# AdwCleaner v6.000 - Logbestand aangemaakt 13/08/2016 op 15:33:18 # *Updated on 12/08/2016 by ToolsLib # Gebruik lokale database : 2016-08-12.4 [*Server] # Besturingssysteem : Windows 10 Home (X64) # Gebruikersnaam : Mandy - MANDY # Gestart vanuit : C:\Users\mandyyy\Downloads\adwcleaner_6.000.exe # Verwijderen # Ondersteuning : https://toolslib.net/forum ***** [ *Services ] ***** [-] IE policies verwijderdswdumon [-] IE policies verwijderdWdMan [-] IE policies verwijderdWinSvces [-] IE policies verwijderdBugreportW [-] IE policies verwijderdwinsaber ***** [ Mappen ] ***** [-] hersteldC:\ProgramData\GwinpG [#] *Folder deleted on reboot: C:\ProgramData\RwinpR [-] hersteldC:\ProgramData\twinpt [-] hersteldC:\Users\Mandyyy\AppData\Local\Hola [-] hersteldC:\Users\Mandyyy\AppData\Local\SweetLabs App Platform [-] hersteldC:\Users\Mandyyy\AppData\Roaming\eCyber [-] hersteldC:\Users\Mandyyy\AppData\Roaming\OpenCandy [-] hersteldC:\Users\Mandyyy\AppData\Roaming\RPEng [-] hersteldC:\Users\Mandyyy\AppData\Roaming\WinZiper [-] hersteldC:\Users\Mandyyy\AppData\Roaming\Uncheckit [-] hersteldC:\Program Files\Hola [-] hersteldC:\Users\Mandyyy\AppData\Local\VirtualStore\Program Files (x86)\Popcorn Time [-] hersteldC:\ProgramData\desktopfind [-] hersteldC:\ProgramData\ChelfNotify [#] *Folder deleted on reboot: C:\ProgramData\Application Data\desktopfind [#] *Folder deleted on reboot: C:\ProgramData\Application Data\ChelfNotify [-] hersteldC:\Users\Public\Documents\Downloaded Installers [-] hersteldC:\Program Files (x86)\WinSaber [-] hersteldC:\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\Uncheckit [-] hersteldC:\Users\mandyyy\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F [-] hersteldC:\Users\mandyyy\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1 [-] hersteldC:\Users\mandyyy\AppData\Roaming\Mozilla\Firefox\Profiles\5yxv98rx.default\extensions\arthurj8283@gmail.com ***** [ Bestanden ] ***** [-] hersteldC:\Users\Mandyyy\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\qksee.lnk [-] hersteldC:\WINDOWS\SysNative\log\iSafeKrnlCall.log [-] hersteldC:\WINDOWS\SysNative\drivers\swdumon.sys [-] hersteldC:\WINDOWS\apppatch\apppatch64\vcldr64.dll ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Snelkoppelingen ] ***** ***** [ Geplande taken ] ***** [-] %sTracing%s sleutels verwijderdSystemHealer Monitor [-] %sTracing%s sleutels verwijderdSystemHealer Run Delay [-] %sTracing%s sleutels verwijderdSweetLabs App Platform [-] %sTracing%s sleutels verwijderdBrowser Updater Task(Core) [-] %sTracing%s sleutels verwijderdWinTsks [-] %sTracing%s sleutels verwijderdChelfNotify Task [-] %sTracing%s sleutels verwijderdbvyvbvhx ***** [ Register ] ***** [-] hersteldHKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki_04bb6df446330549a2cb8d67fbd1a745025b7bd1 [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.001 [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.7z [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.arj [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.bz2 [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.bzip2 [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.cab [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.cpio [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.deb [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.dmg [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.fat [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.gz [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.gzip [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.hfs [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.iso [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.lha [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.lzh [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.lzma [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.ntfs [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.rar [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.rpm [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.squashfs [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.swm [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.tar [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.taz [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.tbz [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.tbz2 [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.tgz [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.tpz [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.txz [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.vhd [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.wim [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.xar [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.xz [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.z [-] hersteldHKLM\SOFTWARE\Classes\WinZippers.zip [-] hersteldHKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\WdMan [-] hersteldHKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\qkseeService [-] hersteldHKU\S-1-5-21-3125367378-2140037814-2600998391-1001\Software\Classes\pokki [#] *Key deleted on reboot: HKCU\Software\Classes\pokki [-] hersteldHKLM\SOFTWARE\Classes\OCComSDK.ComSDK [-] hersteldHKLM\SOFTWARE\Classes\OCComSDK.ComSDK.1 [-] hersteld[x64] HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270} [-] hersteld[x64] HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} [-] hersteldHKLM\SOFTWARE\Classes\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146} [-] hersteldHKLM\SOFTWARE\Classes\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} [-] hersteldHKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270} [-] hersteldHKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} [-] hersteldHKLM\SOFTWARE\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552} [-] hersteld[x64] HKLM\SOFTWARE\FlashBeat [-] hersteld[x64] HKLM\SOFTWARE\Hola [-] hersteld[x64] HKLM\SOFTWARE\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678} [-] hersteld[x64] HKLM\SOFTWARE\{8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83} [-] hersteld[x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E1527582-8509-4011-B922-29E3FB548882}_is1 [-] hersteldHKU\.DEFAULT\Software\Hola [-] hersteldHKU\.DEFAULT\Software\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678} [-] hersteldHKU\.DEFAULT\Software\{8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83} [-] hersteldHKU\S-1-5-21-3125367378-2140037814-2600998391-1001\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} [-] hersteldHKU\S-1-5-21-3125367378-2140037814-2600998391-1001\Software\Hola [-] hersteldHKU\S-1-5-21-3125367378-2140037814-2600998391-1001\Software\PRODUCTSETUP [-] hersteldHKU\S-1-5-21-3125367378-2140037814-2600998391-1001\Software\SearchProtect [-] hersteldHKU\S-1-5-21-3125367378-2140037814-2600998391-1001\Software\SlimWare Utilities Inc [-] hersteldHKU\S-1-5-21-3125367378-2140037814-2600998391-1001\Software\csastats [#] *Key deleted on reboot: HKU\S-1-5-21-3125367378-2140037814-2600998391-1001\Software\SEARCHPROTECT [-] hersteldHKU\S-1-5-21-3125367378-2140037814-2600998391-1001\Software\AppDataLow\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} [-] hersteldHKU\S-1-5-21-3125367378-2140037814-2600998391-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_Start_Menu [#] *Key deleted on reboot: HKU\S-1-5-18\Software\Hola [#] *Key deleted on reboot: HKU\S-1-5-18\Software\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678} [#] *Key deleted on reboot: HKU\S-1-5-18\Software\{8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83} [#] *Key deleted on reboot: HKCU\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} [#] *Key deleted on reboot: HKCU\Software\Hola [#] *Key deleted on reboot: HKCU\Software\PRODUCTSETUP [#] *Key deleted on reboot: HKCU\Software\SearchProtect [#] *Key deleted on reboot: HKCU\Software\SlimWare Utilities Inc [#] *Key deleted on reboot: HKCU\Software\csastats [#] *Key deleted on reboot: HKCU\Software\SEARCHPROTECT [#] *Key deleted on reboot: HKCU\Software\AppDataLow\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} [-] hersteldHKLM\SOFTWARE\SLIMWARE UTILITIES, INC. [-] hersteldHKLM\SOFTWARE\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} [-] hersteldHKLM\SOFTWARE\hdcode [-] hersteldHKLM\SOFTWARE\SearchProtect [-] hersteldHKLM\SOFTWARE\SlimWare Utilities Inc [-] hersteldHKLM\SOFTWARE\SPPDCOM [-] hersteldHKLM\SOFTWARE\yessearchesSoftware [-] hersteldHKLM\SOFTWARE\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678} [-] hersteldHKLM\SOFTWARE\{E6276374-DE18-4AA5-A365-9016A2F98A2D} [-] hersteldHKLM\SOFTWARE\{G6276374-DEEE-4AAA-A355-9016A2F98A2D} [#] *Key deleted on reboot: HKLM\SOFTWARE\SEARCHPROTECT [-] hersteldHKLM\SOFTWARE\{8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83} [#] *Key deleted on reboot: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_Start_Menu [-] hersteldHKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\11598763487076930564 [-] hersteldHKU\S-1-5-21-3125367378-2140037814-2600998391-1001\Software\Microsoft\Internet Explorer\Main [Start Page Redirect Cache] [-] hersteldHKCU\Software\Microsoft\Internet Explorer\Main [Start Page Redirect Cache] [-] hersteldHKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{06e93ff9-5cb8-4640-8c36-e97bf9762b30} [NameServer] [-] hersteldHKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{433dd68e-d382-4218-aeba-b123b83540c1} [NameServer] [-] hersteldHKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{5bc62d4d-2bb1-4a8e-bb1a-7e0a3d095fc0} [NameServer] [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\chrome.nl.softonic.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\foxi69.tlscdn.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\softonic.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\tlscdn.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\utop.it [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\chrome.nl.softonic.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\foxi69.tlscdn.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\softonic.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\tlscdn.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\utop.it [-] hersteld[x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [hola] [-] hersteldHKU\S-1-5-21-3125367378-2140037814-2600998391-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [hola] [-] hersteldHKCU\Software\Classes\AllFileSystemObjects\shell\pokki [-] hersteldHKCU\Software\Classes\Directory\shell\pokki [-] hersteldHKCU\Software\Classes\Drive\shell\pokki [-] hersteldHKCU\Software\Classes\lnkfile\shell\pokki [-] hersteldHKCU\Software\MozillaPlugins\@hola.org/FlashPlayer [-] hersteldHKCU\Software\MozillaPlugins\@hola.org/vlc [-] hersteldHKLM\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\WinZipper [-] hersteldHKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\WinZipper [-] hersteldHKLM\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\WinZipper [-] hersteldHKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [HealerCheckout.exe] [-] hersteldHKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\HiJackThis.exe [-] hersteldHKCU\SOFTWARE\Mozilla\Firefox\{EB52F1AB-3C2B-424F-9794-833C687025CF} [-] hersteldHKLM\SOFTWARE\Mozilla\Firefox\{EB52F1AB-3C2B-424F-9794-833C687025CF} ***** [ Internetbrowsers ] ***** [-] Chrome preferences reset"browser.search.defaultenginename" - "nuesearch" [-] Chrome preferences reset"browser.search.selectedEngine" - "nuesearch" ************************* :: "Tracing" sleutels verwijderd :: Winsock instellingen gereset ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [12998 bytes] - [13/08/2016 15:33:18] C:\AdwCleaner\AdwCleaner[S0].txt - [12422 bytes] - [13/08/2016 14:39:05] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [13146 bytes] ##########