Hello,
When I click on certain links a new window opens up with a .com site called SRVS and then a long name after, I also have the PupBitminer that comes threw consistently.
I hope someone could help me destroy these bad viruses, thank you.
Here is the AdwCleaner copy:
# AdwCleaner v3.014 - Report created 07/12/2013 at 11:09:57
# Updated 01/12/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : BlackOps - BLACKOPS-HP
# Running from : C:\Users\BlackOps\Desktop\adwcleaner.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
File Found : C:\END
File Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay.lnk
File Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_app.mam.conduit.com_0.localstorage
File Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_app.mam.conduit.com_0.localstorage-journal
File Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\user data\default\local storage\hxxp_pricegong.conduitapps.com_0.localstorage
File Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\user data\default\local storage\hxxp_pricegong.conduitapps.com_0.localstorage-journal
File Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_storage.conduit.com_0.localstorage
File Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_storage.conduit.com_0.localstorage-journal
Folder Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\User Data\Default\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Folder Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\User Data\Default\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Folder Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\User Data\Default\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Folder Found : C:\Users\BlackOps\AppData\Roaming\Mozilla\Firefox\Profiles\hm20z9j9.default\Extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}
Folder Found : C:\Users\BlackOps\AppData\Roaming\Mozilla\Firefox\Profiles\hm20z9j9.default\Extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}
Folder Found : C:\Users\BlackOps\AppData\Roaming\Mozilla\Firefox\Profiles\hm20z9j9.default\Extensions\wecarereminder@bryan
Folder Found C:\Program Files (x86)\Common Files\DVDVideoSoft\TB
Folder Found C:\Program Files (x86)\Conduit
Folder Found C:\ProgramData\WeCareReminder
Folder Found C:\Users\BlackOps\AppData\Local\Conduit
Folder Found C:\Users\BlackOps\AppData\Local\NativeMessaging
Folder Found C:\Users\BlackOps\AppData\Local\TBHostSupport
Folder Found C:\Users\BlackOps\AppData\Local\WhiteListing
Folder Found C:\Users\BlackOps\AppData\LocalLow\Conduit
Folder Found C:\Users\BlackOps\AppData\LocalLow\PriceGong
Folder Found C:\Users\BlackOps\AppData\Roaming\dvdvideosoftiehelpers
Folder Found C:\Users\BlackOps\AppData\Roaming\Mozilla\Firefox\Profiles\hm20z9j9.default\CT2269050
Folder Found C:\Users\BlackOps\AppData\Roaming\Mozilla\Firefox\Profiles\hm20z9j9.default\Smartbar
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\AppDataLow\Software\Conduit
Key Found : HKCU\Software\AppDataLow\Software\PriceGong
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Google\Chrome\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Key Found : HKCU\Software\Google\Chrome\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Key Found : HKCU\Software\Google\Chrome\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKCU\Software\wecarereminder
Key Found : HKCU\Software\YahooPartnerToolbar
Key Found : [x64] HKCU\Software\Conduit
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : [x64] HKCU\Software\wecarereminder
Key Found : [x64] HKCU\Software\YahooPartnerToolbar
Key Found : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Found : HKLM\SOFTWARE\Classes\AppID\{4FBBF769-ECEB-420A-B536-133B1D505C36}
Key Found : HKLM\SOFTWARE\Classes\AppID\IEHelperv2.5.0.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\WLXQuickTimeShellExt.DLL
Key Found : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{F773BB94-6C19-4643-A570-0E429103D1C3}
Key Found : HKLM\SOFTWARE\Classes\Conduit.Engine
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2269050
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2786678
Key Found : HKLM\Software\Conduit
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC5B6CDA-8F90-4740-9A8C-28AC5D3C73FE}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{872B5B88-9DB5-4310-BDD0-AC189557E5F5}]
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16428
-\\ Mozilla Firefox v21.0 (en-US)
[ File : C:\Users\BlackOps\AppData\Roaming\Mozilla\Firefox\Profiles\hm20z9j9.default\prefs.js ]
Line Found : user_pref("CT2269050.1000082.isDisplayHidden", "true");
Line Found : user_pref("CT2269050.1000082.shrinkState", "shrinked");
Line Found : user_pref("CT2269050.1000082.state", "{\"state\":\"stopped\",\"text\":\"Hotmix 108\",\"description\":\"Hotmix 108\",\"url\":\"hxxp://67.202.67.18:8082\"}");
Line Found : user_pref("CT2269050.1000234.TWC_TMP_city", "PHOENIX");
Line Found : user_pref("CT2269050.1000234.TWC_TMP_country", "US");
Line Found : user_pref("CT2269050.1000234.TWC_locId", "USAZ0166");
Line Found : user_pref("CT2269050.1000234.TWC_location", "Phoenix, AZ");
Line Found : user_pref("CT2269050.1000234.TWC_region", "US");
Line Found : user_pref("CT2269050.1000234.TWC_temp_dis", "f");
Line Found : user_pref("CT2269050.1000234.TWC_wind_dis", "mph");
Line Found : user_pref("CT2269050.1000234.weatherData", "{\"icon\":\"30.png\",\"temperature\":\"73°F\",\"temperatureClear\":\"73°F\",\"highTemperature\":\"73°F\",\"lowTemperature\":\"50°F\",\"feelsLike\":\"73°F\",[...]
