No problem, things happen!
Zoek.exe v5.0.0.0 Updated 31-12-2014
Tool run by Shushana on Sun 01/04/2015 at 23:24:02.66.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Downloads\Software\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
1/4/2015 11:27:33 PM Zoek.exe System Restore Point Created Succesfully.
==== Empty Folders Check ======================
C:\PROGRA~2\Intuit deleted successfully
C:\PROGRA~2\COMMON~1\Blizzard Entertainment deleted successfully
C:\PROGRA~2\COMMON~1\Symantec Shared deleted successfully
C:\PROGRA~3\DiraTimw deleted successfully
C:\PROGRA~3\FigveZneje deleted successfully
C:\PROGRA~3\MarafUgezl deleted successfully
C:\PROGRA~3\NexonUS deleted successfully
C:\PROGRA~3\Oracle deleted successfully
C:\PROGRA~3\OutujIheft deleted successfully
C:\PROGRA~3\spotflux deleted successfully
C:\PROGRA~3\UayiJvis deleted successfully
C:\PROGRA~3\VevpoYabse deleted successfully
C:\PROGRA~3\VozaToch deleted successfully
C:\PROGRA~3\WiwlApka deleted successfully
C:\PROGRA~3\ZikiSavi deleted successfully
C:\PROGRA~3\ZoszIqrah deleted successfully
C:\Users\Ashley Boutwell\AppData\Roaming\DAEMON Tools Lite deleted successfully
C:\Users\Ashley Boutwell\AppData\Roaming\TP deleted successfully
C:\Users\Ashley Boutwell\AppData\Local\{058F023F-9178-412C-8182-EACF6ADA9B81} deleted successfully
C:\Users\Ashley Boutwell\AppData\Local\{0AB60873-CDFB-4C97-9210-9BF4D852353A} deleted successfully
C:\Users\Ashley Boutwell\AppData\Local\{2E7A818F-5F32-43AF-96A8-1763CA05F46B} deleted successfully
C:\Users\Ashley Boutwell\AppData\Local\{4291F363-D16D-4D07-8EF6-9314A156DC10} deleted successfully
C:\Users\Ashley Boutwell\AppData\Local\{59C94219-B171-45BC-B8EC-BB51C9542796} deleted successfully
C:\Users\Ashley Boutwell\AppData\Local\{82C62332-7218-4486-B38F-02E2C595ADBB} deleted successfully
C:\Users\Ashley Boutwell\AppData\Local\{B3C148DE-7C5B-4C42-A7EB-8BCBEECC27F7} deleted successfully
C:\Users\Ashley Boutwell\AppData\Local\{C4E6736D-D0BC-4A69-A542-8CADAAD09FAA} deleted successfully
C:\Users\Ashley Boutwell\AppData\Local\{CDC666EA-4B00-4D94-A521-3B3B9820C8DC} deleted successfully
C:\Users\Ashley Boutwell\AppData\Local\{E054BB0E-4E5B-4629-8F7B-8ACE9EB99B51} deleted successfully
C:\Users\Ashley Boutwell\AppData\Local\{E4C44C8F-E21C-4D70-BCBD-0DFE69320B6B} deleted successfully
C:\Users\Ashley Boutwell\AppData\Local\{E6F49C7F-042C-4776-8F55-F3097E979C5F} deleted successfully
C:\Users\Ashley Boutwell\AppData\Local\{EF05F753-75A5-4E7C-B960-1ADF7B97D448} deleted successfully
C:\Users\Shushana\AppData\Local\VirtualStore deleted successfully
C:\windows\serviceprofiles\networkservice\AppData\Local\CrashDumps deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Installed Programs ======================
æTorrent
64 Bit HP CIO Components Installer
7-Zip 9.20
Adobe Flash Player 15 ActiveX
Adobe Flash Player 15 Plugin
Adobe Reader XI (11.0.09)
AMD Media Foundation Decoders
AMD VISION Engine Control Center
Apple Application Support
Apple Mobile Device Support
ASIO4ALL
Atheros Communications Inc.® AR81Family Gigabit/Fast Ethernet Driver
ATI Catalyst Install Manager
Bejeweled 3
Bonjour
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Common
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
ccc-utility64
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
CCleaner
CDisplay 1.8
Conexant HD Audio
D3DX10
DAEMON Tools Lite
DivX Setup
ETDWare PS/2-X64 8.0.8.0_R01
FATE - The Traitor Soul
FL Studio 10
Free Download Manager 3.9.3
Google Chrome
Google Talk Plugin
Google Update Helper
Harry Potter II
ImgBurn
Java 7 Update 21 (64-bit)
Java 7 Update 71
Java Auto Updater
Java SE Development Kit 7 Update 21 (64-bit)
Java SE Runtime Environment 6
Label@Once 1.0
Malwarebytes Anti-Malware version 2.0.4.1028
MapleRoyals
MapleStory
Microsoft .NET Framework 4.5.1
Microsoft Application Error Reporting
Microsoft Office 2007 Primary Interop Assemblies
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office 2010
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office File Validation Add-In
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office Office 64-bit Components 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared 64-bit MUI (English) 2007
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft Visual Studio 2005 Tools for Office Runtime
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
Motorola Device Software Update
Motorola Mobile Drivers Installation 5.9.0
Movie Maker
MSVCRT
MSVCRT110
MSVCRT110_amd64
MSXML 4.0 SP3 Parser
MSXML 4.0 SP3 Parser (KB2721691)
MSXML 4.0 SP3 Parser (KB2758694)
Notepad++
Overball
Photo Common
Photo Gallery
PlayReady PC Runtime amd64
PlayReady PC Runtime x86
Project 64 version 2.1.0.1
QuickTime
Realtek USB 2.0 Card Reader
Realtek WLAN Driver
RealUpgrade 1.1
Revo Uninstaller 1.95
Security Update for CAPICOM (KB931906)
Security Update for Microsoft .NET Framework 4.5.1 (KB2894854v2)
Security Update for Microsoft .NET Framework 4.5.1 (KB2898869)
Security Update for Microsoft .NET Framework 4.5.1 (KB2901126)
Security Update for Microsoft .NET Framework 4.5.1 (KB2931368)
Security Update for Microsoft .NET Framework 4.5.1 (KB2972107)
Security Update for Microsoft .NET Framework 4.5.1 (KB2972216)
Security Update for Microsoft .NET Framework 4.5.1 (KB2978128)
Security Update for Microsoft .NET Framework 4.5.1 (KB2979578v2)
Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596927) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597973) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760411) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760415) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2817330) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2878233) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2880507) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2880508) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2881069) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2920790) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2920792) 32-Bit Edition
Security Update for Microsoft Office Excel 2007 (KB2984942) 32-Bit Edition
Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition
Security Update for Microsoft Office OneNote 2007 (KB2596857) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition
Security Update for Microsoft Office Publisher 2007 (KB2817565) 32-Bit Edition
Security Update for Microsoft Office Word 2007 (KB2920793) 32-Bit Edition
Shared C Run-time for x64
Skype Click to Call
Skype Launcher
SkypeT 7.0
SUPERAntiSpyware
Toshiba App Place
TOSHIBA Application Installer
TOSHIBA Hardware Setup
TOSHIBA Value Added Package
TOSHIBA Web Camera Application
Unlocker 1.9.2
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition
Update for Microsoft Office Access 2007 Help (KB963663)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office Infopath 2007 Help (KB963662)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition
Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition
Update for Microsoft Office Outlook 2007 Help (KB963677)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2920789) 32-Bit Edition
Update for Microsoft Office PowerPoint 2007 (KB2597972) 32-Bit Edition
