Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Zoek.exe v5.0.0.1 Updated 19-September-2016
- Tool run by googl on Wed 01/25/2017 at 19:17:25.08.
- Microsoft Windows 10 Pro 10.0.14393 x64
- Running in: Normal Mode Internet Access Detected
- Launched: C:\Users\googl\Downloads\zoek.exe [Scan all users] [Script inserted]
- ==== System Restore Info ======================
- 1/25/2017 7:18:05 PM Zoek.exe System Restore Point Created Successfully.
- ==== Reset Hosts File ======================
- # Copyright (c) 1993-2006 Microsoft Corp.
- #
- # This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
- #
- # This file contains the mappings of IP addresses to host names. Each
- # entry should be kept on an individual line. The IP address should
- # be placed in the first column followed by the corresponding host name.
- # The IP address and the host name should be separated by at least one
- # space.
- #
- # Additionally, comments (such as these) may be inserted on individual
- # lines or following the machine name denoted by a '#' symbol.
- #
- # For example:
- #
- # 102.54.94.97 rhino.acme.com # source server
- # 38.25.63.10 x.acme.com # x client host
- 127.0.0.1 localhost
- ==== Empty Folders Check ======================
- C:\PROGRA~2\iMobie deleted successfully
- C:\PROGRA~2\LastPass deleted successfully
- C:\PROGRA~2\COMMON~1\Merge Modules deleted successfully
- C:\Program Files\Recuva deleted successfully
- C:\Program Files\Ultima Shards deleted successfully
- C:\PROGRA~3\AMD deleted successfully
- C:\PROGRA~3\BlueStacksSetup deleted successfully
- C:\PROGRA~3\Comms deleted successfully
- C:\PROGRA~3\dbg deleted successfully
- C:\PROGRA~3\Malwarebytes' Anti-Malware (portable) deleted successfully
- C:\PROGRA~3\SoftwareDistribution deleted successfully
- C:\Users\googl\AppData\Local\ActiveSync deleted successfully
- C:\Users\googl\AppData\Local\Dxtory Software deleted successfully
- C:\Users\googl\AppData\Local\FluxSoftware deleted successfully
- C:\Users\googl\AppData\Local\PackageStaging deleted successfully
- C:\Users\googl\AppData\Local\PeerDistRepub deleted successfully
- C:\Users\googl\AppData\Local\VMware deleted successfully
- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Maps deleted successfully
- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistPub deleted successfully
- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistRepub deleted successfully
- ==== Deleting CLSID Registry Keys ======================
- ==== Deleting CLSID Registry Values ======================
- HKEY_USERS\S-1-5-21-725409251-2378203622-3848878340-1001\SOFTWARE\Microsoft\Internet Explorer\Approved Extensions\{8E8F97CD-60B5-456F-A201-73065652D099} deleted successfully
- ==== Deleting Services ======================
- ==== FireFox Fix ======================
- Deleted from C:\Users\googl\AppData\Roaming\Mozilla\Firefox\Profiles\mcxuex8n.default\prefs.js:
- user_pref("browser.startup.homepage", "http://mail.ru/cnt/10445?gp=811040");
- user_pref("browser.search.defaultenginename", "Поиск@Mail.Ru");
- user_pref("browser.search.defaultenginename.US", "Google");
- user_pref("browser.search.selectedEngine", "Поиск@Mail.Ru");
- user_pref("keyword.URL", "http://go.mail.ru/distib/ep/?product_id=%7B2E75EEDF-3F53-4C6B-9C65-A646EA945515%7D&gp=811041");
- user_pref("browser.search.suggest.enabled", true);
- user_pref("browser.search.useDBForOrder", false);
- Added to C:\Users\googl\AppData\Roaming\Mozilla\Firefox\Profiles\mcxuex8n.default\prefs.js:
- user_pref("browser.startup.homepage", "about:home");
- user_pref("browser.newtab.url", "about:newtab");
- ProfilePath: C:\Users\googl\AppData\Roaming\Mozilla\Firefox\Profiles\mcxuex8n.default
- user.js not found
- ---- FireFox user.js and prefs.js backups ----
- prefs_20170125_0729_.backup
- Windows IP Configuration
- Successfully flushed the DNS Resolver Cache.
- ==== Batch Command(s) Run By Tool======================
- ==== Deleting Files \ Folders ======================
- C:\PROGRA~2\iMobie not found
- C:\PROGRA~2\LastPass not found
- C:\PROGRA~3\Malwarebytes' Anti-Malware (portable) not found
- C:\Users\googl\.android deleted
- C:\PROGRA~2\Skillbrains deleted
- C:\DUMP1f71.tmp deleted
- C:\DUMP1f90.tmp deleted
- C:\PROGRA~3\InstallMate deleted
- C:\PROGRA~3\Package Cache deleted
- C:\Users\googl\AppData\Local\updater.log deleted
- C:\Users\googl\AppData\Local\Unity deleted
- C:\Users\googl\AppData\Local\Wondershare deleted
- C:\Users\googl\AppData\LocalLow\Unity deleted
- C:\windows\SysNative\GroupPolicy\Machine deleted
- C:\windows\SysNative\GroupPolicy\User deleted
- C:\windows\SysNative\GroupPolicy\GPT.INI deleted
- C:\WINDOWS\Syswow64\GroupPolicy\gpt.ini deleted
- C:\WINDOWS\Syswow64\SET20A.tmp deleted
- C:\WINDOWS\Syswow64\SET23B.tmp deleted
- C:\WINDOWS\Syswow64\SET42.tmp deleted
- C:\WINDOWS\Syswow64\SET55C.tmp deleted
- C:\WINDOWS\Syswow64\SET82D.tmp deleted
- C:\WINDOWS\Syswow64\SET83F.tmp deleted
- C:\WINDOWS\Syswow64\SET92.tmp deleted
- C:\WINDOWS\Syswow64\SET95AE.tmp deleted
- C:\WINDOWS\Syswow64\SETAC7.tmp deleted
- C:\WINDOWS\Syswow64\SETAD8.tmp deleted
- C:\WINDOWS\Syswow64\SETC1A3.tmp deleted
- C:\WINDOWS\Syswow64\SETC231.tmp deleted
- C:\WINDOWS\Syswow64\SETC576.tmp deleted
- C:\WINDOWS\Syswow64\SETCA18.tmp deleted
- C:\WINDOWS\Syswow64\SETCB20.tmp deleted
- C:\WINDOWS\Syswow64\SETD679.tmp deleted
- C:\WINDOWS\Syswow64\SETD67B.tmp deleted
- C:\WINDOWS\Syswow64\SETDCC1.tmp deleted
- C:\WINDOWS\Syswow64\SETDD40.tmp deleted
- C:\WINDOWS\Syswow64\SETE0B4.tmp deleted
- C:\WINDOWS\Syswow64\SETE4FA.tmp deleted
- C:\WINDOWS\Syswow64\SETE51E.tmp deleted
- C:\WINDOWS\Syswow64\SETE626.tmp deleted
- C:\WINDOWS\Syswow64\SETEC0B.tmp deleted
- C:\WINDOWS\Syswow64\SETEC1D.tmp deleted
- C:\WINDOWS\Syswow64\SETF423.tmp deleted
- C:\WINDOWS\Syswow64\SETF4A2.tmp deleted
- C:\WINDOWS\Syswow64\SETF4E1.tmp deleted
- C:\WINDOWS\Syswow64\SETF58F.tmp deleted
- C:\WINDOWS\Syswow64\SETF70C.tmp deleted
- C:\WINDOWS\Syswow64\SETF87F.tmp deleted
- C:\WINDOWS\Syswow64\SETF8D4.tmp deleted
- C:\WINDOWS\Syswow64\SETFA4B.tmp deleted
- C:\WINDOWS\Syswow64\SETFB31.tmp deleted
- C:\WINDOWS\Syswow64\SETFB97.tmp deleted
- C:\WINDOWS\Syswow64\SETFD7A.tmp deleted
- C:\WINDOWS\Syswow64\SETFDA9.tmp deleted
- C:\WINDOWS\Syswow64\SETFDE9.tmp deleted
- C:\WINDOWS\Syswow64\SETFE60.tmp deleted
- C:\Users\googl\AppData\Roaming\Mozilla\Firefox\Profiles\mcxuex8n.default\extensions\homepage@mail.ru deleted
- C:\Users\googl\AppData\Roaming\Mozilla\Firefox\Profiles\mcxuex8n.default\extensions\search@mail.ru deleted
- C:\Users\googl\AppData\Roaming\Mozilla\Firefox\Profiles\mcxuex8n.default\Yahoo Inc deleted
- "C:\Users\googl\AppData\Roaming\discord\Cookies" not deleted
- "C:\Users\googl\AppData\Roaming\discord\Cookies-journal" not deleted
- "C:\Users\googl\AppData\Roaming\discord\modules.log" not deleted
- "C:\Users\googl\AppData\Roaming\discord\Cache\data_0" deleted
- "C:\Users\googl\AppData\Roaming\discord\Cache\data_1" deleted
- "C:\Users\googl\AppData\Roaming\discord\Cache\data_2" deleted
- "C:\Users\googl\AppData\Roaming\discord\Cache\data_3" deleted
- "C:\Users\googl\AppData\Roaming\discord\Cache\index" deleted
- "C:\Users\googl\AppData\Roaming\discord\GPUCache\data_0" deleted
- "C:\Users\googl\AppData\Roaming\discord\GPUCache\data_1" deleted
- "C:\Users\googl\AppData\Roaming\discord\GPUCache\data_2" deleted
- "C:\Users\googl\AppData\Roaming\discord\GPUCache\data_3" deleted
- "C:\Users\googl\AppData\Roaming\discord\GPUCache\index" deleted
- "C:\Users\googl\AppData\Roaming\discord\Local Storage\https_discordapp.com_0.localstorage" not deleted
- "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_contact_import\discord_contact_import.node" deleted
- "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_rpc\discord_rpc.node" deleted
- "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_toaster\discord_toaster.node" deleted
