Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Zoek.exe v5.0.0.1 Updated 31-December-2015
- Tool run by rterr on Sun 03/13/2016 at 19:05:01.33.
- Microsoft Windows 10 Home 10.0.10586 x64
- Running in: Normal Mode Internet Access Detected
- Launched: C:\Users\rterr\Desktop\zoek.exe [Scan all users] [Script inserted]
- ==== Older Logs ======================
- C:\zoek-results2016-03-12-122934.log 63978 bytes
- ==== System Restore Info ======================
- 3/13/2016 7:08:00 PM Zoek.exe System Restore Point Created Successfully.
- ==== Empty Folders Check ======================
- C:\PROGRA~3\Comms deleted successfully
- C:\PROGRA~3\SoftwareDistribution deleted successfully
- C:\Users\rterr\AppData\Local\ActiveSync deleted successfully
- C:\Users\rterr\AppData\Local\Adobe deleted successfully
- C:\Users\rterr\AppData\Local\NetworkTiles deleted successfully
- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Maps deleted successfully
- ==== Deleting CLSID Registry Keys ======================
- HKEY_USERS\S-1-5-21-3355830756-1789120713-3534354194-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1D183557-EBD3-45CE-AD07-B196B7623836} deleted successfully
- HKEY_USERS\S-1-5-21-3355830756-1789120713-3534354194-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} deleted successfully
- HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{1D183557-EBD3-45CE-AD07-B196B7623836} deleted successfully
- ==== Deleting CLSID Registry Values ======================
- ==== Deleting Services ======================
- ==== FireFox Fix ======================
- Deleted from C:\Users\rterr\AppData\Roaming\Mozilla\Firefox\Profiles\hggoywmn.default\prefs.js:
- user_pref("browser.search.defaultenginename", "Bing®");
- user_pref("browser.search.defaultenginename.US", "Bing ");
- user_pref("browser.search.selectedEngine", "Bing®");
- user_pref("keyword.URL", "http://www.bing.com/search?FORM=SK2KDF&PC=SK2K&q=");
- user_pref("browser.search.useDBForOrder", true);
- Added to C:\Users\rterr\AppData\Roaming\Mozilla\Firefox\Profiles\hggoywmn.default\prefs.js:
- user_pref("browser.startup.homepage", "about:home");
- user_pref("browser.newtab.url", "about:newtab");
- ==== Batch Command(s) Run By Tool======================
- BITSADMIN version 3.0 [ 7.8.10586 ]
- BITS administration utility.
- (C) Copyright 2000-2006 Microsoft Corp.
- BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
- Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.
- Unable to cancel {77EBBF37-9D37-4BD1-948E-50A21D0A5075}.
- {B2B64A48-4A5E-4367-B3D5-EEAE2AEA7AE2} canceled.
- {A10AAA7B-210E-46D7-878B-CFEB663B0223} canceled.
- {DE05D7D2-40CD-4CA7-8BA5-D4004CB7FF6C} canceled.
- {CA36DE46-3170-424E-A2C5-5020C06B1835} canceled.
- {982F3360-D2AE-454C-8F4F-96C261D0708E} canceled.
- {C1B9A112-C781-4CFF-9FCA-5BEEA7DBC342} canceled.
- {A36ABD13-6939-4F36-BF1A-E4571F347B09} canceled.
- {8732F03C-948E-46EE-BE7E-E7ED3EFFEEEE} canceled.
- 8 out of 9 jobs canceled.
- Windows IP Configuration
- Successfully flushed the DNS Resolver Cache.
- ==== Deleting Files \ Folders ======================
- C:\PROGRA~3\{C6FA530F-BB98-4D9F-BA00-45FD0698077C} deleted
- C:\PROGRA~3\Package Cache deleted
- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\LavasoftTcpService deleted
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
- "C:\WINDOWS\Installer\6f94bec.msi" deleted
- "c:\windows\Installer\12e67.msi" deleted
- ==== Firefox Start and Search pages ======================
- ProfilePath: C:\Users\rterr\AppData\Roaming\Mozilla\Firefox\Profiles\hggoywmn.default
- user_pref("browser.startup.homepage", "about:home");
- user_pref("browser.newtab.url", "about:newtab");
- ==== Firefox Extensions Registry ======================
- [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
- "{C1A2A613-35F1-4FCF-B27F-2840527B6556}"="C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFAddon" [01/14/2016 03:54 AM]
- [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
- "{C1A2A613-35F1-4FCF-B27F-2840527B6556}"="C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFAddon" [01/14/2016 03:54 AM]
- ==== Firefox Extensions ======================
- ProfilePath: C:\Users\rterr\AppData\Roaming\Mozilla\Firefox\Profiles\hggoywmn.default
- - Bing Search - %ProfilePath%\extensions\bingsearch.full@microsoft.com.xpi
- AppDir: C:\Program Files (x86)\Mozilla Firefox
- - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
- ==== Firefox Plugins ======================
- Profilepath: C:\Users\rterr\AppData\Roaming\Mozilla\Firefox\Profiles\hggoywmn.default
- B5CFBB8AC7C0069D80DBEAA72F3CE9E2 - C:\windows\SysWOW64\Adobe\Director\np32dsw_1217157.dll - Shockwave for Director / Shockwave for Director
- ==== Chromium Look ======================
- HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
- cjabmdjcfcfdmffimndhafhblfmpjdpe - C:\Program Files (x86)\Norton Security Suite\Engine\22.5.5.15\Exts\Chrome.crx[11/05/2015 05:30 PM]
- iikflkcanblccfahdhdonehdalibjnif - No path found[]
- Norton Security Toolbar - rterr\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe
- Norton Identity Safe - rterr\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif
- ==== Chromium Fix ======================
- C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage deleted successfully
- C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage-journal deleted successfully
- C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage deleted successfully
- C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage-journal deleted successfully
- ==== Set IE to Default ======================
- Old Values:
- [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
- "Start Page"="http://www.msn.com/"
- [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
- "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
- [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] not found
- New Values:
- [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
- "Start Page"="http://www.msn.com/"
- [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
- "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"
- ==== All HKLM and HKCU SearchScopes ======================
- HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
- HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
- HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
- HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&form=PRHPR1&src=IE11TR&pc=HRTS
- HKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"
- HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
- HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
- ==== Reset Google Chrome ======================
- C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
- C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
- C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
- C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
- ==== Reset IE Proxy ======================
- Value(s) before fix:
- "ProxyEnable"=dword:00000000
- Value(s) after fix:
- "ProxyEnable"=dword:00000000
- ==== Deleting Registry Keys ======================
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A0A5CBD84C137C642B25B695E31AA178 deleted successfully
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F6FC40519318F79468CF6471B476FCF7 deleted successfully
- HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1504CF6F-8139-497F-86FC-46174B67CF7F} deleted successfully
- HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{730E03E4-350E-48E5-9D3E-4329903D454D} deleted successfully
- HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\A0A5CBD84C137C642B25B695E31AA178 deleted successfully
- HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\F6FC40519318F79468CF6471B476FCF7 deleted successfully
- ==== Empty IE Cache ======================
- C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
- C:\Users\rterr\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
- C:\Users\rterr\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
- C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
- C:\Users\rterr\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
- C:\Users\rterr\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
- ==== Empty FireFox Cache ======================
- C:\Users\rterr\AppData\Local\Mozilla\Firefox\Profiles\hggoywmn.default\cache2 emptied successfully
- ==== Empty Chrome Cache ======================
- C:\Users\rterr\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
- ==== Empty All Flash Cache ======================
- No Flash Cache Found
- ==== Empty All Java Cache ======================
- No Java Cache Found
- ==== C:\zoek_backup content ======================
- C:\zoek_backup (files=32 folders=26 79417228 bytes)
- ==== Empty Temp Folders ======================
- C:\WINDOWS\Temp will be emptied at reboot
- ==== After Reboot ======================
- ==== Empty Temp Folders ======================
- C:\WINDOWS\Temp successfully emptied
- C:\Users\rterr\AppData\Local\Temp successfully emptied
- ==== Empty Recycle Bin ======================
- C:\$RECYCLE.BIN successfully emptied
- ==== EOF on Sun 03/13/2016 at 19:58:38.71 ======================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement