======= REPORT FROM AD-REMOVER 2.0.0.2,G | ONLY XP/VISTA/7 ======= Updated by TeamXscript on 12/04/11 Contact: AdRemover[DOT]contact[AT]gmail[DOT]com website: http://www.teamxscript.org C:\Program Files\Ad-Remover\main.exe (SCAN [3]) -> Launched at 23:46:19 on 16/08/2011, Normal boot Microsoft Windows 7 Home Premium Service Pack 1 (X86) Micha莆JOKER (LENOVO 20017) ============== SEARCH ============== -- File opened: C:\Users\Micha許AppData\Roaming\Mozilla\FireFox\Profiles\y2h24drg.default\Prefs.js -- Line found: user_pref("extensions.vshare@toolbar.update.enabled", false); Line found: user_pref("keyword.URL", "hxxp://vshare.toolbarhome.com/search.aspx?srch=ku&q="); Line found: user_pref("vshare.install.date", "1304553600000"); Line found: user_pref("vshare.install.dumpFileCount", 0); Line found: user_pref("vshare.install.dumpFileDisabled", false); Line found: user_pref("vshare.install.finished", "1.0.0"); Line found: user_pref("vshare.install.guardCount", 1); Line found: user_pref("vshare.install.guardPopupCount", 1); Line found: user_pref("vshare.install.guid", "{84c4c917-8630-4933-8414-a5943189da0e}"); Line found: user_pref("vshare.install.isDisabled", false); Line found: user_pref("vshare.install.isHidden", true); Line found: user_pref("vshare.install.istoolbarhp", true); Line found: user_pref("vshare.install.istoolbarsearch", true); Line found: user_pref("vshare.install.laststatreq", "1313452800000"); Line found: user_pref("vshare.install.newtab", true); Line found: user_pref("vshare.install.newtabDisabledByUser", true); Line found: user_pref("vshare.install.overlayVersion", 1); Line found: user_pref("vshare.install.userHPSettings", "hxxp://google.pl/"); Line found: user_pref("vshare.install.userSPSettings", ""); -- File closed -- ============== ADDITIONNAL SCAN ============== **** Mozilla Firefox Version [3.6.20 (pl)] **** HKLM_MozillaPlugins\@rayv.com/rayvplugin (x) Searchplugins\allegro-pl.xml (hxxp://www.allegro.pl/search.php?string={searchTerms}&sourceid=Mozilla-search) Searchplugins\fbc-pl.xml (hxxp://fbc.pionier.net.pl/owoc/results) Searchplugins\merlin-pl.xml (hxxp://www.merlin.com.pl/frontend/search?sourceid=Mozilla-search&fraza={searchTerms}&skad=crhhxmkohb) Searchplugins\pwn-pl.xml (hxxp://encyklopedia.pwn.pl/szukaj.php?co={searchTerms}) Searchplugins\wikipedia-pl.xml (hxxp://pl.wikipedia.org/wiki/Specjalna:Szukaj) Searchplugins\wp-pl.xml (hxxp://szukaj.wp.pl/szukaj.html?z=T&r=T&szukaj={searchTerms}) Extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} (Skype extension ) HKLM_Extensions|smartwebprinting@hp.com - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 HKCU_Extensions|smartwebprinting@hp.com - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 -- C:\Users\Micha許AppData\Roaming\Mozilla\FireFox\Profiles\y2h24drg.default -- Prefs.js - browser.download.dir, B:\\download Prefs.js - browser.download.lastDir, C:\\Users\\Micha許\Desktop Prefs.js - browser.search.defaultenginename, Prefs.js - browser.startup.homepage, hxxp://google.pl/ Prefs.js - browser.startup.homepage_override.mstone, rv:1.9.2.20 Prefs.js - keyword.URL, hxxp://vshare.toolbarhome.com/search.aspx?srch=ku&q= ======================================== **** Google Chrome Version [11.0.696.65] **** Extension\icmlaeflemplmjndnaapfdbbnpncnbda (C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx) (?) Extension\jfmjfhklogoienhpfnppmbcbjfjnkonk (C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Chrome\Ext\rphtml5video.crx) (?) Extension\lifbcibllhkdhoafpjfnlhfpfgnpldfl (C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx) (?) -- C:\Users\Micha許AppData\Local\Google\Chrome\User Data\Default -- Preferences - default_search_provider: "Google" (Enabled: true) (?) Preferences - homepage: hxxp://www.google.com/ Preferences - homepage_is_newtabpage: false Plugin - Chrome NaCl (Enabled: false) (C:\Users\Micha\u0142\AppData\Local\Google\Chrome\Application\11.0.696.65\ppGoogleNaClPluginChrome.dll) (x) Plugin - RealJukebox NS Plugin (Enabled: true) (C:\Program Files\Mozilla Firefox\plugins\nprjplug.dll) Plugin - RayV Plugin (Enabled: true) (C:\Program Files\RayV\RayV\plugins\nprayvplugin.dll) Plugin - "Java" (Enabled: true) Plugin - "Silverlight" (Enabled: true) Plugin - "Chrome NaCl" (Enabled: false) Plugin - "RealJukebox NS Plugin" (Enabled: true) Plugin - "RayV Plugin" (Enabled: true) ======================================== **** Internet Explorer Version [8.0.7601.17514] **** HKCU_Main|Default_Page_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU_Main|Search bar - hxxp://go.microsoft.com/fwlink/?linkid=54896 HKCU_Main|Start Page - hxxp://fr.msn.com/ HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm HKLM_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM_Main|Start Page - hxxp://fr.msn.com/ HKCU_Toolbar\WebBrowser|{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} (C:\Program Files\Windows Live Toolbar\msntb.dll) HKLM_Toolbar|{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} (C:\Program Files\Windows Live Toolbar\msntb.dll) HKLM_Toolbar|{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} (C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll) HKLM_ElevationPolicy\{07d873dc-b9b9-44f5-af0b-fb59fa54fb7a} - C:\Windows\System32\wpcer.exe (x) HKLM_ElevationPolicy\{0a402d70-1f10-4ae7-bec9-286a98240695} - C:\Windows\System32\winfxdocobj.exe (x) HKLM_ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999} - C:\Program Files\Internet Explorer\iedw.exe (x) HKLM_ElevationPolicy\{F459C053-BD3B-4e2f-9B15-F6EE9ADD67C8} - C:\Program Files\RayV\RayV\RayV.exe (RayV) HKLM_Extensions\{CCA281CA-C863-46ef-9331-5C8D4460577F} - "@C:\Program Files\Lenovo\Bluetooth Software\btrez.dll,-4015" (C:\Program Files\Lenovo\Bluetooth Software\bt_cold_icon.ico) BHO\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - "SSVHelper Class" (C:\Program Files\Java\jre6\bin\ssv.dll) BHO\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - "avast! WebRep" (C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll) BHO\{F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - "IEPluginBHO Class" (C:\Users\Micha許AppData\Roaming\Nowe Gadu-Gadu\_userdata\ggbho.1.dll) ======================================== C:\Program Files\Ad-Remover\Quarantine: 12 File(s) C:\Program Files\Ad-Remover\Backup: 18 File(s) C:\Ad-Report-CLEAN[1].txt - 16/08/2011 22:58:14 (7936 Byte(s)) C:\Ad-Report-CLEAN[2].txt - 16/08/2011 23:36:50 (7079 Byte(s)) C:\Ad-Report-SCAN[1].txt - 16/08/2011 19:10:23 (7849 Byte(s)) C:\Ad-Report-SCAN[2].txt - 16/08/2011 23:16:34 (6970 Byte(s)) C:\Ad-Report-SCAN[3].txt - 16/08/2011 23:46:25 (7004 Byte(s)) End at: 23:47:59, 16/08/2011 ============== E.O.F ==============