# AdwCleaner v6.021 - Logfile created 17/10/2016 at 19:49:01 # Updated on 06/10/2016 by ToolsLib # Database : 2016-10-16.1 [Server] # Operating System : Windows 10 Pro (X86) # Username : YaSs - DESKTOP-NQ98D5R # Running from : C:\Users\YaSs\Desktop\adwcleaner_6.021.exe # Mode: Clean # Support : https://toolslib.net/forum ***** [ Services ] ***** ***** [ Folders ] ***** [-] Folder deleted: C:\Users\YaSs\AppData\Local\Mail.Ru [-] Folder deleted: C:\Users\YaSs\AppData\Roaming\yoursearching [-] Folder deleted: C:\ProgramData\Mail.Ru [#] Folder deleted on reboot: C:\ProgramData\Application Data\Mail.Ru [-] Folder deleted: C:\Program Files\Mail.Ru [-] Folder deleted: C:\Users\YaSs\AppData\Local\Geckofx [-] Folder deleted: C:\Users\YaSs\AppData\Roaming\Mozilla\Firefox\Profiles\b4kfvpni.default\extensions\search@mail.ru [-] Folder deleted: C:\Users\YaSs\AppData\Roaming\Mozilla\Firefox\Profiles\b4kfvpni.default\extensions\homepage@mail.ru [-] Folder deleted: C:\Users\YaSs\AppData\Local\Google\Chrome\User Data\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel ***** [ Files ] ***** [-] File deleted: C:\Users\YaSs\AppData\Local\Microsoft\Internet Explorer\DOMStore\TI75H2HR\sendfilesfree.dl.myway[1].xml [-] File deleted: C:\Users\YaSs\AppData\Local\Microsoft\Internet Explorer\DOMStore\M8XNU20W\bringmesports.dl.myway[1].xml [-] File deleted: C:\Users\YaSs\AppData\Local\Microsoft\Internet Explorer\DOMStore\3Q8W9PKI\allin1convert.dl.myway[1].xml [-] File deleted: C:\Users\YaSs\AppData\Local\Microsoft\Internet Explorer\DOMStore\3Q8W9PKI\getformsonline.dl.myway[1].xml [-] File deleted: C:\Users\YaSs\AppData\Local\Microsoft\Internet Explorer\DOMStore\3Q8W9PKI\myradioaccess.dl.myway[1].xml [-] File deleted: C:\Users\YaSs\AppData\Local\Microsoft\Internet Explorer\DOMStore\0N3QBOJP\internetspeedtracker.dl.myway[1].xml [-] File deleted: C:\Users\YaSs\AppData\Local\Microsoft\Internet Explorer\DOMStore\0N3QBOJP\safepcrepair.dl.myway[1].xml [-] File deleted: C:\Users\YaSs\AppData\Local\Microsoft\Internet Explorer\DOMStore\0N3QBOJP\www.bringmesports[1].xml [-] File deleted: C:\Users\YaSs\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mail.Ru.lnk [-] File deleted: C:\Users\YaSs\Favorites\Mail.Ru.url [-] File deleted: C:\Users\YaSs\Favorites\Mail.Ru Агент - используй для общения!.url [-] File deleted: C:\WINDOWS\system32\SearchProtectService.exe [-] File deleted: C:\Users\YaSs\AppData\Roaming\Mozilla\Firefox\Profiles\b4kfvpni.default\searchplugins\yoursearching.xml ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Shortcuts ] ***** [!] Shortcut not deleted: C:\Users\YaSs\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mail.Ru.lnk ***** [ Scheduled Tasks ] ***** ***** [ Registry ] ***** [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\allin1convert.dl.myway.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\bringmesports.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\bringmesports.dl.myway.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\getformsonline.dl.myway.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\internetspeedtracker.dl.myway.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\myradioaccess.dl.myway.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\myway.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\safepcrepair.dl.myway.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\sendfilesfree.dl.myway.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.bringmesports.com [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{C379EAD1-CB34-4B09-AF6B-7E587F8BCD80} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{6E727987-C8EA-44DA-8749-310C0FBE3C3E} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{8E8F97CD-60B5-456F-A201-73065652D099} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{03AE1B7B-A9E7-4D5A-9D34-89999C31B659} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{DCFCC2EC-3F33-45A8-8ADF-A6C81F11232F} [-] Key deleted: HKLM\SOFTWARE\Classes\SOFTWARE\Classes\CLSID\{03AE1B7B-A9E7-4D5A-9D34-89999C31B659} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{357D32FC-F0AE-4B37-B36F-D44AA31496F5} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{80B3B43F-7508-4627-BE66-00FB9AE5EE72} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{5A83D7C9-4A14-4000-BC05-389268238753} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6E727987-C8EA-44DA-8749-310C0FBE3C3E} [-] Value deleted: HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{0633EE93-D776-472F-A0FF-E1416B8B2E3D}] [-] Key deleted: HKU\S-1-5-21-2973495360-1647675497-93279711-1001\Software\Mozilla\Extends [-] Key deleted: HKU\S-1-5-21-2973495360-1647675497-93279711-1001\Software\Mail.Ru [-] Key deleted: HKU\S-1-5-21-2973495360-1647675497-93279711-1001\Software\Ultimate-Discounter [-] Key deleted: HKU\S-1-5-21-2973495360-1647675497-93279711-1001\Software\AppDataLow\Software\Mail.Ru [#] Key deleted on reboot: HKCU\Software\Mozilla\Extends [#] Key deleted on reboot: HKCU\Software\Mail.Ru [#] Key deleted on reboot: HKCU\Software\Ultimate-Discounter [#] Key deleted on reboot: HKCU\Software\AppDataLow\Software\Mail.Ru [-] Key deleted: HKLM\SOFTWARE\yoursearchingSoftware [-] Key deleted: HKLM\SOFTWARE\Mail.Ru [-] Data restored: HKU\S-1-5-21-2973495360-1647675497-93279711-1001\Software\Microsoft\Internet Explorer\Main [Search Page] [-] Data restored: HKU\S-1-5-21-2973495360-1647675497-93279711-1001\Software\Microsoft\Internet Explorer\Main [Default_Search_URL] [-] Data restored: HKCU\Software\Microsoft\Internet Explorer\Main [Search Page] [-] Data restored: HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL] [-] Data restored: HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [CustomizeSearch] [-] Key deleted: HKU\S-1-5-21-2973495360-1647675497-93279711-1001\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3C} [-] Key deleted: HKU\S-1-5-21-2973495360-1647675497-93279711-1001\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3D} [#] Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3C} [#] Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3D} [#] Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\allin1convert.dl.myway.com [#] Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\bringmesports.dl.myway.com [#] Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\getformsonline.dl.myway.com [#] Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\internetspeedtracker.dl.myway.com [#] Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\myradioaccess.dl.myway.com [#] Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\myway.com [#] Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\safepcrepair.dl.myway.com [#] Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\sendfilesfree.dl.myway.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\staticimgfarm.com [-] Value deleted: HKLM\SOFTWARE\Mozilla\Firefox\Extensions [deskCutv2@gmail.com] [#] Value deleted on reboot: HKLM\SOFTWARE\Mozilla\Firefox\Extensions [deskCutv2@gmail.com] [#] Value deleted on reboot: HKLM\SOFTWARE\Mozilla\Firefox\Extensions [deskCutv2@gmail.com] [-] Key deleted: HKLM\SOFTWARE\Google\Chrome\Extensions\oelpkepjlgmehajehfeicfbjdiobdkfj [-] Key deleted: HKLM\SOFTWARE\Google\Chrome\Extensions\ojlcebdkbpjdpiligkdbbkdkfjmchbfd [-] Key deleted: HKLM\SOFTWARE\Google\Chrome\Extensions\ccfifbojenkenpkmnbnndeadpfdiffof ***** [ Web browsers ] ***** [-] [C:\Users\YaSs\AppData\Local\Google\Chrome\User Data\Default] [extension] Deleted: ccfifbojenkenpkmnbnndeadpfdiffof [-] [C:\Users\YaSs\AppData\Local\Google\Chrome\User Data\Default] [extension] Deleted: cknebhggccemgcnbidipinkifmmegdel [-] [C:\Users\YaSs\AppData\Local\Google\Chrome\User Data\Default] [extension] Deleted: oelpkepjlgmehajehfeicfbjdiobdkfj [-] [C:\Users\YaSs\AppData\Local\Google\Chrome\User Data\Default] [extension] Deleted: ojlcebdkbpjdpiligkdbbkdkfjmchbfd ************************* :: "Tracing" keys deleted :: Winsock settings cleared ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [8725 Bytes] - [17/10/2016 19:49:01] C:\AdwCleaner\AdwCleaner[S0].txt - [8920 Bytes] - [17/10/2016 19:45:55] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [8871 Bytes] ##########