Thank you TwinHeadedEagle!
Lol, the "few minutes" took over an hour!
Zoek.exe v5.0.0.0 Updated 26-11-2014
Tool run by allaw_000 on Thu 11/27/2014 at 13:41:51.98.
Microsoft Windows 8.1 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\allaw_000\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
11/27/2014 1:44:53 PM Zoek.exe System Restore Point Created Succesfully.
==== Empty Folders Check ======================
C:\PROGRA~3\Validity deleted successfully
C:\Users\allaw_000\AppData\Local\VirtualStore deleted successfully
C:\Users\Ber\AppData\Local\VirtualStore deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== Batch Command(s) Run By Tool======================
==== Deleting Files \ Folders ======================
C:\PROGRA~2\YoutubeAdBlocke deleted
C:\PROGRA~3\bnfpmmnompkcgcdnjdhbpgjajhnihcdb deleted
C:\PROGRA~3\10295432899151098751 deleted
C:\Users\allaw_000\AppData\Roaming\iDealshare VideoGo 5 deleted
C:\PROGRA~3\Package Cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\WINDOWS\SysNative\config\systemprofile\Searches deleted
"C:\PROGRA~2\GoSave\jDuRL9UYWilb3v.exe" deleted
"C:\PROGRA~2\GoSave\jDuRL9UYWilb3v.exe" deleted
"C:\PROGRA~2\GoSave" deleted
"C:\PROGRA~2\GoSave" deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"
wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [11/26/2014 08:38 PM]
==== Chromium Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[11/26/2014 08:37 PM]
ncffjdbbodifgldkcbhmiiljfcnbgjab - C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\ChromeExt\dpchrome.crx[10/26/2012 01:19 PM]
DigitalPersona Extension - allaw_000\AppData\Local\Chromium\User Data\Default\Extensions\ncffjdbbodifgldkcbhmiiljfcnbgjab
Google Voice Search Hotword (Beta) - allaw_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn
WOT - allaw_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp
Avast Online Security - allaw_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Eye Dropper - allaw_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmdcmlfkchdmnmnmheododdhjedfccka
Poppit - allaw_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcbkbpnkkkipelfledbfocopglifcfmi
Boomerang for Gmail - allaw_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdanidgdpmkimeiiojknlnekblgmpdll
DigitalPersona Extension - allaw_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncffjdbbodifgldkcbhmiiljfcnbgjab
Amazon Windowshop - allaw_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nielaigelomefgdoljcpfgbdbfefhdjc
Google Voice Search Hotword (Beta) - Ber\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn
DigitalPersona Extension - Ber\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncffjdbbodifgldkcbhmiiljfcnbgjab
Expensify Web Receipts - Ber\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiicpdkmeclmgmlmbajefnkalcfageek
==== Chromium Startpages ======================
C:\Users\allaw_000\AppData\Local\Google\Chrome\User Data\Default\Preferences
"homepage": "
http://www.google.com",
"startup_urls": [ "
https://mail.google.com/mail/u/0/?shva=1#mbox", "
https://mail.google.com/mail/u/1/?shva=1#inbox", "
https://mail.google.com/mail/u/2/#inbox", "
https://www.google.com/calendar/b/1/render?tab=mc&gsessionid=8rsOYGV6lOClFjnUQwjGsA", "
https://www.regpacks.com/reg/admin/login/", "
https://app.asana.com/0/12619451789262/12619451789262" ],
==== Chromium Fix ======================
C:\Users\allaw_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_seforimdeals.com_0.localstorage deleted successfully
C:\Users\allaw_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_seforimdeals.com_0.localstorage-journal deleted successfully
C:\Users\allaw_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_
www.dansdeals.com_0.localstorage deleted successfully
C:\Users\allaw_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_
www.dansdeals.com_0.localstorage-journal deleted successfully
C:\Users\allaw_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_
www.idealshare.net_0.localstorage deleted successfully
C:\Users\allaw_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_
www.idealshare.net_0.localstorage-journal deleted successfully
C:\Users\Ber\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiicpdkmeclmgmlmbajefnkalcfageek deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="
http://g.msn.com/HPCOM13/1"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="
http://g.msn.com/HPCOM13/1"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="
http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="
http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-44029399-499763486-263735104-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully
HKEY_USERS\S-1-5-21-44029399-499763486-263735104-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully
HKEY_USERS\S-1-5-21-44029399-499763486-263735104-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{28ceafbd-edb7-4f90-8d3e-c36c8a10901c} deleted successfully
HKEY_USERS\S-1-5-21-44029399-499763486-263735104-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{28ceafbd-edb7-4f90-8d3e-c36c8a10901c} deleted successfully
HKEY_USERS\S-1-5-21-44029399-499763486-263735104-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{c631bcd9-f613-43bf-aa29-f81e4439a87c} deleted successfully
HKEY_USERS\S-1-5-21-44029399-499763486-263735104-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{c631bcd9-f613-43bf-aa29-f81e4439a87c} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{28ceafbd-edb7-4f90-8d3e-c36c8a10901c} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{28ceafbd-edb7-4f90-8d3e-c36c8a10901c} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{28ceafbd-edb7-4f90-8d3e-c36c8a10901c} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{c631bcd9-f613-43bf-aa29-f81e4439a87c} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{c631bcd9-f613-43bf-aa29-f81e4439a87c} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{c631bcd9-f613-43bf-aa29-f81e4439a87c} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{c631bcd9-f613-43bf-aa29-f81e4439a87c} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c631bcd9-f613-43bf-aa29-f81e4439a87c} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c631bcd9-f613-43bf-aa29-f81e4439a87c} deleted successfully
==== Deleting CLSID Registry Values ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C87834EB-A2A0-B9D4-AA9A-C263D1191051} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1558294E-11B1-4EFF-AB8D-F5C72BE2DB9A} deleted successfully
HKEY_CURRENT_USER\Software\Microsoft\Installer\Products\E49285511B11FFE4BAD85F7CB22EBDA9 deleted successfully
==== Empty IE Cache ======================
C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\allaw_000\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\allaw_000\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\Users\Ber\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Ber\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\allaw_000\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\allaw_000\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\Users\Ber\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Ber\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\allaw_000\AppData\Local\Chromium\User Data\Default\Cache emptied successfully
C:\Users\allaw_000\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\Ber\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
No Java Cache Found
==== C:\zoek_backup content ======================
C:\zoek_backup (files=42 folders=24 17854830 bytes)
==== Empty Temp Folders ======================
C:\Users\allaw_000\AppData\Local\Temp will be emptied at reboot
C:\Users\Ber\AppData\Local\Temp emptied successfully
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\Users\ALLAW_~1\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on Thu 11/27/2014 at 14:58:39.82 ======================