# AdwCleaner v5.200 - Logfile created 24/06/2016 at 16:59:29 # Updated 14/06/2016 by ToolsLib # Database : 2016-06-23.1 [Server] # Operating system : Windows 10 Home (X64) # Username : Brad - BRAD-PC # Running from : C:\Users\Brad\Desktop\AdwCleaner.exe # Option : Clean # Support : https://toolslib.net/forum ***** [ Services ] ***** ***** [ Folders ] ***** [-] Folder Deleted : C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\ScreenSnapshotTool [-] Folder Deleted : C:\WINDOWS\SysWOW64\config\systemprofile\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A} [-] Folder Deleted : C:\Users\Brad\AppData\Roaming\Easeware [-] Folder Deleted : C:\Users\Brad\AppData\Local\app ***** [ Files ] ***** [-] File Deleted : C:\WINDOWS\SysNative\drivers\mfldriver2.sys ***** [ DLLs ] ***** [-] File Disinfected : C:\WINDOWS\System32\dnsapi.dll [-] File Disinfected : C:\WINDOWS\SysWOW64\dnsapi.dll ***** [ WMI ] ***** ***** [ Shortcuts ] ***** ***** [ Scheduled tasks ] ***** ***** [ Registry ] ***** [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\CptUrlPassthru.DLL [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\dca-bho.DLL [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\smu.exe [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\ConsumerInputUpdate.exe [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ConsumerInputUpdate.exe [-] Value Deleted : HKCU\Environment [SNF] [-] Value Deleted : HKCU\Environment [SNP] [-] Key Deleted : HKLM\SOFTWARE\CLASSES\APPID\dca-host.exe [-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\Class\{0C95ABFE-4FB6-49DB-B22F-0E1F5FC4BEEC} [-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\Class\{EEEFACB3-729F-4484-B66D-E7A7917BBFC1} [-] Key Deleted : HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Application Hosting [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{425F4ABF-B8E4-402D-9E49-06E494EB8DBF} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{06306AA5-80A1-4260-A9A3-A8E10F6AA8B7} [-] Key Deleted : HKCU\Software\Compete [-] Key Deleted : HKCU\Software\IM [-] Key Deleted : HKCU\Software\One System Care [-] Key Deleted : HKCU\Software\SearchProtect [-] Key Deleted : HKCU\Software\WebDiscoverBrowser [-] Key Deleted : HKCU\Software\ConsumerInput [-] Key Deleted : HKCU\Software\MICROSOFT\OTUT [-] Key Deleted : HKCU\Software\Wizzlabs [-] Key Deleted : HKCU\Software\MICROSOFT\IDSC [-] Key Deleted : HKCU\Software\INSTALLPATH\STATUS [-] Key Deleted : HKCU\Software\AppDataLow\Software\Compete [-] Key Deleted : HKCU\Software\AppDataLow\Software\DailyWiki [-] Key Deleted : HKCU\Software\AppDataLow\Software\WikiZ [-] Key Deleted : HKLM\SOFTWARE\CompeteInc [-] Key Deleted : HKLM\SOFTWARE\MPC [-] Key Deleted : HKLM\SOFTWARE\SearchModule [-] Key Deleted : HKLM\SOFTWARE\SearchProtect [-] Key Deleted : HKLM\SOFTWARE\SPPDCOM [-] Key Deleted : HKLM\SOFTWARE\ConsumerInput [-] Key Deleted : HKLM\SOFTWARE\okwindfind [-] Key Deleted : HKLM\SOFTWARE\Get-a-Clip [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\NetStream 1.0 [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search module [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\11598763487076930564 [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{730E03E4-350E-48E5-9D3E-4329903D454D} [-] Key Deleted : [x64] HKLM\SOFTWARE\{61FFE1F9-137D-4c31-A181-3415FCAA5946} [-] Key Deleted : [x64] HKLM\SOFTWARE\SearchModule [-] Key Deleted : [x64] HKLM\SOFTWARE\WebDiscoverBrowser [-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\{94ebd7b5-82ae-449t-b679-3d04078ed154} [-] Key Deleted : [x64] HKLM\SOFTWARE\okwindfind [-] Key Deleted : [x64] HKLM\SOFTWARE\Get-a-Clip [-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\cpuminer [-] Key Deleted : HKU\.DEFAULT\Software\WebDiscoverBrowser [-] Key Deleted : HKLM\SOFTWARE\Classes\Installer\Features\4E30E037E0535E84D9E3349209D354D4 [-] Key Deleted : HKLM\SOFTWARE\Classes\Installer\Products\4E30E037E0535E84D9E3349209D354D4 [-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4E30E037E0535E84D9E3349209D354D4 [-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{8096fe48-d236-4fa8-baca-177c66ee4e90} [NameServer] [-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{a3dfbbbf-d300-470e-9d60-f56a312fa756} [NameServer] [-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{a5a19e26-8611-439f-ae36-051ae7447df8} [NameServer] [-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{aaef004a-988c-11e5-b3c3-806e6f6e6963} [NameServer] [-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{b5f25508-8086-4f7d-a38b-15fc4d74e216} [NameServer] [-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{e1845eae-c61c-4511-acee-ec012bb58ecc} [NameServer] [-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{fab6903f-7dd7-475e-bdf6-da7c4093a4f4} [NameServer] [-] Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [cpuminer] [-] Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Itibiti.exe] [#] Value Deleted : HKU\S-1-5-21-1061724313-1516444972-2292327885-1000\Software\Microsoft\Windows\CurrentVersion\Run [Itibiti.exe] [-] Value Deleted : HKU\S-1-5-21-1061724313-1516444972-2292327885-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [Itibiti.exe] [-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\ProntSpooler ***** [ Web browsers ] ***** ************************* :: "Tracing" keys deleted :: Winsock settings cleared ************************* C:\AdwCleaner\AdwCleaner[C1].txt - [6008 bytes] - [24/06/2016 16:59:29] C:\AdwCleaner\AdwCleaner[S1].txt - [7506 bytes] - [24/06/2016 16:57:30] ########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [6154 bytes] ##########