offline
- njuskalo75

- Ugledni građanin
- Pridružio: 03 Feb 2011
- Poruke: 447
- Gde živiš: Nemačka
|
Zoek.exe Version 4.0.0.3 Updated 05-July-2013
Tool run by MICA on sub 06.07.2013 at 21:36:44,10.
Microsoft Windows XP Professional 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected
==== System Restore Info ======================
7/6/2013 9:36:54 PM Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
127.0.0.1 localhost
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== File Information Results ======================
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\prefs.js:
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Yahoo");
user_pref("browser.search.selectedEngine", "Yahoo");
user_pref("keyword.URL", "http://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=198484&p=");
user_pref("browser.search.useDBForOrder", true);
Added to C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
ProfilePath: C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default
user.js not found
---- Lines SelectionLinks removed from prefs.js ----
user_pref("extensions.vfdownload.installedProduct", "selectionlinks");
---- Lines SelectionLinks modified from prefs.js ----
---- Lines Torntv 3 removed from prefs.js ----
---- Lines Torntv 3 modified from prefs.js ----
---- Lines mixidj removed from prefs.js ----
user_pref("extensions.mixidj.admin", false);
user_pref("extensions.mixidj.aflt", "babsst");
user_pref("extensions.mixidj.appId", "{A2773ED4-83BD-488A-A186-73590706C916}");
user_pref("extensions.mixidj.autoRvrt", "false");
user_pref("extensions.mixidj.dfltLng", "en");
user_pref("extensions.mixidj.excTlbr", false);
user_pref("extensions.mixidj.ffxUnstlRst", false);
user_pref("extensions.mixidj.id", "f8a970ed000000000000001d92472bc2");
user_pref("extensions.mixidj.instlDay", "15888");
user_pref("extensions.mixidj.instlRef", "sst");
user_pref("extensions.mixidj.newTab", false);
user_pref("extensions.mixidj.prdct", "mixidj");
user_pref("extensions.mixidj.prtnrId", "mixidj");
user_pref("extensions.mixidj.rvrt", "false");
user_pref("extensions.mixidj.smplGrp", "none");
user_pref("extensions.mixidj.tlbrId", "baseyh");
user_pref("extensions.mixidj.tlbrSrchUrl", "");
user_pref("extensions.mixidj.vrsn", "1.8.18.8");
user_pref("extensions.mixidj.vrsni", "1.8.18.8");
user_pref("extensions.mixidj.vrsnTs", "1.8.18.813:38:51");
---- Lines mixidj modified from prefs.js ----
---- Lines PlusWinks removed from prefs.js ----
user_pref("extensions.pluswinks@PlusWinks.id", "\"1c325ffa-28e4-8340-fdca-e8acbdd9fe54\"");
user_pref("extensions.pluswinks@PlusWinks.mzID", "63");
user_pref("extensions.pluswinks@PlusWinks.uuid", "\"b13c32ee-e60d-11e2-bd2c-0025901ef77c\"");
---- Lines PlusWinks modified from prefs.js ----
user_pref("extensions.enabledAddons", "addon%40defaulttab.com:2.0,%7B505CC4BC-9D39-4BA5-86E0-F25353D6D061%7D:1.5,pluswinks%40PlusWinks:1.0.0.3,%7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:22.0");
user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"wrc@avast.com\":{\"descriptor\":\"C:\\\\Program Files\\\\AVAST Software\\\\Avast\\\\WebRep\\\\FF\",\"mtime\":1372745688312,\"rdfTime\":1368089726000}}},{\"name\":\"app-global\",\"addons\":{\"{972ce4c6-7e08-4474-a285-3208198ce6fd}\":{\"descriptor\":\"C:\\\\Program Files\\\\Mozilla Firefox\\\\browser\\\\extensions\\\\{972ce4c6-7e08-4474-a285-3208198ce6fd}\",\"mtime\":1372274251453,\"rdfTime\":1371557658000}}},{\"name\":\"app-profile\",\"addons\":{\"addon@defaulttab.com\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\MICA\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\gv3y8h66.default\\\\extensions\\\\addon@defaulttab.com.xpi\",\"mtime\":1372938145062},\"gophoto@gophoto.it\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\MICA\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\gv3y8h66.default\\\\extensions\\\\gophoto@gophoto.it.xpi\",\"mtime\":1373059900915},\"pluswinks@PlusWinks\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\MICA\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\gv3y8h66.default\\\\extensions\\\\pluswinks@PlusWinks\",\"mtime\":1373095455468,\"rdfTime\":1373095455468},\"trtv3@trtv.com\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\MICA\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\gv3y8h66.default\\\\extensions\\\\trtv3@trtv.com.xpi\",\"mtime\":1372581844000},\"{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\MICA\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\gv3y8h66.default\\\\extensions\\\\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\",\"mtime\":1372938127031,\"rdfTime\":1372938126921}}}]");
---- Lines SpeedAnalysis removed from prefs.js ----
user_pref("extensions.speedanalysis02@SpeedAnalysis.com.id", "\"c63ada3c-8eb0-308a-a7ed-bc45fb5be94c\"");
user_pref("extensions.speedanalysis02@SpeedAnalysis.com.mzID", "75");
---- Lines SpeedAnalysis modified from prefs.js ----
---- Lines defaulttab removed from prefs.js ----
user_pref("extensions.defaulttab.lastUsed", 1372939968);
---- Lines defaulttab modified from prefs.js ----
user_pref("extensions.enabledAddons", "addon%40defaulttab.com:2.0,%7B505CC4BC-9D39-4BA5-86E0-F25353D6D061%7D:1.5,disabled%40disabled:1.0.0.3,%7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:22.0");
