Jump to content
Sign in to follow this  
Metallica

Removal instructions for Max Registry Cleaner

Recommended Posts

What is Max Registry Cleaner?

The Malwarebytes research team has determined that Max Registry Cleaner is a fake registry cleaner. These so-called "registry cleaners" use intentional false positives to convince users that their systems have problems. Then they try to sell you their software, claiming it will remove these problems.
More information can be found on our Malwarebytes Labs blog.

How do I know if I am infected with Max Registry Cleaner?

This is how the main screen of the registry cleaning application looks:

main.png

You will find these icons in your taskbar and on your desktop:

icons.png

And see this warning during install:

warning2.png

and these screens during "operations":

warning5.png

warning7.png

warning8.png

You may see this entry in your list of installed programs:

warning4.png

How did Max Registry Cleaner get on my computer?

These so-called registry cleaners use different methods of getting installed. This particular one was downloaded from their website.

website.png

How do I remove Max Registry Cleaner?

Our program Malwarebytes can detect and remove this potentially unwanted application.

  • Please download Malwarebytes to your desktop.
  • Double-click mb3-setup-consumer-{version}.exe and follow the prompts to install the program.
  • Then click Finish.
  • Once the program has fully updated, select Scan Now on the Dashboard. Or select the Threat Scan from the Scan menu.
  • If another update of the definitions is available, it will be implemented before the rest of the scanning procedure.
  • When the scan is complete, make sure that all Threats are selected, and click Remove Selected.
  • Restart your computer when prompted to do so.

Is there anything else I need to do to get rid of Max Registry Cleaner?

  • No, Malwarebytes removes Max Registry Cleaner completely.

How would the full version of Malwarebytes help protect me?

We hope our application and this guide have helped you eradicate this registry cleaner.

As you can see below the full version of Malwarebytes would have protected you against the Max Registry Cleaner installer. It would have warned you before the application could install itself, giving you a chance to stop it before it became too late.

 

protection1.png


and it would have blocked access to their website:
 

protection2.png


Technical details for experts

You may see these entries in FRST logs:

 

(Max Secure Software India Private Ltd. -> Max Secure Software) C:\Program Files\Max Registry Cleaner\MaxRCSystemTray.exe
(Max Secure Software India Private Ltd. -> Max Secure Software) C:\Program Files\Max Registry Cleaner\MaxRegistryCleaner.exe
(Max Secure Software India Private Ltd. -> Max Secure Software) C:\Program Files\Max Registry Cleaner\RCVistaService.exe
HKLM\...\Run: [RCSystemTray] => C:\Program Files\Max Registry Cleaner\MaxRCSystemTray.exe [2767128 2019-04-02] (Max Secure Software India Private Ltd. -> Max Secure Software)
HKLM\...\Run: [RCAutoLiveUpdate] => C:\Program Files\Max Registry Cleaner\MaxLURC.exe [1713112 2018-07-25] (Max Secure Software India Private Ltd. -> Max Secure Software)
R2 RCVistaSvc; C:\Program Files\Max Registry Cleaner\RCVistaService.exe [2313688 2018-07-25] (Max Secure Software India Private Ltd. -> Max Secure Software)
C:\Users\Public\Desktop\Max Registry Cleaner.lnk
C:\Windows\MaxSecureBackup
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Max Registry Cleaner
C:\ProgramData\Max Secure
C:\Program Files\Max Registry Cleaner
C:\Users\{username}\AppData\Local\Max Secure Software

Max Registry Cleaner (HKLM\...\{8D815D9B-4DD9-437E-BFE2-E7374D3E7025}_is1) (Version: 6.0.0.073 - Max Secure Software)

Alterations made by the installer:
 

File system details [View: All details] (Selection)
---------------------------------------------------
    Adds the folder C:\Program Files\Max Registry Cleaner
       Adds the file CheckDll.dll"="7/25/2018 4:00 PM, 829912 bytes, A
       Adds the file CloseAll.exe"="7/25/2018 4:01 PM, 506328 bytes, A
       Adds the file ExportMail.htm"="5/2/2013 4:49 PM, 5410 bytes, A
       Adds the file FileSignature.dll"="7/25/2018 4:02 PM, 674776 bytes, A
       Adds the file IgnoreKeys.ini"="2/2/2015 3:14 PM, 6125 bytes, A
       Adds the file IgnorePath.ini"="12/12/2014 2:44 PM, 1130 bytes, A
       Adds the file MaxLURC.exe"="7/25/2018 4:01 PM, 1713112 bytes, A
       Adds the file MaxRCPopUp.exe"="7/25/2018 4:01 PM, 1449944 bytes, A
       Adds the file MaxRCSystemTray.exe"="4/2/2019 4:36 PM, 2767128 bytes, A
       Adds the file MaxRegistryCleaner.chm"="7/25/2018 4:49 PM, 1135296 bytes, A
       Adds the file MaxRegistryCleaner.exe"="4/2/2019 3:57 PM, 9435928 bytes, A
       Adds the file MaxSDResourceDll.dll"="3/30/2019 12:21 PM, 22098200 bytes, A
       Adds the file MaxTeamVReset.exe"="2/8/2019 11:44 AM, 1802200 bytes, A
       Adds the file OptimizerDll.dll"="7/25/2018 4:07 PM, 581592 bytes, A
       Adds the file RC_Tips_EN.txt"="5/2/2013 4:49 PM, 5280 bytes, A
       Adds the file RC_Tips_GE.txt"="5/2/2013 4:49 PM, 6810 bytes, A
       Adds the file RCVistaService.exe"="7/25/2018 4:02 PM, 2313688 bytes, A
       Adds the file RegistryCleaner.ico"="2/24/2015 9:58 AM, 257418 bytes, A
       Adds the file SendReport.exe"="2/8/2019 11:40 AM, 1249752 bytes, A
       Adds the file SMTPDll.dll"="2/8/2019 11:40 AM, 808408 bytes, A
       Adds the file StartUpTipsDll.dll"="2/8/2019 11:40 AM, 411608 bytes, A
       Adds the file TeamViewerQS.exe"="2/8/2019 11:44 AM, 2868232 bytes, A
       Adds the file unins000.dat"="6/3/2019 9:11 AM, 15983 bytes, A
       Adds the file unins000.exe"="6/3/2019 9:10 AM, 986392 bytes, A
       Adds the file unins000.msg"="6/3/2019 9:11 AM, 11401 bytes, A
       Adds the file VchReg.dll"="3/30/2019 12:22 PM, 2769176 bytes, A
    Adds the folder C:\Program Files\Max Registry Cleaner\IgnoreData
       Adds the file RC1.DB"="5/2/2013 4:49 PM, 151 bytes, A
       Adds the file RC10.DB"="5/2/2013 4:49 PM, 2 bytes, A
       Adds the file RC11.DB"="5/2/2013 4:49 PM, 13900 bytes, A
       Adds the file RC12.DB"="5/2/2013 4:49 PM, 7070 bytes, A
       Adds the file RC13.DB"="5/2/2013 4:49 PM, 3188 bytes, A
       Adds the file RC2.DB"="5/2/2013 4:49 PM, 2 bytes, A
       Adds the file RC4.DB"="5/2/2013 4:49 PM, 236 bytes, A
       Adds the file RC5.DB"="5/2/2013 4:49 PM, 5189 bytes, A
       Adds the file RC7.DB"="5/2/2013 4:49 PM, 2780 bytes, A
       Adds the file RC9.DB"="5/2/2013 4:49 PM, 2 bytes, A
    Adds the folder C:\Program Files\Max Registry Cleaner\LiveUpdate
    Adds the folder C:\Program Files\Max Registry Cleaner\Log
       Adds the file ScanLog.txt"="6/3/2019 9:11 AM, 26272 bytes, A
       Adds the file VoucherLog.txt"="6/3/2019 9:11 AM, 2116 bytes, A
    Adds the folder C:\Program Files\Max Registry Cleaner\setting
       Adds the file CurrentSettings.ini"="6/8/2018 12:04 PM, 2543 bytes, A
       Adds the file English_Strings.ini"="4/2/2019 4:30 PM, 71208 bytes, A
       Adds the file Export.ini"="5/2/2013 4:49 PM, 400 bytes, A
       Adds the file German_Strings.ini"="4/2/2019 4:31 PM, 74252 bytes, A
       Adds the file Voucher_English_Strings.ini"="6/12/2018 4:40 PM, 32772 bytes, A
       Adds the file Voucher_German_Strings.ini"="6/12/2018 4:40 PM, 32772 bytes, A
    Adds the folder C:\ProgramData\Max Secure\Max Registry Cleaner
       Adds the file SYSRegC.mxs"="6/3/2019 9:11 AM, 63 bytes, A
    Adds the folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Max Registry Cleaner
       Adds the file Max Registry Cleaner Help.lnk"="6/3/2019 9:11 AM, 964 bytes, A
       Adds the file Max Registry Cleaner.lnk"="6/3/2019 9:11 AM, 964 bytes, A
       Adds the file Uninstall Max Registry Cleaner.lnk"="6/3/2019 9:11 AM, 914 bytes, A
    Adds the folder C:\Users\{username}\AppData\Local\Max Secure Software\MaxDownloadTemp
       Adds the file maxdownloader.log"="6/3/2019 9:10 AM, 717 bytes, A
    In the existing folder C:\Users\{username}\Desktop
       Adds the file MaxRegistrycleanerx64.exe"="6/3/2019 9:10 AM, 11155736 bytes, A
    In the existing folder C:\Users\Public\Desktop
       Adds the file Max Registry Cleaner.lnk"="6/3/2019 9:11 AM, 946 bytes, A
    Adds the folder C:\Windows\MaxSecureBackup

Registry details [View: All details] (Selection)
------------------------------------------------
    [HKEY_LOCAL_MACHINE]
       "RegistrationNo"="REG_SZ", ""
    [HKEY_LOCAL_MACHINE\SOFTWARE\Max Registry cleaner]
       "AppFolder"="REG_SZ", "C:\Program Files\Max Registry Cleaner\"
       "CheckDaysLeft"="REG_SZ", "6/3/2019"
       "InstalledProductPath"="REG_SZ", "C:\Users\{username}\Desktop\MaxRegistrycleanerx64.exe"
       "LastLiveUpdate"="REG_SZ", "3-Jun-2019"
       "NoOfScans"="REG_DWORD", 0
       "ProductVersionNo"="REG_SZ", "6.0.0.073"
       "PurchaseURL"="REG_SZ", "https://www.bluesnap.com/jsp/buynow.jsp?contractId=2004108"
       "ScanType"="REG_DWORD", 1
       "SetupLaunch"="REG_DWORD", 0
       "VendorName"="REG_SZ", "RegistryCleaner"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Max Registry cleaner\System_settings]
       "AutomaticLiveUpdate"="REG_DWORD", 1
       "ScanWithWindowsStart"="REG_DWORD", 0
       "SplashScreen"="REG_DWORD", 1
       "StartTips"="REG_DWORD", 1
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
       "RCAutoLiveUpdate"="REG_SZ", "C:\Program Files\Max Registry Cleaner\MaxLURC.exe -AUTO"
       "RCSystemTray"="REG_SZ", "C:\Program Files\Max Registry Cleaner\MaxRCSystemTray.exe"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8D815D9B-4DD9-437E-BFE2-E7374D3E7025}_is1]
       "DisplayIcon"="REG_SZ", "C:\Program Files\Max Registry Cleaner\RegistryCleaner.ico"
       "DisplayName"="REG_SZ", "Max Registry Cleaner"
       "DisplayVersion"="REG_SZ", "6.0.0.073"
       "EstimatedSize"="REG_DWORD", 54444
       "HelpLink"="REG_SZ", "http://www.maxpcsecure.com/"
       "Inno Setup: App Path"="REG_SZ", "C:\Program Files\Max Registry Cleaner"
       "Inno Setup: Deselected Tasks"="REG_SZ", ""
       "Inno Setup: Icon Group"="REG_SZ", "Max Registry Cleaner"
       "Inno Setup: Language"="REG_SZ", "english"
       "Inno Setup: Selected Tasks"="REG_SZ", "desktopicon"
       "Inno Setup: Setup Version"="REG_SZ", "5.6.1 (a)"
       "Inno Setup: User"="REG_SZ", "{username}"
       "InstallDate"="REG_SZ", "20190603"
       "InstallLocation"="REG_SZ", "C:\Program Files\Max Registry Cleaner\"
       "MajorVersion"="REG_DWORD", 6
       "MinorVersion"="REG_DWORD", 0
       "NoModify"="REG_DWORD", 1
       "NoRepair"="REG_DWORD", 1
       "Publisher"="REG_SZ", "Max Secure Software"
       "QuietUninstallString"="REG_SZ", ""C:\Program Files\Max Registry Cleaner\unins000.exe" /SILENT"
       "UninstallString"="REG_SZ", ""C:\Program Files\Max Registry Cleaner\unins000.exe""
       "URLInfoAbout"="REG_SZ", "http://www.maxpcsecure.com/"
       "URLUpdateInfo"="REG_SZ", "http://www.maxpcsecure.com/"
       "VersionMajor"="REG_DWORD", 6
       "VersionMinor"="REG_DWORD", 0
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\RCVistaSvc]
       "DisplayName"="REG_SZ", "RCVistaSvc"
       "ErrorControl"="REG_DWORD", 1
       "ImagePath"="REG_EXPAND_SZ, "C:\Program Files\Max Registry Cleaner\RCVistaService.exe"
       "ObjectName"="REG_SZ", "LocalSystem"
       "Start"="REG_DWORD", 2
       "Type"="REG_DWORD", 16
       "WOW64"="REG_DWORD", 1

