zipke
Legacy Member
PART 2/2
-12-13 17:35:05 4A8CFB2638B946154FC74CD4BECBDCEC 7680 ----a-w- C:\Windows\SysWOW64\instnm.exe
2012-12-13 17:35:05 3326166011C9BC13D6A8EFD856E9921C 338432 ----a-w- C:\Windows\System32\conhost.exe
2012-12-13 17:35:05 2299E1067A7027E25281177830E0F5A7 25600 ----a-w- C:\Windows\SysWOW64\setup16.exe
2012-12-13 17:35:03 E00F3E011103F0D788EC727374BFB50A 2048 ----a-w- C:\Windows\SysWOW64\user.exe
2012-12-09 15:57:10 12EAF21691059826B00C56062BA1EAF0 140968 ----a-w- C:\Users\Rudolf\Downloads\etypesetup.exe
2012-12-09 09:56:34 22385EE33688B10B61DA1D8CA9549E4B 120192 ----a-w- C:\Users\pitopia\AppData\Local\temp\clear.fiClient\cabarc.exe
2012-12-08 21:38:14 22385EE33688B10B61DA1D8CA9549E4B 120192 ----a-w- C:\Users\Rudolf\AppData\Local\Temp\clear.fiClient\cabarc.exe
=== C: other files ==
2012-12-13 21:22:25 F9D038A8C2BDC3AE2548150A7AED0F8A 176640 ----a-w- C:\Windows\SysWOW64\ieui.dll
2012-12-13 21:22:25 D869ACB7C3DA1B823765DB3CBE2E3DD4 96768 ----a-w- C:\Windows\System32\mshtmled.dll
2012-12-13 21:22:25 CCA6A20181B7719B584AEE1DD6542A4E 149552 ----a-w- C:\Program Files (x86)\Internet Explorer\sqmapi.dll
2012-12-13 21:22:25 6938377454A025812CA346B37962F522 182816 ----a-w- C:\Program Files\Internet Explorer\sqmapi.dll
2012-12-13 21:22:25 5E78D5CAF5917FA1FDC71A80CF0D5234 304640 ----a-w- C:\Program Files\Internet Explorer\IEShims.dll
2012-12-13 21:22:25 543BBE783E2CA0D58E1981BD75483BAD 73216 ----a-w- C:\Windows\SysWOW64\mshtmled.dll
2012-12-13 21:22:25 4071D132E66ACDA3776F1FEAD19E6E01 420864 ----a-w- C:\Windows\SysWOW64\vbscript.dll
2012-12-13 21:22:25 1D4127FE151165C5FB9C0EED8701A3D1 194048 ----a-w- C:\Program Files (x86)\Internet Explorer\IEShims.dll
2012-12-13 21:22:25 08D0F87AA3F6DF47658E9ACD4D082027 248320 ----a-w- C:\Windows\System32\ieui.dll
2012-12-13 21:22:24 E290E3FDF645DF29D00D6368B9127E30 607744 ----a-w- C:\Windows\SysWOW64\msfeeds.dll
2012-12-13 21:22:24 C1D0691BE5DDB0C230D8370BD96BBE8B 548864 ----a-w- C:\Program Files\Internet Explorer\ieproxy.dll
2012-12-13 21:22:24 9568BB33BBAD356EDD6CDE988E570523 2312704 ----a-w- C:\Windows\System32\jscript9.dll
2012-12-13 21:22:24 62CBF36E3E10BAA74224BC7A6DD998B5 194560 ----a-w- C:\Program Files (x86)\Internet Explorer\ieproxy.dll
2012-12-13 21:22:24 56336BB69172A2CEE15B2491DB4C70C1 729088 ----a-w- C:\Windows\System32\msfeeds.dll
2012-12-13 21:22:24 478FDA5AB59331259538FB7B02026836 237056 ----a-w- C:\Windows\System32\url.dll
2012-12-13 21:22:24 4266A3230981DD4434C55957F6DD497D 1103872 ----a-w- C:\Windows\SysWOW64\urlmon.dll
2012-12-13 21:22:24 31B0448CC0694378106582F46D0D07E4 231936 ----a-w- C:\Windows\SysWOW64\url.dll
2012-12-13 21:22:24 1DBA462CF92D890D8F8E6472E7E8B4B4 1346048 ----a-w- C:\Windows\System32\urlmon.dll
2012-12-13 21:22:23 BC9CE770AB55DC36349517B4E5E74A12 66048 ----a-w- C:\Windows\SysWOW64\migration\WininetPlugin.dll
2012-12-13 21:22:23 A3FA99A16F10D44EDB7A8C340FA2EE1B 1800704 ----a-w- C:\Windows\SysWOW64\jscript9.dll
2012-12-13 21:22:23 A0F52880DDD164F968BE903C1FECD27E 2144768 ----a-w- C:\Windows\System32\iertutil.dll
2012-12-13 21:22:23 9000CC4505B4545F2B51CFD34277B2E2 86528 ----a-w- C:\Windows\System32\migration\WininetPlugin.dll
2012-12-13 21:22:23 8E38CE628D4817D949DD31D77A7F21CD 65024 ----a-w- C:\Windows\SysWOW64\jsproxy.dll
2012-12-13 21:22:23 7FA3A810F383588D46220967DE8B64FF 1129472 ----a-w- C:\Windows\SysWOW64\wininet.dll
2012-12-13 21:22:23 780E80E5502015EDAEC91DC0A0C96A79 1793024 ----a-w- C:\Windows\SysWOW64\iertutil.dll
2012-12-13 21:22:23 6E6602DE23AB3776007702FC9540E8E9 599040 ----a-w- C:\Windows\System32\vbscript.dll
2012-12-13 21:22:23 5121DB613E10A46A3C5085B479026AA7 1392128 ----a-w- C:\Windows\System32\wininet.dll
2012-12-13 21:22:23 31525BC38F219E3E17D8AF11DA0FAE3E 85504 ----a-w- C:\Windows\System32\jsproxy.dll
2012-12-13 21:22:23 0A866897039E42DF8080BE5DD83BC8E0 717824 ----a-w- C:\Windows\SysWOW64\jscript.dll
2012-12-13 21:22:23 046AD878F246D3801B719700B543A6EE 816640 ----a-w- C:\Windows\System32\jscript.dll
2012-12-13 21:22:22 DC7D3ADCC1F2729514780F611D6590EC 499200 ----a-w- C:\Program Files\Internet Explorer\jsdbgui.dll
2012-12-13 21:22:22 63861BA77FFAF9132DEE6211D1B5C1E5 678912 ----a-w- C:\Program Files (x86)\Internet Explorer\iedvtool.dll
