# AdwCleaner v5.031 - Logfile created 30/01/2016 at 07:25:38 # Updated 25/01/2016 by Xplode # Database : 2016-01-25.3 [Server] # Operating system : Windows 10 Home (x64) # Username : Alexandre - DESKTOP-PRMID3C # Running from : C:\Users\Alexandre\Downloads\adwcleaner_5.031.exe # Option : Cleaning # Support : hxxp://toolslib.net/forum ***** [ Services ] ***** [-] Service Deleted : CltMngSvc ***** [ Folders ] ***** [-] Folder Deleted : C:\Program Files (x86)\SearchProtect [#] Folder Deleted : C:\ProgramData\mntemp [-] Folder Deleted : C:\Users\Alexandre\AppData\Local\SearchProtect [-] Folder Deleted : C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Local\SearchProtect ***** [ Files ] ***** [-] File Deleted : C:\WINDOWS\apppatch\apppatch64\vcldr64.dll [-] File Deleted : C:\WINDOWS\AppPatch\Custom\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb [-] File Deleted : C:\WINDOWS\AppPatch\Custom\Custom64\{cf2797aa-b7ec-e311-8ed9-005056c00008}.sdb [-] File Deleted : C:\WINDOWS\AppPatch\nbin\VC32Loader.dll ***** [ DLLs ] ***** ***** [ Shortcuts ] ***** ***** [ Scheduled tasks ] ***** ***** [ Registry ] ***** [-] Key Deleted : HKCU\Software\SearchProtect [-] Key Deleted : HKLM\SOFTWARE\SearchProtect [-] Key Deleted : HKLM\SOFTWARE\SPPDCOM [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} [-] Data Restored : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] [-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] ***** [ Web browsers ] ***** [-] [C:\Users\Alexandre\AppData\Roaming\Mozilla\Firefox\Profiles\1kx814zy.default\prefs.js] [Preference] Deleted : user_pref("browser.newtab.url", "hxxp://www.trovi.com/?gd=&ctid=CT3333673&octid=EB_ORIGINAL_CTID&ISID=099B4806-1E41-418F-8574-5B3608F20CBA&SearchSource=69&CUI=&SSPV=&Lay=1&UM=8&UP=SP6D39C5FD-554C-4809[...] ************************* :: "Tracing" keys removed :: Winsock settings cleared ########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [2134 bytes] ########## # AdwCleaner v5.201 - Rapport créé le 12/08/2016 à 23:23:44 # Mis à jour le 30/06/2016 par ToolsLib # Base de données : 2016-08-12.4 [Serveur] # Système d'exploitation : Windows 10 Home (X64) # Nom d'utilisateur : Alexandre - DESKTOP-PRMID3C # Exécuté depuis : C:\Users\Alexandre\Desktop\adwcleaner_5.201.exe # Option : Nettoyer # Support : https://toolslib.net/forum ***** [ Services ] ***** [-] Service supprimé : WtuSystemSupport [-] Service supprimé : vToolbarUpdater40.3.2 ***** [ Dossiers ] ***** [-] Dossier supprimé : C:\ProgramData\avg web tuneup [#] Dossier supprimé : C:\ProgramData\Application Data\avg web tuneup [-] Dossier supprimé : C:\Program Files (x86)\avg web tuneup [-] Dossier supprimé : C:\Program Files (x86)\Common Files\AVG Secure Search [-] Dossier supprimé : C:\Users\Alexandre\AppData\Local\avg web tuneup [-] Dossier supprimé : C:\Users\Alexandre\AppData\Roaming\cacaoweb [-] Dossier supprimé : C:\Users\Alexandre\AppData\Roaming\Mozilla\Firefox\Profiles\1kx814zy.default\extensions\cacaoweb@cacaoweb.org [-] Dossier supprimé : C:\Program Files\avg web tuneup [-] Dossier supprimé : C:\Program Files\Common Files\AVG Secure Search ***** [ Fichiers ] ***** [-] Fichier supprimé : C:\Users\Alexandre\Desktop\cacaoweb.exe [-] Fichier supprimé : C:\Users\Alexandre\AppData\Roaming\Mozilla\Firefox\Profiles\1kx814zy.default\extensions\Avg@toolbar.xpi [-] Fichier supprimé : C:\Users\Alexandre\AppData\Roaming\Mozilla\Firefox\Profiles\1kx814zy.default\searchplugins\avg-secure-search.xml ***** [ DLLs ] ***** ***** [ WMI ] ***** ***** [ Raccourcis ] ***** ***** [ Tâches planifiées ] ***** ***** [ Registre ] ***** [-] Clé supprimée : HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\avgsh [-] Clé supprimée : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin [-] Clé supprimée : HKLM\SOFTWARE\Classes\s [-] Clé supprimée : HKLM\SOFTWARE\Classes\ScriptHelper.GenericWnd [-] Clé supprimée : HKLM\SOFTWARE\Classes\ScriptHelper.GenericWnd.1 [-] Clé supprimée : HKLM\SOFTWARE\Classes\ScriptHelper.NativeApi [-] Clé supprimée : HKLM\SOFTWARE\Classes\ScriptHelper.NativeApi.1 [-] Clé supprimée : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi [-] Clé supprimée : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1 [-] Clé supprimée : HKLM\SOFTWARE\Classes\WtuServer.WtuServerObj [-] Clé supprimée : HKLM\SOFTWARE\Classes\WtuServer.WtuServerObj.1 [-] Clé supprimée : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3} [-] Clé supprimée : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} [-] Clé supprimée : HKLM\SOFTWARE\Classes\CLSID\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A} [-] Clé supprimée : HKLM\SOFTWARE\Classes\CLSID\{CA3A5461-96B5-46DD-9341-5350D3C94615} [-] Clé supprimée : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} [-] Clé supprimée : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} [-] Clé supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7} [-] Clé supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233} [-] Clé supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A} [-] Clé supprimée : HKCU\Software\cacaoweb [-] Clé supprimée : HKCU\Software\csastats [-] Clé supprimée : HKLM\SOFTWARE\AVG Tuneup [-] Donnée restaurée : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] [-] Donnée restaurée : HKU\S-1-5-21-3787588258-1361987561-104562147-1001\Software\Microsoft\Internet Explorer\Main [Start Page] [-] Valeur supprimée : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [TCP Query User{596FF649-0E7E-4118-8EA9-D51D548D88A3}C:\users\alexandre\appdata\roaming\cacaoweb\cacaoweb.exe] [-] Valeur supprimée : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [UDP Query User{8D626E53-EAAB-40DE-BB2E-B450D15F21BF}C:\users\alexandre\appdata\roaming\cacaoweb\cacaoweb.exe] [-] Valeur supprimée : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [TCP Query User{826223FA-1141-49D1-8A38-19F9F9E5599B}C:\users\alexandre\desktop\cacaoweb.exe] [-] Valeur supprimée : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [UDP Query User{6DB16246-BB0F-480B-981A-0CE79D746345}C:\users\alexandre\desktop\cacaoweb.exe] [-] Valeur supprimée : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [TCP Query User{F412D200-C552-4297-B2A6-1E16544F8779}C:\users\alexandre\appdata\roaming\cacaoweb\cacaoweb.exe] [-] Valeur supprimée : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [UDP Query User{9CB28AE9-A3E9-4970-B16B-35F60CE17CA2}C:\users\alexandre\appdata\roaming\cacaoweb\cacaoweb.exe] [-] Clé supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} [-] Donnée restaurée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] [-] Donnée restaurée : HKU\S-1-5-21-3787588258-1361987561-104562147-1001\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] [-] Valeur supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [cacaoweb] [#] Valeur supprimée : HKU\S-1-5-21-3787588258-1361987561-104562147-1001\Software\Microsoft\Windows\CurrentVersion\Run [cacaoweb] [-] Valeur supprimée : HKU\S-1-5-21-3787588258-1361987561-104562147-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [cacaoweb] [-] Valeur supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt] ***** [ Navigateurs ] ***** ************************* :: Clés "Tracing" supprimées :: Paramètres Winsock réinitialisés ************************* C:\AdwCleaner\AdwCleaner[C1].txt - [8346 octets] - [30/01/2016 08:25:38] C:\AdwCleaner\AdwCleaner[S1].txt - [8991 octets] - [30/01/2016 08:22:57] ########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [8494 octets] ##########