# AdwCleaner 7.0.5.0 - Logfile created on Fri Dec 01 11:32:42 2017 # Updated on 2017/29/11 by Malwarebytes # Running on Windows 8.1 (X64) # Mode: clean # Support: https://www.malwarebytes.com/support ***** [ Services ] ***** No malicious services deleted. ***** [ Folders ] ***** Deleted: C:\Users\Hour\AppData\Local\SweetLabs App Platform Deleted: C:\Users\Public\Pokki Deleted: C:\Users\Hour\AppData\Local\CPU_Guardian ***** [ Files ] ***** Deleted: C:\Users\Hour\AppData\Roaming\Mozilla\Firefox\Profiles\zcgsciqi.default\searchplugins\Web Search.xml Deleted: C:\Users\Hour\AppData\Roaming\Mozilla\Firefox\Profiles\zcgsciqi.default\invalidprefs.js Deleted: C:\Users\Hour\AppData\Roaming\Mozilla\Firefox\Profiles\zcgsciqi.default\SEARCHPLUGINS\WEB SEARCH.XML Deleted: C:\Users\Hour\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** Deleted: SweetLabs App Platform ***** [ Registry ] ***** Deleted: [Key] - HKCU\Software\Classes\CLSID\{BEBBC426-4F16-4567-8FE1-BE198C982027} Deleted: [Key] - HKCU\Software\Classes\AllFileSystemObjects\shell\pokki Deleted: [Key] - HKCU\Software\Classes\Directory\shell\pokki Deleted: [Key] - HKCU\Software\Classes\Drive\shell\pokki Deleted: [Key] - HKCU\Software\Classes\lnkfile\shell\pokki Deleted: [Key] - HKU\S-1-5-21-2152138300-3445066398-75864201-1002\Software\SweetLabs App Platform Deleted: [Key] - HKCU\Software\SweetLabs App Platform Deleted: [Key] - HKU\.DEFAULT\Software\Fraudscore Deleted: [Key] - HKU\S-1-5-21-2152138300-3445066398-75864201-1002\Software\Fraudscore Deleted: [Key] - HKU\S-1-5-18\Software\Fraudscore Deleted: [Key] - HKCU\Software\Fraudscore ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries deleted. ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries deleted. ************************* ::Tracing keys deleted ::Winsock settings cleared ::Additional Actions: 0 ************************* C:/AdwCleaner/AdwCleaner[S0].txt - [2399 B] - [2017/12/1 11:31:16] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt ##########