# AdwCleaner v6.044 - Logfile created 08/03/2017 at 21:09:46
# Updated on 28/02/2017 by Malwarebytes
# Database : 2017-03-07.1 [Server]
# Operating System : Windows 10 Home (X64)
# Username : The Dominater - DESKTOP-C5JO6DS
# Running from : C:\Users\The Dominater\Desktop\adwcleaner_6.044.exe
# Mode: Scan
# Support : https://www.malwarebytes.com/support
***** [ Services ] *****
No malicious services found.
***** [ Folders ] *****
Folder Found: C:\Users\The Dominater\AppData\Local\PackageAware
Folder Found: C:\Users\The Dominater\AppData\Roaming\DriverAgentPlus
Folder Found: C:\ProgramData\Mail.Ru
Folder Found: C:\ProgramData\DriverAgentPlus
Folder Found: C:\ProgramData\Application Data\Mail.Ru
Folder Found: C:\ProgramData\Application Data\DriverAgentPlus
***** [ Files ] *****
File Found: C:\Users\The Dominater\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mail.Ru.lnk
File Found: C:\Users\The Dominater\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Driver Booster.lnk
File Found: C:\Users\The Dominater\Favorites\Mail.Ru.url
File Found: C:\Users\The Dominater\Favorites\Mail.Ru Агент - используй для общения!.url
File Found: C:\END
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious keys found.
***** [ Shortcuts ] *****
Shortcut infected: C:\Users\The Dominater\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mail.Ru.lnk ( url,FileProtocolHandler "hxxp://www.mail.ru/cnt/20775012?gp=811035" )
***** [ Scheduled Tasks ] *****
No malicious task found.
***** [ Registry ] *****
Key Found: HKU\S-1-5-21-3389083087-2590271329-4002902189-1001\Software\eSupport.com
Key Found: HKU\S-1-5-21-3389083087-2590271329-4002902189-1001\Software\Mail.Ru
Key Found: HKU\S-1-5-21-3389083087-2590271329-4002902189-1001\Software\AppDataLow\Software\Mail.Ru
Key Found: HKCU\Software\eSupport.com
Key Found: HKCU\Software\Mail.Ru
Key Found: HKCU\Software\AppDataLow\Software\Mail.Ru
Key Found: [x64] HKCU\Software\eSupport.com
Key Found: [x64] HKCU\Software\Mail.Ru
Key Found: [x64] HKCU\Software\AppDataLow\Software\Mail.Ru
Data Found: HKU\S-1-5-21-3389083087-2590271329-4002902189-1001\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://mail.ru/cnt/10445?gp=811040
Data Found: HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://mail.ru/cnt/10445?gp=811040
Data Found: [x64] HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://mail.ru/cnt/10445?gp=811040
Key Found: HKU\S-1-5-21-3389083087-2590271329-4002902189-1001\Software\Microsoft\Internet Explorer\SearchScopes\{FFEBBF0A-C22C-4172-89FF-45215A135AC7}
Data Found: HKU\S-1-5-21-3389083087-2590271329-4002902189-1001\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] -
Key Found: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{FFEBBF0A-C22C-4172-89FF-45215A135AC7}
Data Found: HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] -
Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{FFEBBF0A-C22C-4172-89FF-45215A135AC7}
Data Found: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] -
Key Found: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\land.pckeeper.software
Key Found: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pckeeper.software
Key Found: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\staticimgfarm.com
Key Found: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ttdetect.staticimgfarm.com
Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\land.pckeeper.software
Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pckeeper.software
Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\staticimgfarm.com
Key Found: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ttdetect.staticimgfarm.com
***** [ Web browsers ] *****
Firefox pref Found: [C:\Users\The Dominater\AppData\Roaming\Mozilla\Firefox\Profiles\f7en4hmc.default\prefs.js] - "browser.search.defaultenginename" - "Поиск@Mail.Ru"
Firefox pref Found: [C:\Users\The Dominater\AppData\Roaming\Mozilla\Firefox\Profiles\f7en4hmc.default\prefs.js] - "browser.search.selectedEngine" - "Поиск@Mail.Ru"
Chrome pref Found: [C:\Users\The Dominater\AppData\Local\Google\Chrome\User Data\Profile 1\Web data] - aol.com
Chrome pref Found: [C:\Users\The Dominater\AppData\Local\Google\Chrome\User Data\Profile 1\Web data] - ask.com
*************************
C:\AdwCleaner\AdwCleaner[S0].txt - [4873 Bytes] - [04/03/2017 14:40:33]
C:\AdwCleaner\AdwCleaner[S1].txt - [5121 Bytes] - [04/03/2017 14:59:14]
C:\AdwCleaner\AdwCleaner[S2].txt - [5018 Bytes] - [04/03/2017 15:12:12]
C:\AdwCleaner\AdwCleaner[S3].txt - [5267 Bytes] - [04/03/2017 15:16:06]
C:\AdwCleaner\AdwCleaner[S4].txt - [5207 Bytes] - [04/03/2017 15:36:17]
C:\AdwCleaner\AdwCleaner[S5].txt - [5087 Bytes] - [08/03/2017 21:09:46]
########## EOF - C:\AdwCleaner\AdwCleaner[S5].txt - [5160 Bytes] ##########