# AdwCleaner 7.0.7.0 - Logfile created on Sat Jan 27 15:33:12 2018 # Updated on 2018/18/01 by Malwarebytes # Database: 01-26-2018.1 # Running on Windows 10 Home (X64) # Mode: scan # Support: https://www.malwarebytes.com/support ***** [ Services ] ***** PUP.Optional.Chip, chip1click ***** [ Folders ] ***** PUP.Optional.Legacy, C:\Windows\System32\config\systemprofile\AppData\Local\YSearchUtil PUP.Optional.Legacy, C:\Windows\SysWOW64\config\systemprofile\AppData\Local\YSearchUtil PUP.Optional.Legacy, C:\Users\SylvieK\AppData\Local\YSearchUtil PUP.Optional.Legacy, C:\ProgramData\lavasoft\web companion PUP.Optional.Legacy, C:\ProgramData\Application Data\lavasoft\web companion PUP.Optional.Legacy, C:\Users\All Users\lavasoft\web companion PUP.Optional.Legacy, C:\Users\SylvieK\AppData\Roaming\lavasoft\web companion PUP.Optional.Chip, C:\Program Files (x86)\Chip Digital GmbH PUP.Optional.Chip, C:\Windows\Installer\{503CA94E-0834-4CEE-AD92-BA17AF4E809A} PUP.Optional.SpyHunter, C:\Users\SylvieK\AppData\Roaming\Enigma Software Group PUP.Optional.SpyHunter, C:\sh4ldr PUP.Optional.SpyHunter, C:\sh4ldr ***** [ Files ] ***** PUP.Optional.Legacy, C:\Windows\System32\lavasofttcpservice.dll PUP.Optional.Legacy, C:\Windows\SysWOW64\lavasofttcpservice.dll PUP.Optional.Legacy, C:\Windows\SysNative\LavasoftTcpService64.dll PUP.Optional.SpyHunter, C:\Windows\SysNative\drivers\EsgScanner.sys PUP.Optional.SpyHunter, C:\Users\SylvieK\Desktop\SpyHunter.lnk PUP.Optional.SpyHunter, C:\Users\SylvieK\Desktop\SpyHunter.lnk PUP.Optional.SpyHunter, C:\Windows\SysNative\drivers\EsgScanner.sys ***** [ DLL ] ***** No malicious DLLs found. ***** [ WMI ] ***** No malicious WMI found. ***** [ Shortcuts ] ***** No malicious shortcuts found. ***** [ Tasks ] ***** No malicious tasks found. ***** [ Registry ] ***** PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-447166766-2497178896-1219052369-1000\Software\TeleCharger PUP.Optional.Legacy, [Key] - HKCU\Software\TeleCharger PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Lavasoft\Web Companion PUP.Optional.Legacy, [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID | {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\TypeLib\{82351433-9094-11D1-A24B-00A0C932C7DF} PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{82351441-9094-11D1-A24B-00A0C932C7DF} PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\TypeLib\{ED62BC6E-64F1-46BE-866F-4C8DC0DF7057} PUP.Optional.Chip, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{503CA94E-0834-4CEE-AD92-BA17AF4E809A} PUP.Optional.Chip, [Key] - HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\04A063A0BBEACF54EAEF493C49D9E3F6 PUP.Optional.Chip, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\04A063A0BBEACF54EAEF493C49D9E3F6 PUP.Optional.Chip, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E49AC3054380EEC4DA29AB71FAE408A9 PUP.Optional.Chip, [Key] - HKLM\SOFTWARE\Classes\Installer\Features\E49AC3054380EEC4DA29AB71FAE408A9 PUP.Optional.Chip, [Key] - HKLM\SOFTWARE\Classes\Installer\Products\E49AC3054380EEC4DA29AB71FAE408A9 PUP.Optional.Chip, [Key] - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\chip 1-click download service PUP.Optional.Chip, [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders | C:\Program Files (x86)\Chip Digital GmbH\chip1click\ PUP.Optional.Chip, [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders | C:\Program Files (x86)\Chip Digital GmbH\ PUP.Optional.Chip, [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders | C:\Windows\Installer\{503CA94E-0834-4CEE-AD92-BA17AF4E809A}\ PUP.Optional.SpyHunter, [Key] - HKLM\SOFTWARE\EnigmaSoftwareGroup PUP.Optional.SpyHunter, [Key] - HKLM\SOFTWARE\EnigmaSoftwareGroup PUP.Optional.LuckyTab.A, [Key] - HKLM\SOFTWARE\Classes\TypeLib\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88} PUP.Optional.Goobzo, [Key] - HKU\S-1-5-21-447166766-2497178896-1219052369-1321\Software\Goobzo Adware.MiuiTab, [Key] - HKLM\SOFTWARE\Classes\TypeLib\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88} PUP.Optional.ProductUpdater, [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders | C:\ProgramData\Lavasoft\Web Companion\Options\ ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries. ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries. ************************* ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt ##########