Zoek.exe v5.0.0.1 Updated 19-September-2016
Tool run by Standa on Łt 20.09.2016 at 9:34:46,05.
Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Standa\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
20.9.2016 9:37:32 Zoek.exe System Restore Point Created Successfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handled within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\IObit deleted successfully
C:\Users\Guest\AppData\Roaming\Nico Mak Computing deleted successfully
C:\Users\Standa\AppData\Roaming\DAEMON Tools Pro deleted successfully
C:\Users\Standa\AppData\Roaming\DVDVideoSoft deleted successfully
C:\Users\Guest\AppData\Local\EmieBrowserModeList deleted successfully
C:\Users\Guest\AppData\Local\EmieSiteList deleted successfully
C:\Users\Guest\AppData\Local\EmieUserList deleted successfully
C:\Users\Standa\AppData\Local\EmieBrowserModeList deleted successfully
C:\Users\Standa\AppData\Local\EmieSiteList deleted successfully
C:\Users\Standa\AppData\Local\EmieUserList deleted successfully
C:\Users\Standa\AppData\Local\Samsung deleted successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-1235009759-2812863255-2573633201-501\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{25238904-7CC-4ED9-93AD-64C4768A5B12} deleted successfully
HKEY_USERS\S-1-5-21-1235009759-2812863255-2573633201-501\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3C67BC80-DBA4-46BB-8267-ABB03023863A} deleted successfully
HKEY_USERS\S-1-5-21-1235009759-2812863255-2573633201-501\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4914A58E-7DB7-49D6-8685-DCDF9EC7D0E1} deleted successfully
HKEY_USERS\S-1-5-21-1235009759-2812863255-2573633201-501\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6E202EAF-F9CD-423F-9720-DD871017DB85} deleted successfully
HKEY_USERS\S-1-5-21-1235009759-2812863255-2573633201-501\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7FAA2E8D-4E40-4399-B95B-A5A89D26EECE} deleted successfully
HKEY_USERS\S-1-5-21-1235009759-2812863255-2573633201-501\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F8FD91E-F2B3-42E3-8475-C0624F89F0BF} deleted successfully
HKEY_USERS\S-1-5-21-1235009759-2812863255-2573633201-501\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AFABB3B8-F6A0-407A-A82F-85C2D31D4756} deleted successfully
HKEY_USERS\S-1-5-21-1235009759-2812863255-2573633201-501\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BB554CA-9B71-4973-9AB2-8775C98EDFEE} deleted successfully
HKEY_USERS\S-1-5-21-1235009759-2812863255-2573633201-501\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D97E6A88-64D9-4331-A271-8499AFEA4087} deleted successfully
HKEY_USERS\S-1-5-21-1235009759-2812863255-2573633201-501\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DD58735-5DC4-4218-8571-67333971235} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\suohc23s.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
Added to C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\suohc23s.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
Deleted from C:\Users\Standa\AppData\Roaming\Profiles\8ekc3xkw.default\prefs.js:
Added to C:\Users\Standa\AppData\Roaming\Profiles\8ekc3xkw.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
Deleted from C:\Users\Standa\AppData\Roaming\Profiles\hikipymugogegibosh\prefs.js:
user_pref("browser.startup.homepage", "
http://www.youndoo.com/?z=0b1c74e3ac5cf ... E6&type=hp");
user_pref("browser.newtab.url", "
http://www.youndoo.com/?z=0b1c74e3ac5cf ... E6&type=hp");
user_pref("browser.search.defaultenginename", "youndoo");
user_pref("browser.search.selectedEngine", "youndoo");
Added to C:\Users\Standa\AppData\Roaming\Profiles\hikipymugogegibosh\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
Deleted from C:\Users\Standa\AppData\Roaming\Mozilla\Firefox\Profiles\evpi7ez6.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
Added to C:\Users\Standa\AppData\Roaming\Mozilla\Firefox\Profiles\evpi7ez6.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\suohc23s.default
user.js not found
---- FireFox user.js and prefs.js backups ----
prefs_20.09.2016_0956_.backup
ProfilePath: C:\Users\Standa\AppData\Roaming\Profiles\8ekc3xkw.default
user.js not found
---- Lines searchengine removed from prefs.js ----
user_pref("browser.search.searchengine.uid", "395049983_1052515_4C5AC4E6");
---- Lines searches removed from prefs.js ----
user_pref("browser.urlbar.suggest.searches", true);
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 1);
---- FireFox user.js and prefs.js backups ----
prefs_20.09.2016_0956_.backup
ProfilePath: C:\Users\Standa\AppData\Roaming\Profiles\hikipymugogegibosh
user.js not found
---- Lines searchengine removed from prefs.js ----
user_pref("browser.search.searchengine.hp", "
http://www.youndoo.com/?z=0b1c74e3ac5cf ... 2515_4C5AC
user_pref("browser.search.searchengine.sp", "
http://www.youndoo.com/search/?from=dam ... z=0b1c74e3
user_pref("browser.search.searchengine.uid", "395049983_1052515_4C5AC4E6");
user_pref("browser.search.searchengine.url", "
http://www.youndoo.com/search/?from=dam ... &z=0b1c74e
---- Lines searches removed from prefs.js ----
user_pref("browser.urlbar.suggest.searches", true);
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 1);
---- FireFox user.js and prefs.js backups ----
prefs_20.09.2016_0956_.backup
ProfilePath: C:\Users\Standa\AppData\Roaming\Mozilla\Firefox\Profiles\evpi7ez6.default
user.js not found
---- FireFox user.js and prefs.js backups ----
prefs_20.09.2016_0956_.backup
==== Deleting Files \ Folders ======================
C:\PROGRA~2\IObit not found
C:\PROGRA~2\Disney princezna - Moje pohádkové dobrodružství not found
C:\Users\Standa\.android deleted
C:\PROGRA~2\Enforcer Police Crime Action deleted
C:\Users\Guest\AppData\Roaming\STANDA-PC.MTBF.txt deleted
C:\Users\Guest\AppData\Roaming\__AvidCloudManager.log deleted
C:\PROGRA~3\Vivendi Universal Games deleted
C:\PROGRA~3\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\Guest\AppData\Local\Unity deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\Users\Standa\Desktop\Drivers Update.url deleted
C:\Users\Standa\Desktop\Clean computer - KCleaner.url deleted
C:\Users\Standa\Desktop\Check for update - SUMo.url deleted
C:\Users\Standa\Desktop\Software Update - SUMo.url deleted
"C:\Users\Guest\AppData\LocalLow\Unity" deleted
==== Firefox Start and Search pages ======================
ProfilePath: C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\suohc23s.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\Standa\AppData\Roaming\Profiles\8ekc3xkw.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\Standa\AppData\Roaming\Profiles\hikipymugogegibosh
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\Standa\AppData\Roaming\Mozilla\Firefox\Profiles\evpi7ez6.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");