Line Found : user_pref("CT2269050.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT2269050.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT2269050.FirstTime", "true");
Line Found : user_pref("CT2269050.FirstTimeFF3", "true");
Line Found : user_pref("CT2269050.LoginRevertSettingsEnabled", true);
Line Found : user_pref("CT2269050.RevertSettingsEnabled", true);
Line Found : user_pref("CT2269050.SearchAppState.enc", "Mw==");
Line Found : user_pref("CT2269050.SearchAppTracking.enc", "c2VudA==");
Line Found : user_pref("CT2269050.UserID", "UN10428765869859482");
Line Found : user_pref("CT2269050.addressBarTakeOverEnabledInHidden", "true");
Line Found : user_pref("CT2269050.autoDisableScopes", -1);
Line Found : user_pref("CT2269050.cbcountry_001", "VVM=");
Line Found : user_pref("CT2269050.cbfirsttime", "RnJpIE9jdCAwNSAyMDEyIDE2OjQ2OjQ0IEdNVC0wNzAwIChVUyBNb3VudGFpbiBTdGFuZGFyZCBUaW1lKQ==");
Line Found : user_pref("CT2269050.countryCode", "US");
Line Found : user_pref("CT2269050.defaultSearch", "false");
Line Found : user_pref("CT2269050.enableAlerts", "false");
Line Found : user_pref("CT2269050.enableFix404ByUser", "TRUE");
Line Found : user_pref("CT2269050.enableSearchFromAddressBar", "true");
Line Found : user_pref("CT2269050.firstTimeDialogOpened", "true");
Line Found : user_pref("CT2269050.fixPageNotFoundError", "true");
Line Found : user_pref("CT2269050.fixPageNotFoundErrorByUser", "true");
Line Found : user_pref("CT2269050.fixPageNotFoundErrorInHidden", "true");
Line Found : user_pref("CT2269050.fixUrls", true);
Line Found : user_pref("CT2269050.fullUserID", "UN10428765869859482.UP.20130625225909");
Line Found : user_pref("CT2269050.hxxp___storage_conduit_com_marketplace_83_6d_8399d181_be98_42f2_b035_1616f617316d_.PriceSparrowUuid.enc", "ZTM5NGQ5ZjQtZTgyZS00MTk1LWJkODQtMzQxY2Q2OGI4NDg4");
Line Found : user_pref("CT2269050.installId", "ConduitNSISIntegration");
Line Found : user_pref("CT2269050.installType", "ConduitNSISIntegration");
Line Found : user_pref("CT2269050.isCheckedStartAsHidden", true);
Line Found : user_pref("CT2269050.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT2269050.isFirstTimeToolbarLoading", "false");
Line Found : user_pref("CT2269050.isNewTabEnabled", false);
Line Found : user_pref("CT2269050.isPerformedSmartBarTransition", "true");
Line Found : user_pref("CT2269050.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
Line Found : user_pref("CT2269050.lastNewTabSettings", "{\"isEnabled\":false,\"newTabUrl\":\"hxxp://search.conduit.com/?ctid=CT2269050&octid=CT2269050&SearchSource=15&CUI=UN10428765869859482&SSPV=&Lay=1&UM=false\"[...]
