Advertisement
Guest User

Untitled

a guest
Jan 25th, 2017
1,085
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 27.63 KB | None | 0 0
  1.  
  2. Zoek.exe v5.0.0.1 Updated 19-September-2016
  3. Tool run by googl on Wed 01/25/2017 at 19:17:25.08.
  4. Microsoft Windows 10 Pro 10.0.14393 x64
  5. Running in: Normal Mode Internet Access Detected
  6. Launched: C:\Users\googl\Downloads\zoek.exe [Scan all users] [Script inserted]
  7.  
  8. ==== System Restore Info ======================
  9.  
  10. 1/25/2017 7:18:05 PM Zoek.exe System Restore Point Created Successfully.
  11.  
  12. ==== Reset Hosts File ======================
  13.  
  14. # Copyright (c) 1993-2006 Microsoft Corp.
  15. #
  16. # This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
  17. #
  18. # This file contains the mappings of IP addresses to host names. Each
  19. # entry should be kept on an individual line. The IP address should
  20. # be placed in the first column followed by the corresponding host name.
  21. # The IP address and the host name should be separated by at least one
  22. # space.
  23. #
  24. # Additionally, comments (such as these) may be inserted on individual
  25. # lines or following the machine name denoted by a '#' symbol.
  26. #
  27. # For example:
  28. #
  29. # 102.54.94.97 rhino.acme.com # source server
  30. # 38.25.63.10 x.acme.com # x client host
  31.  
  32. 127.0.0.1 localhost
  33.  
  34. ==== Empty Folders Check ======================
  35.  
  36. C:\PROGRA~2\iMobie deleted successfully
  37. C:\PROGRA~2\LastPass deleted successfully
  38. C:\PROGRA~2\COMMON~1\Merge Modules deleted successfully
  39. C:\Program Files\Recuva deleted successfully
  40. C:\Program Files\Ultima Shards deleted successfully
  41. C:\PROGRA~3\AMD deleted successfully
  42. C:\PROGRA~3\BlueStacksSetup deleted successfully
  43. C:\PROGRA~3\Comms deleted successfully
  44. C:\PROGRA~3\dbg deleted successfully
  45. C:\PROGRA~3\Malwarebytes' Anti-Malware (portable) deleted successfully
  46. C:\PROGRA~3\SoftwareDistribution deleted successfully
  47. C:\Users\googl\AppData\Local\ActiveSync deleted successfully
  48. C:\Users\googl\AppData\Local\Dxtory Software deleted successfully
  49. C:\Users\googl\AppData\Local\FluxSoftware deleted successfully
  50. C:\Users\googl\AppData\Local\PackageStaging deleted successfully
  51. C:\Users\googl\AppData\Local\PeerDistRepub deleted successfully
  52. C:\Users\googl\AppData\Local\VMware deleted successfully
  53. C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Maps deleted successfully
  54. C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistPub deleted successfully
  55. C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistRepub deleted successfully
  56.  
  57. ==== Deleting CLSID Registry Keys ======================
  58.  
  59.  
  60. ==== Deleting CLSID Registry Values ======================
  61.  
  62. HKEY_USERS\S-1-5-21-725409251-2378203622-3848878340-1001\SOFTWARE\Microsoft\Internet Explorer\Approved Extensions\{8E8F97CD-60B5-456F-A201-73065652D099} deleted successfully
  63.  
  64. ==== Deleting Services ======================
  65.  
  66.  
  67. ==== FireFox Fix ======================
  68.  
  69. Deleted from C:\Users\googl\AppData\Roaming\Mozilla\Firefox\Profiles\mcxuex8n.default\prefs.js:
  70. user_pref("browser.startup.homepage", "http://mail.ru/cnt/10445?gp=811040");
  71. user_pref("browser.search.defaultenginename", "Поиск@Mail.Ru");
  72. user_pref("browser.search.defaultenginename.US", "Google");
  73. user_pref("browser.search.selectedEngine", "Поиск@Mail.Ru");
  74. user_pref("keyword.URL", "http://go.mail.ru/distib/ep/?product_id=%7B2E75EEDF-3F53-4C6B-9C65-A646EA945515%7D&gp=811041");
  75. user_pref("browser.search.suggest.enabled", true);
  76. user_pref("browser.search.useDBForOrder", false);
  77.  
  78. Added to C:\Users\googl\AppData\Roaming\Mozilla\Firefox\Profiles\mcxuex8n.default\prefs.js:
  79. user_pref("browser.startup.homepage", "about:home");
  80. user_pref("browser.newtab.url", "about:newtab");
  81.  
  82. ProfilePath: C:\Users\googl\AppData\Roaming\Mozilla\Firefox\Profiles\mcxuex8n.default
  83.  
  84. user.js not found
  85. ---- FireFox user.js and prefs.js backups ----
  86.  
  87. prefs_20170125_0729_.backup
  88.  
  89. Windows IP Configuration
  90.  
  91. Successfully flushed the DNS Resolver Cache.
  92.  
  93. ==== Batch Command(s) Run By Tool======================
  94.  
  95.  
  96. ==== Deleting Files \ Folders ======================
  97.  
  98. C:\PROGRA~2\iMobie not found
  99. C:\PROGRA~2\LastPass not found
  100. C:\PROGRA~3\Malwarebytes' Anti-Malware (portable) not found
  101. C:\Users\googl\.android deleted
  102. C:\PROGRA~2\Skillbrains deleted
  103. C:\DUMP1f71.tmp deleted
  104. C:\DUMP1f90.tmp deleted
  105. C:\PROGRA~3\InstallMate deleted
  106. C:\PROGRA~3\Package Cache deleted
  107. C:\Users\googl\AppData\Local\updater.log deleted
  108. C:\Users\googl\AppData\Local\Unity deleted
  109. C:\Users\googl\AppData\Local\Wondershare deleted
  110. C:\Users\googl\AppData\LocalLow\Unity deleted
  111. C:\windows\SysNative\GroupPolicy\Machine deleted
  112. C:\windows\SysNative\GroupPolicy\User deleted
  113. C:\windows\SysNative\GroupPolicy\GPT.INI deleted
  114. C:\WINDOWS\Syswow64\GroupPolicy\gpt.ini deleted
  115. C:\WINDOWS\Syswow64\SET20A.tmp deleted
  116. C:\WINDOWS\Syswow64\SET23B.tmp deleted
  117. C:\WINDOWS\Syswow64\SET42.tmp deleted
  118. C:\WINDOWS\Syswow64\SET55C.tmp deleted
  119. C:\WINDOWS\Syswow64\SET82D.tmp deleted
  120. C:\WINDOWS\Syswow64\SET83F.tmp deleted
  121. C:\WINDOWS\Syswow64\SET92.tmp deleted
  122. C:\WINDOWS\Syswow64\SET95AE.tmp deleted
  123. C:\WINDOWS\Syswow64\SETAC7.tmp deleted
  124. C:\WINDOWS\Syswow64\SETAD8.tmp deleted
  125. C:\WINDOWS\Syswow64\SETC1A3.tmp deleted
  126. C:\WINDOWS\Syswow64\SETC231.tmp deleted
  127. C:\WINDOWS\Syswow64\SETC576.tmp deleted
  128. C:\WINDOWS\Syswow64\SETCA18.tmp deleted
  129. C:\WINDOWS\Syswow64\SETCB20.tmp deleted
  130. C:\WINDOWS\Syswow64\SETD679.tmp deleted
  131. C:\WINDOWS\Syswow64\SETD67B.tmp deleted
  132. C:\WINDOWS\Syswow64\SETDCC1.tmp deleted
  133. C:\WINDOWS\Syswow64\SETDD40.tmp deleted
  134. C:\WINDOWS\Syswow64\SETE0B4.tmp deleted
  135. C:\WINDOWS\Syswow64\SETE4FA.tmp deleted
  136. C:\WINDOWS\Syswow64\SETE51E.tmp deleted
  137. C:\WINDOWS\Syswow64\SETE626.tmp deleted
  138. C:\WINDOWS\Syswow64\SETEC0B.tmp deleted
  139. C:\WINDOWS\Syswow64\SETEC1D.tmp deleted
  140. C:\WINDOWS\Syswow64\SETF423.tmp deleted
  141. C:\WINDOWS\Syswow64\SETF4A2.tmp deleted
  142. C:\WINDOWS\Syswow64\SETF4E1.tmp deleted
  143. C:\WINDOWS\Syswow64\SETF58F.tmp deleted
  144. C:\WINDOWS\Syswow64\SETF70C.tmp deleted
  145. C:\WINDOWS\Syswow64\SETF87F.tmp deleted
  146. C:\WINDOWS\Syswow64\SETF8D4.tmp deleted
  147. C:\WINDOWS\Syswow64\SETFA4B.tmp deleted
  148. C:\WINDOWS\Syswow64\SETFB31.tmp deleted
