# AdwCleaner v6.041 - Logfile created 04/01/2017 at 20:01:51 # Updated on 16/12/2016 by Malwarebytes # Database : 2017-01-03.1 [Server] # Operating System : Windows 7 Enterprise Service Pack 1 (X64) # Username : Wouter - LAPTOP # Running from : C:\Users\Wouter\Downloads\adwcleaner_6.041.exe # Mode: Scan # Support : https://www.malwarebytes.com/support ***** [ Services ] ***** No malicious services found. ***** [ Folders ] ***** No malicious folders found. ***** [ Files ] ***** No malicious files found. ***** [ DLL ] ***** No malicious DLLs found. ***** [ WMI ] ***** No malicious keys found. ***** [ Shortcuts ] ***** No infected shortcut found. ***** [ Scheduled Tasks ] ***** No malicious task found. ***** [ Registry ] ***** Key Found: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\PicexaService Key Found: [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\PicexaService Key Found: HKLM\SOFTWARE\Classes\AppID\{18B9B16E-716F-43DF-A6AD-512C7D2EB983} Key Found: HKLM\SOFTWARE\Classes\AppID\{19975B78-1907-4DD6-A437-4C48120F46A4} Key Found: HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Key Found: HKLM\SOFTWARE\Classes\AppID\{562B9316-C08A-444A-9482-62080DD851AE} Key Found: HKLM\SOFTWARE\Classes\AppID\{562B9317-C08A-444A-9482-62080DD851AE} Key Found: HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D} Key Found: HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D} Key Found: HKLM\SOFTWARE\Classes\AppID\{B15F118E-AF21-45E8-A809-29FDD7362565} Key Found: HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Key Found: HKLM\SOFTWARE\Classes\AppID\{56AD7EEE-D6C0-410E-8A7B-811DEA764554} Key Found: HKLM\SOFTWARE\Classes\AppID\{E8EB2F1F-661E-4A7F-8F9A-77DEB757A906} Key Found: HKLM\SOFTWARE\Classes\AppID\{AF85DB83-06F2-4ECF-97CF-C46EDB06BE29} Key Found: HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Key Found: HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52} Key Found: HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9} Key Found: HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762} Key Found: HKLM\SOFTWARE\Classes\Interface\{087CDC12-0A11-4D1D-8DCF-44185D7C3496} Key Found: HKLM\SOFTWARE\Classes\Interface\{088BF3A9-6AE8-47B9-A3FB-26262F236C79} Key Found: HKLM\SOFTWARE\Classes\Interface\{2AC7B9EB-3881-4EB9-8DEE-0A731A309FDE} Key Found: HKLM\SOFTWARE\Classes\Interface\{349C0469-ACDD-49DF-9B3E-0D82E7C7DC4D} Key Found: HKLM\SOFTWARE\Classes\Interface\{41226591-6F7A-4082-B63A-67FE4A0CF7A6} Key Found: HKLM\SOFTWARE\Classes\Interface\{55D69CD1-6715-4C40-BF05-9519AC4DC6E6} Key Found: HKLM\SOFTWARE\Classes\Interface\{66C8FD57-54C4-4D4F-BC95-DCCC763B410A} Key Found: HKLM\SOFTWARE\Classes\Interface\{717BAE33-7061-4279-8AE5-6C13BC8AF3F9} Key Found: HKLM\SOFTWARE\Classes\Interface\{84F06F7A-F811-48D7-8B34-3F4145183D8F} Key Found: HKLM\SOFTWARE\Classes\Interface\{88F6D55F-AA3F-4003-BE69-4AC1998D6492} Key Found: HKLM\SOFTWARE\Classes\Interface\{8DBCDED5-08AD-41A2-9BBC-235D84F4FE06} Key Found: HKLM\SOFTWARE\Classes\Interface\{A0F66203-1A86-4812-9603-A57E09A4D7A3} Key Found: HKLM\SOFTWARE\Classes\Interface\{BC39D1B3-4471-41C1-AACA-E097FAF4B7AA} Key Found: HKLM\SOFTWARE\Classes\Interface\{DEB85542-1311-4EC6-8A32-5372EB27FC94} Key Found: HKLM\SOFTWARE\Classes\TypeLib\{11D9E165-B8C1-4734-A56C-BC4FCACA966B} Value Found: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}] Key Found: HKU\S-1-5-21-2610777763-104077107-2974326002-1000\Software\APN PIP Key Found: HKU\S-1-5-21-2610777763-104077107-2974326002-1000\Software\Essentware Key Found: HKU\S-1-5-21-2610777763-104077107-2974326002-1000\Software\ForumerIT Key Found: HKU\S-1-5-21-2610777763-104077107-2974326002-1000\Software\ilivid Key Found: HKU\S-1-5-21-2610777763-104077107-2974326002-1000\Software\Linkey Key Found: HKU\S-1-5-21-2610777763-104077107-2974326002-1000\Software\Softonic Key Found: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2610777763-104077107-2974326002-1000\Software\Speed Test 127 Key Found: HKCU\Software\APN PIP Key Found: HKCU\Software\Essentware Key Found: HKCU\Software\ForumerIT Key Found: HKCU\Software\ilivid Key Found: HKCU\Software\Linkey Key Found: HKCU\Software\Softonic Key Found: HKLM\SOFTWARE\hdcode Key Found: HKLM\SOFTWARE\PIP Key Found: HKLM\SOFTWARE\SupDp Key Found: HKLM\SOFTWARE\SUPDP Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2610777763-104077107-2974326002-1000\Software\Speed Test 127 Key Found: [x64] HKCU\Software\APN PIP Key Found: [x64] HKCU\Software\Essentware Key Found: [x64] HKCU\Software\ForumerIT Key Found: [x64] HKCU\Software\ilivid Key Found: [x64] HKCU\Software\Linkey Key Found: [x64] HKCU\Software\Softonic Key Found: [x64] HKLM\SOFTWARE\Essentware Key Found: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\delta-homes.com Key Found: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.delta-homes.com Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\delta-homes.com Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.delta-homes.com Key Found: HKLM\SOFTWARE\Classes\AppID\AddonsFramework.DLL Key Found: HKLM\SOFTWARE\Classes\AppID\ButtonSite.DLL Key Found: HKLM\SOFTWARE\Classes\AppID\escortApp.DLL Key Found: HKLM\SOFTWARE\Classes\AppID\escortEng.DLL Key Found: HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL Key Found: HKLM\SOFTWARE\Classes\AppID\ScriptHost.DLL ***** [ Web browsers ] ***** No malicious Firefox based browser items found. Chrome pref Found: [C:\Users\Wouter\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - hxxp://search.delta-homes.com/webfavicon.ico Chrome pref Found: [C:\Users\Wouter\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences ] - poimdfnhgefmnkeefbjibbiemlimdnof ************************* C:\AdwCleaner\AdwCleaner[S0].txt - [6185 Bytes] - [04/01/2017 20:01:51] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6258 Bytes] ##########