# AdwCleaner 7.0.2.1 - Logfile created on Wed Oct 25 21:23:08 2017 # Updated on 2017/29/08 by Malwarebytes # Running on Windows 7 Home Premium (X64) # Mode: clean # Support: https://www.malwarebytes.com/support ***** [ Services ] ***** Deleted: ReimageRealTimeProtector Deleted: ReimageRealTimeProtector ***** [ Folders ] ***** Deleted: C:\Users\Míša\AppData\Local\Shutness Deleted: C:\Users\Míša\Documents\PCSpeedUp Deleted: C:\Users\All Users\Documents\\dmp Deleted: C:\Users\Public\Documents\\dmp Deleted: C:\ProgramData\Reimage Protector Deleted: C:\ProgramData\Application Data\Reimage Protector Deleted: C:\Users\All Users\Reimage Protector Deleted: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\reimage repair Deleted: C:\rei Deleted: C:\Users\Míša\AppData\Roaming\eCyber Deleted: C:\Users\Míša\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108 Deleted: C:\Users\All Users\Documents\iheeawa Deleted: C:\Users\Public\Documents\iheeawa Deleted: C:\Program Files\Reimage Deleted: C:\Users\Míša\AppData\Roaming\\Mozilla\Firefox\Profiles\41A66E7E5EE1 Deleted: C:\Program Files (x86)\Smart Driver Updater Deleted: C:\Program Files (x86)\QQBrowser Deleted: C:\ProgramData\2winp2 ***** [ Files ] ***** Deleted: C:\Users\All Users\Documents\\report.dat Deleted: C:\Users\Public\Documents\\report.dat Deleted: C:\Users\All Users\Documents\\temp.dat Deleted: C:\Users\Public\Documents\\temp.dat Deleted: C:\Users\All Users\Documents\\cc.ini Deleted: C:\Users\Public\Documents\\cc.ini Deleted: C:\Users\All Users\Documents\\cfg.ini Deleted: C:\Users\Public\Documents\\cfg.ini Deleted: C:\Users\All Users\Desktop\PC Scan & Repair by Reimage.lnk Deleted: C:\Users\Public\Desktop\PC Scan & Repair by Reimage.lnk Deleted: C:\Users\Míša\Downloads\ReimageRepair.exe Deleted: C:\Users\Míša\Documents\daemonprocess.txt Deleted: C:\Windows\SysNative\log\iSafeKrnlCall.log Deleted: C:\Users\Míša\AppData\Roaming\Mozilla\Firefox\Profiles\fcivdc8k.default\searchplugins\nice.xml Deleted: C:\Windows\Reimage.ini Deleted: C:\Windows\Temp\reimage.log Deleted: C:\Users\Míša\AppData\Local\Temp\reimage.log Deleted: C:\Users\Míša\AppData\Local\Temp\ReimagePackage.exe ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** Deleted: Browser Updater Task(Core) Deleted: ReimageUpdater Deleted: WinTsks ***** [ Registry ] ***** Deleted: [Key] - HKLM\SOFTWARE\Elex-tech Deleted: [Key] - HKU\.DEFAULT\Software\Elex-tech Deleted: [Key] - HKU\S-1-5-18\Software\Elex-tech Deleted: [Key] - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application Deleted: [Key] - HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application Deleted: [Key] - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application Deleted: [Key] - HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application Deleted: [Key] - HKLM\SOFTWARE\hdcode Deleted: [Key] - HKLM\SOFTWARE\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678} Deleted: [Key] - HKLM\SOFTWARE\{E6276374-DE18-4AA5-A365-9016A2F98A2D} Deleted: [Key] - HKLM\SOFTWARE\{G6276374-DEEE-4AAA-A355-9016A2F98A2D} Deleted: [Key] - HKLM\SOFTWARE\WinZiper Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484} Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10ECCE17-29B5-4880-A8F5-EAD298611484} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546} Deleted: [Key] - HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36} Deleted: [Key] - HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} Deleted: [Key] - HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL Deleted: [Key] - HKCU\SOFTWARE\Mozilla\Firefox\{EB52F1AB-3C2B-424F-9794-833C687025CF} Deleted: [Key] - HKLM\SOFTWARE\Mozilla\Firefox\{EB52F1AB-3C2B-424F-9794-833C687025CF} Deleted: [Key] - HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF} Deleted: [Key] - HKCU\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF} Deleted: [Key] - HKLM\SYSTEM\CurrentControlSet\Control\iSafeKrnlBoot Deleted: [Key] - HKLM\SOFTWARE\Conduit Deleted: [Key] - HKU\S-1-5-21-400598157-1297419982-2273124097-1000\Software\Conduit Deleted: [Key] - HKCU\Software\Conduit Deleted: [Key] - HKU\S-1-5-21-400598157-1297419982-2273124097-1000\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief. Deleted: [Key] - HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief. Deleted: [Key] - HKLM\SOFTWARE\Reimage Deleted: [Key] - HKU\S-1-5-21-400598157-1297419982-2273124097-1000\Software\Reimage Deleted: [Key] - HKCU\Software\Reimage Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Reimage.exe Deleted: [Key] - HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF} Deleted: [Key] - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application Deleted: [Key] - HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application Deleted: [Key] - HKLM\SOFTWARE\yessearchesSoftware Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.001 Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.7z Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.arj Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.bz2 Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.bzip2 Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.cab Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.cpio Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.deb Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.dmg Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.fat Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.gz Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.gzip Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.hfs Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.iso Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.lha Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.lzh Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.lzma Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.ntfs Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.rar Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.rpm Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.squashfs Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.swm Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.tar Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.taz Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.tbz Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.tbz2 Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.tgz Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.tpz Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.txz Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.vhd Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.wim Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.xar Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.xz Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.z Deleted: [Key] - HKLM\SOFTWARE\Classes\WinZippers.zip ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries deleted. ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries deleted. ************************* ::Tracing keys deleted ::Winsock settings cleared ::Additional Actions: 0 ************************* C:/AdwCleaner/AdwCleaner[S0].txt - [9248 B] - [2017/10/25 21:19:57] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt ##########