# ------------------------------- # Malwarebytes AdwCleaner 8.0.8.0 # ------------------------------- # Build: 10-08-2020 # Database: 2020-09-29.1 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 10-29-2020 # Duration: 00:01:08 # OS: Windows 10 Home # Cleaned: 37 # Failed: 0 ***** [ Services ] ***** Deleted WtuSystemSupport Deleted vToolbarUpdater40.3.8 ***** [ Folders ] ***** Deleted C:\Program Files (x86)\Common Files\AVG Secure Search Deleted C:\Program Files (x86)\avg web tuneup Deleted C:\Program Files\Common Files\AVG Secure Search Deleted C:\Program Files\avg web tuneup Deleted C:\ProgramData\avg web tuneup Deleted C:\Users\wendy_000\AppData\Local\Packages\windows_ie_ac_001\AC\AVG Web TuneUp Deleted C:\Users\wendy_000\AppData\Local\avg web tuneup ***** [ Files ] ***** Deleted C:\Users\Bike Ibiza\Favorites\Booking.com.url Deleted C:\Users\UpdatusUser\Favorites\Booking.com.url Deleted C:\Users\defaultuser100000\Favorites\Booking.com.url Deleted C:\Users\wendy_000\Favorites\Booking.com.url Deleted C:\Windows\ServiceProfiles\LocalService\Favorites\Booking.com.url Deleted C:\Windows\ServiceProfiles\NetworkService\Favorites\Booking.com.url ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** No malicious tasks cleaned. ***** [ Registry ] ***** Deleted HKCU\Software\Microsoft\Internet Explorer\Main|Start Page Deleted HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} Deleted HKCU\Software\{DAF8B7E5-449D-4180-8281-10E536E597F2} Deleted HKLM\Software\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} Deleted HKLM\Software\Classes\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7} Deleted HKLM\Software\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} Deleted HKLM\Software\Classes\WtuServer.WtuServerObj Deleted HKLM\Software\Classes\WtuServer.WtuServerObj.1 Deleted HKLM\Software\Wow6432Node\AVG Tuneup Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3} Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{CA3A5461-96B5-46DD-9341-5350D3C94615} Deleted HKLM\Software\Wow6432Node\\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7} Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} Deleted HKLM\Software\Wow6432Node\\Google\Chrome\NativeMessagingHosts\avgsh Deleted HKLM\Software\Wow6432Node\{DAF8B7E5-449D-4180-8281-10E536E597F2} Deleted HKLM\System\Setup\FirstBoot\Services\WtuSystemSupport Deleted HKLM\System\Setup\FirstBoot\Services\vToolbarUpdater40.3.8 Deleted HKU\S-1-5-21-2738978234-4125683323-18102037-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki Deleted HKU\S-1-5-21-2738978234-4125683323-18102037-1001\Software\Pokki ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** Deleted Web Search ***** [ Firefox (and derivatives) ] ***** Deleted AVG Web TuneUp - avg@toolbar ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ***** [ Hosts File Entries ] ***** No malicious hosts file entries cleaned. ***** [ Preinstalled Software ] ***** No Preinstalled Software cleaned. ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* AdwCleaner[S00].txt - [15039 octets] - [29/10/2020 18:22:54] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########