# ------------------------------- # Malwarebytes AdwCleaner 8.0.5.0 # ------------------------------- # Build: 05-25-2020 # Database: 2020-05-26.2 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 05-26-2020 # Duration: 00:00:08 # OS: Windows 10 Pro # Cleaned: 28 # Failed: 3 ***** [ Services ] ***** Deleted SecurityService Deleted webshieldfilter ***** [ Folders ] ***** Deleted C:\Program Files (x86)\Common Files\IObit\Advanced SystemCare Deleted C:\Program Files (x86)\IObit\Advanced SystemCare Deleted C:\ProgramData\IObit\Advanced SystemCare Deleted C:\ProgramData\SecuritySuite Deleted C:\Users\Backup\Documents\TotalAV Deleted C:\Users\rodra\AppData\LocalLow\IObit\Advanced SystemCare Deleted C:\Users\rodra\AppData\Roaming\IObit\Advanced SystemCare Deleted C:\Users\rodra\Documents\TotalAV Deleted C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\TotalAV Not Deleted C:\Program Files (x86)\TotalAV Not Deleted C:\ProgramData\7ADDD474 Not Deleted C:\ProgramData\TotalAV ***** [ Files ] ***** Deleted C:\Users\Backup\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TotalAV.lnk Deleted C:\Users\Public\Desktop\TotalAV.lnk Deleted C:\Users\rodra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TotalAV.lnk Deleted C:\Windows\System32\drivers\webshieldfilter.sys ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** Deleted C:\Windows\System32\Tasks\DRIVER BOOSTER SCHEDULER ***** [ Registry ] ***** Deleted HKCU\Software\Bitberry Deleted HKCU\Software\SSProtect Deleted HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\com.totalav.passwordvaultassistant Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9DFA92FA-45A1-46CB-82A8-16B12348685E} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Driver Booster Scheduler Deleted HKLM\SOFTWARE\Mozilla\NativeMessagingHosts\com.totalav.passwordvaultassistant Deleted HKLM\Software\Wow6432Node\IOBIT\ASC Deleted HKLM\Software\Wow6432Node\IObit\Advanced SystemCare Deleted HKLM\Software\Wow6432Node\IObit\RealTimeProtector Deleted HKLM\Software\Wow6432Node\Proxy Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\TotalAV Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\SecurityService ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** No malicious Chromium URLs cleaned. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ***** [ Hosts File Entries ] ***** No malicious hosts file entries cleaned. ***** [ Preinstalled Software ] ***** No Preinstalled Software cleaned. ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* AdwCleaner[S00].txt - [3861 octets] - [26/05/2020 20:02:08] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########