Guest User

Zoek-results.txt

a guest
May 13th, 2015
87
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 13.27 KB | None | 0 0
  1.  
  2. Zoek.exe v5.0.0.0 Updated 04-May-2015
  3. Tool run by Nick on Wed 05/13/2015 at 7:56:30.90.
  4. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
  5. Running in: Normal Mode Internet Access Detected
  6. Launched: C:\Users\Nick\Desktop\zoek.exe [Scan all users] [Script inserted]
  7.  
  8. ==== System Restore Info ======================
  9.  
  10. 5/13/2015 7:57:20 AM Zoek.exe System Restore Point Created Successfully.
  11.  
  12. ==== Empty Folders Check ======================
  13.  
  14. C:\PROGRA~2\Rockstar Games deleted successfully
  15. C:\Program Files\AVAST Software deleted successfully
  16. C:\Program Files\Rockstar Games deleted successfully
  17. C:\PROGRA~3\SUPPORTDIR deleted successfully
  18. C:\Users\Nick\AppData\Roaming\Windows Live Writer deleted successfully
  19. C:\Users\Guest\AppData\Local\VirtualStore deleted successfully
  20. C:\Users\Nick\AppData\Local\HockeyCrashes deleted successfully
  21.  
  22. ==== Deleting CLSID Registry Keys ======================
  23.  
  24.  
  25. ==== Deleting CLSID Registry Values ======================
  26.  
  27.  
  28. ==== Deleting Services ======================
  29.  
  30.  
  31. ==== FireFox Fix ======================
  32.  
  33. ProfilePath: C:\Users\Nick\AppData\Roaming\Mozilla\Firefox\Profiles\ve3zt571.default
  34.  
  35. user.js not found
  36. ---- Lines Search removed from prefs.js ----
  37. user_pref("browser.search.hiddenOneOffs", "Yahoo,Amazon.com,DuckDuckGo,eBay,Twitter,Wikipedia (en),Amazon Search Suggestions");
  38. ---- Lines extensions.GS8XSvZYQI9S9aO1 removed from prefs.js ----
  39. user_pref("extensions.GS8XSvZYQI9S9aO1.epoch", "1");
  40. user_pref("extensions.GS8XSvZYQI9S9aO1.scode", "void(0);");
  41. user_pref("extensions.GS8XSvZYQI9S9aO1.url", "http://madelphi.net/sync/?q=C6qUojw6pdY6qTUEqdk7rda5qTr6qjr5tMZPhd9Hrjr6qHgFqdw7rTr5qTa6pjsFtNtVh7n0rjkE
  42. ---- Lines extensions.RrfcLo8dXl0ZAdGy removed from prefs.js ----
  43. user_pref("extensions.RrfcLo8dXl0ZAdGy.epoch", "1");
  44. user_pref("extensions.RrfcLo8dXl0ZAdGy.scode", "void(0);");
  45. user_pref("extensions.RrfcLo8dXl0ZAdGy.url", "http://veteranted.net/sync/?q=C6qUojw6pdY6qTUEqdk7rda5qTr6qjr5tMZPhd9Hrjr6qHgFqdw7rTr5qTa6pjsFtNtVh7n0rj
  46. ---- FireFox user.js and prefs.js backups ----
  47.  
  48. prefs_20150513_0804_.backup
  49.  
  50. ==== Batch Command(s) Run By Tool======================
  51.  
  52.  
  53. ==== Deleting Files \ Folders ======================
  54.  
  55. C:\PROGRA~2\Rockstar Games not found
  56. C:\PROGRA~2\Keep My Opt Outs deleted
  57. C:\PROGRA~3\15837773944675527838 deleted
  58. C:\Users\Nick\AppData\Roaming\ProductData deleted
  59. C:\PROGRA~3\ProductData deleted
  60. C:\Users\Nick\AppData\Local\libeay32.dll deleted
  61. C:\Users\Nick\AppData\Local\msvcp100.dll deleted
  62. C:\Users\Nick\AppData\Local\msvcr100.dll deleted
  63. C:\Users\Nick\AppData\Local\QtCore4.dll deleted
  64. C:\Users\Nick\AppData\Local\QtGui4.dll deleted
  65. C:\Users\Nick\AppData\Local\QtNetwork4.dll deleted
  66. C:\Users\Nick\AppData\Local\QtWebKit4.dll deleted
  67. C:\Users\Nick\AppData\Local\ssleay32.dll deleted
  68. C:\Users\Nick\AppData\Local\CrashRpt deleted
  69. C:\windows\SysNative\Tasks\avastBCLRestartS-1-5-21-2215262160-1467129878-4294777661-1000 deleted
  70. C:\Windows\SysNative\config\systemprofile\Searches deleted
  71. C:\windows\SysNative\GroupPolicy\Machine deleted
  72. C:\windows\SysNative\GroupPolicy\User deleted
  73. C:\windows\SysNative\GroupPolicy\gpt.ini deleted
  74. C:\Windows\SysWow64\AI_RecycleBin deleted
  75. C:\Users\Nick\AppData\Roaming\Mozilla\Firefox\Profiles\ve3zt571.default\searchplugins\amazon-search-suggestions.xml deleted
  76. C:\Users\Nick\AppData\Roaming\Mozilla\Firefox\Profiles\ve3zt571.default\searchplugins\youtube-video-search.xml deleted
  77. C:\Users\Nick\AppData\Roaming\Mozilla\Firefox\Profiles\ve3zt571.default\extensions\[email protected] deleted
  78. C:\Users\Nick\AppData\Roaming\Mozilla\Firefox\Profiles\ve3zt571.default\jetpack deleted
  79. "C:\Windows\Installer\17b1f5.msi" deleted
  80. "C:\PROGRA~3\Package Cache" deleted
  81.  
  82. ==== Firefox Start and Search pages ======================
  83.  
  84. ProfilePath: C:\Users\Nick\AppData\Roaming\Mozilla\Firefox\Profiles\ve3zt571.default
  85. user_pref("browser.startup.homepage", "about:home");
  86. user_pref("browser.search.defaulturl", "https://www.google.com/search/?trackid=sp-006");
  87. user_pref("browser.search.defaultengine", "Google (avast)");
  88. user_pref("browser.search.defaultenginename", "Google (avast)");
  89. user_pref("browser.search.defaultenginename.US", "Google (avast)");
  90. user_pref("browser.search.selectedEngine", "Google (avast)");
  91. user_pref("keyword.URL", "https://www.google.com/search/?trackid=sp-006");
  92.  
  93. ==== Firefox Extensions Registry ======================
  94.  
  95. [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
  96. "[email protected]"="D:\Avast\WebRep\FF" [04/23/2015 10:53 AM]
  97. [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
  98. "DSE"="true" []
  99.  
  100. ==== Firefox Extensions ======================
  101.  
  102. ProfilePath: C:\Users\Nick\AppData\Roaming\Mozilla\Firefox\Profiles\ve3zt571.default
  103. - Avast Online Security - D:\Avast\WebRep\FF
  104. - LavaFox V2 - %ProfilePath%\extensions\[email protected]
  105. - High Definition Video - %ProfilePath%\extensions\[email protected]
  106. - Facebook Color Changer - %ProfilePath%\extensions\[email protected]
  107. - Gmail Notifier restartless - %ProfilePath%\extensions\[email protected]
  108. - NASA Night Launch - %ProfilePath%\extensions\[email protected]
  109. - Tile Tabs - %ProfilePath%\extensions\[email protected]
  110. - Black Youtube Theme - %ProfilePath%\extensions\{2c93446d-612b-416d-9af0-b7355797b611}.xpi
  111. - MicroFox - %ProfilePath%\extensions\{403304EE-066A-4a2a-8F41-F12028480A0A}.xpi
  112. - Download YouTube Videos as MP4 - %ProfilePath%\extensions\{b9bfaf1c-a63f-47cd-8b9a-29526ced9060}.xpi
  113. - Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
  114.  
  115. ==== Firefox Plugins ======================
  116.  
  117. Profilepath: C:\Users\Nick\AppData\Roaming\Mozilla\Firefox\Profiles\ve3zt571.default
  118. 52CE0DBFD9738AE528CF525A0367EBEB - D:\VLC Media Player\VLC\npvlc.dll - VLC Web Plugin
  119.  
  120.  
  121. ==== Fake Chromium Profiles Check ======================
  122.  
  123. Fake profile C:\Users\Guest\AppData\Local\Google\Chrome deleted
  124.  
  125. ==== Chromium Look ======================
  126.  
  127. Google Chrome Version: 42.0.2311.135
  128.  
  129. HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
  130. gomekmidlodglbbmalcneegieacbdmki - D:\Avast\WebRep\Chrome\aswWebRepChrome.crx[03/20/2015 07:47 PM]
  131. lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[07/14/2014 06:22 PM]
  132.  
  133. HD for YouTube™ - Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\akjbfncbadcmnkopckegnmjgihagponf
  134. YouTweak for YouTube™ - Subscription Manager - Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfgpigllcihcpkbokdnmpkjobnebflgh
  135. Bookmark Manager - Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik
  136. Avast Online Security - Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
  137. Chrome Hotword Shared Module - Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg
  138. Skype Click to Call - Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
  139. Black Black Chrome Theme Dark Blue Highlight - Nick\AppData\Local\Google\Chrome\User Data\Default\Extensions\njpbabhpbnilgchdjbajcbgnnclkaida
  140. Cards Against Originality - Nick\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\akccmajgihkbpjdmkceiamgkkplachhk
  141. Quizlet - Nick\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bgofflgeghkhocbociocnckocbjmomjh
  142. Desmos Graphing Calculator - Nick\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bhdheahnajobgndecdbggfmcojekgdko
  143. GeoGebra - Nick\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bnbaboaihhkjoaolfnfoablhllahjnee
  144. Spotify - Music for every moment - Nick\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cnkjkdjlofllcpbemipjbcpfnglbgieh
  145. bloomind ct deepdark - Nick\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\djolekdiiojehgfggcjckachfgkkdmjd
  146. Black Menu for Google™ - Nick\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eignhdfgaldabilaaegmdfbajngjmoke
  147. Bookmark Manager - Nick\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gmlllbghnfkpflemihljekbapjopfjik
  148. Avast Online Security - Nick\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki
  149. Chrome Hotword Shared Module - Nick\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lccekmodgklaepjeofjdjpbminllajkg
  150. Skype Click to Call - Nick\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
  151. TypingClub - Nick\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\obdbgibnhfcjmmpfijkpcihjieedpfah
  152.  
  153. ==== Chromium Startpages ======================
  154.  
  155. C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Default\Preferences
  156. "startup_urls": [ "http://www.google.com/" ]
  157.  
  158. C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Profile 1\Preferences
  159. "startup_urls": [ "http://websearch.goodforsearch.info/?pid=20715&r=2015/04/20&hid=3137761416238607921&lg=EN&cc=US&unqvl=86" ]
  160.  
  161.  
  162. ==== Chromium Fix ======================
  163.  
  164. C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage deleted successfully
  165. C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal deleted successfully
  166.  
  167. ==== Set IE to Default ======================
  168.  
  169. Old Values:
  170. [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
  171. "Start Page"="http://google.com/"
  172.  
  173. New Values:
  174. [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
  175. "Start Page"="http://google.com/"
  176.  
  177. ==== All HKCU SearchScopes ======================
  178.  
  179. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
  180. "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
  181. {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
  182. {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
  183. {2E445151-F754-452E-8484-190044B897EB} Google Url="https://www.google.com/search?q={searchTerms}"
  184.  
  185. ==== Deleting CLSID Registry Keys ======================
  186.  
  187.  
  188. ==== Deleting CLSID Registry Values ======================
  189.  
  190.  
  191. ==== Deleting Registry Keys ======================
  192.  
  193. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4E30E037E0535E84D9E3349209D354D4 deleted successfully
  194. HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully
  195. HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{730E03E4-350E-48E5-9D3E-4329903D454D} deleted successfully
  196. HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\4E30E037E0535E84D9E3349209D354D4 deleted successfully
  197.  
  198. ==== Empty IE Cache ======================
  199.  
  200. C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
  201. C:\Users\Guest\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
  202. C:\Users\Nick\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
  203. C:\Users\Nick\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
  204. C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
  205. C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
  206. C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
  207. C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
  208.  
  209. ==== Empty FireFox Cache ======================
  210.  
  211. C:\Users\Nick\AppData\Local\Mozilla\Firefox\Profiles\ve3zt571.default\cache2 emptied successfully
  212.  
  213. ==== Empty Chrome Cache ======================
  214.  
  215. C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
  216. C:\Users\Nick\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully
  217.  
  218. ==== Empty All Flash Cache ======================
  219.  
  220. Flash Cache Emptied Successfully
  221.  
  222. ==== Empty All Java Cache ======================
  223.  
  224. Java Cache cleared successfully
  225.  
  226. ==== C:\zoek_backup content ======================
  227.  
  228. C:\zoek_backup (files=105 folders=182 1000464037 bytes)
  229.  
  230. ==== Empty Temp Folders ======================
  231.  
  232. C:\Users\Default\AppData\Local\Temp emptied successfully
  233. C:\Users\Default User\AppData\Local\Temp emptied successfully
  234. C:\Users\Guest\AppData\Local\Temp emptied successfully
  235. C:\Users\Nick\AppData\Local\Temp will be emptied at reboot
  236. C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
  237. C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
  238. C:\Windows\Temp will be emptied at reboot
  239.  
  240. ==== After Reboot ======================
  241.  
  242. ==== Empty Temp Folders ======================
  243.  
  244. C:\Windows\Temp successfully emptied
  245. C:\Users\Nick\AppData\Local\Temp successfully emptied
  246.  
  247. ==== Empty Recycle Bin ======================
  248.  
  249. C:\$RECYCLE.BIN successfully emptied
  250.  
  251. ==== Deleting Files / Folders ======================
  252.  
  253. "C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted
  254.  
  255. ==== EOF on Wed 05/13/2015 at 8:09:49.63 ======================
Advertisement
Add Comment
Please, Sign In to add comment