Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.orgVersione database: v2014.02.16.02
Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Administrator :: PIERO-591791275 [amministratore]
17/02/2014 8.32.22
mbam-log-2014-02-17 (08-32-22).txt
Tipo di scansione: Scansione completa (C:\|K:\|L:\|)
Opzioni di scansione attive: Memoria | Esecuzione automatica | Registro | File di sistema | Euristica/Extra | Euristica/Shuriken | PUP | PUM
Opzioni di scansione disattivate: P2P
Elementi esaminati: 238408
Tempo impiegato: 1 ore, 9 minuti, 3 secondi
Processi rilevati in memoria: 0
(non sono stati rilevati elementi nocivi)
Moduli di memoria rilevati: 0
(non sono stati rilevati elementi nocivi)
Chiavi di registro rilevate: 3
HKCU\SOFTWARE\SWEETIM (PUP.Optional.SweetIM.A) -> Spostato in quarantena ed eliminato con successo.
HKLM\SOFTWARE\Vittalia\AxtanInstaller (PUP.Optional.BundleInstaller.A) -> Spostato in quarantena ed eliminato con successo.
HKLM\SOFTWARE\SWEETIM (PUP.Optional.SweetIM.A) -> Spostato in quarantena ed eliminato con successo.
Valori di registro rilevati: 2
HKCU\Software\SweetIM|simapp_id (PUP.Optional.SweetIM.A) -> Dati: {FEFD7A0B-685A-11E2-BF29-84763FCB86D4} -> Spostato in quarantena ed eliminato con successo.
HKLM\Software\SweetIM|simapp_id (PUP.Optional.SweetIM.A) -> Dati: {FEFD7A0B-685A-11E2-BF29-84763FCB86D4} -> Spostato in quarantena ed eliminato con successo.
Voci rilevate nei dati di registro: 0
(non sono stati rilevati elementi nocivi)
Cartelle rilevate: 0
(non sono stati rilevati elementi nocivi)
File rilevati: 9
C:\Documents and Settings\Administrator\Documenti\Download\SoftonicDownloader_per_hijackthis.exe (PUP.Optional.Softonic.A) -> Spostato in quarantena ed eliminato con successo.
C:\Documents and Settings\Administrator\Documenti\Download\SoftonicDownloader_per_pdfcreator.exe (PUP.Optional.Softonic.A) -> Spostato in quarantena ed eliminato con successo.
C:\Qoobox\Quarantine\C\Programmi\DealPly\DealPlyIE.dll.vir (PUP.DealPly) -> Spostato in quarantena ed eliminato con successo.
C:\Qoobox\Quarantine\C\Programmi\DealPly\DealPlyUpdate.exe.vir (PUP.Optional.Dealply) -> Spostato in quarantena ed eliminato con successo.
C:\Qoobox\Quarantine\C\Programmi\DealPly\DealPlyUpdateRun.exe.vir (PUP.Optional.Dealply) -> Spostato in quarantena ed eliminato con successo.
C:\Qoobox\Quarantine\C\Programmi\DealPly\uninst.exe.vir (PUP.Optional.Dealply) -> Spostato in quarantena ed eliminato con successo.
C:\WINDOWS\Installer\3a2bb0.msi (PUP.Optional.SweetIM) -> Spostato in quarantena ed eliminato con successo.
C:\WINDOWS\Installer\3a2bb8.msi (PUP.Optional.SweetIM) -> Spostato in quarantena ed eliminato con successo.
C:\WINDOWS\Installer\3a2bc0.msi (PUP.Optional.SweetIM) -> Spostato in quarantena ed eliminato con successo.
(fine)
# AdwCleaner v3.018 - Report created 17/02/2014 at 10:24:07
# Updated 28/01/2014 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Administrator - PIERO-591791275
# Running from : D:\Pulizia\Programmi_PULITURA_AIUTAMICI\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Documents and Settings\Administrator\Dati applicazioni\pdfforge
File Deleted : C:\WINDOWS\Tasks\GinyasBrowserCompanion Chrome Watcher.job
File Deleted : C:\WINDOWS\Tasks\GinyasBrowserCompanion FireFox Watcher.job
File Deleted : C:\WINDOWS\Tasks\GinyasBrowserCompanion Stats Report.job
File Deleted : C:\WINDOWS\Tasks\GinyasBrowserCompanion Update Checker.job
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4B71-B0A3-3D82E62A6909}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]
Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List [C:\Programmi\SweetIM\Communicator\SweetPacksUpdateManager.exe]
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKLM\Software\Vittalia
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Sweetpacks Bundle Uninstaller
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.6001.18702
-\\ Mozilla Firefox v17.0 (it)
[ File : C:\Documents and Settings\Administrator\Dati applicazioni\Mozilla\Firefox\Profiles\h27rd050.default-1354343879015\prefs.js ]
Line Deleted : user_pref("extentions.y2layers.defaultEnableAppsList", "twittube,buzzdock,YontooNewOffers");
Line Deleted : user_pref("extentions.y2layers.installId", "cbcd2002-8b52-4980-a874-a1cfbcc52de5");
[ File : C:\Documents and Settings\Administrator\Dati applicazioni\Mozilla\Firefox\Profiles\q78431w1.default\prefs.js ]
-\\ Google Chrome v32.0.1700.107
[ File : C:\Documents and Settings\Administrator\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\preferences ]
Deleted : homepage
Deleted : urls_to_restore_on_startup
Deleted : search_url
*************************
AdwCleaner[R0].txt - [2820 octets] - [17/02/2014 10:21:43]
AdwCleaner[S0].txt - [2783 octets] - [17/02/2014 10:24:07]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2843 octets] ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.1 (02.04.2014:1)
OS: Microsoft Windows XP x86
Ran by Administrator on 17/02/2014 at 11.13.28,71
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1715567821-1078145449-1801674531-500\Software\sweetim
~~~ Files
~~~ Folders
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 17/02/2014 at 11.33.35,43
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.1 (02.04.2014:1)
OS: Microsoft Windows XP x86
Ran by Administrator on 17/02/2014 at 11.13.28,71
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1715567821-1078145449-1801674531-500\Software\sweetim
~~~ Files
~~~ Folders
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 17/02/2014 at 11.33.35,43
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~