# AdwCleaner 7.0.3.1 - Logfile created on Sun Oct 01 10:45:28 2017 # Updated on 2017/29/09 by Malwarebytes # Running on Windows 10 Home (X64) # Mode: clean # Support: https://www.malwarebytes.com/support ***** [ Services ] ***** No malicious services deleted. ***** [ Folders ] ***** Deleted: C:\Users\PC Thuis\AppData\Roaming\OpenCandy ***** [ Files ] ***** No malicious files deleted. ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** Cleaned: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk[https:\\launchpage.org\?uid=oTlKGKjdhx1sXu9Wsip3czrMKNqqYvnJSMmTuHfAYtKVQrInMHKMqvhuwC9c%2FiIXNy8%3D] Cleaned: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk[https:\\launchpage.org\?uid=oTlKGKjdhx1sXu9Wsip3czrMKNqqYvnJSMmTuHfAYtKVQrInMHKMqvhuwC9c%2FiIXNy8%3D] Cleaned: C:\Users\Default\Desktop\Google Chrome.lnk[https:\\launchpage.org\?uid=oTlKGKjdhx1sXu9Wsip3czrMKNqqYvnJSMmTuHfAYtKVQrInMHKMqvhuwC9c%2FiIXNy8%3D] Cleaned: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk[https:\\launchpage.org\?uid=oTlKGKjdhx1sXu9Wsip3czrMKNqqYvnJSMmTuHfAYtKVQrInMHKMqvhuwC9c%2FiIXNy8%3D] Cleaned: C:\Users\Default User\Desktop\Google Chrome.lnk[https:\\launchpage.org\?uid=oTlKGKjdhx1sXu9Wsip3czrMKNqqYvnJSMmTuHfAYtKVQrInMHKMqvhuwC9c%2FiIXNy8%3D] Cleaned: C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk[https:\\launchpage.org\?uid=oTlKGKjdhx1sXu9Wsip3czrMKNqqYvnJSMmTuHfAYtKVQrInMHKMqvhuwC9c%2FiIXNy8%3D] Cleaned: C:\Users\Public\Desktop\Mozilla Firefox.lnk[https:\\launchpage.org\?uid=oTlKGKjdhx1sXu9Wsip3czrMKNqqYvnJSMmTuHfAYtKVQrInMHKMqvhuwC9c%2FiIXNy8%3D] Cleaned: C:\Users\Public\Desktop\Opera.lnk[https:\\launchpage.org\?uid=oTlKGKjdhx1sXu9Wsip3czrMKNqqYvnJSMmTuHfAYtKVQrInMHKMqvhuwC9c%2FiIXNy8%3D] ***** [ Tasks ] ***** No malicious tasks deleted. ***** [ Registry ] ***** Deleted: [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mystartab.com Deleted: [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\qq.com Deleted: [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\wj.qq.com Deleted: [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\qq.com Deleted: [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\wj.qq.com Deleted: [Key] - HKU\S-1-5-21-3609289998-3099838961-1928800127-1001\Software\APN PIP Deleted: [Key] - HKCU\Software\APN PIP Deleted: [Key] - HKU\S-1-5-21-3609289998-3099838961-1928800127-1001\Software\csastats Deleted: [Key] - HKCU\Software\csastats Deleted: [Key] - HKU\S-1-5-21-3609289998-3099838961-1928800127-1001\Software\PRODUCTSETUP Deleted: [Key] - HKCU\Software\PRODUCTSETUP Deleted: [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com Deleted: [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com Deleted: [Key] - HKU\S-1-5-21-3609289998-3099838961-1928800127-1001\Software\Norassie Deleted: [Key] - HKCU\Software\Norassie ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries deleted. ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries deleted. ************************* ::Tracing keys deleted ::Winsock settings cleared ::Additional Actions: 0 ************************* C:/AdwCleaner/AdwCleaner[S0].txt - [4271 B] - [2017/10/1 10:43:26] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt ##########