# AdwCleaner v6.047 - Logfile created 20/05/2017 at 12:43:10 # Updated on 19/05/2017 by Malwarebytes # Database : 2017-05-19.1 [Server] # Operating System : Windows 8.1 Pro (X64) # Username : stvdd - STIJN # Running from : C:\Users\stvdd\Downloads\adwcleaner_6.047.exe # Mode: Clean # Support : https://www.malwarebytes.com/support ***** [ Services ] ***** ***** [ Folders ] ***** [#] Folder deleted on reboot: C:\Users\stvdd\AppData\Local\3DM [-] Folder deleted: C:\Users\stvdd\AppData\Local\CWASRE [-] Folder deleted: C:\Users\stvdd\AppData\Local\Footjane [-] Folder deleted: C:\Program Files (x86)\Firefox [-] Folder deleted: C:\Users\stvdd\AppData\Roaming\Firefox [-] Folder deleted: C:\Users\stvdd\AppData\Local\Firefox [#] Folder deleted on reboot: C:\Users\stvdd\AppData\Local\SNARE [#] Folder deleted on reboot: C:\Users\stvdd\AppData\Local\Kitty [-] Folder deleted: C:\ProgramData\BIT [-] Folder deleted: C:\Reerdition ***** [ Files ] ***** [-] File deleted: C:\Users\stvdd\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\BigFarm.lnk [-] File deleted: C:\Users\stvdd\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\big_bang_empire.lnk [-] File deleted: C:\Users\stvdd\Desktop\BigFarm.lnk [-] File deleted: C:\Users\stvdd\Desktop\big_bang_empire.lnk [-] File deleted: C:\Windows\SysNative\log\iSafeKrnlCall.log [-] File deleted: C:\Users\Public\Documents\temp.dat [-] File deleted: C:\Users\Public\Documents\report.dat ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Shortcuts ] ***** ***** [ Scheduled Tasks ] ***** ***** [ Registry ] ***** [-] Key deleted: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\CWASRE [#] Key deleted on reboot: [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\CWASRE [-] Key deleted: HKU\.DEFAULT\Software\b`nl{y [-] Key deleted: HKU\S-1-5-21-3221389058-4040619027-2354313775-1002\Software\Footjane [#] Key deleted on reboot: HKU\S-1-5-18\Software\b`nl{y [#] Key deleted on reboot: HKCU\Software\Footjane [-] Key deleted: HKLM\SOFTWARE\ScreenShot [-] Key deleted: HKLM\SOFTWARE\b`nl{y [-] Key deleted: HKLM\SOFTWARE\{84416237-6490-494D-9AD6-4994DD978971} [-] Key deleted: HKLM\SOFTWARE\ourluckysitesSoftware [-] Key deleted: HKLM\SOFTWARE\Footjane [#] Key deleted on reboot: [x64] HKCU\Software\Footjane [-] Key deleted: [x64] HKLM\SOFTWARE\b`nl{y [-] Key deleted: [x64] HKLM\SOFTWARE\InterSect Alliance [-] Value deleted: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost [WinSAPSvc] [-] Value deleted: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost [BIT] ***** [ Web browsers ] ***** ************************* :: "Tracing" keys deleted :: Winsock settings cleared ************************* C:\AdwCleaner\AdwCleaner[C1].txt - [2631 Bytes] - [17/11/2015 02:02:32] C:\AdwCleaner\AdwCleaner[C2].txt - [14370 Bytes] - [18/04/2017 14:04:05] C:\AdwCleaner\AdwCleaner[C3].txt - [9709 Bytes] - [13/05/2017 02:46:09] C:\AdwCleaner\AdwCleaner[C4].txt - [3065 Bytes] - [20/05/2017 12:43:10] C:\AdwCleaner\AdwCleaner[S1].txt - [2455 Bytes] - [17/11/2015 02:01:51] C:\AdwCleaner\AdwCleaner[S2].txt - [15008 Bytes] - [18/04/2017 13:44:02] C:\AdwCleaner\AdwCleaner[S3].txt - [14533 Bytes] - [18/04/2017 13:59:52] C:\AdwCleaner\AdwCleaner[S4].txt - [10640 Bytes] - [13/05/2017 02:44:03] C:\AdwCleaner\AdwCleaner[S5].txt - [10609 Bytes] - [18/05/2017 16:23:07] C:\AdwCleaner\AdwCleaner[S6].txt - [3513 Bytes] - [20/05/2017 12:41:21] ########## EOF - C:\AdwCleaner\AdwCleaner[C4].txt - [3580 Bytes] ##########