Advertisement
Guest User

UAK

a guest
Apr 14th, 2015
377
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 22.67 KB | None | 0 0
  1.  
  2. ###### Ultra adware killer removal report ######
  3.  
  4. Ultra Adware Killer version: 1.7.2.0 (64bits).
  5. Removal start time: 2015/04/14 16:36:17.
  6.  
  7. ->Begin removal/repair of the selected file objects...
  8.  
  9. Folder scheduled for removal on reboot:
  10. Path:C:\Program Files (x86)\keepsbrowse
  11.  
  12. Folder successfully deleted:
  13. Path:C:\Program Files (x86)\SalePlUs
  14.  
  15. Folder successfully deleted:
  16. Path:C:\Users\Infected\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StormFall
  17.  
  18. Folder successfully deleted:
  19. Path:C:\Users\Infected\AppData\Local\StormFall
  20.  
  21. Folder successfully deleted:
  22. Path:C:\Users\Infected\AppData\Roaming\StormFall
  23.  
  24. Folder successfully deleted:
  25. Path:C:\Program Files (x86)\youtubeadblocker
  26.  
  27. Folder successfully deleted:
  28. Path:C:\Program Files (x86)\WSE_Taplika
  29.  
  30. Folder successfully deleted:
  31. Path:C:\Program Files (x86)\LibraryInstance
  32.  
  33. Folder successfully deleted:
  34. Path:C:\Users\Infected\Documents\ProPCCleaner
  35.  
  36. Folder successfully deleted:
  37. Path:C:\Users\Infected\AppData\Local\Pro_PC_Cleaner
  38.  
  39. Folder successfully deleted:
  40. Path:C:\Program Files (x86)\Pro PC Cleaner
  41.  
  42. Folder successfully deleted:
  43. Path:C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pro PC Cleaner
  44.  
  45. Folder successfully deleted:
  46. Path:C:\Users\Infected\AppData\Roaming\Pro PC Cleaner
  47.  
  48. Folder successfully deleted:
  49. Path:C:\Users\Infected\AppData\Roaming\RHEng
  50.  
  51. Folder scheduled for removal on reboot:
  52. Path:C:\Users\Infected\AppData\Roaming\OpenCandy
  53.  
  54. Folder successfully deleted:
  55. Path:C:\Program Files (x86)\MyPC Backup
  56.  
  57. Folder successfully deleted:
  58. Path:C:\Users\Infected\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
  59.  
  60. Folder successfully deleted:
  61. Path:C:\Program Files (x86)\EZDownloader
  62.  
  63. Folder successfully deleted:
  64. Path:C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZDownloader
  65.  
  66. Folder successfully deleted:
  67. Path:C:\Users\Infected\AppData\Roaming\0V1L2Z2Z1T1I1L1T
  68.  
  69.  
  70. ->Begin removal/repair of the selected registry items...
  71.  
  72. Registry key successfully deleted:
  73. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{b713f63f-0d4a-4405-8178-5cad841c2e62}
  74.  
  75. Registry key successfully deleted:
  76. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7207675b-7dd0-4f42-a62d-c6971a6c7e00}
  77.  
  78. Registry key successfully deleted:
  79. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5815522e-ef94-47e3-9b29-29321855d88a}
  80.  
  81. Registry key successfully deleted:
  82. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{b713f63f-0d4a-4405-8178-5cad841c2e62}
  83.  
  84. Registry key successfully deleted:
  85. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7207675b-7dd0-4f42-a62d-c6971a6c7e00}
  86.  
  87. Registry key successfully deleted:
  88. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5815522e-ef94-47e3-9b29-29321855d88a}
  89.  
  90. Registry key successfully deleted:
  91. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{b713f63f-0d4a-4405-8178-5cad841c2e62}
  92.  
  93. Registry key successfully deleted:
  94. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7207675b-7dd0-4f42-a62d-c6971a6c7e00}
  95.  
  96. Registry key successfully deleted:
  97. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5815522e-ef94-47e3-9b29-29321855d88a}
  98.  
  99. Registry key successfully deleted:
  100. Key: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{b713f63f-0d4a-4405-8178-5cad841c2e62}
  101.  
