I use AdwCleaner on a constant basis. Recently I scanned a computer with it to remove some residual shopathome.com issues. Afterwards I noticed an entire folder missing. After searching my C: drive, it showed it was now located in the quarantine folder created by AdwCleaner. Fearing the worst I looked back at the logs created from that scan. It shows nothing about that folder (and several other folders), having any issues. Yet they were moved to the quarantine folder anyway. Any ideas?

More specifically, it was a documents folder that was transfered from an old laptop.

Located in c:\users\Suzanne\Douments\Documents

The Second documents folder was completely moved to the quarantine folder. But the log doesnt say why.

Log:

# AdwCleaner v6.020 - Logfile created 21/09/2016 at 09:50:34 # Updated on 14/09/2016 by ToolsLib # Database : 2016-09-21.1 [Server] # Operating System : Windows 10 Home  (X64) # Username : Suzanne - SUZANNE-PC # Running from : G:\AdwCleaner.exe # Mode: Clean # Support : https://toolslib.net/forum



***** [ Services ] *****



***** [ Folders ] *****

[-] Folder deleted: C:\Users\Suzanne\AppData\Local\PackageAware [-] Folder deleted: C:\Users\Suzanne\AppData\LocalLow\ShopAtHome [-] Folder deleted: C:\Users\Suzanne\AppData\Roaming\ShopAtHome [-] Folder deleted: C:\Users\Suzanne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ShopAtHome.com Toolbar [-] Folder deleted: C:\Users\Suzanne\Desktop\Transfer [-] Folder deleted: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ShopAtHome.com Toolbar

***** [ Files ] *****

[-] File deleted: C:\Users\Suzanne\AppData\Local\Microsoft\Internet Explorer\DOMStore\RG1Z5XB1\download.recipehub[1].xml [-] File deleted: C:\END

