# AdwCleaner v6.041 - Logfile created 19/12/2016 at 00:57:35
# Updated on 16/12/2016 by Malwarebytes
# Database : 2016-12-18.1 [Server]
# Operating System : Windows 10 Home (X64)
# Username : Alladin - PEACEOFSHIT
# Running from : C:\Users\Alladin\Downloads\Programs\adwcleaner_6.041_2.exe
# Mode: Clean
# Support :
https://www.malwarebytes.com/support***** [ Services ] *****
[!] Service not deleted: SpyHunter 4 Service
[!] Service not deleted: esgiguard
[!] Service not deleted: EsgScanner
***** [ Folders ] *****
[!] Folder not deleted: C:\Users\Alladin\AppData\Roaming\Enigma Software Group
[!] Folder not deleted: C:\Program Files\Enigma Software Group
[!] Folder not deleted: C:\sh4ldr
***** [ Files ] *****
[!] File not deleted: C:\WINDOWS\SysNative\drivers\EsgScanner.sys
[!] File not deleted: C:\spyhunter.fix
[!] File not deleted: C:\WINDOWS\SysWoW64\sh4native.exe
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Shortcuts ] *****
***** [ Scheduled Tasks ] *****
***** [ Registry ] *****
[!] Key not deleted: HKLM\SOFTWARE\EnigmaSoftwareGroup
[-] Key deleted: HKU\.DEFAULT\Software\jhdbca
- Key deleted on reboot: HKU\S-1-5-18\Software\jhdbca
[-] Key deleted: HKLM\SOFTWARE\jhdbca
[-] Key deleted:
[x64] HKLM\SOFTWARE\jhdbca
[-] Data restored: HKU\S-1-5-21-1827436531-876901701-60735713-1001\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data restored: HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data restored: [x64] HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Key deleted: HKU\S-1-5-21-1827436531-876901701-60735713-1001\Software\Microsoft\Internet Explorer\SearchScopes\{A06ED961-D98F-4CF9-A89B-80AB11DB149C}
[-] Data restored: HKU\S-1-5-21-1827436531-876901701-60735713-1001\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{A06ED961-D98F-4CF9-A89B-80AB11DB149C}
[-] Data restored: HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{A06ED961-D98F-4CF9-A89B-80AB11DB149C}
[-] Data restored:
[x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
***** [ Web browsers ] *****
[-] Chrome preferences cleaned: "browser.startup.homepage" - *Blocked Russian URL*/?utm_content=31b5cebd524a9af6c7a772dca81815e9&utm_source=startpm&utm_term=30FCA27EF83CFE04AC447F5A2F8F96D5&utm_d=20161211"
[-] [C:\Users\Alladin\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: GoSearch
[-] [C:\Users\Alladin\AppData\Local\Google\Chrome\User Data\Profile 1] [favicon_url] Deleted: hxxp://www.amisites.com/searchfavicon.ico
[-] [C:\Users\Alladin\AppData\Local\Google\Chrome\User Data\ChromeDefaultData] [favicon_url] Deleted: hxxp://www.mylucky123.com/searchfavicon.ico
*************************
:: "Tracing" keys deleted
:: Winsock settings cleared
:: " Image File Execution Options" keys deleted
:: "Prefetch" files deleted
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [10597 Bytes] - [05/11/2016 13:14:57]
C:\AdwCleaner\AdwCleaner[C10].txt - [3349 Bytes] - [19/12/2016 00:57:35]
C:\AdwCleaner\AdwCleaner[C2].txt - [8087 Bytes] - [17/11/2016 02:25:14]
C:\AdwCleaner\AdwCleaner[C3].txt - [7360 Bytes] - [18/11/2016 17:41:52]
C:\AdwCleaner\AdwCleaner[C4].txt - [11238 Bytes] - [12/12/2016 21:22:35]
C:\AdwCleaner\AdwCleaner[C5].txt - [2406 Bytes] - [12/12/2016 21:53:46]
C:\AdwCleaner\AdwCleaner[C6].txt - [3800 Bytes] - [13/12/2016 03:19:51]
C:\AdwCleaner\AdwCleaner[C7].txt - [4567 Bytes] - [13/12/2016 20:52:51]
C:\AdwCleaner\AdwCleaner[C8].txt - [4674 Bytes] - [15/12/2016 02:23:41]
C:\AdwCleaner\AdwCleaner[C9].txt - [5515 Bytes] - [18/12/2016 01:17:36]
C:\AdwCleaner\AdwCleaner[S0].txt - [14081 Bytes] - [05/11/2016 13:00:35]
C:\AdwCleaner\AdwCleaner[S10].txt - [4891 Bytes] - [19/12/2016 00:56:32]
C:\AdwCleaner\AdwCleaner[S1].txt - [13843 Bytes] - [05/11/2016 13:12:38]
C:\AdwCleaner\AdwCleaner[S2].txt - [11324 Bytes] - [17/11/2016 02:16:41]
C:\AdwCleaner\AdwCleaner[S3].txt - [9157 Bytes] - [18/11/2016 17:35:38]
C:\AdwCleaner\AdwCleaner[S4].txt - [10996 Bytes] - [12/12/2016 21:20:25]
C:\AdwCleaner\AdwCleaner[S5].txt - [2441 Bytes] - [12/12/2016 21:30:33]
C:\AdwCleaner\AdwCleaner[S6].txt - [4008 Bytes] - [13/12/2016 03:17:46]
C:\AdwCleaner\AdwCleaner[S7].txt - [4735 Bytes] - [13/12/2016 20:52:14]
C:\AdwCleaner\AdwCleaner[S8].txt - [4856 Bytes] - [15/12/2016 02:16:06]
C:\AdwCleaner\AdwCleaner[S9].txt - [5469 Bytes] - [18/12/2016 01:14:10]
########## EOF - C:\AdwCleaner\AdwCleaner[C10].txt - [4816 Bytes] ##########