Zoek.exe v5.0.0.0 Updated 04-May-2015 Tool run by acer on 02-08-15 at 11:26:40,03. Microsoft Windows 8.1 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\acer\Downloads\zoek.exe [Scan all users] [Script inserted] ==== Older Logs ====================== C:\zoek-results2015-07-31-091250.log 7565 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}"="C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFPlgn" [31-07-15 11:16] ==== Chromium Look ====================== Google Chrome Version: 44.0.2403.125 HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions cjabmdjcfcfdmffimndhafhblfmpjdpe - C:\Program Files (x86)\Norton 360\Engine\22.5.2.15\Exts\Chrome.crx[10-07-15 06:03] iikflkcanblccfahdhdonehdalibjnif - No path found[] Comodo Drag&Drop Service - acer\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aneodkojaglhnkkdbbdnmmmgimlcaogo Comodo Web Inspector - acer\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bdngekjahnmlkinegnhdmmbcfnmbclnn Comodo Media Downloader - acer\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dihmnpngfonlhjmgkflpnibiaaliendo Comodo Share Page Service - acer\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\mcmdgbiocnkpnaccjkailibfgepaccgf Google Wallet - acer\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Google Docs - acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Norton Security Toolbar - acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe Google Search - acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Norton Identity Safe - acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif Chrome Web Store Payments - acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Startpages ====================== C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Preferences on16.png","48":"images/icon48.png"},"key":"MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAkhqJr32OFD/bMXW4Md7jMfd7LbwHXVc6x5bBQG5U+dloofoxrICDR20yur/40mQ8O//0sS1b8srvbab1CRlSrxoNCr9T80NAkfzx0gHyVS+p1Zow+1FzLMu9PiGwwFyN80HIB7GI/dIa0wC9K/2OrrzcHEhVH96DacTtWQqjfDVtZPjT7Xwv23dgoWcpbkRC86jMJot3dmX9xnn0KzoVc9gDOHSIkBLbkkr6Sp3LGXCCM4L0DJgxdFwaLr5WBzgC3y5x0/wwPIwN4PtIaK3BhH6njlksfnKwwIJ9iRT41V4BqbWu4mszO/7VJ3HJyw2DBpIc2grU9ZRRxrV3fRQG4wIDAQAB","manifest_version":2,"name":"Google Now","oauth2":{"auto_approve":true,"scopes":["https://www.googleapis.com/auth/gcm","https://www.googleapis.com/auth/googlenow"]},"optional_permissions":["background"],"permissions":["alarms","gcm","identity","metricsPrivate","notifications","storage","tabs","webstorePrivate","*://*.google.com/*","*://*.gstatic.com/*","https://*.googleapis.com/chromenow/v1/*","https://*.googleapis.com/gcm/*","https://*.googleusercontent.com/*"],"version":"1.2.0.1"},"path":"C:\\Program Files (x86)\\Google\\Chrome\\Application\\44.0.2403.125\\resources\\google_now","preferences":{},"regular_only_preferences":{},"state":1,"was_installed_by_default":false,"was_installed_by_oem":false},"pjkljhegncpnkpknbcohdijeoejaedia":{"ack_external":true,"active_permissions":{"api":["notifications"],"manifest_permissions":[]},"app_launcher_ordinal":"y","commands":{},"content_settings":[],"creation_flags":137,"events":[],"from_bookmark":false,"from_webstore":true,"granted_permissions":{"api":["notifications"],"manifest_permissions":[]},"incognito_content_settings":[],"incognito_preferences":{},"install_time":"13082807963013192","lastpingday":"13082886026900105","location":1,"manifest":{"app":{"launch":{"container":"tab","web_url":"https://mail.google.com/mail/ca"},"urls":["*://mail.google.com/mail/ca"]},"current_locale":"nl","default_locale":"en","description":"Een snelle, doorzoekbare e-mailfunctie met minder spam.","icons":{"128":"128.png"},"key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDCuGglK43iAz3J9BEYK/Mz6ZhloIMMDqQSAaf3vJt4eHbTbSDsu4WdQ9dQDRcKlg8nwQdePBt0C3PSUBtiSNSS37Z3qEGfS7LCju3h6pI1Yr9MQtxw+jUa7kXXIS09VV73pEFUT/F7c6Qe8L5ZxgAcBvXBh1Fie63qb02I9XQ/CQIDAQAB","manifest_version":2,"name":"Gmail","options_page":"https://mail.google.com/mail/ca/#settings","permissions":["notifications"],"update_url":"http://clients2.google.com/service/update2/crx","version":"8.1"},"page_ordinal":"n","path":"pjkljhegncpnkpknbcohdijeoejaedia\\8.1_1","preferences":{},"regular_only_preferences":{},"state":1,"was_installed_by_default":true,"was_installed_by_oem":false}}},"pinned_tabs":[],"protection":{"macs":{"browser":{"show_home_button":"5872818FEA361CE6C43C89408BCF37075FDCFD3E89F07305B4DE3E2A2314E242"},"default_search_provider":{"keyword":"554AECF71212C2B0DFCD01A855EC016A40FA1DC553FCF51C826830136BF7A628","name":"33EB17FCCAE1A1A739FE83D9EB718B95539F57EDED33E1CD03B8663CF8D269FA","search_url":"96E0F449E224708B0A696FA1C46516D5E46F96A6FE66C21C20A5C3036A0C977C"},"default_search_provider_data":{"template_url_data":"E1530ED91B8518718D0E666092108E9366C68A4691A58B74FE058BB3A31F95E9"},"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":"9C39FF7C11A488C23C82CAAD51431874CD614DBAA9AE185F38E4A761977B377F","aohghmighlieiainnegkcijnfilokake":"D700357C1BD809A5E58E0A7E98121B62EBB4AC8EA0008D5CEC042ED4FD236BFF","apdfllckaahabafndbhieahigkjlhalf":"7A72591F6D7AFE6C926B57A624659A5995AB90F79EBEA3C8FAF8D27E940C451B","bepbmhgboaologfdajaanbcjmnhjmhfn":"7B01F95529F412E064E9079233E59187895E5ED6C08E8D7274CBBB34F418A6F1","blpcfgokakmgnkcojhhkbfbldkacnbeo":"630D18F655C5D2E88D4A577B15CA9B8C4394F231CC8CB6068280857A0BC25395","cjabmdjcfcfdmffimndhafhblfmpjdpe":"4C95DD607564E51C88260CDFD4ADE08F393FCA30D013D97A4C7E8490686B5FA0","coobgpohoikkiipiblmjeljniedjpjpf":"C14B06A24510B63463D8BB2C35842EF577DE45FF8D059FF54E9D532D5353ED19","eemcgdkfndhakfknompkggombfjjjeno":"768C0F260110CBC3C030F32F955D17E75C48AD2F0BF7E5131AAAD5A640379AB3","ennkphjdgehloodpbhlhldgbnhmacadg":"D09553C7672DE1904E5619A868AD3B0E8DC40E0C1EFB868B270311604CF60656","gfdkimpbcpahaombhbimeihdjnejgicl":"6DA494F34750C29D54A3CD9BD6F5A5D383362DDFAAB6B7AD0E09D0BB891AB9C7","iikflkcanblccfahdhdonehdalibjnif":"11E28D2782D310E1161339F472CCA3B94EB7F39BA1827B2446A3EEDCB8757D61","kmendfapggjehodndflmmgagdbamhnfd":"A2F3E2E395791C2050C3B8C539C3467CA96CFCD1FF70393C586933133FDB60C2","mfehgcgbbipciphmccgaenjidiccnmng":"7CB58D370AF8A2B41CA610D708C74026AA3BC59CC315F163A010FE87FD7BFBAA","mgndgikekgjfcpckkfioiadnlibdjbkf":"AA267E1CB23C79EF5E525D05C5F6135567C9E3058D974EEB6F75F108E0B1F3A0","mhjfbmdgcfjbbpaeojofohoefgiehjai":"1ED7E13F313856BEB3690D611BC657441B34F9659A3C4AFD6E494EFF08D72154","neajdppkdcdipfabeoofebfddakdcjhd":"A5F3F3302EE9BEB67EE69CAECC4A3AD4DD75202FB8C34EDFB8C14F4D208CD7AD","nkeimhogjdpnpccoofpliimaahmaaome":"DDD576A88F8CBAED63EF0DD16E4CFE31459734F0963470068D7E8017A5736405","nmmhkkegccagdldgiimedpiccmgmieda":"DD930D26DD8232B27665D451445229B5AC19B8814C8069938C96AF437AF1F76D","pafkbggdmjlpgkdkcbjmhmfcdpncadgh":"52E6C986B00EB08A8B934EB9678A92BDB8D862CB93347B085E81DCC4E9396A52","pjkljhegncpnkpknbcohdijeoejaedia":"CE80EBCA35C7064E50D70E0E625F0FE72A89C2166EE6B87CD4F6821F615AE3A0"}},"google":{"services":{"account_id":"69666CC41B07AC666CBDFA384C9E16CC771F348547A98B803E3E53C1BC2EB0F9","last_username":"F54FA38D7BE711675594F35E9A8B24702D4BC242C8A266E4B4767FDD84784D7D","username":"4968D525C354A1A1DC8155FDB342C0E532985C227F4D35C01527E0D3EC266D76"}},"homepage":"0ACB8F6A1B65BA572E631CD323ECA0AB767816333D2C249469365CFC667B6EA5","homepage_is_newtabpage":"88F82CBCD106BF41FD9F4A52C81E03F329C06911A1F14078D2EE550915E5F878","pinned_tabs":"74C293ED34DE2F156200D393F7A6BBB1FAB137ED983B3D9D2FC5658DA986FE6C","prefs":{"preference_reset_time":"E8777021CE43DBC3427037F2D863A95F7FD26FEBF2EFE7FB0778F4A0736C7D14"},"profile":{"reset_prompt_memento":"27B4AD1C853B3EBCB9538D561D81AF5D52D15B3407AA2985D586AB5C9D8B636F"},"safebrowsing":{"incidents_sent":"7507F0703012B953009313700080DF18A08F25A4C88D1114F434DC3D5AF0D393"},"search_provider_overrides":"0956B2F52CB921AFC04E5E900D3E1236B69F669AF9DBCD1E46C893027B929FA3","session":{"restore_on_startup":"8930BD438FA80C65430AFEE291E2607678AF4B2D306760BAAC60F63B6FE649EF","startup_urls":"6D073256C043F6EBA7C5765C20EE03482D3A400EBD0F9C46F981902848C24C6C"},"software_reporter":{"prompt_reason":"3D52FA6E75E17449D3E1631E50FD69DC31728E31068A135297AF8E26A7FF9644","prompt_seed":"D1A38A56F47E406FC0576E29BA8DBD9E8CEB6FE909E6699BDABFFCC4551CC248","prompt_version":"1B7ADE835284292B21C6B59FF857F7069AA837D2C9D5C266E8220C96224A08C7"},"sync":{"remaining_rollback_tries":"8E7037035F442B658A9372696DD5CE2D0F3C5D6F7F91BB8B61B52F7634A4B896"}},"super_mac":"DCA72E0EF1B73DCD5FD095B64A10515FEDD003CAF5C513B34A3DDF47B0FE09D5"},"safebrowsing":{"incidents_sent":{"6":{"domain_request_incident":"42"}}}} ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {AC55216A-6028-4AE2-8242-028503875233} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02" ==== Reset Google Chrome ====================== C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\acer\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\acer\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\acer\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\acer\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\acer\AppData\Local\Comodo\Dragon\User Data\Default\Cache emptied successfully C:\Users\acer\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1 folders=5 77 bytes) ==== Empty Temp Folders ====================== C:\Users\acer\AppData\Local\Temp will be emptied at reboot C:\Users\Administrator\AppData\Local\Temp emptied successfully C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\DefaultAppPool\AppData\Local\Temp emptied successfully C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\acer\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on 02-08-15 at 11:53:03,21 ======================