Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by MICHAEL_2 on Sat 07/11/2015 at 9:22:37.78.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\MICHAEL_2\Desktop\chrome 32 error\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
7/11/2015 9:31:16 AM Zoek.exe System Restore Point Created Successfully.
==== Empty Folders Check ======================
C:\PROGRA~2\ExperimentalScene deleted successfully
C:\PROGRA~2\GUM4CF6.tmp deleted successfully
C:\PROGRA~2\Hi-Rez Studios deleted successfully
C:\PROGRA~2\MSXML 4.0 deleted successfully
C:\PROGRA~2\Naver deleted successfully
C:\PROGRA~2\COMMON~1\Symantec Shared deleted successfully
C:\PROGRA~2\COMMON~1\XCPCSync.OEM deleted successfully
C:\PROGRA~3\Hi-Rez Studios deleted successfully
C:\PROGRA~3\OEM Links deleted successfully
C:\PROGRA~3\PCSettings deleted successfully
C:\Users\MICHAEL_2\AppData\Roaming\Awesomium deleted successfully
C:\Users\MICHAEL_2\AppData\Roaming\DarkWave Studio deleted successfully
C:\Users\MICHAEL_2\AppData\Roaming\Opera Software deleted successfully
C:\Users\MICHAEL_2\AppData\Roaming\TP deleted successfully
C:\Users\MICHAEL_2\AppData\Roaming\Windows Live Writer deleted successfully
C:\Users\MICHAEL_2\AppData\Local\EmieBrowserModeList deleted successfully
C:\Users\MICHAEL_2\AppData\Local\EmieSiteList deleted successfully
C:\Users\MICHAEL_2\AppData\Local\EmieUserList deleted successfully
C:\Users\MICHAEL_2\AppData\Local\FluxSoftware deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Opera Software deleted successfully
C:\Users\Owner\AppData\Local\VirtualStore deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vToolbarUpdater18.5.0 deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\vToolbarUpdater18.5.0 deleted successfully
==== Batch Command(s) Run By Tool======================
==== Deleting Files \ Folders ======================
C:\PROGRA~2\ExperimentalScene not found
C:\PROGRA~2\GUM4CF6.tmp not found
C:\PROGRA~2\Hi-Rez Studios not found
C:\PROGRA~2\Naver not found
C:\Program Files (x86)\YourFileDownloader not found
C:\PROGRA~2\VstPlugins deleted
C:\PROGRA~2\GUT4CF7.tmp deleted
C:\PROGRA~2\AVG Secure Search deleted
C:\MININT deleted
C:\AVG Secure Search deleted
C:\Users\MICHAEL_2\AppData\Roaming\Rim.Desktop.Exception.log deleted
C:\Users\MICHAEL_2\AppData\Roaming\Rim.Desktop.HttpServerSetup.log deleted
C:\Users\MICHAEL_2\AppData\Roaming\Rim.DesktopHelper.Exception.log deleted
C:\PROGRA~3\HirezPipeError.txt deleted
C:\PROGRA~3\Elcomsoft Password Recovery deleted
C:\PROGRA~3\AVG Secure Search deleted
C:\windows\SysNative\Tasks\Your File Updater deleted
C:\Users\MICHAEL_2\AppData\LocalLow\AVG Secure Search deleted
C:\windows\sysWoW64\config\systemprofile\AppData\LocalLow\AVG Secure Search deleted
C:\windows\Syswow64\sho1190.tmp deleted
C:\windows\Syswow64\sho12F5.tmp deleted
C:\windows\Syswow64\sho177.tmp deleted
C:\windows\Syswow64\sho1F35.tmp deleted
C:\windows\Syswow64\sho22D4.tmp deleted
C:\windows\Syswow64\sho265A.tmp deleted
C:\windows\Syswow64\sho2B56.tmp deleted
C:\windows\Syswow64\sho2C24.tmp deleted
C:\windows\Syswow64\sho2C90.tmp deleted
C:\windows\Syswow64\sho413A.tmp deleted
C:\windows\Syswow64\sho4B84.tmp deleted
C:\windows\Syswow64\sho5F9F.tmp deleted
C:\windows\Syswow64\sho61B.tmp deleted
C:\windows\Syswow64\sho6232.tmp deleted
C:\windows\Syswow64\sho6B46.tmp deleted
C:\windows\Syswow64\sho7603.tmp deleted
C:\windows\Syswow64\sho9BA3.tmp deleted
C:\windows\Syswow64\shoCD14.tmp deleted
C:\windows\Syswow64\shoCEFD.tmp deleted
C:\windows\Syswow64\shoD46E.tmp deleted
C:\windows\Syswow64\shoDC6E.tmp deleted
C:\windows\Syswow64\shoE72A.tmp deleted
C:\windows\Syswow64\shoF00B.tmp deleted
C:\windows\SysWow64\AI_RecycleBin deleted
C:\Users\MICHAEL_2\Documents\Add-in Express deleted
"C:\windows\Installer\813d41.msi" deleted
"C:\Users\MICHAEL_2\AppData\Roaming\D2Info0" deleted
"C:\Users\MICHAEL_2\AppData\Roaming\DofusAppId0_1" deleted
"C:\Users\MICHAEL_2\AppData\Roaming\DofusAppId0_2" deleted
"C:\Users\MICHAEL_2\AppData\Roaming\DofusAppId0_3" deleted
"C:\PROGRA~3\2217F139B225C51600002217CF27CAFE\2217F139B225C51600002217CF27CAFE" deleted
"C:\PROGRA~3\2217F139B225C51600002217CF27CAFE\2217F139B225C51600002217CF27CAFE.ico" deleted
"C:\PROGRA~3\2217F139B225C51600002217CF27CAFE" deleted
"C:\PROGRA~2\COMMON~1\AVG Secure Search" deleted
"C:\Users\MICHAEL_2\AppData\Local\AVG Secure Search" deleted
"C:\Users\MICHAEL_2\AppData\Local\AVG Secure Search" deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"
wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [07/10/2015 03:42 PM]
==== Chromium Look ======================
Google Chrome Version: 43.0.2357.132
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[07/01/2015 11:41 AM]
ndibdjnfmopecpmkdieinmbadjfpblof - C:\ProgramData\AVG Secure Search\ChromeExt\18.1.0.443\avg.crx[]
AdBlock - MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom
Avast Online Security - MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Chrome Hotword Shared Module - MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg
AVG Security Toolbar - MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Norton Identity Protection - Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk
==== Chromium Startpages ======================
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Preferences
,
http://www.byd.com.co:80":{"setting":1},"
https://maps.google.com:443,https://maps.google.com:443":{"setting":1},"
https://www.care.com:443,https://www.care.com:443":{"setting":1},"
https://www.cosmovision.tv:443,https://www.cosmovision.tv:443":{"setting":2},"
https://www.google.com.co:443,https://www.google.com.co:443":{"last_used":1435960654.566957,"setting":1},"
https://www.google.com:443,https://www.google.com:443":{"last_used":1432967226.431053,"setting":1}},"images":{},"javascript":{},"media_stream":{},"media_stream_camera":{"
http://chatroulette.com:80,*":{"setting":1},"
http://www.midomi.com:80,*":{"setting":1},"
http://www.youronlinemirror.com:80,*":{"setting":1},"
https://www.facebook.com:443,*":{"setting":1}},"media_stream_mic":{"
http://chatroulette.com:80,*":{"setting":1},"
http://www.midomi.com:80,*":{"setting":1},"
http://www.youronlinemirror.com:80,*":{"setting":1},"
https://www.facebook.com:443,*":{"setting":1}},"metro_switch_to_desktop":{},"midi_sysex":{},"mixed_script":{},"mouselock":{},"notifications":{"
http://play.pokemonshowdown.com:80,*":{"setting":2},"
https://mail.google.com:443,*":{"setting":1},"
https://web.whatsapp.com:443,*":{"setting":1},"
