Zoek.exe v5.0.0.0 Updated 31-12-2014
Tool run by Kelsey on Sun 01/04/2015 at 14:14:16.64.
Microsoft Windows 8.1 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Kelsey\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
1/4/2015 2:15:19 PM Zoek.exe System Restore Point Created Succesfully.
==== Empty Folders Check ======================
C:\PROGRA~2\Fixila PC Optimizer deleted successfully
C:\PROGRA~2\New Folder deleted successfully
C:\PROGRA~3\Office2013 deleted successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{18E0DF1-51F1-4C76-B883-20DBBFCFCC} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{20CF6A97-19E0-422B-88D9-B9722C5F816F} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{23CD7DE1-C5B6-406A-B9C3-CE696D8D21B8} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3B197384-9805-43C9-B325-42BE80B71FD} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4D06198F-7193-4A23-88C8-929CDA2197BE} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5FDF09A4-CC28-455A-A6C0-3C788E34496A} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{63C5AEE0-D78B-4AAA-B862-948CD2DCC9F0} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{66696A38-7F64-4628-B0B5-C85127A11440} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6a3ec27f-c089-450c-9802-6d861b6b07a8} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{70FCF295-4AD2-4DC1-AEBE-F3F6128E90B0} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{712A26B1-BF83-430D-93FC-C0BF5F5B34AA} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{787AEA25-A3B0-44A4-8A1-3D184F3F914C} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8B9300A6-42C6-4CF9-A43E-3D116785211F} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8CB5092D-A258-4280-928-D3CE27632DBA} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a5e54893-7054-4c7c-b64e-519d2395e58d} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AD74675-FB02-4313-95E5-5DD5B1FBDB29} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B406FF90-2A50-4595-A2F3-78D9665B234} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BD731C9B-5BF0-4985-847C-467C9743531} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7C51632-5526-4143-B6A3-1BD1202E708E} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CBDF01B4-2C12-4905-ACF5-36C3255CBA4} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4B09D05-64C2-4EB7-8B81-D6963379D3B5} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7C5482F-696A-4404-894F-5D957E204271} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E82CCA26-3CD3-4BAC-9F0-3428FC604BD} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F26B1AE2-2A81-45D9-AC2-3742379EA58C} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3E742CA-6D91-4EE4-A9F3-2E513F7869CB} deleted successfully
HKEY_USERS\S-1-5-21-3674328303-4243007519-3864582617-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FACBC08-3943-4A9B-868C-25A3EAFC25E} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== Batch Command(s) Run By Tool======================
==== Deleting Files \ Folders ======================
C:\windows\sysWoW64\config\systemprofile\.android deleted
C:\PROGRA~2\4e75a6bd-6680-417e-9c3c-21718f759e1c deleted
C:\PROGRA~2\Itibiti Soft Phone deleted
C:\Users\Kelsey\AppData\Roaming\WB.CFG deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KNCTR deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\windows\AppPatch\Custom\Custom64\{cf2797aa-b7ec-e311-8ed9-005056c00008}.sdb deleted
"C:\Users\Kelsey\AppData\Roaming\FHPR" deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"{C7AE725D-FA5C-4027-BB4C-787EF9F8248A}"="C:\Program Files (x86)\PremierOpinion\firefox" []
==== Chromium Look ======================
Google Chrome Version: 39.0.2171.95 (Up to date, latest Stable version: 39.0.2171.95)
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
kjeghcllfecehndceplomkocgfbklffd - C:\ProgramData\WRData\PKG\CHROME\CHROME_1.0.2.42.crx[01/01/2015 04:02 PM]
okfhiodnpcnnnpgbjbhfebjnbagmfhab - C:\ProgramData\WRData\pkg\lpchrome.crx[01/01/2015 04:03 PM]
Google Voice Search Hotword (Beta) - Kelsey\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn
TheaterMax2.1V30.12 - Kelsey\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccnkbaeamfbhdnmilamlkagpfgimgppo
AdBlock - Kelsey\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom
Webroot Filtering Extension - Kelsey\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjeghcllfecehndceplomkocgfbklffd
Webroot Password Manager - Kelsey\AppData\Local\Google\Chrome\User Data\Default\Extensions\okfhiodnpcnnnpgbjbhfebjnbagmfhab
==== Chromium Fix ======================
C:\Users\Kelsey\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.boostsaves.com_0.localstorage deleted successfully
C:\Users\Kelsey\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.boostsaves.com_0.localstorage-journal deleted successfully
C:\Users\Kelsey\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_offers.boostsaves.com_0.localstorage deleted successfully
C:\Users\Kelsey\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.boostsaves.com_0.localstorage deleted successfully
C:\Users\Kelsey\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_
www.best-deals-products.com_0.localstorage deleted successfully
C:\Users\Kelsey\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccnkbaeamfbhdnmilamlkagpfgimgppo deleted successfully
C:\Users\Kelsey\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ccnkbaeamfbhdnmilamlkagpfgimgppo_0.localstorage deleted successfully
C:\Users\Kelsey\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_ccnkbaeamfbhdnmilamlkagpfgimgppo_0 deleted successfully
C:\Users\Kelsey\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ccnkbaeamfbhdnmilamlkagpfgimgppo deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="
http://www.google.com"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="
http://www.google.com"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="
http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="
http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02"
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\{C7AE725D-FA5C-4027-BB4C-787EF9F8248A} deleted successfully
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Itibiti_is1 deleted successfully
==== Empty IE Cache ======================
C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Kelsey\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Kelsey\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Kelsey\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Kelsey\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\Kelsey\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
No Java Cache Found
==== C:\zoek_backup content ======================
C:\zoek_backup (files=109 folders=17 12063794 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Kelsey\AppData\Local\Temp will be emptied at reboot
C:\windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\windows\Temp successfully emptied
C:\Users\Kelsey\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on Sun 01/04/2015 at 14:29:18.05 ======================