Results 1 to 4 of 4

Thread: excel files lost (gone) after scan and deleting/quaranting

  1. #1
    Junior Member
    Join Date
    May 2017
    Posts
    2

    Default excel files lost (gone) after scan and deleting/quaranting

    Hello,

    After using the scan, and also immunization, I can't seem to find many of my excel files. Did the scan on saturday, and today I can't seem to find some of my excel files.

    I have read some solutions to recover quarantined files, and check log files, but I don't know if any of them are there, because there are not any excel files located here.. Are they disguised with another name etc?

    Using free version 2.4

    Thanks

  2. #2
    Spybot Advisor Team Zenobia's Avatar
    Join Date
    Oct 2005
    Posts
    5,490

    Default

    Could you post the checks.logfile from the scan you did on Saturday? Open Spybot, click System Scan, over to the left click Show previous logs, then select the Checks.logfile with Saturdays date appended to it. It should be something similar to Checks.170527-1933.txt. Open that, rightclick and select Select All, then go to Edit, select Copy, then paste it here.

  3. #3
    Junior Member
    Join Date
    May 2017
    Posts
    2

    Default

    Quote Originally Posted by Zenobia View Post
    Could you post the checks.logfile from the scan you did on Saturday? Open Spybot, click System Scan, over to the left click Show previous logs, then select the Checks.logfile with Saturdays date appended to it. It should be something similar to Checks.170527-1933.txt. Open that, rightclick and select Select All, then go to Edit, select Copy, then paste it here.
    Hi thanks for quick reply!

    Btw, I know see the scan was done Sunday, night to Monday..

    Code:
    [i]	17-05-29 04:44:25		
    [i]	17-05-29 04:44:25	Product	CouponBar
    [+]	17-05-29 04:44:25	Moving into quarantine	HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}
    [+]	17-05-29 04:44:25	Moving into quarantine	HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}
    [+]	17-05-29 04:44:25	Successfully cleaned	HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}
    [+]	17-05-29 04:44:25	Successfully cleaned	HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}
    [i]	17-05-29 04:44:25		
    [i]	17-05-29 04:44:25	Product	Fraud.Codec.x3
    [+]	17-05-29 04:44:25	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\grooveshark.com
    [+]	17-05-29 04:44:25	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\grooveshark.com
    [i]	17-05-29 04:44:25		
    [i]	17-05-29 04:44:25	Product	Facebook.Messenger
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Local\Facebook\
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Local\Facebook\CrashReports\
    [+]	17-05-29 04:44:25	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Local\Facebook\
    [+]	17-05-29 04:44:25	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Local\Facebook\CrashReports\
    [i]	17-05-29 04:44:25		
    [i]	17-05-29 04:44:25	Product	PU.DownloadAdmin
    [+]	17-05-29 04:44:25	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\betrad.com
    [+]	17-05-29 04:44:25	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\betrad.com
    [i]	17-05-29 04:44:25		
    [i]	17-05-29 04:44:25	Product	Macromedia.FlashPlayer.Cookies
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn.gotraffic.net\com.conviva.livePass.sol
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.adplayer.sol
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.bootloader.sol
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\se.videoplaza.kit.adplayer.adplayer.sol
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\opf.ooyala.com\ima_adsets.sol
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth.sol
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth2.sol
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth_id.sol
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\ooyala_guid.sol
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\perf.sol
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\restore.sol
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\soundData.sol
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\svp.vgc.no\com.longtailvideo.jwplayer.sol
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\skype.com\#ui\preferences.sol
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\tag.userreport.com\FlashCookieProxy.swf\__bpn_uid.sol
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn2.dashbida.com\prod\vpaid2-dbfp.swf\dbStore.sol
    [+]	17-05-29 04:44:25	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\embed-ssl.wistia.com\flash\embed_player_v2.0.swf\settings.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn.gotraffic.net\com.conviva.livePass.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.adplayer.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.bootloader.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\se.videoplaza.kit.adplayer.adplayer.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\opf.ooyala.com\ima_adsets.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth2.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth_id.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\ooyala_guid.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\perf.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\restore.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\soundData.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\svp.vgc.no\com.longtailvideo.jwplayer.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\skype.com\#ui\preferences.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\tag.userreport.com\FlashCookieProxy.swf\__bpn_uid.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn2.dashbida.com\prod\vpaid2-dbfp.swf\dbStore.sol
    [+]	17-05-29 04:44:26	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\embed-ssl.wistia.com\flash\embed_player_v2.0.swf\settings.sol
    [i]	17-05-29 04:44:26		
    [i]	17-05-29 04:44:26	Product	Statcounter
    [+]	17-05-29 04:44:26	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statcounter.com/ ()
    [+]	17-05-29 04:44:34	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statcounter.com/ ()
    [i]	17-05-29 04:44:34		
    [i]	17-05-29 04:44:34	Product	CouponBar
    [+]	17-05-29 04:44:34	Moving into quarantine	HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}
    [+]	17-05-29 04:44:34	Moving into quarantine	HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}
    [+]	17-05-29 04:44:34	Successfully cleaned	HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}
    [+]	17-05-29 04:44:34	Successfully cleaned	HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}
    [i]	17-05-29 04:44:34		
    [i]	17-05-29 04:44:34	Product	Fraud.Codec.x3
    [+]	17-05-29 04:44:34	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\grooveshark.com
    [+]	17-05-29 04:44:34	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\grooveshark.com
    [i]	17-05-29 04:44:34		
    [i]	17-05-29 04:44:34	Product	Facebook.Messenger
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Local\Facebook\
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Local\Facebook\CrashReports\
    [+]	17-05-29 04:44:34	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Local\Facebook\
    [+]	17-05-29 04:44:34	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Local\Facebook\CrashReports\
    [i]	17-05-29 04:44:34		
    [i]	17-05-29 04:44:34	Product	PU.DownloadAdmin
    [+]	17-05-29 04:44:34	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\betrad.com
    [+]	17-05-29 04:44:34	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\betrad.com
    [i]	17-05-29 04:44:34		
    [i]	17-05-29 04:44:34	Product	Macromedia.FlashPlayer.Cookies
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn.gotraffic.net\com.conviva.livePass.sol
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.adplayer.sol
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.bootloader.sol
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\se.videoplaza.kit.adplayer.adplayer.sol
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\opf.ooyala.com\ima_adsets.sol
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth.sol
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth2.sol
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth_id.sol
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\ooyala_guid.sol
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\perf.sol
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\restore.sol
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\soundData.sol
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\svp.vgc.no\com.longtailvideo.jwplayer.sol
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\skype.com\#ui\preferences.sol
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\tag.userreport.com\FlashCookieProxy.swf\__bpn_uid.sol
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn2.dashbida.com\prod\vpaid2-dbfp.swf\dbStore.sol
    [+]	17-05-29 04:44:34	Moving into quarantine	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\embed-ssl.wistia.com\flash\embed_player_v2.0.swf\settings.sol
    [+]	17-05-29 04:44:34	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn.gotraffic.net\com.conviva.livePass.sol
    [+]	17-05-29 04:44:34	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.adplayer.sol
    [+]	17-05-29 04:44:34	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.bootloader.sol
    [+]	17-05-29 04:44:34	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\se.videoplaza.kit.adplayer.adplayer.sol
    [+]	17-05-29 04:44:34	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\opf.ooyala.com\ima_adsets.sol
    [+]	17-05-29 04:44:35	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth.sol
    [+]	17-05-29 04:44:35	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth2.sol
    [+]	17-05-29 04:44:35	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth_id.sol
    [+]	17-05-29 04:44:35	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\ooyala_guid.sol
    [+]	17-05-29 04:44:35	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\perf.sol
    [+]	17-05-29 04:44:35	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\restore.sol
    [+]	17-05-29 04:44:35	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\soundData.sol
    [+]	17-05-29 04:44:35	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\svp.vgc.no\com.longtailvideo.jwplayer.sol
    [+]	17-05-29 04:44:35	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\skype.com\#ui\preferences.sol
    [+]	17-05-29 04:44:35	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\tag.userreport.com\FlashCookieProxy.swf\__bpn_uid.sol
    [+]	17-05-29 04:44:35	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn2.dashbida.com\prod\vpaid2-dbfp.swf\dbStore.sol
    [+]	17-05-29 04:44:35	Successfully cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\embed-ssl.wistia.com\flash\embed_player_v2.0.swf\settings.sol
    [i]	17-05-29 04:44:35		
    [i]	17-05-29 04:44:35	Product	Statcounter
    [+]	17-05-29 04:44:35	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statcounter.com/ ()
    [+]	17-05-29 04:44:35	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statcounter.com/ ()
    [i]	17-05-29 04:44:35		
    [i]	17-05-29 04:44:35	Product	BurstMedia
    [+]	17-05-29 04:44:35	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@burstnet.com/ ()
    [+]	17-05-29 04:44:35	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@burstnet.com/ ()
    [i]	17-05-29 04:44:35		
    [i]	17-05-29 04:44:35	Product	MediaPlex
    [+]	17-05-29 04:44:35	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@mediaplex.com/ ()
    [+]	17-05-29 04:44:36	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@mediaplex.com/ ()
    [i]	17-05-29 04:44:36		
    [i]	17-05-29 04:44:36	Product	Tradedoubler
    [+]	17-05-29 04:44:36	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@tradedoubler.com/ ()
    [+]	17-05-29 04:44:36	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@solutions.tradedoubler.com/ ()
    [+]	17-05-29 04:44:36	Moving into quarantine	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@tradedoubler.com/ ()
    [+]	17-05-29 04:44:36	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@tradedoubler.com/ ()
    [+]	17-05-29 04:44:36	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@solutions.tradedoubler.com/ ()
    [+]	17-05-29 04:44:36	Successfully cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@tradedoubler.com/ ()
    [i]	17-05-29 04:44:36		
    [i]	17-05-29 04:44:36	Product	FastClick
    [+]	17-05-29 04:44:36	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@fastclick.net/ ()
    [+]	17-05-29 04:44:37	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@fastclick.net/ ()
    [i]	17-05-29 04:44:37		
    [i]	17-05-29 04:44:37	Product	Adviva
    [+]	17-05-29 04:44:37	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@adviva.net/ ()