user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"wrc@avast.com\":{\"descriptor\":\"C:\\\\Program Files\\\\AVAST Software\\\\Avast\\\\WebRep\\\\FF\",\"mtime\":1372745688312,\"rdfTime\":1368089726000}}},{\"name\":\"app-global\",\"addons\":{\"{972ce4c6-7e08-4474-a285-3208198ce6fd}\":{\"descriptor\":\"C:\\\\Program Files\\\\Mozilla Firefox\\\\browser\\\\extensions\\\\{972ce4c6-7e08-4474-a285-3208198ce6fd}\",\"mtime\":1372274251453,\"rdfTime\":1371557658000}}},{\"name\":\"app-profile\",\"addons\":{\"addon@defaulttab.com\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\MICA\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\gv3y8h66.default\\\\extensions\\\\addon@defaulttab.com.xpi\",\"mtime\":1372938145062},\"gophoto@gophoto.it\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\MICA\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\gv3y8h66.default\\\\extensions\\\\gophoto@gophoto.it.xpi\",\"mtime\":1373059900915},\"disabled@disabled\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\MICA\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\gv3y8h66.default\\\\extensions\\\\disabled@disabled\",\"mtime\":1373095455468,\"rdfTime\":1373095455468},\"trtv3@trtv.com\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\MICA\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\gv3y8h66.default\\\\extensions\\\\trtv3@trtv.com.xpi\",\"mtime\":1372581844000},\"{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\MICA\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\gv3y8h66.default\\\\extensions\\\\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\",\"mtime\":1372938127031,\"rdfTime\":1372938126921}}}]");
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 3);
---- Lines browser.startup.page modified from prefs.js ----
---- FireFox user.js and prefs.js backups ----
prefs_06.07.2013_2139_.backup
==== Batch Command(s) Run By Tool======================
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
==== Deleting Files \ Folders ======================
"C:\DOCUME1\MICA\APPLIC1\Funmoods" not found
"C:\Program Files\IObit Apps Toolbar" not found
"C:\Program Files\TornTV.com" not found
"C:\Program Files\Common Files\Spigot" not found
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\pluswinks@PlusWinks" not found
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\addon@defaulttab.com.xpi" not found
"C:\Documents and Settings\MICA\Local Settings\Temp\Setup-D502DD2B71B5.exe" deleted
"C:\Documents and Settings\MICA\Local Settings\Temp\DeltaTB.exe" deleted
"C:\WINDOWS\Tasks\At1.job" deleted
"C:\WINDOWS\Temp\Optimizer_Pro.exe" deleted
"C:\Documents and Settings\MICA\Application Data\desktop.ini" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\chrome.manifest" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\install.rdf" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\install.rdf.old" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\content\.DS_Store" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\content\firefoxOverlay.xul" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\content\installid.js" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\content\overlay.js" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\content\vfdownload.js" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\content\vfdownload.js.old" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\defaults\.DS_Store" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\locale\.DS_Store" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\skin\overlay.css" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\defaults\preferences\.DS_Store" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\defaults\preferences\vfdownload.js" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\locale\en-US\.DS_Store" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\locale\en-US\._vfdownload.properties" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\locale\en-US\vfdownload.properties" deleted
"C:\Documents and Settings\All Users\Application Data\eSafe\eGdpSvc.exe" deleted
"C:\Documents and Settings\MICA\Application Data\PlusWinks" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\content" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\defaults" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\locale" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\skin" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\defaults\preferences" deleted
"C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default\extensions\{505CC4BC-9D39-4BA5-86E0-F25353D6D061}\locale\en-US" deleted
"C:\Program Files\MyPC Backup" deleted
"C:\Documents and Settings\MICA\Application Data\PlusWinks" deleted
"C:\Documents and Settings\MICA\Application Data\WinZipper" deleted
"C:\WINDOWS\System32\searchplugins" deleted
"C:\WINDOWS\System32\Extensions" deleted
"C:\Documents and Settings\All Users\Application Data\eSafe" not deleted
==== Firefox Extensions ======================
ProfilePath: C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default
- Undetermined - C:\Program Files\IObit Apps Toolbar\FF
- Torntv 3 - %ProfilePath%\extensions\trtv3@trtv.com.xpi
==== Firefox Plugins ======================
Profilepath: C:\Documents and Settings\MICA\Application Data\Mozilla\Firefox\Profiles\gv3y8h66.default
02C317A415A91112EDEF07AAC78AF6D5 - C:\Documents and Settings\MICA\Local Settings\Application Data\Google\Update\1.3.21.149\npGoogleUpdate3.dll - Google Update
