# AdwCleaner v5.119 - Logfile created 12/06/2016 at 16:51:47 # Updated 30/05/2016 by Xplode # Database : 2016-06-12.1 [Server] # Operating system : Windows 10 Pro (X64) # Username : AKRAM - VENENOSPIRO # Running from : C:\Users\AKRAM\Desktop\adwcleaner_5.119.exe # Option : Scan # Support : http://toolslib.net/forum ***** [ Services ] ***** ***** [ Folders ] ***** Folder Found : C:\Users\AKRAM\AppData\Local\Temp\APN-Stub Folder Found : C:\Users\AKRAM\AppData\Local\Temp\APNLogs Folder Found : C:\Users\AKRAM\AppData\Roaming\Microsoft\Windows\Start Menu\ByteFence ***** [ Files ] ***** File Found : C:\Users\AKRAM\AppData\Roaming\Mozilla\Firefox\Profiles\ply0ci38.default\searchplugins\Search Provided by Yahoo.xml File Found : C:\Users\AKRAM\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_facebook-for-windows-10.fr.softonic.com_0.localstorage File Found : C:\Users\AKRAM\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_facebook-for-windows-10.fr.softonic.com_0.localstorage-journal File Found : C:\Users\AKRAM\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fr.softonic.com_0.localstorage File Found : C:\Users\AKRAM\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fr.softonic.com_0.localstorage-journal File Found : C:\Users\AKRAM\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_land.pckeeper.software_0.localstorage File Found : C:\Users\AKRAM\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_land.pckeeper.software_0.localstorage-journal File Found : C:\Users\AKRAM\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.searchinsocial.com_0.localstorage File Found : C:\Users\AKRAM\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.searchinsocial.com_0.localstorage-journal ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Shortcuts ] ***** ***** [ Scheduled tasks ] ***** ***** [ Registry ] ***** Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Key Found : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} Key Found : HKLM\SOFTWARE\Classes\CLSID\{7E6D4E3E-FC66-4036-9799-CE5C625C4C56} Key Found : HKLM\SOFTWARE\Classes\CLSID\{A07E5BFF-B16C-4ABA-A30F-514213A945E6} Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7E6D4E3E-FC66-4036-9799-CE5C625C4C56} Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7E6D4E3E-FC66-4036-9799-CE5C625C4C56} Key Found : HKCU\Software\ClearThink Key Found : HKCU\Software\InstallCore Key Found : HKCU\Software\PRODUCTSETUP Key Found : HKCU\Software\TeleCharger Key Found : HKCU\Software\csastats Key Found : HKU\S-1-5-21-1753773576-1647398134-3515720838-1001\Software\ClearThink Key Found : HKU\S-1-5-21-1753773576-1647398134-3515720838-1001\Software\InstallCore Key Found : HKU\S-1-5-21-1753773576-1647398134-3515720838-1001\Software\PRODUCTSETUP Key Found : HKU\S-1-5-21-1753773576-1647398134-3515720838-1001\Software\TeleCharger Key Found : HKU\S-1-5-21-1753773576-1647398134-3515720838-1001\Software\csastats Key Found : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1753773576-1647398134-3515720838-1001\Software\ClearThink Data Found : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxps://us.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ir_16_22_newdop¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Ddz%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0AyCtCyBtAtCyB0AyCyD0E0E0FyEyCzytN0D0Tzu0StCyCtCtAtN1L2XzutAtFtBtCtFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StB0F0F0C0BzyyE0DtGyB0BtCtAtGyB0CzzyBtGtDzytAyDtGtDzytCtAyC0FyDyByB0DyCtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0AyBzzyC0AzzyB0DtGzzyEtAyCtGyE0EyCtAtG0B0BzztAtG0EyBzy0CyE0EyC0D0BzytA0C2QtN0A0LzuyE%26cr%3D419384488%26a%3Dwny_ir_16_22_newdop%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro Data Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - hxxps://us.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ir_16_22_newdop¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Ddz%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0AyCtCyBtAtCyB0AyCyD0E0E0FyEyCzytN0D0Tzu0StCyCtCtAtN1L2XzutAtFtBtCtFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StB0F0F0C0BzyyE0DtGyB0BtCtAtGyB0CzzyBtGtDzytAyDtGtDzytCtAyC0FyDyByB0DyCtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0AyBzzyC0AzzyB0DtGzzyEtAyCtGyE0EyCtAtG0B0BzztAtG0EyBzy0CyE0EyC0D0BzytA0C2QtN0A0LzuyE%26cr%3D419384488%26a%3Dwny_ir_16_22_newdop%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro Data Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - hxxps://us.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ir_16_22_newdop¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Ddz%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0AyCtCyBtAtCyB0AyCyD0E0E0FyEyCzytN0D0Tzu0StCyCtCtAtN1L2XzutAtFtBtCtFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StB0F0F0C0BzyyE0DtGyB0BtCtAtGyB0CzzyBtGtDzytAyDtGtDzytCtAyC0FyDyByB0DyCtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0AyBzzyC0AzzyB0DtGzzyEtAyCtGyE0EyCtAtG0B0BzztAtG0EyBzy0CyE0EyC0D0BzytA0C2QtN0A0LzuyE%26cr%3D419384488%26a%3Dwny_ir_16_22_newdop%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro Data Found : HKU\S-1-5-21-1753773576-1647398134-3515720838-1001\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxps://us.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ir_16_22_newdop¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Ddz%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0AyCtCyBtAtCyB0AyCyD0E0E0FyEyCzytN0D0Tzu0StCyCtCtAtN1L2XzutAtFtBtCtFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StB0F0F0C0BzyyE0DtGyB0BtCtAtGyB0CzzyBtGtDzytAyDtGtDzytCtAyC0FyDyByB0DyCtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0AyBzzyC0AzzyB0DtGzzyEtAyCtGyE0EyCtAtG0B0BzztAtG0EyBzy0CyE0EyC0D0BzytA0C2QtN0A0LzuyE%26cr%3D419384488%26a%3Dwny_ir_16_22_newdop%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Data Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Data Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope] - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Key Found : HKU\S-1-5-21-1753773576-1647398134-3515720838-1001\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Data Found : HKU\S-1-5-21-1753773576-1647398134-3515720838-1001\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Key Found : HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\fr.softonic.com Key Found : HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\piroga.space Key Found : HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\softonic.com Key Found : HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\fr.softonic.com Key Found : HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\piroga.space Key Found : HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\softonic.com ***** [ Web browsers ] ***** [C:\Users\AKRAM\AppData\Roaming\Mozilla\Firefox\Profiles\ply0ci38.default\prefs.js] Found : user_pref("browser.search.defaultenginename", "Search Provided by Yahoo"); [C:\Users\AKRAM\AppData\Roaming\Mozilla\Firefox\Profiles\ply0ci38.default\prefs.js] Found : user_pref("browser.search.selectedEngine", "Search Provided by Yahoo"); [C:\Users\AKRAM\AppData\Roaming\Mozilla\Firefox\Profiles\ply0ci38.default\prefs.js] Found : user_pref("browser.startup.homepage", "hxxps://us.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ir_16_22_newdop¶m1=1¶m2=f%3D1%26b%3DFirefox%26cc%3Ddz%26pa%3DWinYahoo%2[...] ************************* C:\AdwCleaner\AdwCleaner[S1].txt - [8615 bytes] - [12/06/2016 16:51:47] ########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [8688 bytes] ##########