# AdwCleaner v3.308 - Report created 21/08/2014 at 19:20:18 # Updated 20/08/2014 by Xplode # Operating System : Windows 7 Ultimate Service Pack 1 (64 bits) # Username : Admin - ADMIN-PC # Running from : C:\Users\Admin\Desktop\adwcleaner_3.308.exe # Option : Clean ***** [ Services ] ***** [#] Service Deleted : BackupStack ***** [ Files / Folders ] ***** Folder Deleted : C:\ProgramData\apn Folder Deleted : C:\ProgramData\Systweak Folder Deleted : C:\ProgramData\WPM Folder Deleted : C:\Program Files (x86)\MyPC Backup Folder Deleted : C:\Program Files (x86)\PC Speed Maximizer Folder Deleted : C:\Program Files (x86)\WinZip Registry Optimizer Folder Deleted : C:\Program Files\Reimage Folder Deleted : C:\Users\Admin\AppData\Local\Temp\apn Folder Deleted : C:\Users\Admin\AppData\LocalLow\Smartbar Folder Deleted : C:\Users\Admin\AppData\Roaming\337Games Folder Deleted : C:\Users\Admin\AppData\Roaming\PC Speed Maximizer Folder Deleted : C:\Users\Admin\AppData\Roaming\sweet-page Folder Deleted : C:\Users\Admin\AppData\Roaming\Systweak Folder Deleted : C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\337Games Folder Deleted : C:\Users\Admin\Documents\PC Speed Maximizer Folder Deleted : C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\rqg3kstt.default\Extensions\shortcutff@gmail.com Folder Deleted : C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh Folder Deleted : C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo File Deleted : C:\Windows\System32\roboot64.exe File Deleted : C:\Users\Admin\Desktop\MyPC Backup.lnk File Deleted : C:\Users\Admin\Desktop\Sync Folder.lnk ***** [ Scheduled Tasks ] ***** Task Deleted : advanced-System Protector_startup Task Deleted : LaunchSignup ***** [ Shortcuts ] ***** Shortcut Disinfected : C:\Users\Public\Desktop\Google Chrome.lnk Shortcut Disinfected : C:\Users\Public\Desktop\Mozilla Firefox.lnk Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk Shortcut Disinfected : C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk Shortcut Disinfected : C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk Shortcut Disinfected : C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk Shortcut Disinfected : C:\Users\Admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk Shortcut Disinfected : C:\Users\Admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk Shortcut Disinfected : C:\Users\Admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk Shortcut Disinfected : C:\Users\Admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk ***** [ Registry ] ***** Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [shortcutff@gmail.com] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.bandobjectattribute Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.dockingpanel Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbar Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbarbandobject Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.smartbardisplaystate Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.smartbarmenuform Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{74F475FA-6C75-43BD-AAB9-ECDA6184F600} Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SafeFinder_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SafeFinder_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginServices Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE07101B-46D4-4A98-AF68-0333EA26E113} Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209} Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E} Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358} Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7} Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301} Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] Key Deleted : HKCU\Software\pc speed maximizer Key Deleted : HKCU\Software\SecuredDownload Key Deleted : HKCU\Software\Softonic Key Deleted : HKCU\Software\systweak Key Deleted : HKCU\Software\Tune Key Deleted : HKLM\SOFTWARE\systweak Key Deleted : HKLM\SOFTWARE\Tune Key Deleted : HKLM\SOFTWARE\Wpm Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PC Speed Maximizer_is1 Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4 Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3152E1F19977892449DC968802CE8964 Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\5E8031606EB60A64C882918F8FF38DD4 ***** [ Browsers ] ***** -\\ Internet Explorer v11.0.9600.17239 -\\ Mozilla Firefox v31.0 (x86 nl) [ File : C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\rqg3kstt.default\prefs.js ] Line Deleted : user_pref("browser.search.defaultenginename", "SafeFinder Search"); Line Deleted : user_pref("browser.search.selectedEngine", "SafeFinder Search"); Line Deleted : user_pref("extensions.helperbar.DockingPositionDown", false); Line Deleted : user_pref("extensions.helperbar.SmartbarDisabled", false); Line Deleted : user_pref("extensions.helperbar.SmartbarStateMinimaized", false); Line Deleted : user_pref("extensions.helperbar.Visibility", false); Line Deleted : user_pref("extensions.helperbar.backPageCapacity", 3); Line Deleted : user_pref("extensions.helperbar.backPageCounter", 0); Line Deleted : user_pref("extensions.helperbar.backPageDay", 17); Line Deleted : user_pref("extensions.helperbar.backPageLastEvent", "1408094469724"); Line Deleted : user_pref("extensions.helperbar.backPageMinInterval", 15); Line Deleted : user_pref("extensions.helperbar.barcodeid", "144150"); Line Deleted : user_pref("extensions.helperbar.countryiso", "nl"); Line Deleted : user_pref("extensions.helperbar.downloadprovider", "irssf"); Line Deleted : user_pref("extensions.helperbar.externalJsFiles", "{\"d\":\"[{\\\"ExcludeDomains\\\":[],\\\"hxxpInjection\\\":\\\"hxxp:\\\\\\/\\\\\\/az412617.vo.msecnd.net\\\\\\/scripts\\\\\\/crt.js\\\",\\\"hxxpsInje[...] Line Deleted : user_pref("extensions.helperbar.fromautoupdate", "false"); Line Deleted : user_pref("extensions.helperbar.installationid", "31053844-d98e-2d70-9333-fa55dd9b571d"); Line Deleted : user_pref("extensions.helperbar.installdate", "16/08/2014"); Line Deleted : user_pref("extensions.helperbar.keepAliveLastevent", "1408267263"); Line Deleted : user_pref("extensions.helperbar.lastExternalJsUpdate", "1408601888557"); Line Deleted : user_pref("extensions.helperbar.publisher", "irssf"); -\\ Google Chrome v35.0.1916.114 [ File : C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\preferences ] Deleted [Search Provider] : hxxp://nl.softonic.com/s/{searchTerms} Deleted [Search Provider] : hxxp://www.sweet-page.com/web/?type=ds&ts=1399843389&from=sof&uid=SAMSUNGXHD501LJ_S0MUJ1FQ101668&q={searchTerms} Deleted [Search Provider] : hxxp://www.search.ask.com/web?tpid=ORJ-V7C&o=APN11412&l=dis&pf=V7&p2=%5EBBK%5EOSJ000%5EYY%5ENL&gct=&itbv=12.7.0.15&doi=2014-02-17&apn_uid=45D7D03D-2E0F-4755-9414-302B92D7C1D9&apn_ptnrs=BBK&apn_dtid=%5EOSJ000%5EYY%5ENL&apn_dbr=cr_32.0.1700.107&psv=&pt=tb&trgb=CR&q={searchTerms} Deleted [Extension] : bopakagnckmlgajfccecajhnimjiiedh Deleted [Extension] : pljcgbedjplidkdjahbaalanadmjfgop ************************* AdwCleaner[R0].txt - [271 octets] - [19/08/2014 14:36:13] AdwCleaner[R1].txt - [271 octets] - [19/08/2014 14:38:59] AdwCleaner[R2].txt - [11105 octets] - [21/08/2014 19:18:52] AdwCleaner[S0].txt - [9858 octets] - [21/08/2014 19:20:18] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [9918 octets] ##########