Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- # -------------------------------
- # Malwarebytes AdwCleaner 7.1.0.0
- # -------------------------------
- # Build: 04-12-2018
- # Database: 2018-04-22.1
- # Support: https://www.malwarebytes.com/support
- #
- # -------------------------------
- # Mode: Clean
- # -------------------------------
- # Start: 04-23-2018
- # Duration: 00:01:14
- # OS: Windows 7 Ultimate
- # Cleaned: 70
- # Failed: 0
- ***** [ Services ] *****
- No malicious services cleaned.
- ***** [ Folders ] *****
- Deleted C:\ProgramData\IObit\Advanced SystemCare
- Deleted C:\Program Files\Common Files\IObit\Advanced SystemCare
- Deleted C:\Windows\System32\config\systemprofile\AppData\Roaming\IObit\Advanced SystemCare
- Deleted C:\Users\user\AppData\LocalLow\IObit\Advanced SystemCare
- Deleted C:\Users\Guest\AppData\Roaming\IObit\Advanced SystemCare
- Deleted C:\Users\user\AppData\Roaming\IObit\Advanced SystemCare
- Deleted C:\Users\user\AppData\Roaming\DRPSu
- Deleted C:\Users\user\AppData\Roaming\DriverPack Notifier
- Deleted C:\ProgramData\IObit\ASCDownloader
- Deleted C:\Program Files\UCBrowser
- Deleted C:\Windows\System32\config\systemprofile\AppData\Local\UCBrowser
- Deleted C:\Users\Guest\AppData\Local\UCBrowser
- Deleted C:\Users\user\AppData\Local\UCBrowser
- Deleted C:\ProgramData\apn
- ***** [ Files ] *****
- Deleted C:\Windows\System32\REGISTRYDEFRAGBOOTTIME.EXE
- Deleted C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\sqhnpmpi.default\invalidprefs.js
- Deleted C:\END
- ***** [ DLL ] *****
- No malicious DLLs cleaned.
- ***** [ WMI ] *****
- No malicious WMI cleaned.
- ***** [ Shortcuts ] *****
- No malicious shortcuts cleaned.
- ***** [ Tasks ] *****
- Deleted C:\Windows\Tasks\UCBrowserUpdaterCore.job
- Deleted C:\Windows\System32\Tasks\UCBrowserUpdaterCore
- ***** [ Registry ] *****
- Deleted HKLM\SOFTWARE\Classes\UCHTML
- Deleted HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{41564952-412D-5637-00A7-7A786E7484D7}
- Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{41564952-412D-5637-00A7-7A786E7484D7}
- Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{41564952-412D-5637-00A7-7A786E7484D7}
- Deleted HKLM\Software\IObit\RealTimeProtector
- Deleted HKCU\Software\IObit\Advanced SystemCare
- Deleted HKLM\Software\IObit\Advanced SystemCare
- Deleted HKLM\Software\IOBIT\ASC
- Deleted HKLM\Software\Classes\TypeLib\{60AD0991-ECD4-49DC-B170-8B7E7C60F51B}
- Deleted HKLM\Software\Classes\Interface\{BA935377-E17C-4475-B1BF-DE3110613A99}
- Deleted HKCU\Software\drpsu
- Deleted HKLM\Software\drpsu
- Deleted HKCU\Software\PIP
- Deleted HKLM\Software\b1.org
- Deleted HKCU\Software\APN PIP
- Deleted HKLM\Software\SUPDP
- Deleted HKLM\SOFTWARE\Classes\.xhtml\OpenWithProgids|UCHTML.AssocFile.XHTML
- Deleted HKLM\SOFTWARE\Classes\.xht\OpenWithProgids|UCHTML.AssocFile.XHT
- Deleted HKLM\SOFTWARE\Classes\.webp\OpenWithProgids|UCHTML.AssocFile.WEBP
- Deleted HKLM\SOFTWARE\Classes\.shtml\OpenWithProgids|UCHTML.AssocFile.SHTML
- Deleted HKLM\SOFTWARE\Classes\.shtm\OpenWithProgids|UCHTML.AssocFile.SHTM
