# AdwCleaner v5.001 - Logfile created 18/08/2015 at 21:05:54 # Updated 17/08/2015 by Xplode # Database : 2015-08-18.1 [Server] # Operating system : Windows 7 Professional Service Pack 1 (x64) # Username : Part - PART-LAPTOP # Running from : C:\Users\Part\Desktop\AdwCleaner.exe # Option : Scan ***** [ Services ] ***** ***** [ Folders ] ***** Folder Found : C:\Program Files (x86)\TNT2 ***** [ Files ] ***** File Found : C:\Users\Part\AppData\Roaming\Mozilla\Firefox\Profiles\bl2jnsw3.default\user.js File Found : C:\Users\Part\AppData\Roaming\Mozilla\Firefox\Profiles\bl2jnsw3.default\searchplugins\yahoo.xml ***** [ Shortcuts ] ***** ***** [ Scheduled tasks ] ***** ***** [ Registry ] ***** Key Found : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56} Key Found : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Key Found : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556} Key Found : HKLM\SOFTWARE\Classes\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8} Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE} Key Found : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994} Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DEDAF650-12B8-48F5-A843-BBA100716106} Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{72A6AB0F-2FA8-4C73-9FCB-1E62A608F001} Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{0FEB2313-F89B-4AC6-8153-84025604A06A} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{0FEB2313-F89B-4AC6-8153-84025604A06A} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{02F878DF-E2BE-4B85-8CB4-A0D2D4E2ED7F} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{2AF343DD-3102-4F9D-AC95-DCA4C95382C7} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{3137BC14-D8D7-4B67-8FFA-2E0B2E9D541B} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{4CA2AC92-971B-47B1-ACB6-357B552155AC} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{52C5395B-1FCD-47FA-A834-FD830701C2D5} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{5D3DCC39-9233-4330-94E9-DA92BE49CA1A} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{615FACDF-DADB-440D-AC91-8AAB0AE9E3AD} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{762D463B-C45A-456D-A80D-8689C297C91E} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{7A6BE473-7960-44D0-BD54-D23DA76353DF} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{803F550E-BAAE-42BB-8917-64BA0006AB17} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{8D5BC51D-C9D3-43B9-B728-B30677B7C7E8} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{991C9D8D-A789-4DB9-BDFC-5F33398B04BF} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{A5ACC874-D943-483F-A2D1-14598D51F872} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{B0474212-0D9D-4361-90B3-B89D1A44275D} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{BFDE183A-C6FE-41D2-80F9-586C29210AC2} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{D83C83BF-3EDD-4410-ADAB-5295116DD8C7} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{DD260902-9420-4055-A956-9152EB4F3E6A} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{EB1F9F3C-5526-4DAE-BD4B-3EAA7715DA9F} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{F1912128-469A-4138-AA26-9699C15BB13E} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{F68DC16C-9C2B-455B-8853-7E4D34BAA3F4} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{FBA8498F-B3A0-4942-A2BF-E0CB7BC7E000} Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{D1611ACC-4B10-4B34-8CDE-0AE7B2A270A6} Key Found : HKCU\Software\Conduit Key Found : HKCU\Software\OCS Key Found : HKCU\Software\Softonic Key Found : HKCU\Software\TNT2 Key Found : [x64] HKCU\Software\Conduit Key Found : [x64] HKCU\Software\OCS Key Found : [x64] HKCU\Software\Softonic Key Found : [x64] HKCU\Software\TNT2 Data Found : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://services.eshield.com/general/newhometab.php?hometab=home&partner=11467&guid={6E39E77A-A197-432C-B601-CE722C7A16FD}&i= Data Found : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://services.eshield.com/general/newhometab.php?hometab=home&partner=11467&guid={6E39E77A-A197-432C-B601-CE722C7A16FD}&i= Data Found : HKU\S-1-5-21-2165405877-3821843396-3701388017-1000\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://services.eshield.com/general/newhometab.php?hometab=home&partner=11467&guid={6E39E77A-A197-432C-B601-CE722C7A16FD}&i= Data Found : HKU\S-1-5-21-2165405877-3821843396-3701388017-1000\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://services.eshield.com/general/newhometab.php?hometab=home&partner=11467&guid={6E39E77A-A197-432C-B601-CE722C7A16FD}&i= Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{7D39E673-129A-4F12-8E1D-30A5D6FF9BA2} Data Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] - {7D39E673-129A-4F12-8E1D-30A5D6FF9BA2} Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{7D39E673-129A-4F12-8E1D-30A5D6FF9BA2} Data Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] - {7D39E673-129A-4F12-8E1D-30A5D6FF9BA2} ***** [ Web browsers ] ***** [C:\Users\Part\AppData\Roaming\Mozilla\Firefox\Profiles\bl2jnsw3.default\prefs.js] [Preference] Found : user_pref("keyword.URL", "hxxp://search.eshield.com/serp?guid={6E39E77A-A197-432C-B601-CE722C7A16FD}&action=default_search&k="); [C:\Users\Part\AppData\Roaming\Mozilla\Firefox\Profiles\bl2jnsw3.default\prefs.js] [Preference] Found : user_pref("plugin.state.npconduitfirefoxplugin", 0); ************************* C:\AdwCleaner[S1].txt - [5874 bytes] - [18/08/2015 21:05:54] ########## EOF - C:\AdwCleaner[S1].txt - [5936 bytes] ##########