# AdwCleaner v3.212 - Log utworzony 12/06/2014 o 13:25:34 # Aktualizacja 05/06/2014 przez Xplode # System operacyjny : Windows 7 Professional Service Pack 1 (64 bits) # Użytkownik : Administrator - KUBU-08 # Ścieżka : C:\Users\Administrator\Desktop\adwcleaner_3.212.exe # Opcja : Szukaj ***** [ Usługi ] ***** Usługa Znaleziono : IePluginService Usługa Znaleziono : IePluginServices Usługa Znaleziono : Wpm ***** [ Pliki / Foldery ] ***** Folder Znaleziono : C:\Program Files (x86)\Mobogenie Folder Znaleziono : C:\Program Files (x86)\SupTab Folder Znaleziono : C:\Program Files (x86)\websavE Folder Znaleziono : C:\ProgramData\AlawarWrapper Folder Znaleziono : C:\ProgramData\IePluginService Folder Znaleziono : C:\ProgramData\IePluginServices Folder Znaleziono : C:\ProgramData\QuickSet Folder Znaleziono : C:\ProgramData\rvlkl Folder Znaleziono : C:\ProgramData\StarApp Folder Znaleziono : C:\ProgramData\Tarma Installer Folder Znaleziono : C:\ProgramData\websavE Folder Znaleziono : C:\ProgramData\WinterSoft Folder Znaleziono : C:\ProgramData\WPM Folder Znaleziono : C:\ProgramData\YoutubeAdblocker Folder Znaleziono : C:\Users\Administrator\AppData\Local\b1e Folder Znaleziono : C:\Users\Administrator\AppData\Local\genienext Folder Znaleziono : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo Folder Znaleziono : C:\Users\Administrator\AppData\Local\Mobogenie Folder Znaleziono : C:\Users\Administrator\AppData\Local\torch Folder Znaleziono : C:\Users\Administrator\AppData\LocalLow\Conduit Folder Znaleziono : C:\Users\Administrator\AppData\Roaming\337Games Folder Znaleziono : C:\Users\Administrator\AppData\Roaming\B1Toolbar Folder Znaleziono : C:\Users\Administrator\AppData\Roaming\goforfiles Folder Znaleziono : C:\Users\Administrator\AppData\Roaming\iSafe Folder Znaleziono : C:\Users\Administrator\AppData\Roaming\newnext.me Folder Znaleziono : C:\Users\Administrator\AppData\Roaming\SupTab Folder Znaleziono : C:\Users\Administrator\AppData\Roaming\Systweak Folder Znaleziono : C:\Users\Administrator\Documents\Mobogenie Folder Znaleziono : C:\Users\ASPNET\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjoapikcbmollbpfcofoifogbjfbnjm Folder Znaleziono : C:\Users\ASPNET\AppData\Local\Google\Chrome\User Data\Default\Extensions\glmnnokfogdpdppjbgihakgmjbljfapj Folder Znaleziono : C:\Users\ASPNET\AppData\Local\torch Folder Znaleziono : C:\Users\Gość\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjoapikcbmollbpfcofoifogbjfbnjm Folder Znaleziono : C:\Users\Gość\AppData\Local\Google\Chrome\User Data\Default\Extensions\glmnnokfogdpdppjbgihakgmjbljfapj Folder Znaleziono : C:\Users\Gość\AppData\Local\torch Folder Znaleziono : C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjoapikcbmollbpfcofoifogbjfbnjm Folder Znaleziono : C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\glmnnokfogdpdppjbgihakgmjbljfapj Folder Znaleziono : C:\Users\HomeGroupUser$\AppData\Local\torch Folder Znaleziono : C:\Users\kubu2\AppData\Local\torch Folder Znaleziono : C:\Users\mama\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjoapikcbmollbpfcofoifogbjfbnjm Folder Znaleziono : C:\Users\mama\AppData\Local\Google\Chrome\User Data\Default\Extensions\glmnnokfogdpdppjbgihakgmjbljfapj Folder Znaleziono : C:\Users\mama\AppData\Local\torch Plik Znaleziono : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\delta-homes.xml Plik Znaleziono : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\rvlkl.lnk Plik Znaleziono : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\searchswitch.crx Plik Znaleziono : C:\Users\kubu2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_continuetosave.info_0.localstorage-journal Plik Znaleziono : C:\Users\mama\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_continuetosave.info_0.localstorage-journal Plik Znaleziono : C:\Users\mama\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage Plik Znaleziono : C:\Users\mama\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage-journal Plik Znaleziono : C:\Windows\System32\roboot64.exe Plik Znaleziono : C:\Windows\System32\Tasks\GoforFilesUpdate ***** [ Skróty ] ***** Skrót Znaleziono : C:\Users\Public\Desktop\Google Chrome.lnk ( hxxp://www.delta-homes.com/?type=sc&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 ) Skrót Znaleziono : C:\Users\Public\Desktop\Mozilla Firefox.lnk ( hxxp://www.delta-homes.com/?type=sc&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 ) Skrót Znaleziono : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk ( hxxp://www.delta-homes.com/?type=sc&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 ) Skrót Znaleziono : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk ( hxxp://www.delta-homes.com/?type=sc&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 ) Skrót Znaleziono : C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk ( hxxp://www.delta-homes.com/?type=sc&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 ) Skrót Znaleziono : C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk ( hxxp://www.delta-homes.com/?type=sc&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 ) Skrót Znaleziono : C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk ( hxxp://www.delta-homes.com/?type=sc&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 ) Skrót Znaleziono : C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk ( hxxp://www.delta-homes.com/?type=sc&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 ) Skrót Znaleziono : C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk ( hxxp://www.delta-homes.com/?type=sc&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 ) ***** [ Rejestr ] ***** Dane Znaleziono : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command [(Default)] - "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" hxxp://www.delta-homes.com/?type=sc&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 Dane Znaleziono : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command [(Default)] - "c:\program files (x86)\google\chrome\application\chrome.exe" hxxp://www.delta-homes.com/?type=sc&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 Dane Znaleziono : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command [(Default)] - "c:\program files\internet explorer\iexplore.exe" hxxp://www.delta-homes.com/?type=sc&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 Klucz Znaleziono : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Klucz Znaleziono : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Klucz Znaleziono : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Klucz Znaleziono : HKLM\SOFTWARE\Classes\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} Klucz Znaleziono : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC} Klucz Znaleziono : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534} Klucz Znaleziono : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8} Klucz Znaleziono : HKLM\SOFTWARE\Classes\TypeLib\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D} Klucz Znaleziono : HKLM\SOFTWARE\Classes\TypeLib\{DCABB943-792E-44C4-9029-ECBEE6265AF9} Klucz Znaleziono : HKLM\Software\delta-homesSoftware Klucz Znaleziono : HKLM\Software\GoforFiles Klucz Znaleziono : HKLM\Software\IePlugin Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4250488A-CB24-0893-C066-B1AEA57BCFF2} Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32 Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\biclient_RASAPI32 Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\biclient_RASMANCS Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\Lollipop_RASAPI32 Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\Lollipop_RASMANCS Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\mconduitinstaller_RASAPI32 Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\mconduitinstaller_RASMANCS Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_dla_keylogger-gratis_RASAPI32 Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_dla_keylogger-gratis_RASMANCS Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_dla_vlc-media-player-nightly-64bit_RASAPI32 Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_dla_vlc-media-player-nightly-64bit_RASMANCS Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32 Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32 Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507} Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A35CA8FF-CB7D-8361-1CB9-83219CD11C78} Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C670DCAE-E392-AA32-6F42-143C7FC4BDFD} Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IM Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\S-747939423 Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SupTab Klucz Znaleziono : HKLM\Software\nationzoomSoftware Klucz Znaleziono : HKLM\Software\PIP Klucz Znaleziono : HKLM\Software\SProtector Klucz Znaleziono : HKLM\Software\SupDp Klucz Znaleziono : HKLM\Software\SupTab Klucz Znaleziono : HKLM\Software\supWPM Klucz Znaleziono : HKLM\Software\systweak Klucz Znaleziono : HKLM\Software\Wpm Klucz Znaleziono : [x64] HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534} Klucz Znaleziono : [x64] HKLM\SOFTWARE\Classes\Interface\{3D1E2CA3-890D-4528-B816-2216F0E16E27} Klucz Znaleziono : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8} Klucz Znaleziono : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67} Klucz Znaleziono : [x64] HKLM\SOFTWARE\Classes\Interface\{D0EC4142-5808-41D2-A4DC-6081CF1A9693} Klucz Znaleziono : [x64] HKLM\SOFTWARE\Classes\Interface\{D54C859C-6066-4F31-8FE0-2AAEDCAE67D7} Klucz Znaleziono : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Klucz Znaleziono : [x64] HKLM\SOFTWARE\Speedchecker Limited ***** [ Przeglądarki internetowe ] ***** -\\ Internet Explorer v11.0.9600.17126 Ustawienie Znaleziono : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page] - hxxp://search.delta-homes.com/web/?type=ds&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43&q={searchTerms} Ustawienie Znaleziono : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.delta-homes.com/?type=hp&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 Ustawienie Znaleziono : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://www.delta-homes.com/?type=hp&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 Ustawienie Znaleziono : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL] - hxxp://search.delta-homes.com/web/?type=ds&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43&q={searchTerms} Ustawienie Znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - hxxp://www.nationzoom.com/web/?type=ds&ts=1388709341&from=slbnew&uid=395049983_397234_D0F45E43&q={searchTerms} Ustawienie Znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://www.delta-homes.com/?type=hp&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 Ustawienie Znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.delta-homes.com/?type=hp&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 Ustawienie Znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - hxxp://www.nationzoom.com/web/?type=ds&ts=1388709341&from=slbnew&uid=395049983_397234_D0F45E43&q={searchTerms} Ustawienie Znaleziono : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - hxxp://search.delta-homes.com/web/?type=ds&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43&q={searchTerms} Ustawienie Znaleziono : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://www.delta-homes.com/?type=hp&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 Ustawienie Znaleziono : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.delta-homes.com/?type=hp&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 Ustawienie Znaleziono : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - hxxp://search.delta-homes.com/web/?type=ds&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43&q={searchTerms} -\\ Mozilla Firefox v29.0.1 (pl) [ Plik : C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\yi8og7jy.default\prefs.js ] Wpis znaleziony : user_pref("browser.newtab.url", "hxxp://www.delta-homes.com/newtab/?type=nt&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43"); Wpis znaleziony : user_pref("browser.search.defaultenginename", "delta-homes"); Wpis znaleziony : user_pref("browser.search.selectedEngine", "delta-homes"); Wpis znaleziony : user_pref("browser.startup.homepage", "hxxp://www.delta-homes.com/?type=hp&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43"); [ Plik : C:\Users\kubu2\AppData\Roaming\Mozilla\Firefox\Profiles\n35gf258.default\prefs.js ] -\\ Google Chrome v35.0.1916.114 [ Plik : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\preferences ] Znaleziono [Startup_urls] : hxxp://www.delta-homes.com/?type=hp&ts=1402565099&from=wpm0612&uid=395049983_397234_D0F45E43 Znaleziono [Extension] : ogfjmhfnldnajmfaofeiaepghjenbgjo [ Plik : C:\Users\kubu2\AppData\Local\Google\Chrome\User Data\Default\preferences ] Znaleziono [Extension] : pelmeidfhdlhlbjimpabfcbnnojbboma [ Plik : C:\Users\mama\AppData\Local\Google\Chrome\User Data\Default\preferences ] Znaleziono [Extension] : ckjoapikcbmollbpfcofoifogbjfbnjm Znaleziono [Extension] : glmnnokfogdpdppjbgihakgmjbljfapj ************************* AdwCleaner[R0].txt - [15666 octets] - [12/06/2014 13:25:34] ########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [15727 octets] ##########