Malwarebytes log:
 

Malwarebytes
www.malwarebytes.com

-Log Details-
Scan Date: 6/3/19
Scan Time: 9:22 AM
Log File: 4d879bda-85d0-11e9-aec1-00ffdcc6fdfc.json

-Software Information-
Version: 3.7.1.2839
Components Version: 1.0.586
Update Package Version: 1.0.10878
License: Premium

-System Information-
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: {computername}\{username}

-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 236181
Threats Detected: 77
Threats Quarantined: 77
Time Elapsed: 7 min, 9 sec

-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Detect
PUM: Detect

-Scan Details-
Process: 3
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\MaxRCSystemTray.exe, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\MaxRegistryCleaner.exe, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\RCVistaService.exe, Quarantined, [1220], [393095],1.0.10878

Module: 6
PUP.Optional.MaxSecureSoftware, C:\PROGRAM FILES\MAX REGISTRY CLEANER\OPTIMIZERDLL.DLL, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\MaxRCSystemTray.exe, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\MaxRegistryCleaner.exe, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\MaxSDResourceDll.dll, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\RCVistaService.exe, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\VchReg.dll, Quarantined, [1220], [393095],1.0.10878

Registry Key: 3
PUP.Optional.MaxSecureSoftware, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\RCVistaSvc, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{8D815D9B-4DD9-437E-BFE2-E7374D3E7025}_is1, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxRegistryCleaner, HKLM\SOFTWARE\Max Registry cleaner, Quarantined, [7134], [393234],1.0.10878

Registry Value: 3
PUP.Optional.MaxSecureSoftware, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|RCAutoLiveUpdate, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|RCSystemTray, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\RCVISTASVC|IMAGEPATH, Quarantined, [1220], [393080],1.0.10878

Registry Data: 0
(No malicious items detected)

Data Stream: 0
(No malicious items detected)

Folder: 9
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\IgnoreData, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\LiveUpdate, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\setting, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\Log, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\PROGRAM FILES\MAX REGISTRY CLEANER, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Users\{username}\AppData\Local\Max Secure Software\MaxDownloadTemp, Quarantined, [1220], [393078],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\USERS\{username}\APPDATA\LOCAL\MAX SECURE SOFTWARE, Quarantined, [1220], [393078],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\MAX REGISTRY CLEANER, Quarantined, [1220], [393091],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\PROGRAMDATA\MAX SECURE\MAX REGISTRY CLEANER, Quarantined, [1220], [393094],1.0.10878

File: 53
PUP.Optional.MaxSecureSoftware, C:\PROGRAM FILES\MAX REGISTRY CLEANER\OPTIMIZERDLL.DLL, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\IgnoreData\RC1.DB, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\IgnoreData\RC10.DB, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\IgnoreData\RC11.DB, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\IgnoreData\RC12.DB, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\IgnoreData\RC13.DB, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\IgnoreData\RC2.DB, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\IgnoreData\RC4.DB, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\IgnoreData\RC5.DB, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\IgnoreData\RC7.DB, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\IgnoreData\RC9.DB, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\Log\ScanLog.txt, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\Log\VoucherLog.txt, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\setting\CurrentSettings.ini, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\setting\English_Strings.ini, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\setting\Export.ini, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\setting\German_Strings.ini, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\setting\Voucher_English_Strings.ini, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\setting\Voucher_German_Strings.ini, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\MaxRegistryCleaner.chm, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\CheckDll.dll, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\CloseAll.exe, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\ExportMail.htm, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\FileSignature.dll, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\IgnoreKeys.ini, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\IgnorePath.ini, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\MaxLURC.exe, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\MaxRCPopUp.exe, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\MaxRCSystemTray.exe, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\MaxRegistryCleaner.exe, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\MaxSDResourceDll.dll, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\MaxTeamVReset.exe, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\RCVistaService.exe, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\RC_Tips_EN.txt, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\RC_Tips_GE.txt, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\RegistryCleaner.ico, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\SendReport.exe, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\SMTPDll.dll, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\StartUpTipsDll.dll, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\TeamViewerQS.exe, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\unins000.dat, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\unins000.exe, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\unins000.msg, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Program Files\Max Registry Cleaner\VchReg.dll, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\DOCUMENTS AND SETTINGS\PUBLIC\Desktop\Max Registry Cleaner.lnk, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\USERS\PUBLIC\Desktop\Max Registry Cleaner.lnk, Quarantined, [1220], [393095],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\USERS\{username}\DESKTOP\MAXREGISTRYCLEANERX64.EXE, Quarantined, [1220], [393088],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\Users\{username}\AppData\Local\Max Secure Software\MaxDownloadTemp\maxdownloader.log, Quarantined, [1220], [393078],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Max Registry Cleaner\Max Registry Cleaner Help.lnk, Quarantined, [1220], [393091],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Max Registry Cleaner\Max Registry Cleaner.lnk, Quarantined, [1220], [393091],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Max Registry Cleaner\Uninstall Max Registry Cleaner.lnk, Quarantined, [1220], [393091],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\ProgramData\Max Secure\Max Registry Cleaner\SYSRegC.mxs, Quarantined, [1220], [393094],1.0.10878
PUP.Optional.MaxSecureSoftware, C:\USERS\{username}\DESKTOP\MAXRCDM.EXE, Quarantined, [1220], [690737],1.0.10878

Physical Sector: 0
(No malicious items detected)

WMI: 0
(No malicious items detected)


(end)

As mentioned before the full version of Malwarebytes could have protected your computer against this threat.
We use different ways of protecting your computer(s):

  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention

Save yourself the hassle and get protected.

Share this post


Link to post
Share on other sites
Sign in to follow this  

  • Recently Browsing   0 members

    No registered users viewing this page.

×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.