3D76B5C0E02ECC19C1F5756E8FD97F72 - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll - Shockwave Flash
ABCB4A6EAB701C629378255ABCB308E5 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U25
D7324EB1EDCB8990F8522DE0311359E9 - C:\WINDOWS\system32\npDeployJava1.dll - Java Deployment Toolkit 7.0.250.17
3A523765D795DB006C010B915C3A840A - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
42A9B216A7A288512CE2F9A6BCCE96BC - C:\Program Files\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat
6B171450E38C8569DA7258FEE21E7D17 - C:\Program Files\Google\Picasa3\npPicasa3.dll - Picasa
28000D7EEB2FD95A36E1A7539F599C3B - C:\Program Files\Windows Media Player\npdrmv2.dll - Microsoft® DRM
5D41BCD19A3D90E4EBB58A6BFB79E4F7 - C:\Program Files\Windows Media Player\npdsplay.dll - Windows Media Player Plug-in Dynamic Link Library
8B6884E3E1E5F8ABA5FA0C6A2B13181D - C:\Program Files\Windows Media Player\npwmsdrm.dll - Microsoft® DRM
68A131335A20B343923A2957EB1E413D - C:\WINDOWS\system32\npptools.dll - Microsoft® Windows® Operating System
==== Chrome Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
bicnnkjibmphdeigoodpjlcklcnaobdj - C:\Program Files\TornTV.com\torntv10.crx[]
fkcinonjfpebnmicldhphndmkddgiomn - C:\Program Files\OApps\chrome-sl.crx[]
hbcennhacfaagdopikcegfcobcadeocj - C:\Program Files\Common Files\Spigot\GC\saebay_1.0.crx[]
icdlfehblmklkikfigmjhbmmpmkmpooj - C:\Program Files\Common Files\Spigot\GC\errorassistant_1.1.crx[]
mhkaekfpcppmmioggniknbnbdbcigpkk - C:\Program Files\Common Files\Spigot\GC\coupons_2.4.crx[]
mocblcnaofikinigmceddfghppkkjbog - C:\Documents and Settings\MICA\Application Data\PlusWinks\PlusWinks.crx[]
pfndaklgolladniicklehhancnlgocpp - C:\Program Files\Common Files\Spigot\GC\saamazon_1.0.crx[]
Select Links App - MICA - Default\Extensions\fkcinonjfpebnmicldhphndmkddgiomn
Ebay Shopping Assistant by Spigot - MICA - Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj
Domain Error Assistant - MICA - Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj
Slick Savings - MICA - Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk
Cool Smiley Bar for Facebook - MICA - Default\Extensions\mocblcnaofikinigmceddfghppkkjbog
Amazon Shopping Assistant by Spigot - MICA - Default\Extensions\pfndaklgolladniicklehhancnlgocpp
==== Chrome Fix ======================
C:\Documents and Settings\MICA\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\mocblcnaofikinigmceddfghppkkjbog deleted successfully
C:\Documents and Settings\MICA\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mocblcnaofikinigmceddfghppkkjbog_0.localstorage deleted successfully
C:\Documents and Settings\MICA\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mocblcnaofikinigmceddfghppkkjbog_0.localstorage-journal deleted successfully
C:\Documents and Settings\MICA\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj deleted successfully
C:\Documents and Settings\MICA\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj deleted successfully
C:\Documents and Settings\MICA\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk deleted successfully
C:\Documents and Settings\MICA\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp deleted successfully
C:\Documents and Settings\MICA\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fkcinonjfpebnmicldhphndmkddgiomn deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Search Bar"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://www.google.com"
"CustomizeSearch"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"CustomizeSearch"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm"
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} @ieframe.dll,-12512 Url="http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"
==== Reset Google Chrome ======================
C:\Documents and Settings\MICA\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Documents and Settings\MICA\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Reset IE Proxy ======================
Value(s) before fix:
"ProxyEnable"=dword:00000000
Value(s) after fix:
"ProxyEnable"=dword:00000000
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\mocblcnaofikinigmceddfghppkkjbog deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocj deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocpp deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\bicnnkjibmphdeigoodpjlcklcnaobdj deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\fkcinonjfpebnmicldhphndmkddgiomn deleted successfully
==== Empty IE Cache ======================
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\MICA\Local Settings\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Documents and Settings\MICA\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
==== Empty FireFox Cache ======================
No FireFox Cache found
==== Empty Chrome Cache ======================
C:\Documents and Settings\MICA\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\MICA\LOCALS~1\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\RECYCLER successfully emptied
==== Deleting Files / Folders ======================
"C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\Documents and Settings\MICA\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\Documents and Settings\All Users\Application Data\eSafe" not found
==== EOF on sub 06.07.2013 at 21:42:04,12 ======================
|