# AdwCleaner 7.0.8.0 - Logfile created on Wed Apr 11 22:37:32 2018 # Updated on 2018/08/02 by Malwarebytes # Running on Windows 7 Home Premium (X64) # Mode: clean # Support: https://www.malwarebytes.com/support ***** [ Services ] ***** No malicious services deleted. ***** [ Folders ] ***** Deleted: C:\Users\All Users\Documents\\dmp Deleted: C:\Users\Public\Documents\\dmp Deleted: C:\Users\pc\AppData\Roaming\acestream Deleted: C:\Users\pc\AppData\LocalLow\.acestream Deleted: C:\Users\pc\AppData\Roaming\.acestream Deleted: C:\_acestream_cache_ Deleted: C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ace Stream Media Deleted: C:\Windows\System32\config\systemprofile\AppData\LocalLow\avg web tuneup Deleted: C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\avg web tuneup Deleted: C:\Users\All Users\Documents\Downloaded Installers Deleted: C:\Users\Public\Documents\Downloaded Installers Deleted: C:\Users\pc\AppData\Local\slimware utilities inc Deleted: C:\Users\pc\AppData\Local\SlimWare Utilities Inc Deleted: C:\Users\pc\AppData\Roaming\\Mozilla\Firefox\Profiles\41A66E7E5EE1 Deleted: C:\ProgramData\Mail.Ru Deleted: C:\ProgramData\Application Data\Mail.Ru Deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Mail.Ru Deleted: C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Mail.Ru Deleted: C:\Users\All Users\Mail.Ru Deleted: C:\Users\pc\AppData\Local\Mail.Ru ***** [ Files ] ***** Deleted: C:\Users\pc\AppData\Roaming\\Installer.dat Deleted: C:\Windows\SysNative\drivers\swdumon.sys Deleted: C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\ycrtnd0d.default-1383131880884\searchplugins\avg-secure-search.xml ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** No malicious tasks deleted. ***** [ Registry ] ***** Deleted: [Key] - HKU\S-1-5-21-2351139496-3042340083-1055096574-1000\Software\AceStream Deleted: [Key] - HKU\S-1-5-21-2351139496-3042340083-1055096574-1000\Software\Microsoft\Windows\CurrentVersion\Uninstall\AceStream Deleted: [Key] - HKCU\Software\AceStream Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\AceStream Deleted: [Key] - HKU\S-1-5-21-2351139496-3042340083-1055096574-1000\Software\dobreprogramy Deleted: [Key] - HKCU\Software\dobreprogramy Deleted: [Key] - HKLM\SOFTWARE\{E6276374-DE18-4AA5-A365-9016A2F98A2D} Deleted: [Key] - HKLM\SOFTWARE\{G6276374-DEEE-4AAA-A355-9016A2F98A2D} Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{79690976-ED6E-403C-BBBA-F8928B5EDE17} Deleted: [Key] - HKLM\SOFTWARE\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications\iSafeSvc2.exe Deleted: [Key] - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.acelive Deleted: [Key] - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.acemedia Deleted: [Key] - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.acestream Deleted: [Key] - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tslive Deleted: [Key] - HKCU\SOFTWARE\Classes\Applications\ace_player.exe Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayCDAudioOnArrival Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayDVDAudioOnArrival Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayDVDMovieOnArrival Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayMusicFilesOnArrival Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlaySVCDMovieOnArrival Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayVCDMovieOnArrival Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACEStreamPlayVideoFilesOnArrival Deleted: [Key] - HKCU\Software\Classes\AudioCD\shell\PlayWithACEStream Deleted: [Key] - HKCU\Software\Classes\DVD\shell\PlayWithACEStream Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD|BackgroundHost64.exe Deleted: [Key] - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ielnksrch} Deleted: [Key] - HKLM\SOFTWARE\Classes\MIME\Database\Content Type\application\x-vnd.dpliveupdate.oneclickctrl.9 Deleted: [Key] - HKLM\SOFTWARE\Classes\MIME\Database\Content Type\application\x-vnd.dpliveupdate.update3webcontrol.3 Deleted: [Key] - HKCU\Software\Classes\Applications\ace_player.exe Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.acelive Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.acemedia Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.acestream Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tslive Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Quotenamron.exe Deleted: [Key] - HKLM\SYSTEM\CurrentControlSet\Control\iSafeKrnlBoot Deleted: [Key] - HKU\S-1-5-21-2351139496-3042340083-1055096574-1000\Software\win Deleted: [Key] - HKCU\Software\win Deleted: [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com Deleted: [Key] - HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com Deleted: [Key] - HKLM\SOFTWARE\SlimWare Utilities Inc Deleted: [Key] - HKU\S-1-5-21-2351139496-3042340083-1055096574-1000\Software\SlimWare Utilities Inc Deleted: [Key] - HKCU\Software\SlimWare Utilities Inc Deleted: [Key] - HKLM\SOFTWARE\SLIMWARE UTILITIES, INC. Deleted: [Key] - HKLM\SOFTWARE\Mail.Ru Deleted: [Key] - HKU\S-1-5-21-2351139496-3042340083-1055096574-1000\Software\Mail.Ru Deleted: [Key] - HKU\S-1-5-21-2351139496-3042340083-1055096574-1000\Software\AppDataLow\Software\Mail.Ru Deleted: [Key] - HKCU\Software\Mail.Ru Deleted: [Key] - HKCU\Software\AppDataLow\Software\Mail.Ru Deleted: [Key] - HKCU\Software\Mozilla\NativeMessagingHosts\ru.mail.go.ext_info_host Deleted: [Key] - HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\IELNKSRCH Deleted: [Value] - HKLM\SOFTWARE\RegisteredApplications|FLV and Media Player Deleted: [Value] - HKCU\Software\RegisteredApplications|AceStream ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries deleted. ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries deleted. ************************* ::Tracing keys deleted ::Winsock settings cleared ::Additional Actions: 0 ************************* C:/AdwCleaner/AdwCleaner[C1].txt - [11173 B] - [2016/3/23 12:21:44] C:/AdwCleaner/AdwCleaner[C1].txt.mp3 - [17328 B] - [2016/2/24 12:59:21] C:/AdwCleaner/AdwCleaner[S0].txt.mp3 - [12688 B] - [2013/9/27 7:30:33] C:/AdwCleaner/AdwCleaner[S1].txt - [11082 B] - [2016/3/23 12:18:19] C:/AdwCleaner/AdwCleaner[S1].txt.mp3 - [27024 B] - [2014/4/2 19:45:13] C:/AdwCleaner/AdwCleaner[S2].txt.mp3 - [17280 B] - [2014/12/7 13:42:26] C:/AdwCleaner/AdwCleaner[S4].txt - [8272 B] - [2018/4/11 22:35:29] ########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt ##########