2012-12-13 21:22:22 4C34FD8C56DB38DF6F969AFDDDF4AB83 387584 ----a-w- C:\Program Files (x86)\Internet Explorer\jsdbgui.dll
2012-12-13 21:22:22 07F649CD36F266BBE33B814FA678AA43 12320256 ----a-w- C:\Windows\SysWOW64\mshtml.dll
2012-12-13 21:22:22 04CD7AFC3D66345DE15130D44E1ABC36 887296 ----a-w- C:\Program Files\Internet Explorer\iedvtool.dll
2012-12-13 21:22:21 CFF3C4ABDCC5356B0674743BDF0FB674 17811968 ----a-w- C:\Windows\System32\mshtml.dll
2012-12-13 21:22:20 C71E7ABB1A34E56CE73AE117C8DD566F 10925568 ----a-w- C:\Windows\System32\ieframe.dll
2012-12-13 21:22:20 5466DCAEF5A648E04D1B6580F2C901B5 9738240 ----a-w- C:\Windows\SysWOW64\ieframe.dll
2012-12-13 18:48:36 BDD6090747EBE05132A63C2DF51209BF 105472 ----a-w- C:\Users\Rudolf\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.0.0_0\np_dvs_plugin.dll
2012-12-13 17:35:13 B39B8CC163C41B12FE83E777199F3378 2048 ----a-w- C:\Windows\SysWOW64\tzres.dll
2012-12-13 17:35:13 3D2D108E14AD21889A2621B94C80A3DD 2048 ----a-w- C:\Windows\System32\tzres.dll
2012-12-13 17:35:11 C58923115CDE6071C3BF2FF063546E9F 3149824 ----a-w- C:\Windows\System32\win32k.sys
2012-12-13 17:35:09 E543D373382C3B76D3BC27585DEF3907 367616 ----a-w- C:\Windows\System32\atmfd.dll
2012-12-13 17:35:09 A927E51E6C39DDE8BB4A488A22DDAAAB 295424 ----a-w- C:\Windows\SysWOW64\atmfd.dll
2012-12-13 17:35:09 8C5201D789F96FE4DAAAA4B0A2D5F1E6 34304 ----a-w- C:\Windows\SysWOW64\atmlib.dll
2012-12-13 17:35:09 4FF0BC10514D0816586D0B129D4D376B 46080 ----a-w- C:\Windows\System32\atmlib.dll
2012-12-13 17:35:05 E337DE8814EABEDEA01919B94D323078 44032 ----a-w- C:\Windows\AppPatch\acwow64.dll
2012-12-13 17:35:05 DA15883524770E44CA94D38E9FD54E3D 5120 ----a-w- C:\Windows\SysWOW64\wow32.dll
2012-12-13 17:35:05 D4F3176082566CEFA633B4945802D4C4 1114112 ----a-w- C:\Windows\SysWOW64\kernel32.dll
2012-12-13 17:35:05 98168B9B0656A01A321FF1BECB2C03E1 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
2012-12-13 17:35:05 746D54D4505D7DD64A7204E9356662D3 14336 ----a-w- C:\Windows\SysWOW64\ntvdm64.dll
2012-12-13 17:35:05 72CC564BBC70DE268784BCE91EB8A28F 215040 ----a-w- C:\Windows\System32\winsrv.dll
2012-12-13 17:35:05 6F2E324703E6D22B9934C33DA48F1F01 424960 ----a-w- C:\Windows\System32\KernelBase.dll
2012-12-13 17:35:05 6F08CABF92AF8FAB3509DD9F313B83F9 4096 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-12-13 17:35:05 2970785A72054740E1A5DCEB32485486 362496 ----a-w- C:\Windows\System32\wow64win.dll
2012-12-13 17:35:05 23A6A58BE46A1D6538B33D0F5535EEBE 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2012-12-13 17:35:05 1DC3504CA4C57900F1557E9A3F01D272 1161216 ----a-w- C:\Windows\System32\kernel32.dll
2012-12-13 17:35:05 15B30F15BD13640B337A0FC37BD48CDE 243200 ----a-w- C:\Windows\System32\wow64.dll
2012-12-13 17:35:05 0978C2B33BDD0A7E6C563AA337DC8BA0 274944 ----a-w- C:\Windows\SysWOW64\KernelBase.dll
2012-12-13 17:35:03 ED6346350B051FA98F755518E1DBC9C4 3584 ---ha-w- C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-12-13 17:35:03 EC0A0E7B3537BB2912221D4933216727 4096 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-12-13 17:35:03 EAAA1E6695B3D5F834E91F41EB1BD9B2 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
2012-12-13 17:35:03 E06E5AA16B3F7C72CDE3593CE87411BB 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
2012-12-13 17:35:03 DF38FFD9127965E857E6E8BF41E3AD66 4096 ---ha-w- C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-12-13 17:35:03 DE4B59CD672B016B0827D7FBBBB13B74 3584 ---ha-w- C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-12-13 17:35:03 D98882549D5D1246039BCF421202EB2E 4096 ---ha-w- C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