Line Found : user_pref("CT2269050.lastVersion", "10.16.4.519");
Line Found : user_pref("CT2269050.migrateAppsAndComponents", true);
Line Found : user_pref("CT2269050.navigationAliasesJson", "{\"EB_SEARCH_TERM\":\"\",\"EB_MAIN_FRAME_URL\":\"\",\"EB_MAIN_FRAME_TITLE\":\"\",\"EB_TOOLBAR_SUB_DOMAIN\":\"hxxp://DVDVideoSoftTB.OurToolbar.com/\",\"EB_[...]
Line Found : user_pref("CT2269050.openThankYouPage", "false");
Line Found : user_pref("CT2269050.openUninstallPage", "true");
Line Found : user_pref("CT2269050.search.searchAppId", "128834881989343895");
Line Found : user_pref("CT2269050.search.searchCount", "2");
Line Found : user_pref("CT2269050.searchInNewTabEnabled", "false");
Line Found : user_pref("CT2269050.searchInNewTabEnabledByUser", "false");
Line Found : user_pref("CT2269050.searchInNewTabEnabledInHidden", "true");
Line Found : user_pref("CT2269050.searchProtector.notifyChanges", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT2269050.searchSuggestEnabledByUser", "false");
Line Found : user_pref("CT2269050.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT2269050.sendUsageEnabled", "false");
Line Found : user_pref("CT2269050.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Line Found : user_pref("CT2269050.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}");
Line Found : user_pref("CT2269050.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT2269050\"}");
Line Found : user_pref("CT2269050.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://DVDVideoSoftTB.OurToolbar.com//xpi\"}");
Line Found : user_pref("CT2269050.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"DVDVideoSoftTB\"}");
Line Found : user_pref("CT2269050.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT2269050.serviceLayer_services_Configuration_lastUpdate", "1373507080324");
Line Found : user_pref("CT2269050.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1365299530240");
Line Found : user_pref("CT2269050.serviceLayer_services_appTracking_lastUpdate", "1353369370353");
Line Found : user_pref("CT2269050.serviceLayer_services_appsMetadata_lastUpdate", "1365509320364");
Line Found : user_pref("CT2269050.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1365176438382");
Line Found : user_pref("CT2269050.serviceLayer_services_location_lastUpdate", "1372196494445");
Line Found : user_pref("CT2269050.serviceLayer_services_login_10.13.1.89_lastUpdate", "1352649753672");
Line Found : user_pref("CT2269050.serviceLayer_services_login_10.13.40.15_lastUpdate", "1361727556763");
Line Found : user_pref("CT2269050.serviceLayer_services_login_10.14.65.43_lastUpdate", "1363903008080");
Line Found : user_pref("CT2269050.serviceLayer_services_login_10.15.0.562_lastUpdate", "1365640901969");
Line Found : user_pref("CT2269050.serviceLayer_services_login_10.15.2.523_lastUpdate", "1367933041067");
Line Found : user_pref("CT2269050.serviceLayer_services_login_10.16.1.521_lastUpdate", "1368796972909");
Line Found : user_pref("CT2269050.serviceLayer_services_login_10.16.2.509_lastUpdate", "1372198203549");
Line Found : user_pref("CT2269050.serviceLayer_services_login_10.16.4.519_lastUpdate", "1373506957713");
Line Found : user_pref("CT2269050.serviceLayer_services_optimizer_lastUpdate", "1352325044108");
Line Found : user_pref("CT2269050.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1365176438168");
Line Found : user_pref("CT2269050.serviceLayer_services_searchAPI_lastUpdate", "1373507080208");
Line Found : user_pref("CT2269050.serviceLayer_services_serviceMap_lastUpdate", "1373507080062");
Line Found : user_pref("CT2269050.serviceLayer_services_setupAPI_lastUpdate", "1363903144105");
