# ------------------------------- # Malwarebytes AdwCleaner 8.4.0.0 # ------------------------------- # Build: 08-30-2022 # Database: 2023-07-19.3 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 01-10-2024 # Duration: 00:00:01 # OS: Windows 10 (Build 19045.3803) # Cleaned: 29 # Failed: 0 ***** [ Services ] ***** Deleted Update service ***** [ Folders ] ***** Deleted C:\Program Files (x86)\SystemHealer Deleted C:\ProgramData\Application Data\Lavasoft\Web Companion Deleted C:\ProgramData\IObit\Advanced SystemCare Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Healer Deleted C:\Users\Kacper\AppData\Local\SystemHealer Deleted C:\Users\Kacper\AppData\Roaming\Browser-Security Deleted C:\Users\Kacper\AppData\Roaming\GoldenGate Deleted C:\Users\Kacper\AppData\Roaming\IObit\Advanced SystemCare Deleted C:\Users\Kacper\AppData\Roaming\System Healer ***** [ Files ] ***** Deleted C:\Users\Kacper\AppData\Local\PO.DB Deleted C:\Users\Kacper\appdata\local\installationconfiguration.xml ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** Deleted C:\Windows\System32\Tasks\DRIVER BOOSTER SCHEDULER ***** [ Registry ] ***** Deleted HKCU\Software\1Q1F1S1C1P1E1C1F1N1C1T1H2UtF1E1I Deleted HKCU\Software\GoldenGate Deleted HKCU\Software\Lavasoft\Web Companion Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|Web Companion Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|safe_urls768 Deleted HKCU\Software\PRODUCTSETUP Deleted HKCU\Software\System Healer Deleted HKCU\Software\csastats Deleted HKCU\Software\dobreprogramy Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{871A4EF3-9180-4E91-92B8-F114E92FFF69} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Driver Booster Scheduler Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{2014C6A8-95C5-40F3-8DEB-9B2324102FF9} Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{C3081F4D-5220-408F-BA9D-254F56A6AE2F} Deleted HKLM\Software\Wow6432Node\Lavasoft\Web Companion Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\SystemHealer_is1 Deleted HKLM\System\Setup\FirstBoot\Services\Update service ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** No malicious Chromium URLs cleaned. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ***** [ Hosts File Entries ] ***** No malicious hosts file entries cleaned. ***** [ Preinstalled Software ] ***** No Preinstalled Software cleaned. ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* AdwCleaner[S00].txt - [3885 octets] - [10/01/2024 13:53:42] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########