# AdwCleaner 7.0.2.1 - Logfile created on Wed Nov 15 00:15:24 2017 # Updated on 2017/29/08 by Malwarebytes # Running on Windows 10 Home (X64) # Mode: clean # Support: https://www.malwarebytes.com/support ***** [ Services ] ***** Deleted: AVG Security Toolbar Service ***** [ Folders ] ***** Deleted: C:\Program Files (x86)\AVG\AVG10\Toolbar Deleted: C:\Users\Craig DiPiano\AppData\LocalLow\Yahoo! Companion Deleted: C:\Windows\System32\config\systemprofile\AppData\LocalLow\AVG Secure Search Deleted: C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\AVG Secure Search Deleted: C:\Users\Guest\AppData\LocalLow\AVG Secure Search Deleted: C:\ProgramData\AVG Security Toolbar Deleted: C:\ProgramData\Application Data\AVG Security Toolbar Deleted: C:\Program Files (x86)\AVG Security Toolbar Deleted: C:\Users\All Users\AVG Security Toolbar Deleted: C:\Users\Craig DiPiano\AppData\Local\AVG Security Toolbar Deleted: C:\Users\Craig DiPiano\AppData\LocalLow\AVG Security Toolbar Deleted: C:\Program Files (x86)\Yahoo!\Companion Deleted: C:\Users\Craig DiPiano\AppData\LocalLow\Yahoo!\Companion Deleted: C:\Users\Craig DiPiano\AppData\Roaming\Yahoo!\Companion Deleted: C:\Users\Craig DiPiano\AppData\LocalLow\iac Deleted: C:\ProgramData\Avg_Update_0814tb ***** [ Files ] ***** Deleted: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay.lnk ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** Deleted: IHSelfDeleteTASK Deleted: IHUninstallTrackingTASK Deleted: ihuninstalltrackingtask Deleted: AVG-Secure-Search-Update_JUNE2013_TB_rmv Deleted: AVG-Secure-Search-Update_JUNE2013_TB_rmv ***** [ Registry ] ***** Deleted: [Value] - HKCU\Software\Microsoft\Internet Explorer\SearchScopes|URL Deleted: [Value] - HKCU\Software\Microsoft\Internet Explorer\SearchScopes|SuggestionsURL_JSON Deleted: [Value] - HKU\S-1-5-21-2794434498-725242176-3457425843-1001\Software\Microsoft\Internet Explorer\SearchScopes|URL Deleted: [Value] - HKU\S-1-5-21-2794434498-725242176-3457425843-1001\Software\Microsoft\Internet Explorer\SearchScopes|SuggestionsURL_JSON Deleted: [Value] - HKU\S-1-5-21-2794434498-725242176-3457425843-1001\Software\Microsoft\Internet Explorer\SearchScopes|URL Deleted: [Value] - HKU\S-1-5-21-2794434498-725242176-3457425843-1001\Software\Microsoft\Internet Explorer\SearchScopes|SuggestionsURL_JSON Deleted: [Key] - HKU\.DEFAULT\Software\AVG Secure Search Deleted: [Key] - HKU\S-1-5-21-2794434498-725242176-3457425843-501\Software\AVG Secure Search Deleted: [Key] - HKU\S-1-5-18\Software\AVG Secure Search Deleted: [Key] - HKU\.DEFAULT\Software\AppDataLow\Software\AVG Security Toolbar Deleted: [Key] - HKU\S-1-5-21-2794434498-725242176-3457425843-1001\Software\AppDataLow\Software\AVG Security Toolbar Deleted: [Key] - HKU\S-1-5-21-2794434498-725242176-3457425843-501\Software\AppDataLow\Software\AVG Security Toolbar Deleted: [Key] - HKU\S-1-5-18\Software\AppDataLow\Software\AVG Security Toolbar Deleted: [Key] - HKCU\Software\AppDataLow\Software\AVG Security Toolbar Deleted: [Key] - HKU\S-1-5-21-2794434498-725242176-3457425843-1001\Software\PCCleaners Deleted: [Key] - HKCU\Software\PCCleaners Deleted: [Key] - HKLM\SOFTWARE\Yahoo\Companion Deleted: [Key] - HKU\S-1-5-21-2794434498-725242176-3457425843-1001\Software\Yahoo\Companion Deleted: [Key] - HKU\S-1-5-21-2794434498-725242176-3457425843-1001\Software\AppDataLow\Software\Yahoo\Companion Deleted: [Key] - HKCU\Software\Yahoo\Companion Deleted: [Key] - HKCU\Software\AppDataLow\Software\Yahoo\Companion Deleted: [Key] - HKU\S-1-5-21-2794434498-725242176-3457425843-1001\Software\Yahoo\YFriendsBar Deleted: [Key] - HKCU\Software\Yahoo\YFriendsBar Deleted: [Key] - HKU\S-1-5-21-2794434498-725242176-3457425843-1001\Software\SoftSuma Deleted: [Key] - HKCU\Software\SoftSuma Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670} Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670} Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{2FF49ED5-A3EF-410B-918E-97DECEB5996D} Deleted: [Key] - HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD} Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237} Deleted: [Key] - HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3} Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{CCC7A320-B3CA-4199-B1A6-9F516DD69829} Deleted: [Value] - HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{CCC7A320-B3CA-4199-B1A6-9F516DD69829} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Deleted: [Value] - HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{0C1284BA-4F3A-41C6-94B5-77446F5948A9} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{D879A501-50A7-BEFC-A4C5-32DC6E0CB208} Deleted: [Key] - HKLM\SOFTWARE\Classes\TypeLib\{003028C2-EA1C-4676-A316-B5CB50917002} Deleted: [Key] - HKLM\SOFTWARE\Classes\TypeLib\{61A2027D-B837-4080-A925-6E30E10DEF32} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{1E57256D-9F39-4267-AB39-D7813D644C5A} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{31371420-098D-4C0E-A11E-EBEC2305DD01} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{9F9C4C5C-2BA8-4E00-A697-9F710BB1026B} Deleted: [Key] - HKLM\SOFTWARE\Classes\AppID\{1CAE874F-F5C7-4BCC-BA46-9AD26DF35B93} Deleted: [Key] - HKLM\SOFTWARE\Classes\AppID\{EFC0651C-B6D7-49CD-A6E0-B1CE9AB5FE46} Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EFC0651C-B6D7-49CD-A6E0-B1CE9AB5FE46} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{12D3E096-0FDF-42CC-8F44-04944F9C1648} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{22389F39-2CF4-47C4-B8B2-273BB16BF70C} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{23E3CEB3-D63A-433E-A5D0-4DB1C501B915} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{26A3152F-CF87-4C5B-8093-4D4B9EC084EB} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{29E3319C-4B3C-479F-8692-BDD2CA30BEDD} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{367BD1CD-74A3-451F-B1A4-6A2DE4129A2D} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{49F018EE-F362-4B5B-8EC8-BCF9246ABF21} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{63B73044-FC1A-4FE1-991B-FDBD4CDAA868} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{7207E52B-821E-4C05-A8D6-2965B2BE77CF} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{863FCF5D-DC39-4DA9-AF32-CB0025990EEE} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{B09E015A-4D4E-4F8D-A436-95E19140947D} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{B1E712C4-03AA-495F-B0F5-0F057E126E2A} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{D13DC65C-C77B-4986-9078-DEA3D34C71BB} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{F56ACA29-1C99-40F1-AC64-2E44C4F6BC71} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{63EDCDD3-8AFC-4358-A90F-F7FB8F5C64FF} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{BD5843ED-13C4-4EFF-ACE9-56CEE22BC087} Deleted: [Key] - HKLM\SOFTWARE\Classes\AppID\{7375D127-3955-4654-8E7D-1949A7A9C902} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{371AD4A5-1520-4AA2-A8A4-F9AD3BAC6957} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{7F124846-5453-4BB8-A41D-E11481FFC9DF} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{8FD65019-BF09-45DA-AD81-E95AE911F1FD} Deleted: [Key] - HKLM\SOFTWARE\Classes\TypeLib\{F6C2BABA-9E4C-425F-9AEC-24AB8F2B640D} Deleted: [Key] - HKLM\SOFTWARE\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{3C16E079-E4C7-493C-BE9F-E0F2BB0B7430} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{7DB8B625-DBF0-4491-B544-5A06F7B17BB4} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{8E74A0AE-F0ED-47ED-A940-A8E99687646B} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{9DE77B51-89F6-468E-9402-16050382E950} Deleted: [Key] - HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE Deleted: [Key] - HKLM\SOFTWARE\Classes\AppID\yt.DLL Deleted: [Key] - HKLM\SOFTWARE\Classes\AppID\ytbbroker.EXE Deleted: [Key] - HKU\.DEFAULT\Software\Auslogics Deleted: [Key] - HKU\S-1-5-18\Software\Auslogics Deleted: [Key] - HKLM\SOFTWARE\Classes\Applications\iMeshV10[1].exe Deleted: [Key] - HKLM\SOFTWARE\Classes\Applications\iMesh_V10_en_Setup.exe ***** [ Firefox (and derivatives) ] ***** SearchProvider deleted: search.conduit.com - Conduit Search ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries deleted. ************************* ::Tracing keys deleted ::Winsock settings cleared ::Additional Actions: 0 ************************* C:/AdwCleaner/AdwCleaner[S0].txt - [11472 B] - [2017/11/15 0:14:7] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt ##########