# ------------------------------- # Malwarebytes AdwCleaner 7.1.1.0 # ------------------------------- # Build: 04-27-2018 # Database: 2018-05-22.1 # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 05-22-2018 # Duration: 00:00:04 # OS: Windows 7 Ultimate # Cleaned: 25 # Failed: 3 ***** [ Services ] ***** No malicious services cleaned. ***** [ Folders ] ***** Deleted C:\Users\Bartek\AppData\Local\DriverToolkit Deleted C:\Users\Bartek\AppData\Roaming\WidModule ***** [ Files ] ***** Deleted C:\Users\Bartek\Desktop\Driver Updater.lnk Deleted C:\Users\Bartek\appdata\local\installationconfiguration.xml ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** Deleted C:\Users\Bartek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk ***** [ Tasks ] ***** No malicious tasks cleaned. ***** [ Registry ] ***** Deleted HKLM\Software\Wow6432Node\mtQuoteex Deleted HKLM\Software\Wow6432Node\MICROSOFT\WINDOWS NT\CURRENTVERSION\SILENTPROCESSEXIT\Quoteex.exe Deleted HKU\S-1-5-18\SOFTWARE\F1B1949C5260E2D0B1E9632B2F73D816 Deleted HKU\S-1-5-18\SOFTWARE\847FB9232CE0C75EE407A5A925C34299 Deleted HKCU\SOFTWARE\F1B1949C5260E2D0B1E9632B2F73D816 Deleted HKU\.DEFAULT\SOFTWARE\F1B1949C5260E2D0B1E9632B2F73D816 Deleted HKU\.DEFAULT\SOFTWARE\847FB9232CE0C75EE407A5A925C34299 Deleted HKLM\Software\Wow6432Node\F1B1949C5260E2D0B1E9632B2F73D816 Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\CloudNet Deleted HKCU\Software\EpicNet Inc. Deleted HKLM\Software\Wow6432Node\xvb`lj Deleted HKLM\Software\Wow6432Node\ompndb Deleted HKCU\Software\DriverToolkit Not Deleted HKLM\SYSTEM\CurrentControlSet\Control\Class\{EEEFACB3-729F-4484-B66D-E7A7917BBFC1} Not Deleted HKLM\SYSTEM\CurrentControlSet\Control\Class\{0C95ABFE-4FB6-49DB-B22F-0E1F5FC4BEEC} Deleted HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Quoteex.exe Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Quoteex.exe Deleted HKCU\Environment|SNP Deleted HKCU\Environment|SNF Deleted HKCU\Software\WidModule ***** [ Chromium (and derivatives) ] ***** Deleted Bazz Search SafeFinder ***** [ Chromium URLs ] ***** No malicious Chromium URLs cleaned. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** Not Deleted suggestqueries.google.com Deleted C:\ProgramData\Quoteexs\ff.HP ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########