# AdwCleaner v6.030 - Logbestand aangemaakt 07/11/2016 op 16:07:02 # *Updated on 19/10/2016 by Malwarebytes # Gebruik lokale database : 2016-11-07.1 [*Server] # Besturingssysteem : Windows 10 Home (X64) # Gebruikersnaam : vinny - DESKTOP-F6BJSTT # Gestart vanuit : C:\Users\vinny\Downloads\adwcleaner_6.030.exe # *Mode: Scan # Ondersteuning : https://www.malwarebytes.com/support ***** [ *Services ] ***** Service LavasoftTcpService Service WCAssistantService ***** [ Mappen ] ***** gevonden C:\Users\vinny\AppData\Roaming\lavasoft\web companion gevonden C:\ProgramData\lavasoft\web companion gevonden C:\ProgramData\Application Data\lavasoft\web companion gevonden C:\Program Files (x86)\lavasoft\web companion ***** [ Bestanden ] ***** gevonden C:\WINDOWS\SysNative\LavasoftTcpService64.dll gevonden C:\WINDOWS\SysNative\LavasoftTcpServiceOff.ini gevonden C:\WINDOWS\SysWoW64\lavasofttcpservice.dll gevonden C:\WINDOWS\SysWoW64\LavasoftTcpServiceOff.ini ***** [ DLL ] ***** *No malicious DLLs found. ***** [ WMI ] ***** *No malicious keys found. ***** [ Snelkoppelingen ] ***** Zoeken naar bestanden ... ***** [ Geplande taken ] ***** *No malicious task found. ***** [ Register ] ***** gevonden HKU\S-1-5-21-2699857365-1973500134-3505857896-1001\Software\Classes\AppXrh6feys59dqfzsv9p3s9p6aep0hwtb23 gevonden HKCU\Software\Classes\AppXrh6feys59dqfzsv9p3s9p6aep0hwtb23 gevonden HKLM\SOFTWARE\Classes\AeccAdoClientProxys.AeccSharedMemory gevonden HKLM\SOFTWARE\Classes\AeccAdoClientProxys.AeccSharedMemory.1 gevonden HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataContainer gevonden HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataContainer.1 gevonden HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataController gevonden HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataController.1 gevonden HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTable gevonden HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTable.1 gevonden HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTableFields gevonden HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTableFields.1 gevonden HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTableHolder gevonden HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTableHolder.1 gevonden HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.LSPLogic gevonden HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.LSPLogic.1 gevonden HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.ReadOnlyManager gevonden HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.ReadOnlyManager.1 gevonden HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.WFPController gevonden HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.WFPController.1 gevonden [x64] HKCU\Software\Classes\AppXrh6feys59dqfzsv9p3s9p6aep0hwtb23 gevonden [x64] HKLM\SOFTWARE\Classes\AeccAdoClientProxys.AeccSharedMemory gevonden [x64] HKLM\SOFTWARE\Classes\AeccAdoClientProxys.AeccSharedMemory.1 gevonden [x64] HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataContainer gevonden [x64] HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataContainer.1 gevonden [x64] HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataController gevonden [x64] HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataController.1 gevonden [x64] HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTable gevonden [x64] HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTable.1 gevonden [x64] HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTableFields gevonden [x64] HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTableFields.1 gevonden [x64] HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTableHolder gevonden [x64] HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.DataTableHolder.1 gevonden [x64] HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.LSPLogic gevonden [x64] HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.LSPLogic.1 gevonden [x64] HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.ReadOnlyManager gevonden [x64] HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.ReadOnlyManager.1 gevonden [x64] HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.WFPController gevonden [x64] HKLM\SOFTWARE\Classes\LavasoftTcpServiceLib.WFPController.1 gevonden HKLM\SOFTWARE\Classes\CLSID\{0015CAC9-FC30-4CD0-BFAA-7412CC2C4DD9} gevonden HKLM\SOFTWARE\Classes\CLSID\{26C7AFDB-3690-449E-B979-B0AF5CC56DD4} gevonden HKLM\SOFTWARE\Classes\CLSID\{3A5A5381-DAAF-4C0D-B032-2C66B3EE4A8D} gevonden HKLM\SOFTWARE\Classes\CLSID\{472EF1D2-4AAE-470D-AE85-6AF8177916FD} gevonden HKLM\SOFTWARE\Classes\CLSID\{8F010D54-C023-457F-AF03-497EACB6D519} gevonden HKLM\SOFTWARE\Classes\CLSID\{9A754403-27B1-4ED7-96D7-588F07888EBF} gevonden HKLM\SOFTWARE\Classes\CLSID\{CB31FF8F-BF80-4D2B-ADBE-12C6F5347890} gevonden HKLM\SOFTWARE\Classes\CLSID\{FCAA532B-E807-4027-940C-BA16B9D50105} gevonden HKLM\SOFTWARE\Classes\TypeLib\{ED62BC6E-64F1-46BE-866F-4C8DC0DF7057} gevonden HKLM\SOFTWARE\Lavasoft\Web Companion gevonden HKU\S-1-5-21-2699857365-1973500134-3505857896-1001\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.bing.com/?pc=COSP&ptag=D102816-A0A14E5293D1943C986F&form=CONMHP&conlogo=CT3330954 gevonden HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.bing.com/?pc=COSP&ptag=D102816-A0A14E5293D1943C986F&form=CONMHP&conlogo=CT3330954 gevonden [x64] HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.bing.com/?pc=COSP&ptag=D102816-A0A14E5293D1943C986F&form=CONMHP&conlogo=CT3330954 gevonden HKU\S-1-5-21-2699857365-1973500134-3505857896-1001\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} gevonden HKU\S-1-5-21-2699857365-1973500134-3505857896-1001\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] - gevonden HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} gevonden HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] - gevonden [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} gevonden [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] - gevonden HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\chrome.nl.softoni gevonden HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\softonic.com gevonden HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\chrome.nl.softonic.c gevonden HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\softonic.com gevonden [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\chrome.nl.softo gevonden [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\softonic.com gevonden [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\chrome.nl.softonic gevonden [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\softonic.com Waarde HKU\S-1-5-21-2699857365-1973500134-3505857896-1001\Software\Microsoft\Windows\CurrentVersion\Run [Web Companion] Waarde HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Web Companion] Waarde [x64] HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Web Companion] gevonden HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com gevonden HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com ***** [ Internetbrowsers ] ***** Zoeken naar register-items ... Zoeken naar register-items ... ************************* C:\AdwCleaner\AdwCleaner[S0].txt - [8280 bytes] - [07/11/2016 16:07:02] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8353 bytes] ##########