Zoek.exe v5.0.0.0 Updated 01-September-2015
Tool run by Currys on 02-Sep-15 at 19:47:29.67.
Microsoft Windows 10 Home 10.0.10240 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Currys\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
02-Sep-15 19:49:47 Zoek.exe System Restore Point Created Successfully.
==== Empty Folders Check ======================
C:\PROGRA~2\Steam SS deleted successfully
C:\PROGRA~2\COMMON~1\Blizzard Entertainment deleted successfully
C:\Program Files\Lenovo deleted successfully
C:\PROGRA~3\Comms deleted successfully
C:\PROGRA~3\Hi-Rez Studios deleted successfully
C:\PROGRA~3\KingSoft deleted successfully
C:\PROGRA~3\TXQMPC deleted successfully
C:\Users\Currys\AppData\Local\Downloaded Installations deleted successfully
C:\Users\Currys\AppData\Local\EmieBrowserModeList deleted successfully
C:\Users\Currys\AppData\Local\EmieSiteList deleted successfully
C:\Users\Currys\AppData\Local\EmieUserList deleted successfully
C:\Users\Currys\AppData\Local\NetworkTiles deleted successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\NetworkTiles deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== FireFox Fix ======================
ProfilePath: C:\Users\Currys\AppData\Roaming\Mozilla\Firefox\Profiles\wtmjbdt7.default
user.js not found
---- Lines srchvstrn removed from prefs.js ----
user_pref("extensions.srchvstrn.AL", 4);
user_pref("extensions.srchvstrn.aflt", "vst_coinis_14_47_ch");
user_pref("extensions.srchvstrn.appId", "{4CB3598A-82E8-4D1F-983F-061238AE696E}");
user_pref("extensions.srchvstrn.cd", "2XzuyEtN2Y1L1QzuyByEtByB0E0AyC0DyE0CyC0D0Czy0F0AtN0D0Tzu0StCtDyDyEtN1L2XzutAtFyCtFtBtFtDtN1L1CzutCyEtBzytDyD1V1Q
user_pref("extensions.srchvstrn.cr", "818717610");
user_pref("extensions.srchvstrn.dfltLng", "");
user_pref("extensions.srchvstrn.dfltSrch", true);
user_pref("extensions.srchvstrn.dnsErr", true);
user_pref("extensions.srchvstrn.excTlbr", false);
user_pref("extensions.srchvstrn.hmpg", true);
user_pref("extensions.srchvstrn.hmpgUrl", "
Vosteran Search
user_pref("extensions.srchvstrn.id", "7427EA6D4C6DC9FA");
user_pref("extensions.srchvstrn.instlDay", "16394");
user_pref("extensions.srchvstrn.instlRef", "142905_d");
user_pref("extensions.srchvstrn.newTabUrl", "
Vosteran Search
user_pref("extensions.srchvstrn.prdct", "srchvstrn");
user_pref("extensions.srchvstrn.prtnrId", "WSE_Vosteran");
user_pref("extensions.srchvstrn.srchPrvdr", "Vosteran");
user_pref("extensions.srchvstrn.tlbrId", "");
user_pref("extensions.srchvstrn.tlbrSrchUrl", "
Vosteran Search
user_pref("extensions.srchvstrn.vrsn", "");
user_pref("extensions.srchvstrn.vrsni", "");
user_pref("extensions.srchvstrn_i.newTab", true);
user_pref("extensions.srchvstrn_i.smplGrp", "none");
user_pref("extensions.srchvstrn_i.vrsnTs", "20:45:27");
---- FireFox user.js and prefs.js backups ----
prefs__2018_.backup
==== Batch Command(s) Run By Tool======================
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
==== Deleting Files \ Folders ======================
C:\PROGRA~2\Steam SS not found
C:\windows\SysNative\Tasks\StartupDemo deleted
C:\Users\Currys\.android deleted
C:\PROGRA~3\hash.dat deleted
C:\PROGRA~3\eBay deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\Currys\AppData\Local\updater.log deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\WINDOWS\wininit.ini deleted
C:\windows\SysNative\tasks\update-S-1-5-21-1755713542-638616565-2401151328-1001 deleted
C:\windows\SysNative\tasks\update-sys deleted
C:\WINDOWS\tasks\update-S-1-5-21-1755713542-638616565-2401151328-1001.job deleted
C:\WINDOWS\tasks\update-sys.job deleted
C:\end deleted
C:\WINDOWS\Syswow64\Hotspot Shield deleted
C:\WINDOWS\SysWow64\AI_RecycleBin deleted
C:\Users\Currys\AppData\Local\DFOIns.exe deleted
C:\Users\Currys\AppData\Local\NeopleCustomURLStarter.exe deleted
"C:\PROGRA~2\Skillbrains\lightshot\5.2.1.1\Lightshot.dll" deleted
"C:\PROGRA~2\Skillbrains\lightshot\5.2.1.1\Lightshot.exe" deleted
"C:\PROGRA~2\Skillbrains\lightshot\5.2.1.1\uploader.dll" deleted
"C:\PROGRA~2\Skillbrains" deleted
"C:\PROGRA~2\Skillbrains\lightshot" deleted
"C:\PROGRA~2\Skillbrains\lightshot\5.2.1.1" deleted
==== Firefox Start and Search pages ======================
ProfilePath: C:\Users\Currys\AppData\Roaming\Mozilla\Firefox\Profiles\wtmjbdt7.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
==== Firefox Proxy Settings ======================
ProfilePath: C:\Users\Currys\AppData\Roaming\Mozilla\Firefox\Profiles\wtmjbdt7.default
user_pref("network.proxy.type", );
==== Firefox Extensions ======================
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Users\Currys\AppData\Roaming\Mozilla\Firefox\Profiles\wtmjbdt7.default
