Report Cleaning my computer in Malware Removal Posted March 29, 2021 # ------------------------------- # Malwarebytes AdwCleaner 8.2.0.0 # ------------------------------- # Build: 03-22-2021 # Database: 2021-03-29.1 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 03-29-2021 # Duration: 00:00:46 # OS: Windows 10 Home # Cleaned: 72 # Failed: 0 ***** [ Services ] ***** Deleted WtuSystemSupport ***** [ Folders ] ***** Deleted C:\Program Files (x86)\Common Files\AVG Secure Search Deleted C:\Program Files (x86)\avg web tuneup Deleted C:\Program Files\Common Files\AVG Secure Search Deleted C:\Program Files\avg web tuneup Deleted C:\ProgramData\AVG_UPDATE_0116TB Deleted C:\ProgramData\AVG_UPDATE_0215TB Deleted C:\ProgramData\AVG_UPDATE_0415TB Deleted C:\ProgramData\AVG_UPDATE_0615TB Deleted C:\ProgramData\AVG_UPDATE_0616TB Deleted C:\ProgramData\AVG_UPDATE_0715TB Deleted C:\ProgramData\AVG_UPDATE_0716TB Deleted C:\ProgramData\AVG_UPDATE_0915TB Deleted C:\ProgramData\AVG_UPDATE_1015TB Deleted C:\ProgramData\AVG_UPDATE_1114TB Deleted C:\ProgramData\AVG_UPDATE_1214TB Deleted C:\ProgramData\AVG_UPDATE_1215TB Deleted C:\ProgramData\AVG_UPDATE_1216TB Deleted C:\ProgramData\avg web tuneup Deleted C:\Users\Lacee\AppData\LocalLow\AVG SafeGuard toolbar Deleted C:\Users\Lacee\AppData\Local\MessengerTime Deleted C:\Users\Lacee\AppData\Local\Packages\windows_ie_ac_001\AC\AVG Web TuneUp Deleted C:\Users\Lacee\AppData\Local\avg web tuneup Deleted C:\Users\Lacee\AppData\Roaming\MessengerTime Deleted C:\Users\Lacee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MessengerTime Deleted C:\Users\Lacee\AppData\Roaming\OpenCandy ***** [ Files ] ***** Deleted C:\Users\Lacee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\MessengerTime.lnk Deleted C:\Users\Public\Desktop\eBay.lnk ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** Deleted C:\Windows\Tasks\0116TBUPDATEINFO.JOB Deleted C:\Windows\Tasks\0215TBUPDATEINFO.JOB Deleted C:\Windows\Tasks\0415TBUPDATEINFO.JOB Deleted C:\Windows\Tasks\0615TBUPDATEINFO.JOB Deleted C:\Windows\Tasks\0715TBUPDATEINFO.JOB Deleted C:\Windows\Tasks\0915TBUPDATEINFO.JOB Deleted C:\Windows\Tasks\1015TBUPDATEINFO.JOB Deleted C:\Windows\Tasks\1114TBUPDATEINFO.JOB Deleted C:\Windows\Tasks\1214TBUPDATEINFO.JOB Deleted C:\Windows\Tasks\1215TBUPDATEINFO.JOB ***** [ Registry ] ***** Deleted HKCU\Software\AppDataLow\Software\MessengerTime Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\land.pckeeper.software Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\pckeeper.software Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\s.thebrighttag.com Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\thebrighttag.com Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\land.pckeeper.software Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\pckeeper.software Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\s.thebrighttag.com Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\thebrighttag.com Deleted HKCU\Software\Microsoft\Internet Explorer\Main|Start Page Deleted HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} Deleted HKLM\Software\AVG Secure Search Deleted HKLM\Software\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468} Deleted HKLM\Software\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Deleted HKLM\Software\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} Deleted HKLM\Software\Classes\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7} Deleted HKLM\Software\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} Deleted HKLM\Software\Classes\WtuServer.WtuServerObj Deleted HKLM\Software\Classes\WtuServer.WtuServerObj.1 Deleted HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|MessengerTime Deleted HKLM\Software\Wow6432Node\AVG Tuneup Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3} Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{CA3A5461-96B5-46DD-9341-5350D3C94615} Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468} Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Deleted HKLM\Software\Wow6432Node\\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7} Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} Deleted HKLM\Software\Wow6432Node\\Google\Chrome\NativeMessagingHosts\avgsh Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Run|MessengerTime Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\MessengerTime Deleted HKLM\System\Setup\FirstBoot\Services\WtuSystemSupport ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** No malicious Chromium URLs cleaned. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ***** [ Hosts File Entries ] ***** No malicious hosts file entries cleaned. ***** [ Preinstalled Software ] ***** No Preinstalled Software cleaned. ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* AdwCleaner[S00].txt - [13479 octets] - [29/03/2021 16:36:41] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
Cleaning my computer
in Malware Removal
Posted
# -------------------------------
# Malwarebytes AdwCleaner 8.2.0.0
# -------------------------------
# Build: 03-22-2021
# Database: 2021-03-29.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 03-29-2021
# Duration: 00:00:46
# OS: Windows 10 Home
# Cleaned: 72
# Failed: 0
***** [ Services ] *****
Deleted WtuSystemSupport
***** [ Folders ] *****
Deleted C:\Program Files (x86)\Common Files\AVG Secure Search
Deleted C:\Program Files (x86)\avg web tuneup
Deleted C:\Program Files\Common Files\AVG Secure Search
Deleted C:\Program Files\avg web tuneup
Deleted C:\ProgramData\AVG_UPDATE_0116TB
Deleted C:\ProgramData\AVG_UPDATE_0215TB
Deleted C:\ProgramData\AVG_UPDATE_0415TB
Deleted C:\ProgramData\AVG_UPDATE_0615TB
Deleted C:\ProgramData\AVG_UPDATE_0616TB
Deleted C:\ProgramData\AVG_UPDATE_0715TB
Deleted C:\ProgramData\AVG_UPDATE_0716TB
Deleted C:\ProgramData\AVG_UPDATE_0915TB
Deleted C:\ProgramData\AVG_UPDATE_1015TB
Deleted C:\ProgramData\AVG_UPDATE_1114TB
Deleted C:\ProgramData\AVG_UPDATE_1214TB
Deleted C:\ProgramData\AVG_UPDATE_1215TB
Deleted C:\ProgramData\AVG_UPDATE_1216TB
Deleted C:\ProgramData\avg web tuneup
Deleted C:\Users\Lacee\AppData\LocalLow\AVG SafeGuard toolbar
Deleted C:\Users\Lacee\AppData\Local\MessengerTime
Deleted C:\Users\Lacee\AppData\Local\Packages\windows_ie_ac_001\AC\AVG Web TuneUp
Deleted C:\Users\Lacee\AppData\Local\avg web tuneup
Deleted C:\Users\Lacee\AppData\Roaming\MessengerTime
Deleted C:\Users\Lacee\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MessengerTime
Deleted C:\Users\Lacee\AppData\Roaming\OpenCandy
***** [ Files ] *****
Deleted C:\Users\Lacee\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\MessengerTime.lnk
Deleted C:\Users\Public\Desktop\eBay.lnk
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
Deleted C:\Windows\Tasks\0116TBUPDATEINFO.JOB
Deleted C:\Windows\Tasks\0215TBUPDATEINFO.JOB
Deleted C:\Windows\Tasks\0415TBUPDATEINFO.JOB
Deleted C:\Windows\Tasks\0615TBUPDATEINFO.JOB
Deleted C:\Windows\Tasks\0715TBUPDATEINFO.JOB
Deleted C:\Windows\Tasks\0915TBUPDATEINFO.JOB
Deleted C:\Windows\Tasks\1015TBUPDATEINFO.JOB
Deleted C:\Windows\Tasks\1114TBUPDATEINFO.JOB
Deleted C:\Windows\Tasks\1214TBUPDATEINFO.JOB
Deleted C:\Windows\Tasks\1215TBUPDATEINFO.JOB
***** [ Registry ] *****
Deleted HKCU\Software\AppDataLow\Software\MessengerTime
Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\land.pckeeper.software
Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\pckeeper.software
Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\s.thebrighttag.com
Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\thebrighttag.com
Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\land.pckeeper.software
Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\pckeeper.software
Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\s.thebrighttag.com
Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\thebrighttag.com
Deleted HKCU\Software\Microsoft\Internet Explorer\Main|Start Page
Deleted HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Deleted HKLM\Software\AVG Secure Search
Deleted HKLM\Software\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Deleted HKLM\Software\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Deleted HKLM\Software\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Deleted HKLM\Software\Classes\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7}
Deleted HKLM\Software\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Deleted HKLM\Software\Classes\WtuServer.WtuServerObj
Deleted HKLM\Software\Classes\WtuServer.WtuServerObj.1
Deleted HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|MessengerTime
Deleted HKLM\Software\Wow6432Node\AVG Tuneup
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{CA3A5461-96B5-46DD-9341-5350D3C94615}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Deleted HKLM\Software\Wow6432Node\\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7}
Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Deleted HKLM\Software\Wow6432Node\\Google\Chrome\NativeMessagingHosts\avgsh
Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Run|MessengerTime
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\MessengerTime
Deleted HKLM\System\Setup\FirstBoot\Services\WtuSystemSupport
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries cleaned.
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
No Preinstalled Software cleaned.
*************************
[+] Delete Tracing Keys
[+] Reset Winsock
*************************
AdwCleaner[S00].txt - [13479 octets] - [29/03/2021 16:36:41]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########