# ------------------------------- # Malwarebytes AdwCleaner 8.0.1.0 # ------------------------------- # Build: 12-17-2019 # Database: 2020-01-06.1 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 01-13-2020 # Duration: 00:00:10 # OS: Windows 10 Home # Cleaned: 65 # Failed: 2 ***** [ Services ] ***** Deleted Amazon Assistant Service Deleted GeekBuddyRSP Deleted scan ***** [ Folders ] ***** Deleted C:\Program Files (x86)\WinThruster Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Tonic Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UTILILAB Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinThruster Deleted C:\ProgramData\WinThruster Deleted C:\ProgramData\WinZip\WinZip Driver Updater Deleted C:\ProgramData\WinZip\WinZip Smart Monitor Deleted C:\Users\Bur K CX30JJAD 8janv\AppData\Local\WinSweeper Deleted C:\Users\manqu\AppData\Roaming\WinThruster Deleted C:\Users\self-vot 10Crem Tern\AppData\LocalLow\IObit\Advanced SystemCare Deleted C:\Users\self-vot 10Crem Tern\AppData\Roaming\IObit\Advanced SystemCare Not Deleted C:\Program Files (x86)\Amazon\Amazon Assistant ***** [ Files ] ***** Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AmazonAssistant.lnk Deleted C:\Users\Bur K CX30JJAD 8janv\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\AmazonAssistant.lnk Deleted C:\Users\Bur K CX30JJAD 8janv\Desktop\DriverDoc.lnk Deleted C:\Users\antifondance B Kin S-Vot 10Crem\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\AmazonAssistant.lnk Deleted C:\Users\dedie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\AmazonAssistant.lnk Deleted C:\Users\dédié 10Crem TechSmi\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\AmazonAssistant.lnk Deleted C:\Users\dépannage iPod\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\AmazonAssistant.lnk Deleted C:\Users\manqu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\AmazonAssistant.lnk Deleted C:\Users\manqu\Desktop\WinThruster.lnk ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** No malicious tasks cleaned. ***** [ Registry ] ***** Deleted HKCU\Software\AppDataLow\Software\Amazon\AmazonAssistant Deleted HKCU\Software\Microsoft\Internet Explorer\DOMStorage\amazonbrowserapp.co.uk Deleted HKCU\Software\Microsoft\Internet Explorer\DOMStorage\titan.service.amazonbrowserapp.co.uk Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0ddcea2a-7b00-4349-8acb-af7ba6da251f} Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0ddcea2a-7b00-4349-8acb-af7ba6da251f} Deleted HKLM\Software\Classes\AppID\{F18AE3C4-D2AD-42AC-9282-509DCF035D06} Deleted HKLM\Software\Classes\CLSID\{0ddcea2a-7b00-4349-8acb-af7ba6da251f} Deleted HKLM\Software\Classes\CLSID\{4ABDD67C-44E3-42E0-816D-D7F0E54761DF} Deleted HKLM\Software\Classes\CLSID\{65416821-217D-44BD-9C61-F53398FB1B46} Deleted HKLM\Software\Classes\CLSID\{6DFC0DC7-FDC5-44C2-8B80-5977BA8F8ACC} Deleted HKLM\Software\Classes\CLSID\{7B28BD81-CC45-4ADB-A043-12E35A15C402} Deleted HKLM\Software\Classes\CLSID\{94915A56-4D71-4F85-B59C-CC040F5AC6F0} Deleted HKLM\Software\Classes\CLSID\{E5AFF088-92F8-41a9-8CAB-E9CDCCE967AC} Deleted HKLM\Software\Classes\Interface\{4ABDD67C-44E3-42E0-816D-D7F0E54761DF} Deleted HKLM\Software\Classes\Interface\{65416821-217D-44BD-9C61-F53398FB1B46} Deleted HKLM\Software\Classes\TypeLib\{34F4FEAF-4921-4B5D-8BE5-CA384BFFC2CE} Deleted HKLM\Software\Classes\TypeLib\{39A37965-0A96-43A3-870E-821FE5C84B0B} Deleted HKLM\Software\Classes\TypeLib\{55B621F9-BAE8-4CF7-9D76-1DB25CD95850} Deleted HKLM\Software\Classes\TypeLib\{E6AB05A4-A387-4083-91A5-E89A8DCEEBC0} Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0ddcea2a-7b00-4349-8acb-af7ba6da251f} Deleted HKLM\Software\Wow6432Node\Amazon\AmazonAssistant Deleted HKLM\Software\Wow6432Node\\AppDataLow\Software\Amazon\AmazonAssistant Deleted HKLM\Software\Wow6432Node\\Classes\AppID\{F18AE3C4-D2AD-42AC-9282-509DCF035D06} Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{0ddcea2a-7b00-4349-8acb-af7ba6da251f} Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{7B28BD81-CC45-4ADB-A043-12E35A15C402} Deleted HKLM\Software\Wow6432Node\\Classes\Interface\{4ABDD67C-44E3-42E0-816D-D7F0E54761DF} Deleted HKLM\Software\Wow6432Node\\Classes\Interface\{65416821-217D-44BD-9C61-F53398FB1B46} Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{34F4FEAF-4921-4B5D-8BE5-CA384BFFC2CE} Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{39A37965-0A96-43A3-870E-821FE5C84B0B} Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{55B621F9-BAE8-4CF7-9D76-1DB25CD95850} Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{E6AB05A4-A387-4083-91A5-E89A8DCEEBC0} Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0ddcea2a-7b00-4349-8acb-af7ba6da251f} Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\WinThruster_is1 Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\Amazon Assistant Service Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\geekbuddyrsp Deleted HKU\S-1-5-21-585618987-2196609313-2028458824-1005\Software\AppDataLow\Software\Amazon\AmazonAssistant Deleted HKU\S-1-5-21-585618987-2196609313-2028458824-1005\Software\Microsoft\Internet Explorer\DOMStorage\amazonbrowserapp.co.uk Deleted HKU\S-1-5-21-585618987-2196609313-2028458824-1005\Software\Microsoft\Internet Explorer\DOMStorage\titan.service.amazonbrowserapp.co.uk Deleted HKU\S-1-5-21-585618987-2196609313-2028458824-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0ddcea2a-7b00-4349-8acb-af7ba6da251f} Deleted HKU\S-1-5-21-585618987-2196609313-2028458824-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0ddcea2a-7b00-4349-8acb-af7ba6da251f} ***** [ Chromium (and derivatives) ] ***** Not Deleted IObit Surfing Protection & Ads Removal ***** [ Chromium URLs ] ***** No malicious Chromium URLs cleaned. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ***** [ Preinstalled Software ] ***** Deleted Preinstalled.SamsungSAgent Folder C:\Program Files\SAMSUNG\S AGENT Deleted Preinstalled.SamsungSAgent Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{0052BF58-5307-4F7D-A379-8F4EC9212FA8} ************************* [+] Delete IFEO [+] Delete Prefetch [+] Delete Tracing Keys [+] Reset BITS [+] Reset Windows Firewall [+] Reset Hosts File [+] Reset IPSec [+] Reset Chromium Policies [+] Reset IE Policies [+] Reset Proxy Settings [+] Reset TCP/IP [+] Reset Winsock ************************* AdwCleaner[C00].txt.reco - [9899 octets] - [13/01/2020 15:42:56] AdwCleaner[S00].txt.bora - [11229 octets] - [13/01/2020 15:42:56] AdwCleaner_Debug.log - [43505 octets] - [13/01/2020 19:02:47] AdwCleaner[S00].txt - [8668 octets] - [13/01/2020 19:03:41] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########