Zoek.exe Version 4.0.0.4 Updated 21-07-2013 Tool run by Storm on zo 21-07-2013 at 22:50:32,54. Microsoft® Windows Vista™ Home Premium 6.0.6001 Service Pack 1 x86 Running in: Normal Mode Internet Access Detected Launched: c:\Users\Storm\Downloads\zoek.exe [Script inserted] ==== System Restore Info ====================== 21-7-2013 22:51:23 Zoek.exe System Restore Point Created Succesfully. ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WsysSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WsysSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Eventlog\Application\WsysSvc deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\WsysSvc deleted successfully ==== Deleting Files \ Folders ====================== "C:\Windows\wininit.ini" deleted "C:\Windows\System32\Tasks\DSite" deleted "C:\Windows\system32\tasks\Desk 365 RunAsStdUser" deleted "C:\Windows\tasks\DSite.job" deleted "C:\found.000" deleted "C:\Users\Storm\AppData\Roaming\eIntaller" deleted "C:\Users\Storm\AppData\Roaming\Yontoo" deleted "C:\Users\Storm\AppData\Roaming\DSite" deleted "C:\ProgramData\Tarma Installer" deleted ==== Chrome Look ====================== Google Docs - Storm - Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Storm - Default\Extensions\apdfllckaahabafndbhieahigkjlhalf Show the YouTube Channel bar or the name. - Storm - Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn YouTube - Storm - Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - Storm - Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Cloud Downloader - Storm - Default\Extensions\fcagacejgfjgkfpganihbblbljafjonp Gmail - Storm - Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.msn.com/" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{33BB0A4E-99AF-4226-BDF6-49120163DE86}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.msn.com/" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" {952582A9-CEEC-4C81-A1F2-3E7066C6711F} Google Url="http://www.google.com/search?source=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSEA;" ==== shortcuts on Users Desktops ====================== C:\Users\Storm\Desktop\HiJackThis.lnk - C:\Users\Storm\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe C:\Users\Storm\Desktop\Microsoft Word 2010.lnk - C:\Windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\wordicon.exe ==== shortcuts on All Users Desktop ====================== C:\Users\Public\Desktop\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe http://www.qvo6.com/?utm_source=b&utm_medium=adk&from=adk&uid=WDCXWD3200BEVS-26VAT0_WD-WXE309ED6088D6088&ts=1374397769 C:\Users\Public\Desktop\HDMI-uit.lnk - C:\Program Files\Toshiba\HDMICtrlMan\ChangeOutput.exe C:\Users\Public\Desktop\iTunes.lnk - C:\Program Files\iTunes\iTunes.exe C:\Users\Public\Desktop\Microsoft Works.lnk - C:\Program Files\Microsoft Works\MSWorks.exe C:\Users\Public\Desktop\Morrowind.lnk - C:\Program Files\Bethesda Softworks\Morrowind\Morrowind Launcher.exe C:\Users\Public\Desktop\Origin.lnk - C:\Program Files\Origin\Origin.exe C:\Users\Public\Desktop\Teach2000.lnk - C:\Program Files\Teach2000\Teach2000.exe C:\Users\Public\Desktop\The Elder Scrolls Construction Set.lnk - C:\Program Files\Bethesda Softworks\Morrowind\TES Construction Set.exe C:\Users\Public\Desktop\TOSHIBA Gebruikershandleiding.lnk - C:\Program Files\Toshiba\Manuals\SPR6A300NL0.pdf C:\Users\Public\Desktop\TOSHIBA Herstelschijf maken.lnk - C:\Program Files\Toshiba\TOSHIBA Recovery Disc Creator\TRORDCLauncher.exe C:\Users\Public\Desktop\TOSHIBA Services en Opties.lnk - C:\Program Files\TOSHIBA\Services and Options\HTML\index.hta C:\Users\Public\Desktop\Toshiba TEMPRO-meldingen.lnk - C:\Windows\Installer\{03FAA727-E2B7-471C-AC41-2E1C7F29C7EA}\Icon03FAA7271.ico ==== shortcuts in Users Start Menu ====================== C:\Users\Storm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.qvo6.com/?utm_source=b&utm_medium=adk&from=adk&uid=WDCXWD3200BEVS-26VAT0_WD-WXE309ED6088D6088&ts=1374397769 C:\Users\Storm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 C:\Users\Storm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.qvo6.com/?utm_source=b&utm_medium=adk&from=adk&uid=WDCXWD3200BEVS-26VAT0_WD-WXE309ED6088D6088&ts=1374397769 C:\Users\Storm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis\HiJackThis.lnk - C:\Users\Storm\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe C:\Users\Storm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk - C:\Program Files\Toshiba\TRDCReminder\TRDCReminder.exe ==== shortcuts in All Users Start Menu ====================== C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda Softworks\Morrowind\Morrowind.lnk - C:\Program Files\Bethesda Softworks\Morrowind\Morrowind Launcher.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda Softworks\Morrowind\Uninstall Morrowind.lnk - C:\Program Files\Bethesda Softworks\Morrowind\MWUninstall\Setup.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda Softworks\Morrowind\View ReadMe.txt.lnk - C:\Program Files\Bethesda Softworks\Morrowind\Readme.txt C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda Softworks\The Elder Scrolls Construction Set\The Elder Scrolls Construction Set.lnk - C:\Program Files\Bethesda Softworks\Morrowind\TES Construction Set.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda Softworks\The Elder Scrolls Construction Set\Uninstall The Elder Scrolls Construction Set.lnk - C:\Program Files\Bethesda Softworks\Morrowind\CSUninstall\Setup.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda Softworks\The Elder Scrolls Construction Set\View License.txt.lnk - C:\Program Files\Bethesda Softworks\Morrowind\license.txt C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe http://www.qvo6.com/?utm_source=b&utm_medium=adk&from=adk&uid=WDCXWD3200BEVS-26VAT0_WD-WXE309ED6088D6088&ts=1374397769 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk - C:\Program Files\Microsoft Silverlight\5.1.20513.0\Silverlight.Configuration.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy\File Shredder.lnk - C:\Program Files\Spybot - Search & Destroy\SDShred.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy\Spybot - Search & Destroy.lnk - C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy\Tutorial.lnk - C:\Program Files\Spybot - Search & Destroy\Help\English.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy\Uninstall Spybot-S&D.lnk - C:\Program Files\Spybot - Search & Destroy\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy\Update Spybot-S&D.lnk - C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe ==== shortcuts in Quick Launch ====================== C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Storm\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe http://www.qvo6.com/?utm_source=b&utm_medium=adk&from=adk&uid=WDCXWD3200BEVS-26VAT0_WD-WXE309ED6088D6088&ts=1374397769 C:\Users\Storm\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.qvo6.com/?utm_source=b&utm_medium=adk&from=adk&uid=WDCXWD3200BEVS-26VAT0_WD-WXE309ED6088D6088&ts=1374397769 C:\Users\Storm\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Storm\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Storm\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 ==== shortcuts After Repair ====================== C:\Users\Public\Desktop\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe C:\Users\Storm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Storm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe -extoff C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe C:\Users\Storm\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe C:\Users\Storm\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe ==== Empty IE Cache ====================== C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Storm\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Storm\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Storm\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\users\Storm\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Storm\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Storm\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found ==== EOF on zo 21-07-2013 at 23:27:09,52 ======================