Zoek.exe v5.0.0.0 Updated 04-May-2015 Tool run by Luc on za 16/05/2015 at 21:58:51,14. Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Luc\Desktop\zoek.exe [Scan all users] [Script inserted] ==== Older Logs ====================== C:\zoek-results2015-05-16-161748.log 45399 bytes ==== Empty Folders Check ====================== C:\PROGRA~2\AGEIA Technologies deleted successfully C:\PROGRA~2\COMMON~1\SWF Studio deleted successfully C:\Program Files\log deleted successfully C:\Users\Luc\AppData\Roaming\TP deleted successfully C:\Users\Luc\AppData\Local\photoOptimizeHistoryDataBase deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-4178574797-3882295203-3221447600-1002\Software\Microsoft\Internet Explorer\SearchScopes\{8CEE8125-D348-4E72-B4D4-E66AECA5835B} deleted successfully HKEY_USERS\S-1-5-21-4178574797-3882295203-3221447600-1002\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Deleting Files \ Folders ====================== C:\PROGRA~2\AGEIA Technologies not found C:\Users\Luc\AppData\Local\ilividbandoomoviestoolbar deleted C:\Users\Luc\AppData\Locallow\ilividbandoomoviestoolbar deleted C:\PROGRA~3\APN deleted C:\PROGRA~3\Partner deleted C:\Windows\SysNative\config\systemprofile\Searches deleted C:\Windows\Syswow64\sho2114.tmp deleted C:\Windows\Syswow64\sho22A7.tmp deleted C:\Windows\Syswow64\sho4DDE.tmp deleted C:\Windows\Syswow64\sho9B14.tmp deleted C:\Windows\Syswow64\shoA032.tmp deleted C:\Windows\Syswow64\shoA33D.tmp deleted C:\Windows\Syswow64\shoA83E.tmp deleted C:\Windows\Syswow64\shoAA08.tmp deleted C:\Windows\Syswow64\shoBC0B.tmp deleted C:\Windows\Syswow64\shoDA05.tmp deleted C:\Windows\Syswow64\shoE1D2.tmp deleted C:\Windows\Syswow64\shoE5D9.tmp deleted C:\Windows\Syswow64\shoF677.tmp deleted C:\Windows\Syswow64\shoF769.tmp deleted "C:\Users\Luc\AppData\Local\Temp\MoviesAppHelper.DLL" deleted ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "online_banking@kaspersky.com"="C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com" [17/02/2015 11:42] ==== Chromium Look ====================== Google Chrome Version: 42.0.2311.152 HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions aaaaaigjndjblmpeckabiffcpogflfgl - C:\Users\Luc\AppData\Local\ilividbandoomoviestoolbar\GC\toolbar.crx[] dchlnpcodkpfdpacogkljefecpegganj - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\urladvisor.crx[16/05/2013 19:41] hakdifolhalapjijoafobooafbilfakh - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\online_banking_chrome.crx[16/05/2013 19:41] hghkgaeecgjhjkannahfamoehjmkjail - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\content_blocker_chrome.crx[16/05/2013 19:41] jagncdcchgajhfhijbbhecadmaiegcmh - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\virtkbd.crx[17/02/2015 11:42] lpoimibckejjdjcfbdnajaicnklhfplh - https://chrome.google.com/webstore/detail/lpoimibckejjdjcfbdnajaicnklhfplh[] pjldcfjmnllhmgjclecdnfampinooman - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\ab.crx[16/05/2013 19:41] ==== Chromium Startpages ====================== C:\Users\Luc\AppData\Local\Google\Chrome\User Data\Default\Preferences "homepage": "http://www.google.com/ig/redirectdomain?brand=MDNE&bmod=MDNE", "homepage": "http://www.google.com/ig/redirectdomain?brand=MDNE&bmod=MDNE", "urls_to_restore_on_startup": [ "http://www.google.com/ig/redirectdomain?brand=MDNE&bmod=MDNE" ] "urls_to_restore_on_startup": [ "http://www.google.com/ig/redirectdomain?brand=MDNE&bmod=MDNE" ] ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{2EBBDAAB-9631-4324-BF60-074ABFA9C129}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {2EBBDAAB-9631-4324-BF60-074ABFA9C129} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7MDNE_enDE393" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7" ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\aaaaaigjndjblmpeckabiffcpogflfgl deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ilividbandoomoviestoolbarCR deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ilividbandoomoviestoolbarIE deleted successfully ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Luc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Luc\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Luc\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=518 folders=41 7145595 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Luc\AppData\Local\Temp will be emptied at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Luc\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on za 16/05/2015 at 22:12:26,49 ======================