https://web.whatsapp.com:443,https://web.whatsapp.com:443":{"last_used":1436623951.569614}},"plugins":{"*,*":{"per_resource":{"npSoftnyx.dll":1,"npsitesafety.dll":1}},"[*.]maplestory.nexon.net,*":{"setting":1}},"popups":{"
https://[*.]skydrive.live.com:443,*":{"setting":2}},"ppapi_broker":{},"protocol_handlers":{},"push_messaging":{},"ssl_cert_decisions":{}},"pattern_pairs":{"*,*":{"per_plugin":{"npSoftnyx.dll":1,"npsitesafety.dll":1}},"[*.]9gag.tv,*":{"fullscreen":1},"[*.]capitalismisfreedom.com,*":{"fullscreen":1},"[*.]cuidarmee.com,*":{"fullscreen":1},"[*.]growlandia.com,*":{"fullscreen":1},"[*.]maplestory.nexon.net,*":{"plugins":1},"[*.]shop.guess.com,*":{"fullscreen":1},"[*.]speedsociety.com,*":{"fullscreen":1},"[*.]
www.doyoueven.com,*":{"fullscreen":1},"[*.]
www.gamepedia.com,*":{"fullscreen":1},"[*.]
www.knowledgeoftoday.org,*":{"fullscreen":1},"[*.]
www.mbusa.com,*":{"fullscreen":1},"[*.]
www.motorauthority.com,*":{"fullscreen":1},"[*.]
www.netflix.com,*":{"fullscreen":1},"[*.]
www.santicontreras.com,*":{"fullscreen":1},"[*.]
www.slideshare.net,*":{"fullscreen":1},"[*.]
www.tydknow.com,*":{"fullscreen":1},"[*.]
www.upsocl.com,*":{"fullscreen":1},"[*.]
www.youtube.com,*":{"fullscreen":1},"
http://chatroulette.com:80,*":{"last_used":{"media-stream-camera":1415424642.912233,"media-stream-mic":1415424642.865087},"media-stream-camera":1,"media-stream-mic":1},"
http://huracan.lamborghini.com:80,http://huracan.lamborghini.com:80":{"geolocation":1},"
http://karmakoin.com:80,http://karmakoin.com:80":{"geolocation":1},"
http://news.moviefone.com:80,http://news.moviefone.com:80":{"geolocation":2},"
http://play.pokemonshowdown.com:80,*":{"notifications":2},"
http://www.bmwusa.com:80,http://www.bmwusa.com:80":{"geolocation":1,"last_used":{"geolocation":1414729165.701931}},"
http://www.guess.com:80,http://www.guess.com:80":{"geolocation":2},"
http://www.guessfactory.com:80,http://www.guessfactory.com:80":{"geolocation":1,"last_used":{"geolocation":1417134068.35332}},"
http://www.midomi.com:80,*":{"media-stream-camera":1,"media-stream-mic":1},"
http://www.pracodidacol.com:80,http://www.byd.com.co:80":{"geolocation":1,"last_used":{"geolocation":1431039517.986452}},"
http://www.youronlinemirror.com:80,*":{"media-stream-camera":1,"media-stream-mic":1},"
https://[*.]skydrive.live.com:443,*":{"popups":2},"
https://[*.]www.facebook.com:443,*":{"fullscreen":1},"
https://mail.google.com:443,*":{"notifications":1},"
https://maps.google.com:443,https://maps.google.com:443":{"geolocation":1},"
https://web.whatsapp.com:443,*":{"last_used":{"notifications":1426540903.739256},"notifications":1},"
https://web.whatsapp.com:443,https://web.whatsapp.com:443":{"last_used":{"notifications":1432275988.707623}},"
https://www.care.com:443,https://www.care.com:443":{"geolocation":1},"
https://www.cosmovision.tv:443,https://www.cosmovision.tv:443":{"geolocation":2},"
https://www.facebook.com:443,*":{"last_used":{"media-stream-camera":1431018247.967279,"media-stream-mic":1431018247.967013},"media-stream-camera":1,"media-stream-mic":1},"
https://www.google.com:443,https://www.google.com:443":{"geolocation":1,"last_used":{"geolocation":1432159440.854366}}},"plugin_whitelist":{"npSoftnyx":{"dll":true},"npsitesafety":{"dll":true}},"pref_version":1},"exit_type":"Crashed","exited_cleanly":true,"gaia_info_picture_url":"