  102. Registry key successfully deleted:
  103. Key: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7207675b-7dd0-4f42-a62d-c6971a6c7e00}
  104.  
  105. Registry key successfully deleted:
  106. Key: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5815522e-ef94-47e3-9b29-29321855d88a}
  107.  
  108. Registry key successfully deleted:
  109. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
  110.  
  111. Registry key successfully deleted:
  112. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
  113.  
  114. Registry key successfully deleted:
  115. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
  116.  
  117. Registry key successfully deleted:
  118. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{0F44DC3A-6E62-4961-A14B-95323C512F9B}_is1
  119.  
  120. Registry key successfully deleted:
  121. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
  122.  
  123. Registry key successfully deleted:
  124. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\UnknownFile
  125.  
  126. Registry key successfully deleted:
  127. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
  128.  
  129. Registry key successfully deleted:
  130. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}
  131.  
  132. Registry key successfully deleted:
  133. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\taplika.com
  134.  
  135. Registry key successfully deleted:
  136. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\softonic.com
  137.  
  138. Registry key successfully deleted:
  139. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mystartsearch.com
  140.  
  141. Registry key successfully deleted:
  142. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
  143.  
  144. Registry key successfully deleted:
  145. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WSE_Taplika
  146.  
  147. Registry key successfully deleted:
  148. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
  149.  
  150. Registry key successfully deleted:
  151. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
  152.  
  153. Registry key successfully deleted:
  154. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
  155.  
  156. Registry key successfully deleted:
  157. Key: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup
  158.  
  159. Registry key successfully deleted:
  160. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\StormFall
  161.  
  162. Registry key successfully deleted:
  163. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
  164.  
  165. Registry key successfully deleted:
  166. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
  167.  
  168. Registry key successfully deleted:
  169. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
  170.  
  171. Registry key successfully deleted:
  172. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
  173.  
  174. Registry key successfully deleted:
  175. Key: HKCR32\TypeLib\{10F67E56-58A9-4A52-A48A-A28A75FF9FBB}
  176.  
  177. Registry key successfully deleted:
  178. Key: HKCR32\TypeLib\{157B1AA6-3E5C-404A-9118-C1D91F537040}
  179.  
  180. Registry key successfully deleted:
  181. Key: HKCR32\Interface\{F60C9408-3110-4C98-A139-ABE1EE1111DD}
  182.  
  183. Registry key successfully deleted:
  184. Key: HKCR32\Interface\{C1F5E799-B218-4C32-B189-3C389BA140BB}
  185.  
  186. Registry key successfully deleted:
  187. Key: HKCR32\Interface\{8FAF962C-3EDE-405E-B1D0-62B8235C6044}
  188.  
  189. Registry key successfully deleted:
  190. Key: HKCR32\Interface\{4E9EB4D5-C929-4005-AC62-1856B1DA5A24}
  191.  
  192. Registry key successfully deleted:
  193. Key: HKCR32\Interface\{4C0A69B0-CE97-42B7-86FC-08280C99C74D}
  194.  
  195. Registry key successfully deleted:
  196. Key: HKCR32\Interface\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326}
  197.  
  198. Registry key successfully deleted:
  199. Key: HKCR32\Interface\{3AE76A17-C344-4A83-81CE-65EFEE41E42D}
  200.  
  201. Registry key successfully deleted:
  202. Key: HKCR32\Interface\{2D9DB233-DC4B-4677-946C-5FA5ABCF506B}
  203.  
  204. Registry key successfully deleted:
  205. Key: HKCR32\Interface\{1A2A195A-A0F9-4006-AF02-3F05EEFDE792}
  206.  
  207. Registry key successfully deleted:
  208. Key: HKCR32\Interface\{0FCE4F01-64EC-42F1-83E1-1E08D38605D2}
  209.  
  210. Registry key successfully deleted:
  211. Key: HKCR64\Interface\{F60C9408-3110-4C98-A139-ABE1EE1111DD}
  212.  
  213. Registry key successfully deleted:
  214. Key: HKCR64\Interface\{C1F5E799-B218-4C32-B189-3C389BA140BB}
  215.  
  216. Registry key successfully deleted:
  217. Key: HKCR64\Interface\{8FAF962C-3EDE-405E-B1D0-62B8235C6044}
  218.  
  219. Registry key successfully deleted:
  220. Key: HKCR64\Interface\{4E9EB4D5-C929-4005-AC62-1856B1DA5A24}
  221.  
  222. Registry key successfully deleted:
  223. Key: HKCR64\Interface\{4C0A69B0-CE97-42B7-86FC-08280C99C74D}
  224.  
  225. Registry key successfully deleted:
  226. Key: HKCR64\Interface\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326}
  227.  
  228. Registry key successfully deleted:
  229. Key: HKCR64\Interface\{3AE76A17-C344-4A83-81CE-65EFEE41E42D}
  230.  
  231. Registry key successfully deleted:
  232. Key: HKCR64\Interface\{2D9DB233-DC4B-4677-946C-5FA5ABCF506B}
  233.  
  234. Registry key successfully deleted:
  235. Key: HKCR64\Interface\{1A2A195A-A0F9-4006-AF02-3F05EEFDE792}
  236.  
  237. Registry key successfully deleted:
  238. Key: HKCR64\Interface\{0FCE4F01-64EC-42F1-83E1-1E08D38605D2}
  239.  
  240. Registry key successfully deleted:
  241. Key: HKLM32\SOFTWARE\b5bd0e0b-b7e2-af8d-613b-e3deb4b4520b
  242.  
  243. Registry key successfully deleted:
  244. Key: HKLM32\SOFTWARE\SpeedBit
  245.  
  246. Registry key successfully deleted:
  247. Key: HKLM32\SOFTWARE\AIM Toolbar
  248.  
  249. Registry key successfully deleted:
  250. Key: HKLM32\SOFTWARE\WajIntEnhance
  251.  
  252. Registry key successfully deleted:
  253. Key: HKLM32\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
  254.  
  255. Registry key successfully deleted:
  256. Key: HKLM32\SOFTWARE\Pro PC Cleaner
  257.  
  258. Registry key successfully deleted:
  259. Key: HKLM32\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
  260.  
  261. Registry key successfully deleted:
  262. Key: HKLM32\SOFTWARE\mystartsearchSoftware
  263.  
  264. Registry key successfully deleted:
  265. Key: HKLM32\SOFTWARE\SearchProtect
  266.  
  267. Registry key successfully deleted:
  268. Key: HKLM32\SOFTWARE\Iminent
  269.  
  270. Registry key successfully deleted:
  271. Key: HKLM32\SOFTWARE\Conduit
  272.  
  273. Registry key successfully deleted:
  274. Key: HKLM32\SOFTWARE\AskPartnerNetwork
  275.  
  276. Registry key successfully deleted:
  277. Key: HKLM32\SOFTWARE\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
  278.  
  279. Registry key successfully deleted:
  280. Key: HKLM32\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
  281.  
  282. Registry key successfully deleted:
  283. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup
  284.  
  285. Registry key successfully deleted:
  286. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\SearchProtectWS
  287.  
  288. Registry key successfully deleted:
  289. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\WajIntEnhance
  290.  
  291. Registry key successfully deleted:
  292. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\WSE_Taplika
  293.  
  294. Registry key successfully deleted:
  295. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\ProPCCleanerLanguage
  296.  
  297. Registry key successfully deleted:
  298. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Pro PC Cleaner
  299.  
  300. Registry key successfully deleted:
  301. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\TNT2
  302.  
  303. Registry key successfully deleted:
  304. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Vittalia
  305.  
  306. Registry key successfully deleted:
  307. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\UnknownFile
  308.  
  309. Registry key successfully deleted:
  310. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\simplytech
  311.  
  312. Registry key successfully deleted:
  313. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\nuevos-programas.com
  314.  
  315. Registry key successfully deleted:
  316. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\HomeTab
  317.  
  318. Registry key successfully deleted:
  319. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\APN PIP
  320.  
  321. Registry key successfully deleted:
  322. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Mozilla\Extends
  323.  
  324. Registry key successfully deleted:
  325. Key: HKCR32\CLSID\{b713f63f-0d4a-4405-8178-5cad841c2e62}
  326.  
  327. Registry key successfully deleted:
  328. Key: HKCR32\CLSID\{7207675b-7dd0-4f42-a62d-c6971a6c7e00}
  329.  
  330. Registry key successfully deleted:
  331. Key: HKCR32\CLSID\{5815522e-ef94-47e3-9b29-29321855d88a}
  332.  
  333. Registry key successfully deleted:
  334. Key: HKCR32\CLSID\{533403E2-6E21-4615-9E28-43F4E97E977B}
  335.  
  336. Registry key successfully deleted:
  337. Key: HKCR64\CLSID\{b713f63f-0d4a-4405-8178-5cad841c2e62}
  338.  
  339. Registry key successfully deleted:
  340. Key: HKCR64\CLSID\{7207675b-7dd0-4f42-a62d-c6971a6c7e00}
  341.  
  342. Registry key successfully deleted:
  343. Key: HKCR64\CLSID\{5815522e-ef94-47e3-9b29-29321855d88a}
  344.  
  345. Registry key successfully deleted:
  346. Key: HKCR32\Pb713f63f_0d4a_4405_8178_5cad841c2e62_.Pb713f63f_0d4a_4405_8178_5cad841c2e62_.9
  347.  
  348. Registry key successfully deleted:
  349. Key: HKCR32\Pb713f63f_0d4a_4405_8178_5cad841c2e62_.Pb713f63f_0d4a_4405_8178_5cad841c2e62_
  350.  
  351. Registry key successfully deleted:
  352. Key: HKCR32\P7207675b_7dd0_4f42_a62d_c6971a6c7e00_.P7207675b_7dd0_4f42_a62d_c6971a6c7e00_.9
  353.  
  354. Registry key successfully deleted:
  355. Key: HKCR32\P7207675b_7dd0_4f42_a62d_c6971a6c7e00_.P7207675b_7dd0_4f42_a62d_c6971a6c7e00_
  356.  
  357. Registry key successfully deleted:
  358. Key: HKCR32\P5815522e_ef94_47e3_9b29_29321855d88a_.P5815522e_ef94_47e3_9b29_29321855d88a_.9
  359.  
  360. Registry key successfully deleted:
  361. Key: HKCR32\P5815522e_ef94_47e3_9b29_29321855d88a_.P5815522e_ef94_47e3_9b29_29321855d88a_
  362.  
  363.  
  364. ->Begin removal/repair of the selected services...
  365.  
  366. Service successfully deleted:BackupStack
  367.  
  368.  
  369. ->Begin removal/repair of the selected scheduled tasks...
  370.  
  371. Scheduled task successfully deleted:StormFall W1
  372. Path:\\?\C:\Windows\Tasks\StormFall W1.job
  373.  
  374. Scheduled task successfully deleted:StormFall W2
  375. Path:\\?\C:\Windows\Tasks\StormFall W2.job
  376.  
  377. Scheduled task successfully deleted:StormFall TW2
  378. Path:\\?\C:\Windows\Tasks\StormFall TW2.job
  379.  
  380. Scheduled task successfully deleted:StormFall TW1
  381. Path:\\?\C:\Windows\Tasks\StormFall TW1.job
  382.  
  383. Scheduled task successfully deleted:ProPCCleaner_Popup
  384. Path:\\?\C:\Windows\Tasks\ProPCCleaner_Popup.job
  385.  
  386. Scheduled task successfully deleted:ProPCCleaner_Start
  387. Path:\\?\C:\Windows\Tasks\ProPCCleaner_Start.job
  388.  
  389. Scheduled task successfully deleted:LaunchSignup
  390. Path:\\?\C:\Windows\Tasks\LaunchSignup.job
  391.  
  392.  
  393. ->Begin removal/repair of the selected shortcuts...
  394.  
  395. Failed to repair shortcut:
  396. C:\Users\Infected\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StormFall\StormFall.lnk
  397.  
  398. Shortcut successfully repaired:
  399. C:\Users\Infected\Desktop\StormFall.lnk
  400.  
  401. File successfully deleted:
  402. Path:C:\Users\Infected\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\StormFall.lnk
  403.  
  404. File successfully deleted:
  405. Path:C:\Users\Infected\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\StormFall.lnk
  406.  
  407. File successfully deleted:
  408. Path:C:\Users\Infected\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\StormFall.lnk
  409.  
  410. File successfully deleted:
  411. Path:C:\Users\Infected\Desktop\StormFall.lnk
  412.  
  413. File successfully deleted:
  414. Path:C:\Users\Public\Desktop\Pro PC Cleaner.lnk
  415.  
  416. File successfully deleted:
  417. Path:C:\Users\Infected\Desktop\Sync Folder.lnk
  418.  
  419. File successfully deleted:
  420. Path:C:\Users\Infected\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StartUp\MyPC Backup.lnk
  421.  
  422. File successfully deleted:
  423. Path:C:\Users\Infected\Desktop\MyPC Backup.lnk
  424.  
  425. File successfully deleted:
  426. Path:C:\Users\Public\Desktop\EZDownloader.lnk
  427.  
  428.  
  429. ->Begin removal/repair of the selected Internet Explorer items...
  430.  
  431. Registry key successfully deleted:
  432. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b713f63f-0d4a-4405-8178-5cad841c2e62}
  433.  
  434. Registry key successfully deleted:
  435. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7207675b-7dd0-4f42-a62d-c6971a6c7e00}
  436.  
  437. Registry key successfully deleted:
  438. Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5815522e-ef94-47e3-9b29-29321855d88a}
  439.  
  440. Registry value successfully repaired:
  441. Key: HKLM32\SOFTWARE\Microsoft\Internet Explorer\Main
  442. Value: Default_Page_URL
  443.  
  444. Registry key successfully deleted:
  445. Key: HKLM32\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE}
  446.  
  447. Registry key successfully deleted:
  448. Key: HKLM32\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
  449.  
  450. Registry key successfully deleted:
  451. Key: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b713f63f-0d4a-4405-8178-5cad841c2e62}
  452.  
  453. Registry key successfully deleted:
  454. Key: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7207675b-7dd0-4f42-a62d-c6971a6c7e00}
  455.  
  456. Registry key successfully deleted:
  457. Key: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5815522e-ef94-47e3-9b29-29321855d88a}
  458.  
  459. Registry value successfully repaired:
  460. Key: HKLM64\SOFTWARE\Microsoft\Internet Explorer\Main
  461. Value: Search Page
  462.  
  463. Registry value successfully repaired:
  464. Key: HKLM64\SOFTWARE\Microsoft\Internet Explorer\Main
  465. Value: Default_Search_URL
  466.  
  467. Registry value successfully repaired:
  468. Key: HKLM64\SOFTWARE\Microsoft\Internet Explorer\Main
  469. Value: Default_Page_URL
  470.  
  471. Registry key successfully deleted:
  472. Key: HKLM64\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
  473.  
  474. Registry value successfully repaired:
  475. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Internet Explorer\Main
  476. Value: Start Page
  477.  
  478. Registry value successfully repaired:
  479. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Internet Explorer\Main
  480. Value: Default_Page_URL
  481.  
  482. Registry key successfully deleted:
  483. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE}
  484.  
  485. Registry key successfully deleted:
  486. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Internet Explorer\SearchScopes\{589B893E-773C-4941-88C2-0DCC718E621C}
  487.  
  488. Registry key successfully deleted:
  489. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
  490.  
  491.  
  492. ->Begin removal/repair of the selected Google Chrome items...
  493.  
  494. File successfully deleted:
  495. Path:C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
  496.  
  497. File successfully deleted:
  498. Path:C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Preferences
  499.  
  500. File successfully deleted:
  501. Path:C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_websearch.coolsearches.info_0.localstorage-journal
  502.  
  503. File successfully deleted:
  504. Path:C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_websearch.coolsearches.info_0.localstorage
  505.  
  506. Chrome search provider successfully deleted:
  507. File: C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Web Data
  508. Value: http://www.mystartsearch.com/web/?type=ds&ts=1428366859&from=wpc&uid=VBOXXHARDDISK_VB655d5547-8592617d&q={searchTerms}
  509.  
  510. Chrome search provider successfully deleted:
  511. File: C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Web Data
  512. Value: http://websearch.coolsearches.info/?l=1&q={searchTerms}&pid=20629&r=2015/04/07&hid=15041634038841567257&lg=EN&cc=CA&unqvl=85
  513.  
  514. Chrome search provider successfully deleted:
  515. File: C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Web Data
  516. Value: http://taplika.com/results.php?f=4&q={searchTerms}&a=tpl_kmp_15_15&cd=2XzuyEtN2Y1L1QzutDzztDtDtByBzytBzytCzz0CtCtDzyzztN0D0Tzu0StCtCzytCtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2SyDzy0FtCtB0CyB0EtG0FtCtA0DtGyC0ByEtDtGyDyE0EtCtGtA0EyCtC0F0EyD0CtAtA0FtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0E0AyD0B0CtBzy0BtG0FyC0E0EtGyEyB0AtCtG0AyB0FyEtGzy0FyEtDtAyC0F0B0C0CtD0C2QtN0A0LzutDtN1B2Z1V1T1S1NzuyCyDzz&cr=1487817274&ir=
  517.  
  518. Chrome search provider successfully deleted:
  519. File: C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Web Data
  520. Value: http://www.ask.com/web?q={searchTerms}
  521.  
  522. Folder successfully deleted:
  523. Path:C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfkjojacgdjkninepeghaamnapdjmlfn
  524.  
  525. File successfully deleted:
  526. Path:C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lfkjojacgdjkninepeghaamnapdjmlfn_0.localstorage-journal
  527.  
  528. File successfully deleted:
  529. Path:C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lfkjojacgdjkninepeghaamnapdjmlfn_0.localstorage
  530.  
  531. Registry key successfully deleted:
  532. Key: HKLM32\SOFTWARE\Google\Chrome\Extensions\lfkjojacgdjkninepeghaamnapdjmlfn
  533.  
  534. Registry key successfully deleted:
  535. Key: HKLM64\SOFTWARE\Google\Chrome\Extensions\lfkjojacgdjkninepeghaamnapdjmlfn
  536.  
  537. Registry key successfully deleted:
  538. Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Google\Chrome\Extensions\lfkjojacgdjkninepeghaamnapdjmlfn
  539.  
  540. Registry key successfully deleted:
  541. Key: HKLM32\SOFTWARE\Policies\Google\Update
  542.  
  543.  
  544. ->Begin removal/repair of the selected Mozilla Firefox items...
  545.  
  546. File successfully deleted:
  547. Path:C:\Users\Infected\AppData\Roaming\Mozilla\Firefox\Profiles\zdifer99.default\prefs.js
  548.  
  549. Registry value successfully deleted:
  550. Key: HKLM32\SOFTWARE\Mozilla\Firefox\Extensions
  551.  
  552. Folder successfully deleted:
  553. Path:C:\Users\Infected\AppData\Roaming\Mozilla\Firefox\Profiles\zdifer99.default\Extensions\[email protected]
  554.  
  555. Folder successfully deleted:
  556. Path:C:\Users\Infected\AppData\Roaming\Mozilla\Firefox\Profiles\zdifer99.default\Extensions\[email protected]
  557.  
  558. Folder successfully deleted:
  559. Path:C:\Users\Infected\AppData\Roaming\Mozilla\Firefox\Profiles\zdifer99.default\Extensions\[email protected]
  560.  
  561. Folder successfully deleted:
  562. Path:C:\Users\Infected\AppData\Roaming\Mozilla\Firefox\Profiles\zdifer99.default\Extensions\[email protected]
  563.  
  564. File successfully deleted:
  565. Path:C:\Users\Infected\AppData\Roaming\Mozilla\Firefox\Profiles\zdifer99.default\searchplugins\mystartsearch.xml
  566.  
  567. File successfully deleted:
  568. Path:C:\Users\Infected\AppData\Roaming\Mozilla\Firefox\Profiles\zdifer99.default\searchplugins\WebSearch.xml
  569.  
  570.  
  571. ->End of the removal process. Time: 2015/04/14 16:37:00
  572.  
  573. ###### End of the removal report 46412 bytes ######
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement