# ------------------------------- # Malwarebytes AdwCleaner 7.2.3.1 # ------------------------------- # Build: 09-03-2018 # Database: 2018-09-06.1 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 09-07-2018 # Duration: 00:00:46 # OS: Windows 8.1 # Cleaned: 44 # Failed: 0 ***** [ Services ] ***** No malicious services cleaned. ***** [ Folders ] ***** Deleted C:\Users\Arno\AppData\Local\VirtualStore\ProgramData\Tencent Deleted C:\Users\inesv_000\AppData\Local\VirtualStore\ProgramData\Tencent Deleted C:\Users\salomé\AppData\Local\VirtualStore\ProgramData\Tencent Deleted C:\Users\sidon_000\AppData\Local\VirtualStore\ProgramData\Tencent Deleted C:\Users\inesv_000\AppData\Local\VirtualStore\ProgramData\Logic Handler Deleted C:\Users\salomé\AppData\Local\VirtualStore\ProgramData\Logic Handler Deleted C:\Users\sidon_000\AppData\Local\VirtualStore\ProgramData\Logic Handler Deleted C:\Users\Public\Documents\Downloaded Installers Deleted C:\Users\inesv_000\AppData\Local\VirtualStore\ProgramData\CloudPrinter Deleted C:\Users\salomé\AppData\Local\VirtualStore\ProgramData\CloudPrinter Deleted C:\Users\sidon_000\AppData\Local\VirtualStore\ProgramData\CloudPrinter Deleted C:\Users\inesv_000\AppData\Local\VirtualStore\ProgramData\TXQMPC Deleted C:\Users\salomé\AppData\Local\VirtualStore\ProgramData\TXQMPC Deleted C:\Users\sidon_000\AppData\Local\VirtualStore\ProgramData\TXQMPC ***** [ Files ] ***** No malicious files cleaned. ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** No malicious tasks cleaned. ***** [ Registry ] ***** Deleted HKU\S-1-5-18\SOFTWARE\D67FFBC4E4B7D4034130184B53FF74A6 Deleted HKU\.DEFAULT\SOFTWARE\D67FFBC4E4B7D4034130184B53FF74A6 Deleted HKLM\Software\Wow6432Node\D67FFBC4E4B7D4034130184B53FF74A6 Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{354628AB-A6F8-469F-9E50-9E9CDE006AA9} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{06D45488-FB88-4311-B080-258C50B8BA23} Deleted HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com Deleted HKU\S-1-5-21-233976193-1382472177-2432614907-1009\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com Deleted HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com Deleted HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com Deleted HKU\S-1-5-21-233976193-1382472177-2432614907-1009\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com Deleted HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com ***** [ Chromium (and derivatives) ] ***** Deleted Bazz Search Deleted Managera Deleted Extutil Deleted igjjkeeamkpihpncmmbgdkhdnjpcfmfb Deleted Protecteur de web – Protection fiable contre l’hameçonnage ***** [ Chromium URLs ] ***** Deleted Google Deleted Google Deleted Google Deleted Google Deleted istartsurf Deleted istartsurf Deleted Astromenda Deleted Astromenda Deleted Binkiland Deleted Binkiland Deleted Binkiland Deleted Binkiland ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* AdwCleaner[S00].txt - [5016 octets] - [07/09/2018 08:23:04] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########