CCleaner CCleaner

CCleaner is the number-one tool for cleaning your PC. It protects your privacy and makes your computer faster and more secure!

Version information of CCleaner:


Product version: 5.19.5633
Description: CCleaner is the number-one tool for cleaning your PC. It protects your privacy and makes your computer faster and more secure!
URL: http://www.piriform.com

System Changes

Related Files

Created Registry Values:

  1. HKLM\SOFTWARE\CLASSES\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\SHELL\OPEN CCLEANER...\COMMAND\: "%PROGRAM FILES%\CCLEANER\CCLEANER.EXE"
  2. HKLM\SOFTWARE\CLASSES\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\SHELL\RUN CCLEANER\COMMAND\: "%PROGRAM FILES%\CCLEANER\CCLEANER.EXE /AUTORB"
  3. HKLM\SOFTWARE\CLASSES\CCLAUNCH\SHELL\OPEN\COMMAND\: ""%PROGRAM FILES%\CCLEANER\CCLEANER.EXE" /%1"
  4. HKLM\Software\Classes\cclaunch\shell\open\: ""
  5. HKLM\Software\Classes\cclaunch\shell\: ""
  6. HKLM\Software\Classes\cclaunch\: "URL: CCleaner Protocol"
  7. HKLM\Software\Classes\cclaunch\URL Protocol: ""
  8. HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\CCLEANER.EXE\: "%PROGRAM FILES%\CCLEANER\CCLEANER.EXE"
  9. HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\CCLEANER.EXE\PATH: "%PROGRAM FILES%\CCLEANER"
  10. HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\CCleaner\DisplayName: "CCleaner"
  11. HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\CCLEANER\UNINSTALLSTRING: ""%PROGRAM FILES%\CCLEANER\UNINST.EXE""
  12. HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\CCleaner\Publisher: "Piriform"
  13. HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\CCLEANER\INSTALLLOCATION: "%PROGRAM FILES%\CCLEANER"
  14. HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\CCleaner\VersionMajor: 0x00000005
  15. HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\CCleaner\VersionMinor: 0x00000013
  16. HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\CCleaner\DisplayVersion: "5.19"
  17. HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\CCLEANER\DISPLAYICON: "%PROGRAM FILES%\CCLEANER\CCLEANER.EXE"
  18. HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7AAFD7B8-8E37-4447-8D91-C8B7A5414713}\Path: "\CCleanerSkipUAC"
  19. HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7AAFD7B8-8E37-4447-8D91-C8B7A5414713}\Hash: 3B A3 A9 56 2B 19 B6 DE 0A 4B F9 E9 97 2F AA 43 5D 24 24 35 B3 81 51 FE 45 48 42 1E AC 54 10 85
  20. HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7AAFD7B8-8E37-4447-8D91-C8B7A5414713}\Triggers: 15 00 00 00 00 00 00 00 00 F5 EE 00 A4 F7 BE 72 FF FF FF FF FF FF FF FF 00 F5 EE 00 A4 F7 BE 72 00 00 00 00 00 00 00 00 08 05 41 01 48 48 48 48 13 2D 3E B6 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 01 00 00 00 48 48 48 48 1C 00 00 00 48 48 48 48 01 05 00 00 00 00 00 05 15 00 00 00 7B FB 1E 86 DA 55 96 C0 9D 39 DC 49 EA 03 00 00 48 48 48 48 1A 00 00 00 48 48 48 48 74 00 65 00 73 00 74 00 2D 00 50 00 43 00 5C 00 74 00 65 00 73 00 74 00 00 00 48 48 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 FF FF FF FF 80 F4 03 00 FF FF FF FF 04 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 47 00 6F 00 00 00 00 00 00 00 00 00
  21. HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A93FEE58-DCA3-403D-A82A-645AA569F717}\Hash: C1 B5 BC 9F 52 7A F4 65 A3 41 31 68 F3 55 37 AE 02 E9 CE 99 C4 0B 9D 1D 90 74 80 8D B9 8C AA DF
  22. HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A93FEE58-DCA3-403D-A82A-645AA569F717}\Triggers: 15 00 00 00 00 00 00 00 01 39 1B 01 98 39 1B 01 00 ED 69 9F 1C 54 BF 01 01 39 1B 01 98 39 1B 01 00 00 64 77 63 71 2F 02 52 21 C2 03 48 48 48 48 9B 25 72 9B 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0C 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 3C 00 00 00 40 38 00 00 80 F4 03 00 FF FF FF FF 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 DD DD 00 00 00 00 00 00 01 39 1B 01 98 39 1B 01 00 ED 69 9F 1C 54 BF 01 01 39 1B 01 98 39 1B 01 00 00 64 77 63 71 2F 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 FF FF FF FF 01 00 00 00 01 00 00 00 00 00 00 00 00 01 89 01 01 00 00 00 00 00 00 00 27 00 00 00
  23. HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A93FEE58-DCA3-403D-A82A-645AA569F717}\DynamicInfo: 03 00 00 00 63 FC 0A 26 14 CD D1 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
  24. HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleanerSkipUAC\Id: "{7AAFD7B8-8E37-4447-8D91-C8B7A5414713}"
  25. HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleanerSkipUAC\Index: 0x00000003
  26. HKLM\Software\Piriform\CCleaner\UpdateCheck: "1"
  27. HKLM\SOFTWARE\PIRIFORM\CCLEANER\: "%PROGRAM FILES%\CCLEANER"
  28. HKCU\Software\Microsoft\Internet Explorer\Main\ImageStoreRandomFolder: "fvuzf7g"
  29. HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\STARTPAGE\NEWSHORTCUTS\%START MENU%\PROGRAMS\CCLEANER\CCLEANER.LNK: 0X00000001
  30. HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\STARTPAGE\NEWSHORTCUTS\%COMMON APPDATA%\MICROSOFT\WINDOWS\START MENU\PROGRAMS\CCLEANER\CCLEANER.LNK: 0X00000001
  31. HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\CCLEANER MONITORING: ""%PROGRAM FILES%\CCLEANER\CCLEANER.EXE" /MONITOR"
  32. HKCU\Software\Piriform\CCleaner\Brandover: "0"
  33. HKCU\Software\Piriform\CCleaner\Language: "1033"
  34. HKCU\Software\Piriform\CCleaner\SkipUAC: "1"
  35. HKCU\Software\Piriform\CCleaner\UpdateKey: "06/22/2016 10:54:25 PM"
  36. HKCU\SOFTWARE\PIRIFORM\CCLEANER\WIPEFREESPACEDRIVES: "%SYSTEMDRIVE%\"
  37. HKCU\Software\Piriform\CCleaner\CookiesToSave: "*.piriform.com|accounts.google.com|google.com"
  38. HKCU\Software\Piriform\CCleaner\RunICS: "0"
  39. HKCU\Software\Piriform\CCleaner\Monitoring: "1"
  40. HKCU\Software\Piriform\CCleaner\SystemMonitoring: "1"
  41. HKCU\Software\Piriform\CCleaner\CheckTrialOffer: "0"
  42. HKCU\Software\Piriform\CCleaner\WINDOW_LEFT: "79"
  43. HKCU\Software\Piriform\CCleaner\WINDOW_TOP: "93"
  44. HKCU\Software\Piriform\CCleaner\WINDOW_WIDTH: "800"
  45. HKCU\Software\Piriform\CCleaner\WINDOW_HEIGHT: "600"
  46. HKCU\Software\Piriform\CCleaner\WINDOW_MAX: "0"
  47. HKCU\Software\Piriform\CCleaner\SystemMonitoringRunningNotification: "0"
  48. HKCU\Software\Piriform\CCleaner\LastMonitoringNotificationTime: "06/22/2016 11:00:09 PM"
  49. HKCU\Software\Piriform\CCleaner\LMN: "2|3|0|0|0|0|1|0|0|0||||"
  50. HKCU\Software\Piriform\CCleaner\AutoICS: "1"

