======= REPORT FROM AD-REMOVER 2.0.0.2,G | ONLY XP/VISTA/7 ======= Updated by TeamXscript on 12/04/11 Contact: AdRemover[DOT]contact[AT]gmail[DOT]com website: http://www.teamxscript.org C:\Program Files (x86)\Ad-Remover\main.exe (SCAN [2]) -> Launched at 17:45:04 on 30/08/2011, Normal boot Microsoft Windows 7 Home Premium (X64) VOBIS@HE (VOBIS System Product Name) ============== SEARCH ============== ============== ADDITIONNAL SCAN ============== **** Mozilla Firefox Version [3.6.20 (pl)] **** HKLM_MozillaPlugins\Adobe Reader (x) Searchplugins\allegro-pl.xml (hxxp://www.allegro.pl.anonymize-me.de/?) Searchplugins\fbc-pl.xml (hxxp://fbc.pionier.net.pl.anonymize-me.de/?) Searchplugins\merlin-pl.xml (hxxp://www.merlin.com.pl.anonymize-me.de/?) Searchplugins\pwn-pl.xml (hxxp://encyklopedia.pwn.pl.anonymize-me.de/?) Searchplugins\wikipedia-pl.xml (hxxp://pl.wikipedia.org.anonymize-me.de/?) Searchplugins\wp-pl.xml (hxxp://szukaj.wp.pl.anonymize-me.de/?) HKLM_Extensions|msntoolbar@msn.com - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2237.0\Firefox HKLM_Extensions|{BBDA0591-3099-440a-AA10-41764D9DB4DB} - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\IPSFFPlgn\ HKLM_Extensions|{2D3F3651-74B9-4795-BDEC-6DA2F431CB62} - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\coFFPlgn\ -- C:\Users\VOBIS\AppData\Roaming\Mozilla\FireFox\Profiles\036b0bu1.default -- Searchplugins\{4D21CCCC-AE2E-428E-9441-B567F1DABC4B}.xml (hxxp://www.pricerunner.de.anonymize-me.de/?) Searchplugins\{746E5F59-14F6-4B0C-94E3-385EF165B553}.xml (hxxp://search.ebay.de.anonymize-me.de/?) Searchplugins\{8176BE01-C017-4DE0-A6A7-B7889C26C426}.xml (hxxp://www.otto.de.anonymize-me.de/?) Searchplugins\{8C4C96D9-6C64-4EFD-B08E-3A2BB0A5B85C}.xml (hxxp://www.amazon.de.anonymize-me.de/?) Searchplugins\{FAFF05EE-D7C5-4FAB-A670-EB61270BC02C}.xml (hxxp://www.myvideo.de.anonymize-me.de/?) Prefs.js - browser.startup.homepage, hxxp://www.google.pl/ Prefs.js - browser.startup.homepage_override.mstone, false Prefs.js - keyword.URL, hxxp://www.google.com/cse?cx=partner-pub-5462406484424654%3A8q0sn8-w2ss&ie=ISO-8859-1&q= ======================================== **** Internet Explorer Version [8.0.7600.16385] **** HKCU_Main|Default_Page_URL - hxxp://www.vobis.pl HKCU_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=69157 HKLM_Main|Default_Search_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM_Main|Search Page - hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM_Main|Start Page - hxxp://go.microsoft.com/fwlink/?LinkId=69157 HKCU_URLSearchHooks|{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} (x) HKCU_SearchScopes\{03059A2E-A680-4F28-B363-C9FBEBA029CF} - "MyVideo" (hxxp://www.myvideo.de.anonymize-me.de/?to=6D79766964656F2E6465&st={searchTerms}&...) HKCU_SearchScopes\{0C630E69-0883-46CA-B466-A1B78B66039E} - "Preisvergleich" (hxxp://www.pricerunner.de.anonymize-me.de/?to=707269636572756E6E65722E6465&st={s...) HKCU_SearchScopes\{343A92D8-FB46-4278-BBF1-2A9E39210C68} - "eBay.de" (hxxp://search.ebay.de.anonymize-me.de/?to=656261792E6465&st={searchTerms}&clid=a...) HKCU_SearchScopes\{A4E9346F-4A6E-4CF7-BE6A-0AB398F0053A} - "Wikipedia" (hxxp://de.wikipedia.org.anonymize-me.de/?to=64652E77696B6970656469612E6F7267&st=...) HKCU_SearchScopes\{B0C02313-7862-4470-AEBB-230EE5780666} - "Amazon" (hxxp://www.amazon.de.anonymize-me.de/?to=616D617A6F6E2E6465&st={searchTerms}&cli...) HKCU_SearchScopes\{F8990F95-FDAE-435A-8BC0-BDC118632349} - "OTTO" (hxxp://www.otto.de.anonymize-me.de/?to=6F74746F2E6465&st={searchTerms}&clid=aca2...) HKCU_Toolbar\WebBrowser|{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} (x) HKLM_Toolbar|{8dcb7100-df86-4384-8842-8fa844297b3f} (C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2237.0\npwinext.dll) HKLM_ElevationPolicy\{07d873dc-b9b9-44f5-af0b-fb59fa54fb7a} - C:\Windows\SysWOW64\wpcer.exe (x) HKLM_ElevationPolicy\{0a402d70-1f10-4ae7-bec9-286a98240695} - C:\Windows\SysWOW64\winfxdocobj.exe (x) HKLM_ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999} - C:\Program Files (x86)\Internet Explorer\iedw.exe (x) HKLM_ElevationPolicy\{B43A0C1E-B63F-4691-B68F-CD807A45DA01} - C:\windows\system32\TSWbPrxy.exe (x) BHO\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - "Search Helper" (C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll) BHO\{9030D464-4C02-4ABF-8ECC-5164760863C6} - "Pomocnik logowania za pomocą identyfikatora Windows Live" (C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll) ======================================== C:\Program Files (x86)\Ad-Remover\Quarantine: 0 File(s) C:\Program Files (x86)\Ad-Remover\Backup: 1 File(s) C:\Ad-Report-SCAN[1].txt - 30/08/2011 15:37:47 (5623 Byte(s)) C:\Ad-Report-SCAN[2].txt - 30/08/2011 17:45:10 (4926 Byte(s)) End at: 17:45:40, 30/08/2011 ============== E.O.F ==============