Line Found : user_pref("CT2269050.serviceLayer_services_toolbarContextMenu_lastUpdate", "1365176438496");
Line Found : user_pref("CT2269050.serviceLayer_services_toolbarSettings_lastUpdate", "1373513542916");
Line Found : user_pref("CT2269050.serviceLayer_services_translation_lastUpdate", "1372196494433");
Line Found : user_pref("CT2269050.settingsINI", true);
Line Found : user_pref("CT2269050.shouldFirstTimeDialog", "false");
Line Found : user_pref("CT2269050.showToolbarPermission", "false");
Line Found : user_pref("CT2269050.smartbar.CTID", "CT2269050");
Line Found : user_pref("CT2269050.smartbar.Uninstall", "0");
Line Found : user_pref("CT2269050.smartbar.isHidden", true);
Line Found : user_pref("CT2269050.smartbar.toolbarName", "DVDVideoSoftTB ");
Line Found : user_pref("CT2269050.startPage", "false");
Line Found : user_pref("CT2269050.toolbarBornServerTime", "6-10-2012");
Line Found : user_pref("CT2269050.toolbarCurrentServerTime", "11-7-2013");
Line Found : user_pref("CT2269050.toolbarLoginClientTime", "Thu Mar 21 2013 18:18:45 GMT-0700 (US Mountain Standard Time)");
Line Found : user_pref("CT2269050_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1373514071246,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]");
Line Found : user_pref("smartbar.machineId", "ST3W93B0KNAYMA3B6BMSVFI0JNRWTR9WPMP31MYO7/Q7ZCWZ8VL3XB792DNLECV7DQPC8J8KCARZLSKWPRP6RG");
[ File : C:\Users\Delisa\AppData\Roaming\Mozilla\Firefox\Profiles\9puuxq49.default\prefs.js ]
-\\ Google Chrome v
[ File : C:\Users\BlackOps\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [15583 octets] - [07/12/2013 11:09:57]
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [15644 octets] ##########
When I click on certain links a new window opens up with a .com site called SRVS and then a long name after, I also have the PupBitminer that comes threw consistently.
I hope someone could help me destroy these bad viruses, thank you.
Here is the AdwCleaner copy:
# AdwCleaner v3.014 - Report created 07/12/2013 at 11:09:57
# Updated 01/12/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : BlackOps - BLACKOPS-HP
# Running from : C:\Users\BlackOps\Desktop\adwcleaner.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
File Found : C:\END
File Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay.lnk
File Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_app.mam.conduit.com_0.localstorage
File Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_app.mam.conduit.com_0.localstorage-journal
File Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\user data\default\local storage\hxxp_pricegong.conduitapps.com_0.localstorage
File Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\user data\default\local storage\hxxp_pricegong.conduitapps.com_0.localstorage-journal
File Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_storage.conduit.com_0.localstorage
File Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_storage.conduit.com_0.localstorage-journal
Folder Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\User Data\Default\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Folder Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\User Data\Default\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Folder Found : C:\Users\BlackOps\AppData\Local\Google\Chrome\User Data\Default\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Folder Found : C:\Users\BlackOps\AppData\Roaming\Mozilla\Firefox\Profiles\hm20z9j9.default\Extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}
Folder Found : C:\Users\BlackOps\AppData\Roaming\Mozilla\Firefox\Profiles\hm20z9j9.default\Extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}
