# AdwCleaner v4.206 - Logfile created 12/06/2015 at 22:40:14 # Updated 01/06/2015 by Xplode # Database : 2015-06-09.1 [Server] # Operating system : Windows 7 Professional Service Pack 1 (x64) # Username : Alexander - ALEXANDER-PC # Running from : C:\Users\Alexander\Downloads\adwcleaner_4.206.exe # Option : Cleaning ***** [ Services ] ***** [#] Service Deleted : globalUpdate [#] Service Deleted : globalUpdatem [#] Service Deleted : IHProtect Service Service Deleted : {799c98d1-3892-4db9-a5c4-c1b2269a0372}Gw64 [#] Service Deleted : 53a1c4d9 ***** [ Files / Folders ] ***** Folder Deleted : C:\ProgramData\Systweak Folder Deleted : C:\ProgramData\WindowsMangerProtect Folder Deleted : C:\ProgramData\IHProtectUpDate Folder Deleted : C:\ProgramData\FlashBeat Folder Deleted : C:\ProgramData\5aae4531dc23473f8da7a5bac9f3a51f Folder Deleted : C:\ProgramData\c3c70e45c4dc47bfba4019c01fd01a17 Folder Deleted : C:\ProgramData\{d0c950ec-d8be-e22d-d0c9-950ecd8b43b3} Folder Deleted : C:\Program Files (x86)\ASP Folder Deleted : C:\Program Files (x86)\globalUpdate Folder Deleted : C:\Program Files (x86)\predm Folder Deleted : C:\Program Files (x86)\RCP Folder Deleted : C:\Program Files (x86)\LuckyTab Folder Deleted : C:\Program Files (x86)\GUPlayer Folder Deleted : C:\Program Files (x86)\WindeskWinsearch Folder Deleted : C:\Program Files (x86)\miuitab Folder Deleted : C:\Program Files (x86)\CinemaP-1.9cV16.03 Folder Deleted : C:\Program Files (x86)\Optimizer Pro 3.96 Folder Deleted : C:\Users\Alexander\SupTab Folder Deleted : C:\Users\Alexander\AppData\Local\globalUpdate Folder Deleted : C:\Users\Alexander\AppData\Local\gmsd_nl_009010001 Folder Deleted : C:\Users\Alexander\AppData\Roaming\SimpleFiles Folder Deleted : C:\Users\Alexander\AppData\Roaming\Systweak Folder Deleted : C:\Users\Alexander\AppData\Roaming\Microsoft\Windows\Start Menu\LuckyTab Folder Deleted : C:\Users\Alexander\AppData\Local\Google\Chrome\User Data\Default\Extensions\acklnhgjphbhhomkneonohbjnbmkclfb File Deleted : C:\Users\Alexander\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_acklnhgjphbhhomkneonohbjnbmkclfb_0.localstorage File Deleted : C:\Users\Alexander\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_acklnhgjphbhhomkneonohbjnbmkclfb_0.localstorage-journal File Deleted : C:\Users\Alexander\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_acklnhgjphbhhomkneonohbjnbmkclfb_0 File Deleted : C:\Users\Alexander\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\acklnhgjphbhhomkneonohbjnbmkclfb File Deleted : C:\Windows\patsearch.bin File Deleted : C:\Windows\System32\drivers\{799c98d1-3892-4db9-a5c4-c1b2269a0372}Gw64.sys File Deleted : C:\Users\Alexander\AppData\Roaming\BYAIAMUF File Deleted : C:\Users\Alexander\AppData\Roaming\BYAIAMUF.exe File Deleted : C:\Users\Alexander\Desktop\Optimizer Pro.lnk ***** [ Scheduled tasks ] ***** Task Deleted : globalUpdateUpdateTaskMachineCore Task Deleted : globalUpdateUpdateTaskMachineUA Task Deleted : LuckyTab Task Deleted : Optimizer Pro Schedule Task Deleted : BYAIAMUF Task Deleted : e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-6 Task Deleted : e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-7 Task Deleted : e653cf25-f107-4cbe-b8d1-5dadaea354f2-10_user Task Deleted : e653cf25-f107-4cbe-b8d1-5dadaea354f2-3 Task Deleted : e653cf25-f107-4cbe-b8d1-5dadaea354f2-5 Task Deleted : e653cf25-f107-4cbe-b8d1-5dadaea354f2-5_user Task Deleted : e653cf25-f107-4cbe-b8d1-5dadaea354f2-6 Task Deleted : e653cf25-f107-4cbe-b8d1-5dadaea354f2-7 Task Deleted : ZYICP Task Deleted : VFIIWFJFR ***** [ Shortcuts ] ***** ***** [ Registry ] ***** Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Optimizer Pro] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10 Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0 Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4 Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0 Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1 Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1 Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0 Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0 Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0 Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0 Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0 Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0 Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0 Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0 Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0 Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10 Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4 Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [gmsd_nl_009010001] Key Deleted : HKLM\SOFTWARE\156eacdc-6be3-484e-958c-b1950c01381c Key Deleted : HKLM\SOFTWARE\1aecb875-535a-b9cf-1f78-ae546ec2848d Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8} Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} Data Restored : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{908D9E46-1611-494B-B74A-4037EEA11907} Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C} Key Deleted : HKCU\Software\APN PIP Key Deleted : HKCU\Software\AskPartnerNetwork Key Deleted : HKCU\Software\GlobalUpdate Key Deleted : HKCU\Software\HomeTab Key Deleted : HKCU\Software\InstalledBrowserExtensions Key Deleted : HKCU\Software\Optimizer Pro Key Deleted : HKCU\Software\SimpleFiles Key Deleted : HKCU\Software\simplytech Key Deleted : HKCU\Software\WajIEnhance Key Deleted : HKCU\Software\TNT2 Key Deleted : HKCU\Software\WajIntEnhance Key Deleted : HKCU\Software\SearchProtectWS Key Deleted : HKCU\Software\Linkey Key Deleted : HKCU\Software\CinemaP-1.9cV16.03-nv Key Deleted : HKCU\Software\CinemaP-1.9cV16.03-nv-ie Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider Key Deleted : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F} Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} Key Deleted : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C} Key Deleted : HKLM\SOFTWARE\AskPartnerNetwork Key Deleted : HKLM\SOFTWARE\Conduit Key Deleted : HKLM\SOFTWARE\GlobalUpdate Key Deleted : HKLM\SOFTWARE\Iminent Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions Key Deleted : HKLM\SOFTWARE\SearchProtect Key Deleted : HKLM\SOFTWARE\SimpleFiles Key Deleted : HKLM\SOFTWARE\SupDp Key Deleted : HKLM\SOFTWARE\SupTab Key Deleted : HKLM\SOFTWARE\supWindowsMangerProtect Key Deleted : HKLM\SOFTWARE\Tutorials Key Deleted : HKLM\SOFTWARE\LuckyTab Key Deleted : HKLM\SOFTWARE\mystartsearchSoftware Key Deleted : HKLM\SOFTWARE\IHProtect Key Deleted : HKLM\SOFTWARE\FlashBeat Key Deleted : HKLM\SOFTWARE\WajIntEnhance Key Deleted : HKLM\SOFTWARE\SpeedBit Key Deleted : HKLM\SOFTWARE\AIM Toolbar Key Deleted : HKLM\SOFTWARE\oursurfingSoftware Key Deleted : HKLM\SOFTWARE\searchult Key Deleted : HKLM\SOFTWARE\CinemaP-1.9cV16.03 Key Deleted : HKLM\SOFTWARE\CinemaP-1.9cV16.03-nv Key Deleted : HKLM\SOFTWARE\CinemaP-1.9cV16.03-nv-ie Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Linkey Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1 Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Linkey Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CinemaP-1.9cV16.03 Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions Key Deleted : [x64] HKLM\SOFTWARE\FlashBeat ***** [ Web browsers ] ***** -\\ Internet Explorer v11.0.9600.17840 Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page] Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL] Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] -\\ Google Chrome v43.0.2357.124 [C:\Users\Alexander\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Deleted [Homepage] : [C:\Users\Alexander\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Deleted [Startup_URLs] : 97702C92702897F58AAB35B0752C7FAF7E43E508E3CC8EFDB45A8294870D6519"},"software_reporter":{"prompt_reason":"D46BCE8C564CE063E4BE1DC3E2AE78494195CB667CC0F429EAAAC4A2FDB254E5","prompt_seed":"9237EFCDD3F00E8BAA7A8A2FCC3777B337299F97FCCAF5921057539264BBE16A","prompt_version":"640622A2AD5FA5413C38C5C96E72DCA9FE877DF34DBABEC36B86029DE451A449"},"sync":{"remaining_rollback_tries":"E549746ACA79F48E0A6FC9788BD6E3868DA88154B32CA088B38A6421FC14DB5A"}},"super_mac":"B37147B889EFBD683AA7C45A3527780D3FA427B4271CAF60AC64F8A9B044031A"},"session":{"restore_on_startup":5,"restore_on_startup_migrated":null,"startup_urls":["hxxp://www.ru.nl/fnwi","hxxp://www.oursurfing.com/?type=hp&ts=1434033580&z=c553150c707d37a9036a4ceg0z1cczde3cfc8wdmac&from=exp&uid=WDCXWD5000AAKX-08U6AA0_WD-WMC2E0J1WESK1WESK ************************* AdwCleaner[R0].txt - [25274 bytes] - [12/06/2015 22:39:27] AdwCleaner[S0].txt - [15569 bytes] - [12/06/2015 22:40:14] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [15629 bytes] ##########