Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Support
Windows Malware Removal Help & Support
Pro PC Cleaner
Message
<blockquote data-quote="JimH" data-source="post: 387285" data-attributes="member: 36505"><p>Zoek.exe v5.0.0.0 Updated 04-May-2015</p><p>Tool run by Abi on Wed 05/20/2015 at 9:10:27.29.</p><p>Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x64</p><p>Running in: Normal Mode Internet Access Detected</p><p>Launched: C:\Users\Abi\Downloads\zoek.exe [Scan all users] [Script inserted] </p><p></p><p>==== System Restore Info ======================</p><p></p><p>5/20/2015 9:12:20 AM Zoek.exe System Restore Point Created Successfully.</p><p></p><p>==== Empty Folders Check ======================</p><p></p><p>C:\PROGRA~2\Amazon deleted successfully</p><p>C:\PROGRA~2\Broadcom deleted successfully</p><p>C:\PROGRA~2\d7129893-7b92-443f-8cce-0cd76b3291ba deleted successfully</p><p>C:\PROGRA~2\DeltaFix deleted successfully</p><p>C:\PROGRA~2\Extegrity deleted successfully</p><p>C:\PROGRA~2\MSXML 4.0 deleted successfully</p><p>C:\PROGRA~2\Noel Danjou deleted successfully</p><p>C:\PROGRA~2\predm deleted successfully</p><p>C:\PROGRA~2\COMMON~1\AOL deleted successfully</p><p>C:\Program Files\Google deleted successfully</p><p>C:\PROGRA~3\04741f5cd84a49bcb1c2ee8c75c31c52 deleted successfully</p><p>C:\PROGRA~3\8fbe1fa400002f6c deleted successfully</p><p>C:\PROGRA~3\Babylon deleted successfully</p><p>C:\PROGRA~3\PCDr deleted successfully</p><p>C:\PROGRA~3\Roxio deleted successfully</p><p>C:\PROGRA~3\Trusted Publisher deleted successfully</p><p>C:\PROGRA~3\Viewpoint deleted successfully</p><p>C:\PROGRA~3\{0DD0EEEE-2A7C-411C-9243-1AE62F445FC3} deleted successfully</p><p>C:\PROGRA~3\{35733029-9859-49C7-8475-1E78E2AAE413} deleted successfully</p><p>C:\PROGRA~3\{93E26451-CD9A-43A5-A2FA-C42392EA4001} deleted successfully</p><p>C:\Users\Abi\AppData\Roaming\24U deleted successfully</p><p>C:\Users\Abi\AppData\Roaming\Amazon deleted successfully</p><p>C:\Users\Abi\AppData\Roaming\HpUpdate deleted successfully</p><p>C:\Users\Abi\AppData\Roaming\Octoshape deleted successfully</p><p>C:\Users\Abi\AppData\Roaming\Pro PC Cleaner deleted successfully</p><p>C:\Users\Abi\AppData\Roaming\tmp deleted successfully</p><p>C:\Users\Abi\AppData\Roaming\VBBE Forms Wizard v3 deleted successfully</p><p>C:\Users\Abi\AppData\Local\DataSafeOnline deleted successfully</p><p>C:\Users\Abi\AppData\Local\ntr deleted successfully</p><p>C:\Users\Abi\AppData\Local\Yahoo deleted successfully</p><p></p><p>==== Deleting CLSID Registry Keys ======================</p><p></p><p>HKEY_USERS\S-1-5-21-2997099549-3781780513-1091738752-1000\Software\Microsoft\Internet Explorer\SearchScopes\{7AE3713D-D105-4E74-83E2-8ABA1B30FDEB} deleted successfully</p><p>HKEY_USERS\S-1-5-21-2997099549-3781780513-1091738752-1000\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully</p><p>HKEY_USERS\S-1-5-21-2997099549-3781780513-1091738752-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully</p><p>HKEY_USERS\S-1-5-21-2997099549-3781780513-1091738752-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5298F866-6C50-45E9-B4B1-D28CE9D5203A} deleted successfully</p><p>HKEY_USERS\S-1-5-21-2997099549-3781780513-1091738752-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8E66592B-8E7C-4A14-88A5-8BF21032F651} deleted successfully</p><p>HKEY_USERS\S-1-5-21-2997099549-3781780513-1091738752-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BA86FCBB-BDFA-43CA-B213-6985ED1DDF7B} deleted successfully</p><p></p><p>==== Deleting CLSID Registry Values ======================</p><p></p><p></p><p>==== Deleting Services ======================</p><p></p><p>HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\54cc00c0 deleted successfully</p><p>HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\54cc00c0 deleted successfully</p><p>HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BrsHelper deleted successfully</p><p>HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\BrsHelper deleted successfully</p><p>HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\globalUpdate deleted successfully</p><p>HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\globalUpdate deleted successfully</p><p>HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\globalUpdatem deleted successfully</p><p>HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\globalUpdatem deleted successfully</p><p></p><p>==== Batch Command(s) Run By Tool======================</p><p></p><p>C:\Windows\system32\appdata deleted</p><p></p><p>==== Deleting Files \ Folders ======================</p><p></p><p>C:\PROGRA~2\Amazon not found</p><p>C:\PROGRA~2\Broadcom not found</p><p>C:\PROGRA~2\d7129893-7b92-443f-8cce-0cd76b3291ba not found</p><p>C:\PROGRA~2\DeltaFix not found</p><p>C:\PROGRA~2\Extegrity not