Hello,
Thanks for such a quick reply.
I did as instructed, and here's the output. I couldn't find the file on the computer, so I'm going to have to copy and paste.
------ zoek-results.txt
Zoek.exe v5.0.0.0 Updated 28-March-2015
Tool run by Carol on Sat 03/28/2015 at 12:33:50.08.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Carol\Downloads\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
3/28/2015 12:38:37 PM Zoek.exe System Restore Point Created Successfully.
==== Empty Folders Check ======================
C:\PROGRA~2\MSXML 4.0 deleted successfully
C:\PROGRA~2\RingorangDesktop deleted successfully
C:\Program Files\McAfee deleted successfully
C:\PROGRA~3\Babylon deleted successfully
C:\Users\Carol\AppData\Roaming\Windows Live Writer deleted successfully
C:\Users\Carol\AppData\Local\HockeyCrashes deleted successfully
C:\Users\Carol\AppData\Local\Intel Wireless Display deleted successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Internet Explorer\SearchScopes\{283C79B0-0914-4A54-BAEE-54B821EA3A71} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Internet Explorer\SearchScopes\{3FAACE1F-B01C-4090-8802-2ACE62587432} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0A900DF-9611-4446-86BD-4B1D47E7DB2A} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4E39681-15F8-4fda-B8A3-B5C98378F2F3} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\radiorage_4jservice deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\radiorage_4jservice deleted successfully
==== FireFox Fix ======================
ProfilePath: C:\Users\Carol\AppData\Roaming\Mozilla\Firefox\Profiles\fzxznffv.default
---- Lines BabylonToolbar removed from prefs.js ----
user_pref("extensions.BabylonToolbar_i.newTab", true);
---- Lines delta removed from prefs.js ----
user_pref("extensions.delta.admin", false);
user_pref("extensions.delta.aflt", "babsst");
user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
user_pref("extensions.delta.autoRvrt", "false");
user_pref("extensions.delta.dfltLng", "en");
user_pref("extensions.delta.excTlbr", false);
user_pref("extensions.delta.id", "b845716800000000000000ffd5aeb720");
user_pref("extensions.delta.instlDay", "15777");
user_pref("extensions.delta.instlRef", "sst");
user_pref("extensions.delta.newTab", false);
user_pref("extensions.delta.prdct", "delta");
user_pref("extensions.delta.prtnrId", "delta");
user_pref("extensions.delta.rvrt", "false");
user_pref("extensions.delta.smplGrp", "none");
user_pref("extensions.delta.tlbrId", "base");
user_pref("extensions.delta.tlbrSrchUrl", "");
user_pref("extensions.delta.vrsn", "1.8.10.0");
user_pref("extensions.delta.vrsni", "1.8.10.0");
user_pref("extensions.delta.vrsnTs", "1.8.10.023:42:51");
---- Lines delta removed from user.js ----
user_pref("extensions.delta.tlbrSrchUrl", "");
user_pref("extensions.delta.id", "b845716800000000000000ffd5aeb720");
user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
user_pref("extensions.delta.instlDay", "15777");
user_pref("extensions.delta.vrsn", "1.8.10.0");
user_pref("extensions.delta.vrsni", "1.8.10.0");
user_pref("extensions.delta.vrsnTs", "1.8.10.023:42:51");
user_pref("extensions.delta.prtnrId", "delta");
user_pref("extensions.delta.prdct", "delta");
user_pref("extensions.delta.aflt", "babsst");
user_pref("extensions.delta.smplGrp", "none");
user_pref("extensions.delta.tlbrId", "base");
user_pref("extensions.delta.instlRef", "sst");
user_pref("extensions.delta.dfltLng", "en");
user_pref("extensions.delta.excTlbr", false);
user_pref("extensions.delta.admin", false);
user_pref("extensions.delta.autoRvrt", "false");
user_pref("extensions.delta.rvrt", "false");
user_pref("extensions.delta.newTab", false);
---- Lines mindspark removed from prefs.js ----
user_pref("extensions.toolbar.mindspark._4jMembers_.lastActivePing", "1385863263852");
user_pref("extensions.toolbar.mindspark.lastInstalled", "
radiorage@mindspark.com");
---- Lines y2layers removed from prefs.js ----