https://lh3.googleusercontent.com/-XdUIqdMkCWA/AAAAAAAAAAI/AAAAAAAAAAA/4252rscbv5M/s256-c/photo.jpg","gaia_info_update_time":"13081015525554978","icon_version":3,"is_managed":false,"managed_user_id":"","managed_users":{},"migrated_content_settings_exceptions":true,"migrated_default_content_settings":true,"migrated_default_media_stream_content_settings":true,"name":"Primer usuario","password_manager_groups_for_domains":[null,null,null,null,null,1],"per_host_zoom_levels":{}},"protection":{"macs":{}},"reverse_autologin":{"enabled":false},"savefile":{"default_directory":"C:\\Users\\MICHAEL_2\\Desktop","type":1},"selectfile":{"last_directory":"C:\\Users\\MICHAEL_2\\Desktop\\chrome 32 error"},"session":{"restore_on_startup_migrated":true,"startup_urls_migration_time":"13037050120346645"},"sync":{"acknowledged_types":["Bookmarks","Preferences","Passwords","Autofill Profiles","Autofill","Themes","Typed URLs","Extensions","Search Engines","Sessions","Apps","App settings","Extension settings","History Delete Directives","Synced Notifications","Dictionary","Favicon Images","Favicon Tracking","Priority Preferences","Managed Users","Articles","Tabs","Encryption keys"],"app_list":true,"app_settings":true,"apps":true,"autofill":true,"autofill_profile":true,"autofill_wallet":true,"bookmarks":true,"dictionary":true,"encryption_bootstrap_token":"AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAbJAOrfwjX0W03EOxn6D0qAAAAAACAAAAAAAQZgAAAAEAACAAAAAVszSPs1h4HnnUoTRUOPaQsHBxX1rXQgnVgCUk8Cq2ygAAAAAOgAAAAAIAACAAAACbxezaCMFVeyWsfZaQk7NadbHXygolKgVKc688G5nqMEAAAADJ3BXbD9mqIqRso0zddfF23l+4G1SmCklDxopLJFCp3zYx/7wscUnH3D+un68bm5d7CeslmWEOmrzN2ZhuFvZcQAAAAKuQKm/wDPAu5z61W58vvcITNqxtqo2MwgBNT6zut2aukHEzhhczLK5SZL3y/WCViWmxLC6bbtNp2xSytwPq/8Q=","extension_settings":true,"extensions":true,"favicon_images":true,"favicon_tracking":true,"first_sync_time":"13054414326513977","has_setup_completed":true,"history_delete_directives":true,"keep_everything_synced":true,"keystore_encryption_bootstrap_token":"AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAbJAOrfwjX0W03EOxn6D0qAAAAAACAAAAAAAQZgAAAAEAACAAAACw7/rtgntEODbdK/H3vDOSQzbu8L8LYk7nQCyKFF9ncAAAAAAOgAAAAAIAACAAAACxuF0ZcLj1NwgaeoqCXFFMk6ltMStwvOuQyd06p7psQ1AAAAAz2IZUVYFRD/bdXSE1W4JBy6UB2FEJUorgd+rMvqNaCQYrVIZkI4BXwldgNAnmeqFYDvF6F+UIwysEKEa+3fioCGkuag7ZJEDQOoMzC5bf9UAAAADiS15eiR/Ri7d4m3LhDugZ+4TlGnUNw9O4boJqoEcsLiCXsX1Y6XNTOwNw1KDEYPX7zekXo5KiWIwCU+MKwXXa","last_synced_time":"13081098570499056","managed_user_settings":true,"managed_user_shared_settings":true,"managed_user_whitelists":true,"managed_users":true,"passwords":true,"preferences":true,"priority_preferences":true,"search_engines":true,"session_sync_guid":"session_syncdJsNFWE3i6Rg1+FQDNUTRA==","sessions":true,"suppress_start":false,"synced_notifications":true,"tabs":true,"themes":true,"typed_urls":true},"sync_promo":{"user_skipped":true},"synced_notification":{"enabled_sending_services":["Google+"],"first_run":false,"initialized_sending_services":["Google+"]},"translate_accepted_count":{"ar":1,"de":0,"en":0,"fr":0,"gl":0,"ja":2,"ko":1,"pt":0,"sk":1,"th":0,"zh-CN":0},"translate_blocked_languages":["en","es"],"translate_denied_count":{"ar":0,"de":2,"en":6,"fr":2,"gl":3,"ja":0,"ko":0,"pt":2,"sk":0,"th":3,"zh-CN":1},"translate_language_blacklist":["en"],"translate_last_denied_time":1434498075438.473,"translate_too_often_denied":true,"translate_whitelists":{}}
6954505","mgndgikekgjfcpckkfioiadnlibdjbkf":"9279BAFCCA95848513309C35ACE1D41E13DEB2FCE6C030C1959A0339DCBB1CD9","mhjfbmdgcfjbbpaeojofohoefgiehjai":"078BE152878528C071D7BF73EE5F5C3CC2BC3B98CFAA51624B7EEA126239DAAA","nbpagnldghgfoolbancepceaanlmhfmd":"CA2FF9B927558DF41D9BE64598B2061BD3306E844C8DD28623CFB936AB71C7F1","ndibdjnfmopecpmkdieinmbadjfpblof":"6ED5F2A4D02977BFC56AC7082A7ABB10922592DF761CA5BD9B3AEDC65DB3B838","neajdppkdcdipfabeoofebfddakdcjhd":"D7D1F063D8634DB8AABAF517615CB71F443549DE291896F40495852CB8DC3206","nkeimhogjdpnpccoofpliimaahmaaome":"AC9AC442ABF32AA8CD4D44F1120043591F0A011B2167A94FCBB017790683729A","nmmhkkegccagdldgiimedpiccmgmieda":"4CEF481E07AB1AE3AF40FB2D294AAD25DB7D3BA5B42205238A39E3D5B31B5E55","pafkbggdmjlpgkdkcbjmhmfcdpncadgh":"7AB943B51DF445509A85A48375CD1DE829322E26A80EC534415A36CE57774F18"}},"google":{"services":{"last_username":"E687584B61821779928FF5FC0A99259D0F8AAD4AEE9584792CAA7FB7969E91C0","username":"45DD1F5905A9DFA8BEDB00C886E95EC2DB63B9BA3ED6F92B3512CB3EC1A7E140"}},"homepage":"90EF1C33CD2F578A1CCBEA912FB905181A3E5E8491132F8FE950CAD5CCA77723","homepage_is_newtabpage":"E75D117AF5909FE372D16AAA74378E6CAAE96D9EAF1F7F7DF3A333F09DD27CA3","pinned_tabs":"456DE1375E9B7F23B1AD4CBC6D7516A6F334E21A4D0D65AE3218F196F74CD1FA","prefs":{"preference_reset_time":"50D9946560889E0C2B9643302312FC85903A6E1A0A06023F69C71D27E349AB82"},"profile":{"reset_prompt_memento":"B17065932B9BBA2382634C76FD06683B31F3F3DB05023733155C5A614CE952F5"},"safebrowsing":{"incidents_sent":"3BD85FB9AE54565CBA2D7B956AAA16617C931DC19ECCDCDA1EA25E7008E0D837"},"search_provider_overrides":"245C8948359B752CAF6CA38F10A1806ADF40BA73C273860DB56D429EA4A51CDB","session":{"restore_on_startup":"14F0693F8AEDFD16B5C2D451872CB86B77D491407D499742D860477F1341D577","startup_urls":"44A2F7414941CBF9A27567897BA2ED249AFFCCC3D053821F2562F78E4108C6EF"},"software_reporter":{"prompt_reason":"448C1B5CA4032C7E8C8A4EEA6DBC788DE1B3A4C9AD2B9ADC0FFA9138C54483EC","prompt_seed":"4B361E696ADB5F33A8AD54AE82ABE6AABB32D9765E5FFD49B698A3498AECA504","prompt_version":"8230B84CA76542D082B463E64C892520A66207E24C7698099E2E2AEAD6D84C9B"},"sync":{"remaining_rollback_tries":"8AA2744BE1E4029BDBF48F9DF5BA6A296A09A62330469524AFD598D6296C5C8C"}},"super_mac":"02B7A3D625BDA7AAF2D3F6C2036532D3A29C22865C2B83A5DB97394DBC43E1F4"},"session":{"restore_on_startup":4,"startup_urls":["
http://facebook.com/"]},"sync":{"remaining_rollback_tries":0}}
C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Preferences
"homepage": "
http://facebook.com/",
"homepage": "
http://facebook.com/",
"homepage": "
http://www.facebook.com/",
"urls_to_restore_on_startup": [ "
http://facebook.com/" ]
"urls_to_restore_on_startup": [ "
http://facebook.com/" ]
"urls_to_restore_on_startup": [ "
http://facebook.com/" ]
==== Chromium Fix ======================
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_
www.azlyrics.com_0.localstorage deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_
www.azlyrics.com_0.localstorage-journal deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_casas.trovit.com.co_0.localstorage deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_casas.trovit.com.co_0.localstorage-journal deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_empleo.trovit.com.co_0.localstorage deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_empleo.trovit.com.co_0.localstorage-journal deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_gameslikefinder.com_0.localstorage deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_gameslikefinder.com_0.localstorage-journal deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage-journal deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_
www.ask.com_0.localstorage deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_
www.ask.com_0.localstorage-journal deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_media.mtvnservices.com_0.localstorage deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_media.mtvnservices.com_0.localstorage-journal deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_services.hearstmags.com_0.localstorage deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_services.hearstmags.com_0.localstorage-journal deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_services.powerreviews.com_0.localstorage deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_services.powerreviews.com_0.localstorage-journal deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_deals.kinja.com_0.localstorage deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_deals.kinja.com_0.localstorage-journal deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.softonic.com_0.localstorage deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.softonic.com_0.localstorage-journal deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ndibdjnfmopecpmkdieinmbadjfpblof_0.localstorage deleted successfully
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ndibdjnfmopecpmkdieinmbadjfpblof_0.localstorage-journal deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="
http://go.microsoft.com/fwlink/?LinkId=69157"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="
http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="
http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02"
{67A2568C-7A0A-4EED-AECC-B5405DE63B64} Unknown Url="Not_Found"
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C0FB6F92E0D30844B85558DECE4E81FF deleted successfully
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{29F6BF0C-3D0E-4480-8B55-85EDECE418FF} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\C0FB6F92E0D30844B85558DECE4E81FF deleted successfully
==== Empty IE Cache ======================
C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\MICHAEL_2\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\MICHAEL_2\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\MICHAEL_2\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=496 folders=173 156282320 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Experience\AppData\Local\Temp emptied successfully
C:\Users\hedev\AppData\Local\Temp emptied successfully
C:\Users\MICHAEL_2\AppData\Local\Temp will be emptied at reboot
C:\Users\Owner\AppData\Local\Temp emptied successfully
C:\windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\windows\Temp successfully emptied
C:\Users\MICHAE~1\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied