Jump to content

eazel removal from browser


heat

Recommended Posts

Welcome to the forum.

Please download and run RogueKiller 32 Bit to your desktop.

RogueKiller 64 Bit <---use this one for 64 bit systems

Which system am I using?

Quit all running programs.

For Windows XP, double-click to start.

For Vista or Windows 7-8, do a right-click on the program, select Run as Administrator to start, & when prompted Allow to run.

Click Scan to scan the system.

When the scan completes > Close out the program > Don't Fix anything!

Don't run any other options, they're not all bad!!!!!!!

Post back the report which should be located on your desktop.

(please don't put logs in code or quotes and use the default font)

General P2P/Piracy Warning:

1. If you're using Peer 2 Peer software such uTorrent, BitTorrent or similar you must either fully uninstall it or completely disable it from running while being assisted here.

Failure to remove or disable such software will result in your topic being closed and no further assistance being provided.

2. If you have illegal/cracked software, cracks, keygens, custom (Adobe) host file, etc. on the system, please remove or uninstall them now and read the policy on Piracy.

Failure to remove such software will result in your topic being closed and no further assistance being provided.

MrC

Note:

Please read all of my instructions completely including these.

Make sure system restore is turned on and running, please create a new restore point

Make sure you're subscribed to this topic: Click on the Follow This Topic Button (at the top right of this page), make sure that the Receive notification box is checked and that it is set to Instantly

Removing malware can be unpredictable...unlikely but things can go very wrong! Backup any files that cannot be replaced. You can copy them to a CD/DVD, external drive or a pen drive

<+>Please don't run any other scans, download, install or uninstall any programs while I'm working with you.

<+>The removal of malware isn't instantaneous, please be patient.

<+>When we are done, I'll give to instructions on how to cleanup all the tools and logs

<+>Please stick with me until I give you the "all clear" and Please don't waste my time by leaving before that.

------->Your topic will be closed if you haven't replied within 3 days!<--------

(If I don't respond within 24 hours, please send me a PM)

Link to post
Share on other sites

RogueKiller V8.8.3 [Jan 24 2014] by Tigzy

mail : tigzyRK<at>gmail<dot>com




 

Operating System : Windows Vista (6.0.6002 Service Pack 2) 32 bits version

Started in : Normal mode

User : john carron [Admin rights]

Mode : Scan -- Date : 01/24/2014 20:30:49

| ARK || FAK || MBR |

 

¤¤¤ Bad processes : 1 ¤¤¤

[sUSP PATH] JDownloader2.exe -- C:\Users\john carron\AppData\Local\JDownloader v2.0\JDownloader2.exe [7] -> KILLED [TermProc]

 

¤¤¤ Registry Entries : 10 ¤¤¤

[RUN][sUSP PATH] HKCU\[...]\RunOnce : Del177454694 (cmd.exe /Q /D /c del "C:\Users\JOHNCA~1\AppData\Local\Temp\0.del" [x][x]) -> FOUND

[RUN][sUSP PATH] HKCU\[...]\RunOnce : DelTr177589494 (cmd.exe /c rd /s /q  "C:\Users\john carron\AppData\Roaming\mysearchdial" [x][x]) -> FOUND

[RUN][sUSP PATH] HKLM\[...]\RunOnce : Del177454694 (cmd.exe /Q /D /c del "C:\Users\JOHNCA~1\AppData\Local\Temp\0.del" [x][x]) -> FOUND

[RUN][sUSP PATH] HKLM\[...]\RunOnce : DelTr177589494 (cmd.exe /c rd /s /q  "C:\Users\john carron\AppData\Roaming\mysearchdial" [x][x]) -> FOUND

[RUN][sUSP PATH] HKUS\S-1-5-21-2962413446-2414532552-4251591202-1000\[...]\RunOnce : Del177454694 (cmd.exe /Q /D /c del "C:\Users\JOHNCA~1\AppData\Local\Temp\0.del" [x][x]) -> FOUND

[RUN][sUSP PATH] HKUS\S-1-5-21-2962413446-2414532552-4251591202-1000\[...]\RunOnce : DelTr177589494 (cmd.exe /c rd /s /q  "C:\Users\john carron\AppData\Roaming\mysearchdial" [x][x]) -> FOUND

[HJ POL][PUM] HKLM\[...]\System : DisableTaskMgr (0) -> FOUND

[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> FOUND

[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND

[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND

 

