# AdwCleaner v4.111 - Logfile created 27/02/2015 at 01:15:56 # Updated 18/02/2015 by Xplode # Database : 2015-02-18.3 [Server] # Operating system : Windows Vista (TM) Home Premium Service Pack 1 (x86) # Username : NOWAK-LP - NOWAK-LP-PC # Running from : F:\adwcleaner_4.111.exe # Option : Scan ***** [ Services ] ***** Service Found : iSafeKrnl Service Found : iSafeKrnlBoot Service Found : iSafeKrnlKit Service Found : iSafeKrnlR3 Service Found : iSafeNetFilter Service Found : iSafeKrnlMon Service Found : {dcd044e6-adb7-46c3-8ece-3d3a0a33bf3a}Gt ***** [ Files / Folders ] ***** File Found : C:\Users\NOWAK\AppData\Roaming\Mozilla\Firefox\Profiles\siglqv9i.default\Extensions\{dcd044e6-adb7-46c3-8ece-3d3a0a33bf3a}.xpi File Found : C:\Users\NOWAK\AppData\Roaming\Mozilla\Firefox\Profiles\siglqv9i.default\user.js File Found : C:\Users\NOWAK\Desktop\Continue Live Installation.lnk File Found : C:\Users\NOWAK-LP\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage File Found : C:\Users\NOWAK-LP\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage-journal File Found : C:\Users\NOWAK-LP\AppData\Roaming\aps.uninstall.scan.results File Found : C:\Users\NOWAK-LP\AppData\Roaming\Mozilla\Firefox\Profiles\p0n1yvp8.default\user.js File Found : C:\Users\NOWAK-LP\Desktop\Continue Live Installation.lnk File Found : C:\Windows\patsearch.bin File Found : C:\Windows\system32\drivers\{dcd044e6-adb7-46c3-8ece-3d3a0a33bf3a}Gt.sys File Found : C:\Windows\system32\drivers\iSafeKrnlBoot.sys File Found : C:\Windows\system32\Drivers\iSafeNetFilter.sys File Found : C:\Windows\system32\drivers\Msft_Kernel_webinstrNHKT_01009.Wdf File Found : C:\Windows\system32\OptimizerMonitorOff.ini Folder Found : C:\Program Files\Elex-tech Folder Found : C:\Program Files\predm Folder Found : C:\ProgramData\64edc3dc0000124c Folder Found : C:\ProgramData\ParetoLogic Folder Found : C:\Users\NOWAK\AppData\Local\globalUpdate Folder Found : C:\Users\NOWAK\AppData\Local\gmsd_pl_49 Folder Found : C:\Users\NOWAK\AppData\Local\gmsd_pl_55 Folder Found : C:\Users\NOWAK\AppData\Local\SmartWeb Folder Found : C:\Users\NOWAK\AppData\LocalLow\SmartWeb Folder Found : C:\Users\NOWAK\AppData\Roaming\AnyProtectEx Folder Found : C:\Users\NOWAK\AppData\Roaming\eCyber Folder Found : C:\Users\NOWAK\AppData\Roaming\Elex-tech Folder Found : C:\Users\NOWAK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup Folder Found : C:\Users\NOWAK\AppData\Roaming\Mozilla\Firefox\Profiles\siglqv9i.default\Extensions\389579c4-efa9-4d96-a1dd-3c86f7bd1a51@gmail.com Folder Found : C:\Users\NOWAK\AppData\Roaming\Mozilla\Firefox\Profiles\siglqv9i.default\Extensions\6c03cee0ab9442c4a67a507@58d658df5a30468fabf5c7a.com Folder Found : C:\Users\NOWAK\AppData\Roaming\WinZipper Folder Found : C:\Users\NOWAK-LP\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh.crx Folder Found : C:\Users\NOWAK-LP\AppData\Local\Internet Speed Checker Folder Found : C:\Users\NOWAK-LP\AppData\Local\Microsoft\Silverlight\OutOfBrowser\Speedchecker.PCSpeedUp Folder Found : C:\Users\NOWAK-LP\AppData\Roaming\ap_logs Folder Found : C:\Users\NOWAK-LP\AppData\Roaming\eCyber Folder Found : C:\Users\NOWAK-LP\AppData\Roaming\Elex-tech Folder Found : C:\Users\NOWAK-LP\AppData\Roaming\Mozilla\Firefox\Profiles\p0n1yvp8.default\Extensions\detgdp@gmail.com Folder Found : C:\Users\NOWAK-LP\AppData\Roaming\pdfforge Folder Found : C:\Users\NOWAK-LP\AppData\Roaming\WinZipper Folder Found : C:\Users\NOWAK-LP\Documents\PCSpeedUp ***** [ Scheduled tasks ] ***** Task Found : c3209984-b1bb-4eb9-9882-8a64a02095f0-10_user Task Found : c3209984-b1bb-4eb9-9882-8a64a02095f0-5_user Task Found : ef7378cb-c2b1-4f9c-9903-06f9fc5c9bbf-10_user Task Found : ef7378cb-c2b1-4f9c-9903-06f9fc5c9bbf-5_user ***** [ Shortcuts ] ***** ***** [ Registry ] ***** Key Found : HKCU\Software\InstalledBrowserExtensions Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ConvertAd Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\gmsd_pl_55_is1 Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\IGS Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\igsc Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\iSafe Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SavePass 1.1 Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SmartWeb Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\VOPackage Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WindowsMangerProtect Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\winzipper Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WordProser_1.10.0.6 Key Found : HKCU\Software\Mozilla\Extends Key Found : HKCU\Software\ParetoLogic Key Found : HKCU\Software\Speedchecker Limited Key Found : HKLM\SOFTWARE\Elex-tech Key Found : HKLM\SOFTWARE\GAMESDESKTOP Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh Key Found : HKLM\SOFTWARE\hdcode Key Found : HKLM\SOFTWARE\InstalledBrowserExtensions Key Found : HKLM\SOFTWARE\ParetoLogic Key Found : HKLM\SOFTWARE\Speedchecker Limited Key Found : HKLM\SOFTWARE\Tutorials Key Found : HKLM\SOFTWARE\winzipersvc Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ConvertAd] Value Found : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [detgdp@gmail.com] ***** [ Web browsers ] ***** -\\ Internet Explorer v7.0.6001.18226 Setting Found : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://isearch.