- Deleted HKLM\SOFTWARE\Classes\.mht\OpenWithProgids|UCHTML.AssocFile.MHT
- Deleted HKLM\SOFTWARE\Classes\.html\OpenWithProgids|UCHTML.AssocFile.HTML
- Deleted HKLM\SOFTWARE\Classes\.htm\OpenWithProgids|UCHTML.AssocFile.HTM
- Deleted HKCU\SOFTWARE\Classes\.xhtml\OpenWithProgids|UCHTML.AssocFile.XHTML
- Deleted HKCU\SOFTWARE\Classes\.xht\OpenWithProgids|UCHTML.AssocFile.XHT
- Deleted HKCU\SOFTWARE\Classes\.webp\OpenWithProgids|UCHTML.AssocFile.WEBP
- Deleted HKCU\SOFTWARE\Classes\.shtml\OpenWithProgids|UCHTML.AssocFile.SHTML
- Deleted HKCU\SOFTWARE\Classes\.shtm\OpenWithProgids|UCHTML.AssocFile.SHTM
- Deleted HKCU\SOFTWARE\Classes\.mht\OpenWithProgids|UCHTML.AssocFile.MHT
- Deleted HKCU\SOFTWARE\Classes\.html\OpenWithProgids|UCHTML.AssocFile.HTML
- Deleted HKCU\SOFTWARE\Classes\.htm\OpenWithProgids|UCHTML.AssocFile.HTM
- Deleted HKCU\SOFTWARE\Classes\.crx\OpenWithProgids|UCHTML.AssocFile.CRX
- Deleted HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\UCBrowser.exe
- Deleted HKLM\SOFTWARE\Microsoft\MediaPlayer\ShimInclusionList\UCBrowser.exe
- Deleted HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\UCBrowser.exe
- Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UCBrowserUpdaterCore
- Deleted HKLM\Software\Microsoft\Shared Tools\MSConfig\services\AdvancedSystemCareService10
- Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{EBF7FA22-4C57-4F95-B8D1-289B4E3C9A1D}C:\users\user\appdata\local\ucbrowser\user data_i18n\thunder\1.0.0.0\download\minithunderplatform.exe
- Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{B06F90D7-31A8-47D3-87F7-3CFFF1EDAC60}C:\users\user\appdata\local\ucbrowser\user data_i18n\thunder\1.0.0.0\download\minithunderplatform.exe
- Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{7C76DC3B-E87F-4563-9985-C6CC40265A20}C:\users\user\appdata\local\ucbrowser\user data_i18n\thunder\1.0.0.0\download\minithunderplatform.exe
- Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{7F71F50A-784B-4C41-AC7F-06443EC1E808}C:\users\user\appdata\local\ucbrowser\user data_i18n\thunder\1.0.0.0\download\minithunderplatform.exe
- Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{4C6ECE53-841B-43A8-AB89-CA47CC86BB6E}C:\program files\ucbrowser\application\downloader\download\minithunderplatform.exe
- Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{C3238BD8-78D6-425E-95E1-2B4CF46C0D37}C:\program files\ucbrowser\application\downloader\download\minithunderplatform.exe
- Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{882858E3-9EC9-48A6-9898-073289D0A867}
- ***** [ Chromium (and derivatives) ] *****
- Deleted User-Agent Switcher for Chrome
- ***** [ Chromium URLs ] *****
- Deleted Search the web (Babylon)
- Deleted Search the web (Babylon)
- Deleted webssearches
- Deleted webssearches
- Deleted http://id.uc123.com/
- ***** [ Firefox (and derivatives) ] *****
- No malicious Firefox entries cleaned.
- ***** [ Firefox URLs ] *****
- No malicious Firefox URLs cleaned.
- *************************
- [+] Delete Tracing Keys
- [+] Reset Winsock
- *************************
- ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement