# -------------------------------
# Malwarebytes AdwCleaner 8.0.1.0
# -------------------------------
# Build:    12-17-2019
# Database: 2019-12-17.1 (Cloud)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    12-30-2019
# Duration: 00:00:12
# OS:       Windows 10 Home
# Cleaned:  47
# Failed:   0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted       C:\ProgramData\4116FE0227737BC9
Deleted       C:\ProgramData\ALLSAVER
Deleted       C:\ProgramData\RoboSaver
Deleted       C:\ProgramData\TAKETHECOUPON
Deleted       C:\ProgramData\YOUTUBEADBLOCKE
Deleted       C:\Users\Administrator\AppData\Local\Chromatic Browser
Deleted       C:\Users\Administrator\AppData\Local\torch
Deleted       C:\Users\Guest\AppData\Local\Chromatic Browser
Deleted       C:\Users\Guest\AppData\Local\torch
Deleted       C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser
Deleted       C:\Users\HomeGroupUser$\AppData\Local\torch
Deleted       C:\Users\Jana\AppData\Local\torch
Deleted       C:\Users\Public\Documents\Downloaded Installers

***** [ Files ] *****

Deleted       C:\Users\Jana\AppData\Local\Google\Chrome\User Data\Default\LOCAL STORAGE\HTTP_MYRADIOACCESS.DL.MYWAY.COM_0.LOCALSTORAGE
Deleted       C:\Users\Jana\AppData\Local\Google\Chrome\User Data\Default\LOCAL STORAGE\HTTP_MYRADIOACCESS.DL.MYWAY.COM_0.LOCALSTORAGE-JOURNAL
Deleted       C:\Users\Jana\AppData\Local\Google\Chrome\User Data\Default\LOCAL STORAGE\HTTP_MYRADIOACCESS.DL.TB.ASK.COM_0.LOCALSTORAGE
Deleted       C:\Users\Jana\AppData\Local\Google\Chrome\User Data\Default\LOCAL STORAGE\HTTP_MYRADIOACCESS.DL.TB.ASK.COM_0.LOCALSTORAGE-JOURNAL
Deleted       C:\Windows\System32\drivers\swdumon.sys
Deleted       C:\Windows\System32\log\iSafeKrnlCall.log

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted       HKCU\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Deleted       HKCU\Software\Conduit
Deleted       HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com
Deleted       HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|BackgroundContainer
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|BackgroundContainerV2
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|Optimizer Pro
Deleted       HKCU\Software\Mozilla\Extends
Deleted       HKLM\SOFTWARE\Classes\Toolbar.CT1750559
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{65CA9B83-2A85-40C3-935C-C788698BE695}
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2F993686-9316-42CD-AA1B-EED49C5DCB56}
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65CA9B83-2A85-40C3-935C-C788698BE695}
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6A540626-C25F-49CF-83B1-9BE2ABA65AAC}
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{947EC942-F0D9-4C1D-B5C8-D93B7D457536}
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\LaunchSignup
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Optimizer Pro Schedule
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Tuneup Pro
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\advanced-System Protector_startup
Deleted       HKLM\Software\Microsoft\Internet Explorer\Main|Default_Search_URL
Deleted       HKLM\Software\Microsoft\Internet Explorer\Main|Search Page
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|ApnTBMon
Deleted       HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID|{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Deleted       HKLM\Software\Wow6432Node\SlimWare Utilities Inc
Deleted       HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID|{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Deleted       HKU\.DEFAULT\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Deleted       HKU\.DEFAULT\Software\AskPartnerNetwork
Deleted       HKU\S-1-5-18\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Deleted       HKU\S-1-5-18\Software\AskPartnerNetwork

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [10336 octets] - [30/12/2019 09:13:21]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
