# ------------------------------- # Malwarebytes AdwCleaner 8.0.1.0 # ------------------------------- # Build: 12-17-2019 # Database: 2020-01-21.1 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 01-23-2020 # Duration: 00:00:20 # OS: Windows 10 Home # Cleaned: 48 # Failed: 0 ***** [ Services ] ***** No malicious services cleaned. ***** [ Folders ] ***** Deleted C:\Program Files (x86)\FILMFANATIC Deleted C:\Program Files (x86)\myfree codec Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec Deleted C:\Users\Katinka\AppData\Roaming\FILMFANATIC Deleted C:\Users\Rickske\AppData\LocalLow\FILMFANATIC ***** [ Files ] ***** No malicious files cleaned. ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** No malicious tasks cleaned. ***** [ Registry ] ***** Deleted HKCU\Software\AppDataLow\Software\FilmFanatic Deleted HKCU\Software\FilmFanatic Deleted HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{D8665905-DF35-4F8B-8A85-63827AFDFA40} Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D5E9B421-C309-41DE-9014-800A2ADCDEB0} Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4C2743F0-A2E2-41A0-9E65-798943109F42} Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D5E9B421-C309-41DE-9014-800A2ADCDEB0} Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec Deleted HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION|BackgroundHost64.exe Deleted HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD|BackgroundHost64.exe Deleted HKLM\Software\Classes\Interface\{FC65300A-DC43-4D86-B153-E59CF6E74216} Deleted HKLM\Software\Classes\TypeLib\{1E617D6C-CAA2-4692-B350-C5B638422BDB} Deleted HKLM\Software\Classes\TypeLib\{B04A9E6A-C9C5-4A2F-ADF9-B69BAC127A14} Deleted HKLM\Software\Classes\TypeLib\{E9594C59-AA17-4E5B-B9A5-3B4B023B9A2E} Deleted HKLM\Software\Wow6432Node\FilmFanatic Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0d5ce42b-8679-426d-b994-be1c7065b2a1} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1be14fe1-3175-4324-a77b-33fe5cb7a6ed} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{43e32fb4-d5e9-41a2-9ded-f0894fb21ad2} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{563028cc-55f3-4678-a37a-d9b10cfb2b19} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5feb1d60-0b28-4445-a911-776d5dd5da20} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99b340f7-76e0-44ab-9948-b95a1b475d39} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{b03ecee6-cb2f-4338-84a7-1358ac61a918} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{b5ccb33f-6c0a-418a-8af1-10c35bbd579a} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{c855d636-07b5-4dc3-82c7-a35242ea1d05} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e2784e68-21fd-4e31-a59a-9189676cfe64} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f5bfad3a-d783-4ad7-98aa-d8f082626f8d} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{fc65300a-dc43-4d86-b153-e59cf6e74216} Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\FilmFanaticbar Uninstall Internet Explorer Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{1DA22A28-324D-4DD4-B2DC-66A3CEBF447F} Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{4C2743F0-A2E2-41A0-9E65-798943109F42} Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36} Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{EFBF47AA-3C29-4C00-9225-6001E6A0B1AC} Deleted HKLM\Software\Wow6432Node\\Classes\Interface\{FC65300A-DC43-4D86-B153-E59CF6E74216} Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{1E617D6C-CAA2-4692-B350-C5B638422BDB} Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{B04A9E6A-C9C5-4A2F-ADF9-B69BAC127A14} Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{E9594C59-AA17-4E5B-B9A5-3B4B023B9A2E} Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B5CCB33F-6C0A-418A-8AF1-10C35BBD579A} Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5BFAD3A-D783-4AD7-98AA-D8F082626F8D} Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC65300A-DC43-4D86-B153-E59CF6E74216} Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION|BackgroundHost.exe Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD|BackgroundHost.exe Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Ext\Preapproved\{1DA22A28-324D-4DD4-B2DC-66A3CEBF447F} Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Ext\Preapproved\{4C2743F0-A2E2-41A0-9E65-798943109F42} ***** [ Chromium (and derivatives) ] ***** Deleted bopakagnckmlgajfccecajhnimjiiedh ***** [ Chromium URLs ] ***** No malicious Chromium URLs cleaned. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ***** [ Preinstalled Software ] ***** No Preinstalled Software cleaned. ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* AdwCleaner[S00].txt - [7166 octets] - [23/01/2020 17:13:34] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########