Zoek.exe v5.0.0.0 Updated 04-May-2015 Tool run by Arne Coudenys on di 16/06/2015 at 11:45:39,26. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Arne Coudenys\Downloads\zoek.exe [Scan all users] [Script inserted] ==== Older Logs ====================== C:\zoek-results2015-06-14-211256.log 92144 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\Users\Arne Coudenys\AppData\Local\Popcorn-Time deleted "C:\windows\Sysnative\Tasks\AutoKMS" deleted "C:\windows\AutoKMS\AutoKMS.exe" deleted ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "belgiumeid@eid.belgium.be"="C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be" [] ==== Firefox Extensions ====================== ProfilePath: C:\Users\ARNECO~1\AppData\Roaming\Mozilla\Firefox\Profiles\bpinnlba.default - Undetermined - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\afproxy@anchorfree.com - Undetermined - C:\Users\Arne Coudenys\AppData\Roaming\Mozilla\Firefox\Profiles\bpinnlba.default\extensions\avg@toolbar AppDir: C:\Program Files (x86)\Mozilla Firefox - Belgium eID - %AppDir%\extensions\belgiumeid@eid.belgium.be ==== Firefox Plugins ====================== Profilepath: C:\Users\Arne Coudenys\AppData\Roaming\Mozilla\Firefox\Profiles\bpinnlba.default F6D12679B9112358AC705A1308156F59 - C:\Users\Arne Coudenys\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player ==== Chromium Look ====================== Google Chrome Version: 43.0.2357.124 Musictonic - Arne Coudenys\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cbakkiohhfghmaeaafbbgnigkmeanggp Tonematrix - Arne Coudenys\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\enpfehkomaakbncdddjkoffacajcglha AdBlock - Arne Coudenys\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom Lose It - Arne Coudenys\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jehemifhdilebjjpibeianiedocpgocn PT - Arne Coudenys\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kmgohkgndpahjklgpdihieeedjeneoke Online Muziek Luisteren - Arne Coudenys\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\olacollommkcihebibpjdbhkngcnhgdg BodBot - Arne Coudenys\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ppnkdiaelidjhcebhmgemlpnghbdgjhk ==== Chromium Startpages ====================== C:\Users\Arne Coudenys\AppData\Local\Google\Chrome\User Data\Profile 1\Preferences 63B19A9C2BD66C15791B88DC471C2BDC591","kmendfapggjehodndflmmgagdbamhnfd":"001CA75C454C6E7A9E1F9144DE2796D1671FF398951A6719353E755DED07BF66","kmgohkgndpahjklgpdihieeedjeneoke":"19562D2F2717F214D94FD5C0656118F5C2AD7F35BDF350C80426659AC0F753A3","knfcjnkdnbpkigoppbacekeecogddofd":"12D79AC0C9FD88EFD5AACC89CEA6EA8E42A4701CA5A729200FA5B8FA44940E47","lbfehkoinhhcknnbdgnnmjhiladcgbol":"A75DB0A7938FF1BCBCC92E4080205B008D23A8D9789A77DEA346353AAEABFF56","mfehgcgbbipciphmccgaenjidiccnmng":"AE110C76A222D7FC3534C0C4A5308AB7AD8AC0A2EE4844F2DDCD4D624CFB10BC","mfffpogegjflfpflabcdkioaeobkgjik":"538B4FD27A3B1B192F3A0531DB4FDE168C3DDA894585099E3A9AC2B982095667","mgndgikekgjfcpckkfioiadnlibdjbkf":"F4BE990375A8E43EF7D4EFC278B22306E058FE69BFE4BD2076272E6A2B0083DA","mhjfbmdgcfjbbpaeojofohoefgiehjai":"16D3AD3431FCCD358067B22D2BAB89CFF35404C1BEBF6DE852EEEC413E11AAD0","mihcahmgecmbnbcchbopgniflfhgnkff":"6E82DCC0D31E106E621F5AA23942E7D8CD031F648C591F34723A12E5B9335B4F","neajdppkdcdipfabeoofebfddakdcjhd":"01E37E8DFAC8AA96F2699B0B5B9C37326A644465097C58F7B337E94054869829","nkeimhogjdpnpccoofpliimaahmaaome":"1B188376996093D125F05A7BB9BF01D52466A2B03EE9CEC0CB3AB73CD64DD179","nmmhkkegccagdldgiimedpiccmgmieda":"59019D0BCC5D66C37CD448D76BA53A0DBAE6999F76B39EFEBFAC104DB743E442","olacollommkcihebibpjdbhkngcnhgdg":"9F7E31ABEF923375FECA6222F1616DC29DC4EF2DE4ECA0D010BA3CE3475277CA","pafkbggdmjlpgkdkcbjmhmfcdpncadgh":"8F8D155DD1366DED6819D1091F33780F5A1D515FC9D2B3D7839E4A702C685F95","pjkljhegncpnkpknbcohdijeoejaedia":"B4F2369111951BD948E87407AC1F1A62FB14E91C1CE856EF1E69842A7C25B6D1","ppnkdiaelidjhcebhmgemlpnghbdgjhk":"3B7C07BC3A786796797ABBC4E74C2A7DADFEB99E5D53DE6816B663F4BFC55F39"}},"google":{"services":{"last_username":"0F08D91E7868FC303C855B97E4400C7E880894CAE271FEA26ADD22606559666F","username":"893C472E2DED8A517A1A0FAC4FE363086726FACB22493AC8D38F314136DCE838"}},"homepage":"4FAFBF3AF16D84F404C7B3A7D3363FA0482715136C16F577174B9705FE9C8E0C","homepage_is_newtabpage":"91FAE2932EB19C825A72D3CAF9E1A98E641865D4A625450389D2281D3783EF94","pinned_tabs":"DC0DB71B4AF86DFED2BEACA1D87E98E27B386D1ABEF998A24BB81601EDB6E583","prefs":{"preference_reset_time":"FF19730B485F4425C8B245A5EACA72A4B38A286482E09F22EBA5887136A97A42"},"profile":{"reset_prompt_memento":"7EDEC56BA8A4D075E9A9BFA17937AD2300E75AFB5DCFBEECF0527BB5B486183E"},"safebrowsing":{"incidents_sent":"69D9DF2549A1E23C06A6BBD8DF0D163617C30FF0B2E3A80966C790B50A75ADA8"},"search_provider_overrides":"42699087CF385EE83DBD642012A4EBCD1C71618150F672835D06960F9D868E90","session":{"restore_on_startup":"471ED972395BA7492C33A70CE76E13508D6753201DC29BC5212538867351C9B5","startup_urls":"F6EDD1C890E23D076F49D1EC1C9ACD3AB584FD38D253D065310C07991260A4F6"},"software_reporter":{"prompt_reason":"801876F43A717AA4EFE5DA2412E68E267C7D24971BE155A2464341F9DAC0D8FE","prompt_seed":"12D58FCDD634064D710FD43AB7794828E1514E0AD5E1640B4FAB4C4BCC0A7996","prompt_version":"D4367DE7DF4A0D827B57320670355342891FD356FE69A969C205DA1B88CDAA27"},"sync":{"remaining_rollback_tries":"7D69EFF0F0AC22556F7E7798D03E54A1FDDD08CC8E8AA608AAE9171AAEA9FFCD"}},"super_mac":"66424D13942B18C2AB08070BDAF145E81D3127799D8CE398EA44A9826DC65982"},"session":{"restore_on_startup":5,"startup_urls":["http://by163w.bay163.mail.live.com/default.aspx","http://www.facebook.com/","http://search.babylon.com/?affID=111796&tt=060612_7_&babsrc=HP_ss&mntrId=36c9b03b00000000000000ff2446eb74","http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=BE&userid=a35339fc-2387-46cf-acc6-7b2f3c22c307&affid=110774&searchtype=hp&babsrc=lnkry","http://www.google.com/ig/redirectdomain?brand=TEUA&bmod=TEUA","http://www.google.com/","http://myfitnesspal.com/","http://www.virtuagym.com/","http://searchfunmoods.com/?f=1&a=download&chnl=download&cd=2XzuyEtN2Y1L1QzuyE0CyBtB0BzyyDtAyDtA0F0CtBtDzzyCtN0D0Tzu0CtAtBtCtN1L2XzutBtFtBtFtDtFtAyEyE&cr=1152827073","http://search.toggle.com/?lang=nl&cid=c2a242b1","http://www.amazon.com/websearch/ref=bit_bds-p25_serp_cr_us_display?ie=UTF8&tagbase=bds-p25&tbrId=v1_abb-channel-25_b020e7d01bf341d08fee62cf43e69d5f_39_44_20130315_BE_cr_sp_","http://websearch.pu-results.info/?pid=708&r=2013/05/07&hid=784308684&lg=EN&cc=BE","http://websearch.lookforithere.info/?pid=518&r=2013/05/11&hid=784308684&lg=EN&cc=BE&unqvl=14","http://websearch.searchingissme.info/?unqvl=23","http://mysearch.avg.com/?cid={2EFA6C62-53E5-428D-9403-84E81C7A54BB}&mid=3abce6cd310347d0bf5d9d3bffb7ba0f-85cad2d0282959787c211528700c0aa36c20df89&lang=en&ds=xf011&pr=sa&d=2013-08-24 13:01:30&v=15.4.0.5&pid=safeguard&sg=0&sap=hp","http://mysearch.avg.com?cid={50F71A1D-5A32-424F-9CB8-DFFFDAFD2EC9}&mid=3abce6cd310347d0bf5d9d3bffb7ba0f-85cad2d0282959787c211528700c0aa36c20df89&lang=nl&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2014-02-22 18:31:53&v=17.3.1.91&pid=safeguard&sg=&sap=hp","http://mysearch.avg.com?cid={50F71A1D-5A32-424F-9CB8-DFFFDAFD2EC9}&mid=3abce6cd310347d0bf5d9d3bffb7ba0f-85cad2d0282959787c211528700c0aa36c20df89&lang=nl&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2014-02-22 18:31:53&v=18.0.5.292&pid=safeguard&sg=&sap=hp","http://feed.helperbar.com/?p=mKO_AwFzXIpYRa0T-NJ1eeK7l24Ey_peMn2wnP0QyCO5K5XmXCpPyor6rkTWqHmRgQY2kkZegS0tNIGgOuwEylNH1Y9mdCo6Rdtn4P94IVZvbFaJN8jO8yA0nQt7OHYKY8fQOYLfuFfpvPvsYuFz5xwp84u12-B9Xde0LuIC7GzqTQkppvH1tnXpGikgPDSdMLbY","https://www.google.com/"]},"sync":{"remaining_rollback_tries":0}} ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Empty IE Cache ====================== C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Arne Coudenys\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Gast\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Gast\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Arne Coudenys\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KZY4SVGD will be deleted at reboot C:\Users\Arne Coudenys\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SQSE1QN9 will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\Users\Arne Coudenys\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1995 folders=387 336330598 bytes) ==== Empty Temp Folders ====================== C:\Users\Arne Coudenys\AppData\Local\Temp will be emptied at reboot C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Gast\AppData\Local\Temp emptied successfully C:\windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\windows\Temp successfully emptied C:\Users\ARNECO~1\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Arne Coudenys\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KZY4SVGD" not found "C:\Users\Arne Coudenys\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SQSE1QN9" not found ==== EOF on di 16/06/2015 at 13:37:08,34 ======================