# AdwCleaner v6.041 - Logfile created 16/12/2016 at 21:24:46 # Updated on 16/12/2016 by Malwarebytes # Database : 2016-12-15.1 [Server] # Operating System : Windows 10 Home (X86) # Username : Constant - CONSTANT-PC # Running from : C:\Users\Constant\Downloads\adwcleaner_6.041.exe # Mode: Clean # Support : https://www.malwarebytes.com/support ***** [ Services ] ***** ***** [ Folders ] ***** [-] Folder deleted: C:\Program Files\ByteFence ***** [ Files ] ***** [-] File deleted: C:\Users\Constant\AppData\Roaming\Mozilla\Firefox\Profiles\zrpfnc7a.default\searchplugins\yahoo! powered.xml ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Shortcuts ] ***** ***** [ Scheduled Tasks ] ***** ***** [ Registry ] ***** [-] Key deleted: HKU\S-1-5-21-3219418776-4157282183-555089908-1000\Software\PRODUCTSETUP [-] Key deleted: HKU\S-1-5-21-3219418776-4157282183-555089908-1000\Software\csastats [#] Key deleted on reboot: HKCU\Software\PRODUCTSETUP [#] Key deleted on reboot: HKCU\Software\csastats [-] Key deleted: HKLM\SOFTWARE\ByteFence [-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ByteFence [-] Data restored: HKU\S-1-5-21-3219418776-4157282183-555089908-1000\Software\Microsoft\Internet Explorer\Main [Start Page] [-] Data restored: HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] [-] Data restored: HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] [-] Key deleted: HKU\S-1-5-21-3219418776-4157282183-555089908-1000\Software\Microsoft\Internet Explorer\SearchScopes\{2211d4a5-48d0-47f5-a7cd-81e861470f7f} [#] Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2211d4a5-48d0-47f5-a7cd-81e861470f7f} [-] Key deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2211d4a5-48d0-47f5-a7cd-81e861470f7f} ***** [ Web browsers ] ***** [-] Chrome preferences cleaned: "browser.search.selectedEngine" - "Yahoo! Powered" [-] Chrome preferences cleaned: "extensions.qzKZpk4ZBfro1Kbz.url" - "hxxp://downloadnicesuperguru.in/sync2/?q=hfZ9oelNAyPRDchEAen0rTr7qTwMg708BNmGWj8ykShGheDUojw8rdgGrHw6qdsGrihIC7n0rjkEqTsHrjC9qja6tNhVCT94tMVKhd98rjs7pjC9pjUFqjg6qTn8rda8tNqHhd9Frjk5pds4qja8pjwGqHs9pjs5rch5BMxJhj8dDfmkAylnCMVThihOAen0qdr5pds5pjU7qHk7pjw5qjg5qGhTAyxKBMlIojaMB6qPhd97rdwMAe4HDd9EtMtHojwMDyxNf7VUoja%3D;hxxp://jobfirstnet.in/sync2/?q=hfZ9oelNAyPRDchEAen0rTr7qTwMg708BNmGWj8ykShGheDUojw8rdgGrHw6qdsGrihIC7n0rjkEqTsHrjC9qja6tNhVCT94tMVKhd98rjs7pjC9pjUFqjg6qTn8rda8tNqHhd9Frjk5pds4qja8pjwGqHs9pjs5rch5BMxJhj8dDfmkAylnCMVThihOAen0qdr5pds5pjU7qHk7pjw5qjg5qGhTAyxKBMlIojaMB6qPhd97rdwMAe4HDd9EtMtHojwMDyxNf7VUoja%3D;hxxp://getproxy5.info/sync2/?q=hfZ9oelNAyPRDchEAen0rTr7qTwMg708BNmGWj8ykShGheDUojw8rdgGrHw6qdsGrihIC7n0rjkEqTsHrjC9qja6tNhVCT94tMVKhd98rjs7pjC9pjUFqjg6qTn8rda8tNqHhd9Frjk5pds4qja8pjwGqHs9pjs5rch5BMxJhj8dDfmkAylnCMVThihOAen0qdr5pds5pjU7qHk7pjw5qjg5qGhTAyxKBMlIojaMB6qPhd97rdwMAe4HDd9EtMtHojwMDyxNf7VUoja%3D;hxxp://veterant.info/sync2/?q=hfZ9oelNAyPRDchEAen0rTr7qTwMg708BNmGWj8ykShGheDUojw8rdgGrHw6qdsGrihIC7n0rjkEqTsHrjC9qja6tNhVCT94tMVKhd98rjs7pjC9pjUFqjg6qTn8rda8tNqHhd9Frjk5pds4qja8pjwGqHs9pjs5rch5BMxJhj8dDfmkAylnCMVThihOAen0qdr5pds5pjU7qHk7pjw5qjg5qGhTAyxKBMlIojaMB6qPhd97rdwMAe4HDd9EtMtHojwMDyxNf7VUoja%3D;hxxp://simpleguardcompletesun.in/sync2/?q=hfZ9oelNAyPRDchEAen0rTr7qTwMg708BNmGWj8ykShGheDUojw8rdgGrHw6qdsGrihIC7n0rjkEqTsHrjC9qja6tNhVCT94tMVKhd98rjs7pjC9pjUFqjg6qTn8rda8tNqHhd9Frjk5pds4qja8pjwGqHs9pjs5rch5BMxJhj8dDfmkAylnCMVThihOAen0qdr5pds5pjU7qHk7pjw5qjg5qGhTAyxKBMlIojaMB6qPhd97rdwMAe4HDd9EtMtHojwMDyxNf7VUoja%3D;hxxp://largelist.link/sync2/?q=hfZ9oelNAyPRDchEAen0rTr7qTwMg708BNmGWj8ykShGheDUojw8rdgGrHw6qdsGrihIC7n0rjkEqTsHrjC9qja6tNhVCT94tMVKhd98rjs7pjC9pjUFqjg6qTn8rda8tNqHhd9Frjk5pds4qja8pjwGqHs9pjs5rch5BMxJhj8dDfmkAylnCMVThihOAen0qdr5pds5pjU7qHk7pjw5qjg5qGhTAyxKBMlIojaMB6qPhd97rdwMAe4HDd9EtMtHojwMDyxNf7VUoja%3D;hxxp://readerbyte.info/sync2/?q=hfZ9oelNAyPRDchEAen0rTr7qTwMg708BNmGWj8ykShGheDUojw8rdgGrHw6qdsGrihIC7n0rjkEqTsHrjC9qja6tNhVCT94tMVKhd98rjs7pjC9pjUFqjg6qTn8rda8tNqHhd9Frjk5pds4qja8pjwGqHs9pjs5rch5BMxJhj8dDfmkAylnCMVThihOAen0qdr5pds5pjU7qHk7pjw5qjg5qGhTAyxKBMlIojaMB6qPhd97rdwMAe4HDd9EtMtHojwMDyxNf7VUoja%3D;hxxp://charcreate.info/sync2/?q=hfZ9oelNAyPRDchEAen0rTr7qTwMg708BNmGWj8ykShGheDUojw8rdgGrHw6qdsGrihIC7n0rjkEqTsHrjC9qja6tNhVCT94tMVKhd98rjs7pjC9pjUFqjg6qTn8rda8tNqHhd9Frjk5pds4qja8pjwGqHs9pjs5rch5BMxJhj8dDfmkAylnCMVThihOAen0qdr5pds5pjU7qHk7pjw5qjg5qGhTAyxKBMlIojaMB6qPhd97rdwMAe4HDd9EtMtHojwMDyxNf7VUoja%3D;hxxp://veterance.info/sync2/?q=hfZ9oelNAyPRDchEAen0rTr7qTwMg708BNmGWj8ykShGheDUojw8rdgGrHw6qdsGrihIC7n0rjkEqTsHrjC9qja6tNhVCT94tMVKhd98rjs7pjC9pjUFqjg6qTn8rda8tNqHhd9Frjk5pds4qja8pjwGqHs9pjs5rch5BMxJhj8dDfmkAylnCMVThihOAen0qdr5pds5pjU7qHk7pjw5qjg5qGhTAyxKBMlIojaMB6qPhd97rdwMAe4HDd9EtMtHojwMDyxNf7VUoja%3D;hxxp://veteranted.com/sync2/?q=hfZ9oelNAyPRDchEAen0rTr7qTwMg708BNmGWj8ykShGheDUojw8rdgGrHw6qdsGrihIC7n0rjkEqTsHrjC9qja6tNhVCT94tMVKhd98rjs7pjC9pjUFqjg6qTn8rda8tNqHhd9Frjk5pds4qja8pjwGqHs9pjs5rch5BMxJhj8dDfmkAylnCMVThihOAen0qdr5pds5pjU7qHk7pjw5qjg5qGhTAyxKBMlIojaMB6qPhd97rdwMAe4HDd9EtMtHojwMDyxNf7VUoja%3D" ************************* :: "Tracing" keys deleted :: Winsock settings cleared ************************* C:\AdwCleaner\AdwCleaner[C1].txt - [8831 Bytes] - [06/07/2016 15:32:02] C:\AdwCleaner\AdwCleaner[C2].txt - [1615 Bytes] - [12/07/2016 16:48:29] C:\AdwCleaner\AdwCleaner[C3].txt - [5410 Bytes] - [16/12/2016 21:24:46] C:\AdwCleaner\AdwCleaner[R0].txt - [2422 Bytes] - [15/12/2013 10:10:31] C:\AdwCleaner\AdwCleaner[R1].txt - [2482 Bytes] - [16/12/2013 10:54:57] C:\AdwCleaner\AdwCleaner[R2].txt - [3619 Bytes] - [07/05/2014 08:16:10] C:\AdwCleaner\AdwCleaner[R3].txt - [3679 Bytes] - [08/05/2014 12:07:59] C:\AdwCleaner\AdwCleaner[R4].txt - [1286 Bytes] - [08/05/2014 19:37:46] C:\AdwCleaner\AdwCleaner[R5].txt - [1975 Bytes] - [22/07/2016 11:46:04] C:\AdwCleaner\AdwCleaner[S0].txt - [2565 Bytes] - [16/12/2013 10:55:35] C:\AdwCleaner\AdwCleaner[S1].txt - [12433 Bytes] - [08/05/2014 12:08:40] C:\AdwCleaner\AdwCleaner[S2].txt - [2774 Bytes] - [08/05/2014 19:38:17] C:\AdwCleaner\AdwCleaner[S3].txt - [2045 Bytes] - [22/07/2016 11:46:51] C:\AdwCleaner\AdwCleaner[S4].txt - [3810 Bytes] - [16/12/2016 21:23:25] ########## EOF - C:\AdwCleaner\AdwCleaner[C3].txt - [6287 Bytes] ##########