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Publisher 2007 Help (KB963667)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Update Installer for WildTangent Games App
VC80CRTRedist - 8.0.50727.6195
Visual Studio 2010 x64 Redistributables
Visual Studio Tools for the Office system 3.0 Runtime
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258)
VLC media player 2.1.2
VTech Download Agent Library
Windows Live Communications Platform
Windows Live Essentials
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Photo Common
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Phone app for desktop
Wise Registry Cleaner 8.26
==== Running Processes ======================
C:\Program Files (x86)\Free Download Manager\fdm.exe
C:\Downloads\Software\zoek.exe
C:\windows\SysWOW64\cmd.exe
C:\windows\SysWOW64\cmd.exe
C:\windows\SysWOW64\cmd.exe
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
==== Services(whitelist) ======================
R2 - [!SASCORE] - SAS Core Service - c:\program files\superantispyware\sascore64.exe
R2 - [AMD External Events Utility] - AMD External Events Utility - c:\windows\system32\atiesrxx.exe
R2 - [wlidsvc] - Windows Live ID Sign-in Assistant - c:\program files\common files\microsoft shared\windows live\wlidsvc.exe
R2 - [WMPNetworkSvc] - Windows Media Player Network Sharing Service - c:\program files\windows media player\wmpnetwk.exe
R3 - [FontCache3.0.0.0] - Windows Presentation Foundation Font Cache 3.0.0.0 - c:\windows\microsoft.net\framework64\v3.0\wpf\presentationfontcache.exe
S2 - [clr_optimization_v4.0.30319_32] - Microsoft .NET Framework NGEN v4.0.30319_X86 - c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe
S2 - [clr_optimization_v4.0.30319_64] - Microsoft .NET Framework NGEN v4.0.30319_X64 - c:\windows\microsoft.net\framework64\v4.0.30319\mscorsvw.exe
S2 - [gupdate] - Google Update Service (gupdate) - c:\program files (x86)\google\update\googleupdate.exe
S2 - [MBAMScheduler] - MBAMScheduler - c:\program files (x86)\malwarebytes anti-malware\mbamscheduler.exe
S2 - [MBAMService] - MBAMService - c:\program files (x86)\malwarebytes anti-malware\mbamservice.exe
S2 - [SkypeUpdate] - Skype Updater - c:\program files (x86)\skype\updater\updater.exe
S2 - [sppsvc] - Software Protection - c:\windows\system32\sppsvc.exe
S3 - [ALG] - Application Layer Gateway Service - c:\windows\system32\alg.exe
S3 - [aspnet_state] - ASP.NET State Service - c:\windows\microsoft.net\framework64\v4.0.30319\aspnet_state.exe
S3 - [COMSysApp] - COM+ System Application - c:\windows\system32\dllhost.exe
S3 - [ehRecvr] - Windows Media Center Receiver Service - c:\windows\ehome\ehrecvr.exe
S3 - [ehSched] - Windows Media Center Scheduler Service - c:\windows\ehome\ehsched.exe
S3 - [Fax] - Fax - c:\windows\system32\fxssvc.exe
S3 - [gupdatem] - Google Update Service (gupdatem) - c:\program files (x86)\google\update\googleupdate.exe
S3 - [IEEtwCollectorService] - Internet Explorer ETW Collector Service - c:\windows\system32\ieetwcollector.exe
S3 - [Microsoft Office Groove Audit Service] - Microsoft Office Groove Audit Service - c:\program files (x86)\microsoft office\office12\grooveauditservice.exe
S3 - [MSDTC] - Distributed Transaction Coordinator - c:\windows\system32\msdtc.exe
S3 - [msiserver] - Windows Installer - c:\windows\system32\msiexec.exe
S3 - [odserv] - Microsoft Office Diagnostics Service - c:\program files (x86)\common files\microsoft shared\office12\odserv.exe
S3 - [ose] - Office Source Engine - c:\program files (x86)\common files\microsoft shared\source engine\ose.exe
S3 - [PerfHost] - Performance Counter DLL Host - c:\windows\syswow64\perfhost.exe
S3 - [RpcLocator] - Remote Procedure Call (RPC) Locator - c:\windows\system32\locator.exe
S3 - [SNMPTRAP] - SNMP Trap - c:\windows\system32\snmptrap.exe
S3 - [TrustedInstaller] - Windows Modules Installer - c:\windows\servicing\trustedinstaller.exe
S3 - [vds] - Virtual Disk - c:\windows\system32\vds.exe
S3 - [VSS] - Volume Shadow Copy - c:\windows\system32\vssvc.exe
S3 - [WatAdminSvc] - Windows Activation Technologies Service - c:\windows\system32\wat\watadminsvc.exe
S3 - [wbengine] - Block Level Backup Engine Service - c:\windows\system32\wbengine.exe
S3 - [wmiApSrv] - WMI Performance Adapter - c:\windows\system32\wbem\wmiapsrv.exe
S4 - [AdobeARMservice] - Adobe Acrobat Update Service - c:\program files (x86)\common files\adobe\arm\1.0\armsvc.exe
S4 - [AdobeFlashPlayerUpdateSvc] - Adobe Flash Player Update Service - c:\windows\syswow64\macromed\flash\flashplayerupdateservice.exe
S4 - [Apple Mobile Device] - Apple Mobile Device - c:\program files (x86)\common files\apple\mobile device support\applemobiledeviceservice.exe
S4 - [Bonjour Service] - Bonjour Service - c:\program files\bonjour\mdnsresponder.exe
S4 - [clr_optimization_v2.0.50727_32] - Microsoft .NET Framework NGEN v2.0.50727_X86 - c:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe
S4 - [clr_optimization_v2.0.50727_64] - Microsoft .NET Framework NGEN v2.0.50727_X64 - c:\windows\microsoft.net\framework64\v2.0.50727\mscorsvw.exe
S4 - [GamesAppIntegrationService] - GamesAppIntegrationService - c:\program files (x86)\wildtangent games\app\gamesappintegrationservice.exe
S4 - [GamesAppService] - GamesAppService - c:\program files (x86)\wildtangent games\app\gamesappservice.exe
S4 - [Skype C2C Service] - Skype C2C Service - c:\programdata\skype\toolbars\skype c2c service\c2c_service.exe
S4 - [WSearch] - Windows Search - c:\windows\system32\searchindexer.exe
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\ProgramData\WiwlApka not found
C:\ProgramData\UayiJvis not found
C:\ProgramData\MarafUgezl not found
C:\ProgramData\VevpoYabse not found
C:\ProgramData\VozaToch not found
C:\ProgramData\OutujIheft not found
C:\ProgramData\ZoszIqrah not found
C:\ProgramData\ZikiSavi not found
C:\ProgramData\FigveZneje not found
C:\ProgramData\DiraTimw not found
C:\PROGRA~2\Wise\Wise Registry Cleaner deleted
C:\extensions.sqlite deleted
C:\Users\Ashley Boutwell\AppData\Roaming\Yahoo! deleted
C:\Users\Ashley Boutwell\AppData\Local\cache deleted
C:\windows\sysWoW64\config\systemprofile\AppData\LocalLow\AVG SafeGuard toolbar deleted
C:\windows\SysNative\config\systemprofile\Searches deleted
C:\windows\Syswow64\sho2693.tmp deleted
C:\windows\Syswow64\sho72C1.tmp deleted
C:\windows\Syswow64\shoA642.tmp deleted
C:\windows\Syswow64\shoB99F.tmp deleted
C:\windows\Syswow64\shoCB79.tmp deleted
C:\windows\Syswow64\shoCC07.tmp deleted
C:\windows\Syswow64\shoF606.tmp deleted
==== System Specs ======================
Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601)
Memory (RAM): 3687 MB
CPU Info: AMD E-300 APU with Radeon HD Graphics
CPU Speed: 1282.5 MHz
Sound Card: Speakers (Conexant SmartAudio H |
Display Adapters: AMD Radeon HD 6310 Graphics | AMD Radeon HD 6310 Graphics | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver
Monitors: 1x; Generic PnP Monitor |
Screen Resolution: 1366 X 768 - 32 bit
Network: Network Present
Network Adapters: TAP-Win32 Adapter V9 | Microsoft Virtual WiFi Miniport Adapter | Atheros AR8152/8158 PCI-E Fast Ethernet Controller (NDIS 6.20) | Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC
CD / DVD Drives: 2x (D: | E: | ) D: TSSTcorpCDDVDW SN-208AF | E: DTSOFT BDROM
Ports: COM Ports NOT Present. LPT Port NOT Present.
Mouse: 2 Button Mouse Present
Hard Disks: C: 282.9GB
Hard Disks - Free: C: 206.4GB
Manufacturer *: Insyde Corp.
BIOS Info: AT/AT COMPATIBLE | 12/20/11 | TOSINV - 3
Time Zone: Eastern Standard Time
Motherboard *: TOSHIBA Portable PC
Country: United States
Language: ENU
==== System Specs (Software) ======================
Anti-Spyware: Windows Defender disabled (Outdated)
Default Browser: Google Chrome 39.0.2171.95
Internet Explorer Version: 11.0.9600.17501
Google Chrome version: 39.0.2171.95
Adobe Reader version: 11.0.9.29
Sun Java version: 1.7.0_71 (32-bit)
Sun Java version: 1.7.0_21 (64-bit)
Flash Player version: 15.0.0.223
==== Files Recently Created / Modified ======================
====== C:\windows ====
2014-12-24 21:11:30 A23F7B1447D12086E2C9D70E20F3F386 493566184 ----a-w- C:\windows\MEMORY.DMP
====== C:\Users\Shushana\AppData\Local\Temp ====
2015-01-01 00:39:34 E0DC8C6BBC787B972A9A468648DBFD85 1008128 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\libiconv2.dll
2015-01-01 00:39:34 D202BAA425176287017FFE1FB5D1B77C 103424 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\libintl3.dll
2015-01-01 00:39:34 57CAC848FA14AE38F14F9441F8933282 140288 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\pcre3.dll
2015-01-01 00:39:34 547C43567AB8C08EB30F6C6BACB479A3 79360 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\regex2.dll
2015-01-01 00:39:34 2E0323A94915FAAB10A25F3BABF82584 157696 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\erunt\ERUNT.EXE
2014-12-30 04:11:40 FCD29333ECDC7208799A3B8E9383E9BD 505536 ----a-w- C:\Users\Shushana\AppData\Local\Temp\ARS.exe
2014-12-26 19:59:37 B36BF235EC530152B55F663DF6231613 559000 ----a-w- C:\Users\Shushana\AppData\Local\Temp\uttCB62.tmp.exe
2014-12-24 20:03:10 E7CAED467F80B29F4E63BA493614DBB1 127488 ----a-w- C:\Users\Shushana\AppData\Local\Temp\20E3547C-E10F-4756-B07F-DD9ECE31981C\OSProvider.dll
2014-12-24 20:03:10 CCF6EC908566900E9626DC3360B9E35E 112128 ----a-w- C:\Users\Shushana\AppData\Local\Temp\20E3547C-E10F-4756-B07F-DD9ECE31981C\DismCorePS.dll
2014-12-24 20:03:10 A909643B215FC0587A043C9C15959D41 186368 ----a-w- C:\Users\Shushana\AppData\Local\Temp\20E3547C-E10F-4756-B07F-DD9ECE31981C\DismProv.dll
2014-12-24 20:03:10 A7AFC7D5313C94E1060648609DAFCE64 271360 ----a-w- C:\Users\Shushana\AppData\Local\Temp\20E3547C-E10F-4756-B07F-DD9ECE31981C\SmiProvider.dll
2014-12-24 20:03:10 A492B7C2C223C5C6163F45AA5275BE34 302080 ----a-w- C:\Users\Shushana\AppData\Local\Temp\20E3547C-E10F-4756-B07F-DD9ECE31981C\UnattendProvider.dll
2014-12-24 20:03:10 85F83E44A77DEA06780FB670CC8A0359 438272 ----a-w- C:\Users\Shushana\AppData\Local\Temp\20E3547C-E10F-4756-B07F-DD9ECE31981C\DmiProvider.dll
2014-12-24 20:03:10 7B38D7916A7CD058C16A0A6CA5077901 271360 ----a-w- C:\Users\Shushana\AppData\Local\Temp\20E3547C-E10F-4756-B07F-DD9ECE31981C\wdscore.dll
2014-12-24 20:03:10 78B4D1F2FE371A6E85C66DD3D40D404A 183296 ----a-w- C:\Users\Shushana\AppData\Local\Temp\20E3547C-E10F-4756-B07F-DD9ECE31981C\CompatProvider.dll
2014-12-24 20:03:10 739968678548BA15F6B9372E8760C012 444416 ----a-w- C:\Users\Shushana\AppData\Local\Temp\20E3547C-E10F-4756-B07F-DD9ECE31981C\TransmogProvider.dll
2014-12-24 20:03:10 711325BFDAC759FA69B9EDAF7EA0319C 471040 ----a-w- C:\Users\Shushana\AppData\Local\Temp\20E3547C-E10F-4756-B07F-DD9ECE31981C\WimProvider.dll
2014-12-24 20:03:10 6EBC2138A3C9B3B7D1E69E0629B6C815 289792 ----a-w- C:\Users\Shushana\AppData\Local\Temp\20E3547C-E10F-4756-B07F-DD9ECE31981C\DismCore.dll
2014-12-24 20:03:10 64B66A41B61D511E8EBE94625EC0E45A 53760 ----a-w- C:\Users\Shushana\AppData\Local\Temp\20E3547C-E10F-4756-B07F-DD9ECE31981C\FolderProvider.dll
2014-12-24 20:03:10 516A5FCE06BB388499238A5F9286CB74 96768 ----a-w- C:\Users\Shushana\AppData\Local\Temp\20E3547C-E10F-4756-B07F-DD9ECE31981C\DismHost.exe
2014-12-24 20:03:10 45FF4FA5CA5432BFCCDED4433FE2A85B 216576 ----a-w- C:\Users\Shushana\AppData\Local\Temp\20E3547C-E10F-4756-B07F-DD9ECE31981C\MsiProvider.dll
2014-12-24 20:03:10 1C9B5D23AC0CD2E6BF4B29F35FE219AE 1672192 ----a-w- C:\Users\Shushana\AppData\Local\Temp\20E3547C-E10F-4756-B07F-DD9ECE31981C\CbsProvider.dll
2014-12-24 20:03:10 08C71F57BDFC3DF75A51B12DDF69A33B 312832 ----a-w- C:\Users\Shushana\AppData\Local\Temp\20E3547C-E10F-4756-B07F-DD9ECE31981C\IntlProvider.dll
2014-12-24 19:48:26 E7CAED467F80B29F4E63BA493614DBB1 127488 ----a-w- C:\Users\Shushana\AppData\Local\Temp\99B83D61-19D6-46D1-8CF6-3FF03CF7DD93\OSProvider.dll
2014-12-24 19:48:26 CCF6EC908566900E9626DC3360B9E35E 112128 ----a-w- C:\Users\Shushana\AppData\Local\Temp\99B83D61-19D6-46D1-8CF6-3FF03CF7DD93\DismCorePS.dll
2014-12-24 19:48:26 A909643B215FC0587A043C9C15959D41 186368 ----a-w- C:\Users\Shushana\AppData\Local\Temp\99B83D61-19D6-46D1-8CF6-3FF03CF7DD93\DismProv.dll
2014-12-24 19:48:26 A7AFC7D5313C94E1060648609DAFCE64 271360 ----a-w- C:\Users\Shushana\AppData\Local\Temp\99B83D61-19D6-46D1-8CF6-3FF03CF7DD93\SmiProvider.dll
2014-12-24 19:48:26 A492B7C2C223C5C6163F45AA5275BE34 302080 ----a-w- C:\Users\Shushana\AppData\Local\Temp\99B83D61-19D6-46D1-8CF6-3FF03CF7DD93\UnattendProvider.dll
2014-12-24 19:48:26 85F83E44A77DEA06780FB670CC8A0359 438272 ----a-w- C:\Users\Shushana\AppData\Local\Temp\99B83D61-19D6-46D1-8CF6-3FF03CF7DD93\DmiProvider.dll
2014-12-24 19:48:26 7B38D7916A7CD058C16A0A6CA5077901 271360 ----a-w- C:\Users\Shushana\AppData\Local\Temp\99B83D61-19D6-46D1-8CF6-3FF03CF7DD93\wdscore.dll
2014-12-24 19:48:26 78B4D1F2FE371A6E85C66DD3D40D404A 183296 ----a-w- C:\Users\Shushana\AppData\Local\Temp\99B83D61-19D6-46D1-8CF6-3FF03CF7DD93\CompatProvider.dll
2014-12-24 19:48:26 739968678548BA15F6B9372E8760C012 444416 ----a-w- C:\Users\Shushana\AppData\Local\Temp\99B83D61-19D6-46D1-8CF6-3FF03CF7DD93\TransmogProvider.dll
2014-12-24 19:48:26 711325BFDAC759FA69B9EDAF7EA0319C 471040 ----a-w- C:\Users\Shushana\AppData\Local\Temp\99B83D61-19D6-46D1-8CF6-3FF03CF7DD93\WimProvider.dll
2014-12-24 19:48:26 6EBC2138A3C9B3B7D1E69E0629B6C815 289792 ----a-w- C:\Users\Shushana\AppData\Local\Temp\99B83D61-19D6-46D1-8CF6-3FF03CF7DD93\DismCore.dll
2014-12-24 19:48:26 64B66A41B61D511E8EBE94625EC0E45A 53760 ----a-w- C:\Users\Shushana\AppData\Local\Temp\99B83D61-19D6-46D1-8CF6-3FF03CF7DD93\FolderProvider.dll
2014-12-24 19:48:26 516A5FCE06BB388499238A5F9286CB74 96768 ----a-w- C:\Users\Shushana\AppData\Local\Temp\99B83D61-19D6-46D1-8CF6-3FF03CF7DD93\DismHost.exe
2014-12-24 19:48:26 45FF4FA5CA5432BFCCDED4433FE2A85B 216576 ----a-w- C:\Users\Shushana\AppData\Local\Temp\99B83D61-19D6-46D1-8CF6-3FF03CF7DD93\MsiProvider.dll
2014-12-24 19:48:26 1C9B5D23AC0CD2E6BF4B29F35FE219AE 1672192 ----a-w- C:\Users\Shushana\AppData\Local\Temp\99B83D61-19D6-46D1-8CF6-3FF03CF7DD93\CbsProvider.dll
2014-12-24 19:48:26 08C71F57BDFC3DF75A51B12DDF69A33B 312832 ----a-w- C:\Users\Shushana\AppData\Local\Temp\99B83D61-19D6-46D1-8CF6-3FF03CF7DD93\IntlProvider.dll
2014-12-23 20:00:59 6BDAAF9FF9DB80B2311261E1176CCAA2 44841568 ----a-w- C:\Users\Shushana\AppData\Local\Temp\SkypeSetup.exe
====== Java Cache =====
====== C:\windows\SysWOW64 =====
2014-12-25 13:56:00 0481346D0EF668C0D4FF69A7BBEFA846 115712 ----a-w- C:\windows\SysWOW64\ieUnatt.exe
2014-12-24 16:47:04 FF0A6E76FAE624AC74780AB008752F98 3209728 ----a-w- C:\windows\SysWOW64\mf.dll
2014-12-23 14:12:02 E1456E7396022EBE4E5434188D1AC8B0 1230336 ----a-w- C:\windows\SysWOW64\WindowsCodecs.dll
2014-12-23 14:11:40 BB25F69463AD8E7E51B5D9D158B5F8DF 30720 ----a-w- C:\windows\SysWOW64\iernonce.dll
2014-12-23 14:11:40 2EADED07BDA52C1FC5A6D4E1CC5858F0 47616 ----a-w- C:\windows\SysWOW64\ieetwproxystub.dll
2014-12-23 14:11:39 F25284C763E728E4DAC248C211D1FC5B 76288 ----a-w- C:\windows\SysWOW64\mshtmled.dll
2014-12-23 14:11:38 F98B3860BB47089EA8C1504F043E90E9 342200 ----a-w- C:\windows\SysWOW64\iedkcs32.dll
2014-12-23 14:11:38 F34F6DC38A21FCDBB50CDD1EE97B1EA3 1307136 ----a-w- C:\windows\SysWOW64\urlmon.dll
2014-12-23 14:11:38 D7A98A4CEA2E89F544065A00BF37FC10 688640 ----a-w- C:\windows\SysWOW64\msfeeds.dll
2014-12-23 14:11:38 69AC6FD5B0B4DC963723E1EBDEE10A2C 285696 ----a-w- C:\windows\SysWOW64\dxtrans.dll
2014-12-23 14:11:38 2ABC5587D582ACCEA30B4CF968C2A4A5 60416 ----a-w- C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-12-23 14:11:37 220505B0B3E96C857DD01729AF0CD369 19749376 ----a-w- C:\windows\SysWOW64\mshtml.dll
2014-12-23 14:11:35 DEB9476A3CD1A5819DD4504BB7C6BA66 2724864 ----a-w- C:\windows\SysWOW64\mshtml.tlb
2014-12-23 14:11:34 F0BCBD8FCDA145EED53ED66C45CC378B 62464 ----a-w- C:\windows\SysWOW64\iesetup.dll
2014-12-23 14:11:34 543ADCEA31CF9C2B4EEB900D4AAFD0F9 2052096 ----a-w- C:\windows\SysWOW64\inetcpl.cpl
2014-12-23 14:11:34 41AFA61E061E98E97272AC02184C8C2C 710144 ----a-w- C:\windows\SysWOW64\ieapfltr.dll
2014-12-23 14:11:33 01777AB557997E98691E322225314E57 2277888 ----a-w- C:\windows\SysWOW64\iertutil.dll
2014-12-23 14:11:32 EC5A3E4E21079B9D423AA0760828D678 620032 ----a-w- C:\windows\SysWOW64\jscript9diag.dll
2014-12-23 14:11:32 759E2FAD5371512C6679FA346719493E 47104 ----a-w- C:\windows\SysWOW64\jsproxy.dll
2014-12-23 14:11:31 CF9D05678B02B44FBC8D8AD8C9F30D58 478208 ----a-w- C:\windows\SysWOW64\ieui.dll
2014-12-23 14:11:31 35BD045804B67E78F4CAB72CB820AF7F 418304 ----a-w- C:\windows\SysWOW64\dxtmsft.dll
2014-12-23 14:11:27 B59E370277EDB6643083B62297175628 12836864 ----a-w- C:\windows\SysWOW64\ieframe.dll
2014-12-23 14:11:22 F728E7E9937117E0F32F39840EB6D737 4299264 ----a-w- C:\windows\SysWOW64\jscript9.dll
2014-12-23 14:11:22 37F078B5B435AFC6BF316F2AD14B469A 501248 ----a-w- C:\windows\SysWOW64\vbscript.dll
2014-12-23 14:11:22 2E9E105037AC1274656C3D1125323352 1155072 ----a-w- C:\windows\SysWOW64\mshtmlmedia.dll
2014-12-23 14:11:21 930F63D6BC43D4BCD937DFCECDA95F82 168960 ----a-w- C:\windows\SysWOW64\msrating.dll
2014-12-23 14:11:21 5E4E0E43E0A5BF9F089696DFA7A3D677 1888256 ----a-w- C:\windows\SysWOW64\wininet.dll
2014-12-23 14:11:21 29CED1A4777A43526A4ED8A7B6936883 64000 ----a-w- C:\windows\SysWOW64\MshtmlDac.dll
2014-12-23 14:08:09 9EA3783672D21817B9DF1061B54C3B3C 155136 ----a-w- C:\windows\SysWOW64\charmap.exe
2014-12-23 14:08:01 1DE9BD23AFA36150586C732D876D9B74 1177088 ----a-w- C:\windows\SysWOW64\WsmSvc.dll
2014-12-23 14:07:59 B975C202F590BBC5AA63225FBD148791 198656 ----a-w- C:\windows\SysWOW64\WSManHTTPConfig.exe
2014-12-23 14:07:59 B6AC69FFBAA159DD5CEED814245A286D 214016 ----a-w- C:\windows\SysWOW64\WsmWmiPl.dll
2014-12-23 14:07:59 2C28FEC61C4AC68480A99CB7AA197FA9 248832 ----a-w- C:\windows\SysWOW64\WSManMigrationPlugin.dll
2014-12-23 14:07:58 5D9A1A3E5824CECE65871C60E5A08A1A 145920 ----a-w- C:\windows\SysWOW64\WsmAuto.dll
2014-12-23 14:07:47 50C73E54062BA252350F3F29580E28DA 2048 ----a-w- C:\windows\SysWOW64\tzres.dll
====== C:\windows\SysWOW64\drivers =====
====== C:\windows\Sysnative =====
2014-12-25 13:56:00 5564883BFB523D5078A5B1FE3128FD63 144384 ----a-w- C:\windows\Sysnative\ieUnatt.exe
2014-12-24 16:47:02 6E1DDE0E72FB8268F42F6777CE4C5036 4121600 ----a-w- C:\windows\Sysnative\mf.dll
2014-12-23 14:12:13 F0356290BA3940F31AFF5566501495F7 192000 ----a-w- C:\windows\Sysnative\aepic.dll
2014-12-23 14:12:13 D257AF48934D2167BE15AA4008176381 1083392 ----a-w- C:\windows\Sysnative\aeinv.dll
2014-12-23 14:12:13 985558125FEEC89AB4AD142158B066D7 830976 ----a-w- C:\windows\Sysnative\appraiser.dll
2014-12-23 14:12:13 8E64BB62AB3810D3C29ED50C405AD3BD 1232040 ----a-w- C:\windows\Sysnative\aitstatic.exe
2014-12-23 14:12:12 E00981CF227CEEBE7B5A8D99C76D1116 741376 ----a-w- C:\windows\Sysnative\invagent.dll
2014-12-23 14:12:12 DAF13A81A5FC895D68B1D9A72F65F4CB 413184 ----a-w- C:\windows\Sysnative\generaltel.dll
2014-12-23 14:12:12 4253086737D81D7C9C160FDE6C037F44 396800 ----a-w- C:\windows\Sysnative\devinv.dll
