Zoek.exe v5.0.0.0 Updated 07-October-2014 Tool run by Rebecca on do 09/10/2014 at 19:21:53,09. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Rebecca\Downloads\zoek.exe [Scan all users] [Script inserted] ==== Older Logs ====================== C:\zoek-results2014-10-07-221800.log 37197 bytes ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== FireFox Fix ====================== ProfilePath: C:\Users\Rebecca\AppData\Roaming\Mozilla\Firefox\Profiles\auwcu8lg.default ---- Lines {cc6cc772-f121-49e0-b1f0-c26583cb0c5e} removed from prefs.js ---- user_pref("{cc6cc772-f121-49e0-b1f0-c26583cb0c5e}.config_sm", "1410770414699"); user_pref("{cc6cc772-f121-49e0-b1f0-c26583cb0c5e}.daysPassed", "{\"t2d\":true,\"t7d\":true}"); user_pref("{cc6cc772-f121-49e0-b1f0-c26583cb0c5e}.installtime", "1410114159.058"); user_pref("{cc6cc772-f121-49e0-b1f0-c26583cb0c5e}.isFirstRun", "false"); user_pref("{cc6cc772-f121-49e0-b1f0-c26583cb0c5e}.moEnabled", true); user_pref("{cc6cc772-f121-49e0-b1f0-c26583cb0c5e}.moLastC", "1410804325971"); user_pref("{cc6cc772-f121-49e0-b1f0-c26583cb0c5e}.remEv", "1410804315553"); user_pref("{cc6cc772-f121-49e0-b1f0-c26583cb0c5e}.server", "https://s99992.webovernet.com"); user_pref("{cc6cc772-f121-49e0-b1f0-c26583cb0c5e}.src", "99992"); user_pref("{cc6cc772-f121-49e0-b1f0-c26583cb0c5e}.toolbarButtonInstalled", true); user_pref("{cc6cc772-f121-49e0-b1f0-c26583cb0c5e}.user_id", "85173960306297"); ---- FireFox user.js and prefs.js backups ---- user_20140910_1937_.backup prefs_20140910_1937_.backup ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "PC Speed Maximizer"=- ==== Deleting Files \ Folders ====================== C:\Program Files (x86)\PC Speed Maximizer not found C:\Windows\SysNative\tasks\0 deleted C:\Windows\SysNative\tasks\4858 deleted ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "{F04D2D30-776C-4d02-8627-8E4385ECA58D}"="C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.5.0.67\coFFPlgn" [09/10/2014 19:15] ==== Firefox Extensions ====================== ProfilePath: C:\Users\Rebecca\AppData\Roaming\Mozilla\Firefox\Profiles\auwcu8lg.default - Adblock Plus Pop-up Addon - %ProfilePath%\extensions\adblockpopups@jessehakanen.net.xpi AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Rebecca\AppData\Roaming\Mozilla\Firefox\Profiles\auwcu8lg.default DFC9460CC37E5C414DC4680B10C19E7A - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll - Shockwave Flash 3CD19649B2C3023D65E67C056457A2BC - C:\Users\Rebecca\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll - Facebook Video Calling Plugin FB5621842FDABF9F8359775573498FBC - C:\Users\Rebecca\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll - Google Update ==== Chromium Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions nppllibpnmahfaklnpggkibhkapjkeob - C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.6.15\Exts\Chrome.crx[31/07/2014 07:47] Norton Security Toolbar - Rebecca\AppData\Local\Google\Chrome\User Data\Default\Extensions\nppllibpnmahfaklnpggkibhkapjkeob ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.be" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.be" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7" ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Rebecca\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Rebecca\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\Users\Rebecca\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=355 folders=54 30812686 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Rebecca\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Rebecca\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on do 09/10/2014 at 20:05:48,75 ======================