- "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_utils\discord_utils.node" deleted
- "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_voice\discord_voice.node" deleted
- "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_voice\libdiscord.dll" deleted
- "C:\Users\googl\AppData\Roaming\Nox" deleted
- "C:\Users\googl\AppData\Roaming\discord" not deleted
- "C:\Users\googl\AppData\Roaming\discord\0.0.297" not deleted
- "C:\Users\googl\AppData\Roaming\discord\Cache" not deleted
- "C:\Users\googl\AppData\Roaming\discord\GPUCache" not deleted
- "C:\Users\googl\AppData\Roaming\discord\Local Storage" not deleted
- "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules" not deleted
- "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_contact_import" not deleted
- "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_rpc" not deleted
- "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_toaster" not deleted
- "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_utils" not deleted
- "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_voice" not deleted
- ==== Firefox Start and Search pages ======================
- ProfilePath: C:\Users\googl\AppData\Roaming\Mozilla\Firefox\Profiles\mcxuex8n.default
- user_pref("browser.startup.homepage", "about:home");
- user_pref("browser.newtab.url", "about:newtab");
- ==== Firefox Extensions ======================
- ProfilePath: C:\Users\googl\AppData\Roaming\Mozilla\Firefox\Profiles\mcxuex8n.default
- - Buy Proxies - %ProfilePath%\extensions\firefox@buyproxies.org
- - Exif Viewer em:version2.00.1-signed.1-signed em:type2 em:descriptionExtracts and displays the Exif Exchangeable Image File IPTC-NAAIIM International Press Telecommunications Council Newspaper Association of America Information Interchange Model and IPTC Core Adobe XMP Extensible Metadata Platform metadata as stored by digital still cameras in both local and remote JPEG images. em:creatorAlan Raskin asraskin@gmail.com em:homepageURLhttp:araskin.webs.comexifexif.html - %ProfilePath%\extensions\exif_viewer@mozilla.doslash.org.xpi
- ==== Firefox Plugins ======================
- ==== Chromium Look ======================
- HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
- efaidnbmnnnibpcajpcglclefindmkaj - No path found[]
- HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
- lmjegmlicamnimmfhcmpkclmigmmcbeh - No path found[]
- uBlock₀ - googl\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm
- SSLE - googl\AppData\Local\Google\Chrome\User Data\Default\Extensions\eldkkiimeobmnkkiielcgemfkaadpchm
- 4.1.36 - googl\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd
- Grammarly for Chrome - googl\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen
- Chrome Media Router - googl\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
- ==== Set IE to Default ======================
- Old Values:
- [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
- New Values:
- [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
- "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
- ==== All HKLM and HKCU SearchScopes ======================
- HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
- HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
- HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
- HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
- HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
- HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
- HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
- ==== Reset Google Chrome ======================
- C:\Users\googl\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
- C:\Users\googl\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
- C:\Users\googl\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
- C:\Users\googl\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
- ==== shortcuts on Users Desktops ======================
- C:\Users\googl\Desktop\BitTorrent.lnk - C:\Users\googl\AppData\Roaming\BitTorrent\BitTorrent.exe
