# AdwCleaner v6.043 - Logfile created 31/01/2017 at 19:05:42 # Updated on 27/01/2017 by Malwarebytes # Database : 2017-01-27.1 [Local] # Operating System : Windows 10 Home (X64) # Username : Jadwiga - LENOVO-PC # Running from : C:\Users\Jadwiga\Desktop\adwcleaner_6.043.exe # Mode: Clean # Support : https://www.malwarebytes.com/support ***** [ Services ] ***** ***** [ Folders ] ***** [#] Folder deleted on reboot: C:\Users\Jadwiga\AppData\Local\SweetLabs App Platform [-] Folder deleted: C:\Users\Jadwiga\AppData\Local\Hipbear [-] Folder deleted: C:\Users\Jadwiga\AppData\Roaming\Elex-tech [-] Folder deleted: C:\Users\Jadwiga\AppData\Roaming\RPEng [-] Folder deleted: C:\Users\Jadwiga\AppData\Roaming\sweet-page [-] Folder deleted: C:\ProgramData\7b24ec7cc000461ebe26d116b88142c8 [-] Folder deleted: C:\ProgramData\Pokki [#] Folder deleted on reboot: C:\ProgramData\Application Data\7b24ec7cc000461ebe26d116b88142c8 [#] Folder deleted on reboot: C:\ProgramData\Application Data\Pokki [-] Folder deleted: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qksee [-] Folder deleted: C:\Program Files (x86)\Elex-tech [-] Folder deleted: C:\Users\Default User\AppData\Local\Pokki [#] Folder deleted on reboot: C:\Users\Default\AppData\Local\Pokki [-] Folder deleted: C:\Users\Public\Pokki [-] Folder deleted: C:\Users\Jadwiga\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd ***** [ Files ] ***** [-] File deleted: C:\Users\Jadwiga\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\qksee.lnk [-] File deleted: C:\Users\Jadwiga\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\PC App Store.lnk [-] File deleted: C:\Users\Jadwiga\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk [-] File deleted: C:\WINDOWS\SysNative\log\iSafeKrnlCall.log [-] File deleted: C:\WINDOWS\SysNative\VisualDiscoveryOff.ini [-] File deleted: C:\WINDOWS\SysNative\drivers\iSafeKrnlBoot.sys [-] File deleted: C:\WINDOWS\SysNative\drivers\iSafeNetFilter.sys [-] File deleted: C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat [#] File deleted: C:\ProgramData\Application Data\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat [-] File deleted: C:\WINDOWS\SysWoW64\VisualDiscovery.ini [-] File deleted: C:\WINDOWS\SysWoW64\VisualDiscoveryOff.ini [-] File deleted: C:\Users\Jadwiga\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fcfenmboojpjinhpgggodefccipikbpd_0.localstorage [-] File deleted: C:\Users\Jadwiga\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fcfenmboojpjinhpgggodefccipikbpd_0.localstorage-journal ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Shortcuts ] ***** [-] Shortcut disinfected: C:\Users\Jadwiga\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder\WarThunder.lnk [-] Shortcut disinfected: C:\Users\Jadwiga\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk ***** [ Scheduled Tasks ] ***** [-] Task deleted: XPRICZF1 [-] Task deleted: {732B7EB7-F38C-4BFB-B87B-7162EE5550B4} [-] Task deleted: updateTask [-] Task deleted: bvxvexvbg [-] Task deleted: SweetLabs App Platform ***** [ Registry ] ***** [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki_04bb6df446330549a2cb8d67fbd1a745025b7bd1 [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki_33314071f3428990970b3b33f5b555d3ef604782 [-] Key deleted: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\WdsManPro [#] Key deleted on reboot: [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\WdsManPro [-] Key deleted: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\WdMan [#] Key deleted on reboot: [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\WdMan [-] Key deleted: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\qkseeService [#] Key deleted on reboot: [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\qkseeService [-] Key deleted: HKU\S-1-5-21-365846669-4194548096-2659683666-1001\Software\Classes\pokki [#] Key deleted on reboot: HKCU\Software\Classes\pokki [-] Key deleted: HKLM\SOFTWARE\Classes\OCComSDK.ComSDK [-] Key deleted: HKLM\SOFTWARE\Classes\OCComSDK.ComSDK.1 [-] Key deleted: HKLM\SOFTWARE\Classes\qkseeViewer.bmp [-] Key deleted: HKLM\SOFTWARE\Classes\qkseeViewer.gif [-] Key deleted: HKLM\SOFTWARE\Classes\qkseeViewer.ico [-] Key deleted: HKLM\SOFTWARE\Classes\qkseeViewer.jpeg [-] Key deleted: HKLM\SOFTWARE\Classes\qkseeViewer.jpg [-] Key deleted: HKLM\SOFTWARE\Classes\qkseeViewer.png [-] Key deleted: HKLM\SOFTWARE\Classes\qkseeViewer.tif [#] Key deleted on reboot: [x64] HKCU\Software\Classes\pokki [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\OCComSDK.ComSDK [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\OCComSDK.ComSDK.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\qkseeViewer.bmp [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\qkseeViewer.gif [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\qkseeViewer.ico [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\qkseeViewer.jpeg [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\qkseeViewer.jpg [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\qkseeViewer.png [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\qkseeViewer.tif [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{02966FA9-C01A-47E7-A169-C83AEA1FB0BA} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{9AD5C084-B6E6-456A-8BA2-A559663780E5} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{70C7334A-66D9-46DE-A4E2-6B923C7DB94E} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{5780633B-414C-446F-8EB2-FF1C9A731C99} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{4EECDED2-40FB-4500-85B4-86FB0EBECA68} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{10A7F29D-4B00-40EC-B07D-8616DF8135E6} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{05FF6A00-76A3-4AA1-A9A4-A782152ABE60} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{3AE76A17-C344-4A83-81CE-65EFEE41E42D} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{4E9EB4D5-C929-4005-AC62-1856B1DA5A24} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{8FAF962C-3EDE-405E-B1D0-62B8235C6044} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{2E5FA7B4-61A2-4662-BBCE-62BBB20FC649} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{5D7F05E3-075A-43AF-8BC7-21E2F7F38845} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{617E26CE-E6E1-4C75-A68A-A001F2B98491} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{79FBDBEA-A722-4ABD-BEC0-B7D463F6BA0E} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{8128586C-DF69-4266-873F-CF4C6F705A7C} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{C1F9CFCE-A7DC-4072-8B31-1DEA57004C86} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{EA4AD895-2A7F-430E-B973-DEE6C4E743A9} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{EBF4B60F-A863-426F-BE6F-5DFE83BC574F} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{CB6BF8B6-E12B-42FA-A478-91BCCDE475DC} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552} [-] Key deleted: HKU\.DEFAULT\Software\Elex-tech [-] Key deleted: HKU\S-1-5-21-365846669-4194548096-2659683666-1001\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} [-] Key deleted: HKU\S-1-5-21-365846669-4194548096-2659683666-1001\Software\PRODUCTSETUP [-] Key deleted: HKU\S-1-5-21-365846669-4194548096-2659683666-1001\Software\SweetLabs App Platform [-] Key deleted: HKU\S-1-5-21-365846669-4194548096-2659683666-1001\Software\Wincy [-] Key deleted: HKU\S-1-5-21-365846669-4194548096-2659683666-1001\Software\csastats [-] Key deleted: HKU\S-1-5-21-365846669-4194548096-2659683666-1001\Software\AppDataLow\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} [-] Key deleted: HKU\S-1-5-21-365846669-4194548096-2659683666-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_AP [-] Key deleted: HKU\S-1-5-21-365846669-4194548096-2659683666-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_Start_Menu [#] Key deleted on reboot: HKU\S-1-5-18\Software\Elex-tech [#] Key deleted on reboot: HKCU\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} [#] Key deleted on reboot: HKCU\Software\PRODUCTSETUP [#] Key deleted on reboot: HKCU\Software\SweetLabs App Platform [#] Key deleted on reboot: HKCU\Software\Wincy [#] Key deleted on reboot: HKCU\Software\csastats [#] Key deleted on reboot: HKCU\Software\AppDataLow\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} [-] Key deleted: HKLM\SOFTWARE\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} [-] Key deleted: HKLM\SOFTWARE\Elex-tech [-] Key deleted: HKLM\SOFTWARE\hdcode [-] Key deleted: HKLM\SOFTWARE\SPPDCOM [-] Key deleted: HKLM\SOFTWARE\sweet-pageSoftware [-] Key deleted: HKLM\SOFTWARE\TSv [-] Key deleted: HKLM\SOFTWARE\VisualDiscovery [-] Key deleted: HKLM\SOFTWARE\WdsManPro [-] Key deleted: HKLM\SOFTWARE\qkseeSvc [-] Key deleted: HKLM\SOFTWARE\qksee [#] Key deleted on reboot: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_AP [#] Key deleted on reboot: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_Start_Menu [-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iSafe [-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Wincy [#] Key deleted on reboot: [x64] HKCU\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} [#] Key deleted on reboot: [x64] HKCU\Software\PRODUCTSETUP [#] Key deleted on reboot: [x64] HKCU\Software\SweetLabs App Platform [#] Key deleted on reboot: [x64] HKCU\Software\Wincy [#] Key deleted on reboot: [x64] HKCU\Software\csastats [#] Key deleted on reboot: [x64] HKCU\Software\AppDataLow\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_AP [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_Start_Menu [-] Data restored: HKU\S-1-5-21-365846669-4194548096-2659683666-1001\Software\Microsoft\Internet Explorer\Main [Search Page] [-] Data restored: HKU\S-1-5-21-365846669-4194548096-2659683666-1001\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] [-] Data restored: HKU\S-1-5-21-365846669-4194548096-2659683666-1001\Software\Microsoft\Internet Explorer\Main [Default_Search_URL] [-] Data restored: HKCU\Software\Microsoft\Internet Explorer\Main [Search Page] [-] Data restored: HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] [-] Data restored: HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL] [-] Data restored: [x64] HKCU\Software\Microsoft\Internet Explorer\Main [Search Page] [-] Data restored: [x64] HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] [-] Data restored: [x64] HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL] [-] Data restored: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] [-] Data restored: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] [-] Data restored: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] [-] Key deleted: HKU\S-1-5-21-365846669-4194548096-2659683666-1001\Software\Microsoft\Internet Explorer\SearchScopes\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} [-] Key deleted: HKU\S-1-5-21-365846669-4194548096-2659683666-1001\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} [-] Key deleted: HKU\S-1-5-21-365846669-4194548096-2659683666-1001\Software\Microsoft\Internet Explorer\SearchScopes\{40BD877F-C688-4904-9B5D-D8D375179ADD} [#] Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} [#] Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} [#] Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{40BD877F-C688-4904-9B5D-D8D375179ADD} [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{40BD877F-C688-4904-9B5D-D8D375179ADD} [-] Key deleted: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{40BD877F-C688-4904-9B5D-D8D375179ADD} [-] Data restored: [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\watch4.de [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.watch4.de [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\yoursites123.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\softonic.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\windows-10.en.softonic.com [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\skype.de.softonic.com [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\softonic.com [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\skype.de.softonic.com [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\softonic.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\watch4.de [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.watch4.de [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\yoursites123.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\softonic.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\windows-10.en.softonic.com [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\skype.de.softonic.com [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\softonic.com [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\skype.de.softonic.com [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\softonic.com [-] Value deleted: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce [Application Restart #1] [#] Value deleted on reboot: [x64] HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce [Application Restart #1] [-] Key deleted: HKCU\Software\Classes\AllFileSystemObjects\shell\pokki [-] Key deleted: HKCU\Software\Classes\Directory\shell\pokki [-] Key deleted: HKCU\Software\Classes\Drive\shell\pokki [-] Key deleted: HKCU\Software\Classes\lnkfile\shell\pokki [-] Key deleted: HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd [#] Key deleted on reboot: [x64] HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd ***** [ Web browsers ] ***** [-] [C:\Users\Jadwiga\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: mystartsearch [-] [C:\Users\Jadwiga\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: search provided by yahoo.com [-] [C:\Users\Jadwiga\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: yoursites123 [-] [C:\Users\Jadwiga\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: nice [-] [C:\Users\Jadwiga\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: homepage-web.com [-] [C:\Users\Jadwiga\AppData\Local\Google\Chrome\User Data\Default] [startup_urls] Deleted: hxxps://homepage-web.com/?s=lenovo&m=start [-] [C:\Users\Jadwiga\AppData\Local\Google\Chrome\User Data\Default] [favicon_url] Deleted: hxxp://yoursites123.com/wefavicon.ico [-] [C:\Users\Jadwiga\AppData\Local\Google\Chrome\User Data\Default] [extension] Deleted: fcfenmboojpjinhpgggodefccipikbpd [-] [C:\Users\Jadwiga\AppData\Local\Google\Chrome\User Data\Default] [homepage] Deleted: hxxps://homepage-web.com/?s=lenovo&m=home ************************* :: "Tracing" keys deleted :: Winsock settings cleared ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [17696 Bytes] - [31/01/2017 19:05:42] C:\AdwCleaner\AdwCleaner[S0].txt - [18575 Bytes] - [31/01/2017 18:23:58] C:\AdwCleaner\AdwCleaner[S1].txt - [18451 Bytes] - [31/01/2017 18:56:07] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [17918 Bytes] ##########