user_pref("extentions.y2layers.defaultEnableAppsList", "Buzzdock,Buzzdock,");
user_pref("extentions.y2layers.installId", "2411d48d-b239-4ca3-843c-b8f6bc3535b3");
---- Lines gophoto.it removed from prefs.js ----
user_pref("extensions.xpiState", "{\"app-profile\":{\"
firefoxdav@icloud.com\":{\"d\":\"C:\\\\Users\\\\Carol\\\\AppData\\\\Roaming\\\\Mozilla\\\\Firefo
---- FireFox user.js and prefs.js backups ----
user_20150328_0103_.backup
prefs_20150328_0103_.backup
==== Registry Fix Code ======================
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"bProtector Start Page"=-
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"bProtectorDefaultScope"=-
==== Batch Command(s) Run By Tool======================
==== Deleting Files \ Folders ======================
C:\PROGRA~2\RingorangDesktop not found
C:\PROGRA~2\Yontoo deleted
C:\Users\Carol\AppData\Roaming\Delta deleted
C:\PROGRA~2\Delta deleted
C:\PROGRA~2\Movie2KDownloader.com deleted
C:\PROGRA~2\Inbox Toolbar deleted
C:\PROGRA~2\BrowserAppsPlus2.1 deleted
C:\PROGRA~2\hdvidcodec.com deleted
C:\PROGRA~2\gmsd_us_21 deleted
C:\PROGRA~2\MyPC Backup deleted
C:\PROGRA~2\PepperZip deleted
C:\PROGRA~2\FastPlayer deleted
C:\PROGRA~2\Gophoto.it deleted
C:\PROGRA~2\globalUpdate deleted
C:\extensions.sqlite deleted
C:\Users\Carol\AppData\Roaming\BabSolution deleted
C:\Users\Carol\AppData\Roaming\Babylon deleted
C:\Users\Carol\AppData\Roaming\Optimizer Pro deleted
C:\Users\Carol\MFC42.DLL deleted
C:\Users\Carol\MFC42U.DLL deleted
C:\Users\Carol\MSVCRT.DLL deleted
C:\Users\Carol\OLEPRO32.DLL deleted
C:\PROGRA~3\BrowserProtect deleted
C:\PROGRA~3\AbsoluteNotifier.txt deleted
C:\PROGRA~3\Tarma Installer deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\Carol\AppData\Local\onlysearch deleted
C:\Users\Carol\AppData\Local\gmsd_us_21 deleted
C:\Users\Carol\AppData\Local\CD6293CA-8EE7-CA47-8E0B-F7DE7EB0CB2B deleted
C:\Users\Carol\AppData\Local\fastplayer deleted
C:\Users\Carol\AppData\Local\globalUpdate deleted
C:\Users\Carol\AppData\Local\StormWatch deleted
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\bProtectorPreferences deleted
C:\Users\Carol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PepperZip deleted
C:\Users\Carol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\hdvidcodec.com deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk deleted
C:\Users\Carol\AppData\LocalLow\Inbox Toolbar deleted
C:\windows\SysNative\Tasks\BrowserProtect deleted
C:\windows\SysNative\Tasks\EPUpdater deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\windows\SysNative\GroupPolicy\ADM deleted
C:\Users\Carol\Documents\Optimizer Pro deleted
C:\Users\Carol\AppData\Roaming\Mozilla\Firefox\Profiles\fzxznffv.default\searchplugins\BrowserProtect.xml deleted
C:\Users\Carol\AppData\Roaming\Mozilla\Firefox\Profiles\fzxznffv.default\searchplugins\babylon.xml deleted
C:\Users\Carol\AppData\Roaming\Mozilla\Firefox\Profiles\fzxznffv.default\bProtector_extensions.sqlite deleted
C:\Users\Carol\AppData\Roaming\Mozilla\Firefox\Profiles\fzxznffv.default\bprotector_prefs.js deleted
C:\Users\Carol\AppData\Roaming\Mozilla\Firefox\Profiles\fzxznffv.default\Inbox Toolbar deleted
C:\Users\Carol\AppData\Roaming\Mozilla\Firefox\Profiles\fzxznffv.default\jetpack deleted
C:\Users\Carol\AppData\Roaming\LoJackSetup.exe deleted
C:\Users\Carol\MSPAINT.EXE deleted
C:\Users\Carol\AppData\Roaming\Mozilla\Firefox\Profiles\fzxznffv.default\extensions\
firefoxdav@icloud.com deleted
"C:\Windows\Installer\110b3085.msi" deleted
"C:\Users\Carol\AppData\Roaming\ARHWX" deleted
"C:\Users\Carol\AppData\Roaming\EF6EE8" deleted
"C:\Users\Carol\AppData\Roaming\UNTVY" deleted
"C:\Users\Carol\AppData\Roaming\Mozilla\Firefox\Profiles\fzxznffv.default\searchplugins\delta.xml" deleted
"C:\Users\Carol\AppData\Roaming\Mozilla\Firefox\Profiles\fzxznffv.default\searchplugins\delta.xml" deleted