Modified Registry Values:

  • (-) HKLM\Software\Greatis\Regrun2\WaitReboot\ShutHash: "523F644C47A02F73BB1649A141418F28"
  • (+) HKLM\Software\Greatis\Regrun2\WaitReboot\ShutHash: "AD6EB2FEE2388963E3171A87D2472DFF"
  • (-) HKLM\Software\Microsoft\Reliability Analysis\RAC\WmiLastTime: F0 F6 33 67 F3 C2 D1 01
  • (+) HKLM\Software\Microsoft\Reliability Analysis\RAC\WmiLastTime: 27 81 11 5F 14 CD D1 01
  • (-) HKLM\Software\Microsoft\Reliability Analysis\RAC\WmiLastCrimDataTime: E2 CF 2C 67 F3 C2 D1 01
  • (+) HKLM\Software\Microsoft\Reliability Analysis\RAC\WmiLastCrimDataTime: 73 BC 0C 5F 14 CD D1 01
  • (-) HKLM\Software\Microsoft\SQMClient\Windows\WSqmConsLastRunTime: 60 C7 07 1F F3 C2 D1 01
  • (+) HKLM\Software\Microsoft\SQMClient\Windows\WSqmConsLastRunTime: 80 19 82 16 14 CD D1 01
  • (-) HKLM\Software\Microsoft\Windows NT\CurrentVersion\DiskDiagnostics\DFDCollectorInvokeTimes: 0x00000001
  • (+) HKLM\Software\Microsoft\Windows NT\CurrentVersion\DiskDiagnostics\DFDCollectorInvokeTimes: 0x00000002
  • (-) HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage\StartMenu_Balloon_Time: E4 71 E1 6B 3B BB D1 01
  • (+) HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage\StartMenu_Balloon_Time: 4A 7A F3 1C 15 CD D1 01

Created Folders:

  1. %PROGRAM FILES%\CCLEANER
  2. %PROGRAM FILES%\CCLEANER\LANG
  3. %COMMON APPDATA%\MICROSOFT\WINDOWS\START MENU\PROGRAMS\CCLEANER
  4. %LOCAL APPDATA%\MICROSOFT\INTERNET EXPLORER\IMAGESTORE
  5. %LOCAL APPDATA%\MICROSOFT\INTERNET EXPLORER\IMAGESTORE\FVUZF7G
  6. %LOCAL APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\JUMPLISTCACHE
  7. %STARTUP%-OLD
  8. %APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\GMP\WINNT_X86-MSVC
  9. %APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\GMP-WIDEVINECDM
  10. %APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\GMP-WIDEVINECDM\1.4.8.866

Created Files:

  1. %PROGRAM FILES%\CCLEANER\CCLEANER.EXE
  2. %PROGRAM FILES%\CCLEANER\LANG\LANG-1025.DLL
  3. %PROGRAM FILES%\CCLEANER\LANG\LANG-1026.DLL
  4. %PROGRAM FILES%\CCLEANER\LANG\LANG-1027.DLL
  5. %PROGRAM FILES%\CCLEANER\LANG\LANG-1028.DLL
  6. %PROGRAM FILES%\CCLEANER\LANG\LANG-1029.DLL
  7. %PROGRAM FILES%\CCLEANER\LANG\LANG-1030.DLL
  8. %PROGRAM FILES%\CCLEANER\LANG\LANG-1031.DLL
  9. %PROGRAM FILES%\CCLEANER\LANG\LANG-1032.DLL
  10. %PROGRAM FILES%\CCLEANER\LANG\LANG-1034.DLL
  11. %PROGRAM FILES%\CCLEANER\LANG\LANG-1035.DLL
  12. %PROGRAM FILES%\CCLEANER\LANG\LANG-1036.DLL
  13. %PROGRAM FILES%\CCLEANER\LANG\LANG-1037.DLL
  14. %PROGRAM FILES%\CCLEANER\LANG\LANG-1038.DLL
  15. %PROGRAM FILES%\CCLEANER\LANG\LANG-1040.DLL
  16. %PROGRAM FILES%\CCLEANER\LANG\LANG-1041.DLL
  17. %PROGRAM FILES%\CCLEANER\LANG\LANG-1042.DLL
  18. %PROGRAM FILES%\CCLEANER\LANG\LANG-1043.DLL
  19. %PROGRAM FILES%\CCLEANER\LANG\LANG-1044.DLL
  20. %PROGRAM FILES%\CCLEANER\LANG\LANG-1045.DLL
  21. %PROGRAM FILES%\CCLEANER\LANG\LANG-1046.DLL
  22. %PROGRAM FILES%\CCLEANER\LANG\LANG-1048.DLL
  23. %PROGRAM FILES%\CCLEANER\LANG\LANG-1049.DLL
  24. %PROGRAM FILES%\CCLEANER\LANG\LANG-1050.DLL
  25. %PROGRAM FILES%\CCLEANER\LANG\LANG-1051.DLL
  26. %PROGRAM FILES%\CCLEANER\LANG\LANG-1052.DLL
  27. %PROGRAM FILES%\CCLEANER\LANG\LANG-1053.DLL
  28. %PROGRAM FILES%\CCLEANER\LANG\LANG-1054.DLL
  29. %PROGRAM FILES%\CCLEANER\LANG\LANG-1055.DLL
  30. %PROGRAM FILES%\CCLEANER\LANG\LANG-1057.DLL
  31. %PROGRAM FILES%\CCLEANER\LANG\LANG-1058.DLL
  32. %PROGRAM FILES%\CCLEANER\LANG\LANG-1059.DLL
  33. %PROGRAM FILES%\CCLEANER\LANG\LANG-1060.DLL
  34. %PROGRAM FILES%\CCLEANER\LANG\LANG-1061.DLL
  35. %PROGRAM FILES%\CCLEANER\LANG\LANG-1062.DLL
  36. %PROGRAM FILES%\CCLEANER\LANG\LANG-1063.DLL
  37. %PROGRAM FILES%\CCLEANER\LANG\LANG-1065.DLL
  38. %PROGRAM FILES%\CCLEANER\LANG\LANG-1066.DLL
  39. %PROGRAM FILES%\CCLEANER\LANG\LANG-1067.DLL
  40. %PROGRAM FILES%\CCLEANER\LANG\LANG-1068.DLL
  41. %PROGRAM FILES%\CCLEANER\LANG\LANG-1071.DLL
  42. %PROGRAM FILES%\CCLEANER\LANG\LANG-1079.DLL
  43. %PROGRAM FILES%\CCLEANER\LANG\LANG-1081.DLL
  44. %PROGRAM FILES%\CCLEANER\LANG\LANG-1087.DLL
  45. %PROGRAM FILES%\CCLEANER\LANG\LANG-1092.DLL
  46. %PROGRAM FILES%\CCLEANER\LANG\LANG-1102.DLL
  47. %PROGRAM FILES%\CCLEANER\LANG\LANG-1104.DLL
  48. %PROGRAM FILES%\CCLEANER\LANG\LANG-1109.DLL
  49. %PROGRAM FILES%\CCLEANER\LANG\LANG-1110.DLL
  50. %PROGRAM FILES%\CCLEANER\LANG\LANG-1155.DLL
  51. %PROGRAM FILES%\CCLEANER\LANG\LANG-2052.DLL
  52. %PROGRAM FILES%\CCLEANER\LANG\LANG-2070.DLL
  53. %PROGRAM FILES%\CCLEANER\LANG\LANG-2074.DLL
  54. %PROGRAM FILES%\CCLEANER\LANG\LANG-3098.DLL
  55. %PROGRAM FILES%\CCLEANER\LANG\LANG-5146.DLL
  56. %PROGRAM FILES%\CCLEANER\LANG\LANG-9999.DLL
  57. %PROGRAM FILES%\CCLEANER\UNINST.EXE
  58. %COMMON APPDATA%\MICROSOFT\WINDOWS\START MENU\PROGRAMS\CCLEANER\CCLEANER HOMEPAGE.URL
  59. %COMMON APPDATA%\MICROSOFT\WINDOWS\START MENU\PROGRAMS\CCLEANER\CCLEANER.LNK
  60. %PUBLIC%\DESKTOP\CCLEANER.LNK
  61. %LOCAL APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\THUMBNAILS\D71AE12FBB61632F61BEBA320CCDA44C.PNG
  62. %LOCAL APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\JUMPLISTCACHE\1XRHL7THYY9HVROYDM2KTA==.ICO
  63. %LOCAL APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\JUMPLISTCACHE\6UJETBJBECRBVL34DCT8GA==.ICO
  64. %LOCAL APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\JUMPLISTCACHE\8O1TY1RXVO4D9VOIDM1+EW==.ICO
  65. %LOCAL APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\JUMPLISTCACHE\9WM0HN4XLKRITPVA2NDKWA==.ICO
  66. %LOCAL APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\JUMPLISTCACHE\AKWSWLOYPU1VEVQTUJZXSW==.ICO
  67. %LOCAL APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\JUMPLISTCACHE\JTKPD0HK7JWTNEWZCXLF_A==.ICO
  68. %LOCAL APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\JUMPLISTCACHE\Q2B22YLVJR+QWJWTEFA7NW==.ICO
  69. %APPDATA%\MICROSOFT\WINDOWS\RECENT\CUSTOMDESTINATIONS\6824F4A902C78FBD.CUSTOMDESTINATIONS-MS
  70. %APPDATA%\MICROSOFT\WINDOWS\RECENT\CUSTOMDESTINATIONS\ED7A5CC3CCA8D52A.CUSTOMDESTINATIONS-MS
  71. %STARTUP%-OLD\DEL_N.CMD
  72. %STARTUP%-OLD\DESKTOP.INI
  73. %STARTUP%-OLD\MINICAP.LNK
  74. %STARTUP%-OLD\MUTEX_3.LNK
  75. %STARTUP%-OLD\ZOOMIT.EXE
  76. %APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\DATAREPORTING\ARCHIVED\2016-06\1466661349684.A6842F2A-3F53-4560-B0AE-53B3CAC4A8E6.MAIN.JSONLZ4
  77. %APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\DATAREPORTING\ARCHIVED\2016-06\1466661507220.6CD6F4AC-DC50-4F6D-9B6F-E09851CEDD4F.MAIN.JSONLZ4
  78. %APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\DATAREPORTING\ARCHIVED\2016-06\1466661523760.D23B6927-79DA-4319-9280-8F1EDF994866.MAIN.JSONLZ4
  79. %APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\DATAREPORTING\ARCHIVED\2016-06\1466661872843.BC7CE2D4-8D31-4730-878B-06F5FF170FF8.MAIN.JSONLZ4
  80. %APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\SAVED-TELEMETRY-PINGS\6CD6F4AC-DC50-4F6D-9B6F-E09851CEDD4F
  81. %APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\SAVED-TELEMETRY-PINGS\BC7CE2D4-8D31-4730-878B-06F5FF170FF8
  82. %APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\SAVED-TELEMETRY-PINGS\D23B6927-79DA-4319-9280-8F1EDF994866
  83. %APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\FORMHISTORY.SQLITE
  84. %APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\GMP-WIDEVINECDM\1.4.8.866\MANIFEST.JSON
  85. %APPDATA%\MOZILLA\FIREFOX\PROFILES\J3CZWNGH.DEFAULT\GMP-WIDEVINECDM\1.4.8.866\WIDEVINECDM.DLL
  86. %SYSDIR%\TASKS\CCLEANERSKIPUAC

Dmitry Sokolov recommends UnHackMe!

UnHackMe is a powerful tool against malware.