# AdwCleaner v3.001 - Report created 27/08/2013 at 12:03:12 # Updated 24/08/2013 by Xplode # Operating System : Windows 7 Professional Service Pack 1 (64 bits) # Username : Micha³ 2 - MICHA£-KOMPUTER # Running from : C:\Users\Micha³ 2\Desktop\AdwCleaner.exe # Option : Scan ***** [ Services ] ***** Service Found : WsysSvc ***** [ Files / Folders ] ***** File Found : C:\Users\Micha³ 2\AppData\Roaming\Mozilla\Firefox\Profiles\wbkzynph.default-1371048184001\searchplugins\WebSearch.xml File Found : C:\Users\Micha³ 2\AppData\Roaming\Mozilla\Firefox\Profiles\wbkzynph.default-1371048184001\user.js File Found : C:\Windows\System32\roboot64.exe Folder Found : C:\Users\Micha³ 2\AppData\Roaming\Mozilla\Firefox\Profiles\wbkzynph.default-1371048184001\Extensions\ffxtlbr@babylon.com Folder Found C:\Program Files (x86)\delta Folder Found C:\Program Files (x86)\WinZipper Folder Found C:\ProgramData\BrowserDefender Folder Found C:\ProgramData\InstallMate Folder Found C:\ProgramData\saVeNsHaare Folder Found C:\ProgramData\SearchNewTab Folder Found C:\ProgramData\Tarma Installer Folder Found C:\Users\Micha³ 2\AppData\Roaming\pdfforge Folder Found C:\Users\Micha³ 2\AppData\Roaming\Systweak Folder Found C:\Users\Micha³ 2\Qtrax ***** [ Shortcuts ] ***** Shortcut Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk ( hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=SAMSUNGXHD502HI_S1VZJ90SA71429&ts=1377082787 ) Shortcut Found : C:\Users\Micha³ 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk ( hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=SAMSUNGXHD502HI_S1VZJ90SA71429&ts=1377082787 ) Shortcut Found : C:\Users\Micha³ 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk ( hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=SAMSUNGXHD502HI_S1VZJ90SA71429&ts=1377082787 ) Shortcut Found : C:\Users\Micha³ 2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk ( hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=SAMSUNGXHD502HI_S1VZJ90SA71429&ts=1377082787 ) Shortcut Found : C:\Users\Micha³ 2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk ( hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=SAMSUNGXHD502HI_S1VZJ90SA71429&ts=1377082787 ) Shortcut Found : C:\Users\Micha³ 2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Opera.lnk ( hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=SAMSUNGXHD502HI_S1VZJ90SA71429&ts=1377082787 ) ***** [ Registry ] ***** Key Found : HKCU\Software\AppDataLow\SProtector Key Found : HKCU\Software\BabSolution Key Found : HKCU\Software\BI Key Found : HKCU\Software\DataMngr Key Found : HKCU\Software\DataMngr_Toolbar Key Found : HKCU\Software\Delta Key Found : HKCU\Software\InstallCore Key Found : HKCU\Software\lollipop Key Found : HKCU\Software\systweak Key Found : [x64] HKCU\Software\BabSolution Key Found : [x64] HKCU\Software\BI Key Found : [x64] HKCU\Software\DataMngr Key Found : [x64] HKCU\Software\DataMngr_Toolbar Key Found : [x64] HKCU\Software\Delta Key Found : [x64] HKCU\Software\InstallCore Key Found : [x64] HKCU\Software\lollipop Key Found : [x64] HKCU\Software\systweak Key Found : HKLM\SOFTWARE\5f28c8ab36fed45 Key Found : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} Key Found : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} Key Found : HKLM\SOFTWARE\Classes\CLSID\{539F76FD-084E-4858-86D5-62F02F54AE86} Key Found : HKLM\SOFTWARE\Classes\CLSID\{AAA38851-3CFF-475F-B5E0-720D3645E4A5} Key Found : HKLM\SOFTWARE\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899} Key Found : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC} Key Found : HKLM\SOFTWARE\Classes\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4} Key Found : HKLM\SOFTWARE\Classes\Interface\{26E7211D-0650-43CF-8498-4C81E83AEAAA} Key Found : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899} Key Found : HKLM\SOFTWARE\Classes\Prod.cap Key Found : HKLM\SOFTWARE\Classes\TypeLib\{F13D3582-1359-4F8F-9A48-EF3AE9F5701C} Key Found : HKLM\Software\DataMngr Key Found : HKLM\Software\Delta Key Found : HKLM\Software\delta-homesSoftware Key Found : HKLM\Software\eSafeSecControl Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{AAA38851-3CFF-475F-B5E0-720D3645E4A5} Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32 Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_dla_frets-on-fire-x_RASAPI32 Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_dla_frets-on-fire-x_RASMANCS Key Found : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32 Key Found : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS Key Found : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32 Key Found : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IM Key Found : HKLM\Software\Minibar Key Found : HKLM\Software\qvo6Software Key Found : HKLM\Software\SP Global Key Found : HKLM\Software\SProtector Key Found : HKLM\Software\systweak Key Found : HKLM\Software\V9 Key Found : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WsysSvc Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1 Key Found : [x64] HKLM\SOFTWARE\Tarma Installer ***** [ Browsers ] ***** -\\ Internet Explorer v10.0.9200.16635 -\\ Mozilla Firefox v18.0.2 (pl) [ File : C:\Users\Micha³ 2\AppData\Roaming\Mozilla\Firefox\Profiles\wbkzynph.default-1371048184001\prefs.js ] Line Found : user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"m3ffxtbr@mywebsearch.com\":{\"descriptor\":\"C:\\\\Program Files (x86)\\\\MyWebSearch\\\\bar\\\\1.bin\",\"mtime\":1[...] Line Found : user_pref("browser.search.defaulturl", "hxxp://websearch.simplesearches.info/?pid=512&r=2013/08/21&hid=1590935762&lg=EN&cc=PL&unqvl=31&l=1&q="); -\\ Google Chrome v27.0.1453.110 [ File : C:\Users\Micha³ 2\AppData\Local\Google\Chrome\User Data\Default\preferences ] Found : homepage Found : urls_to_restore_on_startup ************************* AdwCleaner[R0].txt - [6432 octets] - [27/08/2013 12:03:12] ########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [6492 octets] ##########