  149. C:\WINDOWS\Syswow64\SETFB97.tmp deleted
  150. C:\WINDOWS\Syswow64\SETFD7A.tmp deleted
  151. C:\WINDOWS\Syswow64\SETFDA9.tmp deleted
  152. C:\WINDOWS\Syswow64\SETFDE9.tmp deleted
  153. C:\WINDOWS\Syswow64\SETFE60.tmp deleted
  154. C:\Users\googl\AppData\Roaming\Mozilla\Firefox\Profiles\mcxuex8n.default\extensions\homepage@mail.ru deleted
  155. C:\Users\googl\AppData\Roaming\Mozilla\Firefox\Profiles\mcxuex8n.default\extensions\search@mail.ru deleted
  156. C:\Users\googl\AppData\Roaming\Mozilla\Firefox\Profiles\mcxuex8n.default\Yahoo Inc deleted
  157. "C:\Users\googl\AppData\Roaming\discord\Cookies" not deleted
  158. "C:\Users\googl\AppData\Roaming\discord\Cookies-journal" not deleted
  159. "C:\Users\googl\AppData\Roaming\discord\modules.log" not deleted
  160. "C:\Users\googl\AppData\Roaming\discord\Cache\data_0" deleted
  161. "C:\Users\googl\AppData\Roaming\discord\Cache\data_1" deleted
  162. "C:\Users\googl\AppData\Roaming\discord\Cache\data_2" deleted
  163. "C:\Users\googl\AppData\Roaming\discord\Cache\data_3" deleted
  164. "C:\Users\googl\AppData\Roaming\discord\Cache\index" deleted
  165. "C:\Users\googl\AppData\Roaming\discord\GPUCache\data_0" deleted
  166. "C:\Users\googl\AppData\Roaming\discord\GPUCache\data_1" deleted
  167. "C:\Users\googl\AppData\Roaming\discord\GPUCache\data_2" deleted
  168. "C:\Users\googl\AppData\Roaming\discord\GPUCache\data_3" deleted
  169. "C:\Users\googl\AppData\Roaming\discord\GPUCache\index" deleted
  170. "C:\Users\googl\AppData\Roaming\discord\Local Storage\https_discordapp.com_0.localstorage" not deleted
  171. "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_contact_import\discord_contact_import.node" deleted
  172. "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_rpc\discord_rpc.node" deleted
  173. "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_toaster\discord_toaster.node" deleted
  174. "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_utils\discord_utils.node" deleted
  175. "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_voice\discord_voice.node" deleted
  176. "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_voice\libdiscord.dll" deleted
  177. "C:\Users\googl\AppData\Roaming\Nox" deleted
  178. "C:\Users\googl\AppData\Roaming\discord" not deleted
  179. "C:\Users\googl\AppData\Roaming\discord\0.0.297" not deleted
  180. "C:\Users\googl\AppData\Roaming\discord\Cache" not deleted
  181. "C:\Users\googl\AppData\Roaming\discord\GPUCache" not deleted
  182. "C:\Users\googl\AppData\Roaming\discord\Local Storage" not deleted
  183. "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules" not deleted
  184. "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_contact_import" not deleted
  185. "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_rpc" not deleted
  186. "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_toaster" not deleted
  187. "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_utils" not deleted
  188. "C:\Users\googl\AppData\Roaming\discord\0.0.297\modules\discord_voice" not deleted
  189.  
