Jump to content

PUP.Adware.Heuristic isn't removed after reboot


Recommended Posts

I don't know if these drivers are false positives, but after scanning, quarantining, and then rebooting the two files are recreated outside of the quarantine.

The files are drivers for CallbackDisk Virtual Storage and Callback File System

 

 

# -------------------------------
# Malwarebytes AdwCleaner 8.2.0.0
# -------------------------------
# Build:    03-22-2021
# Database: 2021-05-17.1 (Cloud)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    05-21-2021
# Duration: 00:00:00
# OS:       Windows 10 Home
# Cleaned:  2
# Awaiting reboot:2
# Failed:   0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

Needs Reboot  C:\Windows\System32\drivers\{1EC00332-9DA9-436D-9AAA-048787DF45B7}.SYS
Needs Reboot  C:\Windows\System32\drivers\{E7224BCD-D889-4528-8456-60CE0724367E}.SYS

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete IFEO
[+] Delete Prefetch
[+] Delete Tracing Keys
[+] Reset BITS
[+] Reset IPSec
[+] Reset Chromium Policies
[+] Reset IE Policies
[+] Reset Proxy Settings
[+] Reset TCP/IP
[+] Reset Winsock

*************************

***** Reboot Required to Complete *****


***** [ Files ] *****

Cleaning failed   C:\Windows\System32\drivers\{1EC00332-9DA9-436D-9AAA-048787DF45B7}.SYS
Cleaning failed   C:\Windows\System32\drivers\{E7224BCD-D889-4528-8456-60CE0724367E}.SYS

*************************

AdwCleaner_Debug.log - [55939 octets] - [27/02/2021 14:54:12]
AdwCleaner[S00].txt - [1723 octets] - [27/02/2021 14:54:28]
AdwCleaner[C00].txt - [2326 octets] - [27/02/2021 14:54:55]
AdwCleaner[S01].txt - [1772 octets] - [21/05/2021 00:16:18]
AdwCleaner[C01].txt - [2393 octets] - [21/05/2021 00:16:47]
AdwCleaner[S02].txt - [1894 octets] - [21/05/2021 00:21:15]
AdwCleaner[C02].txt - [2515 octets] - [21/05/2021 00:21:35]
AdwCleaner[S03].txt - [2016 octets] - [21/05/2021 00:23:20]
AdwCleaner[C03].txt - [2637 octets] - [21/05/2021 00:23:23]
AdwCleaner[S04].txt - [2138 octets] - [21/05/2021 00:45:10]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C04].txt ##########

 

Link to post
Share on other sites

  • Staff

***This is an automated reply***

Hi,

Thanks for posting in the AdwCleaner Help forum.
In order to help us assist you to resolve your issue, please post or attach your latest AdwCleaner log files with your post. https://support.malwarebytes.com/hc/en-us/articles/360039021593

Someone will reply shortly, but in the meantime here are a few resources which may help resolve your issue:

Thanks in advance for your patience.

-The Malwarebytes Forum Team

 

 

 

 

notify me.jpeg

mbst_advanced_gather_logs.jpg

mbst_get_started.jpg

mbst_getting_logs.jpg

mbst_log_saved_desktop.jpg

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.