Folder Found : C:\Users\BlackOps\AppData\Roaming\Mozilla\Firefox\Profiles\hm20z9j9.default\Extensions\wecarereminder@bryan
Folder Found C:\Program Files (x86)\Common Files\DVDVideoSoft\TB
Folder Found C:\Program Files (x86)\Conduit
Folder Found C:\ProgramData\WeCareReminder
Folder Found C:\Users\BlackOps\AppData\Local\Conduit
Folder Found C:\Users\BlackOps\AppData\Local\NativeMessaging
Folder Found C:\Users\BlackOps\AppData\Local\TBHostSupport
Folder Found C:\Users\BlackOps\AppData\Local\WhiteListing
Folder Found C:\Users\BlackOps\AppData\LocalLow\Conduit
Folder Found C:\Users\BlackOps\AppData\LocalLow\PriceGong
Folder Found C:\Users\BlackOps\AppData\Roaming\dvdvideosoftiehelpers
Folder Found C:\Users\BlackOps\AppData\Roaming\Mozilla\Firefox\Profiles\hm20z9j9.default\CT2269050
Folder Found C:\Users\BlackOps\AppData\Roaming\Mozilla\Firefox\Profiles\hm20z9j9.default\Smartbar
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\AppDataLow\Software\Conduit
Key Found : HKCU\Software\AppDataLow\Software\PriceGong
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Google\Chrome\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Key Found : HKCU\Software\Google\Chrome\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Key Found : HKCU\Software\Google\Chrome\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKCU\Software\wecarereminder
Key Found : HKCU\Software\YahooPartnerToolbar
Key Found : [x64] HKCU\Software\Conduit
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : [x64] HKCU\Software\wecarereminder
Key Found : [x64] HKCU\Software\YahooPartnerToolbar
Key Found : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Found : HKLM\SOFTWARE\Classes\AppID\{4FBBF769-ECEB-420A-B536-133B1D505C36}
Key Found : HKLM\SOFTWARE\Classes\AppID\IEHelperv2.5.0.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\WLXQuickTimeShellExt.DLL
Key Found : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{F773BB94-6C19-4643-A570-0E429103D1C3}
Key Found : HKLM\SOFTWARE\Classes\Conduit.Engine
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2269050
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2786678
Key Found : HKLM\Software\Conduit
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\plmlpkfpkijnlijgalnjaacllnjmoamo
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC5B6CDA-8F90-4740-9A8C-28AC5D3C73FE}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{872B5B88-9DB5-4310-BDD0-AC189557E5F5}]
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16428
-\\ Mozilla Firefox v21.0 (en-US)
[ File : C:\Users\BlackOps\AppData\Roaming\Mozilla\Firefox\Profiles\hm20z9j9.default\prefs.js ]
Line Found : user_pref("CT2269050.1000082.isDisplayHidden", "true");
Line Found : user_pref("CT2269050.1000082.shrinkState", "shrinked");
Line Found : user_pref("CT2269050.1000082.state", "{\"state\":\"stopped\",\"text\":\"Hotmix 108\",\"description\":\"Hotmix 108\",\"url\":\"hxxp://67.202.67.18:8082\"}");
Line Found : user_pref("CT2269050.1000234.TWC_TMP_city", "PHOENIX");
Line Found : user_pref("CT2269050.1000234.TWC_TMP_country", "US");
Line Found : user_pref("CT2269050.1000234.TWC_locId", "USAZ0166");
Line Found : user_pref("CT2269050.1000234.TWC_location", "Phoenix, AZ");
Line Found : user_pref("CT2269050.1000234.TWC_region", "US");
Line Found : user_pref("CT2269050.1000234.TWC_temp_dis", "f");
Line Found : user_pref("CT2269050.1000234.TWC_wind_dis", "mph");
Line Found : user_pref("CT2269050.1000234.weatherData", "{\"icon\":\"30.png\",\"temperature\":\"73°F\",\"temperatureClear\":\"73°F\",\"highTemperature\":\"73°F\",\"lowTemperature\":\"50°F\",\"feelsLike\":\"73°F\",[...]
Line Found : user_pref("CT2269050.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT2269050.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT2269050.FirstTime", "true");
Line Found : user_pref("CT2269050.FirstTimeFF3", "true");
Line Found : user_pref("CT2269050.LoginRevertSettingsEnabled", true);
Line Found : user_pref("CT2269050.RevertSettingsEnabled", true);
Line Found : user_pref("CT2269050.SearchAppState.enc", "Mw==");
Line Found : user_pref("CT2269050.SearchAppTracking.enc", "c2VudA==");
Line Found : user_pref("CT2269050.UserID", "UN10428765869859482");
Line Found : user_pref("CT2269050.addressBarTakeOverEnabledInHidden", "true");
Line Found : user_pref("CT2269050.autoDisableScopes", -1);
Line Found : user_pref("CT2269050.cbcountry_001", "VVM=");
Line Found : user_pref("CT2269050.cbfirsttime", "RnJpIE9jdCAwNSAyMDEyIDE2OjQ2OjQ0IEdNVC0wNzAwIChVUyBNb3VudGFpbiBTdGFuZGFyZCBUaW1lKQ==");
Line Found : user_pref("CT2269050.countryCode", "US");
Line Found : user_pref("CT2269050.defaultSearch", "false");
Line Found : user_pref("CT2269050.enableAlerts", "false");
Line Found : user_pref("CT2269050.enableFix404ByUser", "TRUE");
Line Found : user_pref("CT2269050.enableSearchFromAddressBar", "true");
Line Found : user_pref("CT2269050.firstTimeDialogOpened", "true");
Line Found : user_pref("CT2269050.fixPageNotFoundError", "true");
Line Found : user_pref("CT2269050.fixPageNotFoundErrorByUser", "true");
Line Found : user_pref("CT2269050.fixPageNotFoundErrorInHidden", "true");
Line Found : user_pref("CT2269050.fixUrls", true);
Line Found : user_pref("CT2269050.fullUserID", "UN10428765869859482.UP.20130625225909");
Line Found : user_pref("CT2269050.hxxp___storage_conduit_com_marketplace_83_6d_8399d181_be98_42f2_b035_1616f617316d_.PriceSparrowUuid.enc", "ZTM5NGQ5ZjQtZTgyZS00MTk1LWJkODQtMzQxY2Q2OGI4NDg4");
Line Found : user_pref("CT2269050.installId", "ConduitNSISIntegration");
Line Found : user_pref("CT2269050.installType", "ConduitNSISIntegration");
Line Found : user_pref("CT2269050.isCheckedStartAsHidden", true);
Line Found : user_pref("CT2269050.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT2269050.isFirstTimeToolbarLoading", "false");
Line Found : user_pref("CT2269050.isNewTabEnabled", false);
Line Found : user_pref("CT2269050.isPerformedSmartBarTransition", "true");
Line Found : user_pref("CT2269050.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
Line Found : user_pref("CT2269050.lastNewTabSettings", "{\"isEnabled\":false,\"newTabUrl\":\"hxxp://search.conduit.com/?ctid=CT2269050&octid=CT2269050&SearchSource=15&CUI=UN10428765869859482&SSPV=&Lay=1&UM=false\"[...]
Line Found : user_pref("CT2269050.lastVersion", "10.16.4.519");
Line Found : user_pref("CT2269050.migrateAppsAndComponents", true);
Line Found : user_pref("CT2269050.navigationAliasesJson", "{\"EB_SEARCH_TERM\":\"\",\"EB_MAIN_FRAME_URL\":\"\",\"EB_MAIN_FRAME_TITLE\":\"\",\"EB_TOOLBAR_SUB_DOMAIN\":\"hxxp://DVDVideoSoftTB.OurToolbar.com/\",\"EB_[...]
Line Found : user_pref("CT2269050.openThankYouPage", "false");
Line Found : user_pref("CT2269050.openUninstallPage", "true");
Line Found : user_pref("CT2269050.search.searchAppId", "128834881989343895");
Line Found : user_pref("CT2269050.search.searchCount", "2");
Line Found : user_pref("CT2269050.searchInNewTabEnabled", "false");
Line Found : user_pref("CT2269050.searchInNewTabEnabledByUser", "false");
Line Found : user_pref("CT2269050.searchInNewTabEnabledInHidden", "true");
Line Found : user_pref("CT2269050.searchProtector.notifyChanges", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT2269050.searchSuggestEnabledByUser", "false");
Line Found : user_pref("CT2269050.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT2269050.sendUsageEnabled", "false");
Line Found : user_pref("CT2269050.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Line Found : user_pref("CT2269050.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}");
Line Found : user_pref("CT2269050.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT2269050\"}");
Line Found : user_pref("CT2269050.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://DVDVideoSoftTB.OurToolbar.com//xpi\"}");
Line Found : user_pref("CT2269050.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"DVDVideoSoftTB\"}");
Line Found : user_pref("CT2269050.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Found : user_pref("CT2269050.serviceLayer_services_Configuration_lastUpdate", "1373507080324");
Line Found : user_pref("CT2269050.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1365299530240");
Line Found : user_pref("CT2269050.serviceLayer_services_appTracking_lastUpdate", "1353369370353");
Line Found : user_pref("CT2269050.serviceLayer_services_appsMetadata_lastUpdate", "1365509320364");
Line Found : user_pref("CT2269050.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1365176438382");
Line Found : user_pref("CT2269050.serviceLayer_services_location_lastUpdate", "1372196494445");
Line Found : user_pref("CT2269050.serviceLayer_services_login_10.13.1.89_lastUpdate", "1352649753672");
Line Found : user_pref("CT2269050.serviceLayer_services_login_10.13.40.15_lastUpdate", "1361727556763");
Line Found : user_pref("CT2269050.serviceLayer_services_login_10.14.65.43_lastUpdate", "1363903008080");
Line Found : user_pref("CT2269050.serviceLayer_services_login_10.15.0.562_lastUpdate", "1365640901969");
Line Found : user_pref("CT2269050.serviceLayer_services_login_10.15.2.523_lastUpdate", "1367933041067");
Line Found : user_pref("CT2269050.serviceLayer_services_login_10.16.1.521_lastUpdate", "1368796972909");
Line Found : user_pref("CT2269050.serviceLayer_services_login_10.16.2.509_lastUpdate", "1372198203549");
Line Found : user_pref("CT2269050.serviceLayer_services_login_10.16.4.519_lastUpdate", "1373506957713");
Line Found : user_pref("CT2269050.serviceLayer_services_optimizer_lastUpdate", "1352325044108");
Line Found : user_pref("CT2269050.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1365176438168");
Line Found : user_pref("CT2269050.serviceLayer_services_searchAPI_lastUpdate", "1373507080208");
Line Found : user_pref("CT2269050.serviceLayer_services_serviceMap_lastUpdate", "1373507080062");
Line Found : user_pref("CT2269050.serviceLayer_services_setupAPI_lastUpdate", "1363903144105");
Line Found : user_pref("CT2269050.serviceLayer_services_toolbarContextMenu_lastUpdate", "1365176438496");
Line Found : user_pref("CT2269050.serviceLayer_services_toolbarSettings_lastUpdate", "1373513542916");
Line Found : user_pref("CT2269050.serviceLayer_services_translation_lastUpdate", "1372196494433");
Line Found : user_pref("CT2269050.settingsINI", true);
Line Found : user_pref("CT2269050.shouldFirstTimeDialog", "false");
Line Found : user_pref("CT2269050.showToolbarPermission", "false");
Line Found : user_pref("CT2269050.smartbar.CTID", "CT2269050");
Line Found : user_pref("CT2269050.smartbar.Uninstall", "0");
Line Found : user_pref("CT2269050.smartbar.isHidden", true);
Line Found : user_pref("CT2269050.smartbar.toolbarName", "DVDVideoSoftTB ");
Line Found : user_pref("CT2269050.startPage", "false");
Line Found : user_pref("CT2269050.toolbarBornServerTime", "6-10-2012");
Line Found : user_pref("CT2269050.toolbarCurrentServerTime", "11-7-2013");
Line Found : user_pref("CT2269050.toolbarLoginClientTime", "Thu Mar 21 2013 18:18:45 GMT-0700 (US Mountain Standard Time)");
Line Found : user_pref("CT2269050_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1373514071246,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]");
Line Found : user_pref("smartbar.machineId", "ST3W93B0KNAYMA3B6BMSVFI0JNRWTR9WPMP31MYO7/Q7ZCWZ8VL3XB792DNLECV7DQPC8J8KCARZLSKWPRP6RG");
[ File : C:\Users\Delisa\AppData\Roaming\Mozilla\Firefox\Profiles\9puuxq49.default\prefs.js ]
-\\ Google Chrome v
[ File : C:\Users\BlackOps\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [15583 octets] - [07/12/2013 11:09:57]
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [15644 octets] ##########