2014-12-23 14:12:09 5CD6E919CE938A98AB25A2EA2C8C4EDA 227328 ----a-w- C:\windows\Sysnative\aepdu.dll
2014-12-23 14:12:03 A9A0BFD706B3A24C403EEFEB0790D011 1424384 ----a-w- C:\windows\Sysnative\WindowsCodecs.dll
2014-12-23 14:11:40 D471F7A428C21DB04D810445D12D68E0 48640 ----a-w- C:\windows\Sysnative\ieetwproxystub.dll
2014-12-23 14:11:40 0FABE2AB8CA2D5CC7C95798533B4D057 114688 ----a-w- C:\windows\Sysnative\ieetwcollector.exe
2014-12-23 14:11:39 077AEB068A51B396F25BBCAB0944FC3A 2724864 ----a-w- C:\windows\Sysnative\mshtml.tlb
2014-12-23 14:11:38 F987718A5CA053DC23E94A531F1754A4 34304 ----a-w- C:\windows\Sysnative\iernonce.dll
2014-12-23 14:11:38 9F07E8FC75C5F98A783ABFD3005EFC22 77824 ----a-w- C:\windows\Sysnative\JavaScriptCollectionAgent.dll
2014-12-23 14:11:38 39B512C643812FC2D4843C0D4206C759 718848 ----a-w- C:\windows\Sysnative\ie4uinit.exe
2014-12-23 14:11:34 5BF0BAA1E5EF724287565E97C9219254 389296 ----a-w- C:\windows\Sysnative\iedkcs32.dll
2014-12-23 14:11:33 E7A2061ADF0F4D430FECDA1E8D6B7BA6 1548288 ----a-w- C:\windows\Sysnative\urlmon.dll
2014-12-23 14:11:32 EBC8C9F61F4C148B8C6A28EDE80C51E4 968704 ----a-w- C:\windows\Sysnative\MsSpellCheckingFacility.exe
2014-12-23 14:11:32 B4E481E9498CE22113628C4E9EA24427 4096 ----a-w- C:\windows\Sysnative\ieetwcollectorres.dll
2014-12-23 14:11:31 14BA910E7731FC84EB85328BD0F1EE81 800768 ----a-w- C:\windows\Sysnative\msfeeds.dll
2014-12-23 14:11:31 0AF0AEF0BA9EF6169E61C78504DCAE55 316928 ----a-w- C:\windows\Sysnative\dxtrans.dll
2014-12-23 14:11:26 23AE7A3B44D5C550B81347288CE3230E 66560 ----a-w- C:\windows\Sysnative\iesetup.dll
2014-12-23 14:11:25 EFBA893429814EA3244C87C2D1256618 800768 ----a-w- C:\windows\Sysnative\ieapfltr.dll
2014-12-23 14:11:24 3FE71E2A5BD3EC652E64FC8BCEFEDD2C 2125312 ----a-w- C:\windows\Sysnative\inetcpl.cpl
2014-12-23 14:11:23 982B871A25B5078093FAD82D0AB0E3FC 2885120 ----a-w- C:\windows\Sysnative\iertutil.dll
2014-12-23 14:11:21 DFECAE6D925FBC9078870E16F98C471F 54784 ----a-w- C:\windows\Sysnative\jsproxy.dll
2014-12-23 14:11:20 F7CCA58B973FB5EAED8D1F12DD3E51F6 490496 ----a-w- C:\windows\Sysnative\dxtmsft.dll
2014-12-23 14:11:19 8EF01E2EF21D41A23FF70B28179F9ABE 633856 ----a-w- C:\windows\Sysnative\ieui.dll
2014-12-23 14:11:19 556D271F4243B273EDA353512BF3608A 14412800 ----a-w- C:\windows\Sysnative\ieframe.dll
2014-12-23 14:11:18 DB10D681314714E0D4623E4C0CF6654A 92160 ----a-w- C:\windows\Sysnative\mshtmled.dll
2014-12-23 14:11:17 7AC115968B8856004920057B2271224C 1359360 ----a-w- C:\windows\Sysnative\mshtmlmedia.dll
2014-12-23 14:11:17 021DFF3CB0ADCD19B3AAA00A650FDEE2 814080 ----a-w- C:\windows\Sysnative\jscript9diag.dll
2014-12-23 14:11:16 8D64466AD12CA5677CD0099C43C58569 6039552 ----a-w- C:\windows\Sysnative\jscript9.dll
2014-12-23 14:11:16 1D294810D3A8A8F722E86AA001F54DCC 580096 ----a-w- C:\windows\Sysnative\vbscript.dll
2014-12-23 14:11:15 4AF089160FE082E5EA5C4AA72782DCA2 2358272 ----a-w- C:\windows\Sysnative\wininet.dll
2014-12-23 14:11:14 89296EF4A3729A049DA25B7D67A04078 199680 ----a-w- C:\windows\Sysnative\msrating.dll
2014-12-23 14:11:14 17A157A4225CF562202AC71DB8103177 88064 ----a-w- C:\windows\Sysnative\MshtmlDac.dll
2014-12-23 14:11:13 D478A4CF07FB8ADF72FB16B88E8030B8 25059840 ----a-w- C:\windows\Sysnative\mshtml.dll
2014-12-23 14:08:09 36E5E9D0400475230A7F57F274B88321 165888 ----a-w- C:\windows\Sysnative\charmap.exe
2014-12-23 14:08:02 D929ABD465A2DED963DA8B30946A8D5C 2020352 ----a-w- C:\windows\Sysnative\WsmSvc.dll
2014-12-23 14:08:00 FDEB5EE2E4DB9DE9251DDAF6A5BCA070 346624 ----a-w- C:\windows\Sysnative\WSManMigrationPlugin.dll
2014-12-23 14:08:00 5C642B7B0365305451D579F3EFAD57D4 310272 ----a-w- C:\windows\Sysnative\WsmWmiPl.dll
2014-12-23 14:08:00 41457C1909F6D1100C0F9B9CFF7960FC 266240 ----a-w- C:\windows\Sysnative\WSManHTTPConfig.exe
2014-12-23 14:07:59 9B44CABE3536D0E3BF627176318AAFC9 181248 ----a-w- C:\windows\Sysnative\WsmAuto.dll
2014-12-23 14:07:48 A026998E927FD2095505154CBD72F35B 2048 ----a-w- C:\windows\Sysnative\tzres.dll
====== C:\windows\Sysnative\drivers =====
2014-12-25 00:28:18 26C43960C99EE861A5D0EDC4DCF3B1C3 129752 ----a-w- C:\windows\Sysnative\drivers\MBAMSwissArmy.sys
2014-12-25 00:27:39 CA43F8904E24BBE49982E4C0B29E6579 25816 ----a-w- C:\windows\Sysnative\drivers\mbam.sys
2014-12-25 00:27:39 A646C2DDB8C46E9B20A326FAF566646C 63704 ----a-w- C:\windows\Sysnative\drivers\mwac.sys
2014-12-25 00:27:39 478CC94C937D235CB0A96AB8F2359D81 93400 ----a-w- C:\windows\Sysnative\drivers\mbamchameleon.sys
2014-12-23 14:11:54 70988118145F5F10EF24720B97F35F65 119296 ----a-w- C:\windows\Sysnative\drivers\tdx.sys
====== C:\windows\Tasks ======
====== C:\windows\Temp ======
======= C:\Program Files =====
2014-12-24 19:15:14 -------- d-----w- C:\Program Files\Unlocker
======= C:\PROGRA~2 =====
2014-12-24 00:07:58 -------- d-----w- C:\PROGRA~2\Windows Phone
2014-12-23 13:53:22 -------- d-----w- C:\PROGRA~2\ESET
======= C: =====
====== C:\Users\Shushana\AppData\Roaming ======
2014-12-31 05:04:05 -------- d-sh--w- C:\Users\Shushana\AppData\Locallow\EmieUserList
2014-12-31 05:04:05 -------- d-sh--w- C:\Users\Shushana\AppData\Locallow\EmieBrowserModeList
2014-12-27 05:39:20 -------- d-sh--w- C:\Users\Shushana\AppData\Local\EmieUserList
2014-12-27 05:39:20 -------- d-sh--w- C:\Users\Shushana\AppData\Local\EmieSiteList
2014-12-27 05:39:20 -------- d-sh--w- C:\Users\Shushana\AppData\Local\EmieBrowserModeList
2014-12-27 05:37:55 -------- d-sh--w- C:\Users\Shushana\AppData\Locallow\EmieSiteList
2014-12-25 00:27:15 -------- d-----w- C:\Users\Shushana\AppData\Local\Programs
2014-12-24 20:51:49 49CED0416055F36384167A132A2FB361 7640 ----a-w- C:\Users\Shushana\AppData\Local\Resmon.ResmonCfg
2014-12-24 19:25:05 -------- d-----w- C:\Users\Shushana\AppData\Roaming\SUPERAntiSpyware.com
2014-12-24 19:15:14 -------- d-----w- C:\Users\Shushana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
