# AdwCleaner 7.0.2.1 - Logfile created on Sat Sep 23 13:01:16 2017 # Updated on 2017/29/08 by Malwarebytes # Database: 09-20-2017.1 # Running on Windows 7 Ultimate (X64) # Mode: scan # Support: https://www.malwarebytes.com/support ***** [ Services ] ***** No malicious services found. ***** [ Folders ] ***** PUP.Optional.Legacy, C:\Users\Bartek\AppData\Local\DriverToolkit PUP.Optional.Legacy, C:\Users\Bartek\AppData\Roaming\eCyber PUP.Optional.WeatherChicken, C:\Program Files (x86)\WeatherChickn ***** [ Files ] ***** PUP.Optional.Legacy, C:\END PUP.Optional.Goobzo.BITSRST, C:\Windows\SysNative\bi3.exe ***** [ DLL ] ***** No malicious DLLs found. ***** [ WMI ] ***** No malicious WMI found. ***** [ Shortcuts ] ***** PUP.Optional.Legacy, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk - https:\\launchpage.org\?uid=oTlKBKjchxocXe%2FWrUZCG7qKYIrY3ndPJFlyD8TbELWDkEafc%2B65xTmhEN3Q8aOs1w%3D%3D PUP.Optional.Legacy, C:\Users\Bartek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - https:\\launchpage.org\?uid=oTlKBKjchxocXe%2FWrUZCG7qKYIrY3ndPJFlyD8TbELWDkEafc%2B65xTmhEN3Q8aOs1w%3D%3D PUP.Optional.Legacy, C:\Users\Bartek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - https:\\launchpage.org\?uid=oTlKBKjchxocXe%2FWrUZCG7qKYIrY3ndPJFlyD8TbELWDkEafc%2B65xTmhEN3Q8aOs1w%3D%3D ***** [ Tasks ] ***** PUP.Optional.Legacy, DRIVERTOOLKIT AUTORUN ***** [ Registry ] ***** Adware.Elex, [Key] - HKLM\SOFTWARE\WinSaberSvc Adware.Elex, [Key] - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application Adware.Elex, [Key] - HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application PUP.Optional.Legacy, [Key] - HKU\S-1-5-21-360975752-3786565279-1083807947-1001\Software\DriverToolkit PUP.Optional.Legacy, [Key] - HKCU\Software\DriverToolkit PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\{E6276374-DE18-4AA5-A365-9016A2F98A2D} PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\WinZiper PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\ompndb PUP.Optional.Legacy, [Key] - HKU\.DEFAULT\Software\ompndb PUP.Optional.Legacy, [Key] - HKU\S-1-5-18\Software\ompndb PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\InterHop PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\mylucky123Software PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\amule-custom PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\xvb`lj PUP.Optional.Legacy, [Key] - HKU\.DEFAULT\Software\xvb`lj PUP.Optional.Legacy, [Key] - HKU\S-1-5-18\Software\xvb`lj PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F39E5917C417B4041A46F88010121C6E PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\Installer\Features\F39E5917C417B4041A46F88010121C6E PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\Installer\Products\F39E5917C417B4041A46F88010121C6E PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\WinZipper PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\CurrentControlSet\Control\Class\{0C95ABFE-4FB6-49DB-B22F-0E1F5FC4BEEC} PUP.Optional.Legacy, [Key] - HKLM\SYSTEM\CurrentControlSet\Control\Class\{EEEFACB3-729F-4484-B66D-E7A7917BBFC1} PUP.Optional.BrowserAir, [Key] - HKLM\SOFTWARE\MICROSOFT\MEDIAPLAYER\SHIMINCLUSIONLIST\BrowserairExec.exe PUP.Optional.Elex, [Key] - HKLM\SOFTWARE\UvConverter PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.001 PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.7z PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.arj PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.bz2 PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.bzip2 PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.cab PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.cpio PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.deb PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.dmg PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.fat PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.gz PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.gzip PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.hfs PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.iso PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.lha PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.lzh PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.lzma PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.ntfs PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.rar PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.rpm PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.squashfs PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.swm PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.tar PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.taz PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.tbz PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.tbz2 PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.tgz PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.tpz PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.txz PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.vhd PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.wim PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.xar PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.xz PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.z PUP.Adware.Heuristic, [Key] - HKLM\SOFTWARE\Classes\WinZippers.zip ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries. ***** [ Chromium (and derivatives) ] ***** PUP.Optional.Legacy, Startpage found: search.mpc.am PUP.Optional.Legacy, Startpage found: http://www.nuesearch.com/?type=hp&ts=1473878928&z=f9f952440e59a61b3e327dbg3zam8cfbbmabctfo6w&from=qks0914&uid=HitachiXHTS543232L9A300_090930FB8400CEJ4270AX PUP.Optional.Legacy, Startpage found: http://www.mylucky123.com/?type=hp&ts=1477333215&z=246edfc7b45dca66060252ag4z5m8m9c2c8c3o4g7c&from=interhop1024&uid=HitachiXHTS543232L9A300_090930FB8400CEJ4270AX PUP.Optional.Legacy, Startpage found: search.mpc.am PUP.Optional.Legacy, Startpage found: http://www.nuesearch.com/?type=hp&ts=1473878928&z=f9f952440e59a61b3e327dbg3zam8cfbbmabctfo6w&from=qks0914&uid=HitachiXHTS543232L9A300_090930FB8400CEJ4270AX PUP.Optional.Legacy, Startpage found: http://www.mylucky123.com/?type=hp&ts=1477333215&z=246edfc7b45dca66060252ag4z5m8m9c2c8c3o4g7c&from=interhop1024&uid=HitachiXHTS543232L9A300_090930FB8400CEJ4270AX /!\ Please Reset the Chrome Synchronization before cleaning the Chrome Preferences: https://support.google.com/chrome/answer/3097271 ************************* ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt ##########