[hide]
# AdwCleaner v5.014 - Logfile created 26/10/2015 at 01:43:43
# Updated 18/10/2015 by Xplode
# Database : 2015-10-18.5 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x86)
# Username : welcom - WELCOM-PC
# Running from : C:\Users\welcom\Desktop\adwcleaner_5.014.exe
# Option : Cleaning
# Support :
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\Device
[-] Folder Deleted : C:\Program Files\tencent
[-] Folder Deleted : C:\ProgramData\rvlkl
[-] Folder Deleted : C:\ProgramData\tencent
[-] Folder Deleted : C:\ProgramData\ApplicationHosting
[-] Folder Deleted : C:\Users\welcom\AppData\Roaming\tencent
[-] Folder Deleted : C:\Users\welcom\AppData\Roaming\NetService
[-] Folder Deleted : C:\Users\welcom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\tencent
***** [ Files ] *****
[-] File Deleted : C:\Users\welcom\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\QQPlayer.lnk
[-] File Deleted : C:\Users\welcom\AppData\Roaming\Mozilla\Firefox\Profiles\t3m2kpx1.default-1445488131404\searchplugins\findit.xml
[-] File Deleted : C:\Windows\Reimage.ini
[-] File Deleted : C:\Windows\system32\findit.xml
***** [ DLLs ] *****
***** [ Shortcuts ] *****
[-] Shortcut Disinfected : C:\Users\welcom\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[-] Shortcut Disinfected : C:\Users\welcom\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[-] Shortcut Disinfected : C:\Users\welcom\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\METNSD
[-] Key Deleted : HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\IELNKSRCH
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtPending
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSynced
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSyncing
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\NetTcpHandler
[-] Key Deleted : HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\Stpro.exe
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{0A93904A-BB1E-4A0C-9753-B57B9AE272CC}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Key Deleted : HKCU\Software\Myfree Codec
[-] Key Deleted : HKLM\SOFTWARE\Myfree Codec
[-] Key Deleted : HKLM\SOFTWARE\NetTcpHandler
[-] Key Deleted : HKLM\SOFTWARE\NtSvcHandler
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\QQPlayer
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{90120000-00B0-0401-0000-0000000FF1CE}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A2D81E70-2A98-4A08-A628-94388B063C5E}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch}
[!] Key Not Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\ielnksrch
[!] Key Not Deleted : HKU\S-1-5-21-1726828271-1816129194-2501070423-1000\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch}
***** [ Web browsers ] *****
[-] [C:\Users\welcom\AppData\Roaming\Mozilla\Firefox\Profiles\t3m2kpx1.default-1445488131404\prefs.js] [Preference] Deleted : user_pref("browser.search.defaultenginename", "findit");
*************************
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [3934 bytes] ##########
[/hide]
اعتقد انه ما حصل فايروس