So, I don't use any kind of anti-malware, anti-virus program and only untrusted programs I run are game cheat engines. I usually run them in VM extract DLL file or just use them from there. I was using cheat which install adware which install mail.run and stuff I was successfully able to remove it everytime from VM. For some reason it's updated version didn't work in VM so I decided to run it on my machine (dumb me). Now I removed all stuff using adware cleaner, registry cleanup. But still something in my machine keeps opening web pages. There are no suspicious processes, services running. No net usage, no detection of any kind of malware, adware by - adware cleaner, quickheal, hitman pro, malwarebytes, rfkill. No luck with anything I usually remove stuff myself, I don't like interruptions of antiviruses.
So, about cheat- it's injection method is to replace d3dref9.dll. I removed this dll and reinstalled directx with no luck. sfc /scannow didn't show any results either. There are no extension or plugins enabled in chrome. This adware really got on my nerve I checked every damm thing. I uploaded and check every suspicious file on virustotal with no luck either. Bought quickheal but it didn't find any suspicious files.
If you need any logs or info just ask I will respond as quickly as possible.
Just need to add I did boot time scan with quickheal, running security software in safe mode etc. I was gonna reinstall windows but I know what that bleep is.
Edited by --Felix--, 21 December 2016 - 11:53 AM.