# Updated 09/03/2015 by Xplode # Database : 2015-03-15.1 [Server] # Operating system : Microsoft Windows XP Service Pack 3 (x86) # Username : Adm - DESKTOP1 # Running from : C:\Documents and Settings\Adm\Meus documentos\Downloads\AdwClea ner.exe # Option : Scan ***** [ Services ] ***** Service Found : WindowsMangerProtect Service Found : {624928ef-5dfa-4c3f-a4d8-7dddec6d32f0}Gt ***** [ Files / Folders ] ***** File Found : C:\Documents and Settings\Adm\Configuraes locais\Dados de aplicativos \Google\Chrome\User Data\Default\Local Storage\hxxps_static.olark.com_0.localsto rage File Found : C:\Documents and Settings\Adm\Configuraes locais\Dados de aplicativos \Google\Chrome\User Data\Default\Local Storage\hxxps_static.olark.com_0.localsto rage-journal File Found : C:\WINDOWS\system32\drivers\{624928ef-5dfa-4c3f-a4d8-7dddec6d32f0}G t.sys File Found : C:\WINDOWS\system32\roboot.exe Folder Found : C:\Arquivos de programas\unisaeles Folder Found : C:\Arquivos de programas\uniSaleus Folder Found : C:\Documents and Settings\Adm\Dados de aplicativos\HPAppData Folder Found : C:\Documents and Settings\Adm\Dados de aplicativos\key-find Folder Found : C:\Documents and Settings\Adm\Meus documentos\Updater Folder Found : C:\Documents and Settings\All Users\Dados de aplicativos\simplite c Folder Found : C:\Documents and Settings\All Users\Dados de aplicativos\WindowsM angerProtect ***** [ Scheduled tasks ] ***** ***** [ Shortcuts ] ***** ***** [ Registry ] ***** Key Found : HKCU\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Key Found : HKCU\Software\AppDataLow\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9} Key Found : HKCU\Software\IM Key Found : HKCU\Software\ImInstaller Key Found : HKCU\Software\InstallCore Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D 909-49B6-AFE2-8BDE245DC7E6} Key Found : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81} Key Found : HKLM\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Key Found : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} Key Found : HKLM\SOFTWARE\Classes\CLSID\{16ce42fa-8958-404f-a94a-1a646f92354f} Key Found : HKLM\SOFTWARE\Classes\CLSID\{842a77dd-7445-4771-9177-af952f8e8254} Key Found : HKLM\SOFTWARE\Classes\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} Key Found : HKLM\SOFTWARE\Classes\CLSID\{be0893b0-5edf-4902-b497-a7dc10d458d8} Key Found : HKLM\SOFTWARE\Classes\CLSID\{E49F0B41-3322-11D4-AEFE-00C04F61025C} Key Found : HKLM\SOFTWARE\Classes\P16ce42fa_8958_404f_a94a_1a646f92354f_.P16ce42 fa_8958_404f_a94a_1a646f92354f_
Key Found : HKLM\SOFTWARE\Classes\P16ce42fa_8958_404f_a94a_1a646f92354f_.P16ce42
fa_8958_404f_a94a_1a646f92354f_.9 Key Found : HKLM\SOFTWARE\Classes\P842a77dd_7445_4771_9177_af952f8e8254_.P842a77 dd_7445_4771_9177_af952f8e8254_ Key Found : HKLM\SOFTWARE\Classes\P842a77dd_7445_4771_9177_af952f8e8254_.P842a77 dd_7445_4771_9177_af952f8e8254_.9 Key Found : HKLM\SOFTWARE\Classes\Pbe0893b0_5edf_4902_b497_a7dc10d458d8_.Pbe0893 b0_5edf_4902_b497_a7dc10d458d8_ Key Found : HKLM\SOFTWARE\Classes\Pbe0893b0_5edf_4902_b497_a7dc10d458d8_.Pbe0893 b0_5edf_4902_b497_a7dc10d458d8_.9 Key Found : HKLM\SOFTWARE\Classes\TypeLib\{079E2F0F-FCA0-4163-BC82-5355B879E86E} Key Found : HKLM\SOFTWARE\ImInstaller Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCac he\PopDeals Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Help er Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{16ce 42fa-8958-404f-a94a-1a646f92354f} Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{842a 77dd-7445-4771-9177-af952f8e8254} Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{be08 93b0-5edf-4902-b497-a7dc10d458d8} Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{12DA0E6F-5 543-440C-BAA2-28BF01070AFA}{26b7cd68} Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{12DA0E6F-5 543-440C-BAA2-28BF01070AFA}{f24af2b3} Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{37476589-E 48E-439E-A706-56189E2ED4C4}_is1 Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4 E2C-4304-9AB6-BC44E68B55E2} Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PopDeals Key Found : HKLM\SOFTWARE\mystartsearchSoftware Key Found : HKLM\SOFTWARE\PopDeals Key Found : HKLM\SOFTWARE\simplitec Key Found : HKLM\SOFTWARE\supWindowsMangerProtect Key Found : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsM angerProtect ***** [ Web browsers ] ***** -\\ Internet Explorer v8.0.6001.18702 Setting Found : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page] - h xxp://www.mystartsearch.com/web/?type=ds&ts=1423056988&from=wpc&uid=WDCXWD800JD75MSA3_WD-WMAM9FF2965429654&q={searchTerms} Setting Found : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_U RL] - hxxp://www.mystartsearch.com/web/?type=ds&ts=1423056988&from=wpc&uid=WDCXW D800JD-75MSA3_WD-WMAM9FF2965429654&q={searchTerms} Setting Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_U RL] - hxxp://www.key-find.com/web/?type=ds&ts=1423573466&from=cor&uid=WDCXWD800J D-75MSA3_WD-WMAM9FF2965429654&q={searchTerms} Setting Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - h xxp://www.key-find.com/web/?type=ds&ts=1423573466&from=cor&uid=WDCXWD800JD-75MSA 3_WD-WMAM9FF2965429654&q={searchTerms} -\\ Google Chrome v40.0.2214.94 ************************* AdwCleaner[R0].txt - [5686 bytes] - [16/03/2015 10:14:54]