# AdwCleaner v4.201 - Logfile created 11/04/2015 at 19:11:09 # Updated 08/04/2015 by Xplode # Database : 2015-04-08.1 [Server] # Operating system : Windows 8.1 Pro N (x64) # Username : dawid - DAWID-LAPTOP # Running from : C:\Users\Wojciech\Desktop\AdwCleaner.pl 4.201.exe # Option : Cleaning ***** [ Services ] ***** ***** [ Files / Folders ] ***** Folder Deleted : C:\Program Files (x86)\Conduit Folder Deleted : C:\Program Files (x86)\Mobogenie Folder Deleted : C:\Program Files (x86)\SupTab Folder Deleted : C:\Program Files (x86)\SAlePlus Folder Deleted : C:\Users\Wojciech\AppData\Local\Conduit Folder Deleted : C:\Users\Wojciech\AppData\Local\genienext Folder Deleted : C:\Users\Wojciech\AppData\Local\Mobogenie Folder Deleted : C:\Users\Wojciech\AppData\Local\NativeMessaging Folder Deleted : C:\Users\Wojciech\AppData\Local\SaveSense Folder Deleted : C:\Users\Wojciech\AppData\LocalLow\Conduit Folder Deleted : C:\Users\Wojciech\AppData\Roaming\1H1Q Folder Deleted : C:\Users\Wojciech\AppData\Roaming\Systweak File Deleted : C:\END File Deleted : C:\Windows\System32\roboot64.exe File Deleted : C:\Users\Wojciech\daemonprocess.txt File Deleted : C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_app.mam.conduit.com_0.localstorage File Deleted : C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_app.mam.conduit.com_0.localstorage-journal File Deleted : C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_facebook.conduitapps.com_0.localstorage File Deleted : C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_facebook.conduitapps.com_0.localstorage-journal File Deleted : C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_mieszkania.trovit.pl_0.localstorage File Deleted : C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_mieszkania.trovit.pl_0.localstorage-journal File Deleted : C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage File Deleted : C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage-journal File Deleted : C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.deltarom.com_0.localstorage File Deleted : C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.deltarom.com_0.localstorage-journal File Deleted : C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_youtube.conduitapps.com_0.localstorage File Deleted : C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_youtube.conduitapps.com_0.localstorage-journal ***** [ Scheduled tasks ] ***** ***** [ Shortcuts ] ***** ***** [ Registry ] ***** Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginService Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Wpm Key Deleted : HKLM\SOFTWARE\Classes\AppID\{997E3BFB-F821-411C-8B96-D61D415EC8FA} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{44FC7A33-2E5C-48DC-B6F5-B81E8005D122} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{71E129FF-6C2A-4984-818C-7E2C998B8D99} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{997E3BFB-F821-411C-8B96-D61D415EC8FA} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F4B8D46C-4EEE-401B-8607-DC03025F34B1} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71E129FF-6C2A-4984-818C-7E2C998B8D99} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{71E129FF-6C2A-4984-818C-7E2C998B8D99} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{71E129FF-6C2A-4984-818C-7E2C998B8D99} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{27CE191D-733B-4450-AFCD-096D105288C3} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44} Key Deleted : HKCU\Software\Conduit Key Deleted : HKCU\Software\Softonic Key Deleted : HKCU\Software\systweak Key Deleted : HKCU\Software\AppDataLow\Software\Conduit Key Deleted : HKLM\SOFTWARE\SupTab Key Deleted : HKLM\SOFTWARE\supWPM Key Deleted : HKLM\SOFTWARE\systweak ***** [ Web browsers ] ***** -\\ Internet Explorer v11.0.9600.17416 -\\ Google Chrome v41.0.2272.118 [C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Deleted [Extension] : kfgaibfbmkjgmimhbbaikfnpkkjkpoan [C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Deleted [Extension] : pkndmigholgfjlniaohblojbhgjbkakn [C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Deleted [Homepage] : hxxp://start.facemoods.com/?a=ddrnw [C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Deleted [Startup_URLs] : hxxp://start.facemoods.com/?a=ddrnw [C:\Users\Wojciech\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Deleted [Default_Search_Provider_Data] : ************************* AdwCleaner[R0].txt - [30467 bytes] - [11/04/2015 19:08:56] AdwCleaner[S0].txt - [5596 bytes] - [11/04/2015 19:11:09] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5655 bytes] ##########