# ------------------------------- # Malwarebytes AdwCleaner 7.2.4.0 # ------------------------------- # Build: 09-25-2018 # Database: 2018-09-21.1 (Local) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 10-06-2018 # Duration: 00:00:09 # OS: Windows 7 Ultimate # Cleaned: 178 # Failed: 0 ***** [ Services ] ***** Deleted secbizsrv Deleted pcas Deleted QPCore Deleted HpSvc ***** [ Folders ] ***** Deleted C:\ProgramData\DriveTheLife2013 Deleted C:\Users\apple\AppData\Roaming\DriveTheLife2013 Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ÌÚѶÓÎÏ· Deleted C:\Users\apple\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\°®ÆæÒÕ Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\³´óʦ Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ÌÚѶÈí¼þ Deleted C:\Users\apple\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ÌÚѶÈí¼þ Deleted C:\Users\apple\AppData\Roaming\ËѺüÓ°Òô Deleted C:\Users\apple\AppData\Roaming\navplugin Deleted C:\Users\apple\AppData\LocalLow\BaiduAddr Deleted C:\ProgramData\Tencent Deleted C:\Program Files\Tencent Deleted C:\Program Files (x86)\Tencent Deleted C:\Program Files (x86)\Common Files\Tencent Deleted C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\Tencent Deleted C:\Users\apple\AppData\Local\Tencent Deleted C:\Users\apple\AppData\LocalLow\Tencent Deleted C:\Users\apple\AppData\Roaming\Tencent Deleted C:\Users\Public\Documents\Tencent Deleted C:\Users\apple\AppData\Roaming\lockhomepage Deleted C:\Program Files (x86)\LDSGameCenter Deleted C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\LDSGameCenter Deleted C:\Windows\Temp\LDSGameCenter Deleted C:\Users\apple\AppData\Local\Temp\LDSGameCenter Deleted C:\Users\apple\AppData\Roaming\LDSGameCenter Deleted C:\Program Files (x86)\LuDaShi Deleted C:\Users\apple\AppData\Roaming\LuDaShi ***** [ Files ] ***** No malicious files cleaned. ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** Deleted C:\Windows\Tasks\QQBrowser Updater Task.job Deleted C:\Windows\System32\Tasks\QQBrowser Updater Task Deleted C:\Windows\Tasks\QQBrowser Updater Task(Core).job Deleted C:\Windows\System32\Tasks\QQBrowser Updater Task(Core) Deleted C:\Windows\System32\Tasks\ComputerZ-Tray ***** [ Registry ] ***** Deleted HKCU\Software\QiLu Inc. Deleted HKLM\Software\Wow6432Node\QiLu Inc. Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\App Paths\GeePlayer.exe Deleted HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\GeePlayer.exe Deleted HKLM\Software\Wow6432Node\MICROSOFT\INTERNET EXPLORER\MAIN\FEATURECONTROL\FEATURE_BROWSER_EMULATION|QyClient.exe Deleted HKLM\Software\Classes\GEEPLAYER.DIR Deleted HKCU\Software\Classes\Tencent Deleted HKLM\Software\Classes\Tencent Deleted HKLM\Software\Wow6432Node\ComputerZ Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\360se6 Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\PPTAssist Deleted HKCU\Software\360Chrome Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\QQBrowser Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\GeePlayer Deleted HKCU\Software\360WallPaper Deleted HKLM\SOFTWARE\CLASSES\APPLICATIONS\GEEPLAYER.EXE Deleted HKLM\Software\Wow6432Node\Classes\AppID\DownloadProxy.EXE Deleted HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE Deleted HKLM\Software\Classes\CLSID\{34B3C588-D06C-4F92-929C-2C3A0BC7F821} Deleted HKLM\Software\Classes\CLSID\{96959DE7-C855-42BD-8382-2AAABF2A8F52} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{A981255C-6123-4487-B21A-9CF468EB3FC7} Deleted HKLM\Software\Wow6432Node\Classes\Interface\{790F2D3B-18EE-40E2-A45E-1FAC13B6AFB8} Deleted HKLM\Software\Classes\Interface\{790F2D3B-18EE-40E2-A45E-1FAC13B6AFB8} Deleted HKLM\Software\Wow6432Node\Classes\Interface\{138F4260-66CA-4F7C-812F-C6EED99B7EC7} Deleted HKLM\Software\Classes\Interface\{138F4260-66CA-4F7C-812F-C6EED99B7EC7} Deleted HKLM\Software\Wow6432Node\Classes\Interface\{B9E49847-9822-4139-BC55-7173ED1ADA11} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{B9E49847-9822-4139-BC55-7173ED1ADA11} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{70DE12EA-79F4-46BC-9812-86DB50A2FD64} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BAC94FEE-45B4-4FD4-9EEA-D8978EC96C6E} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2E6A8DA1-2731-465B-B036-B9E16EF26CAC} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2E6A8DA1-2731-465B-B036-B9E16EF26CAC} Deleted HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2E6A8DA1-2731-465B-B036-B9E16EF26CAC} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1E6BE0FB-8B18-4DFC-959F-233651CC4D7F} Deleted HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1E6A8DA1-1731-465B-B036-B9E16EF26CAC} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1E6A8DA1-1731-465B-B036-B9E16EF26CAC} Deleted HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1E6A8DA1-1731-465B-B036-B9E16EF26CAC} Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FB4F6285-4C32-49F2-950F-A5998F9CEC6C} Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FB4F6285-4C32-49F2-950F-A5998F9CEC6C} Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5E6A8DA1-5731-465B-B036-B9E16EF26CAC} Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5E6A8DA1-5731-465B-B036-B9E16EF26CAC} Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\Stats\{5E6A8DA1-5731-465B-B036-B9E16EF26CAC} Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5E6A8DA1-5731-465B-B036-B9E16EF26CAC} Deleted HKLM\Software\Wow6432Node\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E} Deleted HKLM\Software\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E} Deleted HKLM\Software\Wow6432Node\Classes\Interface\{6B3732AA-F6D4-4F16-9E22-49EDC52C9514} Deleted HKLM\Software\Wow6432Node\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1} Deleted HKLM\Software\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{4EC8F591-14BA-481C-B88F-023188699FFC} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{A1F7850D-0FAF-46A1-95A8-3F05E8186B2C}C:\users\apple\appdata\roaming\baidu\baidunetdisk\baidunetdisk.exe Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{8FC28AB9-FB1D-40F6-957F-C0DBD3C7F3A5}C:\users\apple\appdata\roaming\baidu\baidunetdisk\baidunetdisk.exe Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{F6E29906-AF3F-4B76-89FB-A5840EBBE9E1}C:\users\apple\appdata\roaming\baidu\baidunetdisk\baidunetdisk.exe Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{BD567781-265B-42DA-BF40-82559D93DB8D}C:\users\apple\appdata\roaming\baidu\baidunetdisk\baidunetdisk.exe Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{126F5224-A78F-4730-9A90-E535FB69E3BF} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{306CC0B7-6180-400A-A755-EE30A620920D} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{6369E4EB-E433-429B-94DB-4826AD846030} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{3BB2DA73-8013-4A13-A399-CAF7230D9714} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{C5889BBD-F92B-4A4F-895A-518B2158C634} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{6C896774-0BA9-4CE3-AF21-FB8D5C4C4CCB} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{A4BB82D8-2058-4EDA-9DCA-AA9310535147} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{448DC0D6-D1C5-4D25-9799-8A3147E23037} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{D985CA63-5ABF-41CB-A99D-97E9B2614F26} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{D3EA092D-D143-43D4-B12A-56809DAD6F3D} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{325A7C76-D1FA-4F7A-A840-4361D34221FF} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{A1F9B00E-F8DD-462A-8FD3-DA4AEA3A7305} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{15FC2534-4E3B-4F89-8473-7B6B0DCC84CC} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{EBF89696-122B-488F-A8B3-AEEB4BED1C8B} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{9C81C497-D58E-44FE-BA1C-949E24A26729} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{04729F53-98A9-4A87-95D3-D86351F31255} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{230DD4BB-3BA0-4B1B-93D5-ADB903DB43F3}C:\program files (x86)\tencent\wechat\wechat.exe Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{3321627B-71C8-4B2F-8389-9D879A5D504C}C:\program files (x86)\tencent\wechat\wechat.exe Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{04F0DD17-E09A-4486-A38C-A96B560A3294} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{866F6F6C-2161-4EC5-9E9A-51BC96BD30C7} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{ABE7C185-11AA-4164-BF0B-FAA2941F406A} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{FBC9739F-4CE2-4FED-B9C3-6AF782E6A9A5} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{551E7E82-241B-406D-937E-773A61435261} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{3E6DDFDC-65DC-4010-BBE1-86C93A0586ED} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{50D58F11-14BA-4CA0-9271-400829A6F477}C:\program files (x86)\tencent\qq\bin\setupex\qqsetupex.exe Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{85555B71-4224-44F1-AC46-299EB1D8AC69}C:\program files (x86)\tencent\qq\bin\setupex\qqsetupex.exe Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{D5D186FE-7829-4003-A448-5B05415F7593} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{0DCE3D8D-8165-4672-820C-F7D5C82779C9} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{345D8403-0EE1-4346-BD62-CA8ADECDFBE6}C:\program files\tencent\qqgame\qqgamedl.exe Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{0BFA69A5-B720-4296-8233-724C573217C3}C:\program files\tencent\qqgame\qqgamedl.exe Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{FAE8FBD1-FC9E-4E33-B65A-42862BA313D6}C:\program files\tencent\qqgame\qqgamehall.exe Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{D9BB80EC-7923-482D-B63B-2788A9CC4E5B}C:\program files\tencent\qqgame\qqgamehall.exe Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{C73D8A06-43FA-4BDD-8CC4-BE5E9F35CCA7}C:\program