2012-12-13 17:35:03 D7573A8D927B68F962BD0B5DA6603EEF 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-12-13 17:35:03 D433E08B64837534AFB786E454BAB61E 5120 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2012-12-13 17:35:03 CD2FCB8F13EABE7702A8AE7DE49E90E5 3584 ---ha-w- C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-12-13 17:35:03 CBE6C675D3B10E48EF7B25A5FF07B46D 4096 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-12-13 17:35:03 CAF11064A276247FE9F30AB06C4F2F2C 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-12-13 17:35:03 C1FA7D1A6548037873C90D4EEE34DF2B 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-12-13 17:35:03 C1D840725CBC18F1232B832083EAE51D 3584 ---ha-w- C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-12-13 17:35:03 BC24199038F4BE63A1825CF168408120 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2012-12-13 17:35:03 BA959333F88D1FAF934CC1318AC3B69E 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
2012-12-13 17:35:03 B4FCCE5BA0990AE78809379CB0C3873C 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-12-13 17:35:03 B45124A0A5E60906AB72B48C25348835 3584 ---ha-w- C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
2012-12-13 17:35:03 B1A6900FE182F839DA1B58CDC9E0B3AE 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
2012-12-13 17:35:03 A2C23B02DC32AA8D3801B84FB54137A6 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-12-13 17:35:03 A05FA0E17EA9ADE6DC9B5C2BEC224030 3584 ---ha-w- C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
2012-12-13 17:35:03 97188F405255248AC8316001411D9CC5 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2012-12-13 17:35:03 9335B95493FA6CBDF553E36820983A29 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
2012-12-13 17:35:03 91EF240DDB541D9FD62EBDC719EAE93A 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
2012-12-13 17:35:03 818C4DEC5316EA1147D059E4CAE75453 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
2012-12-13 17:35:03 7B02A73700CC99A0B9E4D4C0AA2028BA 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
2012-12-13 17:35:03 7978B487E3FBBC666A494EBECBFB26A9 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-12-13 17:35:03 73AF314C216F08A1C97BC03ECAD3A423 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-12-13 17:35:03 72D37545BC03B38537C3ACC7FA8FCA3A 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-12-13 17:35:03 6B28D57A511929227FF1C8F412C1A3F9 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-12-13 17:35:03 695612AA7E235938E1683CD00D61D157 4608 ---ha-w- C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
2012-12-13 17:35:03 63416D211D4B15FD841A21E508081F4C 4096 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-12-13 17:35:03 580BE75B6D90FF6D0C08E5AAD2213C55 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
2012-12-13 17:35:03 545466F436F875D0FFC171C12CAC3244 4608 ---ha-w- C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
2012-12-13 17:35:03 50A078C76D94014B61238F1118B6E02C 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-12-13 17:35:03 4A01572D2030D49CEB0A319DE0BFF53C 4096 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-12-13 17:35:03 42B7B6D5D9AE16C5793CE28029174D5E 4096 ---ha-w- C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
2012-12-13 17:35:03 3C3685C29EEF909266F124A184F849E6 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2012-12-13 17:35:03 3B319CC2334AC0D15BE25A5994065F13 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-12-13 17:35:03 2B9B097C293696DBC473CEF9F623C980 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-12-13 17:35:03 2A1A2C962BB789EF8EE8CF8CB8F100C0 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-12-13 17:35:03 28DC7159AC48CF4622D3D222590897C8 5120 ---ha-w- C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
2012-12-13 17:35:03 244483EF6648ABE51A12C7EB01EB0A60 4096 ---ha-w- C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
2012-12-13 17:35:03 20DC238620F694575DDEE8EC95265774 3584 ---ha-w- C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
2012-12-13 17:35:03 1A208F0CEB6DE90A7EE3D4469B3A88BA 4608 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-12-13 17:35:03 18B5290C01924D87DDD0480BC8FAB8D6 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-12-13 17:35:03 1818CCEE5CFC3FCC876F42643109F2C0 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2012-12-13 17:35:03 1697959965BC58308D046048A69E6C1E 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-12-13 17:35:03 139590E1C420A439F23F261979A59BC4 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-12-13 17:35:03 0E3CEB4FCE14AF72FBAAAE754A7C136A 4608 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-12-13 17:35:03 07D74D633327AFF7E2360F32F83D8200 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
