# AdwCleaner v4.208 - Utworzono raport 29/07/2015 o 15:00:12 # Ostatnia aktualizacja 09/07/2015 przez Xplode # Baza danych : 2015-07-26.2 [Serwer] # System operacyjny : Windows 7 Professional Service Pack 1 (x64) # Nazwa użytkownika : The Rockabilly Moose - LUCKY7 # Uruchomiony z : C:\Users\The Rockabilly Moose\Downloads\adwcleaner_4.208.exe # Działanie : Skanuj ***** [ Usługi ] ***** Usługa znaleziono : BrsHelper Usługa znaleziono : globalUpdatem ***** [ Pliki / Foldery ] ***** Folder znaleziono : C:\Program Files (x86)\FriendlyError Folder znaleziono : C:\Program Files (x86)\predm Folder znaleziono : C:\Users\The Rockabilly Moose\AppData\Local\38464E43-1438072318-5131-364D-001E68BF5227 Folder znaleziono : C:\Users\The Rockabilly Moose\AppData\Local\globalUpdate Folder znaleziono : C:\Users\The Rockabilly Moose\AppData\Local\PriceFountain Folder znaleziono : C:\Users\The Rockabilly Moose\AppData\LocalLow\SmartWeb Folder znaleziono : C:\Users\The Rockabilly Moose\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YTDownloader Folder znaleziono : C:\Users\The Rockabilly Moose\AppData\Roaming\Opera Software\Opera Stable\Extensions\kfgaibfbmkjgmimhbbaikfnpkkjkpoan Folder znaleziono : C:\Users\THEROC~1\AppData\Local\Temp\Dynamo Combo Plik znaleziono : C:\Program Files\Common Files\System\SysMenu64.dll Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage-journal Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage-journal Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage-journal Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage-journal Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage-journal Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Roaming\f9CcQOjbbEJM6XqlSWselq Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Roaming\lZsXrsxuwPtK4sb Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Roaming\Opera Software\Opera Stable\databases\chrome-extension_kfgaibfbmkjgmimhbbaikfnpkkjkpoan_0 Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\kfgaibfbmkjgmimhbbaikfnpkkjkpoan Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_kfgaibfbmkjgmimhbbaikfnpkkjkpoan_0.localstorage Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_kfgaibfbmkjgmimhbbaikfnpkkjkpoan_0.localstorage-journal Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.mystartsearch.com_0.localstorage Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.mystartsearch.com_0.localstorage-journal Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Roaming\ow08EDAhklV2dk1xYjnFd Plik znaleziono : C:\Users\The Rockabilly Moose\AppData\Roaming\pxjvB42VC ***** [ Zaplanowane zadania ] ***** Zadanie znaleziono : AmiUpdXp Zadanie znaleziono : Price Fountain Zadanie znaleziono : ShopperPro Zadanie znaleziono : ShopperProJSUpd Zadanie znaleziono : SmartWeb Upgrade Trigger Task Zadanie znaleziono : SMupdate1 Zadanie znaleziono : SPDriver Zadanie znaleziono : YTDownloader Zadanie znaleziono : YTDownloaderUpd Zadanie znaleziono : Microsoft\Windows\Multimedia\SMupdate3 Zadanie znaleziono : Microsoft\Windows\Maintenance\SMupdate2 Zadanie znaleziono : amiupdaterExd Zadanie znaleziono : amiupdaterExi Zadanie znaleziono : WordShark Auto Updater 1.10.0.19 Pending Update Zadanie znaleziono : WordShark Auto Updater 1.10.0.19 Core Zadanie znaleziono : f9CcQOjbbEJM6XqlSWselq Zadanie znaleziono : lZsXrsxuwPtK4sb Zadanie znaleziono : ow08EDAhklV2dk1xYjnFd Zadanie znaleziono : pxjvB42VC Zadanie znaleziono : 6b15b71d-e9ca-468b-975b-1fbdcce33901-1-6 