# AdwCleaner v3.311 - Report created 06/10/2014 at 12:36:18 # Updated 30/09/2014 by Xplode # Operating System : Windows 8.1 (64 bits) # Username : Kami - KAMIL # Running from : C:\Users\Kami\Downloads\adwcleaner_3.311_www.INSTALKI.pl.exe # Option : Scan ***** [ Services ] ***** Service Found : globalUpdatem Service Found : iSafeKrnl Service Found : iSafeKrnlBoot Service Found : iSafeKrnlKit Service Found : iSafeKrnlR3 Service Found : iSafeNetFilter Service Found : iSafeService Service Found : {c5e48979-bd7f-4cf7-9b73-2482a67a4f37}Gw64 ***** [ Files / Folders ] ***** File Found : C:\Users\Kami\AppData\Roaming\Mozilla\Firefox\Profiles\wz2poede.default\searchplugins\trovi-search.xml File Found : C:\Users\Kami\AppData\Roaming\Mozilla\Firefox\Profiles\wz2poede.default\user.js File Found : C:\Windows\System32\drivers\{c5e48979-bd7f-4cf7-9b73-2482a67a4f37}Gw64.sys File Found : C:\Windows\System32\drivers\iSafeKrnlBoot.sys File Found : C:\Windows\System32\log\iSafeKrnlCall.log Folder Found : C:\Users\Kami\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnanplinmmnjhobaliikmelmmjpoogkb Folder Found : C:\Users\Kami\AppData\Local\Temp\iSafeRightKeyScan Folder Found : C:\Users\Kami\AppData\Roaming\eCyber Folder Found : C:\Users\Kami\AppData\Roaming\SimilarAddon ***** [ Scheduled Tasks ] ***** Task Found : globalUpdateUpdateTaskMachineCore Task Found : globalUpdateUpdateTaskMachineUA Task Found : 61801931-efb7-47a0-8ef6-a883b323e7e1 Task Found : 6a019302-cb81-4088-83ce-c71f3473fca9 Task Found : 7d62e959-d186-4f1b-9316-a28b4f649da4 Task Found : d0f7f8da-1bc1-4381-b2ea-8d20c5e1b71b-1 Task Found : d0f7f8da-1bc1-4381-b2ea-8d20c5e1b71b-11 Task Found : d0f7f8da-1bc1-4381-b2ea-8d20c5e1b71b-2 Task Found : d0f7f8da-1bc1-4381-b2ea-8d20c5e1b71b-3 Task Found : d0f7f8da-1bc1-4381-b2ea-8d20c5e1b71b-4 Task Found : d0f7f8da-1bc1-4381-b2ea-8d20c5e1b71b-5 Task Found : d0f7f8da-1bc1-4381-b2ea-8d20c5e1b71b-5_user ***** [ Shortcuts ] ***** ***** [ Registry ] ***** Key Found : HKCU\Software\genesis Key Found : HKCU\Software\GlobalUpdate Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611171162} Key Found : [x64] HKCU\Software\genesis Key Found : [x64] HKCU\Software\GlobalUpdate Key Found : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492} Key Found : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52} Key Found : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB} Key Found : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611171162} Key Found : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172262} Key Found : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492} Key Found : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978} Key Found : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298} Key Found : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52} Key Found : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1} Key Found : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30} Key Found : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7} Key Found : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61} Key Found : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87} Key Found : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5} Key Found : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474} Key Found : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} Key Found : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC} Key Found : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F} Key Found : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A} Key Found : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C} Key Found : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78} Key Found : HKLM\SOFTWARE\Classes\CrossriderApp0061762.BHO Key Found : HKLM\SOFTWARE\Classes\CrossriderApp0061762.BHO.1 Key Found : HKLM\SOFTWARE\Classes\CrossriderApp0061762.Sandbox Key Found : HKLM\SOFTWARE\Classes\CrossriderApp0061762.Sandbox.1 Key Found : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10 Key Found : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine Key Found : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0 Key Found : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4 Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0 Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1 Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1 Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0 Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0 Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0 Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0 Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0 Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0 Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0 Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0 Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc Key Found : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0 Key Found : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175562} Key Found : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666176662} Key Found : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174462} Key Found : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174462} Key Found : HKLM\SOFTWARE\GlobalUpdate Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298} Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1} Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171162} Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298} Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iSafe Key Found : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginServices Key Found : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611171162} Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172262} Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{5411D116-5A37-47D4-B154-5F7FCD9062F0} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175562} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666176662} Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171162} ***** [ Browsers ] ***** -\\ Internet Explorer v0.0.0.0 Setting Found : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Secondary_Page_URL] - hxxp://mystart.toshiba.com Setting Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - hxxp://www.sweet-page.com/web/?type=ds&ts=1409256732&from=cor&uid=TOSHIBAXMQ01ABF050_Z35KCSNVTXXZ35KCSNVT&q={searchTerms} Setting Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Secondary_Page_URL] - hxxp://mystart.toshiba.com Setting Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - hxxp://www.sweet-page.com/web/?type=ds&ts=1409256732&from=cor&uid=TOSHIBAXMQ01ABF050_Z35KCSNVTXXZ35KCSNVT&q={searchTerms} Setting Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Secondary Start Pages] - hxxp://mystart.toshiba.com Setting Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - hxxp://www.sweet-page.com/web/?type=ds&ts=1409256732&from=cor&uid=TOSHIBAXMQ01ABF050_Z35KCSNVTXXZ35KCSNVT&q={searchTerms} Setting Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Secondary_Page_URL] - hxxp://mystart.toshiba.com Setting Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - hxxp://www.sweet-page.com/web/?type=ds&ts=1409256732&from=cor&uid=TOSHIBAXMQ01ABF050_Z35KCSNVTXXZ35KCSNVT&q={searchTerms} Setting Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Secondary Start Pages] - hxxp://mystart.toshiba.com -\\ Mozilla Firefox v32.0.3 (x86 pl) [ File : C:\Users\Kami\AppData\Roaming\Mozilla\Firefox\Profiles\wz2poede.default\prefs.js ] Line Found : user_pref("extensions.a0b105cbff1eb40b89bca7dae371d7ead239035fb4613ab38efcom61762.61762.internaldb.__ICM_LITE__blacklist_domain.value", "%7B%22SLIDERS%22%3A%5B%226pm.com%22%2C%22amazon.co.uk%22%2C%22a[...] Line Found : user_pref("extensions.a0b105cbff1eb40b89bca7dae371d7ead239035fb4613ab38efcom61762.61762.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D[...] Line Found : user_pref("extensions.crossrider.bic", "147f909b0575de00be5132451ac56503"); Line Found : user_pref("extensions.quick_start.enable_search1", false); Line Found : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); -\\ Google Chrome v [ File : C:\Users\Kami\AppData\Local\Google\Chrome\User Data\Default\preferences ] Found [Extension] : mnanplinmmnjhobaliikmelmmjpoogkb ************************* AdwCleaner[R0].txt - [10852 octets] - [06/10/2014 12:36:18] ########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [10913 octets] ##########