Zoek.exe v5.0.0.1 Updated 31-December-2015 Tool run by Peter on zo 27-03-2016 at 15:08:51,88. Microsoft Windows 10 Home 10.0.10586 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Peter\Desktop\zoek.exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 27-3-2016 15:15:20 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\PROGRA~2\COMMON~1\Symantec Shared deleted successfully C:\PROGRA~3\ALM deleted successfully C:\PROGRA~3\Comms deleted successfully C:\PROGRA~3\PCSettings deleted successfully C:\PROGRA~3\SoftwareDistribution deleted successfully C:\Users\Peter\AppData\Local\ActiveSync deleted successfully C:\Users\Peter\AppData\Local\EmieBrowserModeList deleted successfully C:\Users\Peter\AppData\Local\EmieSiteList deleted successfully C:\Users\Peter\AppData\Local\EmieUserList deleted successfully C:\Users\Peter\AppData\Local\NetworkTiles deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3764435909-1044350766-2980509083-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} deleted successfully HKEY_USERS\S-1-5-21-3764435909-1044350766-2980509083-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{F96A0F39-54D5-479D-B006-25D2E7F217FE} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{F96A0F39-54D5-479D-B006-25D2E7F217FE} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{F96A0F39-54D5-479D-B006-25D2E7F217FE} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] ""=- ==== Deleting Files \ Folders ====================== C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\3crox482.default\extensions\{6AC85730-7D0F-4de0-B3FA-21142DD85326} deleted C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\3crox482.default\extensions\{a7c6cf7f-112c-4500-a7ea-39801a327e5f} deleted C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\3crox482.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360} deleted C:\PROGRA~2\Connected Music powered by Universal Music Group deleted C:\PROGRA~2\SamsungPrinterLiveUpdateInstaller deleted C:\install.exe deleted C:\PROGRA~3\CyberlinkOutput.txt deleted C:\PROGRA~3\{18165758-115C-4DC0-9EC2-FF89F725767F} deleted C:\PROGRA~3\Package Cache deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted C:\Users\Peter\AppData\LocalLow\Unity deleted C:\WINDOWS\Syswow64\InstallUtil.InstallLog deleted "C:\WINDOWS\Installer\6f6d86c.msi" deleted ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== ====== C:\Users\Peter\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== ====== C:\WINDOWS\Sysnative\drivers ===== 2016-03-09 19:34:33 F45665E77D11F3C1552EDBEAD1559DC8 1997152 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgkrnl.sys 2016-03-09 19:34:27 33190E86460C4FF7382848187463DC28 576864 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgmms2.sys 2016-03-09 19:34:19 64D4F5DE44B64B8284BADE5819B5195A 394080 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgmms1.sys 2016-03-09 19:34:12 8949F77132A4F8F3BA17C6727099F002 127840 ----a-w- C:\WINDOWS\Sysnative\drivers\USBSTOR.SYS 2016-03-09 19:34:06 0D279373091AA1BBEEE958AAF02B5EDF 84992 ----a-w- C:\WINDOWS\Sysnative\drivers\BTHUSB.SYS 2016-03-09 19:34:05 CEFF59649E90987D263D96078724A54A 954368 ----a-w- C:\WINDOWS\Sysnative\drivers\bthport.sys 2016-03-09 19:34:02 36417FC4F11C31C880CB428037DEDF3F 112640 ----a-w- C:\WINDOWS\Sysnative\drivers\bthenum.sys 2016-03-01 22:11:03 58BFFEF692A47FCE3FAAEDBC8F3DCBBB 2152288 ----a-w- C:\WINDOWS\Sysnative\drivers\ntfs.sys 2016-03-01 22:10:36 70165A0A2653FB8AFDE3D85000727F29 277856 ----a-w- C:\WINDOWS\Sysnative\drivers\sdbus.sys 2016-03-01 22:10:33 A4411C522D41707D5BCA817A5BB9E30B 114688 ----a-w- C:\WINDOWS\Sysnative\drivers\bridge.sys 2016-03-01 22:10:31 F871CE85AF64D81A9CB6C361CF797144 185184 ----a-w- C:\WINDOWS\Sysnative\drivers\dumpsd.sys 2016-03-01 22:10:30 DBACD4E4FE191D0CE7C624ACA389535E 29696 ----a-w- C:\WINDOWS\Sysnative\drivers\xinputhid.sys 2016-03-01 22:10:30 74727B8BF0227820660A79450F2D94EF 176640 ----a-w- C:\WINDOWS\Sysnative\drivers\rfcomm.sys 2016-03-01 22:10:29 0B3B0C1D86050355676640488FA897D3 430944 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb.sys 2016-03-01 22:10:28 F279536122B83FD0D8E158AA753E1B7C 238592 ----a-w- C:\WINDOWS\Sysnative\drivers\xboxgip.sys 2016-03-01 22:10:28 469441BAE3FF8A16826FC62C51EF5E18 563552 ----a-w- C:\WINDOWS\Sysnative\drivers\acpi.sys 2016-03-01 22:10:27 EDDB0D726DBECDFC1DBCC6DB464E5A13 146272 ----a-w- C:\WINDOWS\Sysnative\drivers\appid.sys 2016-03-01 22:10:24 B7E1CAA9429E4C3E7E01CB35B97E1536 534368 ----a-w- C:\WINDOWS\Sysnative\drivers\USBHUB3.SYS 2016-03-01 22:10:21 E3C82823B22463BC38AA4F8ADA852624 104960 ----a-w- C:\WINDOWS\Sysnative\drivers\rasl2tp.sys 2016-03-01 22:10:21 1A490555FD330CA2764D89191177C867 285696 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb10.sys ====== C:\WINDOWS\Tasks ====== 2016-03-22 09:03:21 CD47BEBA9EEAF4D05BBAFFA3F9AA8B0D 3236 ----a-w- C:\WINDOWS\Sysnative\Tasks\HPCeeScheduleForPeter 2016-03-14 17:02:14 A64BA72289526243685D250B440D9531 344 ----a-w- C:\WINDOWS\Tasks\HPCeeScheduleForPeter.job 2016-03-04 18:51:26 297BC34A57999A09BF6CD7FE2820915A 3950 ----a-w- C:\WINDOWS\Sysnative\Tasks\Opera scheduled Autoupdate 1457117468 ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2016-03-27 13:10:42 -------- d-----w- C:\Program Files\Greenshot 2016-03-07 18:06:59 -------- d-----w- C:\Program Files\trend micro ======= C:\PROGRA~2 ===== 2016-03-04 18:50:49 -------- d---a-w- C:\PROGRA~2\Opera ======= C: ===== ====== C:\Users\Peter\AppData\Roaming ====== 2016-03-27 13:11:13 -------- d-----w- C:\Users\Peter\AppData\Local\Greenshot 2016-03-21 12:28:45 -------- d-----w- C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2016-03-04 18:51:29 -------- d-----w- C:\Users\Peter\AppData\Local\Opera Software 2016-03-04 08:42:02 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CrashDumps ====== C:\Users\Peter ====== 2016-03-27 13:10:43 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Greenshot 2016-03-27 13:09:42 4C60C09FD6FB7E949694A579927B245F 1374661 ----a-w- C:\Users\Peter\Downloads\Greenshot-INSTALLER-1.2.8.12-RELEASE.exe 2016-03-27 12:32:57 091032DC5D5A67A626E1435A6D1E8427 658771 ----a-w- C:\Users\Peter\Downloads\MWSnap300.exe 2016-03-18 20:23:38 3434351B95C846DD363D8E4DFE495707 6516656 ----a-w- C:\Users\Peter\Downloads\FileZilla_3.16.1_win64-setup.exe 2016-03-14 20:09:54 5C036907C6BE43A52C677A9D5101E490 21572120 ----a-w- C:\Users\Peter\Downloads\lastpass_x64.exe ====== C: exe-files == === C: other files == ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-21-3764435909-1044350766-2980509083-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Uploader"="C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe" "HP Officejet Pro 8610 (NET)"="C:\Program Files\HP\HP Officejet Pro 8610\Bin\ScanToPCActivationApp.exe -deviceID CN471C30YV:NW -scfn HP Officejet Pro 8610 (NET) -AutoStart 1" "LaCie Ethernet Agent Startup"="C:\Program Files\LaCie\Network Assistant\LaCie Network Assistant.exe silent" [HKEY_USERS\S-1-5-21-3764435909-1044350766-2980509083-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] "Uninstall C:\Users\Peter\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\Peter\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SwitchBoard"="C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" "DBAgent"="C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\DBAgent.exe /WinStart" "F-Secure Hoster (45123)"="C:\Program Files (x86)\Internetbeveiliging\fshoster32.exe -app -hosterid:1" "GDFirewallTray"="C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe" "G Data ASM"="C:\Program Files (x86)\G DATA\InternetSecurity\DelayLoader\AutorunDelayLoader.exe /autostart" "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Uploader"="C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Seagate.Dashboard.Uploader.exe" "HP Officejet Pro 8610 (NET)"="C:\Program Files\HP\HP Officejet Pro 8610\Bin\ScanToPCActivationApp.exe -deviceID CN471C30YV:NW -scfn HP Officejet Pro 8610 (NET) -AutoStart 1" "LaCie Ethernet Agent Startup"="C:\Program Files\LaCie\Network Assistant\LaCie Network Assistant.exe silent" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Uninstall C:\Users\Peter\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\Peter\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" "Greenshot"="C:\Program Files\Greenshot\Greenshot.exe" "SysTrayApp"="C:\Program Files\IDT\WDM\sttray64.exe" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a-------- C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [24-03-2016 16:18] C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-3764435909-1044350766-2980509083-1002Core.job --a-------- [Undetermined Task] C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-3764435909-1044350766-2980509083-1002UA.job --a-------- C:\Users\Peter\AppData\Local\Dropbox\Update\DropboxUpdate.exe [16-06-2015 19:59] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- [Undetermined Task] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [30-08-2015 22:04] C:\WINDOWS\tasks\HPCeeScheduleForPeter.job --a-------- [Undetermined Task] C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job --a-------- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [07-10-2014 20:09] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\WINDOWS\SysNative\tasks\Adobe Flash Player Updater" [C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\WINDOWS\SysNative\tasks\CLMLSvc_P2G8" [C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe] "C:\WINDOWS\SysNative\tasks\DropboxUpdateTaskUserS-1-5-21-3764435909-1044350766-2980509083-1002Core" [C:\Users\Peter\AppData\Local\Dropbox\Update\DropboxUpdate.exe] "C:\WINDOWS\SysNative\tasks\DropboxUpdateTaskUserS-1-5-21-3764435909-1044350766-2980509083-1002UA" [C:\Users\Peter\AppData\Local\Dropbox\Update\DropboxUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\HP AR Program Upload - 10bdb384f0444ed3988b8bc512a7c043a7a49ed4de8542759f2ac0a1fafc0e85" [C:\Program Files\HP\HP Officejet Pro 8610\bin\HPRewards.exe] "C:\WINDOWS\SysNative\tasks\HPCeeScheduleForPeter" [C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe] "C:\WINDOWS\SysNative\tasks\HPCustParticipation HP Officejet Pro 8610" ["C:\Program Files\HP\HP Officejet Pro 8610\Bin\HPCustPartic.exe"] "C:\WINDOWS\SysNative\tasks\MirageAgent" [C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe] "C:\WINDOWS\SysNative\tasks\Opera scheduled Autoupdate 1457117468" [C:\Program Files (x86)\Opera\launcher.exe] "C:\WINDOWS\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA)" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Active Health Launcher" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report" [C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater" [C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis" [C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe] ==== Firefox Start and Search pages ====================== ProfilePath: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\3crox482.default user_pref("browser.startup.homepage", "http://www.google.nl/"); ==== Firefox Extensions ====================== ProfilePath: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\3crox482.default - Adblock Plus Pop-up Addon - %ProfilePath%\extensions\adblockpopups@jessehakanen.net.xpi - Firebug - %ProfilePath%\extensions\firebug@software.joehewitt.com.xpi - Web Developer - %ProfilePath%\extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}.xpi ProfilePath: C:\Users\Peter\AppData\Roaming\Thunderbird\Profiles\ljdj10x5.default - Lightning - %ProfilePath%\extensions\{e2fda1a4-762b-4020-b5ad-a41df1933103} - gContactSync - %ProfilePath%\extensions\gContactSync@pirules.net.xpi AppDir: C:\Program Files (x86)\Mozilla Firefox - Undetermined - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi ==== Firefox Plugins ====================== Profilepath: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\3crox482.default 18CF51689186AEB9D1D149AEB0E92D03 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL - Microsoft Office 2013 88C9284589B5AEEF93AAF8016BA1290D - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll - Microsoft Office 2013 DAD55CEF682EAE6FA7B4C9487563A496 - C:\windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll - Shockwave for Director / Shockwave for Director 7C67580DFE143EF19E7418B0F054B5F6 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_197.dll - Shockwave Flash ==== Chromium Look ====================== Google Chrome Version: 46.0.2490.86 HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions fnefekibahpibgnllfjpckodgobkpije - C:\Users\Peter\AppData\Local\ObviousIdea\extension.crx[07-05-2013 13:09] Google Slides - Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Firebug Lite for Google Chrome™ - Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmagokdooijbeehmkpknfglimnifench selector is not a valid CSS selector - Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb Google Search - Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Clock for Google Chrome - Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\emakkfldeggiinnfcdjkakdfcppbfhdg Google Sheets - Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap ObviousIdea - Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnefekibahpibgnllfjpckodgobkpije Google Docs Offline - Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Chrome Web Store Payments - Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Fix ====================== C:\Users\Peter\AppData\Local\ObviousIdea\extension.crx deleted successfully C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnefekibahpibgnllfjpckodgobkpije deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.nl/" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.nl/" ==== All HKLM and HKCU SearchScopes ====================== HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKLM\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} - http://rover.ebay.com/rover/1/1346-154357-12126-2/4?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS HKLM\Wow6432Node\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} - http://rover.ebay.com/rover/1/1346-154357-12126-2/4?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02 HKCU\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} - http://rover.ebay.com/rover/1/1346-154357-12126-2/4?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} ==== Reset Google Chrome ====================== C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-3764435909-1044350766-2980509083-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6D53EC84-6AAE-4787-AEEE-F4628F01010C} deleted successfully HKEY_USERS\S-1-5-21-3764435909-1044350766-2980509083-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{6D53EC84-6AAE-4787-AEEE-F4628F01010C} deleted successfully HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{6D53EC84-6AAE-4787-AEEE-F4628F01010C} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\69A9FA1138D6B3C4D8BC61AEA253E8F3 deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\fnefekibahpibgnllfjpckodgobkpije deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{11AF9A96-6D83-4C3B-8DCB-16EA2A358E3F} deleted successfully HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\69A9FA1138D6B3C4D8BC61AEA253E8F3 deleted successfully ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Peter\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Peter\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\Peter\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\Peter\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== C:\Users\Peter\AppData\Local\Mozilla\Firefox\Profiles\3crox482.default\cache2 emptied successfully ==== Empty Chrome Cache ====================== C:\Users\Peter\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== No Flash Cache Found ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1014 folders=224 151659123 bytes) ==== Empty Temp Folders ====================== C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\Peter\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on zo 27-03-2016 at 23:52:34,13 ======================