# ------------------------------- # Malwarebytes AdwCleaner 7.2.6.0 # ------------------------------- # Build: 12-18-2018 # Database: 2019-01-10.1 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 01-11-2019 # Duration: 00:00:02 # OS: Windows 8.1 Pro # Cleaned: 267 # Failed: 2 ***** [ Services ] ***** No malicious services cleaned. ***** [ Folders ] ***** Deleted C:\Cosusp Deleted C:\Alitkojck Deleted C:\Reaqapytegupy Deleted C:\Reimward Deleted C:\Program Files (x86)\Terela Deleted C:\Program Files (x86)\Elex-tech Deleted C:\Insist Deleted C:\Jopetiondipas Deleted C:\Program Files\MK Deleted C:\Program Files (x86)\MK Deleted C:\Program Files (x86)\Default Company Name Deleted C:\Program Files (x86)\Hotleaf Deleted C:\ProgramData\E5C2F20BEDF38994 Deleted C:\Program Files (x86)\BikaQRss Deleted C:\Program Files\CouponMonkey Deleted C:\Terward Deleted C:\Program Files (x86)\AlphaGo Deleted C:\Program Files (x86)\deskapp Deleted C:\ProgramData\vCore Deleted C:\ProgramData\BSD\DriverHiveEngine Deleted C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\Tencent Deleted C:\Program Files (x86)\HitsBlenderUpdater Deleted C:\Program Files (x86)\Vidplaya Deleted C:\ProgramData\Registry Helper Deleted C:\Program Files (x86)\Bench Deleted C:\Program Files (x86)\Universal Updater Deleted C:\Program Files (x86)\predm Deleted C:\Program Files (x86)\globalUpdate Deleted C:\Program Files (x86)\LuckyTab Deleted C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\Solvusoft Deleted C:\ProgramData\BSD\DriverHive Deleted C:\Program Files\WinZip Driver Updater Deleted C:\ProgramData\apn ***** [ Files ] ***** Deleted C:\Windows\SysWOW64\RegistryHelperLM.ocx Deleted C:\END Deleted C:\Windows\System32\drivers\netfilter64.sys Deleted C:\Windows\System32\drivers\swdumon.sys Deleted C:\Windows\patsearch.bin Deleted C:\Windows\System32\roboot64.exe Deleted C:\Windows\System32\drivers\Msft_Kernel_webTinstMKTN_01009.Wdf ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** No malicious tasks cleaned. ***** [ Registry ] ***** Deleted HKCU\Software\deskapp Deleted HKCU\Software\Footper Deleted HKLM\Software\Wow6432Node\Elex-tech Deleted HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost|swpvr Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost|SNARE Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost|NPASRE Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\snare Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\CSHMDR Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\CWASRE Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\NPASRE Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\VNASRE Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\SNAREA Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\SNARER Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\WinSnare Deleted HKU\S-1-5-18\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Installer Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Installer Deleted HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Installer Deleted HKCU\Software\Hotleaf Deleted HKLM\Software\Wow6432Node\Hotleaf Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{9B280735-CD68-4CDE-B352-A75814341933} Deleted HKU\S-1-5-18\Software\PennyBee Deleted HKU\.DEFAULT\Software\PennyBee Deleted HKLM\SOFTWARE\Classes\Applications\iLividSetup-r742-n-bi.exe Deleted HKCU\SOFTWARE\805627D0550572BE3ECD4A5B5AE0A9EC Deleted HKLM\Software\Wow6432Node\805627D0550572BE3ECD4A5B5AE0A9EC Deleted HKLM\SOFTWARE\805627D0550572BE3ECD4A5B5AE0A9EC Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E9041A23-DDF-4614-A6EF-D4AC4F6AFF8} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E236E51-91B8-41A9-9735-544E145EAAF6} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D8F1CDE-A5ED-4362-BDF0-E0B88C293281} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CA17C7EB-6931-4530-9513-76F16FCC2EDD} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C0000B8B-B1C0-4B88-B9CF-16D9BDB87865} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AEA8C677-1D8C-4CE2-9861-B7A89F577EFC} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AE714528-586B-4863-A187-16E28F1DA93} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{85AF37B0-BAED-4648-A342-19D3C6306D6} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