# AdwCleaner v6.046 - Logfile created 14/05/2017 at 15:21:19 # Updated on 24/04/2017 by Malwarebytes # Database : 2017-05-13.1 [Server] # Operating System : Windows 7 Home Premium Service Pack 1 (X64) # Username : paulinka - PAULINKA-TOSH # Running from : C:\Users\paulinka\Downloads\AdwCleaner.exe # Mode: Scan # Support : https://www.malwarebytes.com/support ***** [ Services ] ***** No malicious services found. ***** [ Folders ] ***** Folder Found: C:\Users\paulinka\AppData\Local\Conduit Folder Found: C:\Users\paulinka\AppData\Local\FileViewPro Folder Found: C:\Users\paulinka\AppData\Local\globalUpdate Folder Found: C:\Users\paulinka\AppData\Local\PackageAware Folder Found: C:\Users\paulinka\AppData\LocalLow\Conduit Folder Found: C:\Users\paulinka\AppData\Roaming\Activeris Folder Found: C:\Users\paulinka\AppData\Roaming\Babylon Folder Found: C:\Users\paulinka\AppData\Roaming\Hola Folder Found: C:\Users\paulinka\AppData\Roaming\RPEng Folder Found: C:\Users\paulinka\AppData\Roaming\Solvusoft Folder Found: C:\Program Files\Hola Folder Found: C:\ProgramData\Babylon Folder Found: C:\ProgramData\DSearchLink Folder Found: C:\ProgramData\Partner Folder Found: C:\ProgramData\Tarma Installer Folder Found: C:\ProgramData\Application Data\Babylon Folder Found: C:\ProgramData\Application Data\DSearchLink Folder Found: C:\ProgramData\Application Data\Partner Folder Found: C:\ProgramData\Application Data\Tarma Installer Folder Found: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajaInternetEn Folder Found: C:\Program Files (x86)\globalUpdate Folder Found: C:\Program Files (x86)\myfree codec Folder Found: C:\Program Files (x86)\predm Folder Found: C:\Users\paulinka\APPDATA\LOCALLOW\DELTA ***** [ Files ] ***** File Found: C:\Windows\SysNative\roboot64.exe File Found: C:\END File Found: C:\user.js ***** [ DLL ] ***** No malicious DLLs found. ***** [ WMI ] ***** No malicious keys found. ***** [ Shortcuts ] ***** No infected shortcut found. ***** [ Scheduled Tasks ] ***** No malicious task found. ***** [ Registry ] ***** Value Found: HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [C:\Program Files (x86)\Plus-HD-9.1\Plus-HD-9.1-nova.exe] Key Found: HKCU\Software\5d53d988bd3abe14 Key Found: HKLM\SOFTWARE\5d53d988bd3abe14 Key Found: HKLM\SOFTWARE\Classes\Toolbar.CT3106777 Key Found: HKLM\SOFTWARE\Classes\OCComSDK.ComSDK Key Found: HKLM\SOFTWARE\Classes\OCComSDK.ComSDK.1 Key Found: HKLM\SOFTWARE\Classes\Prod.cap Key Found: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho Key Found: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1 Key Found: HKLM\SOFTWARE\Classes\SdcUser.SdcMailCtl Key Found: HKLM\SOFTWARE\Classes\SdcUser.SdcMailCtl.1 Key Found: [x64] HKLM\SOFTWARE\Classes\OCComSDK.ComSDK Key Found: [x64] HKLM\SOFTWARE\Classes\OCComSDK.ComSDK.1 Key Found: [x64] HKLM\SOFTWARE\Classes\Prod.cap Key Found: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho Key Found: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1 Key Found: [x64] HKLM\SOFTWARE\Classes\SdcUser.SdcMailCtl Key Found: [x64] HKLM\SOFTWARE\Classes\SdcUser.SdcMailCtl.1 Key Found: HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB} Key Found: HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} Key Found: HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17} Key Found: HKCU\Software\Classes\CLSID\{BEBBC426-4F16-4567-8FE1-BE198C982027} Key Found: HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36} Key Found: HKLM\SOFTWARE\Classes\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146} Key Found: HKLM\SOFTWARE\Classes\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} Key Found: HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5} Key Found: HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270} Key Found: HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} Key Found: HKLM\SOFTWARE\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552} Key Found: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE} Key Found: HKU\.DEFAULT\Software\Hola Key Found: HKU\.DEFAULT\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Key Found: HKU\S-1-5-19\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Key Found: HKU\S-1-5-20\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\APN PIP Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\BABSOLUTION Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\Cr_Installer Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\DataMngr Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\DataMngr_Toolbar Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\dsiteproducts Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\GlobalUpdate Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\Hola Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\InstallCore Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\Myfree Codec Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\Softonic Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\TutoTag Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\WajIEnhance Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\delta Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\Datamngr Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\AppDataLow\Software\Crossrider Key Found: HKU\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec Key Found: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\SweetIM Key Found: HKU\S-1-5-18\Software\Hola Key Found: HKU\S-1-5-18\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Key Found: HKCU\Software\APN PIP Key Found: HKCU\Software\BABSOLUTION Key Found: HKCU\Software\Cr_Installer Key Found: HKCU\Software\DataMngr Key Found: HKCU\Software\DataMngr_Toolbar Key Found: HKCU\Software\dsiteproducts Key Found: HKCU\Software\GlobalUpdate Key Found: HKCU\Software\Hola Key Found: HKCU\Software\InstallCore Key Found: HKCU\Software\Myfree Codec Key Found: HKCU\Software\Softonic Key Found: HKCU\Software\TutoTag Key Found: HKCU\Software\WajIEnhance Key Found: HKCU\Software\delta Key Found: HKCU\Software\Datamngr Key Found: HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Key Found: HKCU\Software\AppDataLow\Software\Crossrider Key Found: HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F} Key Found: HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} Key Found: HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C} Key Found: HKLM\SOFTWARE\Babylon Key Found: HKLM\SOFTWARE\BabylonToolbar Key Found: HKLM\SOFTWARE\Conduit Key Found: HKLM\SOFTWARE\DataMngr Key Found: HKLM\SOFTWARE\FreeSoftToday Key Found: HKLM\SOFTWARE\GlobalUpdate Key Found: HKLM\SOFTWARE\Myfree Codec Key Found: HKLM\SOFTWARE\Taronja Key Found: HKLM\SOFTWARE\Tutorials Key Found: HKLM\SOFTWARE\V9Software Key Found: HKLM\SOFTWARE\WajaInternetEn Key Found: HKLM\SOFTWARE\delta Key Found: HKLM\SOFTWARE\Datamngr Key Found: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1822749172-3988503527-1915266406-1000\Software\SweetIM Key Found: [x64] HKCU\Software\APN PIP Key Found: [x64] HKCU\Software\BABSOLUTION Key Found: [x64] HKCU\Software\Cr_Installer Key Found: [x64] HKCU\Software\DataMngr Key Found: [x64] HKCU\Software\DataMngr_Toolbar Key Found: [x64] HKCU\Software\dsiteproducts Key Found: [x64] HKCU\Software\GlobalUpdate Key Found: [x64] HKCU\Software\Hola Key Found: [x64] HKCU\Software\InstallCore Key Found: [x64] HKCU\Software\Myfree Codec Key Found: [x64] HKCU\Software\Softonic Key Found: [x64] HKCU\Software\TutoTag Key Found: [x64] HKCU\Software\WajIEnhance Key Found: [x64] HKCU\Software\delta Key Found: [x64] HKCU\Software\Datamngr Key Found: [x64] HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Key Found: [x64] HKCU\Software\AppDataLow\Software\Crossrider Key Found: [x64] HKLM\SOFTWARE\Hola Key Found: [x64] HKLM\SOFTWARE\Tarma Installer Key Found: [x64] HKLM\SOFTWARE\WajaInternetEn Key Found: [x64] HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec Key Found: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\getpricepeep.com Key Found: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\adobe-reader.en.softonic.com Key Found: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\babylon.com Key Found: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\delta-search.com Key Found: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\free-pdf-reader.en.softonic.com Key Found: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\search.babylon.com Key Found: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\softonic.com Key Found: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\v9.com Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\getpricepeep.com Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\adobe-reader.en.softonic.com Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\babylon.com Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\delta-search.com Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\free-pdf-reader.en.softonic.com Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\search.babylon.com Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\softonic.com Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\v9.com Key Found: HKCU\Software\Google\Chrome\Extensions\bakijjialdiiboeaknfpmflphhmljfkd Key Found: HKLM\SOFTWARE\Google\Chrome\Extensions\bakijjialdiiboeaknfpmflphhmljfkd Key Found: [x64] HKCU\Software\Google\Chrome\Extensions\bakijjialdiiboeaknfpmflphhmljfkd Key Found: [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\bakijjialdiiboeaknfpmflphhmljfkd Key Found: HKCU\Software\Google\Chrome\Extensions\iagcajndpnfncplednpbnkahadegklfa Key Found: HKLM\SOFTWARE\Google\Chrome\Extensions\iagcajndpnfncplednpbnkahadegklfa Key Found: [x64] HKCU\Software\Google\Chrome\Extensions\iagcajndpnfncplednpbnkahadegklfa Key Found: [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\iagcajndpnfncplednpbnkahadegklfa ***** [ Web browsers ] ***** No malicious Firefox based browser items found. Chrome pref Found: [C:\Users\paulinka\AppData\Local\Google\Chrome\User Data\Profile 1\Secure Preferences ] - iagcajndpnfncplednpbnkahadegklfa ************************* C:\AdwCleaner\AdwCleaner[S0].txt - [11480 Bytes] - [14/05/2017 15:21:19] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [11554 Bytes] ##########