD6C81612C}
[2014/06/23 08:24:25 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{5226889A-C0C5-495F-859F-8CEA9FE0EF0F}
[2014/06/22 10:22:43 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{6B1F206F-EAA1-465F-9576-E80DDEAFD8B9}
[2014/06/21 10:53:59 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{316BA8A6-E8A5-4A7F-8AAD-B5B03C3D7F35}
[2014/06/20 14:34:25 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{AB26331F-964C-44FB-958E-9DF66302F44C}
[2014/06/20 02:33:30 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{8206B11A-9E2A-4C5D-8826-53F0DF559BE0}
[2014/06/19 14:33:17 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{FF8B5A73-CF09-4485-8288-05ADC33C880E}
[2014/06/18 13:03:07 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{1FB28E41-D17B-4839-9D76-3CF17023ED01}
[2014/06/18 01:02:13 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{EFC0FA23-55DD-47EF-AA6D-86536831FC8B}
[2014/06/17 13:02:00 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{7BE2D67B-3109-40CE-8519-7B36DC369FF9}
[2014/06/17 01:01:47 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{349CEB3A-9B71-4D74-9BC3-A5D8F071CCAC}
[2014/06/16 13:01:34 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{718D2493-7308-48EF-AEC2-D727D2B5F53F}
[2014/06/16 01:01:19 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{DF3BEECC-B8B1-43F3-AF7D-10E60FB5117B}
[2014/06/15 13:01:06 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{51568D22-678D-4505-8AB4-CBD7FEC21D5A}
[2014/06/14 12:59:36 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{53BD645F-6D49-4625-86A5-A82B844548FC}
[2014/06/14 00:58:43 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{569DC4EE-03FA-4B15-977A-F7596904645D}
[2014/06/13 12:57:49 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{B4CB82BC-6935-4683-881A-02983B67199B}
[2014/06/13 00:57:35 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{EDE7B8F0-C58F-4EA9-BC73-C6D8171FE3F6}
[2014/06/12 12:57:02 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{FECA9203-B32E-4DB1-BDB6-A1883A09A938}
[2014/06/11 20:53:27 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{7C091FAF-7C7F-4A98-8E0F-9EC53571EE30}
[2014/06/11 08:52:33 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{8AD67FED-768B-4026-9EF5-A5DE99B855E8}
[2014/06/10 20:52:20 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{CBB11B6C-D257-4443-8F12-FD51520B9D5D}
[2014/06/10 08:51:54 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{18E07F24-0610-4606-82D7-E2309A8B70BB}
[2014/06/09 20:51:41 | 000,000,000 | ---D | C] -- C:\Users\heinkenszand\AppData\Local\{864FE997-9C6A-488B-AF42-D8BAA0F52C08}
 
========== Files - Modified Within 30 Days ==========
 
[2014/07/09 18:26:00 | 000,000,830 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2014/07/09 18:23:00 | 000,000,312 | ---- | M] () -- C:\windows\tasks\UpdaterEX.job
[2014/07/09 18:16:00 | 000,000,912 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/07/09 18:11:25 | 000,894,925 | ---- | M] () -- C:\windows\SysNative\fastboot.set
[2014/07/09 18:10:53 | 000,000,908 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/07/09 17:01:36 | 000,021,280 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/07/09 17:01:36 | 000,021,280 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/07/09 16:59:21 | 000,782,510 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2014/07/09 16:59:21 | 000,662,650 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2014/07/09 16:59:21 | 000,122,486 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2014/07/09 16:54:03 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2014/07/09 16:53:55 | 2898,874,368 | -HS- | M] () -- C:\hiberfil.sys
[2014/07/09 16:16:52 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\heinkenszand\Desktop\OTL.exe
[2014/07/09 08:20:32 | 000,122,584 | ---- | M] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\MBAMSwissArmy.sys
[2014/07/09 03:28:26 | 000,282,960 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
[2014/07/08 18:19:52 | 000,007,605 | ---- | M] () -- C:\Users\heinkenszand\AppData\Local\Resmon.ResmonCfg
[2014/07/08 11:44:12 | 000,000,368 | ---- | M] () -- C:\Users\heinkenszand\Desktop\Solitaire.lnk
[2014/07/08 10:03:09 | 000,000,000 | -H-- | M] () -- C:\Users\heinkenszand\Documents\Default.rdp
 
========== Files Created - No Company Name ==========
 
[2014/07/08 11:44:12 | 000,000,368 | ---- | C] () -- C:\Users\heinkenszand\Desktop\Solitaire.lnk
[2014/07/08 10:03:09 | 000,000,000 | -H-- | C] () -- C:\Users\heinkenszand\Documents\Default.rdp
[2014/02/26 04:09:19 | 000,775,124 | ---- | C] () -- C:\windows\SysWow64\PerfStringBackup.INI
[2014/02/01 09:45:06 | 000,000,258 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2013/12/19 10:25:21 | 000,000,030 | ---- | C] () -- C:\Users\heinkenszand\AppData\Roaming\WB.CFG
[2013/07/03 08:25:46 | 000,007,605 | ---- | C] () -- C:\Users\heinkenszand\AppData\Local\Resmon.ResmonCfg
 
========== ZeroAccess Check ==========
 
[2009/07/13 23:55:00 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2014/03/24 21:43:12 | 014,175,744 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014/03/24 21:09:54 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 20:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 22:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 20:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
 
========== LOP Check ==========
 
[2014/02/01 00:05:10 | 000,000,000 | ---D | M] -- C:\Users\heinkenszand\AppData\Roaming\UpdaterEX
[2011/09/15 09:14:57 | 000,000,000 | ---D | M] -- C:\Users\heinkenszand\AppData\Roaming\Windows Live Writer
 
========== Purity Check ==========
 
 
 
========== Alternate Data Streams ==========
 
@Alternate Data Stream - 969 bytes -> C:\Users\heinkenszand\Desktop\Your VacationsMadeEasy_com Order Number 2300760.eml:OECustomProperty
 
< End of report >
 

  • 0

Advertisements


#2
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,886 posts

Hello and welcome to Geeks to Go! My nickname is Pystryker :) , and I will be helping you with your issue today.


Before we get started, I have a few things I need to go over with you

 

  • If you are receiving help for this issue at another forum, please let me know so I can close this thread.
  • Please do not install any new software during the cleaning process other than the tools I provide for you.  This can hinder the cleaning process.
  • Please do not attach your logs or put them inside code/quote tags. Do a Copy/Paste of the entire contents of the log file and submit it inside your post unless directed otherwise.
  • At the top of your post, please click on the "Follow this topic" button and make sure that the "Received notification" box is checked and set to "Instantly"  This will send an email to you as soon as I reply to your topic,  allowing us to solve your problem faster.
  • If any of your security programs give you a warning about any tool I ask you to use, please do not worry.  All the links and tools I provide to you will be safe.
  • Please read through my instructions carefully and completely before executing them.  I will lay the instructions out in a step by step order to make them easy to follow.
  • Please make sure that all the programs I ask you to download are downloaded to and run from your Desktop.
  • Please make sure you (if you are able) to print out these instructions so that you will be able to refer to them while working on your machine.  Part of the solution(s) to your problem may involve us working in Safe Mode and you will need them to go by.  
  • Please do not run any tools other than the ones I ask you to, when I ask you to.  Some of these tools can be very dangerous if used improperly.  Also, if you use a tool that I have not requested you use, it can cause false positives, thereby delaying the complete cleaning of your machine.
  • This is a complicated process.  It requires several steps, patience, and careful following of my instructions in the order they are given to diagnose your problems to get your machine back in working order.
  • Please stay with me until the end of all steps and procedures and I declare your system clean.  Just because there is a lack of symptoms does not indicate a clean machine.  I promise to do the same for you.
  • Please make sure you reply within 3 days to my responses, if there is no reply within 3 days, the topic will be closed and you will need to request the topic be reopened.
  • Before we get started, please remember we will do our best to get your machine repaired.  However, there are some cases where the only solution is a reformat and reinstall of the operating system.  This is a worst case scenario though.
  • It is impossible for me to know what interactions may happen between your computer's software and the tools we will use to clean your machine.  Therefore, I highly recommend you backup any critical personal files on your machine before we start.
  • If possible, please have your original Windows installation disks handy, just in case.
  • If you have any questions at all, please don't hesitate to ask.  There's no such thing as a stupid question when dealing with malware.
  • If you are unsure of an instruction I give you, or if something unexepected occurs, Do NOT proceed!  Stop and ask for clarification of the instruction or tell me what occurred.
  • Please remember, the fixes are for your machine and your machine ONLY!  Do not use these fixes on any other machine, each fix is tailor made for your system only.  Using a fix on another machine can and will cause serious damage.
  • Once we have cleaned your machine, we'll have some cleanup and prevention steps to go through. We will also provide you with some information about how to reduce your chances of infection and get some protections in place to help defend you against this in the future
  • Please be patient while I am analyzing your logs.  I know you are probably scared and very frustrated with this problem, but I am a volunteer and sometimes life does get in the way.

Now, let's get started, shall we? :thumbsup:



Hello :)

Let's get a fresh look with OTL as your log is a few days old.


Please disable your antivirus for the duration of my instructions.  Don't forget to re-enable them after you have completed the steps.


Custom OTL Scan

 

  • Close any open windows and then double click (Vista, Windows 7, 8, right click and then click Run as Administrator)  the icon to start OTL.  
  • Please make sure the following boxes are checked.
  • Scan All Users
  • Use Company-Name WhiteList
  • Skip Microsoft Files
  • Use No-Company-Name Whitelist
  • LOP Check
  • Purity Check
  • Please check Use Safelist is checked under Extra Registry.
  • Copy the contents of the quote box below Do not copy the word quote! and paste them into the Custom Scans/Fixes box at the bottom of OTL's control panel.

    %SYSTEMDRIVE%\*.exe
    /md5start
    services.*
    explorer.exe
    winlogon.exe
    Userinit.exe
    svchost.exe
    rpcss.dll
    /md5stop
    dir "%systemdrive%\*" /S /A:L /C

  • Click the Run Scan button.

firstscangraphic.jpg



  • Please do not interrupt the scanning process.  It may take a while to complete the scan, so please be patient. :)
  • When the scan is finished, it will generate 2 logs, OTL.txt and Extras.txt,  each in a Notepad window.  Both of these logs are saved in the same location as OTL.  In this case, on your desktop.
  • Please post each log in your next reply.

Things I need to see in your next post:

OTL Log

Extras Log

 


  • 0

#3
Tuttle68

Tuttle68

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

pystryker thank you for getting back to me.

 

As you requested I am running the Custom OTL scan with your suggested settings.  When that completes I will paste in the information from both log files.

 

Before that is done I need to bring you up to speed on some additional changes / information about this PC.  As part of my troubleshooting process before posting here I enabled everything that showed in the Startup section of msconfig.  After I did that the PC performance & responsiveness pretty much went to zero.  This morning I booted into Safe mode on Windows 7 and went into msconfig and basically turned off everything in the Startup section except for the Touchpad program.  I then rebooted the computer normally and it was responsive again and could be used to some extent.

 

At that point I went into Control Panel -> Programs & Features and I Uninstalled the following:

- Adobe Flash

- Adobe Reader XI

- Java 7 Update 55

- Best Buy PC Advisor (some junk program from the store that sold the PC)

- Malwarebytes

 

I then shut the PC down and restarted it again.

 

At this point I jumped the gun and took the removal process into my own hands and ran the following programs while McAfee Antivirus was shutdown:

- First ran AdwCleaner and have the log available if you want to see it

- Rebooted the PC

- Second ran JRT and have the log available if you want to see it

- Rebooted the PC

- Third ran ComboFix and have the log available if you want to see it

- Rebooted the PC

- Ran Spybot Search & Destroy removed one entry from Chrome

- Installed MalwareBytes and removed a few items

 

When I have the logs from OTL available I will include them in the next post.  I am not responding to you from the same computer that is experiencing the problems.

 

Thank you in advance for any assistance you can provide and I look forward to learning a few things along the way.

 

At this point I will not make any changes to the system unless you direct me to do so. 

 


  • 0

#4
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,886 posts

pystryker thank you for getting back to me.


You're quite welcome. :)


At this point I jumped the gun and took the removal process into my own hands and ran the following programs while McAfee Antivirus was shutdown:


Very much not advisable. Especially running ComboFix without supervision. That tool can turn the computer into an unbootable brick if used improperly. Please post the logs from the tools you have already run along with the OTL logs and let's see what they show. :thumbsup:
  • 0

#5
Tuttle68

Tuttle68

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

OTL Log

 


OTL logfile created on: 7/12/2014 1:52:09 PM - Run 3
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\heinkenszand\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17207)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
 
3.60 Gb Total Physical Memory | 2.15 Gb Available Physical Memory | 59.78% Memory free
7.20 Gb Paging File | 5.80 Gb Available in Paging File | 80.53% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 254.14 Gb Total Space | 213.34 Gb Free Space | 83.94% Space Free | Partition Type: NTFS
Drive D: | 29.00 Gb Total Space | 27.17 Gb Free Space | 93.71% Space Free | Partition Type: NTFS
 
Computer Name: HEINKENSZAND-PC | User Name: heinkenszand | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - [2014/07/09 16:16:52 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\heinkenszand\Desktop\OTL.exe
PRC - [2011/01/28 18:29:36 | 000,136,488 | ---- | M] (CyberLink) -- C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
PRC - [2010/10/22 09:37:24 | 000,327,024 | ---- | M] (Egis Technology Inc. ) -- C:\Program Files (x86)\EgisTec Port Locker\Egishlpsvc.exe
PRC - [2009/01/26 15:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
 
 
========== Modules (No Company Name) ==========
 
 
========== Services (SafeList) ==========
 
SRV:64bit: - [2014/06/18 19:24:12 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:64bit: - [2014/04/25 18:34:42 | 000,178,528 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\mcafee\msc\McAPExe.exe -- (McAPExe)
SRV:64bit: - [2014/04/03 17:15:34 | 000,189,912 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Windows\SysNative\mfevtps.exe -- (mfevtp)
SRV:64bit: - [2014/04/03 17:07:34 | 000,219,752 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe -- (mfefire)
SRV:64bit: - [2014/03/18 08:39:34 | 001,041,192 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe -- (mfecore)
SRV:64bit: - [2013/08/02 17:52:58 | 000,602,944 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\mcafee\virusscan\mcods.exe -- (McODS)
SRV:64bit: - [2013/07/30 12:45:02 | 000,328,928 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe -- (McProxy)
SRV:64bit: - [2013/07/30 12:45:02 | 000,328,928 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe -- (mcpltsvc)
SRV:64bit: - [2013/07/30 12:45:02 | 000,328,928 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe -- (McNaiAnn)
SRV:64bit: - [2013/07/30 12:45:02 | 000,328,928 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (McMPFSvc)
SRV:64bit: - [2013/07/30 12:45:02 | 000,328,928 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (HomeNetSvc)
SRV:64bit: - [2013/05/27 00:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2012/08/31 13:20:06 | 000,201,304 | ---- | M] (McAfee, Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe -- (McOobeSv)
SRV:64bit: - [2012/08/31 13:20:06 | 000,201,304 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McAfee SiteAdvisor Service)
SRV:64bit: - [2011/05/18 22:01:18 | 000,203,776 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2011/01/28 07:28:54 | 000,225,216 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- c:\Program Files\mcafee\msc\McAWFwk.exe -- (McAWFwk)
SRV:64bit: - [2010/12/17 03:46:34 | 000,198,784 | ---- | M] (Conexant Systems Inc.) [Auto | Running] -- C:\Windows\SysNative\CxAudMsg64.exe -- (CxAudMsg)
SRV:64bit: - [2010/09/22 13:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV - [2013/09/11 22:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/12/13 18:59:28 | 000,703,856 | ---- | M] (Egis Technology Inc. ) [Auto | Stopped] -- C:\Program Files (x86)\EgisTec BioExcess\EgisService.exe -- (EgisTec Service)
SRV - [2010/12/13 18:58:32 | 000,650,096 | ---- | M] (Egis Technology Inc. ) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe -- (EgisTec Ticket Service)
SRV - [2010/10/22 09:37:24 | 000,327,024 | ---- | M] (Egis Technology Inc. ) [Auto | Running] -- C:\Program Files (x86)\EgisTec Port Locker\Egishlpsvc.exe -- (EgisTec Service Help)
SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
 
 
========== Driver Services (SafeList) ==========
 
DRV:64bit: - [2014/04/03 17:23:54 | 000,070,592 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\cfwids.sys -- (cfwids)
DRV:64bit: - [2014/04/03 17:16:04 | 000,346,760 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\mfewfpk.sys -- (mfewfpk)
DRV:64bit: - [2014/04/03 17:10:34 | 000,784,760 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\mfehidk.sys -- (mfehidk)
DRV:64bit: - [2014/04/03 17:08:04 | 000,522,360 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfefirek.sys -- (mfefirek)
DRV:64bit: - [2014/04/03 17:06:04 | 000,311,856 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfeavfk.sys -- (mfeavfk)
DRV:64bit: - [2014/04/03 17:03:32 | 000,177,544 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfeapfk.sys -- (mfeapfk)
DRV:64bit: - [2014/03/18 07:08:50 | 000,096,592 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mfencrk.sys -- (mfencrk)
DRV:64bit: - [2014/03/18 07:08:26 | 000,441,264 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfencbdc.sys -- (mfencbdc)
DRV:64bit: - [2013/09/23 13:49:22 | 000,197,704 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HipShieldK.sys -- (HipShieldK)
DRV:64bit: - [2013/02/25 10:12:04 | 002,426,672 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\netr28x.sys -- (netr28x)
DRV:64bit: - [2012/03/01 01:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011/09/15 07:02:40 | 000,036,656 | ---- | M] (Egis Technology Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\FPSensor.sys -- (FPSensor)
DRV:64bit: - [2011/07/05 22:42:20 | 000,057,952 | ---- | M] (Lenovo) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\fbfmon.sys -- (fbfmon)
DRV:64bit: - [2011/07/05 22:42:20 | 000,013,408 | ---- | M] (Lenovo) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BPntDrv.sys -- (BPntDrv)
DRV:64bit: - [2011/07/05 22:39:42 | 000,039,008 | ---- | M] (Lenovo.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\LhdX64.sys -- (LHDmgr)
DRV:64bit: - [2011/07/05 22:39:32 | 000,029,792 | ---- | M] (Lenovo Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AcpiVpc.sys -- (ACPIVPC)
DRV:64bit: - [2011/07/05 22:15:30 | 000,055,880 | ---- | M] (Egis Technology Inc.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\EgisTecFF.sys -- (EgisTecFF)
DRV:64bit: - [2011/07/05 22:06:15 | 000,062,584 | ---- | M] (Egis Technology Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\mwlPSDVDisk.sys -- (mwlPSDVDisk)
DRV:64bit: - [2011/07/05 22:06:15 | 000,022,912 | ---- | M] (Egis Technology Inc.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\mwlPSDFilter.sys -- (mwlPSDFilter)
DRV:64bit: - [2011/07/05 22:06:15 | 000,020,328 | ---- | M] (Egis Technology Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\mwlPSDNserv.sys -- (mwlPSDNServ)
DRV:64bit: - [2011/06/10 06:34:52 | 000,539,240 | ---- | M] (Realtek                                            ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2011/05/19 00:36:50 | 009,079,296 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2011/05/18 21:24:44 | 000,299,520 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2011/03/10 04:01:40 | 001,581,184 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CHDRT64.sys -- (CnxtHdAudService)
DRV:64bit: - [2010/12/15 06:56:06 | 001,402,416 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2010/11/30 01:40:04 | 000,307,304 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rtsuvstor.sys -- (RSUSBVSTOR)
DRV:64bit: - [2010/11/29 03:50:38 | 000,044,672 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2010/11/20 22:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 22:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 22:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2010/11/17 07:04:32 | 000,115,216 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2010/10/21 05:05:22 | 000,228,224 | ---- | M] (Vimicro Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vm331avs.sys -- (vm331avs)
DRV:64bit: - [2010/08/16 04:28:50 | 000,008,320 | ---- | M] (Vimicro Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vmuvcflt.sys -- (vmuvcflt)
DRV:64bit: - [2010/04/07 00:57:08 | 000,073,784 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2010/04/07 00:57:08 | 000,028,728 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2009/07/21 09:20:06 | 000,121,840 | ---- | M] (CyberLink) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wsvd.sys -- (wsvd)
DRV:64bit: - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2009/07/13 20:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
 
 
========== Standard Registry (All) ==========
 
 
========== Internet Explorer ==========
 
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =  [binary data]
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.lenovo.com/ [binary data]
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn...st/srchcust.htm
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn...st/srchasst.htm
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =  [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = about:blank
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.lenovo.com/ [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\..\SearchScopes,DefaultScope = 
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
 
 
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft...=ie&ar=iesearch
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft...d=ie&ar=msnhome
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft...=ie&ar=iesearch
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft...d=ie&ar=msnhome
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-19\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation)
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = 
 
IE - HKU\S-1-5-20\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation)
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = 
 
IE - HKU\S-1-5-21-3106019205-2630701844-2044080187-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\windows\system32\blank.htm
IE - HKU\S-1-5-21-3106019205-2630701844-2044080187-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft...=ie&ar=iesearch
IE - HKU\S-1-5-21-3106019205-2630701844-2044080187-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\S-1-5-21-3106019205-2630701844-2044080187-1001\..\URLSearchHook: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
IE - HKU\S-1-5-21-3106019205-2630701844-2044080187-1001\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation)
IE - HKU\S-1-5-21-3106019205-2630701844-2044080187-1001\..\SearchScopes,DefaultScope = {74009B78-775A-4628-95A9-A6AFB9B43812}
IE - HKU\S-1-5-21-3106019205-2630701844-2044080187-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKU\S-1-5-21-3106019205-2630701844-2044080187-1001\..\SearchScopes\{74009B78-775A-4628-95A9-A6AFB9B43812}: "URL" = http://search.yahoo....p={SearchTerms}
IE - HKU\S-1-5-21-3106019205-2630701844-2044080187-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
========== FireFox ==========
 
FF:64bit: - HKLM\Software\MozillaPlugins\@bestbuy.com/npBestBuyPcAppDetector,version=1.0: C:\ProgramData\Best Buy pc app\npBestBuyPcAppDetector.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@bestbuy.com/npBestBuyPcAppDetector,version=1.0: C:\ProgramData\Best Buy pc app\npBestBuyPcAppDetector.dll File not found
FF - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{41ecbc0b-34d5-4cd4-935f-253a30e2cb7e}: C:\Program Files (x86)\EgisTec BioExcess\FFExt [2011/07/05 22:05:47 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}: C:\Program Files (x86)\McAfee\SiteAdvisor [2014/07/03 22:02:47 | 000,000,000 | ---D | M]
 
[2014/02/01 17:54:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\heinkenszand\AppData\Roaming\mozilla\Firefox\extensions
 
========== Chrome  ==========
 
CHR - default_search_provider: McAfee (Enabled)
CHR - default_search_provider: search_url = http://search.yahoo....p={searchTerms}
CHR - default_search_provider: suggest_url = ,
CHR - homepage: 
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\gcswf32.dll
CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Users\heinkenszand\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\McChPlg.dll
CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Windows Live\u00C3\u0083\u00C2\u0083\u00C3\u0082\u00C2\u0083\u00C3\u0083\u00C2\u0082\u00C3\u0082\u00C2\u0082\u00C3\u0083\u00C2\u0083\u00C3\u0082\u00C2\u00A2\u00C3\u0083\u00C2\u0082\u00C3\u0082\u00C2\u0084\u00C3\u0083\u00C2\u0082\u00C3\u0082\u00C2\u00A2 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Best Buy pc app Detector (Enabled) = C:\ProgramData\Best Buy pc app\npBestBuyPcAppDetector.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - plugin: McAfee SecurityCenter (Enabled) = c:\progra~2\mcafee\msc\npmcsn~1.dll
CHR - Extension: SiteAdvisor = C:\Users\heinkenszand\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.65.135.1_1\
CHR - Extension: Google Wallet = C:\Users\heinkenszand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
 
O1 HOSTS File: ([2014/07/12 09:50:30 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1       localhost
O2:64bit: - BHO: (EgisPBIE Class) - {7B51CCBE-4AF9-44A6-BDAB-D7F7E4C4E6F9} - C:\Program Files (x86)\EgisTec BioExcess\x64\EgisPBIE.dll (Egis Technology Inc.)
O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2:64bit: - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
O2 - BHO: (EgisPBIE Class) - {7B51CCBE-4AF9-44A6-BDAB-D7F7E4C4E6F9} - C:\Program Files (x86)\EgisTec BioExcess\EgisPBIE.dll (Egis Technology Inc.)
O2 - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O3:64bit: - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:64bit: - HKLM..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption = 
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext = 
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-3106019205-2630701844-2044080187-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-3106019205-2630701844-2044080187-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9 - Extra Button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000001 [] - C:\Windows\SysNative\nlaapi.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000002 [] - C:\Windows\SysNative\NapiNSP.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000003 [] - C:\Windows\SysNative\pnrpnsp.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000004 [] - C:\Windows\SysNative\pnrpnsp.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000005 [] - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000006 [] - C:\Windows\SysNative\winrnr.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Windows\SysNative\wshbth.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000009 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000010 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000011 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\SysWOW64\nlaapi.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\SysWOW64\NapiNSP.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\SysWOW64\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\SysWOW64\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\SysWOW64\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Windows\SysWOW64\wshbth.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2B4A7058-CF72-4FC7-9C3D-CD8DA9F5629B}: DhcpNameServer = 192.168.1.254
O18:64bit: - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
O18:64bit: - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysNative\MSVidCtl.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysNative\itss.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysNative\inetcomm.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysNative\itss.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
O18:64bit: - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysNative\MSVidCtl.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll (Microsoft Corporation)
O18:64bit: - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\windows\SysNative\mscoree.dll (Microsoft Corporation)
O18:64bit: - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\windows\SysNative\mscoree.dll (Microsoft Corporation)
O18:64bit: - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll (McAfee, Inc.)
O18:64bit: - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\windows\SysNative\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\windows\SysWow64\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\windows\SysWow64\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\windows\SysWow64\mscoree.dll (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\windows\SysWow64\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O29:64bit: - HKLM SecurityProviders - (credssp.dll) - C:\windows\SysWow64\credssp.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (credssp.dll) - C:\windows\SysWow64\credssp.dll (Microsoft Corporation)
O30:64bit: - LSA: Authentication Packages - (msv1_0) - C:\windows\SysNative\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\windows\SysWow64\msv1_0.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (kerberos) - C:\windows\SysNative\kerberos.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (msv1_0) - C:\windows\SysNative\msv1_0.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (schannel) - C:\windows\SysNative\schannel.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (wdigest) - C:\windows\SysNative\wdigest.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (tspkg) - C:\windows\SysNative\tspkg.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (pku2u) - C:\windows\SysNative\pku2u.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (livessp) - C:\windows\SysNative\livessp.dll (Microsoft Corp.)
O30 - LSA: Security Packages - (kerberos) - C:\windows\SysWow64\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\windows\SysWow64\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\windows\SysWow64\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\windows\SysWow64\wdigest.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (tspkg) - C:\windows\SysWow64\tspkg.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:\windows\SysWow64\pku2u.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (livessp) - C:\windows\SysWow64\livessp.dll (Microsoft Corp.)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
========== Files/Folders - Created Within 30 Days ==========
 
[2014/07/12 13:15:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
[2014/07/12 10:35:25 | 000,122,584 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\MBAMSwissArmy.sys
[2014/07/12 10:35:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
[2014/07/12 10:35:04 | 000,091,352 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbamchameleon.sys
[2014/07/12 10:35:03 | 000,063,704 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mwac.sys
[2014/07/12 10:35:03 | 000,025,816 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbam.sys
[2014/07/12 10:35:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
[2014/07/12 09:57:33 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2014/07/12 09:57:27 | 000,000,000 | ---D | C] -- C:\windows\temp
[2014/07/12 09:30:18 | 000,518,144 | ---- | C] (SteelWerX) -- C:\windows\SWREG.exe
[2014/07/12 09:30:18 | 000,406,528 | ---- | C] (SteelWerX) -- C:\windows\SWSC.exe
[2014/07/12 09:30:18 | 000,060,416 | ---- | C] (NirSoft) -- C:\windows\NIRCMD.exe
[2014/07/12 09:29:46 | 000,000,000 | ---D | C] -- C:\Qoobox
[2014/07/12 09:29:21 | 000,000,000 | ---D | C] -- C:\windows\erdnt
[2014/07/12 09:01:09 | 000,000,000 | ---D | C] -- C:\windows\ERUNT
[2014/07/12 08:48:22 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014/07/09 16:30:04 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\heinkenszand\Desktop\OTL.exe
 
========== Files - Modified Within 30 Days ==========
 
[2014/07/12 13:16:01 | 000,000,912 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/07/12 11:42:33 | 000,122,584 | ---- | M] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\MBAMSwissArmy.sys
[2014/07/12 11:36:05 | 000,021,280 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/07/12 11:36:05 | 000,021,280 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/07/12 11:34:53 | 000,782,510 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2014/07/12 11:34:53 | 000,662,650 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2014/07/12 11:34:53 | 000,122,486 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2014/07/12 11:29:13 | 000,123,927 | ---- | M] () -- C:\windows\SysNative\fastboot.set
[2014/07/12 11:28:46 | 000,000,908 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/07/12 11:27:20 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2014/07/12 11:27:11 | 2898,874,368 | -HS- | M] () -- C:\hiberfil.sys
[2014/07/12 09:50:30 | 000,000,027 | ---- | M] () -- C:\windows\SysNative\drivers\etc\hosts
[2014/07/09 16:16:52 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\heinkenszand\Desktop\OTL.exe
[2014/07/09 03:28:26 | 000,282,960 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
[2014/07/08 18:19:52 | 000,007,605 | ---- | M] () -- C:\Users\heinkenszand\AppData\Local\Resmon.ResmonCfg
[2014/07/08 11:44:12 | 000,000,368 | ---- | M] () -- C:\Users\heinkenszand\Desktop\Solitaire.lnk
[2014/07/08 10:03:09 | 000,000,000 | -H-- | M] () -- C:\Users\heinkenszand\Documents\Default.rdp
 
========== Files Created - No Company Name ==========
 
[2014/07/12 09:30:18 | 000,256,000 | ---- | C] () -- C:\windows\PEV.exe
[2014/07/12 09:30:18 | 000,208,896 | ---- | C] () -- C:\windows\MBR.exe
[2014/07/12 09:30:18 | 000,098,816 | ---- | C] () -- C:\windows\sed.exe
[2014/07/12 09:30:18 | 000,080,412 | ---- | C] () -- C:\windows\grep.exe
[2014/07/12 09:30:18 | 000,068,096 | ---- | C] () -- C:\windows\zip.exe
[2014/07/08 11:44:12 | 000,000,368 | ---- | C] () -- C:\Users\heinkenszand\Desktop\Solitaire.lnk
[2014/07/08 10:03:09 | 000,000,000 | -H-- | C] () -- C:\Users\heinkenszand\Documents\Default.rdp
[2014/02/26 04:09:19 | 000,775,124 | ---- | C] () -- C:\windows\SysWow64\PerfStringBackup.INI
[2014/02/01 09:45:06 | 000,000,258 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2013/12/19 10:25:21 | 000,000,030 | ---- | C] () -- C:\Users\heinkenszand\AppData\Roaming\WB.CFG
[2013/07/03 08:25:46 | 000,007,605 | ---- | C] () -- C:\Users\heinkenszand\AppData\Local\Resmon.ResmonCfg
 
========== ZeroAccess Check ==========
 
[2009/07/13 23:55:00 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2014/03/24 21:43:12 | 014,175,744 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014/03/24 21:09:54 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 20:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 22:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 20:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
 
========== LOP Check ==========
 
[2011/09/15 09:14:57 | 000,000,000 | ---D | M] -- C:\Users\heinkenszand\AppData\Roaming\Windows Live Writer
 
========== Purity Check ==========
 
 
 
========== Custom Scans ==========
 
< %SYSTEMDRIVE%\*.exe >
 
< MD5 for: EXPLORER.EXE  >
[2011/02/26 00:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2011/02/25 01:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\erdnt\cache86\explorer.exe
[2011/02/25 01:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011/02/25 01:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011/02/26 01:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010/11/20 22:24:25 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2011/02/25 00:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011/02/25 00:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2010/11/20 22:24:11 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
 
< MD5 for: RPCSS.DLL  >
[2010/11/20 22:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) MD5=5C627D1B1138676C0A7AB2C2C190D123 -- C:\Windows\erdnt\cache64\rpcss.dll
[2010/11/20 22:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) MD5=5C627D1B1138676C0A7AB2C2C190D123 -- C:\windows\SysNative\rpcss.dll
[2010/11/20 22:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) MD5=5C627D1B1138676C0A7AB2C2C190D123 -- C:\Windows\winsxs\amd64_microsoft-windows-com-base-qfe-rpcss_31bf3856ad364e35_6.1.7601.17514_none_c7f0e16b547f887d\rpcss.dll
 
< MD5 for: SERVICES  >
[2009/06/10 16:00:26 | 000,017,463 | ---- | M] () MD5=D9E1A01B480D961B7CF0509D597A92D6 -- C:\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-other_31bf3856ad364e35_6.1.7600.16385_none_6079f415110c0210\services
 
< MD5 for: SERVICES.CSS  >
[2011/08/31 02:30:40 | 000,000,093 | ---- | M] () MD5=F15FB82C578490B209442B8C1D5076CC -- C:\ProgramData\Intuit\Quicken\Inet\Common\Localweb\Services\Services.css
[2011/08/31 02:30:40 | 000,000,093 | ---- | M] () MD5=F15FB82C578490B209442B8C1D5076CC -- C:\Users\All Users\Intuit\Quicken\Inet\Common\Localweb\Services\Services.css
 
< MD5 for: SERVICES.EXE  >
[2009/07/13 20:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\erdnt\cache64\services.exe
[2009/07/13 20:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\windows\SysNative\services.exe
[2009/07/13 20:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
 
< MD5 for: SERVICES.EXE.MUI  >
[2010/11/21 02:06:16 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=6507BF0DC2D1F5F32493C288EAA59277 -- C:\windows\SysNative\en-US\services.exe.mui
[2010/11/21 02:06:16 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=6507BF0DC2D1F5F32493C288EAA59277 -- C:\Windows\winsxs\amd64_microsoft-windows-s..ontroller.resources_31bf3856ad364e35_6.1.7600.16385_en-us_c5f238be3fa63468\services.exe.mui
 
< MD5 for: SERVICES.INI  >
[2011/08/31 02:30:40 | 000,000,012 | ---- | M] () MD5=810C4D394B59FF7116A0CD6052286C41 -- C:\ProgramData\Intuit\Quicken\Inet\Common\Localweb\Services\Services.ini
[2011/08/31 02:30:40 | 000,000,012 | ---- | M] () MD5=810C4D394B59FF7116A0CD6052286C41 -- C:\Users\All Users\Intuit\Quicken\Inet\Common\Localweb\Services\Services.ini
 
< MD5 for: SERVICES.LNK  >
[2009/07/13 23:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 23:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
 
< MD5 for: SERVICES.MOF  >
[2009/06/10 15:44:06 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\windows\SysNative\wbem\services.mof
[2009/06/10 15:44:06 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.mof
 
< MD5 for: SERVICES.MSC  >
[2010/11/21 02:06:14 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\windows\SysNative\en-US\services.msc
[2009/06/10 15:38:36 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\windows\SysNative\services.msc
[2010/11/21 02:06:17 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\SysWOW64\en-US\services.msc
[2009/06/10 16:21:09 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\SysWOW64\services.msc
[2010/11/21 02:06:14 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\amd64_microsoft-windows-s..cessnapin.resources_31bf3856ad364e35_6.1.7600.16385_en-us_003408aa160fce5b\services.msc
[2009/06/10 15:38:36 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\amd64_microsoft-windows-servicessnapin_31bf3856ad364e35_6.1.7600.16385_none_2b58d44b5f6beb8a\services.msc
[2010/11/21 02:06:17 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\x86_microsoft-windows-s..cessnapin.resources_31bf3856ad364e35_6.1.7600.16385_en-us_a4156d265db25d25\services.msc
[2009/06/10 16:21:09 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\x86_microsoft-windows-servicessnapin_31bf3856ad364e35_6.1.7600.16385_none_cf3a38c7a70e7a54\services.msc
 
< MD5 for: SERVICES.PTXML  >
[2009/07/13 15:16:17 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\windows\SysNative\wdi\perftrack\Services.ptxml
[2009/07/13 15:16:17 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\Services.ptxml
 
< MD5 for: SERVICES.SBS  >
[2013/07/16 13:21:30 | 000,034,818 | ---- | M] () MD5=E2ACBC77020C8D5CE97CA61D0D859A44 -- C:\Program Files (x86)\Spybot - Search & Destroy\Includes\Services.sbs
 
< MD5 for: SVCHOST.EXE  >
[2014/05/12 07:24:30 | 000,750,392 | ---- | M] (MalwareBytes) MD5=09882E8EDD1144E6EF1AF6D1F98305EE -- C:\Program Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\svchost.exe
[2009/07/13 20:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\erdnt\cache86\svchost.exe
[2009/07/13 20:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009/07/13 20:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009/07/13 20:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\erdnt\cache64\svchost.exe
[2009/07/13 20:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\windows\SysNative\svchost.exe
[2009/07/13 20:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe
 
< MD5 for: USERINIT.EXE  >
[2010/11/20 22:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\erdnt\cache86\userinit.exe
[2010/11/20 22:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010/11/20 22:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2010/11/20 22:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\erdnt\cache64\userinit.exe
[2010/11/20 22:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\windows\SysNative\userinit.exe
[2010/11/20 22:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe
 
< MD5 for: WINLOGON.EXE  >
[2014/05/12 07:24:30 | 000,750,392 | ---- | M] (MalwareBytes) MD5=09882E8EDD1144E6EF1AF6D1F98305EE -- C:\Program Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\winlogon.exe
[2010/11/20 22:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2014/03/04 06:08:14 | 000,455,680 | ---- | M] (Microsoft Corporation) MD5=6CE2AE073BD21C542FC2C707CAE944CC -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.22616_none_ce748d1d04acf24f\winlogon.exe
[2014/03/04 04:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=88AB9B72B4BF3963A0DE0820B4B0B06C -- C:\Windows\erdnt\cache64\winlogon.exe
[2014/03/04 04:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=88AB9B72B4BF3963A0DE0820B4B0B06C -- C:\windows\SysNative\winlogon.exe
[2014/03/04 04:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=88AB9B72B4BF3963A0DE0820B4B0B06C -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.18409_none_cdf8bf35eb848572\winlogon.exe
 
< dir "%systemdrive%\*" /S /A:L /C >
 Volume in drive C has no label.
 Volume Serial Number is 1444-7F0F
 Directory of C:\
07/14/2009  12:08 AM    <JUNCTION>     Documents and Settings [C:\Users]
               0 File(s)              0 bytes
 Directory of C:\ProgramData
07/14/2009  12:08 AM    <JUNCTION>     Application Data [C:\ProgramData]
07/14/2009  12:08 AM    <JUNCTION>     Desktop [C:\Users\Public\Desktop]
07/14/2009  12:08 AM    <JUNCTION>     Documents [C:\Users\Public\Documents]
07/14/2009  12:08 AM    <JUNCTION>     Favorites [C:\Users\Public\Favorites]
07/14/2009  12:08 AM    <JUNCTION>     Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
07/14/2009  12:08 AM    <JUNCTION>     Templates [C:\ProgramData\Microsoft\Windows\Templates]
               0 File(s)              0 bytes
 Directory of C:\Users
07/14/2009  12:08 AM    <SYMLINKD>     All Users [C:\ProgramData]
07/14/2009  12:08 AM    <JUNCTION>     Default User [C:\Users\Default]
               0 File(s)              0 bytes
 Directory of C:\Users\All Users
07/14/2009  12:08 AM    <JUNCTION>     Application Data [C:\ProgramData]
07/14/2009  12:08 AM    <JUNCTION>     Desktop [C:\Users\Public\Desktop]
07/14/2009  12:08 AM    <JUNCTION>     Documents [C:\Users\Public\Documents]
07/14/2009  12:08 AM    <JUNCTION>     Favorites [C:\Users\Public\Favorites]
07/14/2009  12:08 AM    <JUNCTION>     Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
07/14/2009  12:08 AM    <JUNCTION>     Templates [C:\ProgramData\Microsoft\Windows\Templates]
               0 File(s)              0 bytes
 Directory of C:\Users\Default
07/14/2009  12:08 AM    <JUNCTION>     Application Data [C:\Users\Default\AppData\Roaming]
07/14/2009  12:08 AM    <JUNCTION>     Local Settings [C:\Users\Default\AppData\Local]
07/14/2009  12:08 AM    <JUNCTION>     My Documents [C:\Users\Default\Documents]
07/14/2009  12:08 AM    <JUNCTION>     NetHood [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
07/14/2009  12:08 AM    <JUNCTION>     PrintHood [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
07/14/2009  12:08 AM    <JUNCTION>     Recent [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Recent]
07/14/2009  12:08 AM    <JUNCTION>     SendTo [C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo]
07/14/2009  12:08 AM    <JUNCTION>     Start Menu [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu]
07/14/2009  12:08 AM    <JUNCTION>     Templates [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Templates]
               0 File(s)              0 bytes
 Directory of C:\Users\Default\AppData\Local
07/14/2009  12:08 AM    <JUNCTION>     Application Data [C:\Users\Default\AppData\Local]
07/14/2009  12:08 AM    <JUNCTION>     History [C:\Users\Default\AppData\Local\Microsoft\Windows\History]
07/14/2009  12:08 AM    <JUNCTION>     Temporary Internet Files [C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
               0 File(s)              0 bytes
 Directory of C:\Users\Default\Documents
07/14/2009  12:08 AM    <JUNCTION>     My Music [C:\Users\Default\Music]
07/14/2009  12:08 AM    <JUNCTION>     My Pictures [C:\Users\Default\Pictures]
07/14/2009  12:08 AM    <JUNCTION>     My Videos [C:\Users\Default\Videos]
               0 File(s)              0 bytes
 Directory of C:\Users\heinkenszand
08/28/2011  05:35 PM    <JUNCTION>     Application Data [C:\Users\heinkenszand\AppData\Roaming]
08/28/2011  05:35 PM    <JUNCTION>     Cookies [C:\Users\heinkenszand\AppData\Roaming\Microsoft\Windows\Cookies]
08/28/2011  05:35 PM    <JUNCTION>     Local Settings [C:\Users\heinkenszand\AppData\Local]
08/28/2011  05:35 PM    <JUNCTION>     My Documents [C:\Users\heinkenszand\Documents]
08/28/2011  05:35 PM    <JUNCTION>     NetHood [C:\Users\heinkenszand\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
08/28/2011  05:35 PM    <JUNCTION>     PrintHood [C:\Users\heinkenszand\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
08/28/2011  05:35 PM    <JUNCTION>     Recent [C:\Users\heinkenszand\AppData\Roaming\Microsoft\Windows\Recent]
08/28/2011  05:35 PM    <JUNCTION>     SendTo [C:\Users\heinkenszand\AppData\Roaming\Microsoft\Windows\SendTo]
08/28/2011  05:35 PM    <JUNCTION>     Start Menu [C:\Users\heinkenszand\AppData\Roaming\Microsoft\Windows\Start Menu]
08/28/2011  05:35 PM    <JUNCTION>     Templates [C:\Users\heinkenszand\AppData\Roaming\Microsoft\Windows\Templates]
               0 File(s)              0 bytes
 Directory of C:\Users\heinkenszand\AppData\Local
08/28/2011  05:35 PM    <JUNCTION>     Application Data [C:\Users\heinkenszand\AppData\Local]
08/28/2011  05:35 PM    <JUNCTION>     History [C:\Users\heinkenszand\AppData\Local\Microsoft\Windows\History]
08/28/2011  05:35 PM    <JUNCTION>     Temporary Internet Files [C:\Users\heinkenszand\AppData\Local\Microsoft\Windows\Temporary Internet Files]
               0 File(s)              0 bytes
 Directory of C:\Users\heinkenszand\Documents
08/28/2011  05:35 PM    <JUNCTION>     My Music [C:\Users\heinkenszand\Music]
08/28/2011  05:35 PM    <JUNCTION>     My Pictures [C:\Users\heinkenszand\Pictures]
08/28/2011  05:35 PM    <JUNCTION>     My Videos [C:\Users\heinkenszand\Videos]
               0 File(s)              0 bytes
 Directory of C:\Users\Public\Documents
07/14/2009  12:08 AM    <JUNCTION>     My Music [C:\Users\Public\Music]
07/14/2009  12:08 AM    <JUNCTION>     My Pictures [C:\Users\Public\Pictures]
07/14/2009  12:08 AM    <JUNCTION>     My Videos [C:\Users\Public\Videos]
               0 File(s)              0 bytes
     Total Files Listed:
               0 File(s)              0 bytes
              49 Dir(s)  229,070,860,288 bytes free
 
========== Alternate Data Streams ==========
 
@Alternate Data Stream - 969 bytes -> C:\Users\heinkenszand\Desktop\Your VacationsMadeEasy_com Order Number 2300760.eml:OECustomProperty
 
< End of report >
 

 

 

 

 

OTL Extras Log

 

OTL Extras logfile created on: 7/12/2014 1:52:09 PM - Run 3
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\heinkenszand\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17207)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
 
3.60 Gb Total Physical Memory | 2.15 Gb Available Physical Memory | 59.78% Memory free
7.20 Gb Paging File | 5.80 Gb Available in Paging File | 80.53% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 254.14 Gb Total Space | 213.34 Gb Free Space | 83.94% Space Free | Partition Type: NTFS
Drive D: | 29.00 Gb Total Space | 27.17 Gb Free Space | 93.71% Space Free | Partition Type: NTFS
 
Computer Name: HEINKENSZAND-PC | User Name: heinkenszand | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
.url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
 
[HKEY_USERS\S-1-5-21-3106019205-2630701844-2044080187-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
 
========== Shell Spawning ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
 
========== Security Center Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 
========== System Restore Settings ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
 
========== Firewall Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
========== Authorized Applications List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
 
 
========== Vista Active Open Ports Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{037F5708-D403-44D7-A71A-DA2F632E0855}" = rport=137 | protocol=17 | dir=out | app=system | 
"{066BCC45-C403-493B-89BD-7D99AE77BCE3}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{0D969276-5B7E-41CB-B6B1-5404C1A59E78}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | 
"{1093C90F-A37F-4769-9812-DB27FF8E00F5}" = lport=138 | protocol=17 | dir=in | app=system | 
"{1D2FEA31-28BB-4E46-86B9-E948B8EAF135}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | 
"{1E20EA6B-6781-4595-B4DE-E1225EBE7644}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{2F6D6094-A831-4832-863B-0403905DC523}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{43978719-0297-47B3-8967-6291780E4975}" = lport=139 | protocol=6 | dir=in | app=system | 
"{4D3BD8E2-DF63-4679-8668-38444D702045}" = rport=10243 | protocol=6 | dir=out | app=system | 
"{552FD2DD-B3AC-47E5-BDDA-B21AC910BC84}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{6CB0F888-5BF0-4C91-BF92-D9BF476E4B65}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{72E844C5-3DA5-423B-8E61-6D1499F43960}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{796C5C2D-4ADB-4E41-BF50-5DE9C8EDD9E3}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{7B3294DE-ACC9-4918-A854-A5E0F3B314E0}" = rport=445 | protocol=6 | dir=out | app=system | 
"{7BD11C90-DC45-494F-9E80-A08CCFB270D7}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 | 
"{81F9912E-76D7-43F7-8326-2259225F215A}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | 
"{84E26B69-4C22-4BBB-A49D-6463CFE148AD}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{9556E42D-5541-4A8D-81B3-12004C563CF6}" = lport=445 | protocol=6 | dir=in | app=system | 
"{A4042767-AE0A-4970-8103-C3D9AD26AA03}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{A5D6A077-D34A-4F9D-97B0-BE38F37D6BB8}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{AC168622-DFA6-4CFE-BA97-B157398C49BA}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{BAE6AF8D-2C86-4615-B365-18DB5FA435B9}" = rport=138 | protocol=17 | dir=out | app=system | 
"{BB95B97F-2D6B-4430-91C8-87DCFF02A6FA}" = lport=137 | protocol=17 | dir=in | app=system | 
"{C68A0730-30D8-4053-BC17-3930806D7F08}" = lport=10243 | protocol=6 | dir=in | app=system | 
"{CC0ACF3E-DFE2-4039-9B9F-00F4181D2249}" = rport=139 | protocol=6 | dir=out | app=system | 
 
========== Vista Active Application Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0DF88D0E-845F-4E94-8559-AA32236001BF}" = protocol=6 | dir=out | app=system | 
"{0FA2DB9F-1698-4D18-9ABE-D436FF3FDC80}" = protocol=58 | dir=in | [email protected],-28545 | 
"{29AA0668-6D1A-4761-8389-996794E0E402}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe | 
"{2F34ACA6-792D-435D-9575-CE34D3125074}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{327E57BD-4665-4996-B55B-D8379BA0F62B}" = protocol=1 | dir=in | [email protected],-28543 | 
"{3B6FBDD2-94F8-4F11-A8CB-3E356A2606C2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{3D8D7279-8A78-4D5C-BB6C-2EB54B2354A1}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | 
"{49F861D9-FA8A-4DC2-8C12-EE82967D8ACD}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{4BD5B67E-83E1-4DE7-88F9-10DCFAA3160A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{53736AB6-C9B4-486A-9582-AD4137331AE8}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | 
"{5861B83C-A099-4582-A4EA-D5EBA6F49100}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{61A76813-131A-4716-AFF3-FBC7270366CC}" = protocol=58 | dir=out | [email protected],-28546 | 
"{6926A025-9FD8-4E23-B7CF-3621E8ABF601}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{76C58238-60A7-4A76-A20E-E556D19D20B1}" = protocol=1 | dir=out | [email protected],-28544 | 
"{849DE669-1A52-4906-A341-DCEC2C607457}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{93CB0587-33AA-4FA5-8750-D56C0BA66241}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe | 
"{9661401F-3177-490C-9D77-8934FC6CFB2B}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe | 
"{B04E2822-E980-45AC-B376-B2743F3F2C5F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{B5351895-CB89-4124-8829-AE44A4F046C8}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{B89B7FE3-0A97-485C-8DFA-62800457A4F8}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | 
"{BC125C1E-092B-494C-A15F-AE0BF2DDBC2F}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | 
"{C069973F-5C77-40C8-84FA-7B3BF9A4C7B5}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{D3BA0CF4-DFF2-4846-923D-08A316BDADB6}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{D3E088E6-BAD2-4343-A629-3B359A6D6ADA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{E1AFFC34-52AE-4154-B9AE-9DDF81049E94}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | 
"{F169E73E-A59A-4577-AE5C-59A36C5B675B}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
"{1F494B8A-D6E6-4540-9A74-F773B63164A6}" = Port Locker
"{238F81AA-71FA-9278-9D35-9EC4C8CC6687}" = WMV9/VC-1 Video Playback
"{37B907C1-EA3D-4894-EEBE-275CB0BF5BA2}" = ATI Catalyst Install Manager
"{46F4D124-20E5-4D12-BE52-EC177A7A4B42}" = Lenovo OneKey Recovery
"{4AE29B5C-87B1-3C4E-8E15-17B83BA745CB}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"{656DEEDE-F6AC-47CA-A568-A1B4E34B5760}" = Windows Live Remote Service Resources
"{68B6C1B8-98CD-E09F-4A29-DC25F16237EE}" = ccc-utility64
"{6D2C6A52-ED31-63B4-B516-AA354F4A150E}" = ATI AVIVO64 Codecs
"{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
"{847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}" = Windows Live Remote Client Resources
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A000F75A-A246-44A7-8079-9E9E7F9054B2}" = BioExcess
"{D07A61E5-A59C-433C-BCBD-22025FA2287B}" = Windows Live Language Selector
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client
"{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service
"{EF79C448-6946-4D71-8134-03407888C054}" = Shared C Run-time for x64
"{FBBC4667-2521-4E78-B1BD-8706F774549B}" = Best Buy pc app
"CCleaner" = CCleaner
"CNXT_AUDIO_HDA" = Conexant HD Audio
"EA12B1FB53CE4E387C31A85236C41EF559B5E392" = Windows Driver Package - Lenovo (ACPIVPC) System  (12/02/2010 6.1.0.1)
"Lenovo EE Boot Optimizer" = Lenovo EE Boot Optimizer
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"SynTPDeinstKey" = Synaptics Pointing Device Driver
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0034859F-8E01-4C1D-BE77-F891C4786FBC}" = Lenovo Security Suite
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"{027265AA-5ED8-8663-53AA-38619FD9A2BD}" = CCC Help German
"{097E024D-BE30-4D95-B5F3-B6AE9C1568D4}" = PowerXpressHybrid
"{0A1E0BDA-5E8F-436d-8BE5-7E97C5CB899D}" = Quicken 2012
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0D2E80C8-0875-43EB-9623-47118E2DFBCA}" = Quicken 2007
"{1363F067-AAF4-AFD1-756E-BC2A50A6997C}" = Catalyst Control Center Graphics Previews Common
"{18A8E78B-9EF2-496E-B310-BCD8E4C1DAB3}" = iSEEK AnswerWorks English Runtime
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1C3D2B0F-856E-2069-D018-BC99511BB7AC}" = ccc-core-static
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{212A7CC5-E705-CAA1-9E65-55D8E153FA47}" = CCC Help English
"{2902F983-B4C1-44BA-B85D-5C6D52E2C441}" = Windows Live Mesh ActiveX Control for Remote Connections
"{2B8AEEF8-8104-45E3-9A5C-521E8E6A6490}" = Bridge Baron 17
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{3419C87F-43A2-499C-ADF2-B4E240899BCC}" = Catalyst Control Center - Branding
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{35599D6A-B38F-553D-D0D4-58AC398C9EA8}" = CCC Help Polish
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"{44A03B6A-E353-4FA2-4D12-947165254092}" = CCC Help Danish
"{4A51D3DE-5815-0D92-2231-9F1DC242E9ED}" = CCC Help Swedish
"{544C85C8-505D-ECAC-ECEC-486158756AE9}" = CCC Help Greek
"{56106ADC-CF84-DC5E-408D-FAD9CE29F6C7}" = Catalyst Control Center Profiles Mobile
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{589E9BCA-A8BD-551F-FFAF-8E4F5B75C196}" = CCC Help Norwegian
"{5BD1AE89-E7BE-69F3-6D31-8F90845A9413}" = CCC Help Dutch
"{62BBB2F0-E220-4821-A564-730807D2C34D}" = Realtek USB 2.0 Reader Driver
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6D1FE242-58F5-748A-7641-6BED91A0BDAA}" = CCC Help French
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7AE842BA-98F7-5729-1B10-ACBBCEEF68AC}" = CCC Help Portuguese
"{808EC297-30DF-3B2B-E273-13397E9FF69D}" = CCC Help Japanese
"{80956555-A512-4190-9CAD-B000C36D6B6B}" = Windows Live Messenger
"{813FC66D-2482-F5DB-E791-3FCDBE0C7AA2}" = CCC Help Chinese Traditional
"{82CF7E86-682C-8BAE-68FB-D9B633D7D8D8}" = CCC Help Italian
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{89AF337E-DE2C-20ED-1C15-A067726C12D1}" = CCC Help Spanish
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}" = Ralink RT2860 Wireless LAN Card
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{93D00104-E942-D10A-E431-F617518E3736}" = CCC Help Thai
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{984C7AA8-FE38-55FB-AEB6-A42905ECE1E8}" = Catalyst Control Center Localization All
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh
"{A639DBAA-58B4-FB22-CCB3-BF79406D62A5}" = CCC Help Russian
"{A6FEE06D-C7E1-48CB-A9DF-1E317CF83CA4}" = Port Locker
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332}" = Lenovo EasyCamera
"{AE4167B0-F589-4D2A-BF05-E181D543C49F}" = ES603 WDM Driver
"{AE9C95EB-24E3-B5CE-83F5-3E903955ED28}" = CCC Help Czech
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{C136A1EA-6B13-9B2B-3BCC-99C455CE5B3D}" = CCC Help Korean
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{C9DC3F41-279B-7707-6108-294A8154D421}" = CCC Help Chinese Standard
"{CA64CE92-87F5-9D0C-ADCA-F023614F870A}" = CCC Help Hungarian
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D0956C11-0F60-43FE-99AD-524E833471BB}" = Energy Management
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E6CB67CC-71D2-46b9-8D43-A4641A9EECB2}" = BioExcess
"{E9733776-4259-55DE-FEA6-575235FC153A}" = CCC Help Turkish
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}" = UserGuide
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F88CBFB4-86E0-44F9-3D94-3A94670EA26C}" = CCC Help Finnish
"{FBBC4667-2521-4E78-B1BD-8706F774549B}" = Best Buy pc app
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"{FF32F536-E138-ABBF-D51D-3AC246B9FA8F}" = Catalyst Control Center InstallProxy
"Google Chrome" = Google Chrome
"InstallShield_{0034859F-8E01-4C1D-BE77-F891C4786FBC}" = Lenovo Security Suite
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}" = Lenovo OneKey Recovery
"InstallShield_{A6FEE06D-C7E1-48CB-A9DF-1E317CF83CA4}" = Port Locker
"InstallShield_{AE4167B0-F589-4D2A-BF05-E181D543C49F}" = EgisTec ES603 WDM Driver
"InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}" = Energy Management
"InstallShield_{E6CB67CC-71D2-46b9-8D43-A4641A9EECB2}" = BioExcess
"InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}" = UserGuide
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware version 2.0.2.1012
"MSC" = McAfee AntiVirus Plus
"WinLiveSuite" = Windows Live Essentials
 
========== Last 20 Event Log Errors ==========
 
[ Application Events ]
Error - 7/12/2014 10:27:17 AM | Computer Name = heinkenszand-PC | Source = WinMgmt | ID = 10
Description = 
 
Error - 7/12/2014 10:50:01 AM | Computer Name = heinkenszand-PC | Source = WinMgmt | ID = 10
Description = 
 
Error - 7/12/2014 11:52:47 AM | Computer Name = heinkenszand-PC | Source = WinMgmt | ID = 10
Description = 
 
Error - 7/12/2014 12:16:07 PM | Computer Name = heinkenszand-PC | Source = MsiInstaller | ID = 11719
Description = 
 
Error - 7/12/2014 12:16:37 PM | Computer Name = heinkenszand-PC | Source = WinMgmt | ID = 10
Description = 
 
Error - 7/12/2014 12:22:05 PM | Computer Name = heinkenszand-PC | Source = WinMgmt | ID = 10
Description = 
 
Error - 7/12/2014 12:27:28 PM | Computer Name = heinkenszand-PC | Source = WinMgmt | ID = 10
Description = 
 
Error - 7/12/2014 1:31:44 PM | Computer Name = heinkenszand-PC | Source = Application Hang | ID = 1002
Description = The program OTL.exe version 3.2.69.0 stopped interacting with Windows
 and was closed. To see if more information about the problem is available, check
 the problem history in the Action Center control panel.    Process ID: cd8    Start Time:
 01cf9df4ac0a8e57    Termination Time: 13    Application Path: C:\Users\heinkenszand\Desktop\OTL.exe
 
Report
 Id:   
 
[ System Events ]
Error - 7/12/2014 12:19:04 PM | Computer Name = heinkenszand-PC | Source = DCOM | ID = 10005
Description = 
 
Error - 7/12/2014 12:19:04 PM | Computer Name = heinkenszand-PC | Source = DCOM | ID = 10005
Description = 
 
Error - 7/12/2014 12:19:40 PM | Computer Name = heinkenszand-PC | Source = DCOM | ID = 10005
Description = 
 
Error - 7/12/2014 12:20:40 PM | Computer Name = heinkenszand-PC | Source = DCOM | ID = 10005
Description = 
 
Error - 7/12/2014 12:22:00 PM | Computer Name = heinkenszand-PC | Source = Service Control Manager | ID = 7009
Description = A timeout was reached (30000 milliseconds) while waiting for the EgisTec
 Ticket Service service to connect.
 
Error - 7/12/2014 12:22:00 PM | Computer Name = heinkenszand-PC | Source = Service Control Manager | ID = 7000
Description = The EgisTec Ticket Service service failed to start due to the following
 error:   %%1053
 
Error - 7/12/2014 12:22:00 PM | Computer Name = heinkenszand-PC | Source = Service Control Manager | ID = 7001
Description = The EgisTec Service service depends on the EgisTec Ticket Service 
service which failed to start because of the following error:   %%1053
 
Error - 7/12/2014 12:27:24 PM | Computer Name = heinkenszand-PC | Source = Service Control Manager | ID = 7009
Description = A timeout was reached (30000 milliseconds) while waiting for the EgisTec
 Ticket Service service to connect.
 
Error - 7/12/2014 12:27:24 PM | Computer Name = heinkenszand-PC | Source = Service Control Manager | ID = 7000
Description = The EgisTec Ticket Service service failed to start due to the following
 error:   %%1053
 
Error - 7/12/2014 12:27:24 PM | Computer Name = heinkenszand-PC | Source = Service Control Manager | ID = 7001
Description = The EgisTec Service service depends on the EgisTec Ticket Service 
service which failed to start because of the following error:   %%1053
 
 
< End of report >

  • 0

#6
Tuttle68

Tuttle68

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

Log files for AdwCleaner, JRT and ComboFix

 

AdwCleaner Log with the 'SCAN' Option

 

# AdwCleaner v3.215 - Report created 12/07/2014 at 08:48:27
# Updated 09/07/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : heinkenszand - HEINKENSZAND-PC
# Running from : C:\Users\heinkenszand\Desktop\AdwCleaner.exe
# Option : Scan
 
***** [ Services ] *****
 
Service Found : 70e6ca8c
 
***** [ Files / Folders ] *****
 
File Found : C:\Users\heinkenszand\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0.localstorage
File Found : C:\windows\System32\Tasks\UpdaterEX
File Found : C:\windows\Tasks\UpdaterEX.job
Folder Found : C:\ProgramData\Partner
Folder Found : C:\ProgramData\VisualBee
Folder Found : C:\ProgramData\WPM
Folder Found : C:\Users\heinkenszand\AppData\Local\Mobogenie
Folder Found : C:\Users\heinkenszand\AppData\LocalLow\Mysearchdial
Folder Found : C:\Users\heinkenszand\AppData\Roaming\UpdaterEX
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Data Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\optimi~1\optpro~1.dll
Data Found : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\OPTIMI~1\OPTPRO~2.DLL
Key Found : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Found : HKCU\Software\AppDataLow\Software\DynConIE
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Key Found : HKCU\Software\UpdaterEX
Key Found : HKCU\Software\visualbee
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Key Found : [x64] HKCU\Software\UpdaterEX
Key Found : [x64] HKCU\Software\visualbee
Key Found : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Found : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Found : HKLM\Software\aartemisSoftware
Key Found : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EC07A71C-DD98-1049-7918-9C31B4E389F8}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Found : HKLM\SOFTWARE\Classes\PNGcconvert.PNGcconvert
Key Found : HKLM\SOFTWARE\Classes\PNGcconvert.PNGcconvert.2.1
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EC07A71C-DD98-1049-7918-9C31B4E389F8}
Key Found : HKLM\Software\visualbee
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{EC07A71C-DD98-1049-7918-9C31B4E389F8}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{2830488C-079B-45C2-88B6-AFE4EAA2DF85}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Found : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
 
***** [ Browsers ] *****
 
-\\ Internet Explorer v11.0.9600.17207
 
Setting Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs] - hxxp://start.mysearchdial.com/?f=2&a=dnldstr&cd=2XzuyEtN2Y1L1Qzu0FtD0D0E0FtCyBtDyD0C0E0EyB0FtD0FtN0D0Tzu0SyBtDtAtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=879713133&ir=
 
-\\ Google Chrome v31.0.1650.57
 
[ File : C:\Users\heinkenszand\AppData\Local\Google\Chrome\User Data\Default\preferences ]
 
 
*************************
 
AdwCleaner[R0].txt - [4544 octets] - [12/07/2014 08:48:27]
 
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [4604 octets] ##########
 
 
AdwCleaner log with the 'CLEAN' option
 
# AdwCleaner v3.215 - Report created 12/07/2014 at 08:53:30
# Updated 09/07/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : heinkenszand - HEINKENSZAND-PC
# Running from : C:\Users\heinkenszand\Desktop\AdwCleaner.exe
# Option : Clean
 
***** [ Services ] *****
 
[#] Service Deleted : 70e6ca8c
 
***** [ Files / Folders ] *****
 
Folder Deleted : C:\ProgramData\Partner
Folder Deleted : C:\ProgramData\VisualBee
Folder Deleted : C:\ProgramData\WPM
Folder Deleted : C:\Users\heinkenszand\AppData\Local\Mobogenie
Folder Deleted : C:\Users\heinkenszand\AppData\LocalLow\Mysearchdial
Folder Deleted : C:\Users\heinkenszand\AppData\Roaming\UpdaterEX
File Deleted : C:\Users\heinkenszand\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0.localstorage
File Deleted : C:\windows\Tasks\UpdaterEX.job
File Deleted : C:\windows\System32\Tasks\UpdaterEX
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Key Deleted : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Classes\PNGcconvert.PNGcconvert
Key Deleted : HKLM\SOFTWARE\Classes\PNGcconvert.PNGcconvert.2.1
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EC07A71C-DD98-1049-7918-9C31B4E389F8}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EC07A71C-DD98-1049-7918-9C31B4E389F8}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{EC07A71C-DD98-1049-7918-9C31B4E389F8}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{2830488C-079B-45C2-88B6-AFE4EAA2DF85}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Key Deleted : HKCU\Software\UpdaterEX
Key Deleted : HKCU\Software\visualbee
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKCU\Software\AppDataLow\Software\DynConIE
Key Deleted : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\Software\aartemisSoftware
Key Deleted : HKLM\Software\visualbee
Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\optimi~1\optpro~1.dll
Data Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\OPTIMI~1\OPTPRO~2.DLL
 
***** [ Browsers ] *****
 
-\\ Internet Explorer v11.0.9600.17207
 
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs]
 
-\\ Google Chrome v31.0.1650.57
 
[ File : C:\Users\heinkenszand\AppData\Local\Google\Chrome\User Data\Default\preferences ]
 
 
*************************
 
AdwCleaner[R0].txt - [4740 octets] - [12/07/2014 08:48:27]
AdwCleaner[S0].txt - [4111 octets] - [12/07/2014 08:53:30]
 
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4171 octets] ##########
 
JRT Log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Premium x64
Ran by heinkenszand on Sat 07/12/2014 at  9:01:12.60
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
 
 
~~~ Registry Values
 
 
 
~~~ Registry Keys
 
 
 
~~~ Files
 
Successfully deleted: [File] "C:\users\default user\start menu\programs\startup\best buy pc app.lnk"
 
 
 