  190. ==== Firefox Start and Search pages ======================
  191.  
  192. ProfilePath: C:\Users\googl\AppData\Roaming\Mozilla\Firefox\Profiles\mcxuex8n.default
  193. user_pref("browser.startup.homepage", "about:home");
  194. user_pref("browser.newtab.url", "about:newtab");
  195.  
  196. ==== Firefox Extensions ======================
  197.  
  198. ProfilePath: C:\Users\googl\AppData\Roaming\Mozilla\Firefox\Profiles\mcxuex8n.default
  199. - Buy Proxies - %ProfilePath%\extensions\firefox@buyproxies.org
  200. - Exif Viewer em:version2.00.1-signed.1-signed em:type2 em:descriptionExtracts and displays the Exif Exchangeable Image File IPTC-NAAIIM International Press Telecommunications Council Newspaper Association of America Information Interchange Model and IPTC Core Adobe XMP Extensible Metadata Platform metadata as stored by digital still cameras in both local and remote JPEG images. em:creatorAlan Raskin asraskin@gmail.com em:homepageURLhttp:araskin.webs.comexifexif.html - %ProfilePath%\extensions\exif_viewer@mozilla.doslash.org.xpi
  201.  
  202. ==== Firefox Plugins ======================
  203.  
  204.  
  205. ==== Chromium Look ======================
  206.  
  207. HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
  208. efaidnbmnnnibpcajpcglclefindmkaj - No path found[]
  209.  
  210. HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
  211. lmjegmlicamnimmfhcmpkclmigmmcbeh - No path found[]
  212.  
  213. uBlock₀ - googl\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm
  214. SSLE - googl\AppData\Local\Google\Chrome\User Data\Default\Extensions\eldkkiimeobmnkkiielcgemfkaadpchm
  215. 4.1.36 - googl\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd
  216. Grammarly for Chrome - googl\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen
  217. Chrome Media Router - googl\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
  218.  
  219. ==== Set IE to Default ======================
  220.  
  221. Old Values:
  222. [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
  223.  
  224. New Values:
  225. [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
  226. "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
  227.  
  228. ==== All HKLM and HKCU SearchScopes ======================
  229.  
  230. HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
  231. HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
  232. HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
  233. HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
  234. HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
  235. HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
  236. HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
  237.  
  238. ==== Reset Google Chrome ======================
  239.  
  240. C:\Users\googl\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
  241. C:\Users\googl\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
  242. C:\Users\googl\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
  243. C:\Users\googl\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
  244.  
  245. ==== shortcuts on Users Desktops ======================
  246.  
  247. C:\Users\googl\Desktop\BitTorrent.lnk - C:\Users\googl\AppData\Roaming\BitTorrent\BitTorrent.exe
  248. C:\Users\googl\Desktop\CodeBlocks.lnk - C:\Program Files (x86)\CodeBlocks\codeblocks.exe
  249. C:\Users\googl\Desktop\Discord.lnk - C:\Users\googl\AppData\Local\Discord\Update.exe --processStart Discord.exe
  250. C:\Users\googl\Desktop\Excel 2016.lnk -
  251. C:\Users\googl\Desktop\Google Drive.lnk - C:\Users\googl\Google Drive
  252. C:\Users\googl\Desktop\PowerPoint 2016.lnk -
  253. C:\Users\googl\Desktop\Razor.lnk - C:\Program Files (x86)\Razor\Razor.exe
  254. C:\Users\googl\Desktop\Sandboxed Web Browser.lnk - C:\Program Files\Sandboxie\Start.exe default_browser
  255. C:\Users\googl\Desktop\Spotify.lnk - C:\Users\googl\AppData\Roaming\Spotify\Spotify.exe
  256. C:\Users\googl\Desktop\UO Renaissance (Without Razor).lnk - D:\Ultima Online\client_noenc.exe
  257. C:\Users\googl\Desktop\UO Renaissance Website.lnk -
  258. C:\Users\googl\Desktop\Word 2016.lnk -
  259.  
  260. ==== shortcuts on All Users Desktop ======================
  261.  
  262. C:\Users\Public\Desktop\Acrobat Reader DC.lnk - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
  263. C:\Users\Public\Desktop\Adobe Creative Cloud.lnk - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
  264. C:\Users\Public\Desktop\Battle.net.lnk - C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe
  265. C:\Users\Public\Desktop\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe
  266. C:\Users\Public\Desktop\DJI Assistant 2.lnk - C:\Program Files (x86)\DJI Product\DJI Assistant 2\DJI Assistant 2.exe
  267. C:\Users\Public\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  268. C:\Users\Public\Desktop\Google Docs.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_document
  269. C:\Users\Public\Desktop\Google Sheets.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_spreadsheet
  270. C:\Users\Public\Desktop\Google Slides.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_presentation
  271. C:\Users\Public\Desktop\iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.exe
  272. C:\Users\Public\Desktop\Malwarebytes.lnk - C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe
  273. C:\Users\Public\Desktop\Overwatch.lnk - C:\Program Files (x86)\Overwatch\Overwatch Launcher.exe
  274. C:\Users\Public\Desktop\Popcorn Time.lnk - C:\Program Files (x86)\Popcorn Time\PopcornTimeDesktop.exe
  275. C:\Users\Public\Desktop\Skype.lnk - C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe
  276. C:\Users\Public\Desktop\Speccy.lnk - C:\Program Files (x86)\Speccy\Speccy64.exe
  277. C:\Users\Public\Desktop\Steam.lnk - C:\Program Files (x86)\Steam\Steam.exe
  278. C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk - C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win64.exe
  279. C:\Users\Public\Desktop\TeamViewer 12.lnk - C:\Program Files (x86)\TeamViewer\TeamViewer.exe
  280. C:\Users\Public\Desktop\VLC media player.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
  281.  
  282. ==== shortcuts in Users Start Menu ======================
  283.  
  284. C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks (Launcher).lnk - C:\Program Files (x86)\CodeBlocks\CbLauncher.exe
  285. C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks CBP2Make.lnk - C:\Program Files (x86)\CodeBlocks\cbp2make.exe
  286. C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks Share Config.lnk - C:\Program Files (x86)\CodeBlocks\cb_share_config.exe
  287. C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks.lnk - C:\Program Files (x86)\CodeBlocks\codeblocks.exe
  288. C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\Uninstall CodeBlocks.lnk - C:\Program Files (x86)\CodeBlocks\uninstall.exe
  289. C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc\Discord.lnk - C:\Users\googl\AppData\Local\Discord\Update.exe --processStart Discord.exe
  290. C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Razor\Razor.lnk - C:\Program Files (x86)\Razor\Razor.exe
  291. C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Razor\RPV Editor (Alpha).lnk - C:\Program Files (x86)\Razor\RPVEditor.exe
  292. C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Razor\Uninstall.lnk - C:\Program Files (x86)\Razor\Uninstall.exe
  293. C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Razor\Visit Razor's Website.lnk -
  294. C:\Users\googl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk - C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE /tsr
  295.  
  296. ==== shortcuts in All Users Start Menu ======================
  297.  
  298. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk - C:\WINDOWS\Installer\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}\SC_Reader.ico
  299. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
  300. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom.lnk - C:\Program Files\Adobe\Adobe Lightroom\lightroom.exe
  301. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Media Encoder CC 2017.lnk - C:\Program Files\Adobe\Adobe Media Encoder CC 2017\Adobe Media Encoder.exe
  302. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2017.lnk - C:\Program Files\Adobe\Adobe Photoshop CC 2017\Photoshop.exe
  303. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro CC 2017.lnk - C:\Program Files\Adobe\Adobe Premiere Pro CC 2017\Adobe Premiere Pro.exe
  304. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk - C:\WINDOWS\Installer\{56EC47AA-5813-4FF6-8E75-544026FBEA83}\AppleSoftwareUpdateIco.exe
  305. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  306. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk - C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe
  307. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 12.lnk - C:\Program Files (x86)\TeamViewer\TeamViewer.exe
  308. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings\AMD Settings.lnk - C:\Program Files (x86)\AMD\CNext\CNext\RadeonSettings.exe
  309. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe
  310. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks.lnk - C:\Program Files (x86)\CodeBlocks\codeblocks.exe
  311. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DJI Product\DJI Assistant 2\DJI Assistant 2.lnk - C:\Program Files (x86)\DJI Product\DJI Assistant 2\DJI Assistant 2.exe
  312. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DJI Product\DJI Assistant 2\Uninstall DJI Assistant 2.lnk - C:\Program Files (x86)\DJI Product\DJI Assistant 2\unins000.exe
  313. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive\Google Docs.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_document
  314. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive\Google Drive.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe
  315. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive\Google Sheets.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_spreadsheet
  316. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive\Google Slides.lnk - C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_presentation
  317. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Imagenomic\Noiseware Plug-in\License Agreement.lnk - C:\Program Files\Imagenomic\Noiseware Plug-in\NoisewarePluginEULA.html
  318. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Imagenomic\Noiseware Plug-in\Noiseware Plug-in Hosts Setup.lnk - C:\Program Files\Imagenomic\Noiseware Plug-in\uninst.exe /HOSTS
  319. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Imagenomic\Noiseware Plug-in\Noiseware Plug-in User's Guide.lnk - C:\Program Files\Imagenomic\Noiseware Plug-in\NoisewarePluginUsersGuide.pdf
  320. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Imagenomic\Noiseware Plug-in\Uninstall Noiseware Plug-in.lnk - C:\Program Files\Imagenomic\Noiseware Plug-in\uninst.exe
  321. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\About iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.Resources\en.lproj\About iTunes.rtf
  322. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.exe
  323. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes\Malwarebytes.lnk - C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe
  324. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes\Uninstall Malwarebytes.lnk - C:\Program Files (x86)\Malwarebytes\Anti-Malware\unins000.exe
  325. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++\Notepad++.lnk - C:\Program Files (x86)\Notepad++\notepad++.exe
  326. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer\Razer Synapse\Razer Synapse.lnk - C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe -launch
  327. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie\Run any program sandboxed.lnk - C:\Program Files\Sandboxie\Start.exe /box:__ask__ run_dialog
  328. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie\Run Web browser sandboxed.lnk - C:\Program Files\Sandboxie\Start.exe default_browser
  329. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie\Run Windows Explorer sandboxed.lnk - C:\Program Files\Sandboxie\Start.exe .
  330. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie\Sandboxie Control.lnk - C:\Program Files\Sandboxie\SbieCtrl.exe /open
  331. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie\Sandboxie Start Menu.lnk - C:\Program Files\Sandboxie\Start.exe /box:__ask__ start_menu
  332. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie\Uninstall Sandboxie.lnk - C:\Windows\Installer\SandboxieInstall64.exe /remove
  333. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Documentation.lnk - C:\Program Files (x86)\VideoLAN\VLC\Documentation.url
  334. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Release Notes.lnk - C:\Program Files (x86)\VideoLAN\VLC\NEWS.txt
  335. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VideoLAN Website.lnk - C:\Program Files (x86)\VideoLAN\VLC\VideoLAN Website.url
  336. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player - reset preferences and cache files.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe --reset-config --reset-plugins-cache vlc://quit
  337. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player skinned.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe -Iskins
  338. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
  339.  
  340. ==== shortcuts in Quick Launch ======================
  341.  
  342. C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
  343. C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
  344. C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
  345. C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
  346. C:\Users\googl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\BitTorrent.lnk - C:\Users\googl\AppData\Roaming\BitTorrent\BitTorrent.exe
  347. C:\Users\googl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CodeBlocks.lnk - C:\Program Files (x86)\CodeBlocks\codeblocks.exe
  348. C:\Users\googl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  349. C:\Users\googl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Sandboxed Web Browser.lnk - C:\Program Files\Sandboxie\Start.exe default_browser
  350. C:\Users\googl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
  351. C:\Users\googl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
  352. C:\Users\googl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -
  353. C:\Users\googl\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  354.  
  355. ==== Deleting Registry Keys ======================
  356.  
  357. HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{85204665-3317-4953-BDB8-3BB60C75C130} deleted successfully
  358. HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\UnityWebPlayer deleted successfully
  359.  
  360. ==== Empty IE Cache ======================
  361.  
  362. C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
  363. C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
  364. C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
  365. C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
  366. C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
  367. C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
  368. C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
  369. C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
  370. C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
  371. C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\IE\20Q8RO3V will be deleted at reboot
  372. C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\IE\5HP8EE3I will be deleted at reboot
  373. C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\IE\H53T0BC0 will be deleted at reboot
  374. C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\IE\LDABYWMY will be deleted at reboot
  375.  
  376. ==== Empty FireFox Cache ======================
  377.  
  378. No FireFox Cache found
  379.  
  380. ==== Empty Chrome Cache ======================
  381.  
  382. C:\Users\googl\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
  383.  
  384. ==== Empty All Flash Cache ======================
  385.  
  386. No Flash Cache Found
  387.  
  388. ==== Empty All Java Cache ======================
  389.  
  390. Java Cache cleared successfully
  391.  
  392. ==== C:\zoek_backup content ======================
  393.  
  394. C:\zoek_backup (files=1160 folders=548 2889055155 bytes)
  395.  
  396. ==== Empty Temp Folders ======================
  397.  
  398. C:\WINDOWS\Temp will be emptied at reboot
  399.  
  400. ==== After Reboot ======================
  401.  
  402. ==== Empty Temp Folders ======================
  403.  
  404. C:\WINDOWS\Temp successfully emptied
  405. C:\Users\googl\AppData\Local\Temp successfully emptied
  406.  
  407. ==== Empty Recycle Bin ======================
  408.  
  409. C:\$RECYCLE.BIN successfully emptied
  410.  
  411. ==== Deleting Files / Folders ======================
  412.  
  413. "C:\Users\googl\AppData\Roaming\discord\Cookies" not found
  414. "C:\Users\googl\AppData\Roaming\discord\Cookies-journal" not found
  415. "C:\Users\googl\AppData\Roaming\discord\modules.log" not found
  416. "C:\Users\googl\AppData\Roaming\discord\Local Storage\https_discordapp.com_0.localstorage" not found
  417. "C:\Users\googl\AppData\Roaming\discord" not found
  418. "C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\IE\20Q8RO3V" not found
  419. "C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\IE\5HP8EE3I" not found
  420. "C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\IE\H53T0BC0" not found
  421. "C:\Users\googl\AppData\Local\Microsoft\Windows\INetCache\IE\LDABYWMY" not found
  422.  
  423. ==== EOF on Wed 01/25/2017 at 19:34:11.00 ======================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement