Zoek.exe v5.0.0.0 Updated 28-December-2013 Tool run by Jules on wo 01-01-2014 at 20:53:49,55. Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Jules\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 1-1-2014 20:56:36 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\MSXML 4.0 deleted successfully C:\PROGRA~2\VideoLAN deleted successfully C:\Program Files\Symantec deleted successfully C:\ProgramData\ALM deleted successfully C:\ProgramData\NortonInstaller deleted successfully C:\ProgramData\Oracle deleted successfully C:\Users\Jules\AppData\Local\PACE Anti-Piracy deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] ""=- "PICTURE"=- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "PICTURE"=- "ASRockXTU"=- "zASRockInstantBoot"=- "AdobeBridge"=- ==== Deleting Files \ Folders ====================== "C:\Windows\Installer\2a5bdd.msi" not found "C:\Windows\Installer\2a5be5.msi" not found "C:\Windows\Installer\2a5bdd.msi" not found C:\Users\Jules\AppData\Local\Programs deleted C:\Users\Jules\AppData\Local\cache deleted C:\Users\Jules\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PICTURE.vbs deleted C:\Users\Public\sdelevURL.tmp deleted C:\Windows\Syswow64\InstallUtil.InstallLog deleted C:\Windows\SysWow64\searchplugins deleted C:\Windows\SysWow64\Extensions deleted "C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP\WiseCustomCall.dll" deleted "C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP\WiseCustomCalla.dll" deleted "C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP\WiseCustomCalla2.dll" deleted "C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP\WiseCustomCalla21.dll" deleted "C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP\WiseCustomCalla31.exe" deleted "C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP\WiseCustomCalla32.dll" deleted "C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP\WiseCustomCalla33.dll" deleted "C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP\WiseCustomCalla34.dll" deleted "C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP\WiseCustomCalla37.exe" deleted "C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP\WiseData.ini" deleted "C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP" deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\Jules\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== ====== C:\Windows\Sysnative\drivers ===== 2013-12-14 19:32:06 E0D3CD5841E5C7BE7B94BA946AF1E498 116736 ----a-w- C:\Windows\Sysnative\drivers\drmk.sys 2013-12-14 19:32:06 1E0B4CBBA91C6B041A14ECC2186F7E24 230400 ----a-w- C:\Windows\Sysnative\drivers\portcls.sys 2013-12-02 20:23:01 0BB97D43299910CBFBA59C461B99B910 25928 ----a-w- C:\Windows\Sysnative\drivers\mbam.sys ====== C:\Windows\Tasks ====== 2013-12-30 10:27:17 7CC61A0261714B3826301F14683D1713 3094 ----a-w- C:\Windows\Sysnative\Tasks\{794ED421-AF2E-460F-9E42-51277C872AC8} 2013-12-17 19:58:04 8714128D22B5FAA222CD4A99E5A34F96 2896 ----a-w- C:\Windows\Sysnative\Tasks\AutoKMS ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2014-01-01 14:23:36 -------- d-----w- C:\Program Files\trend micro 2013-12-29 18:24:30 -------- d-----w- C:\Program Files\SUPERAntiSpyware 2013-12-17 18:51:05 -------- d-----w- C:\Program Files\Enigma Software Group ======= C:\PROGRA~2 ===== 2014-01-01 14:56:20 -------- d-----w- C:\PROGRA~2\IObit 2013-12-17 20:03:40 -------- d-----w- C:\PROGRA~2\ConWare 2013-12-17 18:50:18 -------- d-----w- C:\PROGRA~2\COMMON~1\Wise Installation Wizard ======= C: ===== 2013-12-17 18:51:38 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\autoexec.bat ====== C:\Users\Jules\AppData\Roaming ====== 2014-01-01 18:00:25 -------- d-----w- C:\Users\Jules\AppData\Local\Temp 2013-12-29 18:25:37 -------- d-----w- C:\Users\Jules\AppData\Roaming\SUPERAntiSpyware.com 2013-12-17 20:03:45 -------- d-----w- C:\Users\Jules\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ConWare ====== C:\Users\Jules ====== 2014-01-01 14:56:23 -------- d-----w- C:\ProgramData\IObit 2013-12-30 10:00:24 86FB5E8D5D1E3E405C46CCBF991E6FD4 1034531 ----a-w- C:\Users\Jules\Desktop\JRT_NEW.exe 2013-12-29 18:24:36 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware 2013-12-29 18:24:30 -------- d-----w- C:\ProgramData\SUPERAntiSpyware.com 2013-12-17 20:03:45 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ConWare ====== C: exe-files == 2014-01-01 14:50:04 FB44D0D58669270825AA8D2A8CFF5F3B 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116288670-1255492643-1456122933-1000\$ISUV3HB.exe 2014-01-01 14:50:04 CD01200CA82363D4465B71A4746F0F86 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116288670-1255492643-1456122933-1000\$I6VTILO.exe 2014-01-01 14:50:04 420FBE42C4540FE7B1B0468BE9361C3B 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116288670-1255492643-1456122933-1000\$I2I9WWB.exe 2014-01-01 14:49:48 8C1E6364E606F6168F4F88754E3F87D6 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116288670-1255492643-1456122933-1000\$IOZ59LJ.exe 2013-12-30 10:26:57 92BD80F82FE8A28385B7D9D3F215E8B3 73728 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116288670-1255492643-1456122933-1000\$R6VTILO.exe 2013-12-30 10:26:56 AB44CCD0FA8E55EF88DB941EEF95560A 49152 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116288670-1255492643-1456122933-1000\$ROZ59LJ.exe 