~~~ Folders
 
Successfully deleted: [Folder] "C:\ProgramData\best buy pc app"
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0043CEC5-FC8F-413C-A2E7-42CC235AAF32}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{004E126A-0338-4858-A680-7B435C4AAFCF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{00827424-5D65-4257-92DC-7D358F9C2B6A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{00CCB140-AE9E-4BFC-9A51-866FBF6B9C01}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{01100F5B-A487-4EB7-8A64-A078BDB3F5D9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{016ABBC3-389F-42D2-8C04-3DDD9813077D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0187A704-E2CC-43AE-8689-A65B06AF7636}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{01C64DA4-3292-4A64-8343-DD842DF3D9CA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{01CFBBDA-DAA8-404D-8C6B-24CDE1B0D6A5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{02016064-1405-4A80-8620-FAD1D66E496B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0205747F-9C03-49BC-963B-AD1B82767EC3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0224FD5F-0EDA-483F-B9C6-99DCA932B378}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{025ABC81-4BB8-493D-99D8-F46ED04836FA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{026D9623-4BC9-4BF4-8302-DD7CD5C36AE0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{02E91B1B-317E-4709-ABA2-A278C85DE19F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0302ACF4-6F15-4943-A0E5-ADC25EFABAF0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0316F0C9-EAAF-4999-A974-FD60332CC734}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{031E4089-A3A6-49DD-82CD-E523E8E321A5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{031FAEE3-0232-4A86-AD4F-599EC5BE956D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0334024B-829E-4691-B3A5-FA78519F79E2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{03AE6403-7CEC-4A3B-97C3-5AE9BF7065E4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{03BAE15D-1A62-4ABD-A138-3D62D5E8171C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{044B800C-1A3C-4C71-9B2F-045DF7937307}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{045AB5A7-80C5-4534-80A9-F539CA133E5A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0481FB9B-9D38-4730-BFC1-4B3482283562}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{04A00F9B-4E8E-4AE9-BF5E-A9AA3E1B37CF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{04B687E0-6ABE-47E3-B240-C0D510C448BF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{04BD35F6-824F-497C-BDFB-36C06AEF1F76}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{04C8281F-4EB3-463B-859D-FC101A031D79}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{04CF0816-6360-4EB9-8AE9-480CA25D5CAB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0548BDFC-8FFF-43EA-8303-56F55D1C649B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{056E2E9D-16D9-4D43-A0B2-59A0C8BAD559}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{058923B4-B4DE-4D8A-8A2B-4B69741E9363}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0593081C-FE2E-48FF-9260-39EF79E4A7C4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{05B1895E-693C-4F21-AE46-2B1ADEC98141}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{06104128-24B3-4DC7-AEC8-9EC032AC7A30}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{06135539-96E2-4E36-9A1A-F8CC49F68FF0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{062878D7-C4FF-4761-B7CB-ECA863D532BB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{063E50E9-DC8C-42FF-A0A0-F6AC5128DACF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{064EC97B-57CF-40BC-AFCD-5AB5853E7F74}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{06A16181-FF73-4BE4-A1FF-111CF50758C2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{06A4F0D9-FC8A-45BE-9FE4-06C57FE2E2C1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{073F9CA9-268E-4510-8BBE-33C21C416977}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{07533F9E-90C2-481C-8581-9DAF54D715C5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0762E892-E8F1-4268-B7F1-980A39EE5352}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0774D9B1-15EE-4CF5-9EB1-D4DCFD5F25BE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{079C7A0A-DE2C-4B7F-83DE-D9521AAF21E5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{07B34B1D-09F5-4EF5-9123-3434D7517E0B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{07FA2B8B-CE97-4323-B220-EFADA29B89E3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{08003196-441F-4AE3-ADE5-9DDAFC00F738}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{08093458-3D38-4869-8489-51294E47A8A6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{083FBF9B-4C20-4F10-B302-CCD6A1CA5964}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{084C10A9-C738-46CE-9805-A147E0FDD879}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{084C21FC-7E9D-4958-87B8-8C3E3CB9974C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0854186D-F13E-40FE-8A0D-6508F9DBFCA5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0856A6C2-2EDF-4671-9357-0EFA6210752F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{08596658-418B-42E9-AA17-4A46FF2279F7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0869D603-2CD1-4EFA-95A7-75C00E3A7EA6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{08919C3A-009E-4D93-99BC-0C63DAFBADD8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{08AC4345-DC4E-40DF-8842-39D312AAEB79}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{08B8EDAC-EAB5-4A87-AEDA-0187C086F12B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{08B9B015-DA97-4953-AFE8-665C142275DE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{08EF4ACF-DFC0-4DA8-807C-84685E679A87}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{09042E19-C667-4908-8B8C-EAB8CA392762}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{09115C6A-CB91-46D4-A884-0A217C698CCB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{091AC6C6-670E-474B-AA7F-4066EA75BC60}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{094EA1D6-7FA1-4BC3-83BA-3759DB551482}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{09556DD0-A03B-4ACF-BCCC-9B619AFB0761}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{09689571-67A2-4F75-BEB4-44ADBB787EA9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{09A6B070-02D8-4D4B-8319-675CE0D6223B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{09C48853-573E-4D6D-A4F3-EB5465267437}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{09E093B8-31AE-4936-981F-B355B48DEA38}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{09FA9FFD-223B-4F62-9ED1-F69DE788BB7F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{09FD885E-6645-4CB2-A7EB-B6A2EF45E4D1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0A3535EF-956B-4338-83D6-520A28A39710}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0A3E93AA-30DF-407B-8A55-B7941B8A0920}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0A7A79B5-29B3-4745-B959-71B260DEE36D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0AB448D4-659B-45D7-AD4E-186B60A6C1F9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0AF43355-A4C4-477B-B039-A714BB44D536}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0B0D99E2-1CDB-4670-851A-1A7EA0217FC6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0B12AB90-D027-4CD7-83CE-45FA66D01BAD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0B1D8278-86F8-4A27-BC21-445CB658ACA4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0B39E85D-F754-4F4C-B836-B0C0D90F80EB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0B8F16AA-5AE0-4698-86A5-0B7DF050A889}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0BB27E2D-4382-4961-B66E-9893F562A2B7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0BB2A8FE-43EE-45FC-AE26-D58D0CD26EFA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0BC30FC7-BD81-491C-A98D-85E71CB6FA9F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0BE1D7ED-642C-4EF2-84D5-57997516F782}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0BFE64C6-33A1-4C4E-B23C-0A193DCEEF08}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0C1E3A38-AB91-4F76-92B2-30FB5B7C3A3C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0C259E7D-CD14-416C-AFE8-0EF07855C0A3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0C61BAE8-28B6-4140-B703-FA46291E998E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0C7FEB82-B71F-4398-8D9D-80BF214045AB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0C806CE3-6016-4244-8A6D-50EECA7C5AB6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0C97039E-ACF4-419E-B4A6-A015746E8F62}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0D214C54-4935-4E00-B779-E3DFF953A42D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0D24A210-DA15-4D21-B684-124DFE7D101B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0DB1D4CC-BE0C-4B2B-989C-E713A22C1C57}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0DB796BB-337D-4D6B-9378-F2B7A530D6E0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0DBBD804-A14E-4096-9DBF-952DC3848AF8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0DE6D8BA-78CB-407C-BADE-9FA15B992638}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0DF5DB38-B391-4D92-B675-8502D59E11D7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0E03039A-C817-4D9C-BAFC-2C40FB6747F3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0E18830E-A8DC-4227-9A19-63DFA8441F33}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0E1FD047-95C9-4BB3-84D8-C819E6BA0231}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0E338A7A-B3E4-4C68-A35E-79B43F05253B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0E435134-E7BD-4886-9D83-9C3E31420067}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0E443A43-3778-4329-9A8D-BA086D0BDA6A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0E6AF97F-B908-4E50-99FD-073ED6F69D14}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0E71DDEB-512B-40A3-9EFC-AF92AF066140}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0EC84207-3C2B-450E-99AA-E9EFD85947AC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0ED0B620-D588-4219-B12D-15E8E41D6893}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0EE81F51-AB2A-4CEF-B40D-7E02860FFDED}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0F135283-1023-4182-9A4C-8243BF3AD62D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{0FEBE23F-9874-414C-BF02-DAED63B6B3EF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1040704D-AF28-4E78-BE83-426391814011}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{109E83C2-DD82-40F4-BDC3-7336D315AD61}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{10E4C8F5-A20D-4C19-A936-E35296E254B7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{10EAE729-827F-4A17-B926-B49329609ECC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{10EEBE77-BFB0-40D4-8BFE-AEA334472B34}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{10FFE579-BDE0-41C7-9A86-D46C9F16E67A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1111FF58-5470-48D9-A801-DA7B88DCEC28}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{114BB98B-3BF4-4E59-A34A-4946DEDC682C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{118C5021-4641-4334-BACE-000820BB78BF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{11AE8460-BFC4-41BE-8E89-91DC9331FCA5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{11FF659E-308B-4B2D-8ABC-780EFBC6CB23}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{123F305C-F04A-4782-8425-AA01B16D9F54}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{124791C2-4D52-4790-9428-7444182E0EE8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{12497C45-EE38-4BD5-A7F1-5F6CBE7F2C16}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{127C1D3C-410B-4B70-AB5A-04241BB5771E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{12F4F11F-2176-4197-B43F-6D226810ED41}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{12F6A66D-2542-49D9-BA24-DEC7C46F12E1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{13238477-AD44-4E9D-853A-0B72C25718AC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{13343A0E-581C-4A54-9333-3BC0893A4363}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{134F23B3-D384-4D6D-9672-BCF889D0CA54}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{135A4ABE-5CB7-4EAF-B280-AF9D8E0E63C1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{138029AF-ED60-440B-8C33-EBA9E208F617}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{13AC4D09-11A5-47DE-BF72-889949E7C34E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{13B5AA1C-3316-4D58-9C35-71317494A37B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{141621EB-657A-41BE-90F6-391443B61FD8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1428C023-7D05-4530-B3C5-EAA70C93961C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1436C996-7191-4C54-A107-8BB73239ED9E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{145270A1-8659-4647-A766-77F8D6D4902F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{14532033-AABF-4F67-8C1F-202176D3FC6C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{14637483-93B5-4258-8EBF-3F6B4F5D8064}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{14EC20C7-7549-4431-9EC9-9282CD867955}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{14FDF124-FB16-463E-AB81-D7E62A877CF1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{151472EA-A184-4A6B-8033-280C16C138A6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{153E2A12-1B21-4972-A2DB-797C6DC91835}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{15957A6A-AF75-4E1F-92AA-E25A18A40573}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{15AD0C1A-6677-4A1E-A1DA-19D5975D1FD3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{15B9D8E3-1C59-4CD3-A828-0A911C107D2C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1617F835-BC8C-44E5-8C14-E6D2A54C789A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{16624D21-901C-4266-87C6-C30CC14CDF28}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1691928F-BB07-415E-9992-800F61ECCCBB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{16A1FDD1-CAF2-4DC9-8B89-0B2DA74512D3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{16A25AE9-0E73-40C9-B27F-1034AB97A849}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{16B10D9E-3E4D-4C62-B90D-56663A7C207F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{16EA392B-1CA6-4935-B7AE-35352C7E0733}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{17101343-B593-4FD8-906B-530A85CAED55}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1725A1A5-D307-4BC3-B7B6-F7DFB51D0ADD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{176679BB-65AA-4A06-B5F6-4D51DB534D12}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{177B1671-ADCF-4098-8F30-18F0917F4E58}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{179582AD-3143-4B55-9752-11300A18C301}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{17A97C32-95E4-4F91-BA65-BDA05F533308}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{17BACE6A-3FDF-43CF-95E9-363A661C7D74}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{17DE067A-2A16-477A-8DD6-D00540DD6A69}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{182B7C1A-7A3E-4F43-BCC6-69F185631BA0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{185C7AA7-3F4D-4B4F-8F32-73741A455FA7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{18D613F4-764B-45B4-B3D5-5708B3CF89BB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{18E07F24-0610-4606-82D7-E2309A8B70BB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{19254C1D-53C1-4C92-9BF4-AB6CE28E96EC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{19595642-B269-4755-B10E-FD2FB2FEF22E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{19BFED78-F654-4BCC-B67C-254A155032BC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{19C4578D-4A0D-40FB-862B-9DEDCCDA9E29}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{19D191DC-2144-466D-8AA3-5D63A5F1BE64}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{19DC7C41-8B02-47DA-A31F-99B088DAE4E9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1A64BD37-2098-4649-8AC4-27904AC69C1F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1A6D176D-E834-4960-910A-7812637AF614}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1A6E6B82-5CF7-4A76-A7F1-1030BEA9C7D5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1A75CDAD-979D-4618-8607-907DB1885CB9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1AE9DD6C-7584-42CC-842A-BE02B5200B5D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1AF54DC3-19AA-4EFB-8C35-D28B16892E72}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1B001D9A-9298-4DB4-B144-9A783CCEB22F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1B3743EF-3B9F-432C-89FC-2747A0E33261}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1B442B13-2BB0-478D-A51F-765D2CA90926}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1B607EC2-4BCE-428D-AE99-AAF5035BB393}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1B91C3BE-1F74-47AA-B3AD-19C8C8AF2F83}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1B965BDB-3A3F-4A19-9388-8EDD7C9DAB99}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1C3106FD-6E01-4063-9136-789DB460E142}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1C339F13-416A-4559-9859-77DDC6CB97BF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1C49122B-57F9-4415-B3B2-4FF04BBB760F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1C60E2E8-99F1-44F4-8A85-455259B765DB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1C72C789-4255-4614-8680-62D90A07B6B2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1C9B7005-8F28-4EC3-BEB1-5829897AC6D6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1CAF8635-13BC-42BE-96C2-6FC98B5BF44D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1D0A0B0C-FCE2-403C-86D9-120023BC6230}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1D7E6D2E-11B6-4B71-BED1-C4567410EF54}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1D81CB53-9C62-4727-B2C7-3686127AFFA0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1D9842B7-9A39-40FB-A2D5-143D9CE8D35C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1DA6060C-3E39-4410-980B-6542D4845FA9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1DAC01B6-0C9E-43C8-894C-996429003E97}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1DC3ACB3-10C9-4EAB-B668-6AD0F1AAB5F9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1DD5DFF4-56BD-4282-8A5C-955FD348272A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1DDEDAA9-E095-4404-9AC2-EF4B182A969B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1E410C8A-C3A1-4248-BFCB-6E07849C7211}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1E7FB63C-94F3-4681-AF82-6C2A6D357835}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1EB6100C-4BF1-44F5-AC5A-61AE7E18D1B6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1EE254E0-027D-4243-A33E-6FA4C313E5DD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1F00CF30-35E2-40B4-A7A8-760DBD946769}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1F521C91-7355-4B8F-8613-941B0CCD83EF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1F867F6D-97D5-4812-B5EC-11CEFBEAEF81}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1FB28E41-D17B-4839-9D76-3CF17023ED01}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1FD6D2EF-1552-40A8-BCD7-D45609E0D6DC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{1FFBB740-800E-4648-820D-4A6592A79352}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{201A4A00-9785-4F2A-904E-090ED7F89C3C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{20208147-5CF4-4F4B-BD92-9F6856CB4A4C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{204AFB3C-FDC4-488F-B6F3-61A75170EBA8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{20B8372B-CB6D-417B-8066-D70098D50BBE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{20BDAD2C-545E-4F71-B5B3-FA5CA22246D9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{20BE113C-1A01-4EDF-8C40-778F9045EBA1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2106B33C-7074-4D7E-953B-5748D9A557EF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2164B841-7C74-4117-8208-F99DB93966FE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{21CFC387-A108-4B18-B092-CA715C9F1E27}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{22024B5C-97DF-419A-9606-2FB71A6FA05F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{22116A75-7DDB-4B94-880A-F737DD6F30EB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2211D120-DC53-4DEA-BDD1-346031A246B4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{222E88C9-508B-47A5-B85E-12F828DF04B9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{223B3526-7D96-4D0D-B710-FD36B09D6846}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{223C7C86-88B0-4F1F-8CDE-C9B0DF10CF1A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2245FA78-DC4A-4638-9114-CC9757AF7741}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{22A3C1DD-5115-4625-A426-10D0C6A28176}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{22B2B523-47F2-447D-9B4F-6DCD714C7D77}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{22BEA4E6-9953-417D-AEE3-9919506F0537}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{22FD8A27-C76B-4512-8E63-E9C333F83872}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{23021DD0-E704-4E5E-8224-E4563CB669C1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{235A977C-C31F-4653-8A9F-B13CAB346DED}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2361FFA6-4374-4476-B729-A3DC60D8070C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2373C397-AB4B-44BA-A182-D9953564D0A4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{23917E69-612D-4D45-8A25-497630559AA6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{23954BEE-1D32-4BEC-AEB4-EF7E7D53B148}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{23AACA36-6800-41C0-8F1C-2A2C061C204B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2404C7A4-628E-46E1-9BA1-41424B092CA1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2412408A-DF89-4457-8247-C9381FDD6FFF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2433634C-4301-40DD-8F5E-C38F97DB9C77}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2467236D-4404-43EF-90F3-8067DFDA37BF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{247B694A-207A-4192-BEA4-05CDE9B0E605}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{24A0DC41-60DC-4E6E-BEAE-669D09BA58B9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{24E9A494-D2DD-4027-AFAB-897C060AEB64}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2549AF28-3DA1-40A8-9B3F-5FE4F0405A43}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2557C9AC-309F-499A-9492-12A1B8C925D5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{256D2584-689E-47AD-9432-692524EB38A9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{25830EC9-82F2-4F6B-8815-81BAA8A591CE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{25860A15-DEB7-4A19-A947-79EE0D0C6A8A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2587663A-D31E-465A-A6E6-28A72C9A7B99}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{25DD5DBA-3262-4D61-9370-728CB7F8AB5A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{25EEABEF-9E1C-46B3-991A-942DA05916C4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{261C2686-18C6-46A3-B47C-39977B65FE4E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{264445D3-1F32-45D8-B002-1D3073A975DA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{26732550-F8D3-4B48-B6BF-EE572C53B8DF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{267568DB-5361-4296-BCFF-A9D78DC96822}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{26A1EFCC-642C-4E0B-9DE6-0E01C0A7D04C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2711A060-717A-4FC4-8FDD-AC658FE2BC9D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2725C328-8912-45E9-ADDD-CD96E191D04C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{273E3BCE-22A0-4C67-846F-F84F224730C1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{27838937-C87E-432C-92A5-81CC5824C530}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{27C85C6F-3B38-4481-AD71-BFB7592CE558}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{28294845-0F3E-496D-A7D7-1764818C4688}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{284DB2C1-0F7D-45E8-9F44-40BF7F4D9997}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{28715343-BC61-4710-9BD9-768393584DA1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{28F2DAB3-CA7F-4722-8AFE-3CC8E67BBD37}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{28F4EA6C-4A58-484D-B711-366CA430E86C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{28FCF505-4513-42BB-A292-712EE150461A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{28FE16C7-9207-4E94-AB08-D543CD190BD4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2935E71D-9387-41D7-847A-1AE918C84278}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{293CECB7-290F-49B3-A025-4227FCDA434E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{296F3155-85BA-4EDC-83EE-B3AC18CF1B9A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2974C178-5CCF-4850-8A2A-966E9B58E2E1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{29A52822-450E-4D96-AADE-BFF5EA6670E3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{29D08971-E246-43A3-9816-274C71A5A0BF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2A30726C-34EC-4332-BE1C-14C984299BF7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2A3D5924-52C4-4502-B326-345CAF3107FB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2A5BF5EB-73AB-4346-B53E-6F3B9E394D7A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2A8858CE-C7F1-447E-9EC3-1DC81B1E03C3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2A98A5F1-ECAC-41A6-A4CC-AD79116B96A9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2AA09540-304C-4330-AD7A-34298FCECCC7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2ACCD9E6-786D-4959-A0E4-F6E9B2135A8E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2B266169-B47C-4609-8D88-A474183CEA5E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2B43A6E4-B42B-468D-B0CB-6BA9E95A4E6B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2BA8C99A-3C3F-4C49-A871-4BE30F4B0952}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2BB78898-41E6-493A-923D-8B0D3BB84BAE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2C12D3E8-2B67-49E1-8800-3677B5B7FFB1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2C4452C3-1AB9-4FC6-8C05-4BD43211D0F7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2C57ED50-2990-46CE-97BB-F71B4AEACC31}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2D09C540-5963-4ED4-BA76-97CCBB0CC80D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2D11639E-0BA8-4E3D-BFC0-4676701DCA2D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2D764102-00D1-45F9-BE74-DBD8CCA9FAB7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2D928E33-AD38-4202-89A8-63D44556CBEC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2DA8C382-5DB4-49CD-9D92-AE7235C39F3A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2E58830A-33DB-4DC7-9998-24750BE73C63}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2E6F731D-3928-42A4-A379-83ABC239BB54}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2E7FCD0D-FA86-4F8B-A3A3-209A0779C983}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2E8474F8-ED8F-442B-82F2-A838A5D3243A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2ED4F100-50BB-46BB-B141-EC29E67E9DE2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2ED66CB0-23E3-4272-8FC7-3B56DC3DE9F8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2EE6468E-89CB-4F4E-9255-40212FB8F9A2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2EE9A76D-4B3E-4ABA-872B-F43BCEBFB010}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2EF68CCE-01E0-4067-8CAB-83E577D67181}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2F19231D-C784-4923-8B67-92EC2120A81E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2F2381BB-1CA4-4623-BB0F-418B0F9A410A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2F3AA389-180D-49E1-84A6-A0DD73D69789}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2F850D85-6DF0-46A5-9ED4-A35C30DD5343}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2F8D4E9D-0856-4518-85B6-6A6ED172C62C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2F9019BF-41D7-4A93-8296-394AD8FFE0C1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2F95162C-3BE7-4296-AA0B-3176C6388A26}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2FD80E6E-DEAF-41F6-934C-BC042DC84CEF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2FED5E6D-D8D5-40B6-A6B9-7D26C03E6EAA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{2FF6D2D9-FFEC-491A-9370-8196E28D7133}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3004E921-317B-43A4-9B99-60048F9DECFB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{30A9CCFB-2DA7-4EEB-9F61-CD6E1BB53F24}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{30FDDD6A-FE75-47E5-B087-B2EEB5486B90}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{31542512-560C-42D9-8F53-B128B6A13AE6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{316BA8A6-E8A5-4A7F-8AAD-B5B03C3D7F35}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{31995DFF-B4A0-4A4A-84B1-C0AA4280A8E2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{31B3C166-377D-4ED4-80F7-7CE692DBE229}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{31C842C4-2159-412A-B032-39FC0C073D17}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{31FA5D36-BF3E-4F79-AFBC-B2D28A5C5FDF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{32576D3C-87B0-4B55-BB68-5C59191AE4E0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{327FA083-4709-493C-BD39-4C514E9B0B0C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{32934316-61FF-41C8-88A5-D636FCBE441F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{329844AC-DADC-422F-B75B-560AA2B2E7D3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{32BE4E0C-F11A-4BFD-84A0-D443F52BA905}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{32D6E199-15B8-49E7-B852-8756751A1099}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{32DBBE03-F3F5-4EC0-A2A6-BA49F512F552}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{337A49F6-D0B4-41AB-93B0-6E5F2800E228}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3387FBB0-B561-4B7F-BF86-EA5BD410B2A7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{33B2F833-A246-416F-AE22-D27C6417569E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{34264AD4-573D-4E19-8042-E92B11B76793}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{342A2518-5559-4993-9C41-4C048D99D7BC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{343EA4BC-051D-4BA1-A710-697F56FAC572}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{34406561-8E58-4DC4-9EF9-B85D84885FCC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3467C150-159B-4F3D-AF15-67B7B9F9DBA6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{347C7661-82DB-478B-8557-341556893342}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{34821CFA-5D02-4F72-A68B-8DA7A56B489F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{348B822E-7C81-4058-8323-975315A0BB94}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3491B953-6DAF-49BA-8667-AB98B3AB41FD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{349CEB3A-9B71-4D74-9BC3-A5D8F071CCAC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{34A677F4-FCEC-4070-8D05-C0C09D5CA8C7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{34BDDCF2-3A3D-4FFC-B193-CBDD14751401}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{34F5A65F-A878-409D-9942-22FDD02B0E04}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{34F8B87F-5A82-482E-9BA6-ADC698AC706C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{350AC31E-88C4-4D89-B405-8A6606151E92}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{35170311-9F93-4FAF-8E78-DF27BEA5E7BA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{352585A6-DA34-41E7-A414-C1AF6B25524A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3554CFDB-9B16-4CAD-9518-ADFA7302BD07}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{358269C1-FE01-48F7-89D2-6B161859288A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3588DCBD-46A9-4CB6-BD8D-BDDAEAE75F21}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{35AA97D4-E31A-4173-BAF1-A9D16FC438A9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{35BBAC93-5545-40B5-8AD3-A59A66E21B55}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{35BE6C85-E26E-4EB5-98B5-06491F3AF423}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{35DD0173-46D7-43CC-8BC6-D6320914F0CC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{35E2D8EB-B5CA-4461-A684-591A96752C51}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{35FEDCF1-1C84-4CC7-8DCF-A586D66B4782}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{360AAF20-C654-4CB9-83F4-68903B189A2F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{36479E5E-5358-4350-B50D-5DA710CAB596}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3652087A-04E3-43E1-AFEC-DF447E66C8E0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{36683511-3B3B-4C0D-9E6D-463C266B3BB4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{36B250A0-A76F-4B4A-92DE-A99EEA0DBE5F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{36B3E4B9-2A0F-41C6-AF1C-A5DC17D54A4F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{373726ED-A279-4982-AF24-26E73ABD8C77}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{37496DFF-0CF0-49C9-8D3C-B3132BB8D2D4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{37902B3C-17E1-4E3C-B169-00313DF981C5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{379432A1-617D-458B-8C49-BC992813DCE7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{37AC4D14-2224-43BB-959A-A6DAD7393CC7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{37C1D5AA-2423-41C2-B5B5-13785A3F6E33}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{381261B4-DBF0-4808-AF3C-FC1513DC610F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{38275408-03A3-4B22-AD09-84CBDFF8680B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3837AFCB-1399-4737-9E17-ABF174B0565E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3880EE54-1FCB-4537-AC79-9905592D71AB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{38AD053C-F76D-493C-9B33-20121B252994}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{38C4ABDD-A2E9-4667-BC6A-2CA12E19E64F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3916065F-DEF5-4E6A-BAB5-DA30E4D23E82}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{397CD0EC-079D-42D7-B6C8-3015C69701F9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{39FCAE2A-3054-46D8-93D4-5DB6B9E97E27}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3A11D5ED-2B51-46C7-9901-12D70A9D308F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3A14456A-0FEA-46E8-BD0A-BC2560278CC5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3A1D7499-DC98-46FD-8FE0-D9FF9F62134A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3A56CBA1-D0EF-4531-8D49-EDD5717CA57C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3A786249-4B9F-46F9-9DC3-0A779524A80F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3A7ABA4A-41B7-4DA6-83B1-BC15269BD6C5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3A828A36-40A4-4296-9671-22C2A181F319}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3A9D7E44-A1EE-4D16-9203-9E1431999321}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3AAE98F4-D59E-4739-80A9-B461920D8ACE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3AEB36E6-7FD0-4DFE-934B-70E81272E185}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3AEF2B7D-DF6C-4C68-A69A-E3D3ED8E1E08}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3B522923-7C59-49F4-8CCC-C9D7036148A1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3B983331-6E6D-431D-8D3C-129B4F7C7E74}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3C39F6A5-0763-4706-A998-91565218E5D2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3C3BD6F1-510A-4A95-98AF-59F36052F377}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3C6FDD63-7A0D-4784-AE96-88918312ECE6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3C7DA5ED-0C29-4556-98E6-502838C49EEE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3CAEF744-9DED-4E9B-8D4D-2281323202C4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3D3E2AE2-D5DD-449E-8C79-C6504B36BCDC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3D671284-D600-4C6F-B79F-108E30A033B7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3DA0A611-D9D1-44AB-BDF0-43192CAC6CA7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3DAA0BF9-98C2-4791-8373-DDFA260E15A9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3DCF0244-BEAA-462C-9748-6140041EE0EB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3E357C35-FE37-4458-848C-236E81065187}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3E58C8E7-7974-4205-9D80-547852178D94}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3E6D39E6-B054-4E4C-BBC1-E5D545564D0F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3E773DC5-97F9-4242-B21E-106A9015C536}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3E8DB327-313A-48D3-A50E-CC0B55F4B105}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3E97B4BB-7D6E-4D73-8B75-3604CEDE41A8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3E9B620A-C583-4E00-BE21-8E74323D1139}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3ED28C33-9A1F-4B76-9E8A-6203C8D90C04}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3EE70334-0AE0-45D5-916C-B0398FD0CAE7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3EED5A9B-B7F4-4C1E-952B-BE4D4DF2B499}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3EF4A11F-33BF-432B-8F8B-025801E6F355}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3F1E8015-7ADC-4559-8571-FBFCCEDD4F06}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3F52A554-BA50-442D-95EE-9A8F385265F5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3F6642D9-815B-4F40-B577-73F1DA7A7BA3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3F74CDC1-632A-40CD-9423-96350F6D0322}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3F86ACC3-28AA-49D4-89C0-463ACAEFC378}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3FBB0947-B535-4189-BB14-3DB348C633DC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{3FE5225D-B574-417B-8243-464817113902}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{403F0CC3-79B1-406E-BCF7-BF4BE9F282DB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{408E31FB-F6BC-4D06-9ACF-8C019FD27D83}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{40B1576A-CC86-4F5F-BBC0-657154513B72}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{40B8674E-EC29-46E3-9C6F-38E7712ACE4B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{40CAE5C3-61B4-4B0B-99BA-9153C40FA5A4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{412182AC-43E6-4C03-8F77-73BFF40857F0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{412B328C-3D1A-4C2D-A7FB-91ABB5A95383}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{41EF6695-CDC0-4E02-B4E6-E305EDF7250D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4266C9DD-82C6-4488-A6CA-B8CF04D3C5C0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{429ABE3D-437B-43F6-9DF1-95CC07D66B6B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{42B3543E-E9A2-48C7-A6C7-7BB8A3A52DAE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{42DD23B4-1396-4098-8A3B-6C6C4D9E8640}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{42F5049B-7171-47D1-88D8-DAA1F84D7AB6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{435A2447-A139-47A4-B842-EC076EF976A0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4391214C-7E9D-4A33-B6C4-252CCAA49CD8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{43A85CEF-861E-4D42-85A5-B8C1EC834D4D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{43ECEFA1-C082-4E41-ABBE-84FBDF5A0B58}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{44125511-0131-4D8B-B836-237FF9B5D372}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{448C03E0-F3EF-42E0-B8A4-3CF32877CBDF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{44C24F19-9B23-4206-9DFF-3CDD66C9F145}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{44D42009-62EC-4481-BCA2-5A5E7B7DD67E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{44F9F6F5-4CB8-4B1E-87C2-C941762852AE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4531634A-F9B3-44A0-A435-440E9E701F92}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{455B5B48-63E9-4BE7-B285-78A7DB740A0A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{45733BAA-2342-49A4-921A-A3064CCD4B23}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{458DE590-8893-49A9-86E1-F4661846ECC2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{46219F0E-2D31-4301-90FD-21DAEEF74745}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{467F9404-2688-4BC9-8BDA-159F812C5639}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{46B2F85A-5B6E-4EC5-B59F-961879453038}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{46E423C8-E443-4BC8-96C9-48C7BEC50D3C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{46EC7E19-28FA-42D5-81F0-B8311B93F303}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{47350387-2660-4790-BBD3-2EA71D0E2F56}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{475EBAFE-5A0C-4C40-8BA5-2E8053C0D47B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4770EACF-591B-4B62-9225-4219D4A065C2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{47846D3A-1300-489B-B35A-5FB8FD5980F9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{479B750A-FAC3-4AA0-AA46-D43CF974BFB9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{47E0AC87-2022-49F1-AF3D-BA356E6D1D06}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{483365A3-3CAA-4380-A2C1-047B67E9B813}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{484D4806-AE05-4537-A89F-7AC08923C82A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{48A6717B-1890-4207-B946-B5DDE13D2931}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{48B664C0-34AA-43E6-8E18-8ABD9A0B383A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{48C756C5-DBCA-401D-A8EC-7BEF700E2515}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{48EBCC40-E7C8-4AE1-AB8D-57A1F0700593}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{490492DB-AD32-4608-B51C-E26F914E0B90}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{490B5701-5929-4FC6-816D-49FAC7D259DD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{49412D3F-D7DA-48BA-A33B-5C3BAA871E4E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{49424064-360D-4EA1-A072-3AC3F097AADB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{496B059F-03FA-4AF0-ABB8-E913F0769632}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4995FE4F-351C-4764-9B88-342ABC1DE5E5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{49EFFDB7-543E-496D-BD69-7F7FE5BE3EFC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4A18ECDE-D0FF-442C-BBA4-33CA68E86528}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4A5757D0-9933-47BC-BDAB-3527D76C667B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4A901E36-6567-4193-B85E-D680FBD576C8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4AC777A5-C4C3-4BEF-A977-755D9614BF98}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4ADC58FE-9986-4034-BE69-C542D41BD47A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4B2016D5-8A68-4EB4-A154-582AE820F2B3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4B463155-FE9A-4CD2-9E4B-B31376FF7219}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4B639537-E5FB-4F2E-9534-92F253002634}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4BAE02F0-4605-460A-B05C-4035C0F9CF85}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4BD78E3F-D9D2-47EE-BF6F-B0768F476C97}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4C1057D7-3C89-4413-B2C6-BC00E65CDB06}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4C38558B-984F-4408-A5FC-D22E2C10EBDB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4C4CE77D-D781-4DF2-8E2B-3EB66A45530D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4C7BFC84-5F15-4DEE-AC28-DB412C6B94FD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4C7CF502-6B54-4A9E-97DD-D09BA4BF9BDC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4C99826A-3A95-40F9-A792-04FCF37B771E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4D612258-C14F-4852-B03C-B743ECCA000F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4DE0A5CD-F396-4C1D-B893-3D1301FDF966}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4E6B3229-8FF2-4389-8A50-32DDFBAAE534}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4E837AF6-0D71-40B2-B4B8-4E24536F2195}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4E8CD236-78E7-453E-9FD1-08965288E4C4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4F01E8DE-CEA3-41D9-BAE5-8689B878A9DB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4F1ABCAE-56A2-4DB4-B254-8169B7D8E132}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4F2D3F25-B2CD-48AB-ABEE-60CE49F257E9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4F73328E-7656-444C-A366-7044D7FB93D4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4FB5E6B5-2946-4F80-A15E-BCD7C48289E9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4FC85456-D894-4438-B0ED-789E7DEC365E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{4FF83294-4D92-4429-A9A4-1027AB030749}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{500B23BA-2F12-4CD0-8ACA-5D9F6F55791A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{504221DA-B955-4AC8-A3FD-234B6AE7E3EF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5081797E-18F8-46DA-92DA-F3E140AD6339}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{50AD298E-625C-4F6B-912B-7811446C5F32}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{513030EA-19ED-461D-B533-E461436CAC62}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5134CB8F-7054-4647-8F93-275A3A5AF818}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5143426C-6B91-489E-A8DB-84CF9470CF42}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{51452AAF-45E1-41A5-B582-379A567689B1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{51568D22-678D-4505-8AB4-CBD7FEC21D5A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{516E1328-C6F8-46B1-A42B-5E87BF8B01FF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{51D215DF-EE71-4D99-B7C1-24CDD394B54B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{51D8FBDE-5185-45F3-BCC3-B5A55D2ACB70}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{51E6E4FB-89BE-4932-BCE7-8749B98E86F9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{51F24A74-3BE4-42F5-A340-A5E97C77D99C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5226889A-C0C5-495F-859F-8CEA9FE0EF0F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{522FCB58-BCAF-4132-A0BB-92718A9AAA59}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{524E3E47-18FB-48DE-8154-CDE39A7A640C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{526220C9-A04A-43A2-AFB1-3089AFC79B1D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{52A96E79-C2CA-41E2-B583-7A4605A14317}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{52AC2FE8-75CE-4ABD-870B-59ABC22567EF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{52B89179-9F73-42DC-8549-F1A61C239C6B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{52DBC27F-1F93-41C0-9709-D5E93BF6C4B0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{52EF0073-350A-4537-A048-8A782E9DFEBC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5306592B-694D-4AA7-9808-96E8224F0C1A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{53235734-AC71-437A-98A4-F34A8D4815BE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{53584739-BD56-402C-BCF6-A502FF52F107}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{537EC9B1-0D1C-4BE7-A19A-252FB00AE516}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{539BB0DF-ED2E-4E5D-A7A2-1818568E017C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{53A1B8CE-13BD-4E20-AF3D-90714E04A1F4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{53AB908F-B727-4BFA-9A5A-5F9828D19524}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{53BD645F-6D49-4625-86A5-A82B844548FC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5415C030-A5E8-4F7A-852B-43D4E2E84936}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{546B1B21-EA9A-425B-B230-A58FFF3D1975}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{547DD2DF-CA4B-45FF-9520-C5099FBD928A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{549C275C-0D15-432D-98BB-D111C4C30EA2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{54BE17B7-8E23-4795-B6AB-81DF20E0462F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{54D0E450-2B71-4EA0-B029-D5E650ADA91D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{54DB5A8B-28B6-4CE8-9699-2B1E3E9B4535}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5504B380-F89A-4F0E-9F4B-FE2317472E6A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5514BF04-9D01-4317-8C48-0A9D2852EF10}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5552AC1E-AACE-43D6-861F-12EBEDAFAFF9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{557071E3-5B35-4B58-A8C5-931FD25DFD65}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{558DDA86-A7E0-4589-9F90-BB8F569F4AC7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{55916662-5C0E-4B89-98C1-DD11809D49C0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{55C4463C-9AAC-4F61-BB7E-00B259522CE4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5638C972-A4C1-42D9-A244-D16F60FD42AF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{563DB688-A4D6-469E-A435-20841134C39B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5648DFA4-0420-41A7-BE77-E817E779180D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{564C6F87-E12D-4AC7-BCFB-3FB186FB2BD0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5661FA9F-075B-4468-B4AC-B5E786BEB2E0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5662CFC8-3783-4645-A315-54D2E6844D1E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{567E2470-03DF-44F4-81D4-0ED055A08CF0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{569DC4EE-03FA-4B15-977A-F7596904645D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{56B20734-71C9-4D9E-9F1E-081D5E81767F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{56B6F028-D3DF-4380-A312-7E56926D62CB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{56E11EE4-809B-4ABA-A190-8B13C59A649A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{56E788A2-242C-41EC-82F9-6F158308D209}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{56F3CB40-D098-4E79-8B66-759A52D64224}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{56F533F0-40CB-4B3B-913C-B714423D9337}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{57300CFB-FD79-4BAB-98DB-C6A921B9ACD6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{573DAD01-EEDA-436C-8E76-4372493F861D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{573F358F-3A2F-4230-B81C-E285CB275909}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{57BCFDDE-27FD-48AE-977B-3EA82ED02626}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{57C0C9CE-2F56-4C74-9EC8-6CE5618ABA67}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{57C336FF-8FE6-4748-807F-83BD269BE9F6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{581BDB77-CD96-4D04-9F31-8E3C5B34750F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{582DED06-1C02-4B5D-BEE8-A4E507314DF3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{58443DA4-B67C-4443-9517-2E6D38E92F9D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{58484955-683F-4A89-9758-F579ECF91E15}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{58B7DE3A-84C1-49D4-8313-1B8F92F3C97C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{58F8D72C-B673-471C-9C6C-0EDDD0FBF687}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{59384824-45EC-4017-8581-9A9D62B1E996}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5938D8B6-CDDF-42AF-B199-AB0A1D3880D7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{59A6D305-5E9C-4FE2-A560-D77AB738AF75}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5A050113-0AE7-47E8-A4E3-9799876A1A41}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5A28E20F-683F-4FB2-9CCC-47EA06677DD9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5ABADA0B-68C1-4483-8DE3-F6C84496F6E0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5AD3B0BF-3A8D-4EFA-8AEC-38C2BFDE7D34}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5AD5E4E8-7078-4B29-9553-7C65A40CB20A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5B5A68D8-4BA7-4A82-A446-A8B38D1B25D1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5B66776C-B110-47BB-A7FC-57C633E9C327}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5B93835B-3AB5-4182-9BD0-430132DD63C3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5BC92D4B-2E2E-4901-A358-F51705011764}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5BEB7C05-B834-47D9-8F17-AFE3E503A9B0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5BFD612D-31D9-4BAB-AEE1-9FE86657828D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5C88C0B8-D67F-4E69-8887-D497D05AB98E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5C8F1702-8A1A-46C4-90E7-5B9A87C86C3D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5C9E47EF-0D06-4FF8-A611-55AF44754139}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5CAB9EA6-25CA-4FF2-812E-4AA478D4D093}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5CE047AE-8AD3-4A89-B210-594FBBBB3DBC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5D1471B7-2D6E-4F99-8F19-EB714D16E9E3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5D33BC1A-46AF-4292-94E8-5E92388DC949}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5D748264-1CF4-457D-B9AD-CC3B5A4E2B8A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5D7C9E7D-1D49-43EC-BC77-086F95BB83AD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5D9F0191-89AE-403F-AB08-AB19E7793190}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5DA1A0D7-8250-40A9-9622-8D5947772FD7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5DE7CA4D-2E4C-4C08-925D-47AB6CD25C10}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5E2CE99F-0683-43D3-ACBD-14F3FB404702}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5E6F7BE9-1A64-425C-A405-2001349BD362}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5E95E1A5-0504-4D25-8058-D6CE4B87CCDC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5EBD7B04-B33C-4D59-A072-DB6B2B5F3A83}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5F052999-4B56-4C19-A633-7EAF1C38558C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5F06FCA8-41FD-4661-B544-9B4D4283F301}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5F0C6556-038F-43F5-9685-02FD0EC2ACAC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5F415475-1273-4D54-A69F-F5FC4C2AACAA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5F6BDD44-7C23-4476-89CB-77E84ED93682}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5FA0B7B4-8C09-4F68-B120-7AC7D3B203DA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{5FACE623-7DF9-4465-9944-95215A75A2A7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{60842B69-99A7-4FDD-A5D3-F68D590126B7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{608A8810-B60C-4020-9E74-C787AACA085D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6093AEFC-E963-4AB6-8ACA-57C7F3E16FA0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{60BB09B2-BD73-407D-B422-117B635DDEAE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6128DD3D-3B9D-4299-A97D-F108D6306DAD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6194B4C4-6B77-4393-99D8-1E7AB4273B0D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{61B74F50-E0F0-4090-9755-E767584E4B62}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{61E6C868-9453-483D-8A3F-872AE3058B2A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{61EBCFB0-2F83-499B-848D-7C61EDE2F2A5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{61FCAA1D-3035-4055-8354-FB93DB3739A6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{62AD64B2-FF08-4D87-BEC9-2EEE1924EE2F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{62B78CE6-4654-46D9-AA8F-86DEDCF21B27}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{62E4FAFF-22EC-430E-904E-D12D7D0B88C7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{62F498D6-64B4-40AA-844A-C42606C49AAC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{632836E3-B892-4BD0-9934-1E7C641EFD19}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{632E81FC-E4D1-4CC5-B600-26271F1B563C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{63702716-8191-40B9-AFF6-2CE6462F32BE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{63995D29-F650-4703-BB48-80FD694AF4B1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{64176EE2-9650-4380-97A4-544BE0391E6F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{641A1C99-59D4-4297-92C9-BB20BEF85F65}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{64203B10-FCFF-4C3A-9C43-87D70F2D352F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{643A4AA9-4AC4-4014-B1AB-A2130F884765}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{645CDF3D-9F28-4A16-B8E1-A891C96EB2B7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6461F2E2-030F-48E6-A1D4-291630EAE2D2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{64AFEB2C-0408-4CC7-BE2D-23A889A1C7E8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{64C2EBD9-1AA2-406D-B038-E0EB2A7C1111}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{64C70464-099E-42DF-BC46-7A080168B32D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{64D721ED-CB07-4D1D-97D5-0655B0C6A1F8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{64EA86AD-5CEA-46E4-B3C9-615C34DFBDF0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{653182E1-14D8-4BD7-984E-3D2E5DDA6C20}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{653E2973-2B16-46EF-8C34-234F27F97DEA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{653E5890-518E-4ACE-A650-F32126D56892}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{653E77EA-CFD2-47BD-A4CE-9EFA48CA6D91}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{654676BD-9B51-4D9B-A2E3-A435E9121D9E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6573C123-2D37-43AF-9F8E-5912E323897A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6576A5E1-3104-48F3-9C78-20AA2D014516}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{658DE67B-3DC7-4033-9FC8-2067200FC41D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{65A5D727-A444-438C-AC4A-BE4A1540B0B8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{65D0B694-B049-463A-BFC5-5FAD7C60A731}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{66022046-10BB-4604-9A84-56DBCF8B9F6F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{660A208B-E265-4F42-A847-5946EEA80401}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{661AD6DE-F5A1-4170-B47C-B891EE6702DF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{662AE24E-EAC1-47AC-BDEF-129F1C5176A8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{663E2757-E940-4267-9E66-DDCD9A74E2C5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{665EDA51-2F8C-4145-A99F-E20D501FA8B7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{66603162-677D-4575-AE53-76917BB58A6A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{666C5D1B-30FC-4536-9493-BF9C4141A11F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{66C00933-4BAB-4869-9954-8A82AF21DBDE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{671E5F96-4CEB-42DF-A833-85A542A37FE9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{67215B67-F2A5-4DF9-9DAC-00398FF88D7D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6723F9B0-D62D-49B2-9ED8-CAFB883E78A7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6738A2B7-1E87-4820-BF77-9F9538EF5C54}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{673B05F8-147C-4966-98B4-D19F41BC1D68}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{676FF0F3-8CAD-4312-B024-9F7FA0A91530}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{67D14A77-611A-48B2-8154-1D02EE2D2E9C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{67EC28A0-629B-466B-949C-101F48B3D292}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{67F5338E-0761-44C3-9209-B1365A3E2869}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{67F6ACE6-A486-41ED-A971-F18639A07E60}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6850FEB1-A9C9-4A02-A0F4-F980D6FC2F26}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{68576700-EA32-403B-9DFC-131FAED01F77}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6872FEED-ACB2-4712-8FB8-EA4ABD8B11F7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{68A7DD2F-88C6-470C-B8D4-912D1E3C7EDF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{68E876A0-8D00-4E13-9E75-B9D1BC6D68ED}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{690BCCF6-6319-4568-95AD-0D2AC5151CD0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6927F34C-606E-4C6C-ABD9-DD275E9A1CAD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{693DC766-0B6C-4A74-A366-10C05E5CE9B7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{693EEE18-8F5C-4C26-96C1-A47EB6F5CA6B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{694AF41F-E6A8-47AE-844A-40095F011DE9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{695CB773-B863-4D77-8B18-50DDB874486D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{69737C32-36E9-4349-AC2C-084D7CCC472C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{69F8DF6A-7374-4008-B5E1-2F4303978490}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6A0ABC74-6250-4367-8A94-7AD9AAE3FBAB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6A30F3B0-0B04-4A32-963B-6FDF1159F16C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6A3BD456-7BB9-437F-A3A7-6F2929E48D59}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6A3E59CF-09A9-4145-8C2C-ACA52A6C847B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6A4CE8A5-1EF1-4BD9-860C-1DE2731AF8A4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6A825B07-AC61-475B-BC9E-4275756E73E7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6A86C1C1-F06B-479C-B0CC-6ED84AC822C5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6A9D2078-81D3-43B4-B66F-E4927333F9F6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6AB01630-D5D1-4957-A266-113DE6E498CF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6ABF521D-16F4-4E75-883D-B2290E2171AE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6ACBB4CA-415E-4E84-BD6A-44D9B35FCA43}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6AE06757-5AC4-4CBE-870B-26D6CCD95EB9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6AF41168-E98D-429B-B9F4-D8A57AE36AE0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6B1F206F-EAA1-465F-9576-E80DDEAFD8B9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6B2B149C-CCC3-4EC3-A6E5-74DBBAACE838}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6B6562A0-AF28-4205-A014-F6B2C39E9ECC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6B69A77F-3877-4B12-BADA-83F873128661}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6B8B025E-5BC4-4209-A6B6-FC49D66B2A86}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6C036425-C421-4EA4-A4B6-4FD0FDF9E95E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6C752DFE-8395-4371-B1D1-06057C4CB787}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6C803472-7004-46DC-8BFC-F1A05EADD253}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6C9A9F5C-2A82-4F3E-B09C-43FC8A9CF4E1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6CA67376-776E-468F-AD3F-C633BA7C88AD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6CBEE50B-6540-4ED4-9ACC-A824DD4B93F0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6CC3F846-88B0-4B12-8A13-45ECA0C0A6CC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6CC406D3-F32A-42FC-B313-D96F6707D792}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6D734F3E-73DE-48D3-BD18-90B6C5FB8339}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6DEF1110-956F-43FF-8613-A65B0ADA82DB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6DF9E8E4-6EC0-4452-853C-C33B335C40E6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6E28E0E0-C413-44B1-969F-EC73BFE8A600}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6E484DF3-47C6-4B1E-AAE5-E56D7B088E7A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6E9ACFB7-2759-462D-B8EE-72F3FFFDBA3C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6EBA357D-75D9-4C19-856D-18168A84F7DE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6ED0F939-C079-4D04-91C1-A02CE807F935}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6EFB25AE-2AE5-4605-9B52-762B4D89BA44}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6FA18B8F-F7E1-406C-9FF4-C5EDB219E4CF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6FC609AB-05B2-4C28-B21A-E8D41EC516E3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{6FDAF633-DF00-4F15-91B5-0DD7292A022C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{707BBBAB-E0FE-4721-A19F-B50B2D822D85}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7094D5B5-7DEE-4030-8199-CEE4553AAE5D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{709E381D-C1F7-4451-845D-091DF6088525}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{70C41CCD-CF2D-4842-B601-2FCF2E5FCAC1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{712A9271-E042-4008-BF72-21DF7233AA6B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{718D2493-7308-48EF-AEC2-D727D2B5F53F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{71B64930-2353-4238-9B77-2CD2A4ADB11C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{729D0B8C-BACF-460A-9C59-C685B813580B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7329F713-DB0B-40DF-96CC-0CA2E2CA6209}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{73CB3989-93C6-4DD2-BC1D-60E09347F796}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{73D47605-7D94-4C9A-B971-F0E13C696E72}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{741241FD-8F31-4FE7-8DA6-56B78556A3F8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7436D5A6-13A7-4237-B14D-6865A7FDCAF8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{74501D15-40EF-4931-AABC-2279F8B0A9DF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{74A9989A-97BF-487B-AF19-AA1A0F69D2B2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{74AC0509-2FD7-4F30-ACC0-B72B6787D7F2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{74B7EBE2-B21D-4597-A4F2-CB5447AED0F1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{74FEF4E3-CDC9-4136-B58C-52255811B2A2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{75A1D18D-335C-404E-A4B0-7C98E39EAA3E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{75C5039F-BF22-431B-A33E-9411E0AD81E4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{75CDEFBC-0A07-44C5-9D1B-5FB89118B803}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{75ED5E49-4251-405A-816E-D488894787DD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{76253009-5C63-4742-85B8-09FAA3B74B5A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{76827959-B7DB-4AC5-A5FA-CF436A5CD5B2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{76861DD0-0F2F-4E38-88D0-8071A5DC4CF8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{769776D2-5A41-4B3C-A573-14260CF91D5C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{76B3ED97-4F4C-437A-A336-DFB10C70D89C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{774428FC-648B-4E2F-B34F-B4540A19D037}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{77A5CFA8-DAC5-4CB7-8577-C40420B07AD6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{77D8B3B1-31DA-4FB1-8930-25CCC9F13B33}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{77E604A3-BEC3-400D-A14D-B78E7149F992}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{781210AA-016B-4810-A8C7-5788F6B4FEE6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7838671D-7C2C-4CE3-A39A-3EDE89440E4D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7885144E-7961-4D8B-8DDF-0DB0CB24159C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{789399E7-1D73-437D-A405-A615006C1C55}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{78A4C0D2-B239-44AA-8461-6E6E22780C0E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{79B9C408-4849-4432-A911-BBC001BABC3D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{79BD4A46-A140-4E3A-85C2-F51C9B9C56E3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{79EBBFC1-05A3-4C26-9DF3-1C36A11DA00C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7A1D7FBB-DABD-4F5C-80F2-EE0B9163CA3C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7A490D34-6A0A-42BC-B907-D62E9F43339F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7A5F0883-C34B-4A93-8C1A-EC9CCB123202}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7A912087-627F-466B-8A99-16EBD7E21BEB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7AAA1847-DA93-4617-B629-96C481C5EF84}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7ABFE063-54CE-4531-9BFA-5D8FCE11E0A4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7ADBB8DA-7480-48F7-9DEA-E5C6D7607ED9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7B2B2550-0617-4714-AB8C-FF7B3D32AEF6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7B336C8C-7B54-4D34-AAFE-368F19E2C14E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7B545C95-BE53-4AF3-BF17-BC5B1DF65233}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7B5EA563-78D3-4CF9-AC97-E4ABE994C430}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7BA0140B-6F4D-499E-B94A-90B0D151D95D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7BBDEBE3-07FC-4E54-B124-0E29229E5690}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7BC56349-C534-42F1-9203-2EBAB58B0ADC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7BE2D67B-3109-40CE-8519-7B36DC369FF9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7BED35C4-506C-43ED-A7F8-8CA5E3A6AB2A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7BF52BAA-CAB0-485F-AA26-84E2BD06332A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7BF6A966-D8FB-4893-9BE1-D48E792AA9AD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7C091FAF-7C7F-4A98-8E0F-9EC53571EE30}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7C47B14E-B920-4649-92A6-16A725C4EA98}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7CC5657B-A3BA-4B2C-AF96-258D430AEEB7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7CC5F372-CE68-4986-874F-D0417C2EEAB9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7CCC64A0-6837-443C-9ECD-823A4FA21635}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7CD83B5B-AFF6-4C93-87C2-8853B83AA395}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7CF11374-C9D3-4FA1-A2FB-0D8C9C704737}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7D120046-DF29-4912-BFFE-D08BB4729D5B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7D7A8490-FD70-453D-BF7A-E01A9DB43C13}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7D85D6CA-297E-4D6F-9D7E-1B5F26100ADF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7D95D6F3-0A57-4EC1-BED1-B41D1C2DD27D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7D9C3DD2-245C-4926-820E-4E401B4A5A4A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7DA52CF1-942A-4031-9D04-F1ED48B3AD9F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7DBC1964-B76A-49CE-A2D3-DBE32A1A7ECF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7DC3DF8A-50BB-41CF-8B36-AD9457348919}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7DE74522-7BBD-4BE8-8E60-07254CAFF76F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7DFFCAF9-F9A3-4E35-9DCA-BDA7E6669FEE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7E757E1C-EB94-427F-B6EB-97FF3C6C96B0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7EC4CCF2-C6C4-4FB7-AA84-A086AEF37710}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7ED2F245-32F3-40E1-A8E3-2922A081FA47}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7F267A73-152B-4AD7-BFE7-5CD2FE6A47DD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7F4B45D8-0A6C-450B-8B63-9C3EAAA4E09D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{7FDCEE98-CEB9-4D44-8758-DEA68FE20C6C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{801D1F9E-7293-4149-8456-8853253A4631}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8026A86E-D06A-44E1-B7ED-D81CE7CDA68C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{80B01E99-4479-40F2-B160-454AB67D7718}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{80B1F14A-9830-4E08-8B2E-DB9D896088F1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{80E5CF64-1F4C-43EF-97B8-627D3FCDD974}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{80F2936B-3F99-400E-A22E-C9F3E464742F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8148D342-4901-442F-A286-780FE63E422A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{81502635-DF02-47A9-B1C3-B26E460EE8BE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{818DEDDD-A5CD-4199-A1B6-39124407692F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{81C6BCBC-F3CF-451E-90C6-47A18BE58248}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8206B11A-9E2A-4C5D-8826-53F0DF559BE0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{820B57B5-4191-4F82-A908-33B70FF1A459}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8213592A-1A00-45BE-96B2-497F03BCA550}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{821B4BA5-D49E-4330-8075-80505629C73D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{824DF0A4-0E8B-4867-9CD9-923B1FA3DD35}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{82BEDFBC-1F70-4547-8BEA-E2C88A24989E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{82EB2A95-A4AC-4A91-8A07-FCA33A5A5B66}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{82F90399-D897-482B-AE3E-6B62C840A33B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{830F54D1-0832-4502-8373-08CADCEC6276}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{831B0A2B-0747-4F7B-9449-60B886F56128}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{831FA1B2-BA1C-45B4-A0BF-D6F0E5ED8647}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{834D3B42-8055-41F4-B6D1-34D272EB80B6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{837A45EC-930A-4568-A2C0-28F50514CE7E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{83803E15-A93B-46E1-B5FB-4BF8B128B7AB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{838583F1-22B4-44F8-A00A-BA1BEFFFC234}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{838D9669-3043-406A-84A5-C2D179FD14C5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{83A43174-EF47-4431-A0D4-CC7002B5AF72}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{83A5E785-3970-496B-B83E-F3E1185D50FC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8409D372-174D-4F25-AAE7-45A922657616}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{84A25B54-D676-4CB2-89FB-71BE30248837}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{84BA0D93-EB91-43D7-BD7C-9BC889615C35}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{84F8C99B-C8FF-45EE-B806-A4AAD8276B63}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{84F9BC8F-6EDF-4A45-A6B7-A292E102152B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{853D64E0-6813-4FCB-9154-9958493BA8D7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{853FD216-BDB6-4A54-AEC1-39E1FC2DA376}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{85B7E3E0-50F1-4A6F-BEF8-2F209943AFBE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{85B86E07-9098-4A77-8415-E0CC063B6328}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{85D6A9B4-3754-49D1-AEC7-7CF5609B139A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{86170064-A3E3-4508-BB8C-E3C860F49E19}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{864FE997-9C6A-488B-AF42-D8BAA0F52C08}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{86F1DCE7-0FF1-49B3-9092-20B43E76A885}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{871DDC67-C909-4AE3-867C-BA9F7FEB6498}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{875A8AFB-604C-4C67-AC59-6F19DA971DF2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{877D870B-6117-48F2-83AB-6499E2A0A5D1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{87D0E719-AA62-4F1F-9B22-ED64F9DFDF9A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{88258832-7A85-4218-842E-8002C9E3A265}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8898EF30-C82D-4CE9-87D2-D5037423991E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{88A11BB9-E6CE-4A43-980B-4D6FA82FC3BF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{88B0E819-0321-445F-B4B7-FCF648310782}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{88E14255-247A-41DC-A43A-1C419A73F6E4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{88F00242-9737-4B02-ADA5-64555D984895}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{88FBA625-4066-4AE4-959B-43337846765D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{89192FAF-FE4B-4359-A9FC-ACE3D0598F95}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{89289775-8401-4B39-953C-6322019A3B63}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{893E6E57-3D3E-4859-A642-12BAB193D93E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{894B3DB1-0F1E-4BCF-B375-0084BEFE6408}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{898F7F67-35F3-4DF5-A384-E28C1AECE48F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{89C95D50-D471-425B-8FAE-D9D8B3F7BE57}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{89F5DE3F-BD1E-42A1-8183-6A2BFFD89A60}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8A0A585C-9719-4620-888A-26679C9190F0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8A1274C7-068D-4130-9B92-2AAC34E7CA4A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8A15028B-03F2-4AC6-83CD-D9F863D0B947}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8A1627FA-CD91-4CF6-BFF7-9AF8CB6E4D24}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8A471D51-DA82-43BB-84B6-68EA97960068}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8A675AFA-D8C1-42D0-A164-3D341F216AC5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8A79A9E3-01ED-4888-B4EF-6E571BB177BB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8A825A74-60F3-4E45-A029-B3150483F5E7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8A9FCB5E-B4B0-4DD5-8EF4-93FF5944B727}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8AC0B133-00B0-46F3-BA00-4BD7DA88ED7C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8AD15D96-6D1B-4854-86C5-B01625510823}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8AD67FED-768B-4026-9EF5-A5DE99B855E8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8ADC9C7A-445D-4F3D-8E35-447660096B0B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8AF3AF8F-7373-4222-BBF3-068FD1F0207E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8AF569CA-31D4-49B3-8EF9-F74791F7319E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8AFFCDB5-30BA-4E1B-B580-927D53994299}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8B0E916F-018B-4E55-B916-68BC09679A15}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8B55F24E-BEB4-4081-9C52-F5D12EA0C95C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8B852C78-851A-4BD8-A764-AE7495131083}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8BAB6914-6E69-4AE7-AE2A-D0DEDD9FA991}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8BCA3FCA-2782-4703-97CE-D54D95A524B6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8BD032FB-5683-47BF-8661-35B3C73FD9BA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8BE4E8DA-8D9E-4DF7-8F69-7067DACF3129}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8BE9815E-AA71-4D6B-82C7-928941D0E368}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8C022E26-02DE-43EF-87FB-DA9103464A3C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8C406DCF-1B3E-4BBD-A709-D37E449AB1A1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8C67342E-9E31-46F1-8B16-C19074E10E2D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8C6EEE39-F174-4B96-944F-5535164016F8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8CCDE47C-109F-4D4E-B038-2D40BEDA8881}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8D71E8D6-58EE-4998-B36B-4D4A04C14A51}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8DAB7F57-050C-45BB-8248-3412B7D62887}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8DD0E83B-24D1-4C0A-9CFF-FAC9F2EF36D2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8DE953EB-F982-47BC-A2DA-9E91720061BC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8E4B055F-F65B-4012-A1BB-5B4D287AEEF5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8E87BB3F-AE4B-40AE-8179-45BB213C6B11}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8EA7DED6-446E-4FEA-899A-156E706CB6E7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8EC763AC-A8B6-4170-857F-4DC35993E464}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8EE0076F-7653-4A7C-A07B-D8F61D63B0A7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8EFCCEDE-C9DE-4897-ABB9-31B935CF59E2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8F835450-41E6-43D1-BEC7-93A4FCFEBB61}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8F97B45D-005C-423A-9584-55C250B182D3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8FCEEE5E-078D-4293-987E-BFE569F69DE4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8FED1F53-E506-4C38-8C38-0426668C15D4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8FF64DA2-C9AE-401C-89B8-C639F33981F4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8FF932EA-58D9-4682-ACF2-97254A18DB11}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{8FFEECE0-A7EE-4E2A-A355-1B8E9E2D71C0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9063BEBF-1EC7-4D12-BAAA-D6FFF32BBF39}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{90710C51-4BD4-46C6-B56B-68435851A17A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{90957CE9-84ED-4752-9964-86DF24C929E3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{90CA6B41-BE89-40BF-8774-ACE59F4D1F9C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{90EB8960-40FD-4BC6-B7B8-0D154E51F8C0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{914415B0-271B-4FA6-BF23-42BF9229CE5C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9185BBDE-CB39-4B03-9DA2-6A4B7DE332E5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{919AD4DB-BFFB-441E-83CC-78666FC75CFF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{91A5B0A7-87BC-416D-B219-27538C004F56}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{91AD1964-2A2E-43C5-BD5D-06003790907F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9234BA02-1BAE-48BC-A4D5-D2FAF7EFECDB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{92420332-7779-4FCC-BFC1-249691E2D067}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{925ABA45-C62B-4E38-987E-08F41CDB0C2C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{92808DD9-D0D5-4886-AC22-464B5AD317B1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{92D4FB13-BBAA-4C5C-BC4A-C534A74665A2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{92DB59EB-F7C7-4EC9-AD3D-671F8B5D3963}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{92E1530E-B620-4F24-80A5-9CAE74C0B725}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{93159B50-ACE0-46B8-B069-44813D30A440}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{934ACD1B-8FCF-4996-BF7E-389A60EF59FA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9363B492-C8D7-4C92-A033-AE5588A303FF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{936F2EAB-CF1E-4B45-B7CE-223752C36874}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{93943C63-47AE-41A9-A923-FA564F9CDDD9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{93CAFEF8-D6D0-4948-B8A6-71728F5AFC69}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9445A49D-7DF8-43F0-B4F3-F35BF82A15E9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{94522F5E-D415-4F47-BB77-BAAD60F3BC8F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9489C03D-BC1A-45EF-82B0-FF9394BDE837}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{948BD342-0992-47E4-BFBF-97FE34DF6990}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{949FFC94-4C7E-4829-B134-B7AD5FBA1DC8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{94B79A18-CD29-4DCF-B6D9-A5D266F79CFA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{94ECEF21-210D-4C97-8074-7514FFB3E821}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{95024F99-26D0-4171-8F45-4B0F4E17490D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{959CE09B-C1AD-4DA0-8A57-6EC4643A4964}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{95A716BF-AE08-4484-A340-BCA1C06EA00D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{95DBD479-AD41-4EA0-87E3-EAE69867D5F3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{95F8DCD3-0569-497F-8DC1-3FC7BC7713C9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{95FD4F15-B120-48B8-B120-C9013E86BEF8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{965F5A91-E0E0-47C8-96B9-E4F83C0EF1A0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9662D09A-8578-47B4-97D5-A01C542873EA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{967FDE85-6B1C-41AA-967A-F11B5F4FB7F7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9680FD43-B0DD-4873-8E30-47A0549DDFCC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{96B3B990-EC3C-4050-BA00-AE220F5DD587}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{96B7DBBB-AED1-4093-A574-F448AD27231C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{96E8DD13-D7B7-466C-B1FF-4CB9D73A137D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{96F7DB02-C46C-4C79-9549-96FE11B59414}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9774CF5B-6C0F-4DF5-B814-C007535C137D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{97FFB065-D618-4FA6-A443-F7C5845A132D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{980011A5-8D4C-4D29-A597-A9EDD42314BC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{98163968-ABE8-46F1-9281-6722F8C51BB1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9890C3F6-34F6-4393-8B10-C1232E21A8D2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{98D43226-7A8F-4C04-B0AA-E143E2E5AEAF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{99C49E89-D6C7-46B7-9E20-0D3308C208FD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{99E46207-694D-440B-BB11-C10FDA902308}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{99F7584B-B89E-4F38-A2DE-739646263F49}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9A6DE960-4D65-484C-95C4-192A977562D7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9A7169F8-C622-47B7-A25F-DC5D74469CF1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9A836A17-8E06-48AD-9618-BB8037B3CA37}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9A894175-0E76-4028-BFB2-95BB6850A028}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9AA1FEBA-D651-4759-8161-CD14BCA4D255}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9B302085-6D2A-40D6-9E14-B213701E2BEA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9B329377-55FA-4002-8BB2-2C81D3F993D2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9B3507DC-BEEE-4BA8-9626-F7D523D7E615}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9B37CF71-E704-4DB2-929C-1D4703526439}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9B7D81D0-CEC6-4E84-AEE2-A52C660F1B8F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9B881B15-299E-4458-BFEE-DDFFE20E58A2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9BC299A2-9475-4610-80DC-9B9F910F4850}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9BC52C87-E6B1-47C2-93BE-51502E624E2A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9C2E9F99-53B2-48FB-A5B8-C8812D9FA78D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9C44B3B7-903F-4B79-8ECA-73F71960B825}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9C4ACDC9-DF97-429B-A592-C2CE5AB08B98}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9C589DD8-5C7C-4F95-B0FF-BB178F44E420}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9CAC1681-C36A-4EA4-8FA9-7F1188CEC5F7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9CB6C0E7-B5EA-4C1B-939C-62B5EF424956}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9CF9A734-448F-43B0-AC86-7ED26478B29F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9D5F91F5-7F3E-49EF-B802-02D2FBD9D1F9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9DB6D5F9-CC94-45E5-8554-55CD5CFA72BA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9E2272D1-31A1-4AA0-8AAB-F36FDD8BE789}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9E2D6826-3724-4391-A9B3-659056D58B5D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9E661E75-AB36-47CB-8F37-8D4FA4782A45}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9EC02C94-E19B-4A91-92BD-F3F53A951700}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9EC424D6-C318-4918-889A-9BC0A4848470}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9EC5ED9F-99FA-4942-8C14-8AB9F659996B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9F392FAC-FE9B-4971-B586-4E4E807738D0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9F96A76B-D6FA-430F-AFBB-355FF0E50D41}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9FA40CEE-EC44-451E-8B4B-7C8EB1DD4976}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9FAD0F95-B245-4CA4-BA25-E8F738A65455}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9FBA1DB6-CF6B-4C55-B4CD-348F576AD233}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9FDCDC09-5253-4B00-A4BB-BED3D446FB8D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{9FFD1926-372A-48A4-9333-A2B062057A6C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A0059FE6-09E8-4FA2-9F4B-AD778603B1AE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A0116DE5-FD51-4188-B84D-6201E7974354}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A03FF438-AE42-4EEA-9841-DCD3AF5F8B23}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A0453393-97C8-484E-8D3B-79137BB5DE35}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A098DC71-ADF8-485E-A330-117C91D64CB9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A111697B-647D-4FD4-A05A-5D051F1DF6A8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A13199DD-9559-4427-8843-3AF849BD932A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A1344C09-19F4-4300-AC3E-22AA6862611C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A14BFC59-CA6D-4C52-AAC6-31F16FF5761C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A16F2C50-FBF3-4E72-82C5-0415DC7D4167}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A1DE34E5-F3FF-4632-8E2D-6278C9B04018}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A1E6C5A9-FD9E-4C8C-8633-05E31E051369}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A22C77FC-5487-4972-9235-3AC1B35611AD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A31493B0-1C7F-41A2-B8DB-94F6C24C9370}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A337AE1F-B086-4C57-A7AB-251370ABBED7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A347DBAB-1F71-4C3D-889D-783792D35513}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A376F94B-490A-4563-80AB-0BAB910C275F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A3C06663-EB50-4019-AF08-F51D602EDE8F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A3D1A2FD-D948-44F3-99BF-E6587A47BA69}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A3E624BF-6981-4357-BAC4-1E81C8E5B6B2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A4990825-245D-4F97-8EB7-4807ED4BB8EE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A4DA2AA4-99EA-48B3-A280-19D620B6269A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A4E5C4B1-3A8A-4A92-B7A7-517A61530A2A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A534B420-A64E-476D-A38E-077D37BBEB1E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A534D8CE-A6A0-4E8F-A1D3-18E4996C4C23}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A546EFC0-F14E-4721-8926-F5A53B0809C5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A552EAEE-A164-4E16-9CD0-4CC8F8AD21A9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A5A51BD4-494B-46E5-AE3D-543D553757CF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A5C5276A-35ED-458F-902A-259CE19C4002}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A5F5A1E8-78F1-48B7-AF88-CB1EA2B86D7A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A60B2F08-6C2B-4178-9098-5D20D0BBB6D6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A62E2B14-75F1-4D6A-88E3-D7C9AD4DCFEB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A662F363-7E00-40D5-9A6B-1F4881705424}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A6A418D5-49F6-4C3C-8FE5-4A94A42CBBE8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A6B6007A-AE03-41BF-8B47-8549928A05B5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A6E23B59-48D8-4B21-AF4A-D89D576DBCEA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A7000A2E-9DEC-4B92-8EDD-F2EB24B5EE3E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A7590939-0D58-44E5-A7C5-1DC5FF8031B7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A75AB4AD-47C4-44F7-8D17-5F5CD0DA6AE5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A78B2C32-1B5A-4588-9797-E19FE1A3A04F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A7AD63C6-0D62-4D8A-803F-BD718A10EDC2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A7B903F2-0074-466C-B65B-946AF5D82AF7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A832C61E-7AEA-4597-AEC2-EB4FEF013D82}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A88A392B-2D6E-4E2B-A72D-626412AA3453}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A8C51EE0-981C-4CBD-8A5F-B45FB7F62AA4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A8ED2DB8-406D-4F03-9AFD-3CEFE7B60C37}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A946B08C-18D5-49E2-AF48-FCA692998F98}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A953C4BE-3B36-4107-B356-A47844D434DC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{A9B43C78-672C-4357-9C31-B16D1359D597}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AA0E3B11-2F1C-4A80-8BEC-31BB640FB80B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AA457CC2-8063-4059-B915-E0B4AE1CB402}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AA780B85-18B4-4C47-B031-0F44C1E7BEAA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AA8734AE-7BE3-4251-8E9C-DCA85FB86673}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AAA58985-AAAC-4AD9-A26C-8CB9C66B5172}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AACAC7BE-3694-4268-943F-6931ABF6DEED}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AACB8BCF-3E60-420F-A1DB-CF6FAE461D55}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AB0F6F70-84F7-40EA-B171-CFC4F237F8CD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AB26331F-964C-44FB-958E-9DF66302F44C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AB77B319-73EA-47C9-B955-5BBA90E062A1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AB7942D1-FA9D-44A4-9FAA-99FBD955EC41}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AB869937-53FD-4234-AD27-878EAC5D16D1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AB896207-D871-4F88-99F8-2F5B7D91186C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{ABB29193-A254-465E-8CE9-7F6D63C51A31}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AC0919CE-0DFA-4A60-A8A2-C9276198F16C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AC0AC82F-8660-4E84-9550-7898C4270CA7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AC402B90-F526-4793-8F0D-D4026383D611}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AC794EF6-CB5C-44CA-81BD-D3AF61DB10AB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AC8E1B9D-3323-4B55-BDA7-B4521C08B966}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{ACA4A7DD-B971-445F-B6BA-C605217E1CF4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{ACBA5100-CB77-4444-BE93-2FC9F43665FC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{ACBAC611-6E64-4F2B-BAAB-64917050DABB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{ACD442FA-3C3F-4740-9092-81A93A700E63}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AD6228DA-0F61-431C-9E8D-ACCC21DCDC1C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AD6F4EC9-1B89-4F81-8D2B-EAB2C7F4B68D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AD72DD45-C8A4-4D25-B3AB-3B41A6B96536}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AD79E16C-520B-4BD1-92EC-F7A99EC72709}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{ADCBF4B9-7D9E-4D0C-AF2C-E7A7F123BB8B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AE2E7D30-B6EE-449E-97EC-8621D35965A4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AE3CEB2B-2993-4A00-A7C3-DA3F805928D5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AE43F53A-21F1-4D26-88F8-DECA69B30C44}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AE7D0BA1-381B-4A35-AF42-55D9D104CD89}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AEC0512E-A791-42AB-9C19-740969836718}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AECF32DE-9CA2-4644-A382-C55CDF4A6F99}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AF24FC16-2255-424D-94B9-412802D1ACD6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AF2B6922-9726-4BC9-B056-63ADFA9F1617}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AF3A4327-FE05-4908-B87E-B1029A87F65F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AF588F13-76CA-4352-8F11-CAC7EFAF2E06}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AF9B8D64-A202-4418-BD61-E4FDEDB35618}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AFB0DDCC-7C5B-44FE-9023-79FB46A3D658}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{AFB65B6D-50E8-490C-8A7A-BE74A6C07C9F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B0074A95-DB28-4B3D-ABBA-5F8B3BF3E2D7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B016FB93-513C-4047-A804-00E38146B834}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B0904E3E-3099-4CE3-9537-300621298B77}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B09527E2-6462-4959-B6B5-800FD69EB700}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B0D0E250-1BF0-466A-B88B-901EFD502046}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B0DD6A80-48DF-475D-9775-CCC16F1F936C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B16E398C-D54B-489D-860D-CE55EB154469}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B1BB62EF-065B-421D-ABDA-7694996760EF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B1CAAA6A-9F42-492D-A508-CE54B55065A3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B1DD4709-544C-405D-BD8A-91B224AD9403}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B1EDE3D6-DDA4-4428-89F2-A5E547C767F7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B22D8A96-A10F-47E0-A28D-11080A2199AA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B253D63F-DC2E-4FB9-B305-2610FB2542EC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B2B4BFFD-42FB-46C8-8436-A394E55DEF78}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B2D3F91F-1EFD-4DD6-9ADE-DFFB50A4D295}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B330C835-118F-41F8-A49C-D3CA09AC3C48}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B357664E-1705-4AF8-84E5-460F875E9F9E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B362AB4C-BB5C-4BA2-ADA5-7AB8ED744C9B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B3864696-02C6-4992-AC8E-7CEB0D920E68}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B3938DE2-1B42-4DCD-B5BD-6A51E35BAF8A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B399F9FD-22A0-4FFA-9FE6-1A6552655DBC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B3CC1A8A-C183-44BA-8F53-F190B8C7D12A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B3D42BEC-0CA8-43E5-8C29-6EE0DF57D290}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B3E24A28-9BB3-45A7-866B-0FF4AAC9056A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B3F1D7D8-5BD9-4AEC-9C25-93B814CCF90F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B3FDCF4C-347F-4C74-9C19-B8FC69DFF2A8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B411071B-AB41-4E6C-A816-D3BBEDEA93D9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B4600750-2A25-4D97-9861-9A958C95A130}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B463A277-002B-4F8D-89AF-C0D4D725F964}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B47EDADB-AEE9-4814-A059-BDBE0BEF5B78}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B4A4F1C1-502B-4732-B9A0-6BCA741E4FDD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B4AFAD87-F41B-4EDB-B760-27A9616C0757}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B4CB82BC-6935-4683-881A-02983B67199B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B4E4CBFA-0D99-4E26-841E-BDADF89A9F99}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B509E2ED-D896-444F-AB95-E1B9334AB967}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B536E4AD-1D88-4456-A389-1C6AACFEFDE3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B54640DD-CF2A-4DA0-9660-A5DF829A148C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B58EAB8D-14E2-4E10-90A8-1320E7803BE8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B595FBD5-0EED-460C-A472-1C5CE89C40A9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B5A6B610-5866-485D-BFCD-DE441098B9A8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B5E535FB-CEFA-413F-B4D0-85524CD1A86B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B6162E8A-7B92-42C0-9AC4-AAA44F6473DE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B61BF89C-F09A-41AD-93FD-7902B80D1462}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B629B6B2-E23D-4502-8B30-6B70BBA1C8D3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B649133C-F4A0-46B2-AC50-F41A1C2978C6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B68A8B6F-1338-4E4A-80D5-934E29B60E39}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B6C47EF0-37B6-407A-B58B-A84226EED95B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B6F8D603-9AFB-4E34-A2BE-4B5CF5F0A11C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B7076DE4-097F-423E-91B3-EF4B36B1CD0C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B727C918-9141-4651-A7E4-76F05D31328F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B74B6FDD-19CE-4582-906A-0C8AEED785D9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B7577408-3698-4F91-8BDA-898D72DCD468}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B767B352-E037-4FA6-8286-DDE60A6A2A8A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B7A34B7D-6B81-4C9E-B840-34E68F0232DA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B800D867-2493-4302-B0E6-2D5EFDF92A13}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B80983F5-87F3-406A-BD88-557D276ADEC9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B81A945F-41AE-440C-AB33-4CC65EB0ED6F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B83421D0-4D0F-45D4-8995-5FDDBCFA6ABE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B8719408-0E78-43AB-9742-DB2D7FC899A7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B8827A31-7F0A-4A91-8070-FCBB0DD09D7D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B8B32F63-10C8-4251-8A52-3591A5269430}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B8EC6400-9624-4FE0-B1F0-DCCECAC1BCB3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B90369FE-19A4-4D4A-8DDB-253A3E150617}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B91192B4-16F0-4D82-95ED-6960537D5066}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B91811FB-74BF-4508-A299-236E924BB5E0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B96C1E35-384E-4E53-A7AE-1538D93AD685}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B97CD9A6-AB59-4641-AC3C-603B618019FE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{B98E7323-F410-49C5-9B90-2D55E256E111}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BA082A14-717F-4477-A9F7-60901850593D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BA099ED2-6C98-4FBE-A9EF-18269C6098BD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BA34E298-38A5-45E8-989D-38A77A506BAE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BA6522C3-08A0-47F6-9C3B-D9087F5AAFE5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BA94D5C5-B6F4-4963-8647-42C7047474C1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BADE045F-A376-4DD2-B333-966A8F646ADA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BAE57166-B9ED-4837-8633-BEC0708DF5D2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BB604ADA-3E2E-457B-8760-EE83F5B53541}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BB78A574-8F0C-4140-8726-FDA752AE7A05}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BB823A97-A331-46C0-AB65-F185152C06CF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BB85C49E-0EEF-4769-9CCF-4160E7CC5BB2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BBA591EB-801C-4A0F-B346-B3CF5A34C7E0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BBEF4D55-9479-4F17-ADE2-27D81D6056AF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BC111A11-B9CF-43B5-A905-0E55289B9B57}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BC5E3442-0DA7-45AD-9CDD-F44678E7E5B7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BC7C42D2-FC2C-4046-AD24-B2BB210A4A73}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BCA7B39F-9273-4D34-8F5B-46877CB4C0BF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BCB968B8-1E6B-4AFA-949D-FCDEF2B7311C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BD04F55D-FA3E-4B8D-BF8F-569F22F1DC4B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BD0E6FF2-CB02-4B6F-968A-D63C92BC2FE5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BD52DDC9-AF5A-425F-A44C-DC98A269E5B9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BD5E0A0D-90E4-46DD-BA73-AF12F6382C0C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BD649193-34D7-4CEF-8531-617E5E21528E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BDA13900-30BD-40B7-9448-184DEA227680}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BDA555D4-8BC5-459C-820B-BB3E9E5BE867}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BDD53CBB-7E15-41F5-8964-5B3868F14A2D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BDDE5CC3-F8F8-4925-963F-D82D8CDFE320}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BE519D34-386F-42E1-B15F-8538D3DDB423}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BE6EB5F6-174B-4D2C-BDB8-192AE54060AE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BE86A5CB-2966-456B-89F1-F32B2955D6DA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BF223152-B03B-4CE2-956E-DB9E86D143F1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BF30EF7F-86E9-4C07-8E5A-5F114EE7AEE4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BF36C39F-27E4-43C8-A28F-1B0CD0B7F507}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BF650969-118B-4842-A3AB-4DC0082AA881}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BF73594B-DE1B-49CA-B0B4-87BDC0115E8C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BFA2A123-9268-4268-9644-F7CE3693F271}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{BFD75B1C-4A4A-4D80-BF14-A284FBD6E11B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C00A3213-6F6F-4192-9265-3968F2AD42CB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C015275D-A0A5-4288-9DF1-F4E4FD81B2FB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C0245B3F-FE47-40CE-BA3A-71C4F640525D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C10A70BC-8537-4D18-8BFB-E698DD7AEF69}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C131BA8B-C4C2-403F-A4A9-854F2C6773DF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C1468528-010C-4B96-B8FB-1A63D79D4CF0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C1C74712-8D77-4B2B-85CC-88C298FBF3F2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C1D5EDBE-ED79-44A3-ABB5-7E5CCE5185EF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C1DED7AF-057C-4206-9EB8-5B0E81E34A8F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C1FA9A00-6914-4209-9E5D-9EC32D9BDDEF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C21B7145-4D1B-4F2B-92CF-9A7059BA998D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C21E5992-C1DA-4E5D-A868-9E40899EDA57}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C2818649-16C3-4751-8E33-0EA17ACF4DAE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C2ADE0F4-A3B8-4DF6-8984-09826D3DD957}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C2B2319B-6E1F-4FDC-A70F-FF93E6391686}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C30486F1-41A1-444C-9DC7-5693E4A4B014}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C3BB5B50-E660-4ADD-B4EE-897B0482F13C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C3D386E1-671A-49F8-B70A-064BF34B7B79}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C3DF26F6-936A-44B6-B267-BE5C57586C6D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C3E4B0A6-916B-4031-9ACA-F5E3489921C0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C40948FE-5D22-4522-80D3-468D1C8B239D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C4193CA0-07EC-4C0F-88E4-E86FB1589642}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C47AFBB3-F3DC-4270-AEB1-8DD290E2CFF8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C5501021-561D-4FA6-8BEF-7CFEF00632B4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C5589816-DF1E-4912-9D0C-A685BA6EE57A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C5CA4166-B762-459C-931D-50464CA3F839}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C5E20430-C784-4BE1-84F5-D76C70FDA2C5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C6487785-9122-497F-8A6D-920365D71BB9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C6A22AD4-ECEB-4F02-A968-5F6E51A29CAE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C6D20344-4084-494A-BDBB-1E872B6B1FF5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C741CBE7-DDE9-490B-B86B-2FD830DF8AFB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C7452F39-3838-4E21-9143-0DA3B41CDD6C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C76124CE-62F8-4E91-9E38-4EE5107C0D24}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C76EBC8C-2B71-489D-AF11-A487920113FB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C7784FD8-A18C-4A09-A921-702BFF2C7F8D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C77AD99C-DE42-419A-81AB-7B886C19EC96}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C7946C2E-2F7B-40EB-A3E9-B7AE8D4D5571}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C826FB34-BF86-48CE-80A4-888A104E5B84}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C88B6BC7-D30E-4CBF-92CA-A3EBD2355381}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C88E2B30-367E-4A46-A258-CAC819E86462}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C8EA4935-F749-4E66-A98C-71E5E996BF88}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{C9C45A7F-FA06-445D-BD44-2351850EDF43}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CA14BFCD-60F0-47A9-91AB-5EB721AF6CD0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CAB6ECFC-C690-4D0B-B04D-0E86DB34C019}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CB001007-D6BE-484E-BB65-5975E209CDDA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CB07AE26-6ECF-45FE-A71C-B5A5F3A643FC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CB08456E-F3DF-4717-A61F-BD641BE9BCC3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CB28EF06-AB56-4FCB-A9FE-C910EBE939CF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CB4F81A1-26F3-4FC9-B5DD-52362969ADE3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CBB11B6C-D257-4443-8F12-FD51520B9D5D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CBCCC5D5-EBF4-4F6F-BE30-232EA34F1CE0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CBEEC396-2319-4F87-B774-40AD6C81612C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CC109C53-F816-499F-A921-F60964F3739F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CC28635E-7079-4848-9AC0-5FD9E26F5A28}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CC99BE8E-0C1A-4004-AEFC-2DDF26E30A30}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CCB7C97F-81D1-45A6-AFC6-72263977593A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CCD5328F-A7F4-49C7-A8F1-DB1100E9F6B4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CCDEC035-11DB-4304-954D-C777E628B6B8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CCF0AD75-BB2B-4EA1-8828-4F19AC06A852}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CCF12BD5-86A7-41F7-9AF9-BB10F2F6ED4B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CD1E9EA5-4DF9-4F8D-B144-37B905956B90}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CD2318D8-143A-49FC-BFE0-E6E104AF4D88}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CD694DF5-977F-4861-B1F9-E7621B8477B3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CD8132B2-07BA-48D6-B572-D38A146F07EE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CD9C37ED-5CF2-4968-ACF9-1C4CAD16C24D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CDA14CFE-299A-4D89-BEFE-1EC1921377C7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CDD5623C-BD59-4568-9829-45053BD9E338}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CDE320F7-33F1-4759-9568-B92F7F9DE380}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CE2CB43F-488B-408A-87F7-C1E4984D06C4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CE5F97F1-A8A5-43C0-8FB5-0ABA79BB77E9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CE66FEEA-4B0A-49DE-A48E-D9F059724649}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CE6C774E-F6C7-4900-BBC4-8E8D3B29129B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CE7550C3-1001-44F4-99E9-3060F50EDA8F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CE9DE83D-3F58-4260-99E9-C545991EDC26}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CEACD048-0C44-4BBC-BF05-FFE5645D9CC2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CF25D559-0E75-4855-892A-0641DA891823}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CF5100C4-DA01-4D97-9BED-AC71D87562EE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CF6C5B98-A895-4C43-BE69-96656EB9F5BE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CF917338-BD6F-4379-837D-F0E7E2FA0499}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CFBBD2A0-804E-4B53-9EEE-FD15D034AD74}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{CFD962D2-FB13-4100-9EA5-C53E0DFFE81C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D03CA5F4-9D2B-4996-9AFD-9B45937E39E5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D04A0C8D-3EEF-43FC-AA46-42EDED103637}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D0A45900-4308-42D2-843B-44ECD69AA05F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D0BEE680-ECC1-4460-BF09-EAC6FEDD79CC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D15192BE-7F5B-4D9F-A18E-57B67F8B829A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D15DEDD7-8A4B-40BF-A2EC-D45BC7D033FB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D174A1B6-A30B-4E6E-985B-C76F54A96DD7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D19A3764-0253-475A-884F-CD894F520525}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D1DD5E6B-1162-4BF7-B228-B6137F5FF4E7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D226AC84-685B-4F47-A36A-11B06A2AC296}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D234E50E-6679-4AD2-ACB6-EB323825805B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D23BE107-E00D-462F-AED7-0DD7B5A17C6C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D2421487-16BA-4977-8E89-8D6FDA509476}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D24B59E5-0B6D-4A70-8A83-3C92F1F92622}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D25C3207-7F52-4233-8247-F6B14133EB9D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D276F3AD-BFCD-454E-8D19-5C4A64B34605}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D28DB582-BECA-44E6-BBBA-E4DB920246C4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D2941CB6-AC7F-4A92-B1A9-D418767DD3B9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D32BC198-C07A-46F0-B2BF-AF43FB515B87}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D3656696-AE29-4C01-9C90-C9FCBCCEB59A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D3B07183-15EE-4C54-ADEA-DBB86C544F4E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D3D6AD41-78FC-48D7-9A59-DC45869E6B6B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D3F10FC4-C57F-47B6-9792-DEC38E32BE90}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D3FAF31B-FA70-4257-8BCF-B72BB0E2CD0B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D4095653-7436-47B8-9CD5-CD8CEC07FD2C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D43FA965-058A-4FAE-A682-C5DB57F7C8DF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D441FA8A-B77B-4236-8CAB-43EAB314294F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D4738597-3072-4F4F-BF80-D74293B10994}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D47A8760-1465-49C8-A4C4-3A66BE768071}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D4B88CCD-E93C-410E-AAF6-7D21C2FA4FF4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D4CA79AC-FE37-4835-9CB8-BF9D96199C72}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D4CF5929-AC05-42AF-9763-DED9CBBE6C35}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D4DAA715-0516-4952-857B-ED739E0DF3E3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D52A3D1A-E8DD-4422-A3A8-E76A55D98A0D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D54436F6-B8DF-4180-9E6F-6E6569A34AA8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D5636DDC-990B-4A6B-B359-579A14D6125E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D5AD6181-D746-4D94-B4CE-83EA6FCED681}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D5C82170-B02E-42DD-A1F8-5BA413BA7EBE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D5D46DDA-CCA6-4748-AD29-A77E477DB54D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D5F3C13B-94B2-4C9B-AA81-3BFF0B68D9EB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D6042083-C7A7-4334-B3E0-EC4B0CD58FA9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D6474B6B-B604-4008-B2BD-66F44B5997D2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D69F4B8F-6CDC-45DB-ABFD-AD0ABC899CC4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D6A84500-9EB3-4681-A1A6-2FD97A9BE170}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D6F4D29D-7BC6-4C33-BCFB-2BBE8A1B172A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D732E04E-B4BF-4F09-AD10-0ED28FB04B80}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D765C93D-1A77-4766-97EA-CA017B2DBE9F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D778B0CE-68A5-4E8C-B16F-E82B3FD4D839}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D7AD0803-A0CE-4408-BA62-FFD457BD9333}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D7EFF504-27ED-4B3F-8034-E986D3B51EBB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D7F619B2-082C-4725-98BE-65C93DC3A94A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D8204B56-2C10-4881-A502-6E04413A6743}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D821EC0E-2CD6-4E9E-9D08-E18F513533E7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D829DCB1-A5D8-4A18-8593-832EC1432790}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D8313531-442D-443E-A606-97E460D3180B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D8959F87-1C6D-46A2-87F3-1D005124DBEF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D8AFC6A4-A569-4B15-B142-39A2EA91F560}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D911725A-6B76-4F04-8351-ACB0D693EABF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D954952C-7E45-4B81-8AA6-C7EECA097E82}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D96E2B54-2659-401A-990E-B48F526B9193}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D97C2F58-E861-4808-80BC-2E2C990D2E7F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D98FF062-3443-4856-9CAD-794100D5BE59}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D9996674-9B76-4195-848D-EE7C035856E2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D9A82702-EA5A-4364-B544-0A19C12C7F39}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D9AA36FC-9C63-440F-82A7-B7406C0D4115}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D9B66141-884D-4CEC-B674-10872AE1E5CB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D9BFAA34-C267-4910-9DD8-20497411DBAA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{D9C4BB0C-976B-406C-B226-9137924C952E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DA053593-52CD-4888-A54E-D57E5190339E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DA35AC33-1E66-4812-A074-3165D3263F29}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DA5FDF32-6139-4EBC-AC59-6E428B6531B7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DA6A9691-4BA9-49B2-877A-BEEA31352ABF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DAACB951-AD54-4AC6-BA90-FA8444CE3904}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DAD7440A-1944-4B59-9916-DDECB31227E2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DB089F5A-402B-4E5E-BA26-329817046C97}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DB53CAAF-3553-4CF9-B4BC-439E292911EB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DB595302-2818-479E-9CFD-211480ED1C9F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DB78DE28-3313-4867-9FAD-082A02F520B5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DBFA1A2E-A65E-47C6-B64F-5F809CD04CAC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DC4D7AFC-4A0E-489B-826C-7762BB3EB493}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DC564432-D41A-4871-BA0C-97ED73879F47}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DC657FD8-36C1-4FB6-B0E6-8E5BEAB0EFCE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DC71A9F9-AC9D-4FC7-B5CF-5374492C5BE4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DC7F7D35-21E7-4DDE-B9BD-48CCD5A0FC3D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DCEA75CC-BA74-4297-A7C6-94F77A23C178}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DCF40336-0036-4142-A393-02A57D4965A7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DD8E276D-976C-4A07-B2BF-ADAF73DB5FED}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DDF35D27-BC4F-492E-822A-FCF8EA71F6A7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DDF92561-4E5C-4C98-9032-004A3F3C76D7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DE04982A-193B-4363-8581-0D5787F5312D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DE42B295-EA09-47AE-98FE-60D23855AB1A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DE5AF11C-0FCE-461D-B523-EBB82899B937}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DE688C95-0956-4998-8134-ECB8C0A68D6E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DE6E6FFD-64B4-4557-B88A-2BA3A3E30F27}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DEF13765-D67B-4307-9D23-50E11F0EE0C1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DEF1B5C0-F943-4DA1-BC66-DD64725BFE51}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DF3BEECC-B8B1-43F3-AF7D-10E60FB5117B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DF441CAD-8BC0-4855-AF56-CB64299D360F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DF7540F5-45C1-4C3A-9449-11D9F9E13976}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{DF8FF29F-EA9F-4911-834A-3B018BDDDC2B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E03ECB63-E4F7-42B5-9259-EB4DFFB31540}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E0456FF2-7B15-4103-8FBB-A918F7BB5515}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E0C677BB-8A9E-4C02-B740-1D4102988730}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E109AAA6-B120-447E-B41E-6A173D07F74C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E120EF60-CBD6-4F9F-BB76-77BD35D0B249}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E13EFE02-AA82-4501-9FD5-E09E0AC3691E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E16F102F-353D-432B-8418-5289BADCDF13}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E188768D-94E8-455D-B7AB-2B7D7C777BA4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E1989563-6302-4F26-92B0-DE0755710F5C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E1DC4007-883F-45C6-9C28-B8CBD875E89A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E2102CA7-7CBD-4206-B6E5-52CB5ED6949E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E2110484-00D9-4556-B693-5C718F9A828A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E2B20F79-134D-46E7-ACD6-328D0ABC9711}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E2FB3B4F-6237-4EA3-8FB0-74FAE03E9999}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E34C74AC-81BE-43C7-B3F6-1F8C4A509E5B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E37FF875-8AC2-4F60-9060-832E7F11C5DE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E424D5FD-7695-4932-A1B6-0167E7E93FBE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E4474B2A-F3E8-48E2-82EA-B64AE0F7E109}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E4481652-6E3B-468B-99BC-7B62BBAF3D2E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E4D07883-270C-4B8D-897E-851704518869}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E4EBEA47-E2DA-46CB-AB26-04D91D37CEF4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E500D497-0C30-46F8-8623-7AA7C973169B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E53D343A-D8E6-4E4F-8C22-83C6245C370E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E566C927-2CE4-4845-A17E-F83B3953057D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E56ED15F-936E-4C02-9536-01F0F174D03C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E57F25A9-6FE5-4565-B1DA-A4D511383CDD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E5BB3606-4CC0-4A99-AB2D-7D0DF2B4DAC5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E5F52202-688D-41E9-A88E-E53561A753C8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E602899D-9600-4750-BE02-448DA6B64C1F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E60AD3AC-4F5D-4462-8F1F-5A8D2A590AB6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E621AA07-B3AF-47E0-BACD-3D04A2D027FE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E64CF9F7-4A26-4FCC-815A-A085BC40ED99}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E6614F23-6891-442C-A4E9-D049530EFEBD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E6ED4AE4-5540-44B8-88AA-4539273C100B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E770A949-24E1-42B4-9A91-D7046CC910E2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E781E8AE-E8BE-4892-8492-DDAE6BD67DE0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E7EA19A0-629C-46E2-ABE0-81CAB163EC95}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E7F28398-AED7-41F4-9E64-B8EFD5836A02}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E8085CCB-B0C9-4635-AF87-A786C0C304D0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E8246739-2663-4AFA-9D85-AE89BA885699}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E8A22001-CAE4-4E09-A6E1-8A880EB17708}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E8A9929C-2C99-4D59-B0A4-C67E5270283C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E91DF800-3CE7-4997-BDF4-D6D97372F20C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E9A1DA40-F392-41D2-A93F-9F84555942FA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E9AA4136-9587-4280-96ED-C3369B98C9F1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{E9F8610F-C945-4F88-9112-49579713825C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EA5BADAE-DA30-49A8-A309-48211AB5DC7F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EAD446CD-7774-41B4-A06D-8FD580D40D74}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EAFB72FC-D2CB-4003-A433-BCF54641FA59}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EB0BB01A-AA05-4DDA-9991-94B8BCB4A86D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EB420DCA-2A87-46A0-808D-3322D74B3D47}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EBBDB00F-3EB1-49D8-AA15-B64BF94F2613}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EBE46BF2-EC12-48B8-9341-8F274A590035}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EC0452B6-DFDA-4683-88FD-2E93701D03CA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EC104133-D549-4E3B-B32A-E62B64D8C448}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EC2B0637-81F8-434C-9189-1A8701AC107A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EC862261-5CE4-4CB3-8BEE-8D2809A59CF1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EC94D14C-60E2-48E0-B6FB-6EBF3E2A4897}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{ECA307A4-29AD-420B-8FFB-C4AB1AB0BD9A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{ECAFF654-4358-492B-A23C-ECA2A494E176}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{ED144563-18D8-44C2-9C34-D216819BBDE7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{ED14E693-DD00-4E19-868F-1DCE54B1418B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{ED4B9776-8889-4A91-A974-F807A14970DA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EDB27B85-BA5A-41EE-9C48-8CFADC575C07}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EDCF037A-E76D-419C-B7D4-703CC78E327B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EDE7B8F0-C58F-4EA9-BC73-C6D8171FE3F6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EE27076F-937E-4930-BF48-A66FE9655A70}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EE52D50B-C9B3-4C90-91AE-FC4C9578F094}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EE85EAA3-822B-4837-B430-74103330BD74}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EEB8DDD5-BB34-4E92-8404-BA4CE0003CBB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EECE3857-CA97-4A15-A266-FE13960E381F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EF380A70-B719-49C5-A089-8A1A988BFB27}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EF69B686-8D0C-43A3-B94E-30BACAEADB1E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EF77A411-9986-4F18-A34D-DB0C80F075F6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EF7C479A-CB43-45F7-BA9E-E4C03C5EF911}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EF7ED025-CD58-4FA6-8607-AAB4B4176086}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EFB1CD00-2443-4C63-B686-9E95B06E454E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EFC0FA23-55DD-47EF-AA6D-86536831FC8B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{EFE342C8-FF3A-4AB9-86A8-71633CA7BFF7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F00A5FAD-6B92-4A12-A4FA-FB22ABF06112}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F0316E19-3388-4898-9E27-46B0FDD5B6E8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F0B00B06-CD3B-46CC-AC97-773A557B8E4C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F0BF92BA-C565-4742-89EF-CB3F51B95781}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F0D4C9B0-812A-4EDF-9017-F94C781ADD6B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F0FC7792-4700-47D6-93C0-CB08DC49A68D}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F104558A-F26C-4DDF-8F32-384C8C119F51}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F10A6F0A-B350-43DF-9B3A-2E5F30F7A297}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F16C58BC-8FF7-4CCA-B512-3C7D3D63B756}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F1A06892-F0DC-4F3F-BE28-27E1F9AEAF74}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F1C6CBFE-2BA0-4518-8664-5D880A6AF3F3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F1DDA6D5-E1D8-4B27-99C9-DA9CDA9618E1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F200945C-C15F-4B0B-986D-968B9DEE6962}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F202395B-323E-4876-8AB9-0528F2AD35CA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F2293FC4-1052-4446-A09F-E8293738D1D8}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F22D0145-8A94-498C-9817-9A30DA4BE474}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F2570BA1-993E-47DD-977E-DC1D2296BE80}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F269D0B0-BB51-4722-A558-77782E093894}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F271E9ED-4F67-4DC6-A9C3-B8344476F41E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F2869C0D-CAA3-474A-8A6A-A84B28C1BF28}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F2987BBC-A954-4928-95CD-9D5608F75ACA}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F2B95935-3C6D-43DC-B3ED-D1CB10852DE7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F2EA7475-4E60-4991-A410-F1D268057C87}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F302C38E-D819-42F3-8B7A-539D668315F5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F318EB4C-EF27-4FFC-AADD-A70C2FBA1DEC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F3205788-0FE1-4603-8F43-B0020F5F2F70}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F37D2202-D280-402C-BD5E-112A6CAD561B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F4532DE7-E6F9-4A9E-B11C-B2F42DD309DE}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F46471C7-3A5C-4B23-8DEE-F34741BA5002}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F47F1337-977F-419E-AAE5-29ED01D08D4B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F49EEFD5-D178-4295-845D-92A6B38ACB07}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F4CD985F-B696-4843-831A-3381DB644D17}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F4D849DA-DE16-42EF-8B64-18328878E689}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F537023D-1C21-438F-AB61-25A6253FDD1F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F5966D32-68BB-4D72-8C9B-F81B6944AF47}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F5B5733F-B31D-4509-A774-898B0B6DCBEB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F5B78E31-D9EF-449B-BCA7-1FA10A8B7B3B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F60454C2-E718-42C4-8767-552B7805911B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F626847A-F4BA-4485-8F04-F40C25CB85E3}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F7046F08-EC2B-4AA4-8B02-84F425EA0F49}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F727E7ED-B411-42BA-98EE-DF146F0CB7CC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F73C77D6-A4B7-4032-8099-CEF42907EC5B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F7533077-BA6E-44FE-93AE-D022F3885318}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F7630A7D-B178-4B19-A9D9-F649786F66CC}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F77DAD27-5C29-452E-9C7D-896A95C3F416}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F79D9E42-311E-4D28-9659-0130593A6C6F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F862E821-0B44-4C0F-B9A7-C0EFC5A6BC47}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F868C47F-B0BB-409E-9A28-736851AFDD12}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F86957B6-39E3-4E27-8B51-B996DC6F6008}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F88D1563-5AEB-4044-8D1D-16FDB1ADBA3A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F8D99066-B349-460B-8E8B-9B9CBD14CE94}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F8DA32C9-3C64-45AE-ACB0-2974BFABD9D6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F90CA759-9433-44EC-83A0-302F0A7C25D2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F913CB92-41CA-4060-BA7D-9471BBA30EF2}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F91C1741-5D5F-413C-9435-2DD1E7D99E5F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F9444E5A-C24C-4136-A37A-FDC09173863B}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F95F2F2E-6F08-4D28-9BB9-83248BC5135A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F95F6B7D-831E-432E-AB9A-0B9D07847EA6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F9711091-562E-42CB-BB4A-0DBFD75F3E16}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F98CF1D0-11A6-4EF8-9594-CE248D3D6085}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F9BA3F09-4C86-4A39-9FEB-957FD2E2F975}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{F9C0D2A0-9CFD-4282-82E8-225A342144C5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FA175D6B-CDB6-4FB9-B367-BD19D86B22A0}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FA1CBC34-2FC5-4E79-A6EA-89B595AD906A}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FA567C8C-294C-43C3-B9DC-FAB5CC9C2B13}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FA6E5321-2B94-47D2-94B1-49FC0B207D1E}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FA6FF6A7-08E5-415F-9A31-13480C1D20F4}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FAD5760B-C21E-47D6-A9AD-751F355A6447}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FB5EB238-1AA8-4537-BE9E-4F84FCD5A2D1}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FB7199DB-2700-4F32-AB13-CDA3D207E56C}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FC6BB2C1-4128-431E-8178-0616CD3D66AD}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FC949529-DC9A-4FE1-A131-244216B23630}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FCA9F9A3-8460-482A-9582-560F84847078}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FCD780BD-BE3E-4A0C-8C47-DAC185006004}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FD06E976-6C84-4D85-A0C7-41D586F795DB}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FD459C5B-7EDE-4E7C-8184-C45110FB6B06}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FD61D16F-8C9D-4862-9799-53D1BC13C4B5}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FDBE5373-9FD4-4074-89BF-DFED592138B9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FDBF9616-E96D-49DA-AC19-E0A8CDB3D24F}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FDD1B2A4-3C6C-4BD3-8B20-BD36D0C70B01}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FDF37B7D-A43C-498B-93AE-4CFFD9A3D8FF}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FE045A48-54E2-47BD-B46E-2FEE6D13B1B6}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FE08B73F-3169-4EED-9D49-09746113CF50}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FE0E314F-3503-4C9B-B7F5-35933CD49292}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FE36549A-E6D3-48FE-B021-3DAAB9482C84}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FECA4FFD-B0C5-46FD-9649-8A94FBDE1DE7}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FECA9203-B32E-4DB1-BDB6-A1883A09A938}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FF18C608-FE23-4679-A01F-8DAFFBAD6DE9}
Successfully deleted: [Empty Folder] C:\Users\heinkenszand\appdata\local\{FF8B5A73-CF09-4485-8288-05ADC33C880E}
 
 
 
~~~ Event Viewer Logs were cleared
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sat 07/12/2014 at  9:21:45.09
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
ComboFix Log
ComboFix 14-07-08.04 - heinkenszand 07/12/2014   9:33.1.2 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.1.1033.18.3686.2543 [GMT -5:00]
Running from: c:\users\heinkenszand\Desktop\ComboFix.exe
AV: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {ADA629C7-7F48-5689-624A-3B76997E0892}
FW: McAfee Firewall *Disabled* {959DA8E2-3527-57D1-4915-924367AD4FE9}
SP: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {16C7C823-5972-5907-58FA-0004E2F9422F}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\gt.exe
c:\windows\s.bat
c:\windows\version.txt
.
.
(((((((((((((((((((((((((   Files Created from 2014-06-12 to 2014-07-12  )))))))))))))))))))))))))))))))
.
.
2014-07-12 14:01 . 2014-07-12 14:01 -------- d-----w- c:\windows\ERUNT
2014-07-12 13:48 . 2014-07-12 13:53 -------- d-----w- C:\AdwCleaner
2014-07-09 04:17 . 2014-05-30 08:08 340992 ----a-w- c:\windows\system32\schannel.dll
.
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-07-09 08:05 . 2011-10-11 22:24 96441528 ----a-w- c:\windows\system32\MRT.exe
2014-04-25 02:34 . 2014-06-11 14:56 801280 ----a-w- c:\windows\system32\usp10.dll
2014-04-25 02:06 . 2014-06-11 14:56 626688 ----a-w- c:\windows\SysWow64\usp10.dll
.
.
(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown 
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]
@=""
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 EgisTec Service;EgisTec Service;c:\program files (x86)\EgisTec BioExcess\EgisService.exe;c:\program files (x86)\EgisTec BioExcess\EgisService.exe [x]
R2 EgisTec Ticket Service;EgisTec Ticket Service;c:\program files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe;c:\program files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [x]
R3 HipShieldK;McAfee Inc. HipShieldK;c:\windows\system32\drivers\HipShieldK.sys;c:\windows\SYSNATIVE\drivers\HipShieldK.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\MBAMSwissArmy.sys;c:\windows\SYSNATIVE\drivers\MBAMSwissArmy.sys [x]
R3 McAWFwk;McAfee Activation Service;c:\progra~1\mcafee\msc\mcawfwk.exe;c:\progra~1\mcafee\msc\mcawfwk.exe [x]
R3 mfencrk;McAfee Inc. mfencrk;c:\windows\system32\DRIVERS\mfencrk.sys;c:\windows\SYSNATIVE\DRIVERS\mfencrk.sys [x]
R3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUVStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUVStor.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 wsvd;wsvd;c:\windows\system32\DRIVERS\wsvd.sys;c:\windows\SYSNATIVE\DRIVERS\wsvd.sys [x]
R4 McOobeSv;McAfee OOBE Service;c:\program files\Common Files\mcafee\McSvcHost\McSvHost.exe;c:\program files\Common Files\mcafee\McSvcHost\McSvHost.exe [x]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe;c:\program files\Windows Live\Mesh\wlcrasvc.exe [x]
S0 fbfmon;fbfmon;c:\windows\system32\drivers\fbfmon.sys;c:\windows\SYSNATIVE\drivers\fbfmon.sys [x]
S0 LHDmgr;LHDmgr;c:\windows\System32\DRIVERS\LhdX64.sys;c:\windows\SYSNATIVE\DRIVERS\LhdX64.sys [x]
S0 mfewfpk;McAfee Inc. mfewfpk;c:\windows\system32\drivers\mfewfpk.sys;c:\windows\SYSNATIVE\drivers\mfewfpk.sys [x]
S1 BPntDrv;BPntDrv;c:\windows\system32\drivers\BPntDrv.sys;c:\windows\SYSNATIVE\drivers\BPntDrv.sys [x]
S1 EgisTecFF;EgisTecFF;c:\windows\system32\DRIVERS\EgisTecFF.sys;c:\windows\SYSNATIVE\DRIVERS\EgisTecFF.sys [x]
S1 mwlPSDFilter;mwlPSDFilter;c:\windows\system32\DRIVERS\mwlPSDFilter.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDFilter.sys [x]
S1 mwlPSDNServ;mwlPSDNServ;c:\windows\system32\DRIVERS\mwlPSDNServ.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDNServ.sys [x]
S1 mwlPSDVDisk;mwlPSDVDisk;c:\windows\system32\DRIVERS\mwlPSDVDisk.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDVDisk.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 CxAudMsg;Conexant Audio Message Service;c:\windows\system32\CxAudMsg64.exe;c:\windows\SYSNATIVE\CxAudMsg64.exe [x]
S2 EgisTec Service Help;EgisTec Service Help;c:\program files (x86)\EgisTec Port Locker\Egishlpsvc.exe;c:\program files (x86)\EgisTec Port Locker\Egishlpsvc.exe [x]
S2 HomeNetSvc;McAfee Home Network;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [x]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [x]
S2 McAPExe;McAfee AP Service;c:\program files\McAfee\MSC\McAPExe.exe;c:\program files\McAfee\MSC\McAPExe.exe [x]
S2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe;c:\program files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [x]
S2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe;c:\program files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [x]
S2 mcpltsvc;McAfee Platform Services;c:\program files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe;c:\program files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [x]
S2 mfecore;McAfee Anti-Malware Core;c:\program files\Common Files\McAfee\AMCore\mcshield.exe;c:\program files\Common Files\McAfee\AMCore\mcshield.exe [x]
S2 mfefire;McAfee Firewall Core Service;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe [x]
S2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe;c:\windows\SYSNATIVE\mfevtps.exe [x]
S2 SBSDWSCService;SBSD Security Center Service;c:\program files (x86)\Spybot - Search & Destroy\SDWinSec.exe;c:\program files (x86)\Spybot - Search & Destroy\SDWinSec.exe [x]
S3 ACPIVPC;Lenovo Virtual Power Controller Driver;c:\windows\system32\DRIVERS\AcpiVpc.sys;c:\windows\SYSNATIVE\DRIVERS\AcpiVpc.sys [x]
S3 AtiHDAudioService;ATI Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys;c:\windows\SYSNATIVE\drivers\cfwids.sys [x]
S3 clwvd;CyberLink WebCam Virtual Driver;c:\windows\system32\DRIVERS\clwvd.sys;c:\windows\SYSNATIVE\DRIVERS\clwvd.sys [x]
S3 FPSensor;EgisTec-Corp Fingerprint Reader Driver (FPSensor.sys);c:\windows\system32\Drivers\FPSensor.sys;c:\windows\SYSNATIVE\Drivers\FPSensor.sys [x]
S3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys;c:\windows\SYSNATIVE\drivers\mfefirek.sys [x]
S3 mfencbdc;McAfee Inc. mfencbdc;c:\windows\system32\DRIVERS\mfencbdc.sys;c:\windows\SYSNATIVE\DRIVERS\mfencbdc.sys [x]
S3 netr28x;Ralink 802.11n Extensible Wireless Driver;c:\windows\system32\DRIVERS\netr28x.sys;c:\windows\SYSNATIVE\DRIVERS\netr28x.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys;c:\windows\SYSNATIVE\DRIVERS\usbfilter.sys [x]
S3 vm331avs;Digital Camera 1;c:\windows\system32\Drivers\vm331avs.sys;c:\windows\SYSNATIVE\Drivers\vm331avs.sys [x]
S3 vmuvcflt;Vimicro USB Camera Filter;c:\windows\system32\Drivers\vmuvcflt.sys;c:\windows\SYSNATIVE\Drivers\vmuvcflt.sys [x]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-11-17 21:10 1210320 ----a-w- c:\program files (x86)\Google\Chrome\Application\31.0.1650.57\Installer\chrmstp.exe
.
Contents of the 'Scheduled Tasks' folder
.
2014-07-12 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-07-06 03:35]
.
2014-07-12 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-07-06 03:35]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\VeriFace Enc]
@="{771C7324-DA80-49D3-8017-753B0AF60951}"
[HKEY_CLASSES_ROOT\CLSID\{771C7324-DA80-49D3-8017-753B0AF60951}]
2011-07-06 03:16 1508192 ----a-w- c:\windows\System32\IcnOvrly.dll
.
------- Supplementary Scan -------
.
uStart Page = about:blank
uLocal Page = c:\windows\system32\blank.htm
mDefault_Search_URL = about:blank
mDefault_Page_URL = about:blank
mStart Page = about:blank
mLocal Page = c:\windows\SysWOW64\blank.htm
mSearch Page = about:blank
TCP: DhcpNameServer = 192.168.1.254
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-Locked - (no file)
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
Toolbar-Locked - (no file)
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
   00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\Lenovo\YouCam\YCMMirage.exe
c:\windows\SysWOW64\rundll32.exe
.
**************************************************************************
.
Completion time: 2014-07-12  09:57:22 - machine was rebooted
ComboFix-quarantined-files.txt  2014-07-12 14:57
.
Pre-Run: 228,385,562,624 bytes free
Post-Run: 227,433,529,344 bytes free
.
- - End Of File - - 9AAEB64DBB67CAF7904589788A3E954D
5C616939100B85E558DA92B899A0FC36
 

 


  • 0

#7
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,886 posts
Hello and thank you for the logs. :) I only see one small item in the OTL log that needs to be removed. Let's remove that item and then take a look with TDSSKiller and see if it reveals anything.


Please disable your antivirus for the duration of my instructions. Don't forget to re-enable them after you have completed the steps.


Step 1: Fix with OTL


Let's run an OTL fix:

Warning: This fix is to be used on this system and this system ONLY. Using this fix on any other machine other than yours can seriously damage it.

Be advised that when the fix commences, it will shut down all running processes and you may lose the desktop and icons, they will return on reboot.

Run OTL by double clicking it (Windows Vista, Windows 7, and 8, right click and select "Run as Administrator)
  • Copy the text in the quote box below (do not copy the word "quote") and paste in the in the box marked Custom Scans/Fixes as shown in the graphic below.
otlrunfix.jpg


:Commands
[createrestorepoint]

:OTL
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.

:Files
netsh advfirewall reset /c
netsh advfirewall set allprofiles state on /c
ipconfig /flushdns /c

:Commands
[reboot]

  • Click the Run Fix button at the top of the OTL control panel.
  • Let the program run until it's finished and then reboot the computer.
  • Once your machine has rebooted, a log will open. If the log doesn't open upon reboot, a copy can be found here: C:\_OTL\MovedFiles. Please post that log in your next reply.
If you have any problems, questions, or need further explanation, please post a message in this thread and I will get back to you asap.


Step 2: Scan with TDSSKiller


Please download TDSSKiller to the desktop.

Alternate download is here.
  • Right-click on TDSSKiller.exe and select Run as Administrator to start the program and follow the prompts.
  • When the main GUI(graphical user interface) window opens, click on Change Parameters
  • Under Additional options, select both Verify driver digital signatures & Detect TDLFS File System >> OK
  • Click on Start Scan, the scan will run.
  • When the scan has finished, if it finds anything please click on the drop down arrow next to Cure and select Skip
  • A Report will have been created by TDSSKiller in your root directory C:\
  • To find the log go to Start(Windows 7 Orb) > Computer > C: >> TDSSKiller.V.V.V.VV_DD.DD.YYYY_TT.TT.TT_log <-- The letters denote the version and date & time etc.
  • Post the contents of that log in your next reply please.
Note: Do not have TDSSKiller remove anything if found at this point in time!


Things I need to see in your next post:

OTL Fix Log

TDSSKiller Log

  • 0

#8
Tuttle68

Tuttle68

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

Here are the logs.

 

But first after running the OTL fix and tdsskiller I noticed something after the PC reboot which is interesting.  On the desktop I see two files both titled as "desktop.ini" with different sizes and creation dates and I also see another two of these files in the Documents folder.

 

OTL Log

========== COMMANDS ==========
Restore point Set: OTL Restore Point
========== OTL ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
========== FILES ==========
< netsh advfirewall reset /c >
Ok.
C:\Users\heinkenszand\Desktop\cmd.bat deleted successfully.
C:\Users\heinkenszand\Desktop\cmd.txt deleted successfully.
< netsh advfirewall set allprofiles state on /c >
Ok.
C:\Users\heinkenszand\Desktop\cmd.bat deleted successfully.
C:\Users\heinkenszand\Desktop\cmd.txt deleted successfully.
< ipconfig /flushdns /c >
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
C:\Users\heinkenszand\Desktop\cmd.bat deleted successfully.
C:\Users\heinkenszand\Desktop\cmd.txt deleted successfully.
========== COMMANDS ==========
 
OTL by OldTimer - Version 3.2.69.0 log created on 07122014_163930
 

 

tdsskiller log

16:56:42.0102 0x0cec  TDSS rootkit removing tool 3.0.0.40 Jul 10 2014 12:37:58
16:56:49.0808 0x0cec  ============================================================
16:56:49.0808 0x0cec  Current date / time: 2014/07/12 16:56:49.0808
16:56:49.0808 0x0cec  SystemInfo:
16:56:49.0808 0x0cec  
16:56:49.0808 0x0cec  OS Version: 6.1.7601 ServicePack: 1.0
16:56:49.0808 0x0cec  Product type: Workstation
16:56:49.0808 0x0cec  ComputerName: HEINKENSZAND-PC
16:56:49.0808 0x0cec  UserName: heinkenszand
16:56:49.0808 0x0cec  Windows directory: C:\windows
16:56:49.0808 0x0cec  System windows directory: C:\windows
16:56:49.0808 0x0cec  Running under WOW64
16:56:49.0808 0x0cec  Processor architecture: Intel x64
16:56:49.0808 0x0cec  Number of processors: 2
16:56:49.0808 0x0cec  Page size: 0x1000
16:56:49.0808 0x0cec  Boot type: Normal boot
16:56:49.0808 0x0cec  ============================================================
16:56:59.0948 0x0cec  KLMD registered as C:\windows\system32\drivers\59296138.sys
16:57:00.0260 0x0cec  System UUID: {86CCBEA0-8168-2ACC-7F28-2D10B3ED8D26}
16:57:01.0118 0x0cec  Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 ( 298.09 Gb ), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:57:01.0150 0x0cec  ============================================================
16:57:01.0150 0x0cec  \Device\Harddisk0\DR0:
16:57:01.0150 0x0cec  MBR partitions:
16:57:01.0150 0x0cec  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x64000
16:57:01.0150 0x0cec  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x64800, BlocksNum 0x1FC49800
16:57:01.0165 0x0cec  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x1FCAE800, BlocksNum 0x39FD800
16:57:01.0165 0x0cec  ============================================================
16:57:01.0243 0x0cec  C: <-> \Device\Harddisk0\DR0\Partition2
16:57:01.0384 0x0cec  D: <-> \Device\Harddisk0\DR0\Partition3
16:57:01.0384 0x0cec  ============================================================
16:57:01.0384 0x0cec  Initialize success
16:57:01.0384 0x0cec  ============================================================
16:58:39.0086 0x1244  ============================================================
16:58:39.0086 0x1244  Scan started
16:58:39.0086 0x1244  Mode: Manual; SigCheck; TDLFS; 
16:58:39.0086 0x1244  ============================================================
16:58:39.0086 0x1244  KSN ping started
16:58:41.0770 0x1244  KSN ping finished: true
16:58:43.0782 0x1244  ================ Scan system memory ========================
16:58:43.0782 0x1244  System memory - ok
16:58:43.0782 0x1244  ================ Scan services =============================
16:58:44.0406 0x1244  [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci        C:\windows\system32\drivers\1394ohci.sys
16:58:44.0609 0x1244  1394ohci - ok
16:58:44.0671 0x1244  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI            C:\windows\system32\drivers\ACPI.sys
16:58:44.0718 0x1244  ACPI - ok
16:58:44.0765 0x1244  [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi         C:\windows\system32\drivers\acpipmi.sys
16:58:44.0874 0x1244  AcpiPmi - ok
16:58:44.0905 0x1244  [ 5BBFF8B826EC38D32C26334E079C7EFC, 673D46409F0225A804B55FFB77E82AF34F8C7A93BEEF92DC3DFAC7EFCC5F09B6 ] ACPIVPC         C:\windows\system32\DRIVERS\AcpiVpc.sys
16:58:44.0952 0x1244  ACPIVPC - ok
16:58:45.0015 0x1244  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\windows\system32\drivers\adp94xx.sys
16:58:45.0077 0x1244  adp94xx - ok
16:58:45.0108 0x1244  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\windows\system32\drivers\adpahci.sys
16:58:45.0171 0x1244  adpahci - ok
16:58:45.0202 0x1244  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\windows\system32\drivers\adpu320.sys
16:58:45.0249 0x1244  adpu320 - ok
16:58:45.0280 0x1244  [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc     C:\windows\System32\aelupsvc.dll
16:58:45.0389 0x1244  AeLookupSvc - ok
16:58:45.0451 0x1244  [ FA886682CFC5D36718D3E436AACF10B9, F80AB4F91AA6B5C7ECCB000D8E1BC2CF776DC3D69B3D9EBC2558C19035A6B3AB ] AFD             C:\windows\system32\drivers\afd.sys
16:58:45.0561 0x1244  AFD - ok
16:58:45.0592 0x1244  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\windows\system32\drivers\agp440.sys
16:58:45.0623 0x1244  agp440 - ok
16:58:45.0639 0x1244  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\windows\System32\alg.exe
16:58:45.0717 0x1244  ALG - ok
16:58:45.0748 0x1244  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\windows\system32\drivers\aliide.sys
16:58:45.0779 0x1244  aliide - ok
16:58:45.0826 0x1244  [ C907240FE95DE405E40342419B9D2AFE, 7554AE32E1B626F47EBE7E08D29B0687B1649413359970AD124034F327E8F78F ] AMD External Events Utility C:\windows\system32\atiesrxx.exe
16:58:45.0904 0x1244  AMD External Events Utility - ok
16:58:45.0951 0x1244  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\windows\system32\drivers\amdide.sys
16:58:45.0966 0x1244  amdide - ok
16:58:45.0997 0x1244  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\windows\system32\drivers\amdk8.sys
16:58:46.0060 0x1244  AmdK8 - ok
16:58:46.0668 0x1244  [ 76310C6DC018CE6310E4520789B9E40A, 1D96FDF12C14E25D6C4AD7B888C0FE168087EA6EC5E74B7C44EE0A9AFAE430B5 ] amdkmdag        C:\windows\system32\DRIVERS\atikmdag.sys
16:58:47.0261 0x1244  amdkmdag - ok
16:58:47.0339 0x1244  [ 3CBD33B1903C0A10FB746388EED91370, 02AF03825E1366CA81B809A160B3AACC4C7EB721A306CB205659404AD31B3141 ] amdkmdap        C:\windows\system32\DRIVERS\atikmpag.sys
16:58:47.0433 0x1244  amdkmdap - ok
16:58:47.0479 0x1244  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\windows\system32\DRIVERS\amdppm.sys
16:58:47.0542 0x1244  AmdPPM - ok
16:58:47.0589 0x1244  [ CC3021D064EB6D3C2F949530E2B0BA47, 3BEFF55082E742454283CC963624B3E11EE0BB4AA8B605D8F26CCCDB9FF4AE38 ] amdsata         C:\windows\system32\DRIVERS\amdsata.sys
16:58:47.0620 0x1244  amdsata - ok
16:58:47.0651 0x1244  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\windows\system32\drivers\amdsbs.sys
16:58:47.0682 0x1244  amdsbs - ok
16:58:47.0729 0x1244  [ FFC5A0F6263574EF0D5467496B721F77, 85C949FA223099B33AFCFBC8AC85E82E6CDAAA315F13B7AF1189AC917CB70331 ] amdxata         C:\windows\system32\drivers\amdxata.sys
16:58:47.0760 0x1244  amdxata - ok
16:58:47.0776 0x1244  [ 89A69C3F2F319B43379399547526D952, 8ABDB4B8E106F96EBBA0D4D04C4F432296516E107E7BA5644ED2E50CF9BB491A ] AppID           C:\windows\system32\drivers\appid.sys
16:58:47.0885 0x1244  AppID - ok
16:58:47.0916 0x1244  [ 0BC381A15355A3982216F7172F545DE1, C33AF13CB218F7BF52E967452573DF2ADD20A95C6BF99229794FEF07C4BBE725 ] AppIDSvc        C:\windows\System32\appidsvc.dll
16:58:48.0010 0x1244  AppIDSvc - ok
16:58:48.0057 0x1244  [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo         C:\windows\System32\appinfo.dll
16:58:48.0135 0x1244  Appinfo - ok
16:58:48.0228 0x1244  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\windows\system32\drivers\arc.sys
16:58:48.0259 0x1244  arc - ok
16:58:48.0291 0x1244  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\windows\system32\drivers\arcsas.sys
16:58:48.0337 0x1244  arcsas - ok
16:58:48.0556 0x1244  [ 9A262EDD17F8473B91B333D6B031A901, 05DFBD3A7D83FDE1D062EA719ACA9EC48CB7FD42D17DDD88B82E5D25469ADD23 ] aspnet_state    C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
16:58:48.0603 0x1244  aspnet_state - ok
16:58:48.0634 0x1244  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\windows\system32\DRIVERS\asyncmac.sys
16:58:48.0743 0x1244  AsyncMac - ok
16:58:48.0774 0x1244  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\windows\system32\drivers\atapi.sys
16:58:48.0805 0x1244  atapi - ok
16:58:48.0852 0x1244  [ 4BF5BCA6E2608CD8A00BC4A6673A9F47, 172240231981162F67DD2CF13C6D8C807EFFCE9C24B476F2942BC3E1F41C1A71 ] AtiHDAudioService C:\windows\system32\drivers\AtihdW76.sys
16:58:48.0899 0x1244  AtiHDAudioService - ok
16:58:48.0993 0x1244  [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll
16:58:49.0117 0x1244  AudioEndpointBuilder - ok
16:58:49.0180 0x1244  [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioSrv        C:\windows\System32\Audiosrv.dll
16:58:49.0305 0x1244  AudioSrv - ok
16:58:49.0351 0x1244  [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV        C:\windows\System32\AxInstSV.dll
16:58:49.0429 0x1244  AxInstSV - ok
16:58:49.0507 0x1244  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\windows\system32\drivers\bxvbda.sys
16:58:49.0617 0x1244  b06bdrv - ok
16:58:49.0679 0x1244  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\windows\system32\DRIVERS\b57nd60a.sys
16:58:49.0773 0x1244  b57nd60a - ok
16:58:49.0819 0x1244  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\windows\System32\bdesvc.dll
16:58:49.0866 0x1244  BDESVC - ok
16:58:49.0882 0x1244  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\windows\system32\drivers\Beep.sys
16:58:49.0991 0x1244  Beep - ok
16:58:50.0100 0x1244  [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE             C:\windows\System32\bfe.dll
16:58:50.0178 0x1244  BFE - ok
16:58:50.0256 0x1244  [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS            C:\windows\system32\qmgr.dll
16:58:50.0412 0x1244  BITS - ok
16:58:50.0475 0x1244  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\windows\system32\DRIVERS\blbdrive.sys
16:58:50.0537 0x1244  blbdrive - ok
16:58:50.0599 0x1244  [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser          C:\windows\system32\DRIVERS\bowser.sys
16:58:50.0646 0x1244  bowser - ok
16:58:50.0677 0x1244  [ AAA4F992F879977A000FE8B8C730CD2C, A109D3F7CA9D49B98FDA5CA34C60055690F72400CCC96D48076FA86086E4C74D ] BPntDrv         C:\windows\system32\drivers\BPntDrv.sys
16:58:50.0709 0x1244  BPntDrv - ok
16:58:50.0755 0x1244  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\windows\system32\drivers\BrFiltLo.sys
16:58:50.0818 0x1244  BrFiltLo - ok
16:58:50.0849 0x1244  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\windows\system32\drivers\BrFiltUp.sys
16:58:50.0896 0x1244  BrFiltUp - ok
16:58:50.0958 0x1244  [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP        C:\windows\system32\DRIVERS\bridge.sys
16:58:51.0036 0x1244  BridgeMP - ok
16:58:51.0067 0x1244  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser         C:\windows\System32\browser.dll
16:58:51.0161 0x1244  Browser - ok
16:58:51.0239 0x1244  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\windows\System32\Drivers\Brserid.sys
16:58:51.0317 0x1244  Brserid - ok
16:58:51.0348 0x1244  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\windows\System32\Drivers\BrSerWdm.sys
16:58:51.0426 0x1244  BrSerWdm - ok
16:58:51.0457 0x1244  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\windows\System32\Drivers\BrUsbMdm.sys
16:58:51.0535 0x1244  BrUsbMdm - ok
16:58:51.0567 0x1244  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\windows\System32\Drivers\BrUsbSer.sys
16:58:51.0613 0x1244  BrUsbSer - ok
16:58:51.0645 0x1244  [ CF98190A94F62E405C8CB255018B2315, E1B2540023C4FE9FD588E4B6AE6347DFA565EB3898F21E5360882BF3E8B5E781 ] BthEnum         C:\windows\system32\drivers\BthEnum.sys
16:58:51.0691 0x1244  BthEnum - ok
16:58:51.0707 0x1244  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\windows\system32\drivers\bthmodem.sys
16:58:51.0769 0x1244  BTHMODEM - ok
16:58:51.0801 0x1244  [ 02DD601B708DD0667E1331FA8518E9FF, 7DE6CC4DBB621CD03B01D9CE6CF66EAFE31D39030A391562CD0E278E1D70ADE1 ] BthPan          C:\windows\system32\DRIVERS\bthpan.sys
16:58:51.0879 0x1244  BthPan - ok
16:58:51.0972 0x1244  [ 738D0E9272F59EB7A1449C3EC118E6C4, FE3D32C2A5E4DC21376A0F89C0B2EE024ECF1A3FB99213CC9BBC986ADF7AF080 ] BTHPORT         C:\windows\System32\Drivers\BTHport.sys
16:58:52.0097 0x1244  BTHPORT - ok
16:58:52.0159 0x1244  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\windows\system32\bthserv.dll
16:58:52.0284 0x1244  bthserv - ok
16:58:52.0315 0x1244  [ F188B7394D81010767B6DF3178519A37, 576304E92FD94908F093A6AB5F4D328F25829BE32EC3CA0D29EBFDF5DE83539B ] BTHUSB          C:\windows\System32\Drivers\BTHUSB.sys
16:58:52.0393 0x1244  BTHUSB - ok
16:58:52.0425 0x1244  catchme - ok
16:58:52.0456 0x1244  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\windows\system32\DRIVERS\cdfs.sys
16:58:52.0534 0x1244  cdfs - ok
16:58:52.0581 0x1244  [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom           C:\windows\system32\DRIVERS\cdrom.sys
16:58:52.0659 0x1244  cdrom - ok
16:58:52.0705 0x1244  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc     C:\windows\System32\certprop.dll
16:58:52.0861 0x1244  CertPropSvc - ok
16:58:52.0908 0x1244  [ 7975EABC23768C92B18ED2744A8FD2BE, C81E92B10E2A5F533DC3D2A554F469915DEF8C4F9D9C24D62ACBA8D1A86285AE ] cfwids          C:\windows\system32\drivers\cfwids.sys
16:58:52.0939 0x1244  cfwids - ok
16:58:52.0971 0x1244  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\windows\system32\drivers\circlass.sys
16:58:53.0064 0x1244  circlass - ok
16:58:53.0142 0x1244  [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS            C:\windows\system32\CLFS.sys
16:58:53.0189 0x1244  CLFS - ok
16:58:53.0345 0x1244  [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:58:53.0392 0x1244  clr_optimization_v2.0.50727_32 - ok
16:58:53.0439 0x1244  [ D1CEEA2B47CB998321C579651CE3E4F8, 654013B8FD229A50017B08DEC6CA19C7DDA8CE0771260E057A92625201D539B1 ] clr_optimization_v2.0.50727_64 C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
16:58:53.0485 0x1244  clr_optimization_v2.0.50727_64 - ok
16:58:53.0626 0x1244  [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:58:53.0657 0x1244  clr_optimization_v4.0.30319_32 - ok
16:58:53.0719 0x1244  [ 4AEDAB50F83580D0B4D6CF78191F92AA, D113C47013B018B45161911B96E93AF96A2F3B34FA47061BF6E7A71FBA03194A ] clr_optimization_v4.0.30319_64 C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
16:58:53.0751 0x1244  clr_optimization_v4.0.30319_64 - ok
16:58:53.0766 0x1244  clwvd - ok
16:58:53.0813 0x1244  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\windows\system32\DRIVERS\CmBatt.sys
16:58:53.0860 0x1244  CmBatt - ok
16:58:53.0907 0x1244  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\windows\system32\drivers\cmdide.sys
16:58:53.0969 0x1244  cmdide - ok
16:58:54.0078 0x1244  [ EBF28856F69CF094A902F884CF989706, AD6C9F0BC20AA49EEE5478DA0F856F0EA2B414B63208C5FFB03C9D7F5B59765F ] CNG             C:\windows\system32\Drivers\cng.sys
16:58:54.0156 0x1244  CNG - ok
16:58:54.0359 0x1244  [ A260BE645DD096D90318C8CF98536720, ACFDC643485AAAB40ABB3A00C8D9F2E962AF273B95118F0CD19FB8E93E8BF032 ] CnxtHdAudService C:\windows\system32\drivers\CHDRT64.sys
16:58:54.0468 0x1244  CnxtHdAudService - ok
16:58:54.0515 0x1244  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\windows\system32\drivers\compbatt.sys
16:58:54.0546 0x1244  Compbatt - ok
16:58:54.0562 0x1244  [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus    C:\windows\system32\DRIVERS\CompositeBus.sys
16:58:54.0609 0x1244  CompositeBus - ok
16:58:54.0624 0x1244  COMSysApp - ok
16:58:54.0655 0x1244  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\windows\system32\drivers\crcdisk.sys
16:58:54.0687 0x1244  crcdisk - ok
16:58:54.0733 0x1244  [ 6B400F211BEE880A37A1ED0368776BF4, 2F27C6FA96A1C8CBDA467846DA57E63949A7EA37DB094B13397DDD30114295BD ] CryptSvc        C:\windows\system32\cryptsvc.dll
16:58:54.0796 0x1244  CryptSvc - ok
16:58:54.0858 0x1244  [ F160B26B26BA4AFE8CECC12ED5AC231E, 8DA8921A40B67ACFC7E47A54870181CDA1866901A3E8B3A2393D7C006C6B3A42 ] CxAudMsg        C:\windows\system32\CxAudMsg64.exe
16:58:54.0905 0x1244  CxAudMsg - ok
16:58:54.0967 0x1244  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch      C:\windows\system32\rpcss.dll
16:58:55.0123 0x1244  DcomLaunch - ok
16:58:55.0186 0x1244  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\windows\System32\defragsvc.dll
16:58:55.0326 0x1244  defragsvc - ok
16:58:55.0342 0x1244  [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC            C:\windows\system32\Drivers\dfsc.sys
16:58:55.0451 0x1244  DfsC - ok
16:58:55.0529 0x1244  [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp            C:\windows\system32\dhcpcore.dll
16:58:55.0607 0x1244  Dhcp - ok
16:58:55.0654 0x1244  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\windows\system32\drivers\discache.sys
16:58:55.0763 0x1244  discache - ok
16:58:55.0794 0x1244  [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk            C:\windows\system32\drivers\disk.sys
16:58:55.0825 0x1244  Disk - ok
16:58:55.0888 0x1244  [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache        C:\windows\System32\dnsrslvr.dll
16:58:55.0950 0x1244  Dnscache - ok
16:58:55.0997 0x1244  [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc         C:\windows\System32\dot3svc.dll
16:58:56.0106 0x1244  dot3svc - ok
16:58:56.0137 0x1244  [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS             C:\windows\system32\dps.dll
16:58:56.0231 0x1244  DPS - ok
16:58:56.0278 0x1244  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud         C:\windows\system32\drivers\drmkaud.sys
16:58:56.0340 0x1244  drmkaud - ok
16:58:56.0512 0x1244  [ 88612F1CE3BF42256913BF6E61C70D52, 7CF190F83FA8F15C33008EB381D3E345CEF37CBC046227DED26B36799EF4D9A7 ] DXGKrnl         C:\windows\System32\drivers\dxgkrnl.sys
16:58:56.0590 0x1244  DXGKrnl - ok
16:58:56.0637 0x1244  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\windows\System32\eapsvc.dll
16:58:56.0746 0x1244  EapHost - ok
16:58:56.0949 0x1244  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\windows\system32\drivers\evbda.sys
16:58:57.0214 0x1244  ebdrv - ok
16:58:57.0276 0x1244  [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] EFS             C:\windows\System32\lsass.exe
16:58:57.0323 0x1244  EFS - ok
16:58:57.0588 0x1244  [ 2C1A297638E4319179A1112D4D6522B8, A5A9A82245D631EE50C9F5BF22C85B18E4BAABAB1C559E1833164578C2EC618F ] EgisTec Service C:\Program Files (x86)\EgisTec BioExcess\EgisService.exe
16:58:57.0651 0x1244  EgisTec Service - ok
16:58:57.0775 0x1244  [ 0AC3BAA7DF250C76DD9BCFC51565CB5F, 018F0DABF6B948E39423CE899BEFC864240402D5F31B86BEAD655ABEF4AFAFC3 ] EgisTec Service Help C:\Program Files (x86)\EgisTec Port Locker\Egishlpsvc.exe
16:58:57.0807 0x1244  EgisTec Service Help - ok
16:58:58.0025 0x1244  [ 7745AAFFB61438C28C75E18CE98D4E64, 236FFA327A6EC1DB952B23ECAAA4969241F15376D374CDFD39916E1C0882B216 ] EgisTec Ticket Service C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
16:58:58.0087 0x1244  EgisTec Ticket Service - ok
16:58:58.0165 0x1244  [ 33708C6D915F8DE734CF3ABB0731515B, AE4FFC410C0A90C94C196E04DEACD0E707750D14DEC460D6DD79140320FE62B0 ] EgisTecFF       C:\windows\system32\DRIVERS\EgisTecFF.sys
16:58:58.0197 0x1244  EgisTecFF - ok
16:58:58.0415 0x1244  [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr         C:\windows\ehome\ehRecvr.exe
16:58:58.0524 0x1244  ehRecvr - ok
16:58:58.0571 0x1244  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\windows\ehome\ehsched.exe
16:58:58.0618 0x1244  ehSched - ok
16:58:58.0758 0x1244  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\windows\system32\drivers\elxstor.sys
16:58:58.0805 0x1244  elxstor - ok
16:58:58.0836 0x1244  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\windows\system32\drivers\errdev.sys
16:58:58.0883 0x1244  ErrDev - ok
16:58:58.0977 0x1244  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\windows\system32\es.dll
16:58:59.0117 0x1244  EventSystem - ok
16:58:59.0179 0x1244  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat           C:\windows\system32\drivers\exfat.sys
16:58:59.0273 0x1244  exfat - ok
16:58:59.0320 0x1244  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat         C:\windows\system32\drivers\fastfat.sys
16:58:59.0429 0x1244  fastfat - ok
16:58:59.0554 0x1244  [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax             C:\windows\system32\fxssvc.exe
16:58:59.0632 0x1244  Fax - ok
16:58:59.0663 0x1244  [ 0BDD7984DB7AAFF6DFEFD11D82D473DB, 616B20DD438DA1F18949DD99513889D47A5773E7FD98776B61A2A654733C855E ] fbfmon          C:\windows\system32\drivers\fbfmon.sys
16:58:59.0694 0x1244  fbfmon - ok
16:58:59.0741 0x1244  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\windows\system32\drivers\fdc.sys
16:58:59.0803 0x1244  fdc - ok
16:58:59.0835 0x1244  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\windows\system32\fdPHost.dll
16:58:59.0913 0x1244  fdPHost - ok
16:58:59.0928 0x1244  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\windows\system32\fdrespub.dll
16:59:00.0037 0x1244  FDResPub - ok
16:59:00.0069 0x1244  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\windows\system32\drivers\fileinfo.sys
16:59:00.0115 0x1244  FileInfo - ok
16:59:00.0131 0x1244  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\windows\system32\drivers\filetrace.sys
16:59:00.0209 0x1244  Filetrace - ok
16:59:00.0240 0x1244  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\windows\system32\drivers\flpydisk.sys
16:59:00.0287 0x1244  flpydisk - ok
16:59:00.0318 0x1244  [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr          C:\windows\system32\drivers\fltmgr.sys
16:59:00.0365 0x1244  FltMgr - ok
16:59:00.0474 0x1244  [ C4C183E6551084039EC862DA1C945E3D, 0874A2ACDD24D64965AA9A76E9C818E216880AE4C9A2E07ED932EE404585CEE6 ] FontCache       C:\windows\system32\FntCache.dll
16:59:00.0583 0x1244  FontCache - ok
16:59:00.0646 0x1244  [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
16:59:00.0661 0x1244  FontCache3.0.0.0 - ok
16:59:00.0708 0x1244  [ D0DB8215A1508D367481783CBE196D5B, C4EEE2D078067859C4700DC1B4B5B613AFAF60401AB76CBDBB7D378579B357F5 ] FPSensor        C:\windows\system32\Drivers\FPSensor.sys
16:59:00.0739 0x1244  FPSensor - ok
16:59:00.0786 0x1244  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\windows\system32\drivers\FsDepends.sys
16:59:00.0817 0x1244  FsDepends - ok
16:59:00.0849 0x1244  [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec          C:\windows\system32\drivers\Fs_Rec.sys
16:59:00.0880 0x1244  Fs_Rec - ok
16:59:00.0973 0x1244  [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol          C:\windows\system32\DRIVERS\fvevol.sys
16:59:01.0020 0x1244  fvevol - ok
16:59:01.0083 0x1244  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\windows\system32\drivers\gagp30kx.sys
16:59:01.0129 0x1244  gagp30kx - ok
16:59:01.0223 0x1244  [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc           C:\windows\System32\gpsvc.dll
16:59:01.0348 0x1244  gpsvc - ok
16:59:01.0426 0x1244  [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:59:01.0457 0x1244  gupdate - ok
16:59:01.0473 0x1244  [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:59:01.0504 0x1244  gupdatem - ok
16:59:01.0597 0x1244  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\windows\system32\drivers\hcw85cir.sys
16:59:01.0660 0x1244  hcw85cir - ok
16:59:01.0753 0x1244  [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
16:59:01.0831 0x1244  HdAudAddService - ok
16:59:01.0863 0x1244  [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus        C:\windows\system32\DRIVERS\HDAudBus.sys
16:59:01.0925 0x1244  HDAudBus - ok
16:59:01.0956 0x1244  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\windows\system32\drivers\HidBatt.sys
16:59:02.0019 0x1244  HidBatt - ok
16:59:02.0050 0x1244  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\windows\system32\drivers\hidbth.sys
16:59:02.0128 0x1244  HidBth - ok
16:59:02.0159 0x1244  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\windows\system32\drivers\hidir.sys
16:59:02.0206 0x1244  HidIr - ok
16:59:02.0237 0x1244  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\windows\System32\hidserv.dll
16:59:02.0346 0x1244  hidserv - ok
16:59:02.0409 0x1244  [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb          C:\windows\system32\DRIVERS\hidusb.sys
16:59:02.0471 0x1244  HidUsb - ok
16:59:02.0549 0x1244  [ 29F981739E50305128022CBE10B3659C, 25060937145B0DCA8CD088E78993BFEF1430CDDFF433E606AFC93993CBBF4B3E ] HipShieldK      C:\windows\system32\drivers\HipShieldK.sys
16:59:02.0596 0x1244  HipShieldK - ok
16:59:02.0611 0x1244  [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc          C:\windows\system32\kmsvc.dll
16:59:02.0721 0x1244  hkmsvc - ok
16:59:02.0767 0x1244  [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\windows\system32\ListSvc.dll
16:59:02.0845 0x1244  HomeGroupListener - ok
16:59:02.0892 0x1244  [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\windows\system32\provsvc.dll
16:59:02.0970 0x1244  HomeGroupProvider - ok
16:59:03.0126 0x1244  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] HomeNetSvc      C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
16:59:03.0173 0x1244  HomeNetSvc - ok
16:59:03.0251 0x1244  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD          C:\windows\system32\drivers\HpSAMD.sys
16:59:03.0298 0x1244  HpSAMD - ok
16:59:03.0360 0x1244  [ 0EA7DE1ACB728DD5A369FD742D6EEE28, 21C489412EB33A12B22290EB701C19BA57006E8702E76F730954F0784DDE9779 ] HTTP            C:\windows\system32\drivers\HTTP.sys
16:59:03.0501 0x1244  HTTP - ok
16:59:03.0516 0x1244  [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy        C:\windows\system32\drivers\hwpolicy.sys
16:59:03.0547 0x1244  hwpolicy - ok
16:59:03.0594 0x1244  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\windows\system32\DRIVERS\i8042prt.sys
16:59:03.0641 0x1244  i8042prt - ok
16:59:03.0750 0x1244  [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV         C:\windows\system32\drivers\iaStorV.sys
16:59:03.0813 0x1244  iaStorV - ok
16:59:03.0922 0x1244  [ 5988FC40F8DB5B0739CD1E3A5D0D78BD, 2B9512324DBA4A97F6AC34E8067EE08E3B6874CD60F6CB4209AFC22A34D2BE99 ] idsvc           C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
16:59:04.0000 0x1244  idsvc - ok
16:59:04.0047 0x1244  IEEtwCollectorService - ok
16:59:04.0093 0x1244  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\windows\system32\drivers\iirsp.sys
16:59:04.0140 0x1244  iirsp - ok
16:59:04.0234 0x1244  [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT          C:\windows\System32\ikeext.dll
16:59:04.0343 0x1244  IKEEXT - ok
16:59:04.0405 0x1244  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\windows\system32\drivers\intelide.sys
16:59:04.0437 0x1244  intelide - ok
16:59:04.0468 0x1244  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\windows\system32\drivers\intelppm.sys
16:59:04.0546 0x1244  intelppm - ok
16:59:04.0593 0x1244  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\windows\system32\ipbusenum.dll
16:59:04.0702 0x1244  IPBusEnum - ok
16:59:04.0733 0x1244  [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver  C:\windows\system32\DRIVERS\ipfltdrv.sys
16:59:04.0842 0x1244  IpFilterDriver - ok
16:59:04.0920 0x1244  [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc        C:\windows\System32\iphlpsvc.dll
16:59:04.0998 0x1244  iphlpsvc - ok
16:59:05.0061 0x1244  [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV         C:\windows\system32\drivers\IPMIDrv.sys
16:59:05.0123 0x1244  IPMIDRV - ok
16:59:05.0154 0x1244  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT           C:\windows\system32\drivers\ipnat.sys
16:59:05.0279 0x1244  IPNAT - ok
16:59:05.0310 0x1244  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\windows\system32\drivers\irenum.sys
16:59:05.0404 0x1244  IRENUM - ok
16:59:05.0435 0x1244  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\windows\system32\drivers\isapnp.sys
16:59:05.0466 0x1244  isapnp - ok
16:59:05.0513 0x1244  [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt        C:\windows\system32\drivers\msiscsi.sys
16:59:05.0560 0x1244  iScsiPrt - ok
16:59:05.0591 0x1244  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\windows\system32\DRIVERS\kbdclass.sys
16:59:05.0622 0x1244  kbdclass - ok
16:59:05.0653 0x1244  [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid          C:\windows\system32\DRIVERS\kbdhid.sys
16:59:05.0716 0x1244  kbdhid - ok
16:59:05.0747 0x1244  [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] KeyIso          C:\windows\system32\lsass.exe
16:59:05.0794 0x1244  KeyIso - ok
16:59:05.0841 0x1244  [ 353009DEDF918B2A51414F330CF72DEC, BF157D6E329F26E02FA16271B751B421396040DBB1D7BF9B2E0A21BC569672E2 ] KSecDD          C:\windows\system32\Drivers\ksecdd.sys
16:59:05.0903 0x1244  KSecDD - ok
16:59:05.0981 0x1244  [ 1C2D8E18AA8FD50CD04C15CC27F7F5AB, 4BA3B0F9F01BD47D66091D3AD86B69A523981D61DFB4D677F2CD39405B2DA989 ] KSecPkg         C:\windows\system32\Drivers\ksecpkg.sys
16:59:06.0028 0x1244  KSecPkg - ok
16:59:06.0043 0x1244  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\windows\system32\drivers\ksthunk.sys
16:59:06.0153 0x1244  ksthunk - ok
16:59:06.0199 0x1244  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\windows\system32\msdtckrm.dll
16:59:06.0324 0x1244  KtmRm - ok
16:59:06.0371 0x1244  [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer    C:\windows\System32\srvsvc.dll
16:59:06.0465 0x1244  LanmanServer - ok
16:59:06.0543 0x1244  [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\windows\System32\wkssvc.dll
16:59:06.0636 0x1244  LanmanWorkstation - ok
16:59:06.0667 0x1244  [ BE166935083F9C38EDFDC21B9A7A679B, 89C64DBE58E1B974208AAAA5CC757C599B1439C205C3C48BF16BA054A06DBC94 ] LHDmgr          C:\windows\system32\DRIVERS\LhdX64.sys
16:59:06.0699 0x1244  LHDmgr - ok
16:59:06.0714 0x1244  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\windows\system32\DRIVERS\lltdio.sys
16:59:06.0839 0x1244  lltdio - ok
16:59:06.0886 0x1244  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\windows\System32\lltdsvc.dll
16:59:07.0042 0x1244  lltdsvc - ok
16:59:07.0057 0x1244  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\windows\System32\lmhsvc.dll
16:59:07.0151 0x1244  lmhosts - ok
16:59:07.0198 0x1244  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\windows\system32\drivers\lsi_fc.sys
16:59:07.0245 0x1244  LSI_FC - ok
16:59:07.0260 0x1244  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\windows\system32\drivers\lsi_sas.sys
16:59:07.0307 0x1244  LSI_SAS - ok
16:59:07.0323 0x1244  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\windows\system32\drivers\lsi_sas2.sys
16:59:07.0354 0x1244  LSI_SAS2 - ok
16:59:07.0369 0x1244  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\windows\system32\drivers\lsi_scsi.sys
16:59:07.0416 0x1244  LSI_SCSI - ok
16:59:07.0447 0x1244  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\windows\system32\drivers\luafv.sys
16:59:07.0557 0x1244  luafv - ok
16:59:07.0650 0x1244  [ F928E5E72BBA15DD0CE9A26E0413D236, D63EFA1408084F524464729C2F3BE16550E07ACE2BF8A00699A8438079AD381B ] McAfee SiteAdvisor Service C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
16:59:07.0697 0x1244  McAfee SiteAdvisor Service - ok
16:59:07.0806 0x1244  [ 96E7AA538AB0EDECCAB3862BA4B66232, 8AF460093B4DC1FD81C4508A57B6A80A7FB2E1818A3405506B8DB5B521615FB6 ] McAPExe         C:\Program Files\McAfee\MSC\McAPExe.exe
16:59:07.0853 0x1244  McAPExe - ok
16:59:07.0900 0x1244  [ F48571922079BBAB289C57BAFEFE88F3, B2601773BD8B5D53A37B12B87F6BA072AD07D29A436BDCC73B7B4484AAF52BCD ] McAWFwk         c:\PROGRA~1\mcafee\msc\mcawfwk.exe
16:59:07.0947 0x1244  McAWFwk - ok
16:59:07.0993 0x1244  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] McMPFSvc        C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
16:59:08.0040 0x1244  McMPFSvc - ok
16:59:08.0071 0x1244  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] McNaiAnn        C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
16:59:08.0118 0x1244  McNaiAnn - ok
16:59:08.0321 0x1244  [ 63D93A440E7AC015D85B9A3DA0C1BBAF, 849A13E91B041DEC2A47F5BE65ADBA6CAC8AF01675D0D8E13730724B54B4DD15 ] McODS           C:\Program Files\mcafee\VirusScan\mcods.exe
16:59:08.0383 0x1244  McODS - ok
16:59:08.0415 0x1244  [ F928E5E72BBA15DD0CE9A26E0413D236, D63EFA1408084F524464729C2F3BE16550E07ACE2BF8A00699A8438079AD381B ] McOobeSv        C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
16:59:08.0461 0x1244  McOobeSv - ok
16:59:08.0508 0x1244  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] mcpltsvc        C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
16:59:08.0555 0x1244  mcpltsvc - ok
16:59:08.0586 0x1244  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] McProxy         C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
16:59:08.0633 0x1244  McProxy - ok
16:59:08.0695 0x1244  [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc         C:\windows\system32\Mcx2Svc.dll
16:59:08.0758 0x1244  Mcx2Svc - ok
16:59:08.0773 0x1244  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\windows\system32\drivers\megasas.sys
16:59:08.0805 0x1244  megasas - ok
16:59:08.0867 0x1244  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\windows\system32\drivers\MegaSR.sys
16:59:08.0914 0x1244  MegaSR - ok
16:59:08.0976 0x1244  [ 10947232B5F652B282DD57F845875896, 4881CA76924AB55D93D727E3CDDD25A74F77EA0B62E4071ADBE7C649B3254E43 ] mfeapfk         C:\windows\system32\drivers\mfeapfk.sys
16:59:09.0007 0x1244  mfeapfk - ok
16:59:09.0039 0x1244  [ A611EDB749D446A5F7D2DE8D5CCBC4AE, A9D2409872A578C83A610B6E91C68C30813205C43D3FDD94D8A1893E80DAD500 ] mfeavfk         C:\windows\system32\drivers\mfeavfk.sys
16:59:09.0085 0x1244  mfeavfk - ok
16:59:09.0210 0x1244  [ BBC716D161B412F3298C105B9382864F, EB678BE0AC52268CA1AAFDD5D7ED2216DA6FA8C98735AC39983AFAF14F029EE5 ] mfecore         C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
16:59:09.0304 0x1244  mfecore - ok
16:59:09.0397 0x1244  [ 1D57A3BCBFE09980993F2899E95ECF1A, B2C5A72B316D18A94D4B1939E135CF21C72198102B68CE5C5D63B4E1C766635F ] mfefire         C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
16:59:09.0444 0x1244  mfefire - ok
16:59:09.0507 0x1244  [ 45457CB3601D054D70DBC372BBE2A8E8, 16F66921DF0059595EC8CEF13D4C21C27146360236877DCC2F1887A9D0F8E996 ] mfefirek        C:\windows\system32\drivers\mfefirek.sys
16:59:09.0569 0x1244  mfefirek - ok
16:59:09.0694 0x1244  [ DD264F5A7EE58C48BD5085563C9E8191, B36781946865851F75A585D6874421D67DA8986415C3E164C92240189E567572 ] mfehidk         C:\windows\system32\drivers\mfehidk.sys
16:59:09.0756 0x1244  mfehidk - ok
16:59:09.0834 0x1244  [ 57EC9D22D989DD67E91A51BE082B1083, 4DF70334ACF3B34403E8C4B73B90298B465C481FD79EFDA756B147642CC7E27C ] mfencbdc        C:\windows\system32\DRIVERS\mfencbdc.sys
16:59:09.0881 0x1244  mfencbdc - ok
16:59:09.0928 0x1244  [ FCEEE953517CA72E4238954467CD63E8, B83FCF5CD882D9325729A1B347BAF741E51BC10B3ED0A47AF977D47BB68B19B5 ] mfencrk         C:\windows\system32\DRIVERS\mfencrk.sys
16:59:09.0959 0x1244  mfencrk - ok
16:59:10.0021 0x1244  [ BC0DFA8EBC3DD572834B640DC22847B4, F9391ECB65D8F4FF349240BE1400ED8F7D9094B5A45EF546C8C39FF3ED2F0D6F ] mfevtp          C:\windows\system32\mfevtps.exe
16:59:10.0053 0x1244  mfevtp - ok
16:59:10.0115 0x1244  [ EAE62CCDFB34E27D2E0CF9943695F50E, 27BA32E1631EDF939D8FEAAA6AB5CEE4844B58FCA5E9F349029330D78CC7CA50 ] mfewfpk         C:\windows\system32\drivers\mfewfpk.sys
16:59:10.0162 0x1244  mfewfpk - ok
16:59:10.0209 0x1244  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\windows\system32\mmcss.dll
16:59:10.0302 0x1244  MMCSS - ok
16:59:10.0333 0x1244  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem           C:\windows\system32\drivers\modem.sys
16:59:10.0427 0x1244  Modem - ok
16:59:10.0474 0x1244  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor         C:\windows\system32\DRIVERS\monitor.sys
16:59:10.0536 0x1244  monitor - ok
16:59:10.0583 0x1244  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\windows\system32\DRIVERS\mouclass.sys
16:59:10.0614 0x1244  mouclass - ok
16:59:10.0661 0x1244  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\windows\system32\DRIVERS\mouhid.sys
16:59:10.0723 0x1244  mouhid - ok
16:59:10.0770 0x1244  [ 32E7A3D591D671A6DF2DB515A5CBE0FA, 47CED0B9067AE8BF5EEF60B17ADEE5906BEDCC56E4CB460B7BFBC12BB9A69E63 ] mountmgr        C:\windows\system32\drivers\mountmgr.sys
16:59:10.0801 0x1244  mountmgr - ok
16:59:10.0833 0x1244  [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio            C:\windows\system32\drivers\mpio.sys
16:59:10.0864 0x1244  mpio - ok
16:59:10.0895 0x1244  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\windows\system32\drivers\mpsdrv.sys
16:59:10.0973 0x1244  mpsdrv - ok
16:59:11.0051 0x1244  [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc          C:\windows\system32\mpssvc.dll
16:59:11.0176 0x1244  MpsSvc - ok
16:59:11.0238 0x1244  [ 1A4F75E63C9FB84B85DFFC6B63FD5404, 01AFA6DBB4CDE55FE4EA05BBE8F753A4266F8D072EA1EE01DB79F5126780C21F ] MRxDAV          C:\windows\system32\drivers\mrxdav.sys
16:59:11.0269 0x1244  MRxDAV - ok
16:59:11.0332 0x1244  [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb          C:\windows\system32\DRIVERS\mrxsmb.sys
16:59:11.0425 0x1244  mrxsmb - ok
16:59:11.0457 0x1244  [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10        C:\windows\system32\DRIVERS\mrxsmb10.sys
16:59:11.0503 0x1244  mrxsmb10 - ok
16:59:11.0519 0x1244  [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20        C:\windows\system32\DRIVERS\mrxsmb20.sys
16:59:11.0566 0x1244  mrxsmb20 - ok
16:59:11.0613 0x1244  [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci          C:\windows\system32\drivers\msahci.sys
16:59:11.0628 0x1244  msahci - ok
16:59:11.0675 0x1244  [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm           C:\windows\system32\drivers\msdsm.sys
16:59:11.0706 0x1244  msdsm - ok
16:59:11.0737 0x1244  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\windows\System32\msdtc.exe
16:59:11.0815 0x1244  MSDTC - ok
16:59:11.0847 0x1244  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\windows\system32\drivers\Msfs.sys
16:59:11.0925 0x1244  Msfs - ok
16:59:11.0940 0x1244  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\windows\System32\drivers\mshidkmdf.sys
16:59:12.0018 0x1244  mshidkmdf - ok
16:59:12.0034 0x1244  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\windows\system32\drivers\msisadrv.sys
16:59:12.0081 0x1244  msisadrv - ok
16:59:12.0112 0x1244  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\windows\system32\iscsiexe.dll
16:59:12.0221 0x1244  MSiSCSI - ok
16:59:12.0237 0x1244  msiserver - ok
16:59:12.0268 0x1244  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\windows\system32\drivers\MSKSSRV.sys
16:59:12.0361 0x1244  MSKSSRV - ok
16:59:12.0377 0x1244  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\windows\system32\drivers\MSPCLOCK.sys
16:59:12.0455 0x1244  MSPCLOCK - ok
16:59:12.0486 0x1244  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\windows\system32\drivers\MSPQM.sys
16:59:12.0595 0x1244  MSPQM - ok
16:59:12.0642 0x1244  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC           C:\windows\system32\drivers\MsRPC.sys
16:59:12.0705 0x1244  MsRPC - ok
16:59:12.0736 0x1244  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\windows\system32\DRIVERS\mssmbios.sys
16:59:12.0767 0x1244  mssmbios - ok
16:59:12.0845 0x1244  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\windows\system32\drivers\MSTEE.sys
16:59:12.0939 0x1244  MSTEE - ok
16:59:12.0970 0x1244  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\windows\system32\drivers\MTConfig.sys
16:59:13.0032 0x1244  MTConfig - ok
16:59:13.0095 0x1244  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\windows\system32\Drivers\mup.sys
16:59:13.0126 0x1244  Mup - ok
16:59:13.0157 0x1244  [ 9B1EAC6FAF6F37305E822F5588DC8056, AE0DC044159BB03EE8A39AE0682C8F6A78D89AD5A6192E7006D75850ECD50E9D ] mwlPSDFilter    C:\windows\system32\DRIVERS\mwlPSDFilter.sys
16:59:13.0188 0x1244  mwlPSDFilter - ok
16:59:13.0219 0x1244  [ AD55C1524B296280ED9C6E0D730D35DA, 8E5F9652CFCB325E131CEB2E4871126EB6F940DF7894B2E7F8241F1EF69920ED ] mwlPSDNServ     C:\windows\system32\DRIVERS\mwlPSDNServ.sys
16:59:13.0235 0x1244  mwlPSDNServ - ok
16:59:13.0251 0x1244  [ 2B599E6EC8843637BDD62E7F8F3BA201, 51EE657FC6CA4F2BCC24573B27379231EF30920A559423A860A278C59F4B9F98 ] mwlPSDVDisk     C:\windows\system32\DRIVERS\mwlPSDVDisk.sys
16:59:13.0282 0x1244  mwlPSDVDisk - ok
16:59:13.0360 0x1244  [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent        C:\windows\system32\qagentRT.dll
16:59:13.0469 0x1244  napagent - ok
16:59:13.0516 0x1244  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP     C:\windows\system32\DRIVERS\nwifi.sys
16:59:13.0578 0x1244  NativeWifiP - ok
16:59:13.0687 0x1244  [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS            C:\windows\system32\drivers\ndis.sys
16:59:13.0750 0x1244  NDIS - ok
16:59:13.0781 0x1244  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\windows\system32\DRIVERS\ndiscap.sys
16:59:13.0921 0x1244  NdisCap - ok
16:59:13.0937 0x1244  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\windows\system32\DRIVERS\ndistapi.sys
16:59:14.0015 0x1244  NdisTapi - ok
16:59:14.0046 0x1244  [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio         C:\windows\system32\DRIVERS\ndisuio.sys
16:59:14.0124 0x1244  Ndisuio - ok
16:59:14.0155 0x1244  [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan         C:\windows\system32\DRIVERS\ndiswan.sys
16:59:14.0265 0x1244  NdisWan - ok
16:59:14.0280 0x1244  [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy         C:\windows\system32\drivers\NDProxy.sys
16:59:14.0374 0x1244  NDProxy - ok
16:59:14.0389 0x1244  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS         C:\windows\system32\DRIVERS\netbios.sys
16:59:14.0467 0x1244  NetBIOS - ok
16:59:14.0530 0x1244  [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT           C:\windows\system32\DRIVERS\netbt.sys
16:59:14.0623 0x1244  NetBT - ok
16:59:14.0670 0x1244  [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] Netlogon        C:\windows\system32\lsass.exe
16:59:14.0701 0x1244  Netlogon - ok
16:59:14.0748 0x1244  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\windows\System32\netman.dll
16:59:14.0889 0x1244  Netman - ok
16:59:14.0935 0x1244  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:59:14.0982 0x1244  NetMsmqActivator - ok
16:59:15.0013 0x1244  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:59:15.0045 0x1244  NetPipeActivator - ok
16:59:15.0107 0x1244  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\windows\System32\netprofm.dll
16:59:15.0232 0x1244  netprofm - ok
16:59:15.0435 0x1244  [ 8CE69B2C4934A1C0321F4C8E9C6C4A41, 880A57194D52E4C90BCFAF149C74E3119B5FA5A91C6A3F50A1BBB3C8C35C6921 ] netr28x         C:\windows\system32\DRIVERS\netr28x.sys
16:59:15.0591 0x1244  netr28x - ok
16:59:15.0606 0x1244  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:59:15.0653 0x1244  NetTcpActivator - ok
16:59:15.0653 0x1244  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:59:15.0700 0x1244  NetTcpPortSharing - ok
16:59:15.0731 0x1244  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\windows\system32\drivers\nfrd960.sys
16:59:15.0762 0x1244  nfrd960 - ok
16:59:15.0825 0x1244  [ 8AD77806D336673F270DB31645267293, E23F324913554A23CD043DD27D4305AF62F48C0561A0FC7B7811E55B74B1BE79 ] NlaSvc          C:\windows\System32\nlasvc.dll
16:59:15.0887 0x1244  NlaSvc - ok
16:59:15.0934 0x1244  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\windows\system32\drivers\Npfs.sys
16:59:16.0012 0x1244  Npfs - ok
16:59:16.0043 0x1244  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi             C:\windows\system32\nsisvc.dll
16:59:16.0121 0x1244  nsi - ok
16:59:16.0308 0x1244  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy        C:\windows\system32\drivers\nsiproxy.sys
16:59:16.0542 0x1244  nsiproxy - ok
16:59:16.0823 0x1244  [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs            C:\windows\system32\drivers\Ntfs.sys
16:59:16.0948 0x1244  Ntfs - ok
16:59:16.0979 0x1244  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\windows\system32\drivers\Null.sys
16:59:17.0088 0x1244  Null - ok
16:59:17.0104 0x1244  [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid          C:\windows\system32\drivers\nvraid.sys
16:59:17.0166 0x1244  nvraid - ok
16:59:17.0213 0x1244  [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor          C:\windows\system32\drivers\nvstor.sys
16:59:17.0244 0x1244  nvstor - ok
16:59:17.0291 0x1244  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\windows\system32\drivers\nv_agp.sys
16:59:17.0322 0x1244  nv_agp - ok
16:59:17.0353 0x1244  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\windows\system32\drivers\ohci1394.sys
16:59:17.0400 0x1244  ohci1394 - ok
16:59:17.0447 0x1244  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\windows\system32\pnrpsvc.dll
16:59:17.0509 0x1244  p2pimsvc - ok
16:59:17.0556 0x1244  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\windows\system32\p2psvc.dll
16:59:17.0619 0x1244  p2psvc - ok
16:59:17.0665 0x1244  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\windows\system32\drivers\parport.sys
16:59:17.0697 0x1244  Parport - ok
16:59:17.0743 0x1244  [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr         C:\windows\system32\drivers\partmgr.sys
16:59:17.0790 0x1244  partmgr - ok
16:59:17.0806 0x1244  [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc          C:\windows\System32\pcasvc.dll
16:59:17.0868 0x1244  PcaSvc - ok
16:59:17.0899 0x1244  [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci             C:\windows\system32\drivers\pci.sys
16:59:17.0931 0x1244  pci - ok
16:59:17.0962 0x1244  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\windows\system32\drivers\pciide.sys
16:59:18.0009 0x1244  pciide - ok
16:59:18.0040 0x1244  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\windows\system32\drivers\pcmcia.sys
16:59:18.0071 0x1244  pcmcia - ok
16:59:18.0102 0x1244  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\windows\system32\drivers\pcw.sys
16:59:18.0133 0x1244  pcw - ok
16:59:18.0227 0x1244  [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH          C:\windows\system32\drivers\peauth.sys
16:59:18.0367 0x1244  PEAUTH - ok
16:59:18.0492 0x1244  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\windows\SysWow64\perfhost.exe
16:59:18.0555 0x1244  PerfHost - ok
16:59:18.0679 0x1244  [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla             C:\windows\system32\pla.dll
16:59:18.0898 0x1244  pla - ok
16:59:18.0960 0x1244  [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay        C:\windows\system32\umpnpmgr.dll
16:59:19.0038 0x1244  PlugPlay - ok
16:59:19.0101 0x1244  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\windows\system32\pnrpauto.dll
16:59:19.0179 0x1244  PNRPAutoReg - ok
16:59:19.0210 0x1244  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\windows\system32\pnrpsvc.dll
16:59:19.0272 0x1244  PNRPsvc - ok
16:59:19.0335 0x1244  [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent     C:\windows\System32\ipsecsvc.dll
16:59:19.0444 0x1244  PolicyAgent - ok
16:59:19.0506 0x1244  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\windows\system32\umpo.dll
16:59:19.0631 0x1244  Power - ok
16:59:19.0693 0x1244  [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport    C:\windows\system32\DRIVERS\raspptp.sys
16:59:19.0834 0x1244  PptpMiniport - ok
16:59:19.0865 0x1244  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\windows\system32\drivers\processr.sys
16:59:19.0912 0x1244  Processor - ok
16:59:20.0005 0x1244  [ 53E83F1F6CF9D62F32801CF66D8352A8, 1225FED810BE8E0729EEAE5B340035CCBB9BACD3EF247834400F9B72D05ACE48 ] ProfSvc         C:\windows\system32\profsvc.dll
16:59:20.0083 0x1244  ProfSvc - ok
16:59:20.0115 0x1244  [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] ProtectedStorage C:\windows\system32\lsass.exe
16:59:20.0146 0x1244  ProtectedStorage - ok
16:59:20.0177 0x1244  [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched          C:\windows\system32\DRIVERS\pacer.sys
16:59:20.0286 0x1244  Psched - ok
16:59:20.0458 0x1244  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\windows\system32\drivers\ql2300.sys
16:59:20.0598 0x1244  ql2300 - ok
16:59:20.0645 0x1244  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\windows\system32\drivers\ql40xx.sys
16:59:20.0676 0x1244  ql40xx - ok
16:59:20.0723 0x1244  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\windows\system32\qwave.dll
16:59:20.0817 0x1244  QWAVE - ok
16:59:20.0848 0x1244  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\windows\system32\drivers\qwavedrv.sys
16:59:20.0895 0x1244  QWAVEdrv - ok
16:59:20.0926 0x1244  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\windows\system32\DRIVERS\rasacd.sys
16:59:21.0004 0x1244  RasAcd - ok
16:59:21.0035 0x1244  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\windows\system32\DRIVERS\AgileVpn.sys
16:59:21.0129 0x1244  RasAgileVpn - ok
16:59:21.0175 0x1244  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\windows\System32\rasauto.dll
16:59:21.0300 0x1244  RasAuto - ok
16:59:21.0347 0x1244  [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp         C:\windows\system32\DRIVERS\rasl2tp.sys
16:59:21.0425 0x1244  Rasl2tp - ok
16:59:21.0487 0x1244  [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan          C:\windows\System32\rasmans.dll
16:59:21.0597 0x1244  RasMan - ok
16:59:21.0628 0x1244  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\windows\system32\DRIVERS\raspppoe.sys
16:59:21.0737 0x1244  RasPppoe - ok
16:59:21.0753 0x1244  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\windows\system32\DRIVERS\rassstp.sys
16:59:21.0877 0x1244  RasSstp - ok
16:59:21.0940 0x1244  [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss           C:\windows\system32\DRIVERS\rdbss.sys
16:59:22.0065 0x1244  rdbss - ok
16:59:22.0096 0x1244  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\windows\system32\drivers\rdpbus.sys
16:59:22.0143 0x1244  rdpbus - ok
16:59:22.0174 0x1244  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\windows\system32\DRIVERS\RDPCDD.sys
16:59:22.0252 0x1244  RDPCDD - ok
16:59:22.0267 0x1244  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\windows\system32\drivers\rdpencdd.sys
16:59:22.0377 0x1244  RDPENCDD - ok
16:59:22.0423 0x1244  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\windows\system32\drivers\rdprefmp.sys
16:59:22.0501 0x1244  RDPREFMP - ok
16:59:22.0579 0x1244  [ E61608AA35E98999AF9AAEEEA6114B0A, F754CDE89DC96786D2A3C4D19EE2AEF1008E634E4DE3C0CBF927436DE90C04A6 ] RDPWD           C:\windows\system32\drivers\RDPWD.sys
16:59:22.0642 0x1244  RDPWD - ok
16:59:22.0673 0x1244  [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost        C:\windows\system32\drivers\rdyboost.sys
16:59:22.0720 0x1244  rdyboost - ok
16:59:22.0798 0x1244  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\windows\System32\mprdim.dll
16:59:22.0938 0x1244  RemoteAccess - ok
16:59:22.0969 0x1244  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\windows\system32\regsvc.dll
16:59:23.0063 0x1244  RemoteRegistry - ok
16:59:23.0094 0x1244  [ 3DD798846E2C28102B922C56E71B7932, 30B111615D74CB2213997A5C08DD9C8613ADE441D9423CC1C49A753D13CE524D ] RFCOMM          C:\windows\system32\DRIVERS\rfcomm.sys
16:59:23.0172 0x1244  RFCOMM - ok
16:59:23.0235 0x1244  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\windows\System32\RpcEpMap.dll
16:59:23.0359 0x1244  RpcEptMapper - ok
16:59:23.0422 0x1244  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\windows\system32\locator.exe
16:59:23.0469 0x1244  RpcLocator - ok
16:59:23.0531 0x1244  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs           C:\windows\System32\rpcss.dll
16:59:23.0640 0x1244  RpcSs - ok
16:59:23.0687 0x1244  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\windows\system32\DRIVERS\rspndr.sys
16:59:23.0765 0x1244  rspndr - ok
16:59:23.0905 0x1244  [ E54A5586A28D0630A79A68BBAB84BFCF, F6FBF1E4C64351CEB205DDCD17C35EA26439E98F3528F96AE326959A7C26B488 ] RSUSBVSTOR      C:\windows\system32\Drivers\RtsUVStor.sys
16:59:23.0952 0x1244  RSUSBVSTOR - ok
16:59:24.0093 0x1244  [ EE082E06A82FF630351D1E0EBBD3D8D0, 537F1A4108BDA72E8DD271466E7B7FCF39D4D55E4129AB35A409AB7AF2E7D219 ] RTL8167         C:\windows\system32\DRIVERS\Rt64win7.sys
16:59:24.0139 0x1244  RTL8167 - ok
16:59:24.0171 0x1244  [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] SamSs           C:\windows\system32\lsass.exe
16:59:24.0202 0x1244  SamSs - ok
16:59:24.0233 0x1244  [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port        C:\windows\system32\drivers\sbp2port.sys
16:59:24.0280 0x1244  sbp2port - ok
16:59:24.0529 0x1244  [ 794D4B48DFB6E999537C7C3947863463, 93DA8AA20D6B02A3360E7F56150F126E75266E9372E6409D42B89DA588EF49C3 ] SBSDWSCService  C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
16:59:24.0607 0x1244  SBSDWSCService - ok
16:59:24.0670 0x1244  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\windows\System32\SCardSvr.dll
16:59:24.0763 0x1244  SCardSvr - ok
16:59:24.0810 0x1244  [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter        C:\windows\system32\DRIVERS\scfilter.sys
16:59:24.0919 0x1244  scfilter - ok
16:59:24.0997 0x1244  [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule        C:\windows\system32\schedsvc.dll
16:59:25.0185 0x1244  Schedule - ok
16:59:25.0247 0x1244  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc     C:\windows\System32\certprop.dll
16:59:25.0325 0x1244  SCPolicySvc - ok
16:59:25.0387 0x1244  [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC          C:\windows\System32\SDRSVC.dll
16:59:25.0465 0x1244  SDRSVC - ok
16:59:25.0512 0x1244  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\windows\system32\drivers\secdrv.sys
16:59:25.0606 0x1244  secdrv - ok
16:59:25.0621 0x1244  [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon        C:\windows\system32\seclogon.dll
16:59:25.0715 0x1244  seclogon - ok
16:59:25.0731 0x1244  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\windows\system32\sens.dll
16:59:25.0855 0x1244  SENS - ok
16:59:25.0871 0x1244  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\windows\system32\sensrsvc.dll
16:59:25.0933 0x1244  SensrSvc - ok
16:59:25.0980 0x1244  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\windows\system32\drivers\serenum.sys
16:59:26.0043 0x1244  Serenum - ok
16:59:26.0105 0x1244  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\windows\system32\drivers\serial.sys
16:59:26.0167 0x1244  Serial - ok
16:59:26.0183 0x1244  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\windows\system32\drivers\sermouse.sys
16:59:26.0230 0x1244  sermouse - ok
16:59:26.0292 0x1244  [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv      C:\windows\system32\sessenv.dll
16:59:26.0401 0x1244  SessionEnv - ok
16:59:26.0401 0x1244  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\windows\system32\drivers\sffdisk.sys
16:59:26.0448 0x1244  sffdisk - ok
16:59:26.0479 0x1244  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\windows\system32\drivers\sffp_mmc.sys
16:59:26.0542 0x1244  sffp_mmc - ok
16:59:26.0573 0x1244  [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd         C:\windows\system32\drivers\sffp_sd.sys
16:59:26.0604 0x1244  sffp_sd - ok
16:59:26.0620 0x1244  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\windows\system32\drivers\sfloppy.sys
16:59:26.0682 0x1244  sfloppy - ok
16:59:26.0776 0x1244  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\windows\System32\ipnathlp.dll
16:59:26.0901 0x1244  SharedAccess - ok
16:59:26.0963 0x1244  [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\windows\System32\shsvcs.dll
16:59:27.0119 0x1244  ShellHWDetection - ok
16:59:27.0181 0x1244  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\windows\system32\drivers\SiSRaid2.sys
16:59:27.0228 0x1244  SiSRaid2 - ok
16:59:27.0244 0x1244  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\windows\system32\drivers\sisraid4.sys
16:59:27.0275 0x1244  SiSRaid4 - ok
16:59:27.0322 0x1244  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\windows\system32\DRIVERS\smb.sys
16:59:27.0415 0x1244  Smb - ok
16:59:27.0462 0x1244  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\windows\System32\snmptrap.exe
16:59:27.0509 0x1244  SNMPTRAP - ok
16:59:27.0571 0x1244  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\windows\system32\drivers\spldr.sys
16:59:27.0587 0x1244  spldr - ok
16:59:27.0665 0x1244  [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler         C:\windows\System32\spoolsv.exe
16:59:27.0727 0x1244  Spooler - ok
16:59:28.0102 0x1244  [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc          C:\windows\system32\sppsvc.exe
16:59:28.0398 0x1244  sppsvc - ok
16:59:28.0445 0x1244  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\windows\system32\sppuinotify.dll
16:59:28.0539 0x1244  sppuinotify - ok
16:59:28.0648 0x1244  [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv             C:\windows\system32\DRIVERS\srv.sys
16:59:28.0726 0x1244  srv - ok
16:59:28.0819 0x1244  [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2            C:\windows\system32\DRIVERS\srv2.sys
16:59:28.0944 0x1244  srv2 - ok
16:59:28.0975 0x1244  [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet          C:\windows\system32\DRIVERS\srvnet.sys
16:59:29.0007 0x1244  srvnet - ok
16:59:29.0053 0x1244  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\windows\System32\ssdpsrv.dll
16:59:29.0178 0x1244  SSDPSRV - ok
16:59:29.0225 0x1244  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\windows\system32\sstpsvc.dll
16:59:29.0319 0x1244  SstpSvc - ok
16:59:29.0397 0x1244  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\windows\system32\drivers\stexstor.sys
16:59:29.0443 0x1244  stexstor - ok
16:59:29.0553 0x1244  [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc          C:\windows\System32\wiaservc.dll
16:59:29.0631 0x1244  stisvc - ok
16:59:29.0709 0x1244  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\windows\system32\DRIVERS\swenum.sys
16:59:29.0724 0x1244  swenum - ok
16:59:29.0833 0x1244  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\windows\System32\swprv.dll
16:59:29.0989 0x1244  swprv - ok
16:59:30.0114 0x1244  [ 09E811486038F1C06F9E00DFFAAB7A4E, B0D983659CFBD89DA2821171414EB2D9604E02E97AAB4798D64A0FF4E8A3EAB2 ] SynTP           C:\windows\system32\DRIVERS\SynTP.sys
16:59:30.0208 0x1244  SynTP - ok
16:59:30.0442 0x1244  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain         C:\windows\system32\sysmain.dll
16:59:30.0613 0x1244  SysMain - ok
16:59:30.0676 0x1244  [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\windows\System32\TabSvc.dll
16:59:30.0769 0x1244  TabletInputService - ok
16:59:30.0816 0x1244  [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv         C:\windows\System32\tapisrv.dll
16:59:30.0925 0x1244  TapiSrv - ok
16:59:30.0957 0x1244  [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS             C:\windows\System32\tbssvc.dll
16:59:31.0035 0x1244  TBS - ok
16:59:31.0191 0x1244  [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip           C:\windows\system32\drivers\tcpip.sys
16:59:31.0347 0x1244  Tcpip - ok
16:59:31.0503 0x1244  [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6          C:\windows\system32\DRIVERS\tcpip.sys
16:59:31.0627 0x1244  TCPIP6 - ok
16:59:31.0690 0x1244  [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg        C:\windows\system32\drivers\tcpipreg.sys
16:59:31.0721 0x1244  tcpipreg - ok
16:59:31.0768 0x1244  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\windows\system32\drivers\tdpipe.sys
16:59:31.0830 0x1244  TDPIPE - ok
16:59:31.0877 0x1244  [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP           C:\windows\system32\drivers\tdtcp.sys
16:59:31.0939 0x1244  TDTCP - ok
16:59:31.0971 0x1244  [ DDAD5A7AB24D8B65F8D724F5C20FD806, B71F2967A4EE7395E4416C1526CB85368AEA988BDD1F2C9719C48B08FAFA9661 ] tdx             C:\windows\system32\DRIVERS\tdx.sys
16:59:32.0049 0x1244  tdx - ok
16:59:32.0080 0x1244  [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD          C:\windows\system32\DRIVERS\termdd.sys
16:59:32.0111 0x1244  TermDD - ok
16:59:32.0220 0x1244  [ 2E648163254233755035B46DD7B89123, 6FA0D07CE18A3A69D82EE49D875F141E39406E92C34EAC76AC4EB052E6EBCBCD ] TermService     C:\windows\System32\termsrv.dll
16:59:32.0376 0x1244  TermService - ok
16:59:32.0407 0x1244  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\windows\system32\themeservice.dll
16:59:32.0470 0x1244  Themes - ok
16:59:32.0517 0x1244  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\windows\system32\mmcss.dll
16:59:32.0610 0x1244  THREADORDER - ok
16:59:32.0657 0x1244  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\windows\System32\trkwks.dll
16:59:32.0766 0x1244  TrkWks - ok
16:59:32.0860 0x1244  [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
16:59:32.0953 0x1244  TrustedInstaller - ok
16:59:33.0016 0x1244  [ 4CE278FC9671BA81A138D70823FCAA09, CBE501436696E32A3701B9F377B823AC36647B6626595F76CC63E2396AD7D300 ] tssecsrv        C:\windows\system32\DRIVERS\tssecsrv.sys
16:59:33.0094 0x1244  tssecsrv - ok
16:59:33.0156 0x1244  [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt        C:\windows\system32\drivers\tsusbflt.sys
16:59:33.0219 0x1244  TsUsbFlt - ok
16:59:33.0234 0x1244  [ 9CC2CCAE8A84820EAECB886D477CBCB8, 50D8AA2D7477A6618A0C31BB4D1C4887B457865FB1105E2E7B984EEFA337B804 ] TsUsbGD         C:\windows\system32\drivers\TsUsbGD.sys
16:59:33.0297 0x1244  TsUsbGD - ok
16:59:33.0328 0x1244  [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel          C:\windows\system32\DRIVERS\tunnel.sys
16:59:33.0437 0x1244  tunnel - ok
16:59:33.0468 0x1244  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\windows\system32\drivers\uagp35.sys
16:59:33.0499 0x1244  uagp35 - ok
16:59:33.0593 0x1244  [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs            C:\windows\system32\DRIVERS\udfs.sys
16:59:33.0702 0x1244  udfs - ok
16:59:33.0765 0x1244  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\windows\system32\UI0Detect.exe
16:59:33.0811 0x1244  UI0Detect - ok
16:59:33.0843 0x1244  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\windows\system32\drivers\uliagpkx.sys
16:59:33.0874 0x1244  uliagpkx - ok
16:59:33.0874 0x1244  [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus           C:\windows\system32\DRIVERS\umbus.sys
16:59:33.0952 0x1244  umbus - ok
16:59:33.0952 0x1244  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\windows\system32\drivers\umpass.sys
16:59:34.0014 0x1244  UmPass - ok
16:59:34.0077 0x1244  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\windows\System32\upnphost.dll
16:59:34.0201 0x1244  upnphost - ok
16:59:34.0248 0x1244  [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp         C:\windows\system32\DRIVERS\usbccgp.sys
16:59:34.0295 0x1244  usbccgp - ok
16:59:34.0357 0x1244  [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir          C:\windows\system32\drivers\usbcir.sys
16:59:34.0404 0x1244  usbcir - ok
16:59:34.0467 0x1244  [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci         C:\windows\system32\DRIVERS\usbehci.sys
16:59:34.0529 0x1244  usbehci - ok
16:59:34.0560 0x1244  [ 76E2FFAD301490BA27B947C6507752FB, A4C6FC5C3BF428C624D0792873CB01C8F16F49B0E8B36422025A1094F0AAE231 ] usbfilter       C:\windows\system32\DRIVERS\usbfilter.sys
16:59:34.0591 0x1244  usbfilter - ok
16:59:34.0654 0x1244  [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub          C:\windows\system32\DRIVERS\usbhub.sys
16:59:34.0732 0x1244  usbhub - ok
16:59:34.0779 0x1244  [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci         C:\windows\system32\DRIVERS\usbohci.sys
16:59:34.0872 0x1244  usbohci - ok
16:59:34.0903 0x1244  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\windows\system32\DRIVERS\usbprint.sys
16:59:34.0981 0x1244  usbprint - ok
16:59:35.0044 0x1244  [ 9661DA76B4531B2DA272ECCE25A8AF24, FEA93254A21E71A7EB8AD35FCCAD2C1E41F7329EC33B1734F5B41307A34D8637 ] usbscan         C:\windows\system32\drivers\usbscan.sys
16:59:35.0106 0x1244  usbscan - ok
16:59:35.0153 0x1244  [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR         C:\windows\system32\DRIVERS\USBSTOR.SYS
16:59:35.0215 0x1244  USBSTOR - ok
16:59:35.0247 0x1244  [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci         C:\windows\system32\drivers\usbuhci.sys
16:59:35.0293 0x1244  usbuhci - ok
16:59:35.0325 0x1244  [ 1F775DA4CF1A3A1834207E975A72E9D7, 6D3DE5BD3EF3A76E997E5BAF900C51D25308F5A9682D1F62017F577A24095B90 ] usbvideo        C:\windows\System32\Drivers\usbvideo.sys
16:59:35.0403 0x1244  usbvideo - ok
16:59:35.0449 0x1244  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\windows\System32\uxsms.dll
16:59:35.0574 0x1244  UxSms - ok
16:59:35.0605 0x1244  [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] VaultSvc        C:\windows\system32\lsass.exe
16:59:35.0637 0x1244  VaultSvc - ok
16:59:35.0668 0x1244  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\windows\system32\drivers\vdrvroot.sys
16:59:35.0699 0x1244  vdrvroot - ok
16:59:35.0777 0x1244  [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds             C:\windows\System32\vds.exe
16:59:35.0886 0x1244  vds - ok
16:59:35.0949 0x1244  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\windows\system32\DRIVERS\vgapnp.sys
16:59:35.0995 0x1244  vga - ok
16:59:36.0011 0x1244  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\windows\System32\drivers\vga.sys
16:59:36.0120 0x1244  VgaSave - ok
16:59:36.0167 0x1244  [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp           C:\windows\system32\drivers\vhdmp.sys
16:59:36.0198 0x1244  vhdmp - ok
16:59:36.0245 0x1244  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\windows\system32\drivers\viaide.sys
16:59:36.0261 0x1244  viaide - ok
16:59:36.0323 0x1244  [ B977390908F5FC42B66E74D1E96843E6, 16FE34AB2BDF1F3798439D837ECA2E1D3DEDC6B71141C3F77B80181EAE715554 ] vm331avs        C:\windows\system32\Drivers\vm331avs.sys
16:59:36.0370 0x1244  vm331avs - ok
16:59:36.0385 0x1244  [ 40C39413A2458016FF43444750F467CA, 7753B8C622F15D851FC65851586E8C0FDDD0B00D66C54C5222BB1BD06DCD2A90 ] vmuvcflt        C:\windows\system32\Drivers\vmuvcflt.sys
16:59:36.0463 0x1244  vmuvcflt - ok
16:59:36.0510 0x1244  [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr          C:\windows\system32\drivers\volmgr.sys
16:59:36.0557 0x1244  volmgr - ok
16:59:36.0588 0x1244  [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx         C:\windows\system32\drivers\volmgrx.sys
16:59:36.0635 0x1244  volmgrx - ok
16:59:36.0666 0x1244  [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap         C:\windows\system32\drivers\volsnap.sys
16:59:36.0729 0x1244  volsnap - ok
16:59:36.0775 0x1244  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\windows\system32\drivers\vsmraid.sys
16:59:36.0822 0x1244  vsmraid - ok
16:59:37.0041 0x1244  [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS             C:\windows\system32\vssvc.exe
16:59:37.0259 0x1244  VSS - ok
16:59:37.0290 0x1244  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\windows\system32\DRIVERS\vwifibus.sys
16:59:37.0353 0x1244  vwifibus - ok
16:59:37.0415 0x1244  [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt        C:\windows\system32\DRIVERS\vwififlt.sys
16:59:37.0477 0x1244  vwififlt - ok
16:59:37.0540 0x1244  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\windows\system32\w32time.dll
16:59:37.0649 0x1244  W32Time - ok
16:59:37.0665 0x1244  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\windows\system32\drivers\wacompen.sys
16:59:37.0743 0x1244  WacomPen - ok
16:59:37.0774 0x1244  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP          C:\windows\system32\DRIVERS\wanarp.sys
16:59:37.0883 0x1244  WANARP - ok
16:59:37.0899 0x1244  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6        C:\windows\system32\DRIVERS\wanarp.sys
16:59:37.0977 0x1244  Wanarpv6 - ok
16:59:38.0179 0x1244  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc     C:\windows\system32\Wat\WatAdminSvc.exe
16:59:38.0304 0x1244  WatAdminSvc - ok
16:59:38.0460 0x1244  [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine        C:\windows\system32\wbengine.exe
16:59:38.0647 0x1244  wbengine - ok
16:59:38.0725 0x1244  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\windows\System32\wbiosrvc.dll
16:59:38.0788 0x1244  WbioSrvc - ok
16:59:38.0835 0x1244  [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc         C:\windows\System32\wcncsvc.dll
16:59:38.0928 0x1244  wcncsvc - ok
16:59:38.0959 0x1244  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
16:59:39.0006 0x1244  WcsPlugInService - ok
16:59:39.0037 0x1244  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\windows\system32\drivers\wd.sys
16:59:39.0069 0x1244  Wd - ok
16:59:39.0193 0x1244  [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000        C:\windows\system32\drivers\Wdf01000.sys
16:59:39.0271 0x1244  Wdf01000 - ok
16:59:39.0287 0x1244  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost  C:\windows\system32\wdi.dll
16:59:39.0349 0x1244  WdiServiceHost - ok
16:59:39.0365 0x1244  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost   C:\windows\system32\wdi.dll
16:59:39.0427 0x1244  WdiSystemHost - ok
16:59:39.0521 0x1244  [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient       C:\windows\System32\webclnt.dll
16:59:39.0583 0x1244  WebClient - ok
16:59:39.0677 0x1244  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\windows\system32\wecsvc.dll
16:59:39.0802 0x1244  Wecsvc - ok
16:59:39.0833 0x1244  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\windows\System32\wercplsupport.dll
16:59:39.0958 0x1244  wercplsupport - ok
16:59:39.0989 0x1244  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\windows\System32\WerSvc.dll
16:59:40.0083 0x1244  WerSvc - ok
16:59:40.0114 0x1244  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\windows\system32\DRIVERS\wfplwf.sys
16:59:40.0192 0x1244  WfpLwf - ok
16:59:40.0223 0x1244  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\windows\system32\drivers\wimmount.sys
16:59:40.0270 0x1244  WIMMount - ok
16:59:40.0317 0x1244  WinDefend - ok
16:59:40.0348 0x1244  WinHttpAutoProxySvc - ok
16:59:40.0613 0x1244  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\windows\system32\wbem\WMIsvc.dll
16:59:40.0707 0x1244  Winmgmt - ok
16:59:40.0847 0x1244  [ BCB1310604AA415C4508708975B3931E, 9D943F086D454345153A0DD426B4432532A44FD87950386B186E1CAD2AC70565 ] WinRM           C:\windows\system32\WsmSvc.dll
16:59:41.0097 0x1244  WinRM - ok
16:59:41.0159 0x1244  [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb          C:\windows\system32\DRIVERS\WinUsb.sys
16:59:41.0206 0x1244  WinUsb - ok
16:59:41.0284 0x1244  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\windows\System32\wlansvc.dll
16:59:41.0377 0x1244  Wlansvc - ok
16:59:41.0487 0x1244  [ 06C8FA1CF39DE6A735B54D906BA791C6, D8FEC7DE227781CDA876904701B2AA995268F74DCD6CB34AA0296C557FC283B6 ] wlcrasvc        C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
16:59:41.0518 0x1244  wlcrasvc - ok
16:59:41.0939 0x1244  [ 7E47C328FC4768CB8BEAFBCFAFA70362, C98BD6A0C2F70E069D5FD3BAB31BD028DFEAC0490D180BBC28A14BE375897D8C ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
16:59:42.0079 0x1244  wlidsvc - ok
16:59:42.0111 0x1244  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\windows\system32\DRIVERS\wmiacpi.sys
16:59:42.0173 0x1244  WmiAcpi - ok
16:59:42.0235 0x1244  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\windows\system32\wbem\WmiApSrv.exe
16:59:42.0313 0x1244  wmiApSrv - ok
16:59:42.0360 0x1244  WMPNetworkSvc - ok
16:59:42.0376 0x1244  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\windows\System32\wpcsvc.dll
16:59:42.0438 0x1244  WPCSvc - ok
16:59:42.0469 0x1244  [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum      C:\windows\system32\wpdbusenum.dll
16:59:42.0516 0x1244  WPDBusEnum - ok
16:59:42.0579 0x1244  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\windows\system32\drivers\ws2ifsl.sys
16:59:42.0672 0x1244  ws2ifsl - ok
16:59:42.0703 0x1244  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc          C:\windows\system32\wscsvc.dll
16:59:42.0781 0x1244  wscsvc - ok
16:59:42.0781 0x1244  WSearch - ok
16:59:42.0844 0x1244  [ 83575C43B2BFE9AB0661A7F957E843C0, 6FCE62721902A4F35F1A4CED8AF60A0346CFAB657ED92DE4CEFF19BDB830D32D ] wsvd            C:\windows\system32\DRIVERS\wsvd.sys
16:59:42.0891 0x1244  wsvd - ok
16:59:43.0327 0x1244  [ D9EF901DCA379CFE914E9FA13B73B4C4, 3BE9693B7B2AFEE23D72AF5DA211379724D752F0EC18ACB7D3DE3DDFC5AE0004 ] wuauserv        C:\windows\system32\wuaueng.dll
16:59:43.0530 0x1244  wuauserv - ok
16:59:43.0608 0x1244  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\windows\system32\drivers\WudfPf.sys
16:59:43.0671 0x1244  WudfPf - ok
16:59:43.0717 0x1244  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\windows\system32\DRIVERS\WUDFRd.sys
16:59:43.0795 0x1244  WUDFRd - ok
16:59:43.0827 0x1244  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\windows\System32\WUDFSvc.dll
16:59:43.0889 0x1244  wudfsvc - ok
16:59:44.0029 0x1244  [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc         C:\windows\System32\wwansvc.dll
16:59:44.0092 0x1244  WwanSvc - ok
16:59:44.0107 0x1244  ================ Scan global ===============================
16:59:44.0170 0x1244  [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\windows\system32\basesrv.dll
16:59:44.0341 0x1244  [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\windows\system32\winsrv.dll
16:59:44.0373 0x1244  [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\windows\system32\winsrv.dll
16:59:44.0419 0x1244  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\windows\system32\sxssrv.dll
16:59:44.0482 0x1244  [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\windows\system32\services.exe
16:59:44.0497 0x1244  [ Global ] - ok
16:59:44.0513 0x1244  ================ Scan MBR ==================================
16:59:44.0529 0x1244  [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
16:59:47.0243 0x1244  \Device\Harddisk0\DR0 - ok
16:59:47.0243 0x1244  ================ Scan VBR ==================================
16:59:47.0290 0x1244  [ E6D638105400B0CB268163FB3E08D1F6 ] \Device\Harddisk0\DR0\Partition1
16:59:47.0321 0x1244  \Device\Harddisk0\DR0\Partition1 - ok
16:59:47.0337 0x1244  [ 3A8AD0C97CB47CA99079C86EDCDDCBB1 ] \Device\Harddisk0\DR0\Partition2
16:59:47.0368 0x1244  \Device\Harddisk0\DR0\Partition2 - ok
16:59:47.0415 0x1244  [ 2DAB4FC8101853D7422698C9E2EBC3FA ] \Device\Harddisk0\DR0\Partition3
16:59:47.0461 0x1244  \Device\Harddisk0\DR0\Partition3 - ok
16:59:47.0461 0x1244  ================ Scan generic autorun ======================
16:59:47.0477 0x1244  SynTPEnh - ok
16:59:47.0477 0x1244  Waiting for KSN requests completion. In queue: 404
16:59:48.0491 0x1244  Waiting for KSN requests completion. In queue: 404
16:59:49.0505 0x1244  Waiting for KSN requests completion. In queue: 404
16:59:50.0519 0x1244  Waiting for KSN requests completion. In queue: 317
16:59:51.0533 0x1244  Waiting for KSN requests completion. In queue: 317
16:59:52.0547 0x1244  Waiting for KSN requests completion. In queue: 317
16:59:53.0608 0x1244  AV detected via SS2: McAfee Anti-Virus and Anti-Spyware, C:\Program Files\McAfee.com\Agent\mcupdate.exe ( 12.8.0.0 ), 0x52000 ( disabled : updated )
16:59:53.0608 0x1244  FW detected via SS2: McAfee Firewall, C:\Program Files\McAfee.com\Agent\mcupdate.exe ( 12.8.0.0 ), 0x51010 ( enabled )
16:59:56.0275 0x1244  ============================================================
16:59:56.0275 0x1244  Scan finished
16:59:56.0275 0x1244  ============================================================
16:59:56.0291 0x1238  Detected object count: 0
16:59:56.0291 0x1238  Actual detected object count: 0
17:06:06.0258 0x0fac  Deinitialize success

 

 

 


  • 0

#9
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,886 posts

But first after running the OTL fix and tdsskiller I noticed something after the PC reboot which is interesting. On the desktop I see two files both titled as "desktop.ini" with different sizes and creation dates and I also see another two of these files in the Documents folder.


That's an operation of OTL that shows the files that are hidden. They'll be re-hidden when we remove the tools. :thumbsup:

The TDSSKiller log came back clean, how is the machine running?
  • 0

#10
Tuttle68

Tuttle68

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

So far it seems quite a bit more responsive although I have not yet rebooted and enabled McAfee for real-time scanning yet.

 

At this stage since everything seems to be pointed in the right direction what are your suggested next steps?

 

Thank you very much for your patience and assistance.


  • 0

Advertisements


#11
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,886 posts

So far it seems quite a bit more responsive although I have not yet rebooted and enabled McAfee for real-time scanning yet.
 
At this stage since everything seems to be pointed in the right direction what are your suggested next steps?
 
Thank you very much for your patience and assistance.


You're quite welcome. :thumbsup:

Let's run a scan for remnants and orphans and check for out of date programs.



Step 1: Scan with Malwarebytes


Please download Malwarebytes Anti-Malware to your desktop
Install the progamme and select update
Once it has updated select Settings > Detection and Protection
Tick Scan for rootkits

MBAMsettings_zpsb6b9ada0.jpg

Go back to the Dashboard and select Scan Now

MBAMScan_zps8ba7d192.jpg

If threats are detected, click the Apply Actions button, MBAM will ask for a reboot.

MBAMReboot_zps9089ab30.jpg

MBAMLog_zpsade07f42.jpg

On completion of the scan (or after the reboot), start MBAM,

Click History, then Application Logs, then check the Select box by the first Scan Log in the list.

Click View, then click Export, select text file and save to the desktop as MBAM.txt and post in your next reply.



Step 2: Scan with ESET Online Scanner


Please note: You can use Internet Explorer or Firefox for this step. Either browser used will have to be ran in admin mode.

Right click on either the Internet Explorer icon or the Firefox icon in the Start Menu or Quick Launch Bar on the Task bar and select Run as Administrator from the menu.

If you use Firefox, you will be prompted to download esetsmartinstaller_enu.exe. Please do so, then double click it to install it.

Please click on this link and then click the ESET Online Scanner bar ---->esetbar_zps93905f48.jpg
  • Select the option YES, I accept the Terms of Use then click on Start
  • When prompted allow the Add-On/Active X to install.
  • Make sure that the option Remove found threats is NOT checked.
  • Make sure that the option Scan archives is checked.
  • Now click on Advanced Settings and select the following:
  • Scan for potentially unwanted applications
  • Scan for potentially unsafe applications
  • Enable Anti-Stealth Technology
  • Now click on Start
  • The virus signature database will begin to download. Be patient this make take some time depending on the speed of your Internet Connection.
  • When completed the Online Scan will begin automatically. The scan may take several hours.
  • Do not touch either the Mouse or keyboard during the scan otherwise it may stall.
  • Now click on Finish
  • Use notepad to open the logfile located at C:\Program Files(x86)\ESET\EsetOnlineScanner\log.txt.
  • Copy and paste that log as a reply to this topic.
Step 3: SecurityCheck Scan


Download Security Checksecuritycheck_zpsb7736812.jpg by screen317 from here or here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • NOTE: If SecurityCheck aborts and you get the following message: UNSUPPORTED OPERATING SYSTEM! ABORTED! try rebooting the system and then run SecurityCheck again.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.
Things I need to see in your next post:
  • ESET Scan Log
  • MBAM Log
  • SecurityCheck Log

  • 0

#12
Tuttle68

Tuttle68

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

Here is the next set of logs.

 

For some reason the  the eset scanner did not show an option to 'not' clean infections and looked like it quarantined some Mobiegenie signatures.

 

Malwarebytes Anti-Malware
www.malwarebytes.org
 
Scan Date: 7/12/2014
Scan Time: 7:39:13 PM
Logfile: MBAM Log 2014-7-12.txt
Administrator: Yes
 
Version: 2.00.2.1012
Malware Database: v2014.07.12.09
Rootkit Database: v2014.07.09.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
 
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: heinkenszand
 
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 283238
Time Elapsed: 17 min, 1 sec
 
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Warn
PUM: Enabled
 
Processes: 0
(No malicious items detected)
 
Modules: 0
(No malicious items detected)
 
Registry Keys: 0
(No malicious items detected)
 
Registry Values: 0
(No malicious items detected)
 
Registry Data: 0
(No malicious items detected)
 
Folders: 0
(No malicious items detected)
 
Files: 0
(No malicious items detected)
 
Physical Sectors: 0
(No malicious items detected)
 
 
(end)
 
eSet Log

[email protected] as CAB hook log:
OnlineScanner64.ocx - registred OK
OnlineScanner.ocx - registred OK
 
Items eSet took care of

C:\AdwCleaner\Quarantine\C\Users\heinkenszand\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie2.1.32.zip.vir a variant of Win32/Mobogenie.A potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\heinkenszand\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\DaemonProcess.exe.vir a variant of Win32/Mobogenie.A potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\heinkenszand\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\Mobogenie.exe.vir a variant of Win32/Mobogenie.A potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\heinkenszand\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\MUServer.apk.vir a variant of Android/Mobserv.A potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\heinkenszand\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\New_UpdateMoboGenie.exe.vir a variant of Win32/Mobogenie.A potentially unwanted application deleted - quarantined
 
Security Check Log

 Results of screen317's Security Check version 0.99.85  
 Windows 7 Service Pack 1 x64 (UAC is enabled)  
 Internet Explorer 11  
``````````````Antivirus/Firewall Check:`````````````` 
 Windows Firewall Enabled!  
McAfee Anti-Virus and Anti-Spyware   
 WMI entry may not exist for antivirus; attempting automatic update. 
`````````Anti-malware/Other Utilities Check:````````` 
 Spybot - Search & Destroy 
 Google Chrome 30.0.1599.101  
 Google Chrome 31.0.1650.57  
````````Process Check: objlist.exe by Laurent````````  
 Spybot Teatimer.exe is disabled! 
`````````````````System Health check````````````````` 
 Total Fragmentation on Drive C: 2% 
````````````````````End of Log`````````````````````` 
 
 
 

  • 0

#13
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,886 posts

For some reason the the eset scanner did not show an option to 'not' clean infections and looked like it quarantined some Mobiegenie signatures.


No worries :) Everything that ESET found was already quarantined in AdwCleaner's quarantine folder.



Great news, your logs are CLEAN! :thumbsup: :) but we still have a few things we need to address namely:
  • I need to remove the tools we installed on your machine.
  • I also have some tips and information to help protect you in the future.
Step 1: Tool Removal with Delfix and Creation of a clean restore point
  • Download Delfix from here
  • Ensure Remove disinfection tools is ticked
    Also tick:
    • Create registry backup
    • Purge system restore
    delfix.jpg
  • Click Run
The program will run for a few moments and then notepad will open with a log. Please paste the log in your next reply.

You can uninstall ESET Online Scanner at this time.

I recommend keeping Malwarebytes Anti-Malware installed. Make sure to update it and run it at least once a week.

Don't forget to re-enable Spybot's Tea Timer.


Step 2: Keep Programs Updated with FileHipp


Another weapon against malicious programs and viruses is to keeping other programs updated. There are several programs out there that can check for out of date programs on your computer. One is Filehippo. You can run this on a weekly or monthly basis to check your programs for updates and then it will provide a link for you to download them.

Download Filehippo Updatechecker


Step 3: Tips, Information, and Optional Installation of UnChecky


Watch what you open in your emails. If you get an email from an unknown source with any attached files, do not open it.

Be careful of the websites you visit.

When installing new programs, don't be "click happy" and click through the screens. Many programs come with adware in them and are set to install them by default. Several programs require that you uncheck or select no to prevent the installation. Take you time and read each screen as you go. :)

To help protect yourself while on the web, I recommend you read How did I get infected in the first place?

Installation of Unchecky

This is a very good little program that will automatically uncheck any boxes during a software installation. This helps prevent the software from installing any malware that is by default checked while the program is being installed.

Click here to be taken to Unchecky.com

Click the very large Download button.

Click Save

Once downloaded, double click the program (Vista, Win 7, and 8, right click and Run as Administrator)

Once open, click the Install button.


unchecky1_zps667e512d.jpg


Then click Finish

unchecky2_zpsca4e7d0d.jpg


Unchecky is now installed and will help you keep unwanted check boxes unchecked. :thumbsup:

How's the machine running?
  • 0

#14
Tuttle68

Tuttle68

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

The PC seems to be running just fine and is not displaying the same behaviors as before.  Based off of the logs was there any idea what might have been causing the issues?

 

As an aside I notice that the 'hidden' files on the Desktop are still showing.  For the moment I am going to work under the assumption that they will go away after a reboot of the system.

 

Regarding your reference to Sypbots TeaTimer:  Ironically I just read a forum post yesterday on a completely different site that TeaTimer was not a good solution for inexperienced computer users.  The person I am returning this PC to would be in that category so I am reluctant to enable it at this moment.

 

Also do you feel keeping McAfee on this PC is worth the expense?  The system has had McAfee on it from the very beginning but it did not prevent the infection and the user was given a false sense of security by it.

 

Thank you very much for the assistance with this and I now get to return this PC to my neighbor and coach him on what not to do with the system when on the internet.

 

Delfix Log

 

# DelFix v10.7 - Logfile created 13/07/2014 at 05:58:32
# Updated 27/04/2014 by Xplode
# Username : heinkenszand - HEINKENSZAND-PC
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
 
~ Removing disinfection tools ...
 
Deleted : C:\Qoobox
Deleted : C:\_OTL
Deleted : C:\AdwCleaner
Deleted : C:\ComboFix.txt
Deleted : C:\JRT.txt
Deleted : C:\TDSSKiller.3.0.0.40_12.07.2014_16.56.42_log.txt
Deleted : C:\Users\heinkenszand\Desktop\Extras.Txt
Deleted : C:\Users\heinkenszand\Desktop\OTL.Txt
Deleted : C:\Users\heinkenszand\Desktop\OTL.exe
Deleted : C:\Users\heinkenszand\Desktop\SecurityCheck.exe
Deleted : C:\Users\heinkenszand\Desktop\tdsskiller.exe
Deleted : C:\Users\heinkenszand\Desktop\tdsskiller.txt
Deleted : C:\windows\grep.exe
Deleted : C:\windows\PEV.exe
Deleted : C:\windows\NIRCMD.exe
Deleted : C:\windows\MBR.exe
Deleted : C:\windows\SED.exe
Deleted : C:\windows\SWREG.exe
Deleted : C:\windows\SWSC.exe
Deleted : C:\windows\SWXCACLS.exe
Deleted : C:\windows\Zip.exe
Deleted : HKLM\SOFTWARE\OldTimer Tools
Deleted : HKLM\SOFTWARE\AdwCleaner
Deleted : HKLM\SOFTWARE\Swearware
Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\combofix.exe
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys
 
~ Creating registry backup ... OK
 
~ Cleaning system restore ...
 
Deleted : RP #191 [Scheduled Checkpoint | 05/30/2014 14:33:11]
Deleted : RP #192 [Scheduled Checkpoint | 06/08/2014 17:49:41]
Deleted : RP #193 [Windows Update | 06/12/2014 13:03:55]
Deleted : RP #194 [Scheduled Checkpoint | 06/21/2014 16:54:32]
Deleted : RP #195 [Scheduled Checkpoint | 06/29/2014 17:00:15]
Deleted : RP #196 [Scheduled Checkpoint | 07/06/2014 17:20:27]
Deleted : RP #197 [Installed Java 7 Update 55 | 07/09/2014 01:00:53]
Deleted : RP #198 [Windows Update | 07/09/2014 08:00:34]
Deleted : RP #199 [Windows Update | 07/09/2014 12:30:46]
Deleted : RP #200 [Removed Adobe Reader XI (11.0.07). | 07/12/2014 12:37:48]
Deleted : RP #201 [Removed Java 7 Update 55 | 07/12/2014 12:40:43]
Deleted : RP #202 [Configured YouCam | 07/12/2014 15:55:45]
Deleted : RP #203 [OTL Restore Point - 7/12/2014 4:39:41 PM | 07/12/2014 21:39:44]
 
New restore point created !
 
########## - EOF - ##########
 
 
Once again thank you very much for the help and support.  I will pass along my great experience to other folks that need assistance.

  • 0

#15
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,886 posts

The PC seems to be running just fine and is not displaying the same behaviors as before. Based off of the logs was there any idea what might have been causing the issues?


That's good to hear. :) As for the issues, the logs really didn't reveal anything more than lots of adware, so I can't really say it was a specific infection. The automated tools took a lot of it out and we eliminated the rest through the fixes.
 

As an aside I notice that the 'hidden' files on the Desktop are still showing. For the moment I am going to work under the assumption that they will go away after a reboot of the system.


If they do not, as sometimes they may still show when DelFix does the tool removal, click on this link: http://www.bleepingc...s-in-windows-7/ for instructions on hiding the files.
 

Regarding your reference to Sypbots TeaTimer: Ironically I just read a forum post yesterday on a completely different site that TeaTimer was not a good solution for inexperienced computer users. The person I am returning this PC to would be in that category so I am reluctant to enable it at this moment.


Understood.
 

Also do you feel keeping McAfee on this PC is worth the expense? The system has had McAfee on it from the very beginning but it did not prevent the infection and the user was given a false sense of security by it.


I've never been a big fan of McAfee personally. I browse using FF and use an add-on called Adblock Plus to block the ads sites try to force upon me. I use the free version of Avast! on my machine along with the paid version of Malwarebytes for protection. I have a custom hosts file that prevents my machine from visiting a huge number of dodgy sites out there. I've included a link to the MVPhosts site if you'd like to take a look at it.

http://winhelp2002.mvps.org/hosts.htm
 

Thank you very much for the assistance with this and I now get to return this PC to my neighbor and coach him on what not to do with the system when on the internet.


You're very much welcome, it's our pleasure. :)
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP