# ------------------------------- # Malwarebytes AdwCleaner 7.4.0.0 # ------------------------------- # Build: 07-23-2019 # Database: 2019-08-13.1 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 08-15-2019 # Duration: 00:00:02 # OS: Windows 10 Pro # Cleaned: 39 # Failed: 3 ***** [ Services ] ***** No malicious services cleaned. ***** [ Folders ] ***** Deleted C:\Program Files (x86)\IZPpBbJozjrU2 Deleted C:\Program Files (x86)\InlogOptimizer Deleted C:\Program Files (x86)\VIyHCwavsSZPC Deleted C:\Program Files (x86)\ZRDvywJUeGUn Deleted C:\Program Files (x86)\bDUDIwWNEIE Deleted C:\Program Files (x86)\pGPGVCCgEdIJAbCqPrR Deleted C:\Program Files (x86)\zsTynKNKU Deleted C:\ProgramData\rgrCtQIGjQWGqjVB ***** [ Files ] ***** Deleted C:\Program Files\Mozilla Firefox\browser\features\{EBA45A79-A229-44D3-A606-3DADEAC6A066}.xpi Deleted C:\Users\GALAAD\Desktop\?????? ? ?????????.url Deleted C:\Users\GALAAD\Favorites\Mail.Ru.url Deleted C:\Users\GALAAD\Favorites\?????? ? ?????????.url ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** Deleted C:\Windows\System32\Tasks\GWDIGGXMBCWZRH Deleted C:\Windows\System32\Tasks\MDRDVXNBFVSDGMQTV2 Deleted C:\Windows\System32\Tasks\NEMALRDSYMBTPTOVLLE2 Deleted C:\Windows\System32\Tasks\PRQDSAMBDBAYI2 Deleted C:\Windows\System32\Tasks\VXCSDWRJCTCFELU2 ***** [ Registry ] ***** Deleted HKCU\Software\Google\Chrome\NativeMessagingHosts\ru.mail.go.ext_info_host Deleted HKCU\Software\Microsoft\Internet Explorer\Main|Start Page Deleted HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{FFEBBF0A-C22C-4172-89FF-45215A135AC7} Deleted HKCU\Software\Mozilla\NativeMessagingHosts\ru.mail.go.ext_info_host Deleted HKCU\Software\SetupCompany Deleted HKCU\Software\csastats Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{95368B3D-E2F1-4F30-AD50-A042E01D7FA6} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A700F24C-7DF3-4683-9938-8A25B9827A6D} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AEDA9CD6-031E-4946-8666-B47DC5DB1012} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B76225D5-7860-4A04-9B21-2B841F20E1C4} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D2933D9F-BC1E-419E-BF56-D5221A67523A} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PRqDsAmBDBAyI2 Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\VXcSDwrjctCfElU2 Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\gwDiGgxMbcwZRH Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\mDRdVxnbfVSDgmQtv2 Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\nemalrDSYMbTPtovlle2 Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{8E8F97CD-60B5-456F-A201-73065652D099} Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68AE298D-7E8A-4F53-BE55-15D2B065F6C0} Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E8F97CD-60B5-456F-A201-73065652D099} ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** No malicious Chromium URLs cleaned. ***** [ Firefox (and derivatives) ] ***** Deleted ?????????? ???????? Deleted ???????? ???????? Mail.Ru Deleted ????? Mail.Ru Not Deleted ?????????? ???????? Not Deleted ???????? ???????? Mail.Ru Not Deleted ????? Mail.Ru ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ***** [ Preinstalled Software ] ***** No Preinstalled Software cleaned. ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* AdwCleaner[S00].txt - [5290 octets] - [15/08/2019 18:47:34] AdwCleaner[S01].txt - [5351 octets] - [15/08/2019 18:56:05] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C01].txt ##########