2014-12-23 19:59:27 -------- d-----w- C:\Users\Shushana\AppData\Local\Skype
2014-12-23 19:59:23 -------- d-----w- C:\Users\Shushana\AppData\Roaming\Skype
2014-12-23 17:49:24 -------- d-----w- C:\Users\Shushana\AppData\Roaming\vlc
2014-12-23 13:52:42 -------- d-----w- C:\Users\Shushana\AppData\Roaming\Free Download Manager
2014-12-23 13:44:10 -------- d-----w- C:\Users\Ashley Boutwell\AppData\Roaming\SUPERAntiSpyware.com
====== C:\Users\Shushana ======
2014-12-30 14:43:31 9A8336796A7C71E9F33DE848B8320ED3 380416 ----a-w- C:\Users\Shushana\Downloads\zorwog63.exe
2014-12-30 14:43:04 9A8336796A7C71E9F33DE848B8320ED3 380416 ----a-w- C:\Users\Shushana\Downloads\xgkyzbz5.exe
2014-12-24 00:08:02 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone
2014-12-24 00:06:05 D9E1366B1D3E7DA845146A2E94323D1B 6745792 ----a-w- C:\Users\Shushana\Downloads\WindowsPhone.exe
====== C: exe-files ==
2015-01-01 00:39:50 9208E5A0A844FCCB39B5252C07B4E860 2173952 ----a-w- C:\Downloads\Software\AdwCleaner.exe
2015-01-01 00:39:34 2E0323A94915FAAB10A25F3BABF82584 157696 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\erunt\ERUNT.EXE
2015-01-01 00:39:16 B9E1BF24EF01A82701B09BE75D294085 1707939 ----a-w- C:\Downloads\Software\JRT.exe
2014-12-30 14:43:31 9A8336796A7C71E9F33DE848B8320ED3 380416 ----a-w- C:\Users\Shushana\Downloads\zorwog63.exe
2014-12-30 14:43:04 9A8336796A7C71E9F33DE848B8320ED3 380416 ----a-w- C:\Users\Shushana\Downloads\xgkyzbz5.exe
2014-12-30 13:26:57 988312E4532153D5A75B4EBCD72D37AD 2123264 ----a-w- C:\Downloads\Software\FRST64.exe
2014-12-30 04:11:40 FCD29333ECDC7208799A3B8E9383E9BD 505536 ----a-w- C:\Users\Shushana\AppData\Local\Temp\ARS.exe
=== C: other files ==
2015-01-01 00:39:33 F720D6634E048B0AD485CEEF55263E6B 191092 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\misc.bat
2015-01-01 00:39:33 F56A319979F631C141F5FF02DF87FDB1 43563 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\prelim.bat
2015-01-01 00:39:33 DD1E4D974B1672ABD09EFFB225791C4A 1230 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\TDL4.bat
2015-01-01 00:39:33 C4C784C659C27DB5ED395A7901611C71 14957 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\get.bat
2015-01-01 00:39:33 AD2F52DC72B10AF331692E4A4DD80DFC 18670 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\medfos.bat
2015-01-01 00:39:33 AA0C656F898523BEDF2DA6923197BB80 1264 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\surfvox.bat
2015-01-01 00:39:33 A3945FA06DB607245C6A1D0629CE737E 11057 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\runvalues.bat
2015-01-01 00:39:33 8E6020C14F982CF11B3FE7DBB0CB8EDE 24738 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\searchlnk.bat
2015-01-01 00:39:33 86707BCE5CBB65D9B1C41E249B4423BA 152733 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\firefox.bat
2015-01-01 00:39:33 83F691D8398F0E37E71E9355BF730DB9 719 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\ev_clear.bat
2015-01-01 00:39:33 38A0BDF322ACCC968B0A824C38D50157 29635 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\ask.bat
2015-01-01 00:39:33 335DFF8F23E5EC02B5426362F0F8509B 31401 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\iexplore.bat
2015-01-01 00:39:33 0C4649A62845AB5D5DBCC4998477FF6D 1813 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\delfolders.bat
2015-01-01 00:39:33 080CFDE64F31E7B50EECF4552033E84D 9937 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\mws.bat
2015-01-01 00:39:33 048407135C9B1FB6A355E256BD96160D 14192 ----a-w- C:\Users\Shushana\AppData\Local\Temp\jrt\chrome.bat
2014-12-30 04:11:02 B6E6E8870BB8850629B59F69139C877B 2744965 ----a-w- C:\Downloads\idtool.zip
==== Startup Registry Enabled ======================
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun"
==== Startup Registry Enabled x64 ======================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SmartAudio"="C:\Program Files\CONEXANT\SAII\SAIICpl.exe /t"
"ETDCtrl"="%ProgramFiles%\Elantech\ETDCtrl.exe "
==== Startup Registry Disabled x64 ======================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Adobe ARM"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\DAEMON Tools Lite]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="DAEMON Tools Lite"
"hkey"="HKCU"
"command"="\"C:\\Program Files (x86)\\DAEMON Tools Lite\\DTLite.exe\" -autorun"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\DivXMediaServer]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="DivXMediaServer"
"hkey"="HKLM"
"command"="C:\\Program Files (x86)\\DivX\\DivX Media Server\\DivXMediaServer.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\DivXUpdate]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="DivXUpdate"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\DivX\\DivX Update\\DivXUpdate.exe\" /CHECKNOW"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Free Download Manager]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Free Download Manager"
"hkey"="HKCU"
"command"="C:\\Program Files (x86)\\Free Download Manager\\fdm.exe -autorun"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GrooveMonitor]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="GrooveMonitor"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\Microsoft Office\\Office12\\GrooveMonitor.exe\""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Intuit SyncManager]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Intuit SyncManager"
"hkey"="HKLM"
"command"="C:\\Program Files (x86)\\Common Files\\Intuit\\Sync\\IntuitSyncManager.exe startup"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\NortonOnlineBackupReminder]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="NortonOnlineBackupReminder"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\Toshiba\\Toshiba Online Backup\\Activation\\TOBuActivation.exe\" UNATTENDED"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Pando Media Booster]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Pando Media Booster"
"hkey"="HKCU"
"command"="C:\\Program Files (x86)\\Pando Networks\\Media Booster\\PMB.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="SunJavaUpdateSched"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TCrdMain]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="TCrdMain"
"hkey"="HKLM"
"command"="%ProgramFiles%\\TOSHIBA\\FlashCards\\TCrdMain.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ToshibaAppPlace]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="ToshibaAppPlace"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\Toshiba\\Toshiba App Place\\ToshibaAppPlace.exe\""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ToshibaServiceStation]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="ToshibaServiceStation"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\TOSHIBA\\TOSHIBA Service Station\\ToshibaServiceStation.exe\" /hide:60"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TosNC]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="TosNC"
"hkey"="HKLM"
"command"="%ProgramFiles%\\Toshiba\\BulletinBoard\\TosNcCore.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TosReelTimeMonitor]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="TosReelTimeMonitor"
"hkey"="HKLM"
"command"="%ProgramFiles%\\TOSHIBA\\ReelTime\\TosReelTimeMonitor.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TosSENotify]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="TosSENotify"
"hkey"="HKLM"
"command"="C:\\Program Files\\TOSHIBA\\TOSHIBA HDD SSD Alert\\TosWaitSrv.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TosVolRegulator]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="TosVolRegulator"
"hkey"="HKLM"
"command"="C:\\Program Files\\TOSHIBA\\TosVolRegulator\\TosVolRegulator.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TPwrMain]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="TPwrMain"
"hkey"="HKLM"
"command"="%ProgramFiles%\\TOSHIBA\\Power Saver\\TPwrMain.EXE"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Intuit Data Protect.lnk]
"path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Intuit Data Protect.lnk"
"backup"="C:\\windows\\pss\\Intuit Data Protect.lnk.CommonStartup"
"backupExtension"=".CommonStartup"
"command"="C:\\PROGRA~2\\COMMON~1\\Intuit\\DATAPR~1\\INTUIT~1.EXE /Startup"
"item"="Intuit Data Protect"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^QuickBooks Update Agent.lnk]
"path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\QuickBooks Update Agent.lnk"
"backup"="C:\\windows\\pss\\QuickBooks Update Agent.lnk.CommonStartup"
"backupExtension"=".CommonStartup"
"command"="C:\\PROGRA~2\\COMMON~1\\Intuit\\QUICKB~1\\QBUpdate\\qbupdate.exe "
"item"="QuickBooks Update Agent"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^QuickBooks_Standard_21.lnk]
"path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\QuickBooks_Standard_21.lnk"
"backup"="C:\\windows\\pss\\QuickBooks_Standard_21.lnk.CommonStartup"
"backupExtension"=".CommonStartup"
"command"="C:\\PROGRA~2\\Intuit\\QUICKB~1\\QBW32.EXE -silent"
"item"="QuickBooks_Standard_21"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AdobeARMservice]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\AdobeFlashPlayerUpdateSvc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Apple Mobile Device]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Bonjour Service]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\FoxitCloudUpdateService]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\GamesAppIntegrationService]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\GamesAppService]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Motorola Device Manager]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Norton PC Checkup Application Launcher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\PST Service]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\QBCFMonitorService]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\QBFCService]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\QBVSS]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Skype C2C Service]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SkypeUpdate]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TMachInfo]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TODDSrv]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TOSHIBA HDD SSD Alert Service]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\wscsvc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WSearch]
==== Task Scheduler Jobs ======================
C:\windows\tasks\Adobe Flash Player Updater.job --a------ C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [11/11/2014 11:38 PM]
C:\windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [10/19/2014 08:01 AM]
C:\windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [10/19/2014 08:01 AM]
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-2724592652-2552383351-1406810503-1003Core.job --a------ C:\Users\Brendon\AppData\Local\Google\Update\GoogleUpdate.exe []
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-2724592652-2552383351-1406810503-1003UA.job --a------ C:\Users\Brendon\AppData\Local\Google\Update\GoogleUpdate.exe []
==== Other Scheduled Tasks ======================
"C:\windows\SysNative\tasks\Adobe Flash Player Updater" [C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe]
"C:\windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]
"C:\windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]
"C:\windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]
"C:\windows\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-2724592652-2552383351-1406810503-1003Core" [C:\Users\Brendon\AppData\Local\Google\Update\GoogleUpdate.exe]
"C:\windows\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-2724592652-2552383351-1406810503-1003UA" [C:\Users\Brendon\AppData\Local\Google\Update\GoogleUpdate.exe]
"C:\windows\SysNative\tasks\Motorola Device Manager Engine" ["C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe"]
"C:\windows\SysNative\tasks\Motorola Device Manager Initial Update" ["C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe"]
"C:\windows\SysNative\tasks\Motorola Device Manager Update" ["C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe"]
"C:\windows\SysNative\tasks\Private Internet Access Startup" ["C:\Program Files\pia_manager\pia_manager.exe"]
"C:\windows\SysNative\tasks\RealUpgradeLogonTaskS-1-5-21-2724592652-2552383351-1406810503-1000" [C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe]
"C:\windows\SysNative\tasks\RealUpgradeScheduledTaskS-1-5-21-2724592652-2552383351-1406810503-1000" [C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe]
"C:\windows\SysNative\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe]
"C:\windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc]
==== Firefox Extensions ======================
==== Firefox Plugins ======================
==== Chromium Look ======================
Google Chrome Version: 39.0.2171.95 (Up to date, latest Stable version: 39.0.2171.95)
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
jfmjfhklogoienhpfnppmbcbjfjnkonk - No path found[]
Google Voice Search Hotword (Beta) - Ashley Boutwell\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn
YouTube - Ashley Boutwell\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - Ashley Boutwell\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
ShopAtHome.com - Ashley Boutwell\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlmebkoiahbppacaicbgncnjhbpdfkcc
Spring Theme - Ashley Boutwell\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkpcfekghemjkdgnodkinnfbookfaapf
Crackle - Ashley Boutwell\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibfamoapbmmmlknoopmmfofgladlinic
Autofill - Ashley Boutwell\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlmmgnhgdeffjkdckmikfpnddkbbfkkk
Google Wallet - Ashley Boutwell\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Gmail - Ashley Boutwell\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
Google Slides - Shushana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek
Google Docs - Shushana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - Shushana\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
Google Voice Search Hotword (Beta) - Shushana\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn
YouTube - Shushana\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Mancala - Shushana\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjlhjhpnhabnfepdfemepiilbjbkecpe
Google Search - Shushana\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Google Sheets - Shushana\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap
Plants vs Zombies - Shushana\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmcegpfdgcoclcdfkjahiimlikdpnina
Google Wallet - Shushana\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Gmail - Shushana\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
==== Chromium Fix ======================
C:\Users\Shushana\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.darklyrics.com_0.localstorage deleted successfully
C:\Users\Shushana\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.darklyrics.com_0.localstorage-journal deleted successfully
C:\Users\Shushana\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.metrolyrics.com_0.localstorage deleted successfully
C:\Users\Shushana\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.metrolyrics.com_0.localstorage-journal deleted successfully
C:\Users\Ashley Boutwell\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_hip2save.com_0.localstorage deleted successfully
C:\Users\Ashley Boutwell\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_hip2save.com_0.localstorage-journal deleted successfully
C:\Users\Ashley Boutwell\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{67A2568C-7A0A-4EED-AECC-B5405DE63B64} Unknown Url="Not_Found"
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Intuit SyncManager deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NortonOnlineBackupReminder deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Pando Media Booster deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ToshibaServiceStation deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TosSENotify deleted successfully
==== Empty IE Cache ======================
C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Ashley Boutwell\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Ashley Boutwell\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\Shushana\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Shushana\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
C:\Users\Ashley Boutwell\AppData\Local\Mozilla\Firefox\Profiles\d1c2vgxv.default\Cache emptied successfully
==== Empty Chrome Cache ======================
C:\Users\Ashley Boutwell\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\Shushana\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=203 folders=8 12642020 bytes)
==== Empty Temp Folders ======================
C:\Users\Ashley Boutwell\AppData\Local\Temp emptied successfully
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\fbwuser\AppData\Local\Temp emptied successfully
C:\Users\Shushana\AppData\Local\Temp will be emptied at reboot
C:\windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\windows\Temp successfully emptied
C:\Users\Shushana\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on Mon 01/05/2015 at 0:20:32.36 ======================