# AdwCleaner v6.040 - Logfile created 06/12/2016 at 14:54:59
# Updated on 02/12/2016 by Malwarebytes
# Database : 2016-12-06.1 [Server]
# Operating System : Windows 10 Home (X64)
# Username : William - DESKTOP-5MOG9AD
# Running from : C:\Users\William\Downloads\adwcleaner_6.040.exe
# Mode: Scan
# Support :
https://www.malwarebytes.com/support***** [ Services ] *****
No malicious services found.
***** [ Folders ] *****
Folder Found: C:\Users\William\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej
***** [ Files ] *****
File Found: C:\Users\William\AppData\Roaming\Mozilla\Firefox\Profiles\c74juvxm.default\searchplugins\yahoo! powered.xml
File Found: C:\Users\William\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pilplloabdedfmialnfchjomjmpjcoej_0.localstorage
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious keys found.
***** [ Shortcuts ] *****
No infected shortcut found.
***** [ Scheduled Tasks ] *****
Task Found: Yahoo! Powered lodef
***** [ Registry ] *****
Key Found: HKU\S-1-5-21-1927688727-635054299-1412645329-1001\Software\PRODUCTSETUP
Key Found: HKU\S-1-5-21-1927688727-635054299-1412645329-1001\Software\csastats
Key Found: HKCU\Software\PRODUCTSETUP
Key Found: HKCU\Software\csastats
Key Found: [x64] HKCU\Software\PRODUCTSETUP
Key Found: [x64] HKCU\Software\csastats
Data Found: HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - hxxps://us.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fsvideosft_16_49¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Du
Data Found: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - hxxps://us.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fsvideosft_16_49¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3
Key Found: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Data Found: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope] -
Key Found: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Data Found: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope] -
Key Found: HKCU\Software\Google\Chrome\Extensions\pilplloabdedfmialnfchjomjmpjcoej
Key Found: HKLM\SOFTWARE\Google\Chrome\Extensions\pilplloabdedfmialnfchjomjmpjcoej
Key Found: [x64] HKCU\Software\Google\Chrome\Extensions\pilplloabdedfmialnfchjomjmpjcoej
Key Found: [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\pilplloabdedfmialnfchjomjmpjcoej
***** [ Web browsers ] *****
Firefox pref Found: [C:\Users\William\AppData\Roaming\Mozilla\Firefox\Profiles\c74juvxm.default\prefs.js] - "browser.search.defaultenginename" - "Yahoo! Powered"
Firefox pref Found: [C:\Users\William\AppData\Roaming\Mozilla\Firefox\Profiles\c74juvxm.default\prefs.js] - "browser.search.selectedEngine" - "Yahoo! Powered"
Chrome pref Found: [C:\Users\William\AppData\Local\Google\Chrome\User Data\Default\Web data] - aol.com
Chrome pref Found: [C:\Users\William\AppData\Local\Google\Chrome\User Data\Default\Web data] - ask.com
Chrome pref Found: [C:\Users\William\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences ] - pilplloabdedfmialnfchjomjmpjcoej
*************************
C:\AdwCleaner\AdwCleaner[S0].txt - [3386 Bytes] - [06/12/2016 14:54:59]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3459 Bytes] ##########