- C:\Users\googl\Desktop\CodeBlocks.lnk - C:\Program Files (x86)\CodeBlocks\codeblocks.exe
- C:\Users\googl\Desktop\Discord.lnk - C:\Users\googl\AppData\Local\Discord\Update.exe --processStart Discord.exe
- C:\Users\googl\Desktop\Excel 2016.lnk -
- C:\Users\googl\Desktop\Google Drive.lnk - C:\Users\googl\Google Drive
- C:\Users\googl\Desktop\PowerPoint 2016.lnk -
- C:\Users\googl\Desktop\Razor.lnk - C:\Program Files (x86)\Razor\Razor.exe
- C:\Users\googl\Desktop\Sandboxed Web Browser.lnk - C:\Program Files\Sandboxie\Start.exe default_browser
- C:\Users\googl\Desktop\Spotify.lnk - C:\Users\googl\AppData\Roaming\Spotify\Spotify.exe
- C:\Users\googl\Desktop\UO Renaissance (Without Razor).lnk - D:\Ultima Online\client_noenc.exe
- C:\Users\googl\Desktop\UO Renaissance Website.lnk -
- C:\Users\googl\Desktop\Word 2016.lnk -
- ==== shortcuts on All Users Desktop ======================
- C:\Users\Public\Desktop\Acrobat Reader DC.lnk - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
- C:\Users\Public\Desktop\Adobe Creative Cloud.lnk - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
- C:\Users\Public\Desktop\Battle.net.lnk - C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe
- C:\Users\Public\Desktop\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe
- C:\Users\Public\Desktop\DJI Assistant 2.lnk - C:\Program Files (x86)\DJI Product\DJI Assistant 2\DJI Assistant 2.exe
- C:\Users\Public\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- C:\Users\Public\Desktop\Google Docs.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_document
- C:\Users\Public\Desktop\Google Sheets.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_spreadsheet
- C:\Users\Public\Desktop\Google Slides.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_presentation
- C:\Users\Public\Desktop\iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.exe
- C:\Users\Public\Desktop\Malwarebytes.lnk - C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe
- C:\Users\Public\Desktop\Overwatch.lnk - C:\Program Files (x86)\Overwatch\Overwatch Launcher.exe
- C:\Users\Public\Desktop\Popcorn Time.lnk - C:\Program Files (x86)\Popcorn Time\PopcornTimeDesktop.exe
- C:\Users\Public\Desktop\Skype.lnk - C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe
- C:\Users\Public\Desktop\Speccy.lnk - C:\Program Files (x86)\Speccy\Speccy64.exe
- C:\Users\Public\Desktop\Steam.lnk - C:\Program Files (x86)\Steam\Steam.exe
- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk - C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win64.exe
- C:\Users\Public\Desktop\TeamViewer 12.lnk - C:\Program Files (x86)\TeamViewer\TeamViewer.exe
- C:\Users\Public\Desktop\VLC media player.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
- ==== shortcuts in Users Start Menu ======================
- C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks (Launcher).lnk - C:\Program Files (x86)\CodeBlocks\CbLauncher.exe
- C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks CBP2Make.lnk - C:\Program Files (x86)\CodeBlocks\cbp2make.exe
- C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks Share Config.lnk - C:\Program Files (x86)\CodeBlocks\cb_share_config.exe
- C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks.lnk - C:\Program Files (x86)\CodeBlocks\codeblocks.exe
- C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\Uninstall CodeBlocks.lnk - C:\Program Files (x86)\CodeBlocks\uninstall.exe
- C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc\Discord.lnk - C:\Users\googl\AppData\Local\Discord\Update.exe --processStart Discord.exe
- C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Razor\Razor.lnk - C:\Program Files (x86)\Razor\Razor.exe
- C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Razor\RPV Editor (Alpha).lnk - C:\Program Files (x86)\Razor\RPVEditor.exe
- C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Razor\Uninstall.lnk - C:\Program Files (x86)\Razor\Uninstall.exe
- C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Razor\Visit Razor's Website.lnk -
- C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk - C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE /tsr
- ==== shortcuts in All Users Start Menu ======================
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk - C:\WINDOWS\Installer\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}\SC_Reader.ico
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom.lnk - C:\Program Files\Adobe\Adobe Lightroom\lightroom.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Media Encoder CC 2017.lnk - C:\Program Files\Adobe\Adobe Media Encoder CC 2017\Adobe Media Encoder.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2017.lnk - C:\Program Files\Adobe\Adobe Photoshop CC 2017\Photoshop.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro CC 2017.lnk - C:\Program Files\Adobe\Adobe Premiere Pro CC 2017\Adobe Premiere Pro.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk - C:\WINDOWS\Installer\{56EC47AA-5813-4FF6-8E75-544026FBEA83}\AppleSoftwareUpdateIco.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk - C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 12.lnk - C:\Program Files (x86)\TeamViewer\TeamViewer.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings\AMD Settings.lnk - C:\Program Files (x86)\AMD\CNext\CNext\RadeonSettings.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks.lnk - C:\Program Files (x86)\CodeBlocks\codeblocks.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DJI Product\DJI Assistant 2\DJI Assistant 2.lnk - C:\Program Files (x86)\DJI Product\DJI Assistant 2\DJI Assistant 2.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DJI Product\DJI Assistant 2\Uninstall DJI Assistant 2.lnk - C:\Program Files (x86)\DJI Product\DJI Assistant 2\unins000.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive\Google Docs.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_document
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive\Google Drive.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive\Google Sheets.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_spreadsheet
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive\Google Slides.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_presentation
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Imagenomic\Noiseware Plug-in\License Agreement.lnk - C:\Program Files\Imagenomic\Noiseware Plug-in\NoisewarePluginEULA.html
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Imagenomic\Noiseware Plug-in\Noiseware Plug-in Hosts Setup.lnk - C:\Program Files\Imagenomic\Noiseware Plug-in\uninst.exe /HOSTS
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Imagenomic\Noiseware Plug-in\Noiseware Plug-in User's Guide.lnk - C:\Program Files\Imagenomic\Noiseware Plug-in\NoisewarePluginUsersGuide.pdf
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Imagenomic\Noiseware Plug-in\Uninstall Noiseware Plug-in.lnk - C:\Program Files\Imagenomic\Noiseware Plug-in\uninst.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\About iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.Resources\en.lproj\About iTunes.rtf
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes\Malwarebytes.lnk - C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes\Uninstall Malwarebytes.lnk - C:\Program Files (x86)\Malwarebytes\Anti-Malware\unins000.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++\Notepad++.lnk - C:\Program Files (x86)\Notepad++\notepad++.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer\Razer Synapse\Razer Synapse.lnk - C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe -launch
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie\Run any program sandboxed.lnk - C:\Program Files\Sandboxie\Start.exe /box:__ask__ run_dialog
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie\Run Web browser sandboxed.lnk - C:\Program Files\Sandboxie\Start.exe default_browser
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie\Run Windows Explorer sandboxed.lnk - C:\Program Files\Sandboxie\Start.exe .
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie\Sandboxie Control.lnk - C:\Program Files\Sandboxie\SbieCtrl.exe /open
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie\Sandboxie Start Menu.lnk - C:\Program Files\Sandboxie\Start.exe /box:__ask__ start_menu
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie\Uninstall Sandboxie.lnk - C:\Windows\Installer\SandboxieInstall64.exe /remove
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Documentation.lnk - C:\Program Files (x86)\VideoLAN\VLC\Documentation.url
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Release Notes.lnk - C:\Program Files (x86)\VideoLAN\VLC\NEWS.txt
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VideoLAN Website.lnk - C:\Program Files (x86)\VideoLAN\VLC\VideoLAN Website.url
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player - reset preferences and cache files.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe --reset-config --reset-plugins-cache vlc://quit
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player skinned.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe -Iskins
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
- ==== shortcuts in Quick Launch ======================
- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
- C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
- C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
- C:\Users\googl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\BitTorrent.lnk - C:\Users\googl\AppData\Roaming\BitTorrent\BitTorrent.exe
- C:\Users\googl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CodeBlocks.lnk - C:\Program Files (x86)\CodeBlocks\codeblocks.exe
- C:\Users\googl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- C:\Users\googl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Sandboxed Web Browser.lnk - C:\Program Files\Sandboxie\Start.exe default_browser
- C:\Users\googl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
- C:\Users\googl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
- C:\Users\googl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -
- C:\Users\googl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- ==== Deleting Registry Keys ======================
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{85204665-3317-4953-BDB8-3BB60C75C130} deleted successfully
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\UnityWebPlayer deleted successfully
- ==== Empty IE Cache ======================
- C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
- C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
- C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
- C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
- C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
- C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\IE\20Q8RO3V will be deleted at reboot
- C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\IE\5HP8EE3I will be deleted at reboot
- C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\IE\H53T0BC0 will be deleted at reboot
- C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\IE\LDABYWMY will be deleted at reboot
- ==== Empty FireFox Cache ======================
- No FireFox Cache found
- ==== Empty Chrome Cache ======================
- C:\Users\googl\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
- ==== Empty All Flash Cache ======================
- No Flash Cache Found
- ==== Empty All Java Cache ======================
- Java Cache cleared successfully
- ==== C:\zoek_backup content ======================
- C:\zoek_backup (files=1160 folders=548 2889055155 bytes)
- ==== Empty Temp Folders ======================
- C:\WINDOWS\Temp will be emptied at reboot
- ==== After Reboot ======================
- ==== Empty Temp Folders ======================
- C:\WINDOWS\Temp successfully emptied
- C:\Users\googl\AppData\Local\Temp successfully emptied
- ==== Empty Recycle Bin ======================
- C:\$RECYCLE.BIN successfully emptied
- ==== Deleting Files / Folders ======================
- "C:\Users\googl\AppData\Roaming\discord\Cookies" not found
- "C:\Users\googl\AppData\Roaming\discord\Cookies-journal" not found
- "C:\Users\googl\AppData\Roaming\discord\modules.log" not found
- "C:\Users\googl\AppData\Roaming\discord\Local Storage\https_discordapp.com_0.localstorage" not found
- "C:\Users\googl\AppData\Roaming\discord" not found
- "C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\IE\20Q8RO3V" not found
- "C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\IE\5HP8EE3I" not found
- "C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\IE\H53T0BC0" not found
- "C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\IE\LDABYWMY" not found
- ==== EOF on Wed 01/25/2017 at 19:34:11.00 ======================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement