You are on page 1of 4

#

#
#
#
#
#
#
#

AdwCleaner v5.010 - Logfile created 05/10/2015 at 21:05:29


Updated 04/10/2015 by Xplode
Database : 2015-10-05.1 [Server]
Operating system : Microsoft Windows XP Service Pack 3 (x86)
Username : newuser - NEW
Running from : D:\adwcleaner_5.010(1).exe
Option : Cleaning
Support : http://toolslib.net/forum

***** [ Services ] *****


[-]
[-]
[-]
[-]
[-]
[-]

Service
Service
Service
Service
Service
Service

Deleted
Deleted
Deleted
Deleted
Deleted
Deleted

:
:
:
:
:
:

SmdmFService
WdsManPro
boherobo
gyvixodu
qodegupi
F06DEFF2-5B9C-490D-910F-35D3A91196222

***** [ Folders ] *****


[-] Folder
[-] Folder
[-] Folder
[-] Folder
[-] Folder
[#] Folder
[-] Folder
nPror
[-] Folder
nProX
[-] Folder
ctEx
[-] Folder
oolbar
[-] Folder
[-] Folder
earch
[-] Folder
s
[-] Folder
[-] Folder
[-] Folder
[-] Folder
[-] Folder
[#] Folder
[-] Folder
[-] Folder
[!] Folder

Deleted
Deleted
Deleted
Deleted
Deleted
Deleted
Deleted

:
:
:
:
:
:
:

C:\DOCUME~1\newuser\LOCALS~1\Temp\apn
C:\DOCUME~1\newuser\LOCALS~1\Temp\neurowise
C:\DOCUME~1\newuser\LOCALS~1\Temp\Solution Real
C:\DOCUME~1\newuser\LOCALS~1\Temp\wizz
C:\Documents and Settings\All Users\Application Data\apn
C:\Documents and Settings\All Users\Application Data\smdmf
C:\Documents and Settings\All Users\Application Data\rWdsMa

Deleted : C:\Documents and Settings\All Users\Application Data\XWdsMa


Deleted : C:\Documents and Settings\newuser\Application Data\AnyProte
Deleted : C:\Documents and Settings\newuser\Application Data\FirefoxT
Deleted : C:\Documents and Settings\newuser\Application Data\RHEng
Deleted : C:\Documents and Settings\newuser\Application Data\mystarts
Deleted : C:\Documents and Settings\newuser\Application Data\omniboxe
Deleted : C:\Program Files\AnyProtectEx
Deleted : C:\Program Files\predm
Deleted : C:\Program Files\SaveSense
Deleted : C:\Program Files\Settings Manager
Deleted : C:\Program Files\neurowise
Deleted : C:\Program Files\Assets Manager
Deleted : C:\Program Files\DAEEF7B6-1443843977-DA11-AEB8-000C6E08036A
Deleted : C:\Program Files\MyBrowser
Not Deleted : C:\Program Files\SaveSense

***** [ Files ] *****


[-] File Deleted : C:\END
[-] File Deleted : C:\Documents and Settings\newuser\Application Data\Mozilla\Fi
refox\Profiles\qkukk1y6.default\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4
}.xpi
[-] File Deleted : C:\Documents and Settings\newuser\Application Data\Mozilla\Fi
refox\Profiles\qkukk1y6.default\invalidprefs.js
[-] File Deleted : C:\Documents and Settings\newuser\Application Data\Mozilla\Fi
refox\Profiles\qkukk1y6.default\searchplugins\mystartsearch.xml
[-] File Deleted : C:\Documents and Settings\newuser\Application Data\Mozilla\Fi

refox\Profiles\qkukk1y6.default\searchplugins\omniboxes.xml
[-] File Deleted : C:\Program Files\Mozilla Firefox\browser\searchplugins\defaul
t-search.xml
***** [ DLLs ] *****
***** [ Shortcuts ] *****
[-] Shortcut Disinfected : C:\Documents and Settings\newuser\Desktop\Shortcut to
firefox.lnk
***** [ Scheduled tasks ] *****
[-]
[-]
[-]
[-]
[-]
[-]
[-]
[-]

Task
Task
Task
Task
Task
Task
Task
Task

Deleted
Deleted
Deleted
Deleted
Deleted
Deleted
Deleted
Deleted

:
:
:
:
:
:
:
:

APSnotifierPP1
APSnotifierPP2
APSnotifierPP3
075004ee-db99-4027-93f8-6c9ecbc9d252-1-6
075004ee-db99-4027-93f8-6c9ecbc9d252-1-7
075004ee-db99-4027-93f8-6c9ecbc9d252-10_user
075004ee-db99-4027-93f8-6c9ecbc9d252-4
075004ee-db99-4027-93f8-6c9ecbc9d252-5

***** [ Registry ] *****


[-] Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDll
s [x64]
[-] Value Deleted : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDll
s [x64]
[!] Value Not Deleted : HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Ap
pCertDlls [x64]
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\iedll.dll
[-] Key Deleted : HKCU\Software\Mozilla\Extends
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SpaceSou
ndPro]
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Wd
sManPro
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [gmsd_in_
005010102]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [upgmsd_i
n_005010102.exe]
[-] Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [deskCutv2@gmail.co
m]
[-] Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [defsearchp@gmail.c
om]
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{6A7CD9EC-D8BD-4340-BCD0-77C09A282
921}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7E
CD3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547
C23}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4
D96}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A07E5BFF-B16C-4ABA-A30F-514213A94
5E6}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4613B1C1-FBC0-43C3-A4B9-B1D6C
D360BB3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{726E90BE-DC22-4965-B215-E0784DC
26F47}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browse

r Helper Objects\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4D91
01D6-5BA0-4048-BDDE-7E2DF54C8C47}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4
D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}
[-] Key Deleted : HKCU\Software\AnyProtect
[-] Key Deleted : HKCU\Software\Bitberry Software
[-] Key Deleted : HKCU\Software\Bitberry
[-] Key Deleted : HKCU\Software\Crossrider
[-] Key Deleted : HKCU\Software\InstallCore
[-] Key Deleted : HKCU\Software\InstalledBrowserExtensions
[-] Key Deleted : HKCU\Software\SmdmF
[-] Key Deleted : HKCU\Software\Softonic
[-] Key Deleted : HKCU\Software\TutoTag
[-] Key Deleted : HKCU\Software\GAMESDESKTOP
[-] Key Deleted : HKCU\Software\Solution Real
[-] Key Deleted : HKCU\Software\CrossBrowser
[-] Key Deleted : HKCU\Software\Crossbrowse
[-] Key Deleted : HKCU\Software\Linkey
[-] Key Deleted : HKCU\Software\YorkNewCin
[-] Key Deleted : HKCU\Software\HighDefAction
[-] Key Deleted : HKCU\Software\ArenaHD
[-] Key Deleted : HKCU\Software\_CrossriderRegNamePlaceHolder_
[-] Key Deleted : HKCU\Software\SpaceSoundPro
[-] Key Deleted : HKCU\Software\DAILYPCCLEAN
[-] Key Deleted : HKLM\SOFTWARE\Crossrider
[-] Key Deleted : HKLM\SOFTWARE\GlobalUpdate
[-] Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
[-] Key Deleted : HKLM\SOFTWARE\SaveSense
[-] Key Deleted : HKLM\SOFTWARE\SmdmF
[-] Key Deleted : HKLM\SOFTWARE\Tutorials
[-] Key Deleted : HKLM\SOFTWARE\Solution Real
[-] Key Deleted : HKLM\SOFTWARE\Crossbrowse
[-] Key Deleted : HKLM\SOFTWARE\YorkNewCin
[-] Key Deleted : HKLM\SOFTWARE\HighDefAction
[-] Key Deleted : HKLM\SOFTWARE\ArenaHD
[-] Key Deleted : HKLM\SOFTWARE\FFPluginHp
[-] Key Deleted : HKLM\SOFTWARE\_CrossriderRegNamePlaceHolder_
[-] Key Deleted : HKLM\SOFTWARE\WdsManPro
[!] Key Not Deleted : HKLM\SOFTWARE\SaveSense
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPac
kage
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF
667E-E14D-4D2C-827C-B0108F0D93BC}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SU
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\
ARPCache\Settings Manager
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\
ARPCache\ASPackage
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C
17-9C68-4BB3-B188-DD9AF0FD2503}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C
17-9C68-4BB3-B188-DD9AF0FD2503}
[!] Key Not Deleted : HKU\S-1-5-21-1614895754-1606980848-1417001333-1003\Softwar
e\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2503
}
[-] Data Restored : HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\o
pen\command []
[-] Data Restored : HKLM\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\op
en\command []

[-] Data Restored : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [A


ppInit_DLLs]
***** [ Web browsers ] *****
[-] [C:\Documents and Settings\newuser\Application Data\Mozilla\Firefox\Profiles
\qkukk1y6.default\prefs.js] [Preference] Deleted : user_pref("browser.newtab.url
", "chrome://quick_start/content/index.html");
[-] [C:\Documents and Settings\newuser\Application Data\Mozilla\Firefox\Profiles
\qkukk1y6.default\prefs.js] [Preference] Deleted : user_pref("browser.search.def
aultenginename", "mystartsearch");
[-] [C:\Documents and Settings\newuser\Application Data\Mozilla\Firefox\Profiles
\qkukk1y6.default\prefs.js] [Preference] Deleted : user_pref("browser.search.hid
denOneOffs", "Wikipedia (en),default-search.net");
[-] [C:\Documents and Settings\newuser\Application Data\Mozilla\Firefox\Profiles
\qkukk1y6.default\prefs.js] [Preference] Deleted : user_pref("browser.search.sel
ectedEngine", "mystartsearch");
[-] [C:\Documents and Settings\newuser\Application Data\Mozilla\Firefox\Profiles
\qkukk1y6.default\prefs.js] [Preference] Deleted : user_pref("extensions.ad4db60
df25f14dae9dd18185c395f9e794c9ab86be3ebcom72893.72893.internaldb.monetization_pl
ugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com
%22%5D%7D%2[...]
[-] [C:\Documents and Settings\newuser\Application Data\Mozilla\Firefox\Profiles
\qkukk1y6.default\prefs.js] [Preference] Deleted : user_pref("extensions.crossri
der.bic", "1502db001b381c5ebfdc02cabe944444");
[-] [C:\Documents and Settings\newuser\Application Data\Mozilla\Firefox\Profiles
\qkukk1y6.default\prefs.js] [Preference] Deleted : user_pref("extensions.quick_s
tart.enable_search1", false);
[-] [C:\Documents and Settings\newuser\Application Data\Mozilla\Firefox\Profiles
\qkukk1y6.default\prefs.js] [Preference] Deleted : user_pref("extensions.quick_s
tart.sd.closeWindowWithLastTab_prev_state", false);
*************************
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [10000 bytes] ##########

You might also like