"C:\Users\Carol\AppData\Roaming\Mozilla\Firefox\Profiles\fzxznffv.default\searchplugins\delta.xml" deleted
"C:\Users\Carol\AppData\Roaming\Mozilla\Firefox\Profiles\fzxznffv.default\searchplugins\delta.xml" deleted
"C:\Users\Carol\AppData\Roaming\Mozilla\Firefox\Profiles\fzxznffv.default\extensions\
gophoto@gophoto.it.xpi" deleted
"C:\PROGRA~2\RadioRage_4j\bar\1.bin\4jbrmon.exe" deleted
"C:\PROGRA~2\RadioRage_4j\bar\1.bin\4jbrstub.dll" deleted
"C:\PROGRA~2\RadioRage_4j\bar\1.bin\AppIntegrator64.exe" deleted
"C:\PROGRA~2\RadioRage_4j\bar\1.bin\AppIntegratorStub64.dll" deleted
"C:\PROGRA~2\RadioRage_4j\bar\1.bin\Hpg64.dll" deleted
"C:\PROGRA~2\RadioRage_4j\bar\1.bin\T8RES.DLL" deleted
"C:\PROGRA~2\RadioRage_4j" not deleted
"C:\PROGRA~2\RadioRage_4j\bar" not deleted
"C:\PROGRA~2\RadioRage_4j\bar\1.bin" not deleted
==== Firefox Start and Search pages ======================
ProfilePath: C:\Users\Carol\AppData\Roaming\Mozilla\Firefox\Profiles\fzxznffv.default
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.defaultenginename.US", "Google");
user_pref("browser.search.selectedEngine", "Secure Search");
user_pref("keyword.URL", "
https://search.yahoo.com/search?fr=mcafee&type=B111US0D20120709&p=");
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"
e-webprint@epson.com"="C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on" [03/25/2015 09:58 PM]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"{e4f94d1e-2f53-401e-8885-681602c0ddd8}"="C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi" [04/04/2014 06:36 AM]
==== Firefox Extensions ======================
ProfilePath: C:\Users\Carol\AppData\Roaming\Mozilla\Firefox\Profiles\fzxznffv.default
- Translate This - %ProfilePath%\extensions\
jid0-k75TfRGfOXPHfEZmJ9cKu5eCgLc@jetpack.xpi
- StumbleUpon - %ProfilePath%\extensions\{AE93811A-5C9A-4d34-8462-F7B864FC4696}.xpi
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Users\Carol\AppData\Roaming\Mozilla\Firefox\Profiles\fzxznffv.default
B66B4D28D7D0C6322FF235C782CD6B76 - C:\Windows\SysWOW64\npdeployJava1.dll - Java Deployment Toolkit 8.0.310.13
43583AB4DFD406F4C188342F41B1F91C - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_134.dll - Shockwave Flash
8F0B95B3AC17DAE9E138E7BBE2429B6C - C:\Users\Carol\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player
98137411B9C632095F919E2CE70B288A - C:\Users\Carol\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll - Google Update
2D684F0DDF782C73847BED9503250991 - C:\Users\Carol\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll - Google Talk Plugin
6C3E34E303DBDCB9F7EC1F7A7F6B1629 - C:\Users\Carol\AppData\Roaming\Mozilla\plugins\npo1d.dll - Google Talk Plugin Video Renderer
15E298B5EC5B89C5994A59863969D9FF - C:\Windows\SysWOW64\npmproxy.dll - Microsoft® Windows® Operating System
==== Chromium Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
blaofbhgbmeikidhlkmjhbkbfohpgekf - C:\Program Files (x86)\Movie2KDownloader.com\Movie2KDownloader10.crx[]
bopakagnckmlgajfccecajhnimjiiedh - No path found[]
eooncjejnppfjjklapaamhcdmjbilmde - C:\Users\Carol\AppData\Roaming\BabSolution\CR\Delta.crx[]
niapdbllcanepiiimjjndipklodoedlc - C:\Users\Carol\AppData\Local\Temp\YontooLayers.crx[]
pfmopbbadnfoelckkcmjjeaaegjpjjbk - C:\Program Files (x86)\Gophoto.it\gophotoit14.crx[]
Angry Birds - Carol\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj
Google Cast - Carol\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd
RadioRage - Carol\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpnknncniillgijdlegfdffoheonaddd
Hangman - Carol\AppData\Local\Google\Chrome\User Data\Default\Extensions\ekpfaaakmnhcembbiennfjiaodandmhg
TweetDeck by Twitter - Carol\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbdpomandigafcibbmofojjchbcdagbl
Escape From Frankenstein's Castle - Carol\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkkfflibgnokhgpjigadenacbafglkbl
Rack ur Brain - Carol\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifniicpaikdndebancakkbmjjfhloena
BrowserAppsPlus2.1 - Carol\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhommlgbajjmgdjfkofmjkdiicdfknde
StumbleUpon - Carol\AppData\Local\Google\Chrome\User Data\Default\Extensions\kcahibnffhnnjcedflmchmokndkjnhpg
Chrome Hotword Shared Module - Carol\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg
==== Chromium Startpages ======================
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Preferences
"homepage": "
http://my.myway.com/",
"startup_urls": [ "
http://www.delta-search.com/?affID=119776&babsrc=HP_ss&mntrId=b845716800000000000000ffd5aeb720" ]
==== Chromium Fix ======================
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_
www.azlyrics.com_0.localstorage deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_
www.azlyrics.com_0.localstorage-journal deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_
www.metrolyrics.com_0.localstorage deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_
www.metrolyrics.com_0.localstorage-journal deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_
www.aadvantageeshopping.com_0.localstorage deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_
www.aadvantageeshopping.com_0.localstorage-journal deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_findnsave.washingtonpost.com_0.localstorage deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_findnsave.washingtonpost.com_0.localstorage-journal deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_home.tb.ask.com_0.localstorage deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_home.tb.ask.com_0.localstorage-journal deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_search.tb.ask.com_0.localstorage deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_search.tb.ask.com_0.localstorage-journal deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_
www.ask.com_0.localstorage deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_
www.ask.com_0.localstorage-journal deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpnknncniillgijdlegfdffoheonaddd deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dpnknncniillgijdlegfdffoheonaddd_0.localstorage deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dpnknncniillgijdlegfdffoheonaddd_0.localstorage-journal deleted successfully
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhommlgbajjmgdjfkofmjkdiicdfknde deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="
http://www.dell.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{3FAACE1F-B01C-4090-8802-2ACE62587432}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{3FAACE1F-B01C-4090-8802-2ACE62587432}] not found
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="
http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="
http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="
http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"
{483830EE-A4CD-4b71-B0A3-3D82E62A6909} Unknown Url="Not_Found"
{509AD7BC-D3C2-439D-9896-FA0A83508AF8} Google Url="
http://www.google.com/search?q={sea...tartIndex={startIndex?}&startPage={startPage}"
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{78ba36c9-6036-482b-b48d-ecca6f964b84} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{78ba36c9-6036-482b-b48d-ecca6f964b84} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{27B4851A-3207-45A2-B947-BE8AFE6163AB} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{27B4851A-3207-45A2-B947-BE8AFE6163AB} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{48909954-14fb-4971-a7b3-47e7af10b38a} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{48909954-14fb-4971-a7b3-47e7af10b38a} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5848763c-2668-44ca-adbe-2999a6ee2858} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5848763c-2668-44ca-adbe-2999a6ee2858} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} deleted successfully
HKEY_USERS\S-1-5-21-592261907-3501631712-2076822851-1001\Software\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{78ba36c9-6036-482b-b48d-ecca6f964b84} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{27B4851A-3207-45A2-B947-BE8AFE6163AB} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{27B4851A-3207-45A2-B947-BE8AFE6163AB} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27B4851A-3207-45A2-B947-BE8AFE6163AB} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27B4851A-3207-45A2-B947-BE8AFE6163AB} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{48909954-14fb-4971-a7b3-47e7af10b38a} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{48909954-14fb-4971-a7b3-47e7af10b38a} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{5848763c-2668-44ca-adbe-2999a6ee2858} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5848763c-2668-44ca-adbe-2999a6ee2858} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} deleted successfully
==== Deleting CLSID Registry Values ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{82E1477C-B154-48D3-9891-33D83C26BCD3} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{78ba36c9-6036-482b-b48d-ecca6f964b84} deleted successfully
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\AB1DAB1E8E0C810429187E2D6C0B4747 deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\blaofbhgbmeikidhlkmjhbkbfohpgekf deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{E1BAD1BA-C0E8-4018-9281-E7D2C6B07474} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\AB1DAB1E8E0C810429187E2D6C0B4747 deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\16HS7DPO will be deleted at reboot
C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1E4E2H51 will be deleted at reboot
C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1EM2L5NW will be deleted at reboot
C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1R2OAJWD will be deleted at reboot
C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3ZDH5NKA will be deleted at reboot
C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7A4UOEKG will be deleted at reboot
C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8XT9MK7W will be deleted at reboot
C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A5OWJE0X will be deleted at reboot
C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B6ZI970K will be deleted at reboot
==== Empty FireFox Cache ======================
C:\Users\Carol\AppData\Local\Mozilla\Firefox\Profiles\fzxznffv.default\cache2 emptied successfully
==== Empty Chrome Cache ======================
C:\Users\Carol\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache is not empty, a reboot is needed
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=563 folders=223 110879005 bytes)
==== Empty Temp Folders ======================
C:\Users\Carol\AppData\Local\Temp will be emptied at reboot
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Carol\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\PROGRA~2\RadioRage_4j" not found
"C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\16HS7DPO" not found
"C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1E4E2H51" not found
"C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1EM2L5NW" not found
"C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1R2OAJWD" not found
"C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3ZDH5NKA" not found
"C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7A4UOEKG" not found
"C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8XT9MK7W" not found
"C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A5OWJE0X" not found
"C:\Users\Carol\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B6ZI970K" not found
"C:\Users\Carol\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\QRLTWYGA\cdn1sitescout.edgesuite.net" not found
"C:\Users\Carol\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\QRLTWYGA\home.mcafee.com" not found
==== EOF on Sat 03/28/2015 at 13:21:55.50 ======================