found</p><p>C:\PROGRA~2\Noel Danjou not found</p><p>C:\PROGRA~2\predm not found</p><p>C:\PROGRA~3\04741f5cd84a49bcb1c2ee8c75c31c52 not found</p><p>C:\PROGRA~3\{0DD0EEEE-2A7C-411C-9243-1AE62F445FC3} not found</p><p>C:\PROGRA~3\{35733029-9859-49C7-8475-1E78E2AAE413} not found</p><p>C:\PROGRA~3\{93E26451-CD9A-43A5-A2FA-C42392EA4001} not found</p><p>C:\Windows\syswow64\appdata deleted</p><p>C:\windows\SysNative\Tasks\NCCQRI deleted</p><p>C:\windows\SysNative\Tasks\LMVHRTEJX1 deleted</p><p>C:\windows\SysNative\Tasks\Periodic Synchronize Task deleted</p><p>C:\PROGRA~3\28341ff220e0446c9fff27c4493d622e deleted</p><p>C:\PROGRA~3\7ec05e47c5822e81 deleted</p><p>C:\Users\Abi\AppData\LocalLow\Conduit deleted</p><p>C:\PROGRA~2\Yahoo! deleted</p><p>C:\PROGRA~2\Celebrity Toolbar deleted</p><p>C:\PROGRA~2\globalUpdate deleted</p><p>C:\PROGRA~2\Conduit deleted</p><p>C:\Program Files\Common Files\System\SysMenu.dll deleted</p><p>C:\Program Files\Common Files\System\SysMenu64.dll deleted</p><p>C:\user.js deleted</p><p>C:\Users\Abi\AppData\Roaming\Optimizer Pro deleted</p><p>C:\PROGRA~3\oHlFmV3.dat deleted</p><p>C:\PROGRA~3\Yahoo! deleted</p><p>C:\PROGRA~3\Avg_Update_0215tb deleted</p><p>C:\PROGRA~3\AVG Security Toolbar deleted</p><p>C:\PROGRA~3\Browser deleted</p><p>C:\PROGRA~3\Package Cache deleted</p><p>C:\Users\Abi\AppData\Local\globalUpdate deleted</p><p>C:\Users\Abi\AppData\Local\Windesk_Winsearch deleted</p><p>C:\Users\Abi\AppData\Local\Installer deleted</p><p>C:\Users\Abi\AppData\Local\CrashRpt deleted</p><p>C:\Users\Abi\AppData\Local\Conduit deleted</p><p>C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2 deleted</p><p>C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip deleted</p><p>C:\Users\Abi\AppData\LocalLow\Company deleted</p><p>C:\Users\Abi\AppData\LocalLow\SmartWeb deleted</p><p>C:\Users\Abi\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A} deleted</p><p>C:\Users\Abi\AppData\LocalLow\Yahoo! deleted</p><p>C:\Windows\wininit.ini deleted</p><p>C:\windows\SysNative\tasks\YTDownloader deleted</p><p>C:\windows\SysNative\tasks\YTDownloaderUpd deleted</p><p>C:\windows\SysNative\tasks\SMWUpd deleted</p><p>C:\windows\SysNative\tasks\Optimizer Pro Schedule deleted</p><p>C:\end deleted</p><p>C:\windows\SysNative\drivers\SPPD.sys deleted</p><p>C:\windows\SysNative\GroupPolicy\Machine deleted</p><p>C:\windows\SysNative\GroupPolicy\User deleted</p><p>C:\windows\SysNative\GroupPolicy\GPT.INI deleted</p><p>C:\Windows\Syswow64\GroupPolicy\gpt.ini deleted</p><p>C:\Users\Abi\Documents\Optimizer Pro deleted</p><p>C:\Users\Abi\avg_tuh_stf_all_2015_185_24c28.exe deleted</p><p>"C:\Windows\Installer\653b0.msi" deleted</p><p>"C:\Users\Abi\AppData\Local\0c9c273ee1323e513b79485b8b992a49" deleted</p><p>"C:\Users\Abi\AppData\Roaming\biP0nlErrVBt7l4j" deleted</p><p>"C:\Windows\tasks\biP0nlErrVBt7l4j.job" deleted</p><p>"C:\Windows\SysNative\tasks\biP0nlErrVBt7l4j" deleted</p><p>"C:\Users\Abi\AppData\Roaming\LjLcZITvn" deleted</p><p>"C:\Windows\tasks\LjLcZITvn.job" deleted</p><p>"C:\Windows\SysNative\tasks\LjLcZITvn" deleted</p><p>"C:\ProgramData\.24554863501262644635642126105" deleted</p><p>"C:\PROGRA~2\Windows Collaboration" deleted</p><p></p><p>==== Firefox Extensions Registry ======================</p><p></p><p>[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]</p><p>"<a href="mailto:smartwebprinting@hp.com">smartwebprinting@hp.com</a>"="C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [10/17/2009 11:42 AM]</p><p>[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]</p><p>"<a href="mailto:smartwebprinting@hp.com">smartwebprinting@hp.com</a>"="C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [10/17/2009 11:42 AM]</p><p></p><p>==== Fake Chromium Profiles Check ======================</p><p></p><p>Fake profile C:\Users\Abi\AppData\Local\Torch deleted</p><p>Fake profile C:\Users\Abi\AppData\Local\Google\Chrome SxS deleted</p><p>Fake profile C:\Users\Abi\AppData\Local\Comodo\Dragon deleted</p><p>Fake profile C:\Users\Abi\AppData\Local\Chromatic Browser deleted</p><p>Fake profile C:\Users\Administrator\AppData\Local\Torch deleted</p><p>Fake profile C:\Users\Administrator\AppData\Local\Google\Chrome deleted</p><p>Fake profile C:\Users\Administrator\AppData\Local\Google\Chrome SxS deleted</p><p>Fake profile C:\Users\Administrator\AppData\Local\Comodo\Dragon deleted</p><p>Fake profile C:\Users\Administrator\AppData\Local\Chromatic Browser deleted</p><p>Fake profile C:\Users\Guest\AppData\Local\Torch deleted</p><p>Fake profile C:\Users\Guest\AppData\Local\Google\Chrome deleted</p><p>Fake profile C:\Users\Guest\AppData\Local\Google\Chrome SxS deleted</p><p>Fake profile C:\Users\Guest\AppData\Local\Comodo\Dragon deleted</p><p>Fake profile C:\Users\Guest\AppData\Local\Chromatic Browser deleted</p><p>Fake profile C:\Users\RA Media Server\AppData\Local\Torch deleted</p><p>Fake profile C:\Users\RA Media Server\AppData\Local\Google\Chrome deleted</p><p>Fake profile C:\Users\RA Media Server\AppData\Local\Google\Chrome SxS deleted</p><p>Fake profile C:\Users\RA Media Server\AppData\Local\Comodo\Dragon deleted</p><p>Fake profile C:\Users\RA Media Server\AppData\Local\Chromatic Browser deleted</p><p></p><p>==== Chromium Look ======================</p><p></p><p>Google Chrome Version: 43.0.2357.65</p><p></p><p>HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions</p><p>lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx[10/10/2011 12:09 PM]</p><p></p><p>Bookmark Manager - Abi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik</p><p>Chrome Hotword Shared Module - Abi\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg</p><p></p><p>==== Chromium Fix ======================</p><p></p><p>C:\Users\Abi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_<a href="http://www.acronymfinder.com_0.localstorage" target="_blank">www.acronymfinder.com_0.localstorage</a> deleted successfully</p><p>C:\Users\Abi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_<a href="http://www.acronymfinder.com_0.localstorage-journal" target="_blank">www.acronymfinder.com_0.localstorage-journal</a> deleted successfully</p><p>C:\Users\Abi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_offers.boostsaves.com_0.localstorage deleted successfully</p><p>C:\Users\Abi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_offers.boostsaves.com_0.localstorage-journal deleted successfully</p><p>C:\Users\Abi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage deleted successfully</p><p>C:\Users\Abi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal deleted successfully</p><p></p><p>==== Set IE to Default ======================</p><p></p><p>Old Values:</p><p>[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]</p><p>"Start Page"="<a href="https://mysearch.avg.com/?cid={824E662F-49AE-409B-A207-00A526B1CA95}&mid=f4281a02a16d47cda4c14d06f7b86812-ae7e62991a3b76f02b1a600176fe51967f45d2ff&lang=en&ds=AVG&coid=avgtbavg&cmpid=0415tb&pr=fr&d=2014-12-30" target="_blank">https://mysearch.avg.com/?cid={824E662F-49AE-409B-A207-00A526B1CA95}&mid=f4281a02a16d47cda4c14d06f7b86812-ae7e62991a3b76f02b1a600176fe51967f45d2ff&lang=en&ds=AVG&coid=avgtbavg&cmpid=0415tb&pr=fr&d=2014-12-30</a> 08:04:09&v=4.1.0.411&pid=wtu&sg=&sap=hp"</p><p>"Search Page"="<a href="http://www.google.com" target="_blank">http://www.google.com</a>"</p><p>"Default_Page_URL"="<a href="http://www.yahoo.com/?fr=fp-yie8" target="_blank">http://www.yahoo.com/?fr=fp-yie8</a>"</p><p>"First Home Page"="<a href="http://downloads.yahoo.com/internetexplorer/welcome" target="_blank">http://downloads.yahoo.com/internetexplorer/welcome</a>"</p><p>[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]</p><p>"Default_Page_URL"="<a href="http://www.yahoo.com/?ilc=8" target="_blank">http://www.yahoo.com/?ilc=8</a>"</p><p>"Default_Search_URL"="<a href="http://us.rd.yahoo.com/customize/ie/defaults/su/msgr10/*http://www.yahoo.com" target="_blank">http://us.rd.yahoo.com/customize/ie/defaults/su/msgr10/*http://www.yahoo.com</a>"</p><p>"Search Page"="<a href="http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr10/*http://www.yahoo.com" target="_blank">http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr10/*http://www.yahoo.com</a>"</p><p>"Search Bar"="<a href="http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr10/*http://www.yahoo.com/ext/search/search.html" target="_blank">http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr10/*http://www.yahoo.com/ext/search/search.html</a>"</p><p>[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]</p><p>"Default_Page_URL"="<a href="http://www.yahoo.com/?ilc=8" target="_blank">http://www.yahoo.com/?ilc=8</a>"</p><p>"Default_Search_URL"="<a href="http://us.rd.yahoo.com/customize/ie/defaults/su/msgr10/*http://www.yahoo.com" target="_blank">http://us.rd.yahoo.com/customize/ie/defaults/su/msgr10/*http://www.yahoo.com</a>"</p><p>"Search Page"="<a href="http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr10/*http://www.yahoo.com" target="_blank">http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr10/*http://www.yahoo.com</a>"</p><p>"Search Bar"="<a href="http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr10/*http://www.yahoo.com/ext/search/search.html" target="_blank">http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr10/*http://www.yahoo.com/ext/search/search.html</a>"</p><p>[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]</p><p>@="<a href="http://www.google.com/search?q=%s" target="_blank">http://www.google.com/search?q=%s</a>"</p><p>[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]</p><p>"CustomSearch"="<a href="http://us.rd.yahoo.com/customize/ie/defaults/cs/msgr10/*http://www.yahoo.com/ext/search/search.html" target="_blank">http://us.rd.yahoo.com/customize/ie/defaults/cs/msgr10/*http://www.yahoo.com/ext/search/search.html</a>"</p><p>[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Search]</p><p>"CustomSearch"="<a href="http://us.rd.yahoo.com/customize/ie/defaults/cs/msgr10/*http://www.yahoo.com/ext/search/search.html" target="_blank">http://us.rd.yahoo.com/customize/ie/defaults/cs/msgr10/*http://www.yahoo.com/ext/search/search.html</a>"</p><p>[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]</p><p>"SearchAssistant"="<a href="http://www.google.com/ie" target="_blank">http://www.google.com/ie</a>"</p><p>"Default_Search_URL"="<a href="http://www.google.com/ie" target="_blank">http://www.google.com/ie</a>"</p><p>[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]</p><p>"DefaultScope"="{7AE3713D-D105-4E74-83E2-8ABA1B30FDEB}"</p><p>[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7AE3713D-D105-4E74-83E2-8ABA1B30FDEB}] not found</p><p></p><p>New Values:</p><p>[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]</p><p>"Search Page"="<a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a>"</p><p>"Default_Page_URL"="<a href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a>"</p><p>"First Home Page"="<a href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a>"</p><p>"Start Page"="<a href="http://www.google.com" target="_blank">http://www.google.com</a>"</p><p>[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]</p><p>"Default_Search_URL"="<a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a>"</p><p>"Search Page"="<a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a>"</p><p>"Search Bar"="<a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a>"</p><p>"Default_Page_URL"="<a href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a>"</p><p>[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]</p><p>"Default_Search_URL"="<a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a>"</p><p>"Search Page"="<a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a>"</p><p>"Search Bar"="<a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a>"</p><p>"Default_Page_URL"="<a href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a>"</p><p>[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]</p><p>"(Default)"="<a href="http://search.msn.com/results.asp?q=%s" target="_blank">http://search.msn.com/results.asp?q=%s</a>"</p><p>[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]</p><p>"CustomSearch"="<a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a>"</p><p>[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Search]</p><p>"CustomSearch"="<a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a>"</p><p>[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]</p><p>"Default_Search_URL"="<a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a>"</p><p>"SearchAssistant"="<a href="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm" target="_blank">http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm</a>"</p><p>[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]</p><p>"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"</p><p></p><p>==== All HKCU SearchScopes ======================</p><p></p><p>HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes</p><p>{012E1000-F331-11DB-8314-0800200C9A66} Google Url="<a href="http://www.google.com/search?q={searchTerms}" target="_blank">http://www.google.com/search?q={searchTerms}</a>"</p><p>{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="<a href="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" target="_blank">http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC</a>"</p><p>{57860E2D-9D55-4364-B82E-5A04CD352F46} Flickr Url="<a href="http://www.flickr.com/search/?q={searchTerms}" target="_blank">http://www.flickr.com/search/?q={searchTerms}</a>"</p><p>{6B0E7624-52E6-4024-BF1C-565824ADF0E1} eBay Url="<a href="http://rover.ebay.com/rover/1/711-43047-14818-1/4?satitle={searchTerms}" target="_blank">http://rover.ebay.com/rover/1/711-43047-14818-1/4?satitle={searchTerms}</a>"</p><p>{B74441A5-3A0C-4C85-91F3-C14E7DB02B0D} Delicious Url="<a href="http://delicious.com/search?p={searchTerms}" target="_blank">http://delicious.com/search?p={searchTerms}</a>"</p><p></p><p>==== Deleting Registry Keys ======================</p><p></p><p>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4E30E037E0535E84D9E3349209D354D4 deleted successfully</p><p>HKEY_LOCAL_MACHINE\Software\Policies\Google deleted successfully</p><p>HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\FLV Player deleted successfully</p><p>HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{730E03E4-350E-48E5-9D3E-4329903D454D} deleted successfully</p><p>HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1 deleted successfully</p><p></p><p>==== Empty IE Cache ======================</p><p></p><p>C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully</p><p>C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully</p><p>C:\Users\Abi\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully</p><p>C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully</p><p>C:\Users\RA Media Server\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully</p><p>C:\Users\TEMP\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully</p><p>C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully</p><p>C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully</p><p>C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully</p><p>C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully</p><p>C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2AJS2G8Z will be deleted at reboot</p><p>C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7NTHMJUK will be deleted at reboot</p><p>C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IZWH0SQ1 will be deleted at reboot</p><p>C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot</p><p>C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot</p><p>C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot</p><p></p><p>==== Empty FireFox Cache ======================</p><p></p><p>No FireFox Profiles found</p><p></p><p>==== Empty Chrome Cache ======================</p><p></p><p>C:\Users\Abi\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully</p><p></p><p>==== Empty All Flash Cache ======================</p><p></p><p>Flash Cache Emptied Successfully</p><p></p><p>==== Empty All Java Cache ======================</p><p></p><p>Java Cache cleared successfully</p><p></p><p>==== C:\zoek_backup content ======================</p><p></p><p>C:\zoek_backup (files=340 folders=81 108847765 bytes)</p><p></p><p>==== Empty Temp Folders ======================</p><p></p><p>C:\Users\Abi\AppData\Local\Temp will be emptied at reboot</p><p>C:\Users\Default\AppData\Local\Temp emptied successfully</p><p>C:\Users\Default User\AppData\Local\Temp emptied successfully</p><p>C:\Users\RA Media Server\AppData\Local\Temp emptied successfully</p><p>C:\Users\TEMP\AppData\Local\Temp emptied successfully</p><p>C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Temp emptied successfully</p><p>C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully</p><p>C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully</p><p>C:\Windows\Temp will be emptied at reboot</p><p></p><p>==== After Reboot ======================</p><p></p><p>==== Empty Temp Folders ======================</p><p></p><p>C:\Windows\Temp successfully emptied</p><p>C:\Users\Abi\AppData\Local\Temp successfully emptied</p><p></p><p>==== Empty Recycle Bin ======================</p><p></p><p>C:\$RECYCLE.BIN successfully emptied</p><p></p><p>==== Deleting Files / Folders ======================</p><p></p><p>"C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found</p><p>"C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found</p><p>"C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found</p><p>"C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2AJS2G8Z" not found</p><p>"C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7NTHMJUK" not found</p><p>"C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IZWH0SQ1" not found</p><p></p><p>==== EOF on Wed 05/20/2015 at 10:19:28.70 ======================</p></blockquote><p></p>
[QUOTE="JimH, post: 387285, member: 36505"] Zoek.exe v5.0.0.0 Updated 04-May-2015 Tool run by Abi on Wed 05/20/2015 at 9:10:27.29. Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Abi\Downloads\zoek.exe [Scan all users] [Script inserted] ==== System Restore Info ====================== 5/20/2015 9:12:20 AM Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\PROGRA~2\Amazon deleted successfully C:\PROGRA~2\Broadcom deleted successfully C:\PROGRA~2\d7129893-7b92-443f-8cce-0cd76b3291ba deleted successfully C:\PROGRA~2\DeltaFix deleted successfully C:\PROGRA~2\Extegrity deleted successfully C:\PROGRA~2\MSXML 4.0 deleted successfully C:\PROGRA~2\Noel Danjou deleted successfully C:\PROGRA~2\predm deleted successfully C:\PROGRA~2\COMMON~1\AOL deleted successfully C:\Program Files\Google deleted successfully C:\PROGRA~3\04741f5cd84a49bcb1c2ee8c75c31c52 deleted successfully C:\PROGRA~3\8fbe1fa400002f6c deleted successfully C:\PROGRA~3\Babylon deleted successfully C:\PROGRA~3\PCDr deleted successfully C:\PROGRA~3\Roxio deleted successfully C:\PROGRA~3\Trusted Publisher deleted successfully C:\PROGRA~3\Viewpoint deleted successfully C:\PROGRA~3\{0DD0EEEE-2A7C-411C-9243-1AE62F445FC3} deleted successfully C:\PROGRA~3\{35733029-9859-49C7-8475-1E78E2AAE413} deleted successfully C:\PROGRA~3\{93E26451-CD9A-43A5-A2FA-C42392EA4001} deleted successfully C:\Users\Abi\AppData\Roaming\24U deleted successfully C:\Users\Abi\AppData\Roaming\Amazon deleted successfully C:\Users\Abi\AppData\Roaming\HpUpdate deleted successfully C:\Users\Abi\AppData\Roaming\Octoshape deleted successfully C:\Users\Abi\AppData\Roaming\Pro PC Cleaner deleted successfully C:\Users\Abi\AppData\Roaming\tmp deleted successfully C:\Users\Abi\AppData\Roaming\VBBE Forms Wizard v3 deleted successfully C:\Users\Abi\AppData\Local\DataSafeOnline deleted successfully C:\Users\Abi\AppData\Local\ntr deleted successfully C:\Users\Abi\AppData\Local\Yahoo deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-2997099549-3781780513-1091738752-1000\Software\Microsoft\Internet Explorer\SearchScopes\{7AE3713D-D105-4E74-83E2-8ABA1B30FDEB} deleted successfully HKEY_USERS\S-1-5-21-2997099549-3781780513-1091738752-1000\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully HKEY_USERS\S-1-5-21-2997099549-3781780513-1091738752-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully HKEY_USERS\S-1-5-21-2997099549-3781780513-1091738752-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5298F866-6C50-45E9-B4B1-D28CE9D5203A} deleted successfully HKEY_USERS\S-1-5-21-2997099549-3781780513-1091738752-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8E66592B-8E7C-4A14-88A5-8BF21032F651} deleted successfully HKEY_USERS\S-1-5-21-2997099549-3781780513-1091738752-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BA86FCBB-BDFA-43CA-B213-6985ED1DDF7B} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\54cc00c0 deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\54cc00c0 deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BrsHelper deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\BrsHelper deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\globalUpdate deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\globalUpdate deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\globalUpdatem deleted successfully HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\globalUpdatem deleted successfully ==== Batch Command(s) Run By Tool====================== C:\Windows\system32\appdata deleted ==== Deleting Files \ Folders ====================== C:\PROGRA~2\Amazon not found C:\PROGRA~2\Broadcom not found C:\PROGRA~2\d7129893-7b92-443f-8cce-0cd76b3291ba not found C:\PROGRA~2\DeltaFix not found C:\PROGRA~2\Extegrity not found C:\PROGRA~2\Noel Danjou not found C:\PROGRA~2\predm not found C:\PROGRA~3\04741f5cd84a49bcb1c2ee8c75c31c52 not found C:\PROGRA~3\{0DD0EEEE-2A7C-411C-9243-1AE62F445FC3} not found C:\PROGRA~3\{35733029-9859-49C7-8475-1E78E2AAE413} not found C:\PROGRA~3\{93E26451-CD9A-43A5-A2FA-C42392EA4001} not found C:\Windows\syswow64\appdata deleted C:\windows\SysNative\Tasks\NCCQRI deleted C:\windows\SysNative\Tasks\LMVHRTEJX1 deleted C:\windows\SysNative\Tasks\Periodic Synchronize Task deleted C:\PROGRA~3\28341ff220e0446c9fff27c4493d622e deleted C:\PROGRA~3\7ec05e47c5822e81 deleted C:\Users\Abi\AppData\LocalLow\Conduit deleted C:\PROGRA~2\Yahoo! deleted C:\PROGRA~2\Celebrity Toolbar deleted C:\PROGRA~2\globalUpdate deleted C:\PROGRA~2\Conduit deleted C:\Program Files\Common Files\System\SysMenu.dll deleted C:\Program Files\Common Files\System\SysMenu64.dll deleted C:\user.js deleted C:\Users\Abi\AppData\Roaming\Optimizer Pro deleted C:\PROGRA~3\oHlFmV3.dat deleted C:\PROGRA~3\Yahoo! deleted C:\PROGRA~3\Avg_Update_0215tb deleted C:\PROGRA~3\AVG Security Toolbar deleted C:\PROGRA~3\Browser deleted C:\PROGRA~3\Package Cache deleted C:\Users\Abi\AppData\Local\globalUpdate deleted C:\Users\Abi\AppData\Local\Windesk_Winsearch deleted C:\Users\Abi\AppData\Local\Installer deleted C:\Users\Abi\AppData\Local\CrashRpt deleted C:\Users\Abi\AppData\Local\Conduit deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2 deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip deleted C:\Users\Abi\AppData\LocalLow\Company deleted C:\Users\Abi\AppData\LocalLow\SmartWeb deleted C:\Users\Abi\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A} deleted C:\Users\Abi\AppData\LocalLow\Yahoo! deleted C:\Windows\wininit.ini deleted C:\windows\SysNative\tasks\YTDownloader deleted C:\windows\SysNative\tasks\YTDownloaderUpd deleted C:\windows\SysNative\tasks\SMWUpd deleted C:\windows\SysNative\tasks\Optimizer Pro Schedule deleted C:\end deleted C:\windows\SysNative\drivers\SPPD.sys deleted C:\windows\SysNative\GroupPolicy\Machine deleted C:\windows\SysNative\GroupPolicy\User deleted C:\windows\SysNative\GroupPolicy\GPT.INI deleted C:\Windows\Syswow64\GroupPolicy\gpt.ini deleted C:\Users\Abi\Documents\Optimizer Pro deleted C:\Users\Abi\avg_tuh_stf_all_2015_185_24c28.exe deleted "C:\Windows\Installer\653b0.msi" deleted "C:\Users\Abi\AppData\Local\0c9c273ee1323e513b79485b8b992a49" deleted "C:\Users\Abi\AppData\Roaming\biP0nlErrVBt7l4j" deleted "C:\Windows\tasks\biP0nlErrVBt7l4j.job" deleted "C:\Windows\SysNative\tasks\biP0nlErrVBt7l4j" deleted "C:\Users\Abi\AppData\Roaming\LjLcZITvn" deleted "C:\Windows\tasks\LjLcZITvn.job" deleted "C:\Windows\SysNative\tasks\LjLcZITvn" deleted "C:\ProgramData\.24554863501262644635642126105" deleted "C:\PROGRA~2\Windows Collaboration" deleted ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "[email]smartwebprinting@hp.com[/email]"="C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [10/17/2009 11:42 AM] [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions] "[email]smartwebprinting@hp.com[/email]"="C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [10/17/2009 11:42 AM] ==== Fake Chromium Profiles Check ====================== Fake profile C:\Users\Abi\AppData\Local\Torch deleted Fake profile C:\Users\Abi\AppData\Local\Google\Chrome SxS deleted Fake profile C:\Users\Abi\AppData\Local\Comodo\Dragon deleted Fake profile C:\Users\Abi\AppData\Local\Chromatic Browser deleted Fake profile C:\Users\Administrator\AppData\Local\Torch deleted Fake profile C:\Users\Administrator\AppData\Local\Google\Chrome deleted Fake profile C:\Users\Administrator\AppData\Local\Google\Chrome SxS deleted Fake profile C:\Users\Administrator\AppData\Local\Comodo\Dragon deleted Fake profile C:\Users\Administrator\AppData\Local\Chromatic Browser deleted Fake profile C:\Users\Guest\AppData\Local\Torch deleted Fake profile C:\Users\Guest\AppData\Local\Google\Chrome deleted Fake profile C:\Users\Guest\AppData\Local\Google\Chrome SxS deleted Fake profile C:\Users\Guest\AppData\Local\Comodo\Dragon deleted Fake profile C:\Users\Guest\AppData\Local\Chromatic Browser deleted Fake profile C:\Users\RA Media Server\AppData\Local\Torch deleted Fake profile C:\Users\RA Media Server\AppData\Local\Google\Chrome deleted Fake profile C:\Users\RA Media Server\AppData\Local\Google\Chrome SxS deleted Fake profile C:\Users\RA Media Server\AppData\Local\Comodo\Dragon deleted Fake profile C:\Users\RA Media Server\AppData\Local\Chromatic Browser deleted ==== Chromium Look ====================== Google Chrome Version: 43.0.2357.65 HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx[10/10/2011 12:09 PM] Bookmark Manager - Abi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik Chrome Hotword Shared Module - Abi\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg ==== Chromium Fix ====================== C:\Users\Abi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_[URL="http://www.acronymfinder.com_0.localstorage"]www.acronymfinder.com_0.localstorage[/URL] deleted successfully C:\Users\Abi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_[URL="http://www.acronymfinder.com_0.localstorage-journal"]www.acronymfinder.com_0.localstorage-journal[/URL] deleted successfully C:\Users\Abi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_offers.boostsaves.com_0.localstorage deleted successfully C:\Users\Abi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_offers.boostsaves.com_0.localstorage-journal deleted successfully C:\Users\Abi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage deleted successfully C:\Users\Abi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="[URL]https://mysearch.avg.com/?cid={824E662F-49AE-409B-A207-00A526B1CA95}&mid=f4281a02a16d47cda4c14d06f7b86812-ae7e62991a3b76f02b1a600176fe51967f45d2ff&lang=en&ds=AVG&coid=avgtbavg&cmpid=0415tb&pr=fr&d=2014-12-30[/URL] 08:04:09&v=4.1.0.411&pid=wtu&sg=&sap=hp" "Search Page"="[URL]http://www.google.com[/URL]" "Default_Page_URL"="[URL]http://www.yahoo.com/?fr=fp-yie8[/URL]" "First Home Page"="[URL]http://downloads.yahoo.com/internetexplorer/welcome[/URL]" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="[URL]http://www.yahoo.com/?ilc=8[/URL]" "Default_Search_URL"="[URL]http://us.rd.yahoo.com/customize/ie/defaults/su/msgr10/*http://www.yahoo.com[/URL]" "Search Page"="[URL]http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr10/*http://www.yahoo.com[/URL]" "Search Bar"="[URL]http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr10/*http://www.yahoo.com/ext/search/search.html[/URL]" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Page_URL"="[URL]http://www.yahoo.com/?ilc=8[/URL]" "Default_Search_URL"="[URL]http://us.rd.yahoo.com/customize/ie/defaults/su/msgr10/*http://www.yahoo.com[/URL]" "Search Page"="[URL]http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr10/*http://www.yahoo.com[/URL]" "Search Bar"="[URL]http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr10/*http://www.yahoo.com/ext/search/search.html[/URL]" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] @="[URL]http://www.google.com/search?q=%s[/URL]" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search] "CustomSearch"="[URL]http://us.rd.yahoo.com/customize/ie/defaults/cs/msgr10/*http://www.yahoo.com/ext/search/search.html[/URL]" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Search] "CustomSearch"="[URL]http://us.rd.yahoo.com/customize/ie/defaults/cs/msgr10/*http://www.yahoo.com/ext/search/search.html[/URL]" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "SearchAssistant"="[URL]http://www.google.com/ie[/URL]" "Default_Search_URL"="[URL]http://www.google.com/ie[/URL]" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{7AE3713D-D105-4E74-83E2-8ABA1B30FDEB}" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7AE3713D-D105-4E74-83E2-8ABA1B30FDEB}] not found New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="[URL]http://go.microsoft.com/fwlink/?LinkId=54896[/URL]" "Default_Page_URL"="[URL]http://go.microsoft.com/fwlink/?LinkId=69157[/URL]" "First Home Page"="[URL]http://go.microsoft.com/fwlink/?LinkId=69157[/URL]" "Start Page"="[URL]http://www.google.com[/URL]" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Search_URL"="[URL]http://go.microsoft.com/fwlink/?LinkId=54896[/URL]" "Search Page"="[URL]http://go.microsoft.com/fwlink/?LinkId=54896[/URL]" "Search Bar"="[URL]http://go.microsoft.com/fwlink/?LinkId=54896[/URL]" "Default_Page_URL"="[URL]http://go.microsoft.com/fwlink/?LinkId=69157[/URL]" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main] "Default_Search_URL"="[URL]http://go.microsoft.com/fwlink/?LinkId=54896[/URL]" "Search Page"="[URL]http://go.microsoft.com/fwlink/?LinkId=54896[/URL]" "Search Bar"="[URL]http://go.microsoft.com/fwlink/?LinkId=54896[/URL]" "Default_Page_URL"="[URL]http://go.microsoft.com/fwlink/?LinkId=69157[/URL]" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl] "(Default)"="[URL]http://search.msn.com/results.asp?q=%s[/URL]" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search] "CustomSearch"="[URL]http://go.microsoft.com/fwlink/?LinkId=54896[/URL]" [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Search] "CustomSearch"="[URL]http://go.microsoft.com/fwlink/?LinkId=54896[/URL]" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search] "Default_Search_URL"="[URL]http://go.microsoft.com/fwlink/?LinkId=54896[/URL]" "SearchAssistant"="[URL]http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm[/URL]" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {012E1000-F331-11DB-8314-0800200C9A66} Google Url="[URL]http://www.google.com/search?q={searchTerms}[/URL]" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="[URL]http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC[/URL]" {57860E2D-9D55-4364-B82E-5A04CD352F46} Flickr Url="[URL]http://www.flickr.com/search/?q={searchTerms}[/URL]" {6B0E7624-52E6-4024-BF1C-565824ADF0E1} eBay Url="[URL]http://rover.ebay.com/rover/1/711-43047-14818-1/4?satitle={searchTerms}[/URL]" {B74441A5-3A0C-4C85-91F3-C14E7DB02B0D} Delicious Url="[URL]http://delicious.com/search?p={searchTerms}[/URL]" ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4E30E037E0535E84D9E3349209D354D4 deleted successfully HKEY_LOCAL_MACHINE\Software\Policies\Google deleted successfully HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\FLV Player deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{730E03E4-350E-48E5-9D3E-4329903D454D} deleted successfully HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1 deleted successfully ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Users\Abi\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\RA Media Server\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\TEMP\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2AJS2G8Z will be deleted at reboot C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7NTHMJUK will be deleted at reboot C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IZWH0SQ1 will be deleted at reboot C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Profiles found ==== Empty Chrome Cache ====================== C:\Users\Abi\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=340 folders=81 108847765 bytes) ==== Empty Temp Folders ====================== C:\Users\Abi\AppData\Local\Temp will be emptied at reboot C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\RA Media Server\AppData\Local\Temp emptied successfully C:\Users\TEMP\AppData\Local\Temp emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Abi\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2AJS2G8Z" not found "C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7NTHMJUK" not found "C:\Users\Abi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\IZWH0SQ1" not found ==== EOF on Wed 05/20/2015 at 10:19:28.70 ====================== [/QUOTE]
Insert quotes…
Verification
Post reply
Top