18CF51689186AEB9D1D149AEB0E92D03 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL - Microsoft Office 2013
9291708CCD967887AF94BE708B43D64D - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npMeetingJoinPluginOC.dll - Microsoft Office 2013
9759358F96AD19A9BC6E7314FB99D830 - C:\Users\Currys\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player
==== Chromium Look ======================
Google Chrome Version: 44.0.2403.157
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
ooebklgpfnbcnpokahmdidgbmlcdepkm - No path found[]
Easy Auto Refresh - Currys\AppData\Local\Google\Chrome\User Data\Default\Extensions\aabcgdmkeabbnleenpncegpcngjpnjkc
BTTV - Currys\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped
SIH - Currys\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl
LoungeDestroyer - Currys\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghahcnmfjfckcedfajbhekgknjdplfcl
AdBlock - Currys\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom
鐢佃剳绠″涓婄綉闃叉姢 - Currys\AppData\Local\Google\Chrome\User Data\Default\Extensions\kleklodokdfhfccoodhajecigahbodjp
Chrome Hotword Shared Module - Currys\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg
==== Chromium Fix ======================
C:\Users\Currys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage deleted successfully
C:\Users\Currys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage-journal deleted successfully
C:\Users\Currys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_
www.productsandservices.bt.com_0.localstorage deleted successfully
C:\Users\Currys\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_
www.productsandservices.bt.com_0.localstorage-journal deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="
http://hao.qq.com/?unc=o400493_1&s=o400493_1"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="
http://hao.qq.com/?unc=o400493_1&s=o400493_1"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Start Page"="
http://hao.qq.com/?unc=o400493_1&s=o400493_1"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="
http://hao.qq.com/?unc=o400493_1&s=o400493_1"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="
MSN.com - Hotmail, Outlook, Skype, Bing, Latest News, Photos & Videos"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Start Page"="
MSN.com - Hotmail, Outlook, Skype, Bing, Latest News, Photos & Videos"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{A060E7FB-91F5-4c7c-BD0F-4A11A581D878}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="Not_Found"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="
{searchTerms} - Bing"
{A060E7FB-91F5-4c7c-BD0F-4A11A581D878} 百度搜索 Url="
https://www.baidu.com/s?wd={searchTerms}&tn=96010190_dg"
{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} Unknown Url="Not_Found"
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-1755713542-638616565-2401151328-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} deleted successfully
HKEY_USERS\S-1-5-21-1755713542-638616565-2401151328-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{5F189DF5-2D05-472B-9091-84D9848AE48B}{c632643} deleted successfully
==== Empty IE Cache ======================
C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Currys\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Currys\AppData\Local\Microsoft\Windows\INetCache\IE\AX5OM810 will be deleted at reboot
C:\Users\Currys\AppData\Local\Microsoft\Windows\INetCache\IE\CMFECQ25 will be deleted at reboot
C:\Users\Currys\AppData\Local\Microsoft\Windows\INetCache\IE\H2XWTM88 will be deleted at reboot
C:\Users\Currys\AppData\Local\Microsoft\Windows\INetCache\IE\YKIMG01P will be deleted at reboot
==== Empty FireFox Cache ======================
C:\Users\Currys\AppData\Local\Mozilla\Firefox\Profiles\wtmjbdt7.default\cache2 emptied successfully
==== Empty Chrome Cache ======================
C:\Users\Currys\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
No Flash Cache Found
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=106 folders=68 34516237 bytes)
==== Empty Temp Folders ======================
C:\WINDOWS\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\Users\Currys\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\Users\Currys\AppData\Local\Microsoft\Windows\INetCache\IE\AX5OM810" not found
"C:\Users\Currys\AppData\Local\Microsoft\Windows\INetCache\IE\CMFECQ25" not found
"C:\Users\Currys\AppData\Local\Microsoft\Windows\INetCache\IE\H2XWTM88" not found
"C:\Users\Currys\AppData\Local\Microsoft\Windows\INetCache\IE\YKIMG01P" not found
==== EOF on 03-Sep-15 at 10:30:38.97 ======================