¤¤¤ Scheduled tasks : 2 ¤¤¤

[V1][sUSP PATH] Digital Sites.job : C:\Users\JOHNCA~1\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> FOUND

[V2][sUSP PATH] Digital Sites : C:\Users\JOHNCA~1\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> FOUND

 

¤¤¤ Startup Entries : 0 ¤¤¤

 

¤¤¤ Web browsers : 0 ¤¤¤

 

¤¤¤ Browser Addons : 0 ¤¤¤

 

¤¤¤ Particular Files / Folders: ¤¤¤

 

¤¤¤ Driver : [LOADED] ¤¤¤

[inline] EAT @explorer.exe (?MILLIS_PER_SECOND@GCDate@@2JB) : GrooveUtil.DLL -> HOOKED (Unknown @ 0xC90D333C)

[inline] EAT @explorer.exe (?ms_Semaphore@GCUtilDLL@@2VGCSemaphore@@A) : GrooveUtil.DLL -> HOOKED (Unknown @ 0x68110853)

[inline] EAT @explorer.exe (FwDoNothingOnObject) : FirewallAPI.dll -> HOOKED (Unknown @ 0x3620D866)

[inline] EAT @explorer.exe (FwEnableMemTracing) : FirewallAPI.dll -> HOOKED (Unknown @ 0x3620D866)

[inline] EAT @explorer.exe (FwSetMemLeakPolicy) : FirewallAPI.dll -> HOOKED (Unknown @ 0x3620D866)

 

¤¤¤ External Hives: ¤¤¤

 

¤¤¤ Infection :  ¤¤¤

 

¤¤¤ HOSTS File: ¤¤¤

--> %SystemRoot%\System32\drivers\etc\hosts

 

 

127.0.0.1       localhost

::1             localhost

 

 

¤¤¤ MBR Check: ¤¤¤

 

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) Hitachi HTS542525K9SA00 +++++

--- User ---

[MBR] 6b9660a250d396e8dd5fd21bdc42993c

[bSP] aa809608988e439362c853a0df478085 : Windows Vista MBR Code

Partition table:

0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 1500 Mo

1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 3074048 | Size: 119078 Mo

2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 246945792 | Size: 117895 Mo

User = LL1 ... OK!

User = LL2 ... OK!

 

Finished : << RKreport[0]_S_01242014_203049.txt >>
Link to post
Share on other sites

Please start with this procedure:

Lets clean out any adware/spyware now: (this will require a reboot so save all your work)

Please download AdwCleaner by Xplode and save to your Desktop.

Make sure you click on download buttons that look similar to this, not "sponsored ad links":

bleep-crop.jpg

  • Double click on AdwCleaner.exe to run the tool.

    Vista/Windows 7/8 users right-click and select Run As Administrator

  • Click on the Scan button.
  • AdwCleaner will begin...be patient as the scan may take some time to complete.
  • When it's done you'll see: Pending: Please uncheck elements you don't want removed.
  • Now click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
  • Look over the log especially under Files/Folders for any program you want to save.
  • If there's a program you may want to save, just uncheck it from AdwCleaner.
  • If you're not sure, post the log for review. (all items found are adware/spyware/foistware)
  • If you're ready to clean it all up.....click the Clean button.
  • After rebooting, a logfile report (AdwCleaner[s0].txt) will open automatically.
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of that logfile will also be saved in the C:\AdwCleaner folder.
  • Items that are deleted are moved to the Quarantine Folder: C:\AdwCleaner\Quarantine
  • To restore an item that has been deleted:
  • Go to Tools > Quarantine Manager > check what you want restored > now click on Restore.
Then..................

Open up Malwarebytes > Settings Tab > Scanner Settings > Under action for PUP > Select: Show in Results List and Check for removal.

Please Update and run a FULL Scan with Malwarebytes Anti-Malware, post the report.

Make sure that everything is checked, and click Remove Selected.

Please let me know how computer is running now, MrC

Link to post
Share on other sites

# AdwCleaner v3.017 - Report created 24/01/2014 at 21:13:01

# Updated 12/01/2014 by Xplode

# Operating System : Windows Vista Home Premium Service Pack 2 (32 

 

bits)

# Username : john carron - JOHNCARRON-PC

# Running from : C:\Users\john carron\Desktop\AdwCleaner.exe

# Option : Scan

 

***** [ Services ] *****

 

Service Found : vToolbarUpdater17.0.12

 

***** [ Files / Folders ] *****

 

File Found : C:\Program Files\Mozilla 

 

Firefox\searchplugins\fcmdSrch.xml

File Found : C:\Users\john 

 

carron\AppData\Roaming\Mozilla\Firefox\Profiles\wojq6vwt.default\search

 

plugins\Mysearchdial.xml

File Found : C:\Users\john 

 

carron\AppData\Roaming\Mozilla\Firefox\Profiles\wojq6vwt.default\search

 

plugins\safeguard-secure-search.xml

File Found : C:\Users\john 

 

carron\AppData\Roaming\Mozilla\Firefox\Profiles\wojq6vwt.default\user.j

 

s

File Found : C:\Windows\System32\Tasks\LaunchApp

Folder Found : C:\Users\john 

 

carron\AppData\Roaming\Mozilla\Firefox\Profiles\wojq6vwt.default\Extens

 

ions\{AD9A41D2-9A49-4FA6-A79E-71A0785364C8}

Folder Found C:\Program Files\BrowseToSave

Folder Found C:\Program Files\iRobinHood

Folder Found C:\Program Files\Mobogenie

Folder Found C:\Program Files\NCH Software

Folder Found C:\Program Files\sweetpacks bundle uninstaller

Folder Found C:\ProgramData\Registry Helper

Folder Found C:\Users\john carron\AppData\Local\Searchprotect

Folder Found C:\Users\john carron\AppData\LocalLow\Mysearchdial

 

***** [ Shortcuts ] *****

 

Shortcut Found : C:\Users\Public\Desktop\Google Chrome.lnk ( 

 


Shortcut Found : C:\ProgramData\Microsoft\Windows\Start 

 


 

id=AAAc0f7012679318d765c38434829743f00&oid=7 )

 

***** [ Registry ] *****

 

Key Found : HKCU\Software\AppDataLow\Software\PassWidget

Key Found : HKCU\Software\Conduit

Key Found : HKCU\Software\dsiteproducts

Key Found : HKCU\Software\IM

Key Found : HKCU\Software\Microsoft\Internet 

 

Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}

Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App 

 

Management\ARPCache\Codec Package Packages

Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App 

 

Management\ARPCache\DSite

Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App 

 

Management\ARPCache\SearchProtect

Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App 

 

Management\ARPCache\SoftwareUpdater

Key Found : 

 

HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-

 

2E5C-4ED4-8F7B-F1F7851A4497}

Key Found : 

 

HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-

 

2E5C-4ED4-8F7B-F1F7851A4497}

Key Found : 

 

HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Codec Package 

 

Packages

Key Found : 

 

HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\DSite

Key Found : HKCU\Software\NCH Software

Key Found : HKCU\Software\Nosibay

Key Found : HKCU\Software\SmartBar

Key Found : HKCU\Software\WEDLMNGR

Key Found : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-

 

30538A2F6323}

Key Found : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-

 

1E593282C7D0}

Key Found : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-

 

743E72D283B0}

Key Found : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-

 

A4B437CBA777}

Key Found : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-

 

770A339C7237}

Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-

 

0333EA26E113}

Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-

 

F1F7851A4497}

Key Found : HKLM\SOFTWARE\Classes\CLSID\{D40753C7-8A59-4C1F-BE88-

 

C300F4624D5B}

Key Found : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-

 

89EE8741F468}

Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-

 

4ED3E9456D39}

Key Found : HKLM\SOFTWARE\Classes\escort.escrtBtn.1

Key Found : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-

 

733216D61217}

Key Found : HKLM\SOFTWARE\Classes\Interface\{542FA950-C57A-4E17-B3E1-

 

D935DFE15DEE}

Key Found : HKLM\SOFTWARE\Classes\Interface\{5B035F86-41B5-40F1-AAAD-

 

3D219F30244E}

Key Found : HKLM\SOFTWARE\Classes\Interface\{6365AC7B-9920-4D8B-AF5D-

 

3BDFEAC340A8}

Key Found : HKLM\SOFTWARE\Classes\Interface\{6A934270-717F-4BC3-BA59-

 

BC9BED47A8D2}

Key Found : HKLM\SOFTWARE\Classes\Interface\{79B13431-CCAC-4097-8889-

 

D0289E5E924F}

Key Found : HKLM\SOFTWARE\Classes\Interface\{8B8558F6-DC26-4F39-8417-

 

34B8934AA459}

Key Found : HKLM\SOFTWARE\Classes\Interface\{8C8D5C57-3CAD-4CF9-BCAD-

 

F873678DA883}

Key Found : HKLM\SOFTWARE\Classes\Interface\{981334CB-7B8B-431F-B86D-

 

67B7426B125B}

Key Found : HKLM\SOFTWARE\Classes\Interface\{9E393F82-2644-4AB6-B994-

 

1AD39D6C59EE}

Key Found : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-

 

A55F4BCB0BEC}

Key Found : HKLM\SOFTWARE\Classes\Interface\{A3A2A5C0-1306-4D1A-A093-

 

9CECA4230002}

Key Found : HKLM\SOFTWARE\Classes\Interface\{C1C2FC43-F042-4F17-AEDB-

 

C5ABF3B42E4B}

Key Found : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-

 

C6CA6E7F016F}

Key Found : HKLM\SOFTWARE\Classes\Interface\{C8D424EF-CB21-49A0-8659-

 

476FBAB0F8E8}

Key Found : HKLM\SOFTWARE\Classes\Interface\{F16AB1DB-15C0-4456-A29E-

 

4DF24FB9E3D2}

Key Found : HKLM\SOFTWARE\Classes\Interface\{F7EC6286-297C-4981-9DCC-

 

FD7F57BC24C9}

Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho

Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1

Key Found : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-

 

DD002F2490EE}

Key Found : HKLM\SOFTWARE\Classes\TypeLib\{12A5F606-B1EC-474C-83ED-

 

95E99FD8058E}

Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-

 

A66D8DC9E1D8}

Key Found : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-

 

743E72D283B0}

Key Found : HKLM\SOFTWARE\Microsoft\Internet 

 

Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}

Key Found : HKLM\SOFTWARE\Microsoft\Internet 

 

Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}

Key Found : HKLM\SOFTWARE\Microsoft\Windows 

 

NT\CurrentVersion\Schedule\TaskCache\Plain\LaunchApp

Key Found : HKLM\SOFTWARE\Microsoft\Windows 

 

NT\CurrentVersion\Schedule\TaskCache\Tasks\{5FFAAA9F-B561-4003-860F-

 

1D3480220DE7}

Key Found : HKLM\SOFTWARE\Microsoft\Windows 

 

NT\CurrentVersion\Schedule\TaskCache\Tasks\{723241C7-72AF-4B17-804C-

 

1638DD6D61E1}

Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App 

 

Paths\Mobogenie.exe

Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App 

 

Paths\MobogenieAdd

Key Found : 

 

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper 

 

Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

Key Found : 

 

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{54E6734

 

6-EE5A-45B6-82AA-4F0BB28C79C2}

Key Found : 

 

HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-

 

5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5

Key Found : 

 

HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-

 

5-18\Components\08121C32A9C319F4CB0C11FF059552A4

Key Found : 

 

HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-

 

5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094

Key Found : 

 

HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-

 

5-18\Components\29799DE249E7DBC459FC6C8F07EB8375

Key Found : 

 

HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-

 

5-18\Components\305B09CE8C53A214DB58887F62F25536

Key Found : 

 

HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-

 

5-18\Components\43C098337DB065A49B665D4EA7F16D1C

Key Found : 

 

HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-

 

5-18\Components\A71991503412AEB42838B02C5ED9F9CD

Key Found : 

 

HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-

 

5-18\Components\F2E0D3DD9E5E4B74CA43BCE77815E287

Key Found : 

 

HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-

 

5-18\Components\F7652513C62FF63448CFF05163719DB7

Key Found : HKLM\Software\mysearchdial

Key Found : HKLM\Software\NCH Software

Key Found : HKLM\Software\SearchProtect

Key Found : HKLM\Software\Speedchecker Limited

Key Found : HKLM\Software\Uniblue

Key Found : HKLM\Software\Vittalia

Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar 

 

[{AE07101B-46D4-4A98-AF68-0333EA26E113}]

 

***** [ Browsers ] *****

 

-\\ Internet Explorer v9.0.8112.16526

 

Setting Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [start 

 


 

f=1&a=irmsd0101&cd=2XzuyEtN2Y1L1QzutDtBtCzzzz0DtBzzzz0AtDtCyBtByByDtN0D

 

0Tzu0CyByDtBtN1L2XzutBtFtBtFtCyDtFtCyDzytBtN1L1CzutDzytDtCtG1T&cr=92526

 

7806&ir=

Setting Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls 

 


 

f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1QzutDtBtCzzzz0DtBzzzz0AtDtCyBtByByDtN0D

 

0Tzu0CyByDtBtN1L2XzutBtFtBtFtCyDtFtCyDzytBtN1L1CzutDzytDtCtG1T&cr=92526

 

7806&ir=

Setting Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search 

 


 

{searchTerms}&f=4

Setting Found : HKCU\Software\Microsoft\Internet Explorer\SearchUrl 

 


 

publisher=Vittalia&dpid=Vittalia&co=GB&userid=4fcbac1d-f239-b4e1-9e81-

 

1633a04d0d9a&searchtype=ds&q={searchTerms}&installDate=14/01/2014

Setting Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl 

 


 

publisher=Vittalia&dpid=Vittalia&co=GB&userid=4fcbac1d-f239-b4e1-9e81-

 

1633a04d0d9a&searchtype=ds&q={searchTerms}&installDate=14/01/2014

 

-\\ Mozilla Firefox v

 

[ File : C:\Users\john 

 

carron\AppData\Roaming\Mozilla\Firefox\Profiles\wojq6vwt.default\prefs.

 

js ]

 

Line Found : user_pref("browser.search.defaultenginename", 

 

"Mysearchdial");

Line Found : user_pref("browser.search.selectedEngine", 

 

"Mysearchdial");

Line Found : user_pref("browser.startup.homepage", 

 


 

f=1&a=irmsd0101&cd=2XzuyEtN2Y1L1QzutDtBtCzzzz0DtBzzzz0AtDtCyBtByByDtN0D

 

0Tzu0CyByDtBtN1L2XzutBtFtBtFtCyDtFtCyDzytBtN1L1CzutDzytDtCt[...]

Line Found : user_pref("browser.startup.homepage", 

 


 

f=1&a=irmsd0101&cd=2XzuyEtN2Y1L1QzutDtBtCzzzz0DtBzzzz0AtDtCyBtByByDtN0D

 

0Tzu0CyByDtBtN1L2XzutBtFtBtFtCyDtFtCyDzytBtN1L1CzutDzytDtCt[...]

Line Found : user_pref("browser.search.selectedEngine", 

 

"Mysearchdial");

Line Found : user_pref

 


 

a=ddrnw&f=3"); 

Line Found : user_pref("extensions.facemoods.hmpgUrl", 

 


Line Found : user_pref("extensions.facemoods.id", 

 

"5695727500000000000002808d248a01"); 

Line Found : user_pref("extensions.facemoods.sid", 

 

"fa24006113f34df4bba086faaa6d4fbc"); 

Line Found : user_pref("extensions.facemoods.instlDay", "16081"); 

Line Found : user_pref("extensions.facemoods.vrsn", "1.4.17.11"); 

Line Found : user_pref("extensions.facemoods.prtnrId", 

 

"facemoods.com"); 

Line Found : user_pref("extensions.facemoods.aflt", "ddrnw"); 

Line Found : user_pref

 


 

a=ddrnw&f=5"); 

Line Found : user_pref("extensions.facemoods.mntz",""); 

Line Found : user_pref("extensions.facemoods.hmpg", true); 

Line Found : user_pref("extensions.facemoods.dfltSrch", true); 

Line Found : user_pref("extensions.facemoods.searchProviderAdded", 

 

true); 

Line Found : user_pref("extensions.facemoods.dfltSrchPrvdr", "Facemoods 

 

Search"); 

Line Found : user_pref("extensions.facemoods.dnsErr", true); 

Line Found : user_pref("extensions.facemoods.newTab", true); 

Line Found : user_pref("extensions.facemoods.newTabUrl", 

 


Line Found : user_pref("extensions.facemoods.firstRun", true); 

Line Found : user_pref("browser.search.defaultenginename", 

 

"Mysearchdial");

 

-\\ Google Chrome v32.0.1700.76

 

[ File : C:\Users\john carron\AppData\Local\Google\Chrome\User 

 

Data\Default\preferences ]

 

 

*************************

 

AdwCleaner[R0].txt - [25450 octets] - [17/10/2013 22:32:54]

AdwCleaner[R1].txt - [11953 octets] - [24/01/2014 21:13:01]

AdwCleaner[s0].txt - [25785 octets] - [17/10/2013 22:35:27]

 

########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [12075 octets] 

 

##########
Link to post
Share on other sites

  • Root Admin

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.