# AdwCleaner v3.001 - Report created 27/08/2013 at 12:04:51 # Updated 24/08/2013 by Xplode # Operating System : Windows 7 Professional Service Pack 1 (64 bits) # Username : Micha³ 2 - MICHA£-KOMPUTER # Running from : C:\Users\Micha³ 2\Desktop\AdwCleaner.exe # Option : Clean ***** [ Services ] ***** Service Deleted : WsysSvc ***** [ Files / Folders ] ***** [!] Folder Deleted : C:\ProgramData\BrowserDefender Folder Deleted : C:\ProgramData\InstallMate Folder Deleted : C:\ProgramData\Tarma Installer Folder Deleted : C:\ProgramData\saVeNsHaare Folder Deleted : C:\ProgramData\SearchNewTab Folder Deleted : C:\Program Files (x86)\delta Folder Deleted : C:\Program Files (x86)\WinZipper Folder Deleted : C:\Users\Micha³ 2\Qtrax Folder Deleted : C:\Users\Micha³ 2\AppData\Roaming\pdfforge Folder Deleted : C:\Users\Micha³ 2\AppData\Roaming\Systweak Folder Deleted : C:\Users\Micha³ 2\AppData\Roaming\Mozilla\Firefox\Profiles\wbkzynph.default-1371048184001\Extensions\ffxtlbr@babylon.com File Deleted : C:\Windows\System32\roboot64.exe File Deleted : C:\Users\Micha³ 2\AppData\Roaming\Mozilla\Firefox\Profiles\wbkzynph.default-1371048184001\searchplugins\WebSearch.xml File Deleted : C:\Users\Micha³ 2\AppData\Roaming\Mozilla\Firefox\Profiles\wbkzynph.default-1371048184001\user.js ***** [ Shortcuts ] ***** Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk Shortcut Disinfected : C:\Users\Micha³ 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk Shortcut Disinfected : C:\Users\Micha³ 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk Shortcut Disinfected : C:\Users\Micha³ 2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk Shortcut Disinfected : C:\Users\Micha³ 2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk Shortcut Disinfected : C:\Users\Micha³ 2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Opera.lnk ***** [ Registry ] ***** Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WsysSvc Key Deleted : HKLM\SOFTWARE\5f28c8ab36fed45 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_dla_frets-on-fire-x_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_dla_frets-on-fire-x_RASMANCS Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{539F76FD-084E-4858-86D5-62F02F54AE86} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AAA38851-3CFF-475F-B5E0-720D3645E4A5} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{26E7211D-0650-43CF-8498-4C81E83AEAAA} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{F13D3582-1359-4F8F-9A48-EF3AE9F5701C} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{AAA38851-3CFF-475F-B5E0-720D3645E4A5} Key Deleted : HKCU\Software\BabSolution Key Deleted : HKCU\Software\BI Key Deleted : HKCU\Software\DataMngr [#] Key Deleted : HKCU\Software\DataMngr_Toolbar Key Deleted : HKCU\Software\Delta Key Deleted : HKCU\Software\InstallCore Key Deleted : HKCU\Software\lollipop Key Deleted : HKCU\Software\systweak Key Deleted : HKCU\Software\AppDataLow\SProtector Key Deleted : HKLM\Software\DataMngr Key Deleted : HKLM\Software\Delta Key Deleted : HKLM\Software\delta-homesSoftware Key Deleted : HKLM\Software\eSafeSecControl Key Deleted : HKLM\Software\Minibar Key Deleted : HKLM\Software\qvo6Software Key Deleted : HKLM\Software\SP Global Key Deleted : HKLM\Software\SProtector Key Deleted : HKLM\Software\systweak Key Deleted : HKLM\Software\V9 Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IM Key Deleted : [x64] HKLM\SOFTWARE\Tarma Installer Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1 ***** [ Browsers ] ***** -\\ Internet Explorer v10.0.9200.16635 -\\ Mozilla Firefox v18.0.2 (pl) [ File : C:\Users\Micha³ 2\AppData\Roaming\Mozilla\Firefox\Profiles\wbkzynph.default-1371048184001\prefs.js ] Line Deleted : user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"m3ffxtbr@mywebsearch.com\":{\"descriptor\":\"C:\\\\Program Files (x86)\\\\MyWebSearch\\\\bar\\\\1.bin\",\"mtime\":1[...] Line Deleted : user_pref("browser.search.defaulturl", "hxxp://websearch.simplesearches.info/?pid=512&r=2013/08/21&hid=1590935762&lg=EN&cc=PL&unqvl=31&l=1&q="); -\\ Google Chrome v27.0.1453.110 [ File : C:\Users\Micha³ 2\AppData\Local\Google\Chrome\User Data\Default\preferences ] Deleted : homepage Deleted : urls_to_restore_on_startup ************************* AdwCleaner[R0].txt - [6612 octets] - [27/08/2013 12:03:12] AdwCleaner[S0].txt - [5626 octets] - [27/08/2013 12:04:51] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5686 octets] ##########