Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- ###### Ultra adware killer removal report ######
- Ultra Adware Killer version: 1.7.2.0 (64bits).
- Removal start time: 2015/04/14 16:36:17.
- ->Begin removal/repair of the selected file objects...
- Folder scheduled for removal on reboot:
- Path:C:\Program Files (x86)\keepsbrowse
- Folder successfully deleted:
- Path:C:\Program Files (x86)\SalePlUs
- Folder successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StormFall
- Folder successfully deleted:
- Path:C:\Users\Infected\AppData\Local\StormFall
- Folder successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\StormFall
- Folder successfully deleted:
- Path:C:\Program Files (x86)\youtubeadblocker
- Folder successfully deleted:
- Path:C:\Program Files (x86)\WSE_Taplika
- Folder successfully deleted:
- Path:C:\Program Files (x86)\LibraryInstance
- Folder successfully deleted:
- Path:C:\Users\Infected\Documents\ProPCCleaner
- Folder successfully deleted:
- Path:C:\Users\Infected\AppData\Local\Pro_PC_Cleaner
- Folder successfully deleted:
- Path:C:\Program Files (x86)\Pro PC Cleaner
- Folder successfully deleted:
- Path:C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pro PC Cleaner
- Folder successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\Pro PC Cleaner
- Folder successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\RHEng
- Folder scheduled for removal on reboot:
- Path:C:\Users\Infected\AppData\Roaming\OpenCandy
- Folder successfully deleted:
- Path:C:\Program Files (x86)\MyPC Backup
- Folder successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
- Folder successfully deleted:
- Path:C:\Program Files (x86)\EZDownloader
- Folder successfully deleted:
- Path:C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZDownloader
- Folder successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\0V1L2Z2Z1T1I1L1T
- ->Begin removal/repair of the selected registry items...
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{b713f63f-0d4a-4405-8178-5cad841c2e62}
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7207675b-7dd0-4f42-a62d-c6971a6c7e00}
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5815522e-ef94-47e3-9b29-29321855d88a}
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{b713f63f-0d4a-4405-8178-5cad841c2e62}
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7207675b-7dd0-4f42-a62d-c6971a6c7e00}
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5815522e-ef94-47e3-9b29-29321855d88a}
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{b713f63f-0d4a-4405-8178-5cad841c2e62}
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7207675b-7dd0-4f42-a62d-c6971a6c7e00}
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5815522e-ef94-47e3-9b29-29321855d88a}
- Registry key successfully deleted:
- Key: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{b713f63f-0d4a-4405-8178-5cad841c2e62}
- Registry key successfully deleted:
- Key: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7207675b-7dd0-4f42-a62d-c6971a6c7e00}
- Registry key successfully deleted:
- Key: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5815522e-ef94-47e3-9b29-29321855d88a}
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{0F44DC3A-6E62-4961-A14B-95323C512F9B}_is1
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\UnknownFile
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\taplika.com
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\softonic.com
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mystartsearch.com
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WSE_Taplika
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
- Registry key successfully deleted:
- Key: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\StormFall
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
- Registry key successfully deleted:
- Key: HKCR32\TypeLib\{10F67E56-58A9-4A52-A48A-A28A75FF9FBB}
- Registry key successfully deleted:
- Key: HKCR32\TypeLib\{157B1AA6-3E5C-404A-9118-C1D91F537040}
- Registry key successfully deleted:
- Key: HKCR32\Interface\{F60C9408-3110-4C98-A139-ABE1EE1111DD}
- Registry key successfully deleted:
- Key: HKCR32\Interface\{C1F5E799-B218-4C32-B189-3C389BA140BB}
- Registry key successfully deleted:
- Key: HKCR32\Interface\{8FAF962C-3EDE-405E-B1D0-62B8235C6044}
- Registry key successfully deleted:
- Key: HKCR32\Interface\{4E9EB4D5-C929-4005-AC62-1856B1DA5A24}
- Registry key successfully deleted:
- Key: HKCR32\Interface\{4C0A69B0-CE97-42B7-86FC-08280C99C74D}
- Registry key successfully deleted:
- Key: HKCR32\Interface\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326}
- Registry key successfully deleted:
- Key: HKCR32\Interface\{3AE76A17-C344-4A83-81CE-65EFEE41E42D}
- Registry key successfully deleted:
- Key: HKCR32\Interface\{2D9DB233-DC4B-4677-946C-5FA5ABCF506B}
- Registry key successfully deleted:
- Key: HKCR32\Interface\{1A2A195A-A0F9-4006-AF02-3F05EEFDE792}
- Registry key successfully deleted:
- Key: HKCR32\Interface\{0FCE4F01-64EC-42F1-83E1-1E08D38605D2}
- Registry key successfully deleted:
- Key: HKCR64\Interface\{F60C9408-3110-4C98-A139-ABE1EE1111DD}
- Registry key successfully deleted:
- Key: HKCR64\Interface\{C1F5E799-B218-4C32-B189-3C389BA140BB}
- Registry key successfully deleted:
- Key: HKCR64\Interface\{8FAF962C-3EDE-405E-B1D0-62B8235C6044}
- Registry key successfully deleted:
- Key: HKCR64\Interface\{4E9EB4D5-C929-4005-AC62-1856B1DA5A24}
- Registry key successfully deleted:
- Key: HKCR64\Interface\{4C0A69B0-CE97-42B7-86FC-08280C99C74D}
- Registry key successfully deleted:
- Key: HKCR64\Interface\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326}
- Registry key successfully deleted:
- Key: HKCR64\Interface\{3AE76A17-C344-4A83-81CE-65EFEE41E42D}
- Registry key successfully deleted:
- Key: HKCR64\Interface\{2D9DB233-DC4B-4677-946C-5FA5ABCF506B}
- Registry key successfully deleted:
- Key: HKCR64\Interface\{1A2A195A-A0F9-4006-AF02-3F05EEFDE792}
- Registry key successfully deleted:
- Key: HKCR64\Interface\{0FCE4F01-64EC-42F1-83E1-1E08D38605D2}
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\b5bd0e0b-b7e2-af8d-613b-e3deb4b4520b
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\SpeedBit
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\AIM Toolbar
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\WajIntEnhance
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Pro PC Cleaner
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\mystartsearchSoftware
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\SearchProtect
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Iminent
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Conduit
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\AskPartnerNetwork
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\SearchProtectWS
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\WajIntEnhance
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\WSE_Taplika
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\ProPCCleanerLanguage
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Pro PC Cleaner
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\TNT2
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Vittalia
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\UnknownFile
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\simplytech
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\nuevos-programas.com
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\HomeTab
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\APN PIP
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Mozilla\Extends
- Registry key successfully deleted:
- Key: HKCR32\CLSID\{b713f63f-0d4a-4405-8178-5cad841c2e62}
- Registry key successfully deleted:
- Key: HKCR32\CLSID\{7207675b-7dd0-4f42-a62d-c6971a6c7e00}
- Registry key successfully deleted:
- Key: HKCR32\CLSID\{5815522e-ef94-47e3-9b29-29321855d88a}
- Registry key successfully deleted:
- Key: HKCR32\CLSID\{533403E2-6E21-4615-9E28-43F4E97E977B}
- Registry key successfully deleted:
- Key: HKCR64\CLSID\{b713f63f-0d4a-4405-8178-5cad841c2e62}
- Registry key successfully deleted:
- Key: HKCR64\CLSID\{7207675b-7dd0-4f42-a62d-c6971a6c7e00}
- Registry key successfully deleted:
- Key: HKCR64\CLSID\{5815522e-ef94-47e3-9b29-29321855d88a}
- Registry key successfully deleted:
- Key: HKCR32\Pb713f63f_0d4a_4405_8178_5cad841c2e62_.Pb713f63f_0d4a_4405_8178_5cad841c2e62_.9
- Registry key successfully deleted:
- Key: HKCR32\Pb713f63f_0d4a_4405_8178_5cad841c2e62_.Pb713f63f_0d4a_4405_8178_5cad841c2e62_
- Registry key successfully deleted:
- Key: HKCR32\P7207675b_7dd0_4f42_a62d_c6971a6c7e00_.P7207675b_7dd0_4f42_a62d_c6971a6c7e00_.9
- Registry key successfully deleted:
- Key: HKCR32\P7207675b_7dd0_4f42_a62d_c6971a6c7e00_.P7207675b_7dd0_4f42_a62d_c6971a6c7e00_
- Registry key successfully deleted:
- Key: HKCR32\P5815522e_ef94_47e3_9b29_29321855d88a_.P5815522e_ef94_47e3_9b29_29321855d88a_.9
- Registry key successfully deleted:
- Key: HKCR32\P5815522e_ef94_47e3_9b29_29321855d88a_.P5815522e_ef94_47e3_9b29_29321855d88a_
- ->Begin removal/repair of the selected services...