2012-12-13 17:35:03 03164C3DD1DCE155A2528DE6CC878975 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
2012-12-13 17:35:03 028685592EF723982C5D6B98D6C4893D 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
2012-12-13 17:34:57 374CE9DAB2F0CB173B8FCF3AB8DB5D1B 478208 ----a-w- C:\Windows\System32\dpnet.dll
2012-12-13 17:34:57 310F6F492A3B4B1020ED9BF9CCBBE6B6 376832 ----a-w- C:\Windows\SysWOW64\dpnet.dll
==== Startup Registry Enabled ======================
[HKEY_USERS\S-1-5-21-887661970-833271505-2661324671-1000\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"
[HKEY_USERS\S-1-5-21-887661970-833271505-2661324671-1001\Software\Microsoft\Windows\CurrentVersion\Run]
"PC Suite Tray"="C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe -onlytray"
"OfficeSyncProcess"="C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
"GoogleChromeAutoLaunch_E0CABDBA8E9B8D4F84D664A6768B0D0F"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window"
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"IsMyWinLockerReboot"="msiexec.exe /qn /x{voidguid}"
[HKEY_USERS\S-1-5-21-887661970-833271505-2661324671-1000\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"
"ScrSav"="C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe /default"
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"IsMyWinLockerReboot"="msiexec.exe /qn /x{voidguid}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TouchPortalV3Launcher"="C:\Program Files (x86)\Acer\Acer TouchPortal\TouchPortalLauncher.exe na"
"Hotkey Utility"="C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe"
"BCSSync"="C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe /DelayServices"
"SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"SwitchBoard"="C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"PC Suite Tray"="C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe -onlytray"
"OfficeSyncProcess"="C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
"GoogleChromeAutoLaunch_E0CABDBA8E9B8D4F84D664A6768B0D0F"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window"
==== Startup Registry Disabled ======================
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run-]
"Google Update"="\"C:\\Users\\Rudolf\\AppData\\Local\\Google\\Update\\GoogleUpdate.exe\" /c"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-]
"Adobe ARM"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""
"HP Software Update"="C:\\Program Files (x86)\\HP\\HP Software Update\\HPWuSchd2.exe"
"RegUse"="C:\\Program Files (x86)\\RegUse\\RegUse.exe"
"beid"="\"C:\\Program Files (x86)\\Belgium Identity Card\\beid35gui.exe\" /startup"
==== Startup Folders ======================
2011-11-16 11:13:57 834 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
==== Task Scheduler Jobs ======================
C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [12/12/2012 12:34]
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [08/02/2012 18:31]
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [08/02/2012 18:31]
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] not found
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
==== All HKCU SearchScopes ======================
HKCU\*\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pitopia\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pitopia\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\Rudolf\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\Rudolf\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Rudolf\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Users\Rudolf\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WPF6EF7.tmp will be deleted at reboot
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
After Reboot
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Rudolf\AppData\Local\Temp successfully emptied
==== Deleting Files / Folders ======================
"C:\Users\Rudolf\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\Users\Rudolf\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WPF6EF7.tmp" not found
-12-13 17:35:05 4A8CFB2638B946154FC74CD4BECBDCEC 7680 ----a-w- C:\Windows\SysWOW64\instnm.exe
2012-12-13 17:35:05 3326166011C9BC13D6A8EFD856E9921C 338432 ----a-w- C:\Windows\System32\conhost.exe
2012-12-13 17:35:05 2299E1067A7027E25281177830E0F5A7 25600 ----a-w- C:\Windows\SysWOW64\setup16.exe
2012-12-13 17:35:03 E00F3E011103F0D788EC727374BFB50A 2048 ----a-w- C:\Windows\SysWOW64\user.exe
2012-12-09 15:57:10 12EAF21691059826B00C56062BA1EAF0 140968 ----a-w- C:\Users\Rudolf\Downloads\etypesetup.exe
2012-12-09 09:56:34 22385EE33688B10B61DA1D8CA9549E4B 120192 ----a-w- C:\Users\pitopia\AppData\Local\temp\clear.fiClient\cabarc.exe
2012-12-08 21:38:14 22385EE33688B10B61DA1D8CA9549E4B 120192 ----a-w- C:\Users\Rudolf\AppData\Local\Temp\clear.fiClient\cabarc.exe
=== C: other files ==
2012-12-13 21:22:25 F9D038A8C2BDC3AE2548150A7AED0F8A 176640 ----a-w- C:\Windows\SysWOW64\ieui.dll
2012-12-13 21:22:25 D869ACB7C3DA1B823765DB3CBE2E3DD4 96768 ----a-w- C:\Windows\System32\mshtmled.dll
2012-12-13 21:22:25 CCA6A20181B7719B584AEE1DD6542A4E 149552 ----a-w- C:\Program Files (x86)\Internet Explorer\sqmapi.dll
2012-12-13 21:22:25 6938377454A025812CA346B37962F522 182816 ----a-w- C:\Program Files\Internet Explorer\sqmapi.dll
2012-12-13 21:22:25 5E78D5CAF5917FA1FDC71A80CF0D5234 304640 ----a-w- C:\Program Files\Internet Explorer\IEShims.dll
2012-12-13 21:22:25 543BBE783E2CA0D58E1981BD75483BAD 73216 ----a-w- C:\Windows\SysWOW64\mshtmled.dll
2012-12-13 21:22:25 4071D132E66ACDA3776F1FEAD19E6E01 420864 ----a-w- C:\Windows\SysWOW64\vbscript.dll
2012-12-13 21:22:25 1D4127FE151165C5FB9C0EED8701A3D1 194048 ----a-w- C:\Program Files (x86)\Internet Explorer\IEShims.dll
2012-12-13 21:22:25 08D0F87AA3F6DF47658E9ACD4D082027 248320 ----a-w- C:\Windows\System32\ieui.dll
2012-12-13 21:22:24 E290E3FDF645DF29D00D6368B9127E30 607744 ----a-w- C:\Windows\SysWOW64\msfeeds.dll
2012-12-13 21:22:24 C1D0691BE5DDB0C230D8370BD96BBE8B 548864 ----a-w- C:\Program Files\Internet Explorer\ieproxy.dll
2012-12-13 21:22:24 9568BB33BBAD356EDD6CDE988E570523 2312704 ----a-w- C:\Windows\System32\jscript9.dll
2012-12-13 21:22:24 62CBF36E3E10BAA74224BC7A6DD998B5 194560 ----a-w- C:\Program Files (x86)\Internet Explorer\ieproxy.dll
2012-12-13 21:22:24 56336BB69172A2CEE15B2491DB4C70C1 729088 ----a-w- C:\Windows\System32\msfeeds.dll
2012-12-13 21:22:24 478FDA5AB59331259538FB7B02026836 237056 ----a-w- C:\Windows\System32\url.dll
2012-12-13 21:22:24 4266A3230981DD4434C55957F6DD497D 1103872 ----a-w- C:\Windows\SysWOW64\urlmon.dll
2012-12-13 21:22:24 31B0448CC0694378106582F46D0D07E4 231936 ----a-w- C:\Windows\SysWOW64\url.dll
2012-12-13 21:22:24 1DBA462CF92D890D8F8E6472E7E8B4B4 1346048 ----a-w- C:\Windows\System32\urlmon.dll
2012-12-13 21:22:23 BC9CE770AB55DC36349517B4E5E74A12 66048 ----a-w- C:\Windows\SysWOW64\migration\WininetPlugin.dll
2012-12-13 21:22:23 A3FA99A16F10D44EDB7A8C340FA2EE1B 1800704 ----a-w- C:\Windows\SysWOW64\jscript9.dll
2012-12-13 21:22:23 A0F52880DDD164F968BE903C1FECD27E 2144768 ----a-w- C:\Windows\System32\iertutil.dll
2012-12-13 21:22:23 9000CC4505B4545F2B51CFD34277B2E2 86528 ----a-w- C:\Windows\System32\migration\WininetPlugin.dll
2012-12-13 21:22:23 8E38CE628D4817D949DD31D77A7F21CD 65024 ----a-w- C:\Windows\SysWOW64\jsproxy.dll
2012-12-13 21:22:23 7FA3A810F383588D46220967DE8B64FF 1129472 ----a-w- C:\Windows\SysWOW64\wininet.dll
2012-12-13 21:22:23 780E80E5502015EDAEC91DC0A0C96A79 1793024 ----a-w- C:\Windows\SysWOW64\iertutil.dll
2012-12-13 21:22:23 6E6602DE23AB3776007702FC9540E8E9 599040 ----a-w- C:\Windows\System32\vbscript.dll
2012-12-13 21:22:23 5121DB613E10A46A3C5085B479026AA7 1392128 ----a-w- C:\Windows\System32\wininet.dll
2012-12-13 21:22:23 31525BC38F219E3E17D8AF11DA0FAE3E 85504 ----a-w- C:\Windows\System32\jsproxy.dll
2012-12-13 21:22:23 0A866897039E42DF8080BE5DD83BC8E0 717824 ----a-w- C:\Windows\SysWOW64\jscript.dll
2012-12-13 21:22:23 046AD878F246D3801B719700B543A6EE 816640 ----a-w- C:\Windows\System32\jscript.dll
2012-12-13 21:22:22 DC7D3ADCC1F2729514780F611D6590EC 499200 ----a-w- C:\Program Files\Internet Explorer\jsdbgui.dll
2012-12-13 21:22:22 63861BA77FFAF9132DEE6211D1B5C1E5 678912 ----a-w- C:\Program Files (x86)\Internet Explorer\iedvtool.dll
