# AdwCleaner v6.030 - Logfile created 01/12/2016 at 19:54:29 # Updated on 19/10/2016 by Malwarebytes # Database : 2016-12-01.1 [Server] # Operating System : Windows 7 Ultimate Service Pack 1 (X64) # Username : CesarAnDrOiD - CESARANDROID-PC # Running from : C:\Users\CesarAnDrOiD\Downloads\Programs\kis 2016 arabic\adwcleaner_6.030.exe # Mode: Clean # Support : hxxps://www.malwarebytes.com/support ***** [ Services ] ***** [-] Service deleted: backlh [-] Service deleted: Nettrans ***** [ Folders ] ***** [-] Folder deleted: C:\Users\CesarAnDrOiD\AppData\Local\{698D0BA5-6E4B-44BD-9F9A-AA32F2E98D9A} [-] Folder deleted: C:\Users\CesarAnDrOiD\AppData\Roaming\Microleaves [-] Folder deleted: C:\Users\CesarAnDrOiD\AppData\Roaming\Microsoft\Windows\Start Menu\ByteFence [-] Folder deleted: C:\ProgramData\Logic Handler [-] Folder deleted: C:\ProgramData\Quoteexs [-] Folder deleted: C:\ProgramData\NetworkPacketManitor [-] Folder deleted: C:\ProgramData\Microleaves [#] Folder deleted on reboot: C:\ProgramData\Application Data\Logic Handler [#] Folder deleted on reboot: C:\ProgramData\Application Data\Quoteexs [#] Folder deleted on reboot: C:\ProgramData\Application Data\NetworkPacketManitor [#] Folder deleted on reboot: C:\ProgramData\Application Data\Microleaves [-] Folder deleted: C:\Users\CesarAnDrOiD\AppData\Local\app [-] Folder deleted: C:\Users\CesarAnDrOiD\AppData\Roaming\Mozilla\Firefox\naweriweentcofise ***** [ Files ] ***** [-] File deleted: C:\Users\CesarAnDrOiD\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fdckocnfhibclnnkifmjbbogcfkbijki_0.localstorage [-] File deleted: C:\Users\CesarAnDrOiD\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Local Storage\chrome-extension_fdckocnfhibclnnkifmjbbogcfkbijki_0.localstorage ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Shortcuts ] ***** ***** [ Scheduled Tasks ] ***** ***** [ Registry ] ***** [-] Key deleted: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Hosting [#] Key deleted on reboot: [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Hosting [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{E7BC34A1-BA86-11CF-84B1-CBC2DA68BF6C} [-] Key deleted: HKU\S-1-5-21-3632631583-3328051805-244849390-1000\Software\csastats [-] Key deleted: HKU\S-1-5-21-3632631583-3328051805-244849390-1000\Software\mtQuoteex [#] Key deleted on reboot: HKCU\Software\csastats [#] Key deleted on reboot: HKCU\Software\mtQuoteex [-] Key deleted: HKLM\SOFTWARE\youndooSoftware [-] Key deleted: HKLM\SOFTWARE\Microleaves [#] Key deleted on reboot: [x64] HKCU\Software\csastats [#] Key deleted on reboot: [x64] HKCU\Software\mtQuoteex [#] Key deleted on reboot: HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Application Hosting [-] Key deleted: HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SILENTPROCESSEXIT\Quoteex.exe ***** [ Web browsers ] ***** [-] Chrome preferences cleaned: "browser.newtab.url" - "C:\\ProgramData\\Quoteexs\\ff.NT" [-] [C:\Users\CesarAnDrOiD\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: aol.com [-] [C:\Users\CesarAnDrOiD\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: ask.com [-] [C:\Users\CesarAnDrOiD\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: feed.sonic-search.com [-] [C:\Users\CesarAnDrOiD\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: feed.sonic-search.com___ [-] [C:\Users\CesarAnDrOiD\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: feed.sonic-search.com_ [-] [C:\Users\CesarAnDrOiD\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: feed.sonic-search.com__ [-] [C:\Users\CesarAnDrOiD\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: feed.sonic-search.com_____ [-] [C:\Users\CesarAnDrOiD\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: feed.sonic-search.com____ ************************* :: "Tracing" keys deleted :: Winsock settings cleared ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [4354 Bytes] - [01/12/2016 19:54:29] C:\AdwCleaner\AdwCleaner[S0].txt - [4290 Bytes] - [01/12/2016 16:55:32] C:\AdwCleaner\AdwCleaner[S1].txt - [4363 Bytes] - [01/12/2016 19:41:38] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [4573 Bytes] ##########