Zadanie znaleziono : 6b15b71d-e9ca-468b-975b-1fbdcce33901-1-7 Zadanie znaleziono : 6b15b71d-e9ca-468b-975b-1fbdcce33901-11 Zadanie znaleziono : 6b15b71d-e9ca-468b-975b-1fbdcce33901-4 Zadanie znaleziono : 6b15b71d-e9ca-468b-975b-1fbdcce33901-5 Zadanie znaleziono : 6b15b71d-e9ca-468b-975b-1fbdcce33901-5_user Zadanie znaleziono : 6b15b71d-e9ca-468b-975b-1fbdcce33901-6 Zadanie znaleziono : 6b15b71d-e9ca-468b-975b-1fbdcce33901-7 Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-1-6 Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-1-7 Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-10_user Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-11 Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-3 Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-4 Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-5 Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-5_user Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-6 Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-7 Zadanie znaleziono : d79d3ad9-3073-4f2f-bb8f-ce5165b67056-1-6 Zadanie znaleziono : d79d3ad9-3073-4f2f-bb8f-ce5165b67056-1-7 Zadanie znaleziono : d79d3ad9-3073-4f2f-bb8f-ce5165b67056-11 Zadanie znaleziono : d79d3ad9-3073-4f2f-bb8f-ce5165b67056-4 Zadanie znaleziono : d79d3ad9-3073-4f2f-bb8f-ce5165b67056-5 Zadanie znaleziono : d79d3ad9-3073-4f2f-bb8f-ce5165b67056-5_user Zadanie znaleziono : d79d3ad9-3073-4f2f-bb8f-ce5165b67056-6 Zadanie znaleziono : d79d3ad9-3073-4f2f-bb8f-ce5165b67056-7 Zadanie znaleziono : 6b15b71d-e9ca-468b-975b-1fbdcce33901-1-6 Zadanie znaleziono : 6b15b71d-e9ca-468b-975b-1fbdcce33901-1-7 Zadanie znaleziono : 6b15b71d-e9ca-468b-975b-1fbdcce33901-11 Zadanie znaleziono : 6b15b71d-e9ca-468b-975b-1fbdcce33901-4 Zadanie znaleziono : 6b15b71d-e9ca-468b-975b-1fbdcce33901-5 Zadanie znaleziono : 6b15b71d-e9ca-468b-975b-1fbdcce33901-5_user Zadanie znaleziono : 6b15b71d-e9ca-468b-975b-1fbdcce33901-6 Zadanie znaleziono : 6b15b71d-e9ca-468b-975b-1fbdcce33901-7 Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-1-6 Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-1-7 Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-10_user Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-11 Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-3 Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-4 Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-5 Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-5_user Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-6 Zadanie znaleziono : d59333a8-5a81-4e27-9758-659c69d84942-7 Zadanie znaleziono : d79d3ad9-3073-4f2f-bb8f-ce5165b67056-1-6 Zadanie znaleziono : d79d3ad9-3073-4f2f-bb8f-ce5165b67056-1-7 Zadanie znaleziono : d79d3ad9-3073-4f2f-bb8f-ce5165b67056-11 Zadanie znaleziono : d79d3ad9-3073-4f2f-bb8f-ce5165b67056-4 Zadanie znaleziono : d79d3ad9-3073-4f2f-bb8f-ce5165b67056-5 Zadanie znaleziono : d79d3ad9-3073-4f2f-bb8f-ce5165b67056-5_user Zadanie znaleziono : d79d3ad9-3073-4f2f-bb8f-ce5165b67056-6 Zadanie znaleziono : d79d3ad9-3073-4f2f-bb8f-ce5165b67056-7 Zadanie znaleziono : SPBIW_UpdateTask_Time_313239303833313030372d3437415a556c2a3223346c41 ***** [ Skróty ] ***** Skrót Zainfekowany : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2K Games\Mafia II\Mafia II Launcher.lnk Skrót Zainfekowany : C:\Users\The Rockabilly Moose\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk Skrót Zainfekowany : C:\Users\The Rockabilly Moose\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk Skrót Zainfekowany : C:\Users\The Rockabilly Moose\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk ***** [ Rejestr ] ***** Dane znaleziono : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command [(Default)] - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.mystartsearch.com/?type=sc&ts=1438065672&z=e3c00fa6c07881b934ce02egdz5c8bfeeqew7q7obw&from=cmi&uid=WDCXWD3200BEVT-60ZCT0_WD-WXE608N5573055730 Klucz znaleziono : HKCU\Software\APN PIP Klucz znaleziono : HKCU\Software\AppDataLow\Software\SmartWeb Klucz znaleziono : HKCU\Software\Crossbrowse Klucz znaleziono : HKCU\Software\InstalledBrowserExtensions Klucz znaleziono : HKCU\Software\Kromtech Klucz znaleziono : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} Klucz znaleziono : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C} Klucz znaleziono : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1F91A9A1-01BA-4C81-863D-3BA0751E1419} Klucz znaleziono : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B608CC98-54DE-4775-96C9-097DE398500C} Klucz znaleziono : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1F91A9A1-01BA-4C81-863D-3BA0751E1419} Klucz znaleziono : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B608CC98-54DE-4775-96C9-097DE398500C} Klucz znaleziono : HKCU\Software\Mozilla\Extends Klucz znaleziono : HKCU\Software\PriceFountain Klucz znaleziono : HKCU\Software\YorkNewCin Klucz znaleziono : [x64] HKCU\Software\APN PIP Klucz znaleziono : [x64] HKCU\Software\Crossbrowse Klucz znaleziono : [x64] HKCU\Software\InstalledBrowserExtensions Klucz znaleziono : [x64] HKCU\Software\Kromtech Klucz znaleziono : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} Klucz znaleziono : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} Klucz znaleziono : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C} Klucz znaleziono : [x64] HKCU\Software\PriceFountain Klucz znaleziono : [x64] HKCU\Software\YorkNewCin Klucz znaleziono : HKLM\SOFTWARE\56c18039-3b59-4bbe-bbea-0bd7ed3865b0 Klucz znaleziono : HKLM\SOFTWARE\a272a74a-2e99-4d77-8a40-c7bb504931fb Klucz znaleziono : HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\SysMenuExt Klucz znaleziono : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492} Klucz znaleziono : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52} Klucz znaleziono : HKLM\SOFTWARE\Classes\AppID\{D813D5BB-EBC7-45F9-B8A4-36A305168069} Klucz znaleziono : HKLM\SOFTWARE\Classes\AppID\globalupdate.exe Klucz znaleziono : HKLM\SOFTWARE\Classes\AppID\SysMenu.DLL Klucz znaleziono : HKLM\SOFTWARE\Classes\CLSID\{1F91A9A1-01BA-4C81-863D-3BA0751E1419} Klucz znaleziono : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298} Klucz znaleziono : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96} Klucz znaleziono : HKLM\SOFTWARE\Classes\CLSID\{6EDBF8C0-C94C-4A13-956F-E393BCA5BA4B} Klucz znaleziono : HKLM\SOFTWARE\Classes\CLSID\{B608CC98-54DE-4775-96C9-097DE398500C} Klucz znaleziono : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC} Klucz znaleziono : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A} Klucz znaleziono : HKLM\SOFTWARE\Crossbrowse Klucz znaleziono : HKLM\SOFTWARE\d84c574d-96f3-44bd-8bd4-0b104d41967f Klucz znaleziono : HKLM\SOFTWARE\InstalledBrowserExtensions Klucz znaleziono : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\globalupdate.exe Klucz znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\YTDownloader.exe Klucz znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1F91A9A1-01BA-4C81-863D-3BA0751E1419} Klucz znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} Klucz znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B608CC98-54DE-4775-96C9-097DE398500C} Klucz znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298} Klucz znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} Klucz znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC} Klucz znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} Klucz znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FriendlyError Klucz znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Linkey Klucz znaleziono : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10 Klucz znaleziono : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4 Klucz znaleziono : HKLM\SOFTWARE\searchult Klucz znaleziono : HKLM\SOFTWARE\SpeedBit Klucz znaleziono : HKLM\SYSTEM\CurrentControlSet\Control\Class\{0014298C-A9BA-440D-AAA8-AD12C7010EE5} Klucz znaleziono : HKLM\SYSTEM\CurrentControlSet\Control\Class\{181A06EA-B82C-47DE-B851-E20FD0E1CC7D} Klucz znaleziono : [x64] HKLM\SOFTWARE\Classes\CLSID\{020B1D4B-5738-4C77-9E19-4F173DD9B486} Klucz znaleziono : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions Klucz znaleziono : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} Wartość znaleziono : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [pricefountainw.exe] Wartość znaleziono : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [defsearchp@gmail.com] ***** [ Przeglądarki internetowe ] ***** -\\ Internet Explorer v11.0.9600.17909 Ustawienia znaleziono : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page] - hxxp://www.mystartsearch.com/web/?type=dspp&ts=1438065749&z=574eb54365a7e4b9b61198dg0z9cdb2e7q2wfmdebo&from=cmi&uid=WDCXWD3200BEVT-60ZCT0_WD-WXE608N5573055730&q={searchTerms} Ustawienia znaleziono : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.mystartsearch.com/?type=hppp&ts=1438065749&z=574eb54365a7e4b9b61198dg0z9cdb2e7q2wfmdebo&from=cmi&uid=WDCXWD3200BEVT-60ZCT0_WD-WXE608N5573055730 Ustawienia znaleziono : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://www.mystartsearch.com/?type=hppp&ts=1438065749&z=574eb54365a7e4b9b61198dg0z9cdb2e7q2wfmdebo&from=cmi&uid=WDCXWD3200BEVT-60ZCT0_WD-WXE608N5573055730 Ustawienia znaleziono : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL] - hxxp://www.mystartsearch.com/web/?type=dspp&ts=1438065749&z=574eb54365a7e4b9b61198dg0z9cdb2e7q2wfmdebo&from=cmi&uid=WDCXWD3200BEVT-60ZCT0_WD-WXE608N5573055730&q={searchTerms} Ustawienia znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - hxxp://www.mystartsearch.com/web/?type=ds&ts=1438065672&z=e3c00fa6c07881b934ce02egdz5c8bfeeqew7q7obw&from=cmi&uid=WDCXWD3200BEVT-60ZCT0_WD-WXE608N5573055730&q={searchTerms} Ustawienia znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://www.mystartsearch.com/?type=hppp&ts=1438065749&z=574eb54365a7e4b9b61198dg0z9cdb2e7q2wfmdebo&from=cmi&uid=WDCXWD3200BEVT-60ZCT0_WD-WXE608N5573055730 Ustawienia znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.mystartsearch.com/?type=hppp&ts=1438065749&z=574eb54365a7e4b9b61198dg0z9cdb2e7q2wfmdebo&from=cmi&uid=WDCXWD3200BEVT-60ZCT0_WD-WXE608N5573055730 Ustawienia znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - hxxp://www.mystartsearch.com/web/?type=ds&ts=1438065672&z=e3c00fa6c07881b934ce02egdz5c8bfeeqew7q7obw&from=cmi&uid=WDCXWD3200BEVT-60ZCT0_WD-WXE608N5573055730&q={searchTerms} Ustawienia znaleziono : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - hxxp://www.mystartsearch.com/web/?type=ds&ts=1438065672&z=e3c00fa6c07881b934ce02egdz5c8bfeeqew7q7obw&from=cmi&uid=WDCXWD3200BEVT-60ZCT0_WD-WXE608N5573055730&q={searchTerms} Ustawienia znaleziono : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://www.mystartsearch.com/?type=hppp&ts=1438065749&z=574eb54365a7e4b9b61198dg0z9cdb2e7q2wfmdebo&from=cmi&uid=WDCXWD3200BEVT-60ZCT0_WD-WXE608N5573055730 Ustawienia znaleziono : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.mystartsearch.com/?type=hppp&ts=1438065749&z=574eb54365a7e4b9b61198dg0z9cdb2e7q2wfmdebo&from=cmi&uid=WDCXWD3200BEVT-60ZCT0_WD-WXE608N5573055730 Ustawienia znaleziono : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - hxxp://www.mystartsearch.com/web/?type=ds&ts=1438065672&z=e3c00fa6c07881b934ce02egdz5c8bfeeqew7q7obw&from=cmi&uid=WDCXWD3200BEVT-60ZCT0_WD-WXE608N5573055730&q={searchTerms} -\\ Mozilla Firefox v39.0 (x86 pl) -\\ Google Chrome v44.0.2403.107 [C:\Users\The Rockabilly Moose\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - znaleziono [Homepage] : hxxp://www.google.pl/","homepage_changed":true,"homepage_is_newtabpage":false,"pinned_tabs":[],"prefs":{"preference_reset_time":"13065385619333511"},"protection":{"macs":{"browser":{"show_home_button":"41A3B0CCBF81FD59D840E71682B5A492EEDDECF57E2611E623D4187130002A62"},"default_search_provider":{"keyword":"28D7DBF453ACF60FBE50E969A467CD9CAA872B3507EAF6F913098F753B4E34ED","name":"7416127F49600D76EE49EBAFF26900B21077C72F898256CF9E57F362C43DF72B","search_url":"9AACB37DF80FC14732597465A143BF0344DE1F4F1C0E63348D94A543FF30792E"},"default_search_provider_data":{"template_url_data":"6A2B8E8ED2865A9060B6513D5FA701493CCC4A17EF51AB92741E1201F57E55C7"},"extensions":{"settings":{"aapocclcgogkmnckokdopfmhonfmgoek":"E445FD4211DE556723961575D3ADAC662523C205BEDDE016E3EACE0031CD9FE5","ahfgeienlihckogmohjhadlkjgocpleb":"D2E61553D06B6185671744CE6A04D752518CD55102F3ED04EA86ED6302779EBD","aohghmighlieiainnegkcijnfilokake":"71A0C34FFD08A9F178E2EB1F7099ECCF3C2022CB9D5572033EA6BBA8B6F2A701","apdfllckaahabafndbhieahigkjlhalf":"7170F1399764AF34382C7820D679D9DAB05697FD32F79F99E928294A7D1BE280","bepbmhgboaologfdajaanbcjmnhjmhfn":"9871D339A1AD7C95CEB62DE855DE8B12D4D3662D4F1D179459A87ECDBC2B7620","blpcfgokakmgnkcojhhkbfbldkacnbeo":"92F7ACE137F243D7CBA8043C4ECA6E1562E8E1A2F2A9524233619A14987E227A","cbcamgjnadknkkohnmddledcoemjffea":"CEE2CCEE43BAE7EF2161387724B6F4B00D4D2B755C8C0C1D68A3E25519BB42F1","coobgpohoikkiipiblmjeljniedjpjpf":"D08A478F1A0757C39619FB6B83E2AE7A7B41CB3DC72ADAF9B3D1428FB7881B38","eemcgdkfndhakfknompkggombfjjjeno":"35C224612199822EEFF2813C5F4CAC11172045D6DB299445D16F6652681A06D8","ennkphjdgehloodpbhlhldgbnhmacadg":"08E94E6DE7BD1B81F5A4FDA6E1DD733E3C6D289AF2F4E171656D3F8AE894C9D0","felcaaldnbdncclmgdcncolpebgiejap":"AE2B4169D22C66F54BE3F792C4BC495FBD59435FBFC9461CC12C9C898187495B","flliilndjeohchalpbbcdekjklbdgfkk":"7F78CA65B68813897305670D92DC4088D57590645C9E690FFDEAE2056872DFB4","gfdkimpbcpahaombhbimeihdjnejgicl":"083543ED0EF1F922F5370433150401B93A35998A9A35E5ABDD648553CCFCAF30","kmendfapggjehodndflmmgagdbamhnfd":"EAB8F6671148B3F7F79E4304BD02F13EB5AF3E436889E03A73448E165745FE28","mfehgcgbbipciphmccgaenjidiccnmng":"E7D07568220B0E04260BE5B4CCC24AAF5B16BAADF907D7802C7DF4CD3EBBF772","mfffpogegjflfpflabcdkioaeobkgjik":"0FAECC4AE77FBE3723DE5E7D84C125AFD368390E46FFE933D48D6B1A897B2D7D","mgndgikekgjfcpckkfioiadnlibdjbkf":"2611593B2BBE7D55CBBFBD0F97F3A04EBD3612E9FF878AB864964E243696A15E","mhjfbmdgcfjbbpaeojofohoefgiehjai":"41FFF95B5FBD9E7B07F62C37BB4C4888FD5AA6AF52590A966E366F3FBA97A446","mpcddcfoblbgmnaklcpkbfajnfikinhn":"7BB059C62611D27C658B58EA9757437C069D4E7857442A27048D8F00FF85BD93","neajdppkdcdipfabeoofebfddakdcjhd":"9697B37088EFC2E26F057FF1C7801404F114165D2BE799B147608BE52C544862","nfhopoibjodcfbppkiginpbcpekbdgln":"533CC0F742298D1EF32491AE2EFF02AB60BBD25981ED32F616B1C6DE6645AA7A","nkeimhogjdpnpccoofpliimaahmaaome":"40D74A0C6F461FF8BC50C5C6C27865DCB2377D852EC522F44AAEC8EBB18C4FF2","nmmhkkegccagdldgiimedpiccmgmieda":"49579B1C0AA5C450F39194D25A0594948F95AD5C2D70A82C0882C7BFF97A2777","pafkbggdmjlpgkdkcbjmhmfcdpncadgh":"C02B3BC0857FEB9923499F68AA3C0B0DB8D864E3A8CDE81D555E70447D544FFA","pjkljhegncpnkpknbcohdijeoejaedia":"2073D6886AE69B1B62A576BC40BFA705547CC8A0926BB2BA5563687BFAB89B5B"}},"google":{"services":{"account_id":"D855BBB7234DE64E2BC90F3CE0FD9846AAB1C805DE9F0C7C924CD2C1FF1E1DFC","last_username":"11FC735498CB969D0A1A42EB027FAA409D681AC0CF0D79FD7A3FBE12DC83F541","username":"CBF954947DD6C21A3D716D9C9D2F707B4AD74BA57159AC57B6C099A724943EE7"}},"homepage":"4422CB57ABC4B8DC80C813C33768CBCEE61893A841102A74AA9B756C9002FE7A","homepage_is_newtabpage":"FA0E54ECDFF84CFEEAA362993CF730A44CA270C8A77786776FDA383CA92EC1BD","pinned_tabs":"A5E40D47D513C81CBACE7F552E27B7A9BE9F3F28A1184CF5535D00A7F03EF7A5","prefs":{"preference_reset_time":"8342E2DEB776E55F3D16ABA9B10D6196D12DB925F936E040B398D7FB143E5535"},"profile":{"reset_prompt_memento":"9D54A33FAA2F3D5E826FE71D4C71A2AC05EB5F4B425443FD663893FE4A990E50"},"safebrowsing":{"incidents_sent":"6BA34606CE2885DCC8765F945F8C53FDFE9F528A77EDF49B9E3039DD1AA86923"},"search_provider_overrides":"0E48AAFD4E191A3BF770A781B537810F2EC842E2C95D1D9F01A163183E6693D8","session":{"restore_on_startup":"BA1999E375FBE21C1FDF9761DD531C045CC2AA0A02DF7B5BC8EFF935BCAB3889","startup_urls":"5F106D3A07224951E343C2B38916E616F256534CB68320D178BC5EE1C5CD1BEF"},"software_reporter":{"prompt_reason":"373B8C725D46C7F15EF9DB471726331C804DC109A91A470B9349F894F3EE2709","prompt_seed":"1C59EF916097E44F419342425BE0ADBC8B4044FE6B2C69515AFDA779A9326D17","prompt_version":"5A3B299FBD56C9565938848709AF5A7AD51937A2EE6015A13049844C66FFF36F"},"sync":{"remaining_rollback_tries":"584BDF152A2864D4E76BB2876ABEF42475951EB561CB7AFF9BE205BAD5B6506C"}},"super_mac":"24BEE918FE647EFCDAC72A26A36255C1C4EFB99A1AEFA40C1B6F74A01866B399"},"session":{"restore_on_startup":1,"startup_urls":["hxxp://www.gazeta.pl/0,0.html?p=137","hxxp://websearch.soft-quick.info/ [C:\Users\The Rockabilly Moose\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - znaleziono [Startup_URLs] : 5F106D3A07224951E343C2B38916E616F256534CB68320D178BC5EE1C5CD1BEF"},"software_reporter":{"prompt_reason":"373B8C725D46C7F15EF9DB471726331C804DC109A91A470B9349F894F3EE2709","prompt_seed":"1C59EF916097E44F419342425BE0ADBC8B4044FE6B2C69515AFDA779A9326D17","prompt_version":"5A3B299FBD56C9565938848709AF5A7AD51937A2EE6015A13049844C66FFF36F"},"sync":{"remaining_rollback_tries":"584BDF152A2864D4E76BB2876ABEF42475951EB561CB7AFF9BE205BAD5B6506C"}},"super_mac":"24BEE918FE647EFCDAC72A26A36255C1C4EFB99A1AEFA40C1B6F74A01866B399"},"session":{"restore_on_startup":1,"startup_urls":["hxxp://www.gazeta.pl/0,0.html?p=137","hxxp://websearch.soft-quick.info/ -\\ Opera v30.0.1835.157 ************************* AdwCleaner[R0].txt - [23779 bajty] - [29/07/2015 15:00:12] ########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [23839 bajty] ##########