# AdwCleaner 7.0.8.0 - Logfile created on Wed Feb 21 18:08:10 2018 # Updated on 2018/08/02 by Malwarebytes # Running on Windows 7 Home Premium (X64) # Mode: clean # Support: https://www.malwarebytes.com/support ***** [ Services ] ***** Deleted: ByteFenceService Deleted: rtop ***** [ Folders ] ***** Deleted: C:\Program Files (x86)\Common Files\freemake shared Deleted: C:\ProgramData\ByteFence Deleted: C:\ProgramData\Application Data\ByteFence Deleted: C:\Program Files\ByteFence Deleted: C:\Users\All Users\ByteFence Deleted: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ByteFence Anti-Malware Deleted: C:\Program Files (x86)\5ba622e246a7587fe09f6fc4c880e483 ***** [ Files ] ***** Deleted: C:\Users\Christiane\AppData\Roaming\Mozilla\Firefox\Profiles\xp7y20ia.default\invalidprefs.js Deleted: C:\Users\Christiane\AppData\Roaming\Mozilla\Firefox\Profiles\xp7y20ia.default\searchplugins\yahoo! powered.xml Deleted: C:\Users\Christiane\AppData\Roaming\Mozilla\Firefox\Profiles\xp7y20ia.default\SEARCHPLUGINS\YAHOO! POWERED.XML ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** Deleted: ByteFence ***** [ Registry ] ***** Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EE171732-BEB4-4576-887D-CB62727F01CA} Deleted: [Key] - HKLM\SOFTWARE\Classes\*\shell\ByteFence File Scan Deleted: [Key] - HKLM\SOFTWARE\Classes\Directory\shell\ByteFence Folder Scan Deleted: [Key] - HKLM\SOFTWARE\ByteFence Deleted: [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ByteFence Deleted: [Key] - HKU\.DEFAULT\Software\ByteFence Deleted: [Key] - HKU\S-1-5-21-1667121263-4263940445-3353855160-1000\Software\ByteFence Deleted: [Key] - HKU\S-1-5-18\Software\ByteFence Deleted: [Key] - HKCU\Software\ByteFence Deleted: [Key] - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application Deleted: [Key] - HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application Deleted: [Key] - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Reason\ReasonByteFence Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ProductUpdater Deleted: [Key] - HKU\S-1-5-21-1667121263-4263940445-3353855160-1000\Software\csastats Deleted: [Key] - HKCU\Software\csastats Deleted: [Key] - HKU\S-1-5-21-1667121263-4263940445-3353855160-1000\Software\PRODUCTSETUP Deleted: [Key] - HKCU\Software\PRODUCTSETUP Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\FMUpdater.dll Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\Newtonsoft.Json.dll Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\GAnalytics.dll Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\GoCartMonad.dll ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries deleted. ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries deleted. ************************* ::Tracing keys deleted ::Winsock settings cleared ::Additional Actions: 0 ************************* C:/AdwCleaner/AdwCleaner[S0].txt - [4178 B] - [2018/2/21 18:6:20] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt ##########