# AdwCleaner 7.0.5.0 - Logfile created on Sun Dec 10 14:57:43 2017 # Updated on 2017/29/11 by Malwarebytes # Running on Windows 10 Home (X64) # Mode: clean # Support: https://www.malwarebytes.com/support ***** [ Services ] ***** No malicious services deleted. ***** [ Folders ] ***** Deleted: C:\Program Files (x86)\PC Speed Maximizer Deleted: C:\Users\Michel\AppData\Roaming\PC Speed Maximizer Deleted: C:\Users\Michel\Documents\PC Speed Maximizer Deleted: C:\Users\Michel\Documents\OneSafe PC Cleaner Deleted: C:\Users\Michel\Documents\OneSafe PC Cleaner ***** [ Files ] ***** Deleted: C:\Users\Michel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\ScreenShot.lnk Deleted: C:\Users\Michel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\L'amplitude de nettoyage des dossiers de rebus.lnk ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** No malicious tasks deleted. ***** [ Registry ] ***** Deleted: [Key] - HKLM\SOFTWARE\Elex-tech Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved|{5411D116-5A37-47D4-B154-5F7FCD9062F0} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{0319DE47-F039-45DC-A213-DBB61C6AE509} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{074BFF31-CA38-43C4-8F25-79213AD708EF} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{0D838143-D511-4555-8B97-16C3CF5A780D} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{206E5E13-3B8F-4146-9C21-F18A63A9689B} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{2B5E8E95-F503-4530-A340-53DE89F3358F} Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved|{40B50C00-06BB-415F-8F4E-6DEF53957ABA} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{6F09F687-2C4C-4A37-8D7A-2CB76D2B3F71} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{7A2BA8C4-F382-4DD1-A6D2-A86C6D66C4F9} Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved|{828FB706-5749-4255-862F-3D30FCF017E1} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{8888A22B-3380-4C2B-950F-A5B6EC527A4B} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{D8F2F7F9-F8F3-4562-9FDA-C1E2DAE60A30} Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{F6649783-7559-4772-96C7-02D33BEACD8C} Deleted: [Key] - HKLM\SOFTWARE\Classes\TypeLib\{D062B23B-F8EE-40EC-BF3F-7DB0E9FE1232} Deleted: [Key] - HKLM\SOFTWARE\Classes\TypeLib\{D3F79FC5-65FE-4650-8979-3BF0CCF02C1A} Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved|{05562BE7-0EFC-4BD2-BD8F-FAA363E68410} Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved|{B52115B1-936F-4EEA-A363-A535FB1942B7} Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\2311DC2B5C57F724B860D95A705A2A6B Deleted: [Key] - HKLM\SOFTWARE\Classes\Installer\Features\2311DC2B5C57F724B860D95A705A2A6B Deleted: [Key] - HKLM\SOFTWARE\Classes\Installer\Products\2311DC2B5C57F724B860D95A705A2A6B Deleted: [Key] - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application Deleted: [Key] - HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application Deleted: [Key] - HKLM\SOFTWARE\Classes\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shell\iSafeRKScan Deleted: [Key] - HKLM\SOFTWARE\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications\iSafeSvc2.exe Deleted: [Key] - HKLM\SOFTWARE\Classes\Directory\Background\shellex\ContextMenuHandlers\PCKeeperShell64 Deleted: [Key] - HKLM\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\PCKeeperShell64 Deleted: [Key] - HKLM\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\PCKeeperShell64 Deleted: [Key] - HKLM\SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\PCKeeperShell64 Deleted: [Key] - HKLM\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\PCKeeperShell64 Deleted: [Key] - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Reason\ReasonByteFence Deleted: [Key] - HKU\S-1-5-21-1581788354-1789360890-4210059563-1002\Software\PC Speed Maximizer Deleted: [Key] - HKCU\Software\PC Speed Maximizer Deleted: [Key] - HKU\S-1-5-21-1581788354-1789360890-4210059563-1001\Software\Browser Deleted: [Key] - HKLM\SOFTWARE\ScreenShot Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ScreenShot Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B2CD1132-75C5-427F-8B06-9DA507A5A2B6} Deleted: [Key] - HKLM\SOFTWARE\CLASSES\APPID\PCKElevatedHost.exe Deleted: [Key] - HKLM\SOFTWARE\CLASSES\APPID\PCKElevatedHost.exe Deleted: [Key] - HKLM\SOFTWARE\CLASSES\*\SHELLEX\CONTEXTMENUHANDLERS\PCKeeperShell32 Deleted: [Key] - HKLM\SOFTWARE\CLASSES\*\SHELLEX\CONTEXTMENUHANDLERS\PCKeeperShell64 Deleted: [Key] - HKU\S-1-5-21-1581788354-1789360890-4210059563-1002\Software\csastats Deleted: [Key] - HKCU\Software\csastats Deleted: [Key] - HKU\S-1-5-21-1581788354-1789360890-4210059563-1002\Software\PRODUCTSETUP Deleted: [Key] - HKCU\Software\PRODUCTSETUP Deleted: [Key] - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application Deleted: [Key] - HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries deleted. ***** [ Chromium (and derivatives) ] ***** Plugin deleted: Avira SafeSearch Plus - ************************* ::Tracing keys deleted ::Winsock settings cleared ::Additional Actions: 0 ************************* C:/AdwCleaner/AdwCleaner[C1].txt - [11717 B] - [2016/3/28 16:36:41] C:/AdwCleaner/AdwCleaner[S1].txt - [6664 B] - [2016/3/28 16:34:22] ########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt ##########