# AdwCleaner v3.001 - Report created 27/08/2013 at 15:23:14 # Updated 24/08/2013 by Xplode # Operating System : Windows Vista (TM) Home Premium Service Pack 2 (32 bits) # Username : dom - DOM-PC # Running from : C:\Users\dom\Downloads\AdwCleaner_www.INSTALKI.pl.exe # Option : Clean ***** [ Services ] ***** [#] Service Deleted : winzipersvc [#] Service Deleted : WsysSvc ***** [ Files / Folders ] ***** Folder Deleted : C:\ProgramData\apn Folder Deleted : C:\ProgramData\BetterSoft Folder Deleted : C:\ProgramData\eSafe Folder Deleted : C:\ProgramData\StarApp Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZipper Folder Deleted : C:\Program Files\FTdownloader V4.0 Folder Deleted : C:\Program Files\SafeSaver Folder Deleted : C:\Program Files\WinZipper Folder Deleted : C:\Users\dom\AppData\Local\Temp\eIntaller Folder Deleted : C:\Users\dom\AppData\Roaming\WinZipper File Deleted : C:\Windows\System32\Tasks\Dealply File Deleted : C:\Windows\System32\Tasks\DealPlyUpdate File Deleted : C:\Windows\Tasks\FTdownloader V4.0-codedownloader.job File Deleted : C:\Windows\System32\Tasks\FTdownloader V4.0-codedownloader File Deleted : C:\Windows\Tasks\FTdownloader V4.0-enabler.job File Deleted : C:\Windows\System32\Tasks\FTdownloader V4.0-enabler File Deleted : C:\Windows\Tasks\FTdownloader V4.0-updater.job File Deleted : C:\Windows\System32\Tasks\FTdownloader V4.0-updater File Deleted : C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar ***** [ Shortcuts ] ***** Shortcut Disinfected : C:\Users\dom\Desktop\Mozilla Firefox.lnk Shortcut Disinfected : C:\Users\dom\Desktop\Inne programy\Przeglądarki\Google Chrome.lnk Shortcut Disinfected : C:\Users\dom\Desktop\Inne programy\Przeglądarki\Launch Internet Explorer Browser.lnk Shortcut Disinfected : C:\Users\dom\Desktop\Inne programy\Przeglądarki\Mozilla Firefox.lnk Shortcut Disinfected : C:\Users\dom\Desktop\Inne programy\Przeglądarki\Opera.lnk Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk Shortcut Disinfected : C:\Users\dom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk Shortcut Disinfected : C:\Users\dom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk Shortcut Disinfected : C:\Users\dom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk Shortcut Disinfected : C:\Users\dom\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk Shortcut Disinfected : C:\Users\dom\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk Shortcut Disinfected : C:\Users\dom\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Opera.lnk ***** [ Registry ] ***** Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\lgnbhdnimikkoodkogjlcllngimhlapp [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Dealply [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{202CBAF0-6C27-458E-90F2-66D87D3CD233} [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{202CBAF0-6C27-458E-90F2-66D87D3CD233} [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPlyUpdate [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{98D51CAD-2CF1-42DA-B4BE-6B3F042578D2} [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{98D51CAD-2CF1-42DA-B4BE-6B3F042578D2} [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FTdownloader V4.0-codedownloader [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{63B5710A-6075-4E82-A797-B87B3544B582} [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{63B5710A-6075-4E82-A797-B87B3544B582} [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FTdownloader V4.0-enabler [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{72B10391-4CC7-45BE-9860-43D93ABAB0E6} [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{72B10391-4CC7-45BE-9860-43D93ABAB0E6} [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FTdownloader V4.0-updater [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{439546C6-AFB4-41E3-8CCC-70C77C37018D} [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{439546C6-AFB4-41E3-8CCC-70C77C37018D} [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Scheduled Update for Ask Toolbar [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B2B2C5E8-A74D-405F-A01B-C6C53AFABB59} [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B2B2C5E8-A74D-405F-A01B-C6C53AFABB59} Key Deleted : HKLM\SOFTWARE\Classes\FTDownloader Key Deleted : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\cacaoweb [#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Funmoods Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\DeskSvc Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WsysSvc Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SP_09b71135 Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SP_0bdf5975 Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SP_b0285714 Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{14F35FFC-522A-4DD1-A07E-6B8B65C6891E} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A0B10EBE-4E51-4CAE-949B-E6B9E7D68CEA} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{BB975E58-E769-4E5A-BA12-B765BC559FF3} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F511AFDB-726E-4458-90E7-1ECB97406544} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{AC329328-7EC4-4C34-B672-0A2B90CB9B00} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{105CE2F6-6C71-4553-95DB-0521A2C0F060} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4AC48E96-EB40-4792-9D9D-70D59D8754BA} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5935E203-F846-461D-89DF-435059EFCBB8} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6419A700-23B8-46EA-800B-C0EA78E133A2} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9BC852D3-9D70-4611-9AFC-016840417A4C} Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Key Deleted : HKCU\Software\AppDataLow\Software\FTdownloader V4.0 Key Deleted : HKLM\Software\delta-homesSoftware Key Deleted : HKLM\Software\eSafeSecControl Key Deleted : HKLM\Software\FTdownloader V4.0 Key Deleted : HKLM\Software\V9 Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FTdownloader V4.0 Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\FTdownloader V4.0 Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WSysControl ***** [ Browsers ] ***** -\\ Internet Explorer v9.0.8112.16496 Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] -\\ Mozilla Firefox v18.0.2 (pl) [ File : C:\Users\dom\AppData\Roaming\Mozilla\Firefox\Profiles\bh04e4nn.default\prefs.js ] Line Deleted : user_pref("browser.search.defaultenginename", "delta-homes"); Line Deleted : user_pref("browser.search.order.1", "delta-homes"); Line Deleted : user_pref("browser.search.selectedEngine", "delta-homes"); Line Deleted : user_pref("browser.startup.homepage", "hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&from=newgdp&uid=ST3320620AS_9QF7VP80XXXX9QF7VP80&ts=1377170496"); Line Deleted : user_pref("extensions.510ed802abb01.scode", "if(window.self==window.top){var script=document.createElement(\"script\");script.type=\"text/javascript\";script.src=\"//cdncache-a.akamaihd.net/loaders/14[...] Line Deleted : user_pref("extensions.51822ffa0244a.scode", "if(window.top==window.self){new function(){if(!document.getElementById(\"__yael_once\")){var b=this,j=[\"horizontal\",\"vertical\",\"images-horizontal\",\"[...] Line Deleted : user_pref("extensions.5182303e608b5.scode", "if(-1