***** [ DLL ] *****



***** [ WMI ] *****



***** [ Shortcuts ] *****



***** [ Scheduled Tasks ] *****



***** [ Registry ] *****

[-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\download.recipehub.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\recipehub.com [-] Key deleted: HKU\S-1-5-21-2176667033-2304803644-1335927003-1001\Software\Classes\ShopAtHomeHelper.CookiesManager [-] Key deleted: HKU\S-1-5-21-2176667033-2304803644-1335927003-1001\Software\Classes\ShopAtHomeHelper.CookiesManager.1 [-] Key deleted: HKU\S-1-5-21-2176667033-2304803644-1335927003-1001\Software\Classes\ShopAtHomeHelper.hxxpHandle302 [-] Key deleted: HKU\S-1-5-21-2176667033-2304803644-1335927003-1001\Software\Classes\ShopAtHomeHelper.hxxpHandle302.1 [-] Key deleted: HKU\S-1-5-21-2176667033-2304803644-1335927003-1001\Software\Classes\ShopAtHomeHelper.PostUrlWorker [-] Key deleted: HKU\S-1-5-21-2176667033-2304803644-1335927003-1001\Software\Classes\ShopAtHomeHelper.PostUrlWorker.1 [#] Key deleted on reboot: HKCU\Software\Classes\ShopAtHomeHelper.CookiesManager [#] Key deleted on reboot: HKCU\Software\Classes\ShopAtHomeHelper.CookiesManager.1 [#] Key deleted on reboot: HKCU\Software\Classes\ShopAtHomeHelper.hxxpHandle302 [#] Key deleted on reboot: HKCU\Software\Classes\ShopAtHomeHelper.hxxpHandle302.1 [#] Key deleted on reboot: HKCU\Software\Classes\ShopAtHomeHelper.PostUrlWorker [#] Key deleted on reboot: HKCU\Software\Classes\ShopAtHomeHelper.PostUrlWorker.1 [-] Key deleted: HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler [-] Key deleted: HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler.1 [-] Key deleted: HKLM\SOFTWARE\Classes\protector_dll.Protector [-] Key deleted: HKLM\SOFTWARE\Classes\protector_dll.Protector.1 [-] Key deleted: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho [-] Key deleted: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1 [-] Key deleted: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib [-] Key deleted: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1 [-] Key deleted: HKLM\SOFTWARE\Classes\ShopAtHomeHelper.CookiesManager [-] Key deleted: HKLM\SOFTWARE\Classes\ShopAtHomeHelper.CookiesManager.1 [-] Key deleted: HKLM\SOFTWARE\Classes\ShopAtHomeHelper.hxxpHandle302 [-] Key deleted: HKLM\SOFTWARE\Classes\ShopAtHomeHelper.hxxpHandle302.1 [-] Key deleted: HKLM\SOFTWARE\Classes\ShopAtHomeHelper.PostUrlWorker [-] Key deleted: HKLM\SOFTWARE\Classes\ShopAtHomeHelper.PostUrlWorker.1 [-] Key deleted: HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils [-] Key deleted: HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils.1 [-] Key deleted: HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager [-] Key deleted: HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager.1 [-] Key deleted: HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager [-] Key deleted: HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager.1 [-] Key deleted: HKLM\SOFTWARE\Classes\TbHelper.TbRequest [-] Key deleted: HKLM\SOFTWARE\Classes\TbHelper.TbRequest.1 [-] Key deleted: HKLM\SOFTWARE\Classes\TbHelper.TbTask [-] Key deleted: HKLM\SOFTWARE\Classes\TbHelper.TbTask.1 [-] Key deleted: HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper [-] Key deleted: HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper.1 [-] Key deleted: HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook [-] Key deleted: HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook.1 [#] Key deleted on reboot: [x64] HKCU\Software\Classes\ShopAtHomeHelper.CookiesManager [#] Key deleted on reboot: [x64] HKCU\Software\Classes\ShopAtHomeHelper.CookiesManager.1 [#] Key deleted on reboot: [x64] HKCU\Software\Classes\ShopAtHomeHelper.hxxpHandle302 [#] Key deleted on reboot: [x64] HKCU\Software\Classes\ShopAtHomeHelper.hxxpHandle302.1 [#] Key deleted on reboot: [x64] HKCU\Software\Classes\ShopAtHomeHelper.PostUrlWorker [#] Key deleted on reboot: [x64] HKCU\Software\Classes\ShopAtHomeHelper.PostUrlWorker.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\ShopAtHomeHelper.CookiesManager [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\ShopAtHomeHelper.CookiesManager.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\ShopAtHomeHelper.hxxpHandle302 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\ShopAtHomeHelper.hxxpHandle302.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\ShopAtHomeHelper.PostUrlWorker [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\ShopAtHomeHelper.PostUrlWorker.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\TbHelper.TbRequest [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\TbHelper.TbRequest.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\TbHelper.TbTask [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\TbHelper.TbTask.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook.1 [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291} [-] Key deleted: HKCU\Software\Classes\CLSID\{D565B35E-B787-40FA-95E3-E3562F8FC1A0} [-] Key deleted: HKCU\Software\Classes\CLSID\{08613A51-6E3E-43CC-9ECF-DD58B5837341} [-] Key deleted: HKCU\Software\Classes\CLSID\{153EDC41-A2CC-4BEB-9EC8-008242389E50} [-] Key deleted: HKCU\Software\Classes\CLSID\{188028B8-D91D-4BE2-BABA-68E32BDE4420} [-] Key deleted: HKCU\Software\Classes\CLSID\{28E74F15-18C2-465E-B545-6CC738121C68} [-] Key deleted: HKCU\Software\Classes\CLSID\{2BF6042B-B9B1-46D9-A3F8-9C987FADD4C6} [-] Key deleted: HKCU\Software\Classes\CLSID\{40A222E2-93B1-45F9-9B07-0D1160A31A6C} [-] Key deleted: HKCU\Software\Classes\CLSID\{6325A84C-E746-4007-A9C5-E4C1A50ED61F} [-] Key deleted: HKCU\Software\Classes\CLSID\{9BCA87A0-5B8F-4500-A5AF-EA1279714FDF} [-] Key deleted: HKCU\Software\Classes\CLSID\{BB17DE65-B548-48C2-AC73-1FD1996C7261} [-] Key deleted: HKCU\Software\Classes\CLSID\{C77D3EEF-FDCA-4D37-B0D2-5FF650E07825} [-] Key deleted: HKCU\Software\Classes\CLSID\{EA70EB31-CBAD-4862-AFDA-DCFCC32722ED} [-] Key deleted: HKCU\Software\Classes\CLSID\{EC9100F8-5918-4F1B-9CC1-4D34A64E0FE0} [-] Key deleted: HKCU\Software\Classes\CLSID\{F1A1ABE3-F454-4DD9-B520-01F2EEC5F0DD} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{1C950DE5-D31E-42FB-AFB9-91B0161633D8} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{3BDF4CE9-E81D-432B-A55E-9F0570CE811F} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{A9A56B8E-2DEB-4ED3-BC92-1FA450BCE1A5} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{AE338F6D-5A7C-4D1D-86E3-C618532079B5} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{C339D489-FABC-41DD-B39D-276101667C70} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{D433A9D0-8267-40CB-8AD5-24F22FA5373F} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{D565B35E-B787-40FA-95E3-E3562F8FC1A0} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{D89031C2-10DA-4C90-9A62-FCED012BC46B} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{66516A07-F617-488A-90CF-4E690CFB3C5F} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{7E65CDDB-BB80-4C5D-8B07-5E280CCABC15} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{9912DD71-1FDF-455B-99D3-D690A1C607D8} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{DC4F1329-2852-42D3-83F1-ED8DF06E3EC7} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{311B58DC-A4DC-4B04-B1B5-60299AD3D803} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{08613A51-6E3E-43CC-9ECF-DD58B5837341} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{153EDC41-A2CC-4BEB-9EC8-008242389E50} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{188028B8-D91D-4BE2-BABA-68E32BDE4420} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{28E74F15-18C2-465E-B545-6CC738121C68} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{2BF6042B-B9B1-46D9-A3F8-9C987FADD4C6} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{40A222E2-93B1-45F9-9B07-0D1160A31A6C} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{6325A84C-E746-4007-A9C5-E4C1A50ED61F} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{9BCA87A0-5B8F-4500-A5AF-EA1279714FDF} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{BB17DE65-B548-48C2-AC73-1FD1996C7261} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{C77D3EEF-FDCA-4D37-B0D2-5FF650E07825} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{EA70EB31-CBAD-4862-AFDA-DCFCC32722ED} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{EC9100F8-5918-4F1B-9CC1-4D34A64E0FE0} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{F1A1ABE3-F454-4DD9-B520-01F2EEC5F0DD} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{40A61B9E-B111-46EE-A1F2-C1100192BA48} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{0FA32667-9A8A-4E9C-902F-CA3323180003} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{6B458F62-592F-4B25-8967-E6A350A59328} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{FCC9CDD3-EFFF-11D1-A9F0-00A0244AC403} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{B87F8B63-7274-43FD-87FA-09D3B7496148} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{C4BAE205-5E02-4E32-876E-F34B4E2D000C} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{CC6A58F3-FD45-4D29-BD83-3F87ACEAAEEE} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{76481128-CCDC-4073-8F65-B06F23B138FC} [-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{66516A07-F617-488A-90CF-4E690CFB3C5F} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{66516A07-F617-488A-90CF-4E690CFB3C5F} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{311B58DC-A4DC-4B04-B1B5-60299AD3D803} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{66516A07-F617-488A-90CF-4E690CFB3C5F} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{311B58DC-A4DC-4B04-B1B5-60299AD3D803} [-] Value deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{311B58DC-A4DC-4B04-B1B5-60299AD3D803}] [-] Value deleted: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{311B58DC-A4DC-4B04-B1B5-60299AD3D803}] [-] Key deleted: HKU\S-1-5-21-2176667033-2304803644-1335927003-1001\Software\ShopAtHome.com [-] Key deleted: HKU\S-1-5-21-2176667033-2304803644-1335927003-1001\Software\usyndication.com [-] Key deleted: HKU\S-1-5-21-2176667033-2304803644-1335927003-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\ShopAtHome.com Helper [#] Key deleted on reboot: HKCU\Software\ShopAtHome.com [#] Key deleted on reboot: HKCU\Software\usyndication.com [-] Key deleted: HKLM\SOFTWARE\Uniblue [#] Key deleted on reboot: HKLM\SOFTWARE\Uniblue\DriverScanner [#] Key deleted on reboot: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\ShopAtHome.com Helper [-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopAtHome.com Helper [#] Key deleted on reboot: [x64] HKCU\Software\ShopAtHome.com [#] Key deleted on reboot: [x64] HKCU\Software\usyndication.com [-] Key deleted: [x64] HKLM\SOFTWARE\Tarma Installer [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\ShopAtHome.com Helper [-] Key deleted: HKU\S-1-5-21-2176667033-2304803644-1335927003-1001\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A} [-] Key deleted: HKU\S-1-5-21-2176667033-2304803644-1335927003-1001\Software\Microsoft\Internet Explorer\SearchScopes\{D081D654-EA5D-45E4-BB47-6BDB5057F76F} [#] Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A} [#] Key deleted on reboot: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{D081D654-EA5D-45E4-BB47-6BDB5057F76F} [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A} [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{D081D654-EA5D-45E4-BB47-6BDB5057F76F} [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\ask.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\shopathome.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.ask.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\shopathome.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\totalrecipesearch.dl.tb.ask.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.shopathome.com [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\ask.com [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\dotomi.com [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\driverupdate.net [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\sjc-usadmm.dotomi.com [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.ask.com [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.driverupdate.net [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\ask.com [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\dotomi.com [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\driverupdate.net [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\sjc-usadmm.dotomi.com [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.ask.com [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.driverupdate.net [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\ask.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\shopathome.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.ask.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\shopathome.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\totalrecipesearch.dl.tb.ask.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.shopathome.com [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\ask.com [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\dotomi.com [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\driverupdate.net [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\sjc-usadmm.dotomi.com [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.ask.com [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.driverupdate.net [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\ask.com [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\dotomi.com [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\driverupdate.net [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\sjc-usadmm.dotomi.com [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.ask.com [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.driverupdate.net [-] Key deleted: [x64] HKLM\SOFTWARE\Microsoft\Shared Tools\MsConfig\StartupReg\ShopAtHomeUpdater [-] Key deleted: [x64] HKLM\SOFTWARE\Microsoft\Shared Tools\MsConfig\StartupReg\ShopAtHomeWatcher [-] Key deleted: HKCU\Software\Classes\AppID\ShopAtHomeHelper.EXE [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\ShopAtHomeHelper.EXE [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\TbCommonUtils.DLL [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\TbHelper.EXE [-] Key deleted: HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd [#] Key deleted on reboot: [x64] HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd

***** [ Web browsers ] *****

[-] [C:\Users\Suzanne\AppData\Local\Google\Chrome\User Data\Default] [extension] Deleted: fcfenmboojpjinhpgggodefccipikbpd

*************************

:: "Tracing" keys deleted :: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [22525 Bytes] - [21/09/2016 09:50:34] C:\AdwCleaner\AdwCleaner[S0].txt - [21230 Bytes] - [21/09/2016 09:33:03]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [22673 Bytes] ##########

 

Re: Found things in quarantine not shown in the logs

Hello,

Thanks for the feedback, I'm looking at this strange behaviour.

In the meantime, you can restore the folder from the Quarantine manager:

  • Start AdwCleaner,
  • Tools
  • Quarantine Manager, "File" tab,
  • Select the corresponding elements, and click on "Restore".

Sorry for the inconvenience,

Re: Found things in quarantine not shown in the logs

OK, thats a problem, since it doesnt show in the logs, it isnt showing up in the restore option either.

Re: Found things in quarantine not shown in the logs

Hello,

If possible, can you zip the AdwCleaner folder in C:\ and send it ? (You can host it on https://up2sha.re if it's smaller than 30MB)

Best regards,

Re: Found things in quarantine not shown in the logs

With several folders now located under the quarantine folder, even zipped its a 7.3GB file. Lots of data files. (docs, pics, music) Any other ways you would like me to send it?

Re: Found things in quarantine not shown in the logs

Ok. In this case, can you share the file "C:\AdwCleaner\quarantine\quarantine.db" ?

Thanks,