2012-12-13 21:22:22 4C34FD8C56DB38DF6F969AFDDDF4AB83 387584 ----a-w- C:\Program Files (x86)\Internet Explorer\jsdbgui.dll
2012-12-13 21:22:22 07F649CD36F266BBE33B814FA678AA43 12320256 ----a-w- C:\Windows\SysWOW64\mshtml.dll
2012-12-13 21:22:22 04CD7AFC3D66345DE15130D44E1ABC36 887296 ----a-w- C:\Program Files\Internet Explorer\iedvtool.dll
2012-12-13 21:22:21 CFF3C4ABDCC5356B0674743BDF0FB674 17811968 ----a-w- C:\Windows\System32\mshtml.dll
2012-12-13 21:22:20 C71E7ABB1A34E56CE73AE117C8DD566F 10925568 ----a-w- C:\Windows\System32\ieframe.dll
2012-12-13 21:22:20 5466DCAEF5A648E04D1B6580F2C901B5 9738240 ----a-w- C:\Windows\SysWOW64\ieframe.dll
2012-12-13 18:48:36 BDD6090747EBE05132A63C2DF51209BF 105472 ----a-w- C:\Users\Rudolf\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.0.0_0\np_dvs_plugin.dll
2012-12-13 17:35:13 B39B8CC163C41B12FE83E777199F3378 2048 ----a-w- C:\Windows\SysWOW64\tzres.dll
2012-12-13 17:35:13 3D2D108E14AD21889A2621B94C80A3DD 2048 ----a-w- C:\Windows\System32\tzres.dll
2012-12-13 17:35:11 C58923115CDE6071C3BF2FF063546E9F 3149824 ----a-w- C:\Windows\System32\win32k.sys
2012-12-13 17:35:09 E543D373382C3B76D3BC27585DEF3907 367616 ----a-w- C:\Windows\System32\atmfd.dll
2012-12-13 17:35:09 A927E51E6C39DDE8BB4A488A22DDAAAB 295424 ----a-w- C:\Windows\SysWOW64\atmfd.dll
2012-12-13 17:35:09 8C5201D789F96FE4DAAAA4B0A2D5F1E6 34304 ----a-w- C:\Windows\SysWOW64\atmlib.dll
2012-12-13 17:35:09 4FF0BC10514D0816586D0B129D4D376B 46080 ----a-w- C:\Windows\System32\atmlib.dll
2012-12-13 17:35:05 E337DE8814EABEDEA01919B94D323078 44032 ----a-w- C:\Windows\AppPatch\acwow64.dll
2012-12-13 17:35:05 DA15883524770E44CA94D38E9FD54E3D 5120 ----a-w- C:\Windows\SysWOW64\wow32.dll
2012-12-13 17:35:05 D4F3176082566CEFA633B4945802D4C4 1114112 ----a-w- C:\Windows\SysWOW64\kernel32.dll
2012-12-13 17:35:05 98168B9B0656A01A321FF1BECB2C03E1 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
2012-12-13 17:35:05 746D54D4505D7DD64A7204E9356662D3 14336 ----a-w- C:\Windows\SysWOW64\ntvdm64.dll
2012-12-13 17:35:05 72CC564BBC70DE268784BCE91EB8A28F 215040 ----a-w- C:\Windows\System32\winsrv.dll
2012-12-13 17:35:05 6F2E324703E6D22B9934C33DA48F1F01 424960 ----a-w- C:\Windows\System32\KernelBase.dll
2012-12-13 17:35:05 6F08CABF92AF8FAB3509DD9F313B83F9 4096 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-12-13 17:35:05 2970785A72054740E1A5DCEB32485486 362496 ----a-w- C:\Windows\System32\wow64win.dll
2012-12-13 17:35:05 23A6A58BE46A1D6538B33D0F5535EEBE 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2012-12-13 17:35:05 1DC3504CA4C57900F1557E9A3F01D272 1161216 ----a-w- C:\Windows\System32\kernel32.dll
2012-12-13 17:35:05 15B30F15BD13640B337A0FC37BD48CDE 243200 ----a-w- C:\Windows\System32\wow64.dll
2012-12-13 17:35:05 0978C2B33BDD0A7E6C563AA337DC8BA0 274944 ----a-w- C:\Windows\SysWOW64\KernelBase.dll
2012-12-13 17:35:03 ED6346350B051FA98F755518E1DBC9C4 3584 ---ha-w- C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-12-13 17:35:03 EC0A0E7B3537BB2912221D4933216727 4096 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-12-13 17:35:03 EAAA1E6695B3D5F834E91F41EB1BD9B2 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
2012-12-13 17:35:03 E06E5AA16B3F7C72CDE3593CE87411BB 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
2012-12-13 17:35:03 DF38FFD9127965E857E6E8BF41E3AD66 4096 ---ha-w- C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-12-13 17:35:03 DE4B59CD672B016B0827D7FBBBB13B74 3584 ---ha-w- C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-12-13 17:35:03 D98882549D5D1246039BCF421202EB2E 4096 ---ha-w- C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
2012-12-13 17:35:03 D7573A8D927B68F962BD0B5DA6603EEF 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-12-13 17:35:03 D433E08B64837534AFB786E454BAB61E 5120 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2012-12-13 17:35:03 CD2FCB8F13EABE7702A8AE7DE49E90E5 3584 ---ha-w- C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-12-13 17:35:03 CBE6C675D3B10E48EF7B25A5FF07B46D 4096 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-12-13 17:35:03 CAF11064A276247FE9F30AB06C4F2F2C 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-12-13 17:35:03 C1FA7D1A6548037873C90D4EEE34DF2B 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-12-13 17:35:03 C1D840725CBC18F1232B832083EAE51D 3584 ---ha-w- C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-12-13 17:35:03 BC24199038F4BE63A1825CF168408120 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2012-12-13 17:35:03 BA959333F88D1FAF934CC1318AC3B69E 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
2012-12-13 17:35:03 B4FCCE5BA0990AE78809379CB0C3873C 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-12-13 17:35:03 B45124A0A5E60906AB72B48C25348835 3584 ---ha-w- C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
2012-12-13 17:35:03 B1A6900FE182F839DA1B58CDC9E0B3AE 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
2012-12-13 17:35:03 A2C23B02DC32AA8D3801B84FB54137A6 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-12-13 17:35:03 A05FA0E17EA9ADE6DC9B5C2BEC224030 3584 ---ha-w- C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
2012-12-13 17:35:03 97188F405255248AC8316001411D9CC5 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2012-12-13 17:35:03 9335B95493FA6CBDF553E36820983A29 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
2012-12-13 17:35:03 91EF240DDB541D9FD62EBDC719EAE93A 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
2012-12-13 17:35:03 818C4DEC5316EA1147D059E4CAE75453 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
2012-12-13 17:35:03 7B02A73700CC99A0B9E4D4C0AA2028BA 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
2012-12-13 17:35:03 7978B487E3FBBC666A494EBECBFB26A9 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-12-13 17:35:03 73AF314C216F08A1C97BC03ECAD3A423 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-12-13 17:35:03 72D37545BC03B38537C3ACC7FA8FCA3A 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-12-13 17:35:03 6B28D57A511929227FF1C8F412C1A3F9 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-12-13 17:35:03 695612AA7E235938E1683CD00D61D157 4608 ---ha-w- C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
2012-12-13 17:35:03 63416D211D4B15FD841A21E508081F4C 4096 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-12-13 17:35:03 580BE75B6D90FF6D0C08E5AAD2213C55 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
2012-12-13 17:35:03 545466F436F875D0FFC171C12CAC3244 4608 ---ha-w- C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
2012-12-13 17:35:03 50A078C76D94014B61238F1118B6E02C 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-12-13 17:35:03 4A01572D2030D49CEB0A319DE0BFF53C 4096 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-12-13 17:35:03 42B7B6D5D9AE16C5793CE28029174D5E 4096 ---ha-w- C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
2012-12-13 17:35:03 3C3685C29EEF909266F124A184F849E6 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2012-12-13 17:35:03 3B319CC2334AC0D15BE25A5994065F13 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-12-13 17:35:03 2B9B097C293696DBC473CEF9F623C980 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-12-13 17:35:03 2A1A2C962BB789EF8EE8CF8CB8F100C0 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-12-13 17:35:03 28DC7159AC48CF4622D3D222590897C8 5120 ---ha-w- C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
2012-12-13 17:35:03 244483EF6648ABE51A12C7EB01EB0A60 4096 ---ha-w- C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
2012-12-13 17:35:03 20DC238620F694575DDEE8EC95265774 3584 ---ha-w- C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
2012-12-13 17:35:03 1A208F0CEB6DE90A7EE3D4469B3A88BA 4608 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-12-13 17:35:03 18B5290C01924D87DDD0480BC8FAB8D6 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-12-13 17:35:03 1818CCEE5CFC3FCC876F42643109F2C0 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2012-12-13 17:35:03 1697959965BC58308D046048A69E6C1E 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-12-13 17:35:03 139590E1C420A439F23F261979A59BC4 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-12-13 17:35:03 0E3CEB4FCE14AF72FBAAAE754A7C136A 4608 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-12-13 17:35:03 07D74D633327AFF7E2360F32F83D8200 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
