======= REPORT FROM AD-REMOVER 2.0.0.2,G | ONLY XP/VISTA/7 ======= Updated by TeamXscript on 12/04/11 Contact: AdRemover[DOT]contact[AT]gmail[DOT]com website: http://www.teamxscript.org C:\Program Files\Ad-Remover\main.exe (SCAN [1]) -> Launched at 00:20:52 on 08/08/2011, Normal boot Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) m k@KLIMIUK-T08MUNM ( ) ============== SEARCH ============== Folder found: C:\Documents and Settings\m k\Ustawienia lokalne\Dane aplikacji\OpenCandy Key found: HKLM\Software\Classes\Interface\{38A7C9DA-8DB7-4D0F-A7B1-C4B1A305BDDB} Key found: HKLM\Software\Classes\Interface\{3E53E2CB-86DB-4A4A-8BD9-FFEB7A64DF82} Key found: HKLM\Software\Classes\Interface\{63D0ED2D-B45B-4458-8B3B-60C69BBBD83C} Key found: HKLM\Software\Classes\Interface\{72EE7F04-15BD-4845-A005-D6711144D86A} Key found: HKLM\Software\Classes\Interface\{7473D293-B7BB-4F24-AE82-7E2CE94BB6A9} Key found: HKLM\Software\Classes\Interface\{8D292EC0-6792-4A38-82ED-73A087E41BA6} Key found: HKLM\Software\Classes\Interface\{A626CDBD-3D13-4F78-B819-440A28D7E8FC} Key found: HKLM\Software\Classes\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25F} Key found: HKLM\Software\Classes\Interface\{E79DFBC9-5697-4FBD-94E5-5B2A9C7C1612} Key found: HKLM\Software\Classes\Interface\{E79DFBCB-5697-4FBD-94E5-5B2A9C7C1612} Key found: HKLM\Software\Classes\Interface\{F87D7FB5-9DC5-4C8C-B998-D8DFE02E2978} Key found: HKLM\Software\Classes\TypeLib\{621FEACD-8857-43A6-AE26-451D670D5370} Key found: HKLM\Software\Classes\TypeLib\{98635087-3F5D-418F-990C-B1EFE0797A3B} Key found: HKLM\Software\Classes\TypeLib\{DF8AC7EC-373F-4606-9049-E6DA55CC5D05} Key found: HKLM\Software\Classes\TypeLib\{E79DFBC0-5697-4FBD-94E5-5B2A9C7C1612} Key found: HKLM\Software\Freeze.com Key found: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} Key found: HKLM\Software\Classes\MIME\Database\Content Type\Application/x-f3embed ============== ADDITIONNAL SCAN ============== **** Mozilla Firefox Version [5.0.1 (pl)] **** Plugins\npdnu.dll (AOL LLC) Plugins\npdnupdater2.dll (AOL LLC) Plugins\npganymedenet.dll ( ) Plugins\npwachk.dll (Nullsoft, Inc.) HKLM_MozillaPlugins\@veoh.com/VeohWebPlayer (x) HKLM_MozillaPlugins\Adobe Reader (x) HKCU_MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0 (x) Searchplugins\allegro-pl.xml (hxxp://www.allegro.pl/search.php?string={searchTerms}&sourceid=Mozilla-search) Searchplugins\fbc-pl.xml (hxxp://fbc.pionier.net.pl/owoc/results) Searchplugins\merlin-pl.xml (hxxp://www.merlin.com.pl/frontend/search?sourceid=Mozilla-search&fraza={searchTerms}&skad=crhhxmkohb) Searchplugins\pwn-pl.xml (hxxp://encyklopedia.pwn.pl/szukaj.php?co={searchTerms}) Searchplugins\wikipedia-pl.xml (hxxp://pl.wikipedia.org/wiki/Specjalna:Szukaj) Searchplugins\wp-pl.xml (hxxp://szukaj.wp.pl/szukaj.html?z=T&r=T&szukaj={searchTerms}) Components\browsercomps.dll (Mozilla Foundation) HKCU_Extensions|web@veoh.com - C:\Program Files\Veoh Networks\VeohWebPlayer\FFVideoFinder -- C:\Documents and Settings\m k\Dane aplikacji\Mozilla\FireFox\Profiles\7x9rh36o.default -- Prefs.js - browser.download.dir, C:\\Documents and Settings\\m k\\Pulpit Prefs.js - browser.startup.homepage, www.google.pl Prefs.js - browser.startup.homepage_override.mstone, rv:1.9.1.8 -- C:\Documents and Settings\Bartosz_2\Dane aplikacji\Mozilla\FireFox\Profiles\5x11y79g.default -- Prefs.js - browser.startup.homepage, hxxp://www.onet.pl/# Prefs.js - browser.startup.homepage_override.buildID, 20110413222027 Prefs.js - browser.startup.homepage_override.mstone, rv:2.0.1 ======================================== **** Internet Explorer Version [7.0.5730.13] **** Plugins\Npindeo.dll (Ligos Corporation) HKCU_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=69157 HKLM_Main|Default_Search_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM_Main|Search Page - hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKCU_SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} - "Search the web (Babylon)" (hxxp://search.babylon.com/web/{searchTerms}?babsrc=browsersearch&AF=15627) HKLM_Toolbar|{0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} (C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll) HKLM_ElevationPolicy\{4250488A-CB24-0893-C066-B1AEA57BCFF2} - D:\Orbitdownloader\orbitdm.exe (x) HKLM_ElevationPolicy\{569591D2-F221-4115-9A89-762956BEB3C0} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\SmartWebPrintExe.exe (?) HKLM_Extensions\{CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - "?" (?) HKLM_Extensions\{e2e2dd38-d088-4134-82b7-f2ba38496583} - "?" (?) BHO\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - "Adobe PDF Reader Link Helper" (C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll) BHO\{53707962-6F74-2D53-2644-206D7942484F} - "?" (D:\Spybot - Search & Destroy\SDHelper.dll) BHO\{9030D464-4C02-4ABF-8ECC-5164760863C6} - "Pomocnik rejestracji usługi Windows Live" (C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll) ======================================== C:\Program Files\Ad-Remover\Quarantine: 0 File(s) C:\Program Files\Ad-Remover\Backup: 0 File(s) C:\Ad-Report-SCAN[1].txt - 08/08/2011 00:21:03 (4644 Byte(s)) End at: 00:23:40, 08/08/2011 ============== E.O.F ==============