# ------------------------------- # Malwarebytes AdwCleaner 7.2.2.0 # ------------------------------- # Build: 07-17-2018 # Database: 2018-07-16.3 # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 07-17-2018 # Duration: 00:00:38 # OS: Windows 8.1 # Cleaned: 78 # Failed: 2 ***** [ Services ] ***** No malicious services cleaned. ***** [ Folders ] ***** Deleted C:\Program Files (x86)\NATIVE INFO Deleted C:\ProgramData\BitGuard Deleted C:\ProgramData\BrowserProtect Deleted C:\Program Files\ByteFence Deleted C:\Program Files (x86)\DriverRestore Deleted C:\Users\isa\AppData\Local\Gameo Deleted C:\Users\isa\AppData\Roaming\Gameo Deleted C:\ProgramData\Browser Manager Deleted C:\Users\isa\AppData\Roaming\GoldenGate Deleted C:\ProgramData\wincert Deleted C:\ProgramData\torchcrashhandler Deleted C:\Users\isa\AppData\Local\torch Deleted C:\Users\isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\torch Deleted C:\Program Files (x86)\Movies App Deleted C:\Program Files (x86)\movies toolbar Deleted C:\ProgramData\Reimage Protector Deleted C:\Users\isa\Documents\PROPCCleaner Deleted C:\Program Files\Reimage ***** [ Files ] ***** Deleted C:\Users\isa\Desktop\Malavida_Download_Manager.exe Deleted C:\Users\isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Play Games Online.url Deleted C:\Users\isa\Downloads\ReimageRepair.exe Deleted C:\Windows\Reimage.ini Deleted C:\Users\isa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Torch.lnk Deleted C:\Users\isa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Torch.lnk Deleted C:\Users\isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch.lnk Deleted C:\Users\isa\Desktop\Torch.lnk ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** Deleted C:\Windows\System32\Tasks\ReimageUpdater ***** [ Registry ] ***** Deleted HKCU\Software\APN DTX Deleted HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Reason\ReasonByteFence Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION|ByteFence.exe Deleted HKCU\Software\DataMngr Deleted HKLM\Software\Wow6432Node\DataMngr Deleted HKCU\Software\csastats Deleted HKCU\Software\GoldenGate Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\torch Deleted HKCU\Software\torch Deleted HKLM\Software\Wow6432Node\torch Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{cfd32d46-7d3f-483f-bace-7172aec5592d} Deleted HKCU\Software\gameo Deleted HKLM\Software\Wow6432Node\Clients\StartMenuInternet\Torch Deleted HKLM\SOFTWARE\Clients\StartMenuInternet\Torch Deleted HKLM\SOFTWARE\Classes\Applications\Torch.exe Deleted HKLM\Software\Wow6432Node\Classes\AppID\REI_AxControl.DLL Deleted HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL Deleted HKLM\Software\Wow6432Node\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785} Deleted HKLM\Software\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A3A8BA13-8B56-46E6-8BC6-2746089B6CB2} Deleted HKLM\Software\Wow6432Node\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3} Deleted HKLM\Software\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3} Deleted HKLM\Software\Wow6432Node\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C} Deleted HKLM\Software\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{B853E835-9F24-4F4B-B55C-E554D15CCCD2} Deleted HKLM\Software\Wow6432Node\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A} Deleted HKLM\Software\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A} Deleted HKLM\Software\Wow6432Node\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36} Deleted HKLM\Software\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36} Deleted HKLM\Software\Wow6432Node\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546} Deleted HKLM\Software\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546} Deleted HKLM\Software\Wow6432Node\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} Deleted HKLM\Software\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10ECCE17-29B5-4880-A8F5-EAD298611484} Deleted HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} Deleted HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} Deleted HKCU\Software\PROPCCleanerLanguage Deleted HKCU\Software\PRODUCTSETUP Deleted HKCU\Software\Reimage Deleted HKLM\Software\Reimage Deleted HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief. Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8814B248-51B5-429E-8ACC-EE8435812A59} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ReimageUpdater ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** Deleted Ask.com Deleted Ask.com Deleted Softonic FR Deleted Softonic EN Deleted Softonic FR ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** Not Deleted searchinterneat-a.akamaihd.net Not Deleted searchinterneat-a.akamaihd.net ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* AdwCleaner[S00].txt - [7973 octets] - [17/07/2018 19:19:06] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########