2012-12-13 17:35:03 03164C3DD1DCE155A2528DE6CC878975 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
2012-12-13 17:35:03 028685592EF723982C5D6B98D6C4893D 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
2012-12-13 17:34:57 374CE9DAB2F0CB173B8FCF3AB8DB5D1B 478208 ----a-w- C:\Windows\System32\dpnet.dll
2012-12-13 17:34:57 310F6F492A3B4B1020ED9BF9CCBBE6B6 376832 ----a-w- C:\Windows\SysWOW64\dpnet.dll
==== Startup Registry Enabled ======================
[HKEY_USERS\S-1-5-21-887661970-833271505-2661324671-1000\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"
[HKEY_USERS\S-1-5-21-887661970-833271505-2661324671-1001\Software\Microsoft\Windows\CurrentVersion\Run]
"PC Suite Tray"="C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe -onlytray"
"OfficeSyncProcess"="C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
"GoogleChromeAutoLaunch_E0CABDBA8E9B8D4F84D664A6768B0D0F"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window"
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"IsMyWinLockerReboot"="msiexec.exe /qn /x{voidguid}"
[HKEY_USERS\S-1-5-21-887661970-833271505-2661324671-1000\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"
"ScrSav"="C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe /default"
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"IsMyWinLockerReboot"="msiexec.exe /qn /x{voidguid}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TouchPortalV3Launcher"="C:\Program Files (x86)\Acer\Acer TouchPortal\TouchPortalLauncher.exe na"
"Hotkey Utility"="C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe"
"BCSSync"="C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe /DelayServices"
"SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"SwitchBoard"="C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"PC Suite Tray"="C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe -onlytray"
"OfficeSyncProcess"="C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
"GoogleChromeAutoLaunch_E0CABDBA8E9B8D4F84D664A6768B0D0F"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window"
==== Startup Registry Disabled ======================
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run-]
"Google Update"="\"C:\\Users\\Rudolf\\AppData\\Local\\Google\\Update\\GoogleUpdate.exe\" /c"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-]
"Adobe ARM"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""
"HP Software Update"="C:\\Program Files (x86)\\HP\\HP Software Update\\HPWuSchd2.exe"
"RegUse"="C:\\Program Files (x86)\\RegUse\\RegUse.exe"
"beid"="\"C:\\Program Files (x86)\\Belgium Identity Card\\beid35gui.exe\" /startup"
==== Startup Folders ======================
2011-11-16 11:13:57 834 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
==== Task Scheduler Jobs ======================
C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [12/12/2012 12:34]
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [08/02/2012 18:31]
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [08/02/2012 18:31]
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] not found
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
==== All HKCU SearchScopes ======================
HKCU\*\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pitopia\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pitopia\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\Rudolf\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\Rudolf\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Rudolf\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Users\Rudolf\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WPF6EF7.tmp will be deleted at reboot
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
After Reboot
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Rudolf\AppData\Local\Temp successfully emptied
==== Deleting Files / Folders ======================
"C:\Users\Rudolf\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\Users\Rudolf\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WPF6EF7.tmp" not found

