# AdwCleaner v6.000 - Logbestand aangemaakt 15/08/2016 op 21:57:25 # *Updated on 12/08/2016 by ToolsLib # Gebruik lokale database : 2016-08-15.2 [*Server] # Besturingssysteem : Windows 10 Home (X64) # Gebruikersnaam : Elize - DESKTOP-M3ST0NK # Gestart vanuit : C:\Users\Elize\Desktop\adwcleaner_6.000.exe # Verwijderen # Ondersteuning : https://toolslib.net/forum ***** [ *Services ] ***** ***** [ Mappen ] ***** [-] hersteldC:\Users\Elize\AppData\Local\Essentware [-] hersteldC:\Users\Elize\AppData\Roaming\RPEng [-] hersteldC:\Users\Elize\AppData\Roaming\Microsoft\Windows\Start Menu\ByteFence [-] hersteldC:\Program Files\Common Files\AVG Secure Search [-] hersteldC:\rei [-] hersteldC:\Program Files (x86)\DNSWAXHAW ***** [ Bestanden ] ***** [-] hersteldC:\Users\Elize\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aliexpress .lnk [-] hersteldC:\Users\Elize\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Booking .lnk ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Snelkoppelingen ] ***** ***** [ Geplande taken ] ***** [-] %sTracing%s sleutels verwijderdDNSWAXHAW ***** [ Register ] ***** [-] hersteldHKLM\SOFTWARE\5da059a482fd494db3f252126fbc3d5b [-] hersteldHKU\S-1-5-21-161117978-2925262177-180644262-1002\Software\Classes\AppXrh6feys59dqfzsv9p3s9p6aep0hwtb23 [#] *Key deleted on reboot: HKCU\Software\Classes\AppXrh6feys59dqfzsv9p3s9p6aep0hwtb23 [-] hersteldHKLM\SOFTWARE\Classes\OCComSDK.ComSDK [-] hersteldHKLM\SOFTWARE\Classes\OCComSDK.ComSDK.1 [-] hersteldHKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine [-] hersteldHKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1 [-] hersteldHKLM\SOFTWARE\Classes\ScriptHelper.GenericWnd [-] hersteldHKLM\SOFTWARE\Classes\ScriptHelper.GenericWnd.1 [-] hersteldHKLM\SOFTWARE\Classes\ScriptHelper.NativeApi [-] hersteldHKLM\SOFTWARE\Classes\ScriptHelper.NativeApi.1 [-] hersteldHKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi [-] hersteldHKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1 [-] hersteldHKLM\SOFTWARE\Classes\WtuServer.WtuServerObj [-] hersteldHKLM\SOFTWARE\Classes\WtuServer.WtuServerObj.1 [-] hersteld[x64] HKLM\SOFTWARE\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484} [-] hersteld[x64] HKLM\SOFTWARE\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB} [-] hersteld[x64] HKLM\SOFTWARE\Classes\CLSID\{990F7D4F-09EF-47DF-9ABE-BAF2DCCF5C4B} [-] hersteld[x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} [-] hersteld[x64] HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} [-] hersteld[x64] HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546} [-] hersteld[x64] HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270} [-] hersteld[x64] HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} [-] hersteld[x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} [-] hersteld[x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5} [-] hersteld[x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A} [-] hersteldHKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A} [-] hersteldHKLM\SOFTWARE\Classes\AppID\3045035B-3C14-4698-8AC4-ADB18CC42C1E [-] hersteldHKLM\SOFTWARE\Classes\AppID\{56AD7EEE-D6C0-410E-8A7B-811DEA764554} [-] hersteldHKLM\SOFTWARE\Classes\AppID\{E8EB2F1F-661E-4A7F-8F9A-77DEB757A906} [-] hersteldHKLM\SOFTWARE\Classes\AppID\{AF85DB83-06F2-4ECF-97CF-C46EDB06BE29} [-] hersteldHKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3} [-] hersteldHKLM\SOFTWARE\Classes\CLSID\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A} [-] hersteldHKLM\SOFTWARE\Classes\CLSID\{CA3A5461-96B5-46DD-9341-5350D3C94615} [-] hersteldHKLM\SOFTWARE\Classes\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146} [-] hersteldHKLM\SOFTWARE\Classes\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} [-] hersteldHKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} [-] hersteldHKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} [-] hersteldHKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546} [-] hersteldHKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270} [-] hersteldHKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} [-] hersteldHKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} [-] hersteldHKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36} [-] hersteldHKLM\SOFTWARE\Classes\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7} [-] hersteldHKLM\SOFTWARE\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552} [-] hersteldHKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} [-] hersteldHKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10ECCE17-29B5-4880-A8F5-EAD298611484} [-] hersteldHKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A} [-] hersteld[x64] HKLM\SOFTWARE\ByteFence [-] hersteld[x64] HKLM\SOFTWARE\Essentware [-] hersteld[x64] HKLM\SOFTWARE\Reimage [-] hersteld[x64] HKLM\SOFTWARE\WaNetworkEn [-] hersteld[x64] HKLM\SOFTWARE\5da059a482fd494db3f252126fbc3d5b [-] hersteld[x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E1527582-8509-4011-B922-29E3FB548882}_is1 [-] hersteldHKU\S-1-5-21-161117978-2925262177-180644262-1002\Software\ByteFence [-] hersteldHKU\S-1-5-21-161117978-2925262177-180644262-1002\Software\Conduit [-] hersteldHKU\S-1-5-21-161117978-2925262177-180644262-1002\Software\Essentware [-] hersteldHKU\S-1-5-21-161117978-2925262177-180644262-1002\Software\PRODUCTSETUP [-] hersteldHKU\S-1-5-21-161117978-2925262177-180644262-1002\Software\Reimage [-] hersteldHKU\S-1-5-21-161117978-2925262177-180644262-1002\Software\System Healer [-] hersteldHKU\S-1-5-21-161117978-2925262177-180644262-1002\Software\WajIEnhance [-] hersteldHKU\S-1-5-21-161117978-2925262177-180644262-1002\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief. [-] hersteldHKU\S-1-5-21-161117978-2925262177-180644262-1002\Software\csastats [-] hersteldHKU\S-1-5-21-161117978-2925262177-180644262-1002\Software\ICSW1.22 [#] *Key deleted on reboot: HKCU\Software\ByteFence [#] *Key deleted on reboot: HKCU\Software\Conduit [#] *Key deleted on reboot: HKCU\Software\Essentware [#] *Key deleted on reboot: HKCU\Software\PRODUCTSETUP [#] *Key deleted on reboot: HKCU\Software\Reimage [#] *Key deleted on reboot: HKCU\Software\System Healer [#] *Key deleted on reboot: HKCU\Software\WajIEnhance [#] *Key deleted on reboot: HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief. [#] *Key deleted on reboot: HKCU\Software\csastats [#] *Key deleted on reboot: HKCU\Software\ICSW1.22 [-] hersteldHKLM\SOFTWARE\ByteFence [-] hersteldHKLM\SOFTWARE\Conduit [-] hersteldHKLM\SOFTWARE\AVG Tuneup [-] hersteldHKLM\SOFTWARE\WaNetworkEn [#] *Key deleted on reboot: HKLM\SOFTWARE\5da059a482fd494db3f252126fbc3d5b [-] hersteldHKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E1527582-8509-4011-B922-29E3FB548882}_is1 [-] hersteldHKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\11598763487076930564 [-] hersteldHKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{0248b46c-a788-4844-9c41-eeaf4dd384dc} [NameServer] [-] hersteldHKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{07c9b294-ad79-4a08-886c-4b320a34ce0a} [NameServer] [-] hersteldHKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\foxi69.tlscdn.com [-] hersteldHKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\tlscdn.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\bestpriceninja.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\coupontime.co [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\eshopcomp.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\foxi69.tlscdn.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\pricepeep.net [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\pstatic.bestpriceninja.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\pstatic.eshopcomp.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\re-markit.co [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\static.coupontime00.coupontime.co [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\static.pricepeep00.pricepeep.net [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\static.re-markit00.re-markit.co [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\tlscdn.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\utop.it [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\bestpriceninja.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\coupontime.co [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\eshopcomp.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\foxi69.tlscdn.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\pricepeep.net [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\pstatic.bestpriceninja.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\pstatic.eshopcomp.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\re-markit.co [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\static.coupontime00.coupontime.co [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\static.pricepeep00.pricepeep.net [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\static.re-markit00.re-markit.co [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\tlscdn.com [-] hersteldHKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\utop.it [-] hersteld[x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 [vProt] [-] hersteldHKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt] [-] hersteldHKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL [-] hersteldHKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\avgsh [-] hersteldHKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Reimage.exe [-] hersteldHKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin [-] hersteldHKLM\SOFTWARE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\26D9E607FFF0C58C7844B47FF8B6E079E5A2220E [-] hersteldHKLM\SOFTWARE\Classes\s [#] *Key deleted on reboot: HKLM\SOFTWARE\Classes\AppID\3045035B-3C14-4698-8AC4-ADB18CC42C1E ***** [ Internetbrowsers ] ***** ************************* :: "Tracing" sleutels verwijderd :: Winsock instellingen gereset ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [14283 bytes] - [15/08/2016 21:57:25] C:\AdwCleaner\AdwCleaner[S0].txt - [13969 bytes] - [15/08/2016 21:56:40] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [14431 bytes] ##########