Zoek.exe v5.0.0.0 Updated 09-August-2014 Tool run by Petra on zo 10/08/2014 at 20:11:44,05. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Petra\Desktop\Computer Healthy Check\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2014-08-10-163507.log 34154 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\DatamngrCoordinator deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\DatamngrCoordinator deleted successfully ==== Deleting Files \ Folders ====================== C:\ProgramData\Datamngr not found ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "{4ED1F68A-5463-4931-9384-8FFF5ED91D92}"="C:\Program Files (x86)\McAfee\SiteAdvisor" [08/08/2014 08:11] ==== Chrome Look ====================== ==== Chromium Startpages ====================== C:\Users\Hans\AppData\Local\Google\Chrome\User Data\Default\Preferences "homepage": "http://www.google.com/", "homepage": "http://www.google.com/", "urls_to_restore_on_startup": [ "http://www.google.com/" ] "urls_to_restore_on_startup": [ "http://www.google.com/" ] C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Preferences "homepage": "http://www.search.ask.com/?o=APN10645A&gct=hp&d=406-287&v=a13350-116&t=4", "startup_urls": [ "http://www.search.ask.com/?o=APN10645A&gct=hp&d=406-287&v=a13350-116&t=4" ], ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {963EC420-62B0-415E-8F15-C0CAC7AEAECE} Bing Url="http://www.bing.com/search?FORM=WLETDF&PC=WLEM&q={searchTerms}&src=IE-SearchBox" ==== Reset Google Chrome ====================== C:\Users\Hans\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\Hans\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-1618377428-1196873396-1979927488-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115} deleted successfully HKEY_CLASSES_ROOT\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115} deleted successfully ==== Deleting CLSID Registry Values ====================== HKEY_USERS\S-1-5-21-1618377428-1196873396-1979927488-1001\Software\Microsoft\Internet Explorer\Approved Extensions\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115} deleted successfully ==== shortcuts on Users Desktops ====================== C:\Users\Hans\Desktop\2012.Q3 - Snelkoppeling.lnk - \\NAS-VC\HomeShare\Boekhouding\VC\2012.Q3 C:\Users\Hans\Desktop\Boekhouding VC 2012.xlsx - Snelkoppeling (2).lnk - \\NAS-VC\HomeShare\Boekhouding\VC\Boekhouding VC 2012.xlsx C:\Users\Hans\Desktop\Budgetering - 2012.xlsx - Snelkoppeling (2).lnk - \\NAS-VC\HomeShare\Boekhouding\Privé\Budgetering - 2012.xlsx C:\Users\Hans\Desktop\Facturen VC - Snelkoppeling.lnk - \\NAS-VC\HomeShare\Boekhouding\VC\Facturen VC C:\Users\Petra\Desktop\Aanpassen Fences.lnk - C:\Program Files (x86)\Stardock\Fences\Fences.exe /FromDesktop C:\Users\Petra\Desktop\Chinese les.lnk - \\NAS-VC\HomeShare\Chinese les\Chinese les.xlsx C:\Users\Petra\Desktop\Facturen VC - Snelkoppeling.lnk - \\NAS-VC\HomeShare\Boekhouding\VC\Facturen VC C:\Users\Petra\Desktop\Fotoboek - Snelkoppeling.lnk - \\NAS-VC\HomeShare\Fotoboek C:\Users\Petra\Desktop\Ideëen woonkamer - Snelkoppeling.lnk - C:\Users\Petra\Desktop\Scans - Snelkoppeling.lnk - C:\Scans C:\Users\Petra\Desktop\Stellar Phoenix Outlook PST Repair.lnk - C:\Program Files (x86)\Stellar Phoenix Outlook PST Repair\spopr.exe C:\Users\Petra\Desktop\Word Documenten - Snelkoppeling.lnk - \\NAS-VC\HomeShare\Doorgeef\Petra\Word Documenten C:\Users\Petra\Desktop\diversen\Boekhouding VC 2007.xls.lnk - C:\Boekhouding\VC\Boekhouding VC 2007.xls C:\Users\Petra\Desktop\diversen\Budgetering - 2007.xls.lnk - C:\Boekhouding\Privé\Budgetering - 2007.xls C:\Users\Petra\Desktop\frans sterrebloem\Afbeeldingen - Snelkoppeling.lnk - C:\Users\Petra\AppData\Roaming\Microsoft\Windows\Libraries\Pictures.library-ms C:\Users\Petra\Desktop\UITSPRAAK CHINEES\iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.exe C:\Users\Petra\Desktop\UITSPRAAK CHINEES\Printersupplies bestellen.lnk - C:\Program Files\Dell Printers\Additional Color Laser Software\Reorder\DLRMM.EXE C:\Users\Petra\Desktop\UITSPRAAK CHINEES\QuickTime Player.lnk - C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe C:\Users\Petra\Desktop\UITSPRAAK CHINEES\Skype.lnk - C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe ==== shortcuts on All Users Desktop ====================== C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.8.150\McUICnt.exe SecurityScanner.dll ==== shortcuts in Users Start Menu ====================== C:\Users\Petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Petra\AppData\Roaming\Dropbox\bin\Dropbox.exe /home C:\Users\Petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Petra\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup ==== shortcuts in All Users Start Menu ====================== C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk - C:\Windows\Installer\{AC76BA86-7AD7-1043-7B44-AB0000000001}\SC_Reader.ico C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee\McAfee SecurityCenter.lnk - C:\Program Files (x86)\mcafee.com\agent\mcagent.exe /desktopicon /platui C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk - C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\Silverlight.Configuration.exe ==== shortcuts in Quick Launch ====================== C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Hans\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\Hans\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE /recycle C:\Users\Hans\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Hans\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Hans\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\Hans\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Outlook 2007.lnk - C:\Windows\Installer\{91120000-0031-0000-0000-0000000FF1CE}\outicon.exe C:\Users\Hans\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Off-linediensten van Home'Bank.lnk - C:\Program Files (x86)\ING\Off-line\HomeBank.exe C:\Users\Hans\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\PaperPort.lnk - C:\Program Files (x86)\Dell Printers\paperport\PaperPort\PaprPort.exe C:\Users\Hans\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk - C:\Windows\explorer.exe C:\Users\Petra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Petra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\Petra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE /recycle C:\Users\Petra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Petra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Petra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Adobe InCopy CS2.lnk - C:\Program Files (x86)\Adobe\Adobe InCopy CS2\InCopy.exe C:\Users\Petra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Adobe InCopy CS4.lnk - C:\Program Files (x86)\Adobe\Adobe InCopy CS4\InCopy.exe C:\Users\Petra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Calculator.lnk - C:\Windows\system32\calc.exe C:\Users\Petra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Petra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\Petra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Outlook 2007.lnk - C:\Windows\Installer\{91120000-0031-0000-0000-0000000FF1CE}\outicon.exe C:\Users\Petra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office PowerPoint 2007.lnk - C:\Windows\Installer\{91120000-0031-0000-0000-0000000FF1CE}\pptico.exe C:\Users\Petra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Office Word 2007.lnk - C:\Windows\Installer\{91120000-0031-0000-0000-0000000FF1CE}\wordicon.exe C:\Users\Petra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Sticky Notes.lnk - C:\Users\Petra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Van Dale EW.lnk - C:\Program Files (x86)\Van Dale\Vdew\Vdew.exe C:\Users\Petra\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk - C:\Windows\explorer.exe ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Hans\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Hans\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Petra\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Petra\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D66UR4ZZ will be deleted at reboot C:\Users\Petra\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VSXD52O5 will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Hans\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=4214 folders=603 289776908 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Hans\AppData\Local\Temp emptied successfully C:\Users\Petra\AppData\Local\Temp will be emptied at reboot C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Petra\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Petra\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D66UR4ZZ" not found "C:\Users\Petra\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VSXD52O5" not found ==== EOF on zo 10/08/2014 at 20:34:51,80 ======================