7D7DA24-B0F8-4221-9060-2543E28F8274} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C4449D6D-D9D5-49A6-8585-5FF13144291E} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C3E010DA-3BE-4B5B-8ACC-D9A6561D42D9} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A4EB2A53-5D57-4B9A-97A6-E5B1725F352} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8A1B4384-80D2-4A98-852F-85233E42EE9} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{623D896F-34A2-4984-A4A1-4399831785D7} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5A2F4920-E74E-4416-9BF3-973D17E6BE42} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2DE2C3C1-BD6E-46AF-9D66-86F48FD2CA} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AD4863DA-581F-4BAA-BC9F-A22443DF17B} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{95079DB8-92E6-4351-8579-6EFF698657C9} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{671EF51B-7E5B-4A61-B35-14F25B45C275} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{66376F96-468C-4BE3-B3F7-FA8DEC78B8D} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{61D26AC-4841-4146-B312-6F6A951541AC} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2E96AF66-ED5-46C7-B9B2-4EDF53AC468} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{25A4D565-6607-442D-A19E-77F1C21CF244} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{118A4979-BD88-4A95-AC75-34A46D49973} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{db9efcee-b30c-4989-98cc-ee371fa5b355} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{95969fa6-c35a-4552-a1fe-34c45fe13799} Deleted HKLM\Software\Wow6432Node\AdvertisingSupport Deleted HKCU\Software\AnyProtect Deleted HKLM\Software\Wow6432Node\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5} Deleted HKLM\Software\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5} Deleted HKLM\Software\Wow6432Node\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB} Deleted HKLM\Software\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB} Deleted HKLM\Software\Wow6432Node\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66} Deleted HKLM\Software\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID|{FCED84AA-0E0F-497E-9DD0-536082F684DB} Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID|{FCED84AA-0E0F-497E-9DD0-536082F684DB} Deleted HKCU\Software\Reg\Clean Deleted HKLM\Software\Wow6432Node\Reg\Clean Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Crossrider Deleted HKCU\Software\AppDataLow\Software\Crossrider Deleted HKLM\Software\Wow6432Node\AppDataLow\Software\Crossrider Deleted HKU\S-1-5-18\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\_CrossriderRegNamePlaceHolder_ Deleted HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\_CrossriderRegNamePlaceHolder_ Deleted HKU\S-1-5-18\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_ Deleted HKU\.DEFAULT\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_ Deleted HKU\S-1-5-18\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\iWebar Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\iWebar Deleted HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\iWebar Deleted HKU\S-1-5-18\Software\AppDataLow\Software\iWebar Deleted HKU\.DEFAULT\Software\AppDataLow\Software\iWebar Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|DriverAgentPlusHelper Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|DriverAgent Plus Deleted HKCU\Software\ESUPPORT.COM\DriverAgent Plus Deleted HKCU\Software\BSD Deleted HKLM\Software\Wow6432Node\BSD Deleted HKCU\Software\Easy Speed Check Deleted HKCU\Software\csastats Deleted HKCU\Software\InstallCore Deleted HKU\S-1-5-18\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Internet Speed Checker Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Internet Speed Checker Deleted HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Internet Speed Checker Deleted HKU\S-1-5-18\Software\AppDataLow\Software\Internet Speed Checker Deleted HKU\.DEFAULT\Software\AppDataLow\Software\Internet Speed Checker Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|iLivid Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|HitsBlender Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|Registry Helper Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|Salus Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|EasySpeedCheck Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|Price-Horse Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|YTDownloader Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|YTDownloader Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|Browser Infrastructure Helper Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|CommonToolkitTray_Solvusoft Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{E1AF73C7-0C82-4D66-829E-16B29FBBF384} Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{2C652C0A-EC71-4797-8077-F67649177AB0} Deleted HKLM\Software\Wow6432Node\msServer Deleted HKLM\Software\InterSect Alliance Deleted HKCU\Software\VideoBox Deleted HKLM\Software\Wow6432Node\amule-custom Deleted HKLM\Software\Wow6432Node\MaxPower Deleted HKCU\Software\CLKAPP Deleted HKU\S-1-5-18\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Deleted HKCU\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Deleted HKU\.DEFAULT\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Deleted HKLM\Software\Wow6432Node\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Deleted HKCU\Software\OB Deleted HKCU\Software\smartbarlog Deleted HKCU\Software\smartbarbackup Deleted HKLM\Software\Wow6432Node\Registry Helper Deleted HKCU\Software\Popajar Deleted HKU\S-1-5-18\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Object Browser Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Object Browser Deleted HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Object Browser Deleted HKU\S-1-5-18\Software\AppDataLow\Software\Object Browser Deleted HKU\.DEFAULT\Software\AppDataLow\Software\Object Browser Deleted HKCU\Software\ilivid Deleted HKCU\Software\GlobalUpdate Deleted HKCU\Software\Conduit_Search_Protect Deleted HKLM\Software\Wow6432Node\Universal Deleted HKLM\Software\Wow6432Node\HitsBlender Deleted HKLM\Software\Wow6432Node\{12A61307-94CD-4F8E-94BC-918E511FAA81} Deleted HKCU\Software\SIMPLYTECH Deleted HKCU\Software\TrustedShopper Deleted HKLM\Software\Wow6432Node\couponmonkey Deleted HKLM\Software\couponmonkey Deleted HKCU\Software\AppDataLow\Software\SpeeditUp Deleted HKLM\Software\Wow6432Node\YourFileDownloader Deleted HKLM\SYSTEM\CurrentControlSet\Control\iSafeKrnlBoot Deleted HKLM\SOFTWARE\Classes\Record\{8F54FA54-1DF8-3B20-890C-CDD95364BC95} Deleted HKLM\SOFTWARE\Classes\Record\{181480C8-90AC-3430-B39A-CD121E034A1A} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost|CSHMDR Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost|CWASRE Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost|VNASRE Deleted HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost|BIT Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost|SNAREA Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost|WANARE Deleted HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost|Kitty Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost|SNARER Deleted HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost|WinSAPSvc Not Deleted HKLM\SYSTEM\CurrentControlSet\Control\Class\{181A06EA-B82C-47DE-B851-E20FD0E1CC7D} Not Deleted HKLM\SYSTEM\CurrentControlSet\Control\Class\{0014298C-A9BA-440D-AAA8-AD12C7010EE5} Deleted HKLM\Software\Wow6432Node\Classes\AppID\SysMenu.DLL Deleted HKLM\SOFTWARE\Classes\AppID\SysMenu.DLL Deleted HKLM\Software\Wow6432Node\Classes\AppID\REI_AxControl.DLL Deleted HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL Deleted HKLM\SOFTWARE\Classes\Record\{FB2E65F4-5687-33EF-9BBF-4E3C9C98D3B9} Deleted HKLM\SOFTWARE\Classes\Record\{915BB7D5-082E-3B91-B1E0-45B5FDE01F24} Deleted HKLM\SOFTWARE\Classes\Record\{425E7597-03A2-338D-B72A-0E51FFE77A7E} Deleted HKLM\SOFTWARE\Classes\Record\{2009AF2F-5786-3067-8799-B97F7832FDD6} Deleted HKLM\Software\Wow6432Node\Classes\TypeLib\{E7BC34A0-BA86-11CF-84B1-CBC2DA68BF6C} Deleted HKLM\Software\Classes\TypeLib\{E7BC34A0-BA86-11CF-84B1-CBC2DA68BF6C} Deleted HKLM\Software\Wow6432Node\Classes\Interface\{E7BC34A1-BA86-11CF-84B1-CBC2DA68BF6C} Deleted HKLM\Software\Classes\Interface\{E7BC34A1-BA86-11CF-84B1-CBC2DA68BF6C} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{00B11DA2-75ED-4364-ABA5-9A95B1F5E946} Deleted HKLM\Software\Wow6432Node\Classes\TypeLib\{B5C4833B-847B-49CD-8EBE-CDD9B43C882F} Deleted HKLM\Software\Classes\TypeLib\{B5C4833B-847B-49CD-8EBE-CDD9B43C882F} Deleted HKLM\Software\Wow6432Node\Classes\Interface\{A9582D7B-F24A-441D-9D26-450D58F3CD17} Deleted HKLM\Software\Classes\Interface\{A9582D7B-F24A-441D-9D26-450D58F3CD17} Deleted HKLM\Software\Wow6432Node\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A} Deleted HKLM\Software\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A} Deleted HKLM\Software\Wow6432Node\Classes\AppID\{D813D5BB-EBC7-45F9-B8A4-36A305168069} Deleted HKLM\Software\Classes\AppID\{D813D5BB-EBC7-45F9-B8A4-36A305168069} Deleted HKLM\Software\Wow6432Node\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36} Deleted HKLM\Software\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36} Deleted HKLM\Software\Wow6432Node\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546} Deleted HKLM\Software\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546} Deleted HKLM\Software\Wow6432Node\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} Deleted HKLM\Software\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} Deleted HKLM\Software\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB} Deleted HKLM\Software\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{900625B6-F89A-40E3-AEE1-3A9A5E8723A7} Deleted HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{900625B6-F89A-40E3-AEE1-3A9A5E8723A7} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\amiupdaterExd Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\amiupdaterExi Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\WANARE Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\Registry Helper Service Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\WindowsMangerProtect Deleted HKCU\Software\Microsoft\Internet Explorer\Search|SearchAssistant Deleted HKCU\Software\Microsoft\Internet Explorer\Search|Default_Search_URL Deleted HKLM\Software\Wow6432Node\Browser Guard Deleted HKCU\Software\Linkey Deleted HKLM\Software\Wow6432Node\LuckyTab Deleted HKLM\Software\Wow6432Node\mystartsearchSoftware Deleted HKCU\Software\Optimizer Pro Deleted HKCU\Software\PRODUCTSETUP Deleted HKCU\Software\reimagerepair Deleted HKCU\Software\Reimage Deleted HKLM\Software\Reimage Deleted HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief. Deleted HKLM\Software\Classes\REI_AxControl.ReiEngine.1 Deleted HKLM\Software\Classes\REI_AxControl.ReiEngine Deleted HKCU\Software\SearchProtectWS Deleted HKLM\Software\Wow6432Node\SmdmF Deleted HKCU\Software\Classes\Software\{4E7638A1-6962-4e44-A6B9-F40E84FD6D09} Deleted HKU\S-1-5-18\Software\{4E7638A1-6962-4e44-A6B9-F40E84FD6D09} Deleted HKCU\Software\{4E7638A1-6962-4e44-A6B9-F40E84FD6D09} Deleted HKU\S-1-5-20\Software\{4E7638A1-6962-4e44-A6B9-F40E84FD6D09} Deleted HKU\S-1-5-19\Software\{4E7638A1-6962-4e44-A6B9-F40E84FD6D09} Deleted HKU\.DEFAULT\Software\{4E7638A1-6962-4e44-A6B9-F40E84FD6D09} Deleted HKU\S-1-5-18\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-18\Software\shopperz Deleted HKU\.DEFAULT\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-18\Software\shopperz Deleted HKLM\Software\Wow6432Node\SlimWare Utilities Inc Deleted HKCU\Software\SmileysWeLove Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|SoftonicAssistant Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|Softonic For Windows Deleted HKCU\Software\Softonic Deleted HKCU\Software\Classes\Softonic Deleted HKLM\Software\Classes\Softonic Deleted HKLM\SOFTWARE\CLASSES\APPLICATIONS\SolvusoftTray.exe Deleted HKCU\Software\Squeaky Deleted HKLM\Software\Wow6432Node\ourluckysitesSoftware Deleted HKLM\Software\Wow6432Node\startpageing123Software Deleted HKU\S-1-5-18\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Deleted HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Deleted HKU\.DEFAULT\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Deleted HKCU\Software\systweak Deleted HKLM\Software\Wow6432Node\systweak Deleted HKCU\Software\TNT2 Deleted HKCU\Software\TutoTag Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost|WINSNARE ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** No malicious Chromium URLs cleaned. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* AdwCleaner[S00].txt - [27549 octets] - [11/01/2019 16:47:28] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########