    [+]	17-05-29 04:44:37	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@adviva.net/ ()
    [i]	17-05-29 04:44:37		
    [i]	17-05-29 04:44:37	Product	DoubleClick
    [+]	17-05-29 04:44:37	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@survey.g.doubleclick.net/ ()
    [+]	17-05-29 04:44:37	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@doubleclick.net/ ()
    [+]	17-05-29 04:44:37	Moving into quarantine	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@doubleclick.net/ ()
    [+]	17-05-29 04:44:37	Moving into quarantine	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@doubleclick.net/ ()
    [+]	17-05-29 04:44:37	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@survey.g.doubleclick.net/ ()
    [+]	17-05-29 04:44:38	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@doubleclick.net/ ()
    [+]	17-05-29 04:44:38	Successfully cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@doubleclick.net/ ()
    [+]	17-05-29 04:44:38	Successfully cleaned	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@doubleclick.net/ ()
    [i]	17-05-29 04:44:38		
    [i]	17-05-29 04:44:38	Product	LinkSynergy
    [+]	17-05-29 04:44:38	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@dsp.linksynergy.com/ ()
    [+]	17-05-29 04:44:38	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@linksynergy.com/ ()
    [+]	17-05-29 04:44:38	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@dsp.linksynergy.com/ ()
    [+]	17-05-29 04:44:38	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@linksynergy.com/ ()
    [i]	17-05-29 04:44:38		
    [i]	17-05-29 04:44:38	Product	CasaleMedia
    [+]	17-05-29 04:44:38	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@casalemedia.com/ ()
    [+]	17-05-29 04:44:39	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@casalemedia.com/ ()
    [i]	17-05-29 04:44:39		
    [i]	17-05-29 04:44:39	Product	Zedo
    [+]	17-05-29 04:44:39	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@zedo.com/ ()
    [+]	17-05-29 04:44:39	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@zedo.com/ ()
    [i]	17-05-29 04:44:39		
    [i]	17-05-29 04:44:39	Product	WebTrends live
    [+]	17-05-29 04:44:39	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statse.webtrendslive.com/ ()
    [+]	17-05-29 04:44:39	Moving into quarantine	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@statse.webtrendslive.com/ ()
    [+]	17-05-29 04:44:39	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statse.webtrendslive.com/ ()
    [+]	17-05-29 04:44:39	Successfully cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@statse.webtrendslive.com/ ()
    [i]	17-05-29 04:44:39		
    [i]	17-05-29 04:44:39	Product	Right Media
    [+]	17-05-29 04:44:39	Moving into quarantine	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@ad.yieldmanager.com/ ()
    [+]	17-05-29 04:44:39	Successfully cleaned	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@ad.yieldmanager.com/ ()
    [i]	17-05-29 04:44:39		
    [i]	17-05-29 04:44:39	Product	Log
    [+]	17-05-29 04:44:39	Moving into quarantine	C:\Windows\setupact.log
    [+]	17-05-29 04:44:40	Successfully cleaned	C:\Windows\setupact.log
    [i]	17-05-29 04:44:40		
    [i]	17-05-29 04:44:40	Product	Internet Explorer
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Internet Explorer\TypedURLs
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Internet Explorer\TypedURLs
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Internet Explorer\TypedURLs
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Internet Explorer\TypedURLs
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:44:40		
    [i]	17-05-29 04:44:40	Product	MS Management Console
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Microsoft Management Console\Recent File List
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Microsoft Management Console\Recent File List
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Microsoft Management Console\Recent File List
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Microsoft Management Console\Recent File List
    [i]	17-05-29 04:44:40		
    [i]	17-05-29 04:44:40	Product	MS Media Player
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-29 04:44:40		
    [i]	17-05-29 04:44:40	Product	MS Direct3D
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\.DEFAULT\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-18\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\.DEFAULT\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-18\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:44:40		
    [i]	17-05-29 04:44:40	Product	MS DirectDraw
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [i]	17-05-29 04:44:40		
    [i]	17-05-29 04:44:40	Product	MS DirectInput
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Name
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Id
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Name
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Id
    [i]	17-05-29 04:44:40		
    [i]	17-05-29 04:44:40	Product	MS Paint
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List
    [i]	17-05-29 04:44:40		
    [i]	17-05-29 04:44:40	Product	MS Regedit
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Regedit\LastKey
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Regedit\LastKey
    [i]	17-05-29 04:44:40		
    [i]	17-05-29 04:44:40	Product	Windows
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [i]	17-05-29 04:44:40		
    [i]	17-05-29 04:44:40	Product	Windows.OpenWith
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AVI\OpenWithList
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BMP\OpenWithList
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CDT\OpenWithList
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CSV\OpenWithList
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AVI\OpenWithList
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BMP\OpenWithList
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CDT\OpenWithList
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CSV\OpenWithList
    [i]	17-05-29 04:44:40		
    [i]	17-05-29 04:44:40	Product	Windows Explorer
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-29 04:44:40		
    [i]	17-05-29 04:44:40	Product	Windows Media SDK
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [i]	17-05-29 04:44:40		
    [i]	17-05-29 04:44:40	Product	WinRAR
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\ArcHistory
    [+]	17-05-29 04:44:40	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\General\LastFolder
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\ArcHistory
    [+]	17-05-29 04:44:40	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\General\LastFolder
    [i]	17-05-29 04:44:40		
    [i]	17-05-29 04:44:40	Product	Cookie
    [+]	17-05-29 04:44:40	Moving into quarantine	Internet Explorer (User) (Thomas Laptop)Cookies
    [+]	17-05-29 04:44:40	Moving into quarantine	Internet Explorer (Inactive Users) (Administrator)Cookies
    [+]	17-05-29 04:44:40	Moving into quarantine	Internet Explorer (Inactive Users) (Guest)Cookies
    [+]	17-05-29 04:45:03	Successfully cleaned	Internet Explorer (User) (Thomas Laptop)Cookies
    [+]	17-05-29 04:45:03	Successfully cleaned	Internet Explorer (Inactive Users) (Administrator)Cookies
    [+]	17-05-29 04:45:03	Successfully cleaned	Internet Explorer (Inactive Users) (Guest)Cookies
    [i]	17-05-29 04:45:03		
    [i]	17-05-29 04:45:03	Product	Cache
    [+]	17-05-29 04:45:03	Moving into quarantine	Internet Explorer (User) (Thomas Laptop)Cache
    [+]	17-05-29 04:45:03	Moving into quarantine	Internet Explorer (Inactive Users) (Administrator)Cache
    [+]	17-05-29 04:45:03	Moving into quarantine	Internet Explorer (Inactive Users) (Guest)Cache
    [+]	17-05-29 04:45:24	Successfully cleaned	Internet Explorer (User) (Thomas Laptop)Cache
    [+]	17-05-29 04:45:24	Successfully cleaned	Internet Explorer (Inactive Users) (Administrator)Cache
    [+]	17-05-29 04:45:24	Successfully cleaned	Internet Explorer (Inactive Users) (Guest)Cache
    [i]	17-05-29 04:45:24		
    [i]	17-05-29 04:45:24	Product	History
    [+]	17-05-29 04:45:24	Moving into quarantine	Internet Explorer (User) (Thomas Laptop)History
    [+]	17-05-29 04:45:24	Moving into quarantine	Internet Explorer (Inactive Users) (Administrator)History
    [+]	17-05-29 04:45:24	Moving into quarantine	Internet Explorer (Inactive Users) (Guest)History
    [+]	17-05-29 04:45:24	Moving into quarantine	Google Chrome (Default)History
    [+]	17-05-29 04:45:24	Successfully cleaned	Internet Explorer (User) (Thomas Laptop)History
    [+]	17-05-29 04:45:24	Successfully cleaned	Internet Explorer (Inactive Users) (Administrator)History
    [+]	17-05-29 04:45:24	Successfully cleaned	Internet Explorer (Inactive Users) (Guest)History
    [+]	17-05-29 04:45:26	Successfully cleaned	Google Chrome (Default)History
    [i]	17-05-29 04:45:26		
    [i]	17-05-29 04:45:26	Summary	
    [i]	17-05-29 04:45:26	Errors while cleaning	0
    [i]	17-05-29 04:45:26	Files moved into quarantine	105
    [i]	17-05-29 04:45:26	Files successfully cleaned	105
    [i]	17-05-29 04:45:26		
    [i]	17-05-29 04:45:26	Product	BurstMedia
    [+]	17-05-29 04:45:26	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@burstnet.com/ ()
    [+]	17-05-29 04:45:26	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@burstnet.com/ ()
    [i]	17-05-29 04:45:26		
    [i]	17-05-29 04:45:26	Product	MediaPlex
    [+]	17-05-29 04:45:26	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@mediaplex.com/ ()
    [+]	17-05-29 04:45:26	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@mediaplex.com/ ()
    [i]	17-05-29 04:45:26		
    [i]	17-05-29 04:45:26	Product	Tradedoubler
    [+]	17-05-29 04:45:26	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@tradedoubler.com/ ()
    [+]	17-05-29 04:45:26	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@solutions.tradedoubler.com/ ()
    [+]	17-05-29 04:45:26	Moving into quarantine	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@tradedoubler.com/ ()
    [+]	17-05-29 04:45:26	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@tradedoubler.com/ ()
    [+]	17-05-29 04:45:26	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@solutions.tradedoubler.com/ ()
    [+]	17-05-29 04:45:26	Successfully cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@tradedoubler.com/ ()
    [i]	17-05-29 04:45:26		
    [i]	17-05-29 04:45:26	Product	FastClick
    [+]	17-05-29 04:45:26	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@fastclick.net/ ()
    [+]	17-05-29 04:45:27	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@fastclick.net/ ()
    [i]	17-05-29 04:45:27		
    [i]	17-05-29 04:45:27	Product	Adviva
    [+]	17-05-29 04:45:27	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@adviva.net/ ()
    [+]	17-05-29 04:45:27	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@adviva.net/ ()
    [i]	17-05-29 04:45:27		
    [i]	17-05-29 04:45:27	Product	DoubleClick
    [+]	17-05-29 04:45:27	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@survey.g.doubleclick.net/ ()
    [+]	17-05-29 04:45:27	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@doubleclick.net/ ()
    [+]	17-05-29 04:45:27	Moving into quarantine	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@doubleclick.net/ ()
    [+]	17-05-29 04:45:27	Moving into quarantine	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@doubleclick.net/ ()
    [+]	17-05-29 04:45:27	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@survey.g.doubleclick.net/ ()
    [+]	17-05-29 04:45:27	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@doubleclick.net/ ()
    [+]	17-05-29 04:45:27	Successfully cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@doubleclick.net/ ()
    [+]	17-05-29 04:45:27	Successfully cleaned	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@doubleclick.net/ ()
    [i]	17-05-29 04:45:27		
    [i]	17-05-29 04:45:27	Product	LinkSynergy
    [+]	17-05-29 04:45:27	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@dsp.linksynergy.com/ ()
    [+]	17-05-29 04:45:27	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@linksynergy.com/ ()
    [+]	17-05-29 04:45:27	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@dsp.linksynergy.com/ ()
    [+]	17-05-29 04:45:27	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@linksynergy.com/ ()
    [i]	17-05-29 04:45:27		
    [i]	17-05-29 04:45:27	Product	CasaleMedia
    [+]	17-05-29 04:45:27	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@casalemedia.com/ ()
    [+]	17-05-29 04:45:27	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@casalemedia.com/ ()
    [i]	17-05-29 04:45:27		
    [i]	17-05-29 04:45:27	Product	Zedo
    [+]	17-05-29 04:45:27	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@zedo.com/ ()
    [+]	17-05-29 04:45:27	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@zedo.com/ ()
    [i]	17-05-29 04:45:27		
    [i]	17-05-29 04:45:27	Product	WebTrends live
    [+]	17-05-29 04:45:27	Moving into quarantine	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statse.webtrendslive.com/ ()
    [+]	17-05-29 04:45:27	Moving into quarantine	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@statse.webtrendslive.com/ ()
    [+]	17-05-29 04:45:27	Successfully cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statse.webtrendslive.com/ ()
    [+]	17-05-29 04:45:27	Successfully cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@statse.webtrendslive.com/ ()
    [i]	17-05-29 04:45:27		
    [i]	17-05-29 04:45:27	Product	Right Media
    [+]	17-05-29 04:45:27	Moving into quarantine	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@ad.yieldmanager.com/ ()
    [+]	17-05-29 04:45:28	Successfully cleaned	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@ad.yieldmanager.com/ ()
    [i]	17-05-29 04:45:28		
    [i]	17-05-29 04:45:28	Product	Log
    [+]	17-05-29 04:45:28	Moving into quarantine	C:\Windows\setupact.log
    [+]	17-05-29 04:45:28	Successfully cleaned	C:\Windows\setupact.log
    [i]	17-05-29 04:45:28		
    [i]	17-05-29 04:45:28	Product	Internet Explorer
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Internet Explorer\TypedURLs
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Internet Explorer\TypedURLs
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Internet Explorer\TypedURLs
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Internet Explorer\TypedURLs
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:45:28		
    [i]	17-05-29 04:45:28	Product	MS Management Console
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Microsoft Management Console\Recent File List
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Microsoft Management Console\Recent File List
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Microsoft Management Console\Recent File List
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Microsoft Management Console\Recent File List
    [i]	17-05-29 04:45:28		
    [i]	17-05-29 04:45:28	Product	MS Media Player
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-29 04:45:28		
    [i]	17-05-29 04:45:28	Product	MS Direct3D
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\.DEFAULT\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-18\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\.DEFAULT\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-18\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:45:28		
    [i]	17-05-29 04:45:28	Product	MS DirectDraw
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [i]	17-05-29 04:45:28		
    [i]	17-05-29 04:45:28	Product	MS DirectInput
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Name
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Id
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Name
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Id
    [i]	17-05-29 04:45:28		
    [i]	17-05-29 04:45:28	Product	MS Paint
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List
    [i]	17-05-29 04:45:28		
    [i]	17-05-29 04:45:28	Product	MS Regedit
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Regedit\LastKey
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Regedit\LastKey
    [i]	17-05-29 04:45:28		
    [i]	17-05-29 04:45:28	Product	Windows
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [i]	17-05-29 04:45:28		
    [i]	17-05-29 04:45:28	Product	Windows.OpenWith
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AVI\OpenWithList
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BMP\OpenWithList
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CDT\OpenWithList
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CSV\OpenWithList
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AVI\OpenWithList
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BMP\OpenWithList
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CDT\OpenWithList
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CSV\OpenWithList
    [i]	17-05-29 04:45:28		
    [i]	17-05-29 04:45:28	Product	Windows Explorer
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [+]	17-05-29 04:45:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-29 04:45:28		
    [i]	17-05-29 04:45:28	Product	Windows Media SDK
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:45:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:45:29	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:45:29	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:45:29	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:45:29	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:45:29	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:29	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:29	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:29	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:29	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:45:29	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:45:29	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:45:29	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [i]	17-05-29 04:45:29		
    [i]	17-05-29 04:45:29	Product	WinRAR
    [+]	17-05-29 04:45:29	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\ArcHistory
    [+]	17-05-29 04:45:29	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\General\LastFolder
    [+]	17-05-29 04:45:29	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\ArcHistory
    [+]	17-05-29 04:45:29	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\General\LastFolder
    [i]	17-05-29 04:45:29		
    [i]	17-05-29 04:45:29	Product	Cookie
    [+]	17-05-29 04:45:29	Moving into quarantine	Internet Explorer (User) (Thomas Laptop)Cookies
    [+]	17-05-29 04:45:29	Moving into quarantine	Internet Explorer (Inactive Users) (Administrator)Cookies
    [+]	17-05-29 04:45:29	Moving into quarantine	Internet Explorer (Inactive Users) (Guest)Cookies
    [+]	17-05-29 04:45:29	Successfully cleaned	Internet Explorer (User) (Thomas Laptop)Cookies
    [+]	17-05-29 04:45:29	Successfully cleaned	Internet Explorer (Inactive Users) (Administrator)Cookies
    [+]	17-05-29 04:45:29	Successfully cleaned	Internet Explorer (Inactive Users) (Guest)Cookies
    [i]	17-05-29 04:45:29		
    [i]	17-05-29 04:45:29	Product	Cache
    [+]	17-05-29 04:45:29	Moving into quarantine	Internet Explorer (User) (Thomas Laptop)Cache
    [+]	17-05-29 04:45:29	Moving into quarantine	Internet Explorer (Inactive Users) (Administrator)Cache
    [+]	17-05-29 04:45:29	Moving into quarantine	Internet Explorer (Inactive Users) (Guest)Cache
    [+]	17-05-29 04:45:29	Successfully cleaned	Internet Explorer (User) (Thomas Laptop)Cache
    [+]	17-05-29 04:45:29	Successfully cleaned	Internet Explorer (Inactive Users) (Administrator)Cache
    [+]	17-05-29 04:45:29	Successfully cleaned	Internet Explorer (Inactive Users) (Guest)Cache
    [i]	17-05-29 04:45:29		
    [i]	17-05-29 04:45:29	Product	History
    [+]	17-05-29 04:45:29	Moving into quarantine	Internet Explorer (User) (Thomas Laptop)History
    [+]	17-05-29 04:45:29	Moving into quarantine	Internet Explorer (Inactive Users) (Administrator)History
    [+]	17-05-29 04:45:29	Moving into quarantine	Internet Explorer (Inactive Users) (Guest)History
    [+]	17-05-29 04:45:29	Moving into quarantine	Google Chrome (Default)History
    [+]	17-05-29 04:45:29	Successfully cleaned	Internet Explorer (User) (Thomas Laptop)History
    [+]	17-05-29 04:45:29	Successfully cleaned	Internet Explorer (Inactive Users) (Administrator)History
    [+]	17-05-29 04:45:29	Successfully cleaned	Internet Explorer (Inactive Users) (Guest)History
    [+]	17-05-29 04:45:29	Successfully cleaned	Google Chrome (Default)History
    [i]	17-05-29 04:45:29		
    [i]	17-05-29 04:45:29	Summary	
    [i]	17-05-29 04:45:29	Errors while cleaning	0
    [i]	17-05-29 04:45:29	Files moved into quarantine	105
    [i]	17-05-29 04:45:29	Files successfully cleaned	105
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	CouponBar
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	Fraud.Codec.x3
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\grooveshark.com
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	Facebook.Messenger
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Local\Facebook\
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Local\Facebook\CrashReports\
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	PU.DownloadAdmin
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\betrad.com
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	Macromedia.FlashPlayer.Cookies
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn.gotraffic.net\com.conviva.livePass.sol
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.adplayer.sol
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.bootloader.sol
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\se.videoplaza.kit.adplayer.adplayer.sol
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\opf.ooyala.com\ima_adsets.sol
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth.sol
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth2.sol
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth_id.sol
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\ooyala_guid.sol
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\perf.sol
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\restore.sol
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\soundData.sol
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\svp.vgc.no\com.longtailvideo.jwplayer.sol
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\skype.com\#ui\preferences.sol
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\tag.userreport.com\FlashCookieProxy.swf\__bpn_uid.sol
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn2.dashbida.com\prod\vpaid2-dbfp.swf\dbStore.sol
    [i]	17-05-29 04:45:32	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\embed-ssl.wistia.com\flash\embed_player_v2.0.swf\settings.sol
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	Statcounter
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statcounter.com/ ()
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	BurstMedia
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@burstnet.com/ ()
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	MediaPlex
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@mediaplex.com/ ()
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	Tradedoubler
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@tradedoubler.com/ ()
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@solutions.tradedoubler.com/ ()
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@tradedoubler.com/ ()
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	FastClick
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@fastclick.net/ ()
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	Adviva
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@adviva.net/ ()
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	DoubleClick
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@survey.g.doubleclick.net/ ()
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@doubleclick.net/ ()
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@doubleclick.net/ ()
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@doubleclick.net/ ()
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	LinkSynergy
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@dsp.linksynergy.com/ ()
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@linksynergy.com/ ()
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	CasaleMedia
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@casalemedia.com/ ()
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	Zedo
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@zedo.com/ ()
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	WebTrends live
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statse.webtrendslive.com/ ()
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@statse.webtrendslive.com/ ()
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	Right Media
    [i]	17-05-29 04:45:32	Already cleaned	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@ad.yieldmanager.com/ ()
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	Log
    [i]	17-05-29 04:45:32	Already cleaned	C:\Windows\setupact.log
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	Internet Explorer
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Internet Explorer\TypedURLs
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Internet Explorer\TypedURLs
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	MS Management Console
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Microsoft Management Console\Recent File List
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Microsoft Management Console\Recent File List
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	MS Media Player
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	MS Direct3D
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\.DEFAULT\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-18\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	MS DirectDraw
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	MS DirectInput
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Name
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Id
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	MS Paint
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	MS Regedit
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Regedit\LastKey
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	Windows
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	Windows.OpenWith
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AVI\OpenWithList
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BMP\OpenWithList
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CDT\OpenWithList
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CSV\OpenWithList
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	Windows Explorer
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	Windows Media SDK
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:32	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:45:32	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:45:32	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:45:32	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:45:32	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:32	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:32	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:32	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:32	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:45:32	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:45:32	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:45:32	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:45:32	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:45:32	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:45:32	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:45:32	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:45:32	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:32	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:32	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:32	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:45:32	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:45:32	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:45:32	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:45:32	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	WinRAR
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\ArcHistory
    [i]	17-05-29 04:45:32	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\General\LastFolder
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	Cookie
    [i]	17-05-29 04:45:32	Already cleaned	Internet Explorer (User) (Thomas Laptop)Cookies
    [i]	17-05-29 04:45:32	Already cleaned	Internet Explorer (Inactive Users) (Administrator)Cookies
    [i]	17-05-29 04:45:32	Already cleaned	Internet Explorer (Inactive Users) (Guest)Cookies
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	Cache
    [i]	17-05-29 04:45:32	Already cleaned	Internet Explorer (User) (Thomas Laptop)Cache
    [i]	17-05-29 04:45:32	Already cleaned	Internet Explorer (Inactive Users) (Administrator)Cache
    [i]	17-05-29 04:45:32	Already cleaned	Internet Explorer (Inactive Users) (Guest)Cache
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Product	History
    [i]	17-05-29 04:45:32	Already cleaned	Internet Explorer (User) (Thomas Laptop)History
    [i]	17-05-29 04:45:32	Already cleaned	Internet Explorer (Inactive Users) (Administrator)History
    [i]	17-05-29 04:45:32	Already cleaned	Internet Explorer (Inactive Users) (Guest)History
    [i]	17-05-29 04:45:32	Already cleaned	Google Chrome (Default)History
    [i]	17-05-29 04:45:32		
    [i]	17-05-29 04:45:32	Summary	
    [i]	17-05-29 04:45:32	Errors while cleaning	0
    [i]	17-05-29 04:45:32	Files moved into quarantine	12
    [i]	17-05-29 04:45:32	Files successfully cleaned	113
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	CouponBar
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	Fraud.Codec.x3
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\grooveshark.com
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	Facebook.Messenger
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Local\Facebook\
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Local\Facebook\CrashReports\
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	PU.DownloadAdmin
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\betrad.com
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	Macromedia.FlashPlayer.Cookies
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn.gotraffic.net\com.conviva.livePass.sol
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.adplayer.sol
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.bootloader.sol
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\se.videoplaza.kit.adplayer.adplayer.sol
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\opf.ooyala.com\ima_adsets.sol
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth.sol
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth2.sol
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth_id.sol
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\ooyala_guid.sol
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\perf.sol
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\restore.sol
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\soundData.sol
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\svp.vgc.no\com.longtailvideo.jwplayer.sol
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\skype.com\#ui\preferences.sol
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\tag.userreport.com\FlashCookieProxy.swf\__bpn_uid.sol
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn2.dashbida.com\prod\vpaid2-dbfp.swf\dbStore.sol
    [i]	17-05-29 04:46:28	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\embed-ssl.wistia.com\flash\embed_player_v2.0.swf\settings.sol
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	Statcounter
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statcounter.com/ ()
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	BurstMedia
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@burstnet.com/ ()
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	MediaPlex
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@mediaplex.com/ ()
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	Tradedoubler
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@tradedoubler.com/ ()
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@solutions.tradedoubler.com/ ()
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@tradedoubler.com/ ()
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	FastClick
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@fastclick.net/ ()
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	Adviva
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@adviva.net/ ()
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	DoubleClick
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@survey.g.doubleclick.net/ ()
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@doubleclick.net/ ()
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@doubleclick.net/ ()
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@doubleclick.net/ ()
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	LinkSynergy
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@dsp.linksynergy.com/ ()
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@linksynergy.com/ ()
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	CasaleMedia
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@casalemedia.com/ ()
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	Zedo
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@zedo.com/ ()
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	WebTrends live
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statse.webtrendslive.com/ ()
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@statse.webtrendslive.com/ ()
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	Right Media
    [i]	17-05-29 04:46:28	Already cleaned	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@ad.yieldmanager.com/ ()
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	Log
    [i]	17-05-29 04:46:28	Already cleaned	C:\Windows\setupact.log
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	Internet Explorer
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Internet Explorer\TypedURLs
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Internet Explorer\TypedURLs
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	MS Management Console
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Microsoft Management Console\Recent File List
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Microsoft Management Console\Recent File List
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	MS Media Player
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	MS Direct3D
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\.DEFAULT\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-18\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	MS DirectDraw
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	MS DirectInput
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Name
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Id
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	MS Paint
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	MS Regedit
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Regedit\LastKey
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	Windows
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	Windows.OpenWith
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AVI\OpenWithList
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BMP\OpenWithList
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CDT\OpenWithList
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CSV\OpenWithList
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	Windows Explorer
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	Windows Media SDK
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:28	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:46:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:46:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:46:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:46:28	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:28	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:46:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:46:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:46:28	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:46:28	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:46:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:46:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:46:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:46:28	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:28	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:46:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:46:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:46:28	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	WinRAR
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\ArcHistory
    [i]	17-05-29 04:46:28	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\General\LastFolder
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	Cookie
    [i]	17-05-29 04:46:28	Already cleaned	Internet Explorer (User) (Thomas Laptop)Cookies
    [i]	17-05-29 04:46:28	Already cleaned	Internet Explorer (Inactive Users) (Administrator)Cookies
    [i]	17-05-29 04:46:28	Already cleaned	Internet Explorer (Inactive Users) (Guest)Cookies
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	Cache
    [i]	17-05-29 04:46:28	Already cleaned	Internet Explorer (User) (Thomas Laptop)Cache
    [i]	17-05-29 04:46:28	Already cleaned	Internet Explorer (Inactive Users) (Administrator)Cache
    [i]	17-05-29 04:46:28	Already cleaned	Internet Explorer (Inactive Users) (Guest)Cache
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Product	History
    [i]	17-05-29 04:46:28	Already cleaned	Internet Explorer (User) (Thomas Laptop)History
    [i]	17-05-29 04:46:28	Already cleaned	Internet Explorer (Inactive Users) (Administrator)History
    [i]	17-05-29 04:46:28	Already cleaned	Internet Explorer (Inactive Users) (Guest)History
    [i]	17-05-29 04:46:28	Already cleaned	Google Chrome (Default)History
    [i]	17-05-29 04:46:28		
    [i]	17-05-29 04:46:28	Summary	
    [i]	17-05-29 04:46:28	Errors while cleaning	0
    [i]	17-05-29 04:46:28	Files moved into quarantine	12
    [i]	17-05-29 04:46:28	Files successfully cleaned	113
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	CouponBar
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	Fraud.Codec.x3
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\grooveshark.com
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	Facebook.Messenger
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Local\Facebook\
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Local\Facebook\CrashReports\
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	PU.DownloadAdmin
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\betrad.com
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	Macromedia.FlashPlayer.Cookies
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn.gotraffic.net\com.conviva.livePass.sol
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.adplayer.sol
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.bootloader.sol
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\se.videoplaza.kit.adplayer.adplayer.sol
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\opf.ooyala.com\ima_adsets.sol
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth.sol
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth2.sol
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth_id.sol
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\ooyala_guid.sol
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\perf.sol
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\restore.sol
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\soundData.sol
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\svp.vgc.no\com.longtailvideo.jwplayer.sol
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\skype.com\#ui\preferences.sol
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\tag.userreport.com\FlashCookieProxy.swf\__bpn_uid.sol
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn2.dashbida.com\prod\vpaid2-dbfp.swf\dbStore.sol
    [i]	17-05-29 04:46:44	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\embed-ssl.wistia.com\flash\embed_player_v2.0.swf\settings.sol
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	Statcounter
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statcounter.com/ ()
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	BurstMedia
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@burstnet.com/ ()
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	MediaPlex
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@mediaplex.com/ ()
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	Tradedoubler
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@tradedoubler.com/ ()
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@solutions.tradedoubler.com/ ()
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@tradedoubler.com/ ()
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	FastClick
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@fastclick.net/ ()
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	Adviva
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@adviva.net/ ()
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	DoubleClick
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@survey.g.doubleclick.net/ ()
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@doubleclick.net/ ()
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@doubleclick.net/ ()
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@doubleclick.net/ ()
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	LinkSynergy
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@dsp.linksynergy.com/ ()
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@linksynergy.com/ ()
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	CasaleMedia
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@casalemedia.com/ ()
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	Zedo
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@zedo.com/ ()
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	WebTrends live
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statse.webtrendslive.com/ ()
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@statse.webtrendslive.com/ ()
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	Right Media
    [i]	17-05-29 04:46:44	Already cleaned	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@ad.yieldmanager.com/ ()
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	Log
    [i]	17-05-29 04:46:44	Already cleaned	C:\Windows\setupact.log
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	Internet Explorer
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Internet Explorer\TypedURLs
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Internet Explorer\TypedURLs
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	MS Management Console
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Microsoft Management Console\Recent File List
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Microsoft Management Console\Recent File List
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	MS Media Player
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	MS Direct3D
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\.DEFAULT\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-18\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	MS DirectDraw
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	MS DirectInput
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Name
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Id
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	MS Paint
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	MS Regedit
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Regedit\LastKey
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	Windows
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	Windows.OpenWith
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AVI\OpenWithList
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BMP\OpenWithList
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CDT\OpenWithList
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CSV\OpenWithList
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	Windows Explorer
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	Windows Media SDK
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:46:44	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:46:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:46:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:46:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:46:44	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:44	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:46:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:46:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:46:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:46:44	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:46:44	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:46:44	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:46:44	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 04:46:44	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:44	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:44	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:44	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 04:46:44	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:46:44	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:46:44	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 04:46:44	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	WinRAR
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\ArcHistory
    [i]	17-05-29 04:46:44	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\General\LastFolder
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	Cookie
    [i]	17-05-29 04:46:44	Already cleaned	Internet Explorer (User) (Thomas Laptop)Cookies
    [i]	17-05-29 04:46:44	Already cleaned	Internet Explorer (Inactive Users) (Administrator)Cookies
    [i]	17-05-29 04:46:44	Already cleaned	Internet Explorer (Inactive Users) (Guest)Cookies
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	Cache
    [i]	17-05-29 04:46:44	Already cleaned	Internet Explorer (User) (Thomas Laptop)Cache
    [i]	17-05-29 04:46:44	Already cleaned	Internet Explorer (Inactive Users) (Administrator)Cache
    [i]	17-05-29 04:46:44	Already cleaned	Internet Explorer (Inactive Users) (Guest)Cache
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Product	History
    [i]	17-05-29 04:46:44	Already cleaned	Internet Explorer (User) (Thomas Laptop)History
    [i]	17-05-29 04:46:44	Already cleaned	Internet Explorer (Inactive Users) (Administrator)History
    [i]	17-05-29 04:46:44	Already cleaned	Internet Explorer (Inactive Users) (Guest)History
    [i]	17-05-29 04:46:44	Already cleaned	Google Chrome (Default)History
    [i]	17-05-29 04:46:44		
    [i]	17-05-29 04:46:44	Summary	
    [i]	17-05-29 04:46:44	Errors while cleaning	0
    [i]	17-05-29 04:46:44	Files moved into quarantine	12
    [i]	17-05-29 04:46:44	Files successfully cleaned	115
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	CouponBar
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	Fraud.Codec.x3
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\grooveshark.com
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	Facebook.Messenger
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Local\Facebook\
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Local\Facebook\CrashReports\
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	PU.DownloadAdmin
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\betrad.com
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	Macromedia.FlashPlayer.Cookies
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn.gotraffic.net\com.conviva.livePass.sol
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.adplayer.sol
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.bootloader.sol
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\se.videoplaza.kit.adplayer.adplayer.sol
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\opf.ooyala.com\ima_adsets.sol
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth.sol
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth2.sol
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth_id.sol
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\ooyala_guid.sol
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\perf.sol
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\restore.sol
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\soundData.sol
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\svp.vgc.no\com.longtailvideo.jwplayer.sol
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\skype.com\#ui\preferences.sol
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\tag.userreport.com\FlashCookieProxy.swf\__bpn_uid.sol
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn2.dashbida.com\prod\vpaid2-dbfp.swf\dbStore.sol
    [i]	17-05-29 14:46:17	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\embed-ssl.wistia.com\flash\embed_player_v2.0.swf\settings.sol
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	Statcounter
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statcounter.com/ ()
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	BurstMedia
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@burstnet.com/ ()
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	MediaPlex
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@mediaplex.com/ ()
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	Tradedoubler
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@tradedoubler.com/ ()
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@solutions.tradedoubler.com/ ()
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@tradedoubler.com/ ()
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	FastClick
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@fastclick.net/ ()
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	Adviva
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@adviva.net/ ()
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	DoubleClick
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@survey.g.doubleclick.net/ ()
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@doubleclick.net/ ()
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@doubleclick.net/ ()
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@doubleclick.net/ ()
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	LinkSynergy
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@dsp.linksynergy.com/ ()
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@linksynergy.com/ ()
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	CasaleMedia
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@casalemedia.com/ ()
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	Zedo
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@zedo.com/ ()
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	WebTrends live
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statse.webtrendslive.com/ ()
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@statse.webtrendslive.com/ ()
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	Right Media
    [i]	17-05-29 14:46:17	Already cleaned	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@ad.yieldmanager.com/ ()
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	Log
    [i]	17-05-29 14:46:17	Already cleaned	C:\Windows\setupact.log
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	Internet Explorer
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Internet Explorer\TypedURLs
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Internet Explorer\TypedURLs
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	MS Management Console
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Microsoft Management Console\Recent File List
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Microsoft Management Console\Recent File List
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	MS Media Player
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	MS Direct3D
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\.DEFAULT\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-18\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	MS DirectDraw
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	MS DirectInput
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Name
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Id
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	MS Paint
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	MS Regedit
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Regedit\LastKey
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	Windows
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	Windows.OpenWith
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AVI\OpenWithList
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BMP\OpenWithList
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CDT\OpenWithList
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CSV\OpenWithList
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	Windows Explorer
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	Windows Media SDK
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 14:46:17	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 14:46:17	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 14:46:17	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 14:46:17	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 14:46:17	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 14:46:17	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 14:46:17	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 14:46:17	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 14:46:17	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 14:46:17	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 14:46:17	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 14:46:17	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 14:46:17	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 14:46:17	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 14:46:17	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 14:46:17	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-29 14:46:17	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 14:46:17	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 14:46:17	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 14:46:17	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-29 14:46:17	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 14:46:17	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 14:46:17	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-29 14:46:17	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	WinRAR
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\ArcHistory
    [i]	17-05-29 14:46:17	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\General\LastFolder
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	Cookie
    [i]	17-05-29 14:46:17	Already cleaned	Internet Explorer (User) (Thomas Laptop)Cookies
    [i]	17-05-29 14:46:17	Already cleaned	Internet Explorer (Inactive Users) (Administrator)Cookies
    [i]	17-05-29 14:46:17	Already cleaned	Internet Explorer (Inactive Users) (Guest)Cookies
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	Cache
    [i]	17-05-29 14:46:17	Already cleaned	Internet Explorer (User) (Thomas Laptop)Cache
    [i]	17-05-29 14:46:17	Already cleaned	Internet Explorer (Inactive Users) (Administrator)Cache
    [i]	17-05-29 14:46:17	Already cleaned	Internet Explorer (Inactive Users) (Guest)Cache
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Product	History
    [i]	17-05-29 14:46:17	Already cleaned	Internet Explorer (User) (Thomas Laptop)History
    [i]	17-05-29 14:46:17	Already cleaned	Internet Explorer (Inactive Users) (Administrator)History
    [i]	17-05-29 14:46:17	Already cleaned	Internet Explorer (Inactive Users) (Guest)History
    [i]	17-05-29 14:46:17	Already cleaned	Google Chrome (Default)History
    [i]	17-05-29 14:46:17		
    [i]	17-05-29 14:46:17	Summary	
    [i]	17-05-29 14:46:17	Errors while cleaning	0
    [i]	17-05-29 14:46:17	Files moved into quarantine	12
    [i]	17-05-29 14:46:17	Files successfully cleaned	115
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	CouponBar
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	Fraud.Codec.x3
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\grooveshark.com
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	Facebook.Messenger
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Local\Facebook\
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Local\Facebook\CrashReports\
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	PU.DownloadAdmin
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Internet Explorer\DOMStorage\betrad.com
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	Macromedia.FlashPlayer.Cookies
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn.gotraffic.net\com.conviva.livePass.sol
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.adplayer.sol
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\com.videoplaza.bootloader.sol
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\no-vg.cdn.videoplaza.tv\se.videoplaza.kit.adplayer.adplayer.sol
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\opf.ooyala.com\ima_adsets.sol
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth.sol
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth2.sol
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\auth_id.sol
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\ooyala_guid.sol
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\player.ooyala.com\perf.sol
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\restore.sol
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\s.ytimg.com\soundData.sol
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\svp.vgc.no\com.longtailvideo.jwplayer.sol
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\skype.com\#ui\preferences.sol
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\tag.userreport.com\FlashCookieProxy.swf\__bpn_uid.sol
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\cdn2.dashbida.com\prod\vpaid2-dbfp.swf\dbStore.sol
    [i]	17-05-30 06:31:42	Already cleaned	C:\Users\Thomas Laptop\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8TQV5EQX\embed-ssl.wistia.com\flash\embed_player_v2.0.swf\settings.sol
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	Statcounter
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statcounter.com/ ()
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	BurstMedia
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@burstnet.com/ ()
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	MediaPlex
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@mediaplex.com/ ()
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	Tradedoubler
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@tradedoubler.com/ ()
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@solutions.tradedoubler.com/ ()
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@tradedoubler.com/ ()
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	FastClick
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@fastclick.net/ ()
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	Adviva
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@adviva.net/ ()
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	DoubleClick
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@survey.g.doubleclick.net/ ()
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@doubleclick.net/ ()
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@doubleclick.net/ ()
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@doubleclick.net/ ()
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	LinkSynergy
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@dsp.linksynergy.com/ ()
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@linksynergy.com/ ()
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	CasaleMedia
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@casalemedia.com/ ()
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	Zedo
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@zedo.com/ ()
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	WebTrends live
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (User): Thomas Laptop)Cookie:thomas laptop@statse.webtrendslive.com/ ()
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (Inactive Users): Administrator)Cookie:administrator@statse.webtrendslive.com/ ()
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	Right Media
    [i]	17-05-30 06:31:42	Already cleaned	Cookie (Internet Explorer (Inactive Users): Guest)Cookie:guest@ad.yieldmanager.com/ ()
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	Log
    [i]	17-05-30 06:31:42	Already cleaned	C:\Windows\setupact.log
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	Internet Explorer
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Internet Explorer\TypedURLs
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Internet Explorer\TypedURLs
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	MS Management Console
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Microsoft Management Console\Recent File List
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Microsoft Management Console\Recent File List
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	MS Media Player
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	MS Direct3D
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\.DEFAULT\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-18\Software\Microsoft\Direct3D\MostRecentApplication\Name
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	MS DirectDraw
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	MS DirectInput
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Name
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\DirectInput\MostRecentApplication\Id
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	MS Paint
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	MS Regedit
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Regedit\LastKey
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	Windows
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	Windows.OpenWith
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AVI\OpenWithList
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BMP\OpenWithList
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CDT\OpenWithList
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CSV\OpenWithList
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	Windows Explorer
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
    [i]	17-05-30 06:31:42		
    [i]	17-05-30 06:31:42	Product	Windows Media SDK
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [i]	17-05-30 06:31:42	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-30 06:31:44	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-30 06:31:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-30 06:31:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-30 06:31:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-30 06:31:44	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-30 06:31:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-30 06:31:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-30 06:31:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-30 06:31:44	Moving into quarantine	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-30 06:31:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-30 06:31:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-30 06:31:44	Moving into quarantine	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-30 06:31:44	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-30 06:31:47	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-30 06:31:47	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-30 06:31:47	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
    [+]	17-05-30 06:31:47	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-30 06:31:47	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-30 06:31:47	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-30 06:31:47	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
    [+]	17-05-30 06:31:47	Successfully cleaned	HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-30 06:31:47	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-30 06:31:47	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-500\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [+]	17-05-30 06:31:47	Successfully cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-501\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
    [i]	17-05-30 06:31:47		
    [i]	17-05-30 06:31:47	Product	WinRAR
    [i]	17-05-30 06:31:47	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\ArcHistory
    [i]	17-05-30 06:31:47	Already cleaned	HKEY_USERS\S-1-5-21-3691286436-2537265345-1850111504-1001\Software\WinRAR\General\LastFolder
    [i]	17-05-30 06:31:47		
    [i]	17-05-30 06:31:47	Product	Cookie
    [i]	17-05-30 06:31:47	Already cleaned	Internet Explorer (User) (Thomas Laptop)Cookies
    [i]	17-05-30 06:31:47	Already cleaned	Internet Explorer (Inactive Users) (Administrator)Cookies
    [i]	17-05-30 06:31:47	Already cleaned	Internet Explorer (Inactive Users) (Guest)Cookies
    [i]	17-05-30 06:31:47		
    [i]	17-05-30 06:31:47	Product	Cache
    [i]	17-05-30 06:31:47	Already cleaned	Internet Explorer (User) (Thomas Laptop)Cache
    [i]	17-05-30 06:31:47	Already cleaned	Internet Explorer (Inactive Users) (Administrator)Cache
    [i]	17-05-30 06:31:47	Already cleaned	Internet Explorer (Inactive Users) (Guest)Cache
    [i]	17-05-30 06:31:47		
    [i]	17-05-30 06:31:47	Product	History
    [i]	17-05-30 06:31:47	Already cleaned	Internet Explorer (User) (Thomas Laptop)History
    [i]	17-05-30 06:31:47	Already cleaned	Internet Explorer (Inactive Users) (Administrator)History
    [i]	17-05-30 06:31:47	Already cleaned	Internet Explorer (Inactive Users) (Guest)History
    [i]	17-05-30 06:31:47	Already cleaned	Google Chrome (Default)History
    [i]	17-05-30 06:31:47		
    [i]	17-05-30 06:31:47	Summary	
    [i]	17-05-30 06:31:47	Errors while cleaning	0
    [i]	17-05-30 06:31:47	Files moved into quarantine	12
    [i]	17-05-30 06:31:47	Files successfully cleaned	115

  4. #4
    Spybot Advisor Team Zenobia's Avatar
    Join Date
    Oct 2005
    Posts
    5,490

    Default

    You're welcome.

    I don't see anything in the logfile that would indicate excel file deletions. I checked through the logfile a couple of times to be sure.
    Is it recent workbooks or recent places that is empty in Excel? Also, do you have Office 2010 or higher?

Tags for this Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •