Zoek.exe v5.0.0.0 Updated 18-01-2015 Tool run by dannywintjens on ma 19-01-2015 at 14:09:16,65. Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\dannywintjens\Desktop\zoek.exe [Scan all users] [Script inserted] ==== Older Logs ====================== C:\zoek-results2015-01-18-193157.log 71463 bytes C:\zoek-results2015-01-19-041553.log 15915 bytes C:\zoek-results2015-01-19-120232.log 1067 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== FireFox Fix ====================== ProfilePath: C:\Users\DANNYW~1\AppData\Roaming\Mozilla\Firefox\Profiles\c3sqde0w.default ---- Lines trovi removed from prefs.js ---- user_pref("browser.startup.homepage", "http://www.trovi.com/?gd=&ctid=CT3330789&octid=EB_ORIGINAL_CTID&ISID=M6F95EFD3-71A8-48E6-8E8C-6DB51F7CCC6B&Sear ---- Lines browser.startup.page removed from prefs.js ---- user_pref("browser.startup.page", 1); ---- FireFox user.js and prefs.js backups ---- user_19-01-2015_1632_.backup prefs_19-01-2015_1632_.backup ==== Deleting Files \ Folders ====================== C:\PROGRA~3\ProductData deleted C:\Users\dannywintjens\AppData\LocalLow\ADSRemoval deleted ==== Firefox Start and Search pages ====================== ProfilePath: C:\Users\DANNYW~1\AppData\Roaming\Mozilla\Firefox\Profiles\c3sqde0w.default user_pref("browser.startup.homepage", "http://www.trovi.com/?gd=&ctid=CT3330789&octid=EB_ORIGINAL_CTID&ISID=M6F95EFD3-71A8-48E6-8E8C-6DB51F7CCC6B&SearchSource=55&CUI=&UM=6&UP=SP723F71E7-04DF-4020-852F-40388AB9A103&SSPV="); user_pref("browser.startup.homepage", "http://www.trovi.com/?gd=&ctid=CT3330789&octid=EB_ORIGINAL_CTID&ISID=M6F95EFD3-71A8-48E6-8E8C-6DB51F7CCC6B&SearchSource=55&CUI=&UM=6&UP=SP723F71E7-04DF-4020-852F-40388AB9A103&SSPV="); user_pref("browser.search.selectedEngine", "Google"); ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "{22119944-ED35-4ab1-910B-E619EA06A115}"="C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox" [19-11-2014 04:19] [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions] "{22119944-ED35-4ab1-910B-E619EA06A115}"="C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox" [19-11-2014 04:19] ==== Firefox Extensions ====================== ProfilePath: C:\Users\DANNYW~1\AppData\Roaming\Mozilla\Firefox\Profiles\c3sqde0w.default - Advanced SystemCare Surfing Protection - C:\Users\dannywintjens\AppData\Roaming\Mozilla\Firefox\Profiles\c3sqde0w.default\extensions\iobitascsurfingprotection@iobit.com - Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF - Undetermined - iobitascsurfingprotection@iobit.com - Undetermined - wrc@avast.com - Advanced SystemCare Surfing Protection - %ProfilePath%\extensions\iobitascsurfingprotection@iobit.com - Firebug - %ProfilePath%\extensions\firebug@software.joehewitt.com.xpi AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} - Skype Click to Call - %AppDir%\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi ==== Firefox Plugins ====================== Profilepath: C:\Users\dannywintjens\AppData\Roaming\Mozilla\Firefox\Profiles\c3sqde0w.default 5950D438CD3DDF2DD50D9FA4E07A6C1C - C:\Users\dannywintjens\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player ABE2E50533899C45DFA03E1D8767648F - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_182.dll - Shockwave Flash ==== Chromium Look ====================== Google Chrome Version: 39.0.2171.99 (Up to date, latest Stable version: 39.0.2171.99) HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions eofcbnmajmjmplflapaojjnihcjkigck - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswwebrepchrome-sp.crx[04-08-2014 11:17] gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[21-11-2014 13:52] lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[14-07-2014 18:22] pnlccmojcmeohlpggmfnbbiapkmbliob - C:\Program Files (x86)\Siber Systems\AI RoboForm\Chrome\rf-chrome.crx[19-11-2014 00:24] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions nikpibnbobmbdbheedjfogjlikpgpnhp - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx[20-03-2014 17:06] HD for YouTube™ - dannywintjens\AppData\Local\Google\Chrome\User Data\Default\Extensions\akjbfncbadcmnkopckegnmjgihagponf Facebook Customizer (by Adblock Plus) - dannywintjens\AppData\Local\Google\Chrome\User Data\Default\Extensions\deoeenbkoccjaefmmhpmlegngdjohdcm Avast SafePrice - dannywintjens\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck Avast Online Security - dannywintjens\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki Adblock For Youtube - dannywintjens\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfdofdiiecohafjapmddfpbgjcpelonk Skype Click to Call - dannywintjens\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl RoboForm - dannywintjens\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnlccmojcmeohlpggmfnbbiapkmbliob ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.msn.com/?ocid=iehp" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.msn.com/?ocid=iehp" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\dannywintjens\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\dannywintjens\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3OHZBSYB will be deleted at reboot C:\Users\dannywintjens\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\H400Y0MF will be deleted at reboot C:\Users\dannywintjens\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J9LRFPG8 will be deleted at reboot C:\Users\dannywintjens\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JEH4G25P will be deleted at reboot ==== Empty FireFox Cache ====================== C:\Users\dannywintjens\AppData\Local\Mozilla\Firefox\Profiles\c3sqde0w.default\cache2 emptied successfully ==== Empty Chrome Cache ====================== C:\Users\dannywintjens\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1496 folders=259 477059743 bytes) ==== Empty Temp Folders ====================== C:\Users\dannywintjens\AppData\Local\Temp will be emptied at reboot C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\DANNYW~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\dannywintjens\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3OHZBSYB" not found "C:\Users\dannywintjens\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\H400Y0MF" not found "C:\Users\dannywintjens\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J9LRFPG8" not found "C:\Users\dannywintjens\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JEH4G25P" not found "C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted ==== EOF on ma 19-01-2015 at 19:59:48,87 ======================