# AdwCleaner v3.015 - Log utworzony 11/12/2013 o 00:10:16 # Aktualizacja 10/12/2013 przez Xplode # System operacyjny : Windows 7 Home Premium Service Pack 1 (64 bits) # Użytkownik : PaVuLoN - PAVULON-LAPTOP # Ścieżka : C:\Users\PaVuLoN\Downloads\AdwCleaner.exe # Opcja : Szukaj ***** [ Usługi ] ***** ***** [ Pliki / Foldery ] ***** Folder Znaleziono : C:\Users\PaVuLoN\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfjjbdkbiolebnedppnembegmlcmagge Folder Znaleziono : C:\Users\PaVuLoN\AppData\Local\Google\Chrome\User Data\Default\Extensions\penmjgihjhniiikbbdlijmpmklddofno Folder Znaleziono : C:\Users\PaVuLoN\AppData\Local\Google\Chrome\User Data\Default\Extensions\penmjgihjhniiikbbdlijmpmklddofno Folder Znaleziono C:\Program Files (x86)\Conduit Folder Znaleziono C:\Program Files (x86)\Movdap Folder Znaleziono C:\ProgramData\Babylon Folder Znaleziono C:\ProgramData\eSafe Folder Znaleziono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZDownloader Folder Znaleziono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\optimizer pro Folder Znaleziono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\safe savEE Folder Znaleziono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seearch-NeewTaba Folder Znaleziono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seearch-NeewTaba Folder Znaleziono C:\ProgramData\safe savEE Folder Znaleziono C:\ProgramData\Seearch-NeewTaba Folder Znaleziono C:\ProgramData\Seearch-NeewTaba Folder Znaleziono C:\ProgramData\StarApp Folder Znaleziono C:\Users\PaVuLoN\AppData\Local\Conduit Folder Znaleziono C:\Users\PaVuLoN\AppData\Local\lollipop Folder Znaleziono C:\Users\PaVuLoN\AppData\LocalLow\Conduit Folder Znaleziono C:\Users\PaVuLoN\AppData\LocalLow\Delta Folder Znaleziono C:\Users\PaVuLoN\AppData\LocalLow\PriceGong Folder Znaleziono C:\Users\PaVuLoN\AppData\LocalLow\safe savEE Folder Znaleziono C:\Users\PaVuLoN\AppData\LocalLow\Seearch-NeewTaba Folder Znaleziono C:\Users\PaVuLoN\AppData\LocalLow\Seearch-NeewTaba Folder Znaleziono C:\Users\PaVuLoN\AppData\Roaming\Doko-Toolbar Folder Znaleziono C:\Users\PaVuLoN\AppData\Roaming\dosearches Folder Znaleziono C:\Users\PaVuLoN\AppData\Roaming\EZDownloader Folder Znaleziono C:\Users\PaVuLoN\AppData\Roaming\Movdap Folder Znaleziono C:\Users\PaVuLoN\AppData\Roaming\Web Cake Plik Znaleziono : C:\Program Files (x86)\Mozilla Firefox\searchplugins\dosearches.xml Plik Znaleziono : C:\Users\PaVuLoN\AppData\Local\Temp\Uninstall.exe Plik Znaleziono : C:\Windows\System32\roboot64.exe Plik Znaleziono : C:\Windows\System32\Tasks\EPUpdater Plik Znaleziono : C:\Windows\System32\Tasks\FoxTab Plik Znaleziono : C:\Windows\Tasks\FoxTab.job ***** [ Skróty ] ***** Skrót Znaleziono : C:\Users\PaVuLoN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk ( hxxp://www.dosearches.com/?utm_source=b&utm_medium=smt&utm_campaign=rg&utm_content=sc&from=smt&uid=HitachiXHTS547575A9E384_J2540054JW5B3EJW5B3EX&ts=1384067605 ) Skrót Znaleziono : C:\Users\PaVuLoN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk ( hxxp://www.dosearches.com/?utm_source=b&utm_medium=smt&utm_campaign=rg&utm_content=sc&from=smt&uid=HitachiXHTS547575A9E384_J2540054JW5B3EJW5B3EX&ts=1384067605 ) Skrót Znaleziono : C:\Users\PaVuLoN\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk ( hxxp://www.dosearches.com/?utm_source=b&utm_medium=smt&utm_campaign=rg&utm_content=sc&from=smt&uid=HitachiXHTS547575A9E384_J2540054JW5B3EJW5B3EX&ts=1384067605 ) Skrót Znaleziono : C:\Users\PaVuLoN\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk ( hxxp://www.dosearches.com/?utm_source=b&utm_medium=smt&utm_campaign=rg&utm_content=sc&from=smt&uid=HitachiXHTS547575A9E384_J2540054JW5B3EJW5B3EX&ts=1384067605 ) ***** [ Rejestr ] ***** Dane Znaleziono : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command [(Default)] - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.dosearches.com/?utm_source=b&utm_medium=smt&utm_campaign=rg&utm_content=sc&from=smt&uid=HitachiXHTS547575A9E384_J2540054JW5B3EJW5B3EX&ts=1384067605 Dane Znaleziono : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\safesa~1\sprote~1.dll, Klucz Znaleziono : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Klucz Znaleziono : HKCU\Software\AppDataLow\Software\Conduit Klucz Znaleziono : HKCU\Software\AppDataLow\Software\ConduitSearchScopes Klucz Znaleziono : HKCU\Software\AppDataLow\Software\PriceGong Klucz Znaleziono : HKCU\Software\AppDataLow\Software\SmartBar Klucz Znaleziono : HKCU\Software\BabSolution Klucz Znaleziono : HKCU\Software\BI Klucz Znaleziono : HKCU\Software\Conduit Klucz Znaleziono : HKCU\Software\Delta Klucz Znaleziono : HKCU\Software\FLEXnet Klucz Znaleziono : HKCU\Software\lollipop Klucz Znaleziono : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\babylon.com Klucz Znaleziono : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\conduit.com Klucz Znaleziono : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} Klucz Znaleziono : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706} Klucz Znaleziono : HKCU\Software\powerpack Klucz Znaleziono : HKCU\Software\Softonic Klucz Znaleziono : [x64] HKCU\Software\BabSolution Klucz Znaleziono : [x64] HKCU\Software\BI Klucz Znaleziono : [x64] HKCU\Software\Conduit Klucz Znaleziono : [x64] HKCU\Software\Delta Klucz Znaleziono : [x64] HKCU\Software\FLEXnet Klucz Znaleziono : [x64] HKCU\Software\lollipop Klucz Znaleziono : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} Klucz Znaleziono : [x64] HKCU\Software\powerpack Klucz Znaleziono : [x64] HKCU\Software\Softonic Klucz Znaleziono : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F} Klucz Znaleziono : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} Klucz Znaleziono : HKLM\SOFTWARE\5a2d98ab33aba15 Klucz Znaleziono : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947} Klucz Znaleziono : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323} Klucz Znaleziono : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Klucz Znaleziono : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D} Klucz Znaleziono : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Klucz Znaleziono : HKLM\SOFTWARE\Classes\AppID\escort.DLL Klucz Znaleziono : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL Klucz Znaleziono : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL Klucz Znaleziono : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL Klucz Znaleziono : HKLM\SOFTWARE\Classes\AppID\esrv.EXE Klucz Znaleziono : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777} Klucz Znaleziono : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1} Klucz Znaleziono : HKLM\SOFTWARE\Classes\CLSID\{A0B10EBE-4E51-4CAE-949B-E6B9E7D68CEA} Klucz Znaleziono : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468} Klucz Znaleziono : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Klucz Znaleziono : HKLM\SOFTWARE\Classes\CLSID\{F511AFDB-726E-4458-90E7-1ECB97406544} Klucz Znaleziono : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC} Klucz Znaleziono : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217} Klucz Znaleziono : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F} Klucz Znaleziono : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Klucz Znaleziono : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F} Klucz Znaleziono : HKLM\SOFTWARE\Classes\Prod.cap Klucz Znaleziono : HKLM\SOFTWARE\Classes\Toolbar.CT3289075 Klucz Znaleziono : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Klucz Znaleziono : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8} Klucz Znaleziono : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Klucz Znaleziono : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755} Klucz Znaleziono : HKLM\Software\Conduit Klucz Znaleziono : HKLM\Software\DataMngr Klucz Znaleziono : HKLM\Software\Delta Klucz Znaleziono : HKLM\Software\eSafeSecControl Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_dla_winamp-classic_RASAPI32 Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_dla_winamp-classic_RASMANCS Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32 Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ASUS_Screensaver Klucz Znaleziono : HKLM\Software\SP Global Klucz Znaleziono : HKLM\Software\SProtector Klucz Znaleziono : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\webcakeupdater Klucz Znaleziono : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WsysSvc Klucz Znaleziono : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217} Klucz Znaleziono : [x64] HKLM\SOFTWARE\Classes\Interface\{0735B993-B879-45A1-9A55-57001C8F2A9D} Klucz Znaleziono : [x64] HKLM\SOFTWARE\Classes\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4} Klucz Znaleziono : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F} Klucz Znaleziono : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Klucz Znaleziono : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F} Klucz Znaleziono : [x64] HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899} Klucz Znaleziono : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Klucz Znaleziono : [x64] HKLM\SOFTWARE\Tarma Installer Wartość Znaleziono : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}] ***** [ Przeglądarki internetowe ] ***** -\\ Internet Explorer v11.0.9600.16428 Ustawienie Znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - hxxp://search.dosearches.com/web/?utm_source=b&utm_medium=smt&utm_campaign=rg&utm_content=ds&from=smt&uid=HitachiXHTS547575A9E384_J2540054JW5B3EJW5B3EX&ts=1384067605&type=default&q={searchTerms} Ustawienie Znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - hxxp://search.dosearches.com/web/?utm_source=b&utm_medium=smt&utm_campaign=rg&utm_content=ds&from=smt&uid=HitachiXHTS547575A9E384_J2540054JW5B3EJW5B3EX&ts=1384067605&type=default&q={searchTerms} Ustawienie Znaleziono : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - hxxp://search.dosearches.com/web/?utm_source=b&utm_medium=smt&utm_campaign=rg&utm_content=ds&from=smt&uid=HitachiXHTS547575A9E384_J2540054JW5B3EJW5B3EX&ts=1384067605&type=default&q={searchTerms} Ustawienie Znaleziono : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://www.dosearches.com/?utm_source=b&utm_medium=smt&utm_campaign=rg&utm_content=hp&from=smt&uid=HitachiXHTS547575A9E384_J2540054JW5B3EJW5B3EX&ts=1384067605 Ustawienie Znaleziono : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.dosearches.com/?utm_source=b&utm_medium=smt&utm_campaign=rg&utm_content=hp&from=smt&uid=HitachiXHTS547575A9E384_J2540054JW5B3EJW5B3EX&ts=1384067605 Ustawienie Znaleziono : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - hxxp://search.dosearches.com/web/?utm_source=b&utm_medium=smt&utm_campaign=rg&utm_content=ds&from=smt&uid=HitachiXHTS547575A9E384_J2540054JW5B3EJW5B3EX&ts=1384067605&type=default&q={searchTerms} -\\ Mozilla Firefox v26.0 (pl) [ Plik : C:\Users\PaVuLoN\AppData\Roaming\Mozilla\Firefox\Profiles\qgn83jmd.default\prefs.js ] -\\ Google Chrome v [ Plik : C:\Users\PaVuLoN\AppData\Local\Google\Chrome\User Data\Default\preferences ] Znaleziono : homepage Znaleziono : urls_to_restore_on_startup ************************* AdwCleaner[R0].txt - [12462 octets] - [11/12/2013 00:10:16] ########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [12523 octets] ##########