0% found this document useful (0 votes)
78 views3 pages

AdwCleaner (R1)

The log file from AdwCleaner scans a system and finds various malware and adware files, folders, registry keys, and browser modifications associated with programs like WebSearch, IBUpdaterService, and others. Infected files and entries were found throughout the system in locations like the C:\Program Files, AppData folders, and registry hives. The document provides detailed information on the malware found and remediated by AdwCleaner to clean up the system.

Uploaded by

shivme0206
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as TXT, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
78 views3 pages

AdwCleaner (R1)

The log file from AdwCleaner scans a system and finds various malware and adware files, folders, registry keys, and browser modifications associated with programs like WebSearch, IBUpdaterService, and others. Infected files and entries were found throughout the system in locations like the C:\Program Files, AppData folders, and registry hives. The document provides detailed information on the malware found and remediated by AdwCleaner to clean up the system.

Uploaded by

shivme0206
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as TXT, PDF, TXT or read online on Scribd
You are on page 1/ 3

# AdwCleaner v2.

301 - Logfile created 06/04/2013 at 08:36:24


# Updated 16/05/2013 by Xplode
# Operating system : Windows 7 Home Basic Service Pack 1 (64 bits)
# User : dell - DELL-PC
# Boot Mode : Normal
# Running from : C:\Users\dell\Music\adwcleaner.exe
# Option [Search]
***** [Services] *****
Found : IBUpdaterService
***** [Files / Folders] *****
File Found : C:\END
File Found : C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\7cb03rv0.def
ault\searchplugins\MyStart Search.xml
File Found : C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\7cb03rv0.def
ault\searchplugins\WebSearch.xml
Folder Found : C:\Program Files (x86)\WebSearch
Folder Found : C:\ProgramData\coonytiynnueotiosave
Folder Found : C:\ProgramData\IBUpdaterService
Folder Found : C:\ProgramData\InstallMate
Folder Found : C:\ProgramData\Premium
Folder Found : C:\ProgramData\rvlkl
Folder Found : C:\ProgramData\SearchNewTab
Folder Found : C:\ProgramData\Trymedia
Folder Found : C:\Users\dell\AppData\Local\B1E
Folder Found : C:\Users\dell\AppData\Local\Google\Chrome\User Data\Default\Exten
sions\bnnjbekfliogipgkccbgieaedmifkbkg
Folder Found : C:\Users\dell\AppData\Local\Google\Chrome\User Data\Default\Exten
sions\ifdckohopikpljalbhobkehkahmdfjfj
Folder Found : C:\Users\dell\AppData\LocalLow\boost_interprocess
Folder Found : C:\Users\dell\AppData\LocalLow\SearchNewTab
Folder Found : C:\Users\dell\AppData\Roaming\B1Toolbar
Folder Found : C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\7cb03rv0.d
efault\extensions\[email protected]
Folder Found : C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\7cb03rv0.d
efault\extensions\[email protected]
***** [Registry] *****
Data Found : HKLM\..\Windows [AppInit_DLLs] = c:\progra~2\websea~1\sprote~1.dll
Key Found : HKCU\Software\APN PIP
Key Found : HKCU\Software\AppDataLow\SProtector
Key Found : HKCU\Software\IM
Key Found : HKCU\Software\ImInstaller
Key Found : HKCU\Software\Softonic
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4
C-4172-9AC4-73315F71CFFE}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135
F-47C0-9269-B4C6572FD61A}
Key Found : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\incredibar_install_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\incredibar_install_RASMANCS
Key Found : HKLM\Software\PIP
Key Found : HKLM\Software\SP Global
Key Found : HKLM\Software\SProtector
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31D
B2EBD72BD}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{813A22E0-3E2B-4188-9BDA
-ECA9878B8D48}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{BCFF5F55-6F44-11D2-86F8
-00104B265ED5}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{
BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall
\Updater Service
Key Found : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5
C}
Key Found : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D4
8}
Key Found : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED
5}
Key Found : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C627178
5}
Key Found : HKU\S-1-5-21-2887528318-2931676711-1664715151-1000\Software\Microsof
t\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Found : HKU\S-1-5-21-2887528318-2931676711-1664715151-1000\Software\Microsof
t\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47C0-9269-B4C6572FD61A}
***** [Internet Browsers] *****
-\\ Internet Explorer v9.0.8112.16457
[HKCU\Software\Microsoft\Internet Explorer\Main - Search Page] = hxxp://search.b
1.org/?bsrc=hmior&chid=c167991
[HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://websearch
.coolwebsearch.info/?unqvl=19
[HKCU\Software\Microsoft\Internet Explorer\Main - Start Page Before] = hxxp://my
start.incredibar.com/mb139?a=6PQJ1raDQr&i=26
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp
://websearch.coolwebsearch.info/?unqvl=19
-\\ Mozilla Firefox v21.0 (en-US)
File : C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\7cb03rv0.default\p
refs.js
Found : user_pref("BlockSite.locations", "hxxp://websearch.lookforithere.info/?r
=2013/05/17|||hxxp://ad.adse[...]
Found : user_pref("aol_toolbar.default.homepage.check", false);
Found : user_pref("aol_toolbar.default.search.check", false);
Found : user_pref("browser.search.defaultenginename", "WebSearch");
Found : user_pref("browser.search.defaultenginename,S", "WebSearch");
Found : user_pref("browser.search.defaulturl", "hxxp://websearch.coolwebsearch.i
nfo/?unqvl=19&l=1&q=");
Found : user_pref("browser.search.order.1", "WebSearch");
Found : user_pref("browser.search.order.1,S", "WebSearch");
Found : user_pref("browser.search.selectedEngine", "WebSearch");
Found : user_pref("browser.search.selectedEngine,S", "WebSearch");
Found : user_pref("browser.startup.homepage", "hxxp://websearch.coolwebsearch.in
fo/?unqvl=19");
Found : user_pref("extensions.518c7bdd8c22f.scode", "(function(){try{if('aol.com
,mail.google.com,premiumrepo[...]
Found : user_pref("extensions.BabylonToolbar.prtkDS", 0);
Found : user_pref("extensions.BabylonToolbar.prtkHmpg", 0);
Found : user_pref("keyword.URL", "hxxp://websearch.coolwebsearch.info/?unqvl=19&
l=1&q=");
Found : user_pref("sweetim.toolbar.previous.browser.search.defaultenginename", "
WebSearch");
Found : user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "Web
Search");
Found : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "hxxp://w
ebsearch.lookforithere.info/[...]
Found : user_pref("sweetim.toolbar.previous.keyword.URL", "hxxp://websearch.look
forithere.info/?pid=377&r=20[...]
Found : user_pref("sweetim.toolbar.scripts.1.domain-blacklist", "");
Found : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", "");
Found : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", "");
Found : user_pref("sweetim.toolbar.searchguard.enable", "");
-\\ Google Chrome v27.0.1453.94
File : C:\Users\dell\AppData\Local\Google\Chrome\User Data\Default\Preferences
[OK] File is clean.
*************************
AdwCleaner[R1].txt - [6488 octets] - [04/06/2013 08:36:24]
########## EOF - C:\AdwCleaner[R1].txt - [6548 octets] ##########

You might also like