files\tencent\qqgame\qqgamedl.exe Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{CFC8F875-A531-44D0-B6AF-02B6AAB15B96}C:\program files\tencent\qqgame\qqgamedl.exe Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{41C659E5-D32A-4ED9-836D-AC585E853B8F}C:\program files (x86)\tencent\qq\bin\setupex\qqsetupex.exe Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{4CB8E287-C918-4DE6-937F-7747ACC8FD9C}C:\program files (x86)\tencent\qq\bin\setupex\qqsetupex.exe Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{34E82FC9-883D-4D85-97C5-73EF126B8892} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{3934B8A1-7113-4862-952C-293F5B075103} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{6BB3B319-6564-43D0-9EDE-AB6FF02A0B26} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{983DC769-3008-4E8C-9D06-27509B64E794} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{D16EA9E2-6C08-4989-8AF4-1595BF27F3F1} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{204F0856-7FEE-4919-8C19-3D209A866A9E} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{E6EF663F-A7CB-4C19-8EE0-D1D5EB539A81} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{D0907CD4-50D6-4FC1-9EA5-3EAFC1F8233E} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{84D0C491-19D8-4049-A465-635C0BE485FE} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{651C56D4-C246-4FB6-ABBD-F98C60FED53C} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{0ADB8874-78EF-4115-B261-17C66DB17431} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{A3C025D5-A6BE-47E0-9679-905FD0535B11} Deleted HKLM\Software\Classes\METNSD Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FC1199E4-3496-451D-912E-F5F5B4221617} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FC1199E4-3496-451D-912E-F5F5B4221617} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\QQBrowser Updater Task Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F6E6638E-F154-45D4-ADB1-2CEA7D5F945C} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\QQBrowser Updater Task(Core) Deleted HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost|netsvcs - "HpSvc" Deleted HKCU\Software\Microsoft\Internet Explorer\Main|Start Page Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main|Start Page Deleted HKLM\Software\Microsoft\Internet Explorer\Main|Start Page Deleted HKU\S-1-5-18\Software\Microsoft\Internet Explorer\DOMStorage\hao123.com Deleted HKU\.DEFAULT\Software\Microsoft\Internet Explorer\DOMStorage\hao123.com Deleted HKU\S-1-5-18\Software\Microsoft\Internet Explorer\DOMStorage\qq.com Deleted HKCU\Software\Microsoft\Internet Explorer\DOMStorage\qq.com Deleted HKU\.DEFAULT\Software\Microsoft\Internet Explorer\DOMStorage\qq.com Deleted HKCU\Software\Microsoft\Internet Explorer\DOMStorage\2345.com Deleted HKCU\Software\Ludashi Deleted HKLM\Software\Wow6432Node\Ludashi Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{3FFB2E3F-CE3B-4420-8BF8-693807BD994F} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{74839038-8B22-4B16-834E-8B17F5880E28} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{7602B9D8-F531-4A9B-91AB-978A701A5311} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{B7975CAB-8757-47E2-843D-3CD3BDA85260} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{76659C5A-903B-4D96-97CE-D9CD614228D3} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{28B07636-D42B-4BE5-9F2C-F9BD2784C4EC} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{9EB32026-A6BD-4C86-92C9-469E9103ABB9} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{E130DAE5-BEB4-41C2-9335-C1ECB189BC50} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{3B422A1F-4EB1-4050-85AB-A3AFF855B15C} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{461A20E3-F81A-4AC5-9CAB-C28242927962} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{12E506C0-8F85-440A-9536-1D23A1D3B847} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{50A9B88E-790F-4AEE-ACEA-CB9374A6B348} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{FB5D1729-1BA4-4BA4-AE9A-E77729A57077} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{35752507-FCEA-498B-A093-C426E2930CED} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9C2D12FB-43C8-48CD-A708-098278FB3F33} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ComputerZ-Tray Deleted HKCU\Software\Microsoft\Internet Explorer\DOMStorage\sogou.com Deleted HKLM\Software\Wow6432Node\Lavasoft\Web Companion Deleted HKCU\Software\AppDataLow\Thunder Network Deleted HKCU\Software\Thunder Network Deleted HKLM\Software\Wow6432Node\Thunder Network Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{889D2FEB-5411-4565-8998-1DD2C5261283} Deleted HKLM\Software\Classes\CLSID\{889D2FEB-5411-4565-8998-1DD2C5261283} Deleted HKLM\Software\Classes\CLSID\{0119CCC1-8EAC-43E9-AA7D-87F64B44AA4D} ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** No malicious Chromium URLs cleaned. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* AdwCleaner[S00].txt - [23925 octets] - [06/10/2018 17:23:01] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########