# AdwCleaner 7.0.2.1 - Logfile created on Fri Sep 15 12:33:32 2017 # Updated on 2017/29/08 by Malwarebytes # Database: 09-15-2017.1 # Running on Windows 10 Home (X64) # Mode: scan # Support: https://www.malwarebytes.com/support ***** [ Services ] ***** No malicious services found. ***** [ Folders ] ***** Adware.Elex, C:\Program Files (x86)\Elex-tech PUP.Optional.Legacy, C:\Users\katar\AppData\Roaming\GoldenGate PUP.Optional.Legacy, C:\ProgramData\Tencent PUP.Optional.Legacy, C:\Users\All Users\Tencent PUP.Optional.Legacy, C:\ProgramData\sozy PUP.Optional.Legacy, C:\Users\All Users\sozy PUP.Optional.Booking, C:\Users\katar\AppData\Roaming\Booking_helper PUP.Optional.Elex, C:\ProgramData\UvConverter PUP.Optional.Elex, C:\Users\All Users\UvConverter Trojan.Agent, C:\Users\katar\AppData\Roaming\System Monitor ***** [ Files ] ***** PUP.Optional.Legacy, C:\Users\Public\Documents\temp.dat PUP.Optional.Legacy, C:\Users\katar\Downloads\ReimageRepair.exe PUP.Optional.Legacy, C:\Windows\SysNative\log\iSafeKrnlCall.log PUP.Optional.Reimage, C:\Windows\Reimage.ini PUP.Optional.SearchAlgo, C:\ProgramData\_lg.3sap PUP.Optional.SearchAlgo, C:\Users\All Users\_lg.3sap ***** [ DLL ] ***** No malicious DLLs found. ***** [ WMI ] ***** No malicious WMI found. ***** [ Shortcuts ] ***** No malicious shortcuts found. ***** [ Tasks ] ***** No malicious tasks found. ***** [ Registry ] ***** Adware.Elex, [Key] - HKLM\SOFTWARE\Elex-tech PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\pcpurifier.co PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pcpurifier.co PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.pcpurifier.co PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\foxi69.tlscdn.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\pcpurifier.co PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\tlscdn.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.pcpurifier.co PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\foxi69.tlscdn.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\pcpurifier.co PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\tlscdn.com PUP.Optional.Legacy, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.pcpurifier.co PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-1769923494-3148577438-2251075067-1001\Software\GoldenGate PUP.Optional.Legacy, [Key] - HKCU\Software\GoldenGate PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-1769923494-3148577438-2251075067-1001\Software\dobreprogramy PUP.Optional.Legacy, [Key] - HKCU\Software\dobreprogramy PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\PC PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-1769923494-3148577438-2251075067-1001\Software\PC PUP.Optional.Legacy, [Key] - HKCU\Software\PC PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-1769923494-3148577438-2251075067-1001\Software\1Q1F1S1C1P1E1C1F1N1C1T1H2UtF1E1I PUP.Optional.Legacy, [Key] - HKCU\Software\1Q1F1S1C1P1E1C1F1N1C1T1H2UtF1E1I PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\mylucky123Software PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146} PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552} PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270} PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications\iSafeSvc2.exe PUP.Optional.BitCoinMiner, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\gplyra PUP.Optional.WinRepairPro, [Key] - HKU\S-1-5-21-1769923494-3148577438-2251075067-1001\Software\win PUP.Optional.WinRepairPro, [Key] - HKCU\Software\win PUP.Optional.ByteFence, [Key] - HKU\.DEFAULT\Software\ByteFence PUP.Optional.ByteFence, [Key] - HKU\S-1-5-18\Software\ByteFence PUP.Optional.CornerSunshine, [Key] - HKLM\SOFTWARE\CLIENTS\Corner Sunshine PUP.Optional.CornerSunshine, [Key] - HKLM\SOFTWARE\Corner Sunshine PUP.Optional.CornerSunshine, [Key] - HKU\S-1-5-21-1769923494-3148577438-2251075067-1001\Software\Corner Sunshine PUP.Optional.CornerSunshine, [Key] - HKCU\Software\Corner Sunshine PUP.Optional.PCPurifier, [Key] - HKLM\SOFTWARE\PC\Purifier PUP.Optional.PCPurifier, [Key] - HKU\S-1-5-21-1769923494-3148577438-2251075067-1001\Software\PC\Purifier PUP.Optional.PCPurifier, [Key] - HKCU\Software\PC\Purifier PUP.Optional.SofTonicAssistant, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\en.softonic.com PUP.Optional.SofTonicAssistant, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\microsoft-word.softonic.pl PUP.Optional.SofTonicAssistant, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\softonic.com PUP.Optional.SofTonicAssistant, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\softonic.pl PUP.Optional.SofTonicAssistant, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.softonic.pl PUP.Optional.SofTonicAssistant, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\en.softonic.com PUP.Optional.SofTonicAssistant, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\microsoft-word.softonic.pl PUP.Optional.SofTonicAssistant, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\softonic.com PUP.Optional.SofTonicAssistant, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\softonic.pl PUP.Optional.SofTonicAssistant, [Key] - HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.softonic.pl PUP.Optional.Elex, [Key] - HKLM\SOFTWARE\UvConverter Trojan.Agent, [Key] - HKLM\SOFTWARE\System Monitor Trojan.Agent, [Key] - HKU\S-1-5-21-1769923494-3148577438-2251075067-1001\Software\System Monitor Trojan.Agent, [Key] - HKCU\Software\System Monitor PUP.Optional.Jawego, [Key] - HKLM\SOFTWARE\Jawego PUP.Optional.Jawego, [Key] - HKU\S-1-5-21-1769923494-3148577438-2251075067-1001\Software\Jawego PUP.Optional.Jawego, [Key] - HKCU\Software\Jawego PUP.Optional.Jawego, [Key] - HKLM\SOFTWARE\PC\Purifier PUP.Optional.Jawego, [Key] - HKU\S-1-5-21-1769923494-3148577438-2251075067-1001\Software\PC\Purifier PUP.Optional.Jawego, [Key] - HKCU\Software\PC\Purifier PUP.Optional.InstallCore, [Key] - HKU\S-1-5-21-1769923494-3148577438-2251075067-1001\Software\csastats PUP.Optional.InstallCore, [Key] - HKCU\Software\csastats PUP.Optional.EoRezo, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WarThunder PUP.Optional.ProductSetup.A, [Key] - HKU\S-1-5-21-1769923494-3148577438-2251075067-1001\Software\PRODUCTSETUP PUP.Optional.ProductSetup.A, [Key] - HKCU\Software\PRODUCTSETUP PUP.Optional.SlimCleanerPlus, [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com PUP.Optional.SlimCleanerPlus, [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries. ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries. ************************* ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt ##########