# ------------------------------- # Malwarebytes AdwCleaner 7.2.4.0 # ------------------------------- # Build: 09-25-2018 # Database: 2018-10-23.1 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 10-30-2018 # Duration: 00:00:03 # OS: Windows 7 Home Premium # Cleaned: 42 # Failed: 1 ***** [ Services ] ***** No malicious services cleaned. ***** [ Folders ] ***** Deleted C:\ProgramData\fbonmbaokhdhlbnpmimlogpfbiddbcdo\lsdb.js Deleted C:\ProgramData\ENJOYYCOUPON Deleted C:\ProgramData\JONICOUPON Deleted C:\Program Files (x86)\Common Files\Speedbit Deleted C:\Users\Public\Documents\Speedbit Deleted C:\Users\User\Documents\DownVision ***** [ Files ] ***** Deleted C:\Users\User\AppData\LocalLow\Microsoft\Internet Explorer\Services\Search_ask.com.xml ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** No malicious tasks cleaned. ***** [ Registry ] ***** Deleted HKLM\SOFTWARE\Classes\Applications\iMesh_V10_en_Setup.exe Deleted HKLM\SOFTWARE\Classes\Applications\iMesh_setup.exe Deleted HKLM\SOFTWARE\Classes\Applications\iMeshV10.exe Deleted HKLM\Software\Wow6432Node\AdvertisingSupport Deleted HKLM\Software\Wow6432Node\Better-Surf Deleted HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-3297959012-1010364514-3447567965-1000\Software\Complitly Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run|ProductUpdater Deleted HKCU\Software\1Q1F1S1C1P1E1C1F1N1C1T1H2UtF1E1I Deleted HKCU\Software\dobreprogramy Deleted HKLM\Software\Wow6432Node\Better Surf Plus Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B5DB572D-EA87-D3B0-08F6-4D153EA6A783} Deleted HKU\S-1-5-18\Software\SpeedBit Deleted HKCU\Software\SpeedBit Deleted HKU\.DEFAULT\Software\SpeedBit Deleted HKLM\Software\Wow6432Node\Video Player Deleted HKLM\Software\Wow6432Node\VideoPlayerV3 Deleted HKU\S-1-5-18\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B} Deleted HKU\S-1-5-20\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B} Deleted HKU\S-1-5-19\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B} Deleted HKU\.DEFAULT\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B} Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Activities\Search\ask.com Not Deleted HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks|{BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{D879A501-50A7-BEFC-A4C5-32DC6E0CB208} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{82351441-9094-11D1-A24B-00A0C932C7DF} Deleted HKLM\Software\Wow6432Node\Classes\TypeLib\{82351433-9094-11D1-A24B-00A0C932C7DF} Deleted HKLM\Software\Classes\TypeLib\{82351433-9094-11D1-A24B-00A0C932C7DF} Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID|{EA34C851-D481-49F5-A356-3A8B0A8F3B7E} Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID|{EA34C851-D481-49F5-A356-3A8B0A8F3B7E} Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\WebCakeUpdaterService Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID|{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID|{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} Deleted HKU\S-1-5-18\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Deleted HKU\.DEFAULT\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Deleted HKLM\Software\Wow6432Node\Webexp Enhanced ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** Deleted klomnice.pl ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* AdwCleaner[S00].txt - [5310 octets] - [30/10/2018 21:27:39] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########