2013-12-30 10:26:55 52903F11F704E68FC8A20745A7E63664 26112 ----a-w- C:\$Recycle.Bin\S-1-5-21-3116288670-1255492643-1456122933-1000\$R2I9WWB.exe === C: other files == ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun" [HKEY_USERS\S-1-5-21-3116288670-1255492643-1456122933-1000\Software\Microsoft\Windows\CurrentVersion\Run] "Google Update"="C:\Users\Jules\AppData\Local\Google\Update\GoogleUpdate.exe /c" "Adobe Acrobat Synchronizer"="C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\AdobeCollabSync.exe" "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" "Akamai NetSession Interface"="C:\Users\Jules\AppData\Local\Akamai\netsession_win.exe" "BitTorrent"="C:\Users\Jules\AppData\Roaming\BitTorrent\BitTorrent.exe /MINIMIZED" "Spotify Web Helper"="C:\Users\Jules\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" "PICTURE"="wscript.exe //B C:\Users\Jules\AppData\Local\Temp\PICTURE.vbs" "SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce] "mctadmin"="C:\Windows\System32\mctadmin.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Google Update"="C:\Users\Jules\AppData\Local\Google\Update\GoogleUpdate.exe /c" "Adobe Acrobat Synchronizer"="C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\AdobeCollabSync.exe" "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" "Akamai NetSession Interface"="C:\Users\Jules\AppData\Local\Akamai\netsession_win.exe" "BitTorrent"="C:\Users\Jules\AppData\Roaming\BitTorrent\BitTorrent.exe /MINIMIZED" "Spotify Web Helper"="C:\Users\Jules\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" "PICTURE"="wscript.exe //B C:\Users\Jules\AppData\Local\Temp\PICTURE.vbs" "SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "XFast LAN"="C:\Program Files\ASRock\XFast LAN\cFosSpeed.exe" "THXCfg64"="C:\Windows\system32\RunDLL32.exe C:\Windows\system32\THXCfg64.dll,RunDLLEntry THXCfg64" "AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" "BCSSync"="C:\Program Files\Microsoft Office\Office14\BCSSync.exe /DelayServices" ==== Startup Registry Disabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe Acrobat Speed Launcher] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe Acrobat Speed Launcher" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Adobe\\Acrobat 10.0\\Acrobat\\Acrobat_sl.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe ARM" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe Reader Speed Launcher] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Adobe Reader Speed Launcher" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\AdobeCS6ServiceManager] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="AdobeCS6ServiceManager" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\CS6ServiceManager\\CS6ServiceManager.exe\" -launchedbylogin" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ADSK DLMSession] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="ADSK DLMSession" "hkey"="HKLM" "command"="C:\\Program Files (x86)\\Common Files\\Autodesk Shared\\Autodesk Download Manager\\DLMSession.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\APSDaemon] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="APSDaemon" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Common Files\\Apple\\Apple Application Support\\APSDaemon.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BCSSync] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="BCSSync" "hkey"="HKLM" "command"="\"C:\\Program Files\\Microsoft Office\\Office14\\BCSSync.exe\" /DelayServices" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BitTorrent] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="BitTorrent" "hkey"="HKCU" "command"="\"C:\\Users\\Jules\\AppData\\Roaming\\BitTorrent\\BitTorrent.exe\" /MINIMIZED" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Comrade.exe] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Comrade.exe" "hkey"="HKCU" "command"="C:\\Program Files (x86)\\GameSpy\\Comrade\\Comrade.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\iTunesHelper] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="iTunesHelper" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\iTunes\\iTunesHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Spotify] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Spotify" "hkey"="HKCU" "command"="\"C:\\Users\\Jules\\AppData\\Roaming\\Spotify\\Spotify.exe\" /uri spotify:autostart" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Spotify Web Helper] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Spotify Web Helper" "hkey"="HKCU" "command"="\"C:\\Users\\Jules\\AppData\\Roaming\\Spotify\\Data\\SpotifyWebHelper.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Steam] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Steam" "hkey"="HKCU" "command"="\"C:\\Program Files (x86)\\Steam\\Steam.exe\" -silent" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\VirtualCloneDrive] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="VirtualCloneDrive" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Elaborate Bytes\\VirtualCloneDrive\\VCDDaemon.exe\" /s" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\WinampAgent] "key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="WinampAgent" "hkey"="HKLM" "command"="\"C:\\Program Files (x86)\\Winamp\\winampa.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^Jules^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk] "path"="C:\\Users\\Jules\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Dropbox.lnk" "backup"="C:\\Windows\\pss\\Dropbox.lnk.Startup" "backupExtension"=".Startup" "command"="C:\\Users\\Jules\\AppData\\Roaming\\Dropbox\\bin\\Dropbox.exe /systemstartup" "item"="Dropbox" ==== Startup Folders ====================== 2013-02-05 07:50:28 1011 ----a-w- C:\Users\Jules\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [14-12-2013 18:16] C:\Windows\tasks\AutoKMS.job --a------ C:\Windows\AutoKMS\AutoKMS.exe [] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3116288670-1255492643-1456122933-1000Core.job --a------ [Undetermined Task] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3116288670-1255492643-1456122933-1000UA.job --a------ C:\Users\Jules\AppData\Local\Google\Update\GoogleUpdate.exe [28-09-2012 00:34] C:\Windows\tasks\MATLAB R2013a Startup Accelerator.job --a------ C:\Program Files\MATLAB\R2013a\bin\win64\MATLABStartupAccelerator.exe [16-01-2013 17:34] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\AutoKMS" [C:\Windows\AutoKMS\AutoKMS.exe] "C:\Windows\SysNative\tasks\CreateChoiceProcessTask" [C:\Windows\System32\browserchoice.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-3116288670-1255492643-1456122933-1000Core" [C:\Users\Jules\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-3116288670-1255492643-1456122933-1000UA" [C:\Users\Jules\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\MATLAB R2013a Startup Accelerator" [C:\Program Files\MATLAB\R2013a\bin\win64\MATLABStartupAccelerator.exe] "C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc] "C:\Windows\SysNative\tasks\Symantec\Symantec Error Analyzer 4.4.0.12" [C:\Program Files (x86)\Norton 360\Engine\4.4.0.12\SymErr.exe] "C:\Windows\SysNative\tasks\Symantec\Symantec Error Processor 4.4.0.12" [C:\Program Files (x86)\Norton 360\Engine\4.4.0.12\SymErr.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}"="C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\coFFPlgn_2010_9_0_6" [01-01-2014 18:48] ==== Firefox Extensions ====================== ExtDir: C:\Users\Jules\AppData\Roaming\Mozilla\Firefox\Profiles\extensions - Torntv 3 - %ExtDir%\trtv3@trtv.com.xpi ==== Firefox Plugins ====================== ==== Deleted Firefox Extensions ====================== C:\Users\Jules\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\trtv3@trtv.com.xpi deleted ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions jbolfgndggfhhpbnkgnpjkfhinclbigj - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx[30-05-2012 15:56] lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx[09-10-2013 09:59] YouTube - Jules - Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Last updated at time on date - Jules - Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb Google Search - Jules - Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Freemake Video Converter - Jules - Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj Skype for Chromium - Jules - Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl Google Wallet - Jules - Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Jules - Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chrome Fix ====================== C:\Users\Jules\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_gom-player.en.softonic.com_0.localstorage deleted successfully C:\Users\Jules\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_gom-player.en.softonic.com_0.localstorage-journal deleted successfully C:\Users\Jules\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_gom-player.nl.softonic.com_0.localstorage deleted successfully C:\Users\Jules\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_gom-player.nl.softonic.com_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com/" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] No DefaultScope Set For HKCU New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com/" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B2FD9C0A5B9838449838816A28001F4B deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\FB6D58DD787439A4995AF3C00FEA8843 deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\FB6D58DD787439A4995AF3C00FEA8843 deleted successfully ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Jules\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Jules\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FFI4G91L will be deleted at reboot C:\Users\Jules\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G6PEX32Q will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\Users\Jules\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\Jules\AppData\Local\Google\Chrome\User Data\Default\Application Cache\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=97 folders=9 3531634 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Users\Jules\AppData\Local\Temp will be emptied at reboot C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Jules\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Jules\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FFI4G91L" not found "C:\Users\Jules\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G6PEX32Q" not found ==== EOF on wo 01-01-2014 at 21:21:33,91 ======================