- Service successfully deleted:BackupStack
- ->Begin removal/repair of the selected scheduled tasks...
- Scheduled task successfully deleted:StormFall W1
- Path:\\?\C:\Windows\Tasks\StormFall W1.job
- Scheduled task successfully deleted:StormFall W2
- Path:\\?\C:\Windows\Tasks\StormFall W2.job
- Scheduled task successfully deleted:StormFall TW2
- Path:\\?\C:\Windows\Tasks\StormFall TW2.job
- Scheduled task successfully deleted:StormFall TW1
- Path:\\?\C:\Windows\Tasks\StormFall TW1.job
- Scheduled task successfully deleted:ProPCCleaner_Popup
- Path:\\?\C:\Windows\Tasks\ProPCCleaner_Popup.job
- Scheduled task successfully deleted:ProPCCleaner_Start
- Path:\\?\C:\Windows\Tasks\ProPCCleaner_Start.job
- Scheduled task successfully deleted:LaunchSignup
- Path:\\?\C:\Windows\Tasks\LaunchSignup.job
- ->Begin removal/repair of the selected shortcuts...
- Failed to repair shortcut:
- C:\Users\Infected\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StormFall\StormFall.lnk
- Shortcut successfully repaired:
- C:\Users\Infected\Desktop\StormFall.lnk
- File successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\StormFall.lnk
- File successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\StormFall.lnk
- File successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\StormFall.lnk
- File successfully deleted:
- Path:C:\Users\Infected\Desktop\StormFall.lnk
- File successfully deleted:
- Path:C:\Users\Public\Desktop\Pro PC Cleaner.lnk
- File successfully deleted:
- Path:C:\Users\Infected\Desktop\Sync Folder.lnk
- File successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StartUp\MyPC Backup.lnk
- File successfully deleted:
- Path:C:\Users\Infected\Desktop\MyPC Backup.lnk
- File successfully deleted:
- Path:C:\Users\Public\Desktop\EZDownloader.lnk
- ->Begin removal/repair of the selected Internet Explorer items...
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b713f63f-0d4a-4405-8178-5cad841c2e62}
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7207675b-7dd0-4f42-a62d-c6971a6c7e00}
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5815522e-ef94-47e3-9b29-29321855d88a}
- Registry value successfully repaired:
- Key: HKLM32\SOFTWARE\Microsoft\Internet Explorer\Main
- Value: Default_Page_URL
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE}
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
- Registry key successfully deleted:
- Key: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b713f63f-0d4a-4405-8178-5cad841c2e62}
- Registry key successfully deleted:
- Key: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7207675b-7dd0-4f42-a62d-c6971a6c7e00}
- Registry key successfully deleted:
- Key: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5815522e-ef94-47e3-9b29-29321855d88a}
- Registry value successfully repaired:
- Key: HKLM64\SOFTWARE\Microsoft\Internet Explorer\Main
- Value: Search Page
- Registry value successfully repaired:
- Key: HKLM64\SOFTWARE\Microsoft\Internet Explorer\Main
- Value: Default_Search_URL
- Registry value successfully repaired:
- Key: HKLM64\SOFTWARE\Microsoft\Internet Explorer\Main
- Value: Default_Page_URL
- Registry key successfully deleted:
- Key: HKLM64\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
- Registry value successfully repaired:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Internet Explorer\Main
- Value: Start Page
- Registry value successfully repaired:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Internet Explorer\Main
- Value: Default_Page_URL
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE}
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Internet Explorer\SearchScopes\{589B893E-773C-4941-88C2-0DCC718E621C}
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
- ->Begin removal/repair of the selected Google Chrome items...
- File successfully deleted:
- Path:C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
- File successfully deleted:
- Path:C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Preferences
- File successfully deleted:
- Path:C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_websearch.coolsearches.info_0.localstorage-journal
- File successfully deleted:
- Path:C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_websearch.coolsearches.info_0.localstorage
- Chrome search provider successfully deleted:
- File: C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Web Data
- Value: http://www.mystartsearch.com/web/?type=ds&ts=1428366859&from=wpc&uid=VBOXXHARDDISK_VB655d5547-8592617d&q={searchTerms}
- Chrome search provider successfully deleted:
- File: C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Web Data
- Value: http://websearch.coolsearches.info/?l=1&q={searchTerms}&pid=20629&r=2015/04/07&hid=15041634038841567257&lg=EN&cc=CA&unqvl=85
- Chrome search provider successfully deleted:
- File: C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Web Data
- Value: http://taplika.com/results.php?f=4&q={searchTerms}&a=tpl_kmp_15_15&cd=2XzuyEtN2Y1L1QzutDzztDtDtByBzytBzytCzz0CtCtDzyzztN0D0Tzu0StCtCzytCtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2SyDzy0FtCtB0CyB0EtG0FtCtA0DtGyC0ByEtDtGyDyE0EtCtGtA0EyCtC0F0EyD0CtAtA0FtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0E0AyD0B0CtBzy0BtG0FyC0E0EtGyEyB0AtCtG0AyB0FyEtGzy0FyEtDtAyC0F0B0C0CtD0C2QtN0A0LzutDtN1B2Z1V1T1S1NzuyCyDzz&cr=1487817274&ir=
- Chrome search provider successfully deleted:
- File: C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Web Data
- Value: http://www.ask.com/web?q={searchTerms}
- Folder successfully deleted:
- Path:C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfkjojacgdjkninepeghaamnapdjmlfn
- File successfully deleted:
- Path:C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lfkjojacgdjkninepeghaamnapdjmlfn_0.localstorage-journal
- File successfully deleted:
- Path:C:\Users\Infected\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lfkjojacgdjkninepeghaamnapdjmlfn_0.localstorage
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Google\Chrome\Extensions\lfkjojacgdjkninepeghaamnapdjmlfn
- Registry key successfully deleted:
- Key: HKLM64\SOFTWARE\Google\Chrome\Extensions\lfkjojacgdjkninepeghaamnapdjmlfn
- Registry key successfully deleted:
- Key: HKEY_USERS\S-1-5-21-1975693716-2271746130-2373035104-1001\Software\Google\Chrome\Extensions\lfkjojacgdjkninepeghaamnapdjmlfn
- Registry key successfully deleted:
- Key: HKLM32\SOFTWARE\Policies\Google\Update
- ->Begin removal/repair of the selected Mozilla Firefox items...
- File successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\Mozilla\Firefox\Profiles\zdifer99.default\prefs.js
- Registry value successfully deleted:
- Key: HKLM32\SOFTWARE\Mozilla\Firefox\Extensions
- Value: [email protected]
- Folder successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\Mozilla\Firefox\Profiles\zdifer99.default\Extensions\[email protected]
- Folder successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\Mozilla\Firefox\Profiles\zdifer99.default\Extensions\[email protected]
- Folder successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\Mozilla\Firefox\Profiles\zdifer99.default\Extensions\[email protected]
- Folder successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\Mozilla\Firefox\Profiles\zdifer99.default\Extensions\[email protected]
- File successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\Mozilla\Firefox\Profiles\zdifer99.default\searchplugins\mystartsearch.xml
- File successfully deleted:
- Path:C:\Users\Infected\AppData\Roaming\Mozilla\Firefox\Profiles\zdifer99.default\searchplugins\WebSearch.xml
- ->End of the removal process. Time: 2015/04/14 16:37:00
- ###### End of the removal report 46412 bytes ######
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement