Jump to content


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.

Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

"24x7 Help" / "Optimize your PC"


  • Please log in to reply
2 replies to this topic

#1 aoebht

aoebht

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:10:44 PM

Posted 14 June 2013 - 09:25 AM

Hi!
 
I'd like to kindly ask for some assistance.  Well I think my brother's computer is infected with these junk applications and I'm a little unsure about what to do.  I read a few threads about these issues and some of them include custom scripts.  So being a little scared, I'd like to ask for some professional help.  I did a Malwarebytes Anti-Malware full scan and got this:
 
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
 
Database version: v2013.06.13.09
 
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16576
Bryan :: ROUTER [administrator]
 
6/13/2013 11:52:59 PM
MBAM-log-2013-06-14 (07-22-08).txt
 
Scan type: Full scan (C:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 643973
Time elapsed: 3 hour(s), 37 minute(s), 
 
Memory Processes Detected: 0
(No malicious items detected)
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 0
(No malicious items detected)
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 2
C:\Users\Bryan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1FZ3XL4O\Solid-SavingsUS[1].exe (Heuristics.Shuriken) -> No action taken.
C:\Users\Bryan\AppData\Local\Temp\.exe (Trojan.Agent) -> No action taken.
 
(end)
 

 

Moderator Edit: Moved from Windows 7 to the more appropriate forum

Roger


Edited by rotor123, 14 June 2013 - 09:34 AM.


BC AdBot (Login to Remove)

 


#2 aoebht

aoebht
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:10:44 PM

Posted 14 June 2013 - 11:12 AM

Took the liberty of also running AdwCleaner, ran with no issues:

 

# AdwCleaner v2.303 - Logfile created 06/14/2013 at 09:03:07
# Updated 08/06/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : Bryan - ROUTER
# Boot Mode : Normal
# Running from : C:\Users\Bryan\Downloads\AdwCleaner.exe
# Option [Delete]
 
 
***** [Services] *****
 
Stopped & Deleted : 24x7HelpSvc
Stopped & Deleted : CltMngSvc
 
***** [Files / Folders] *****
 
Deleted on reboot : C:\Program Files (x86)\Common Files\AVG Secure Search
Deleted on reboot : C:\Users\Bryan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apjkpjchfbckhjhokinlgdbmibpbbjak
File Deleted : C:\END
File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\avg-secure-search.xml
File Deleted : C:\Users\Bryan\AppData\Local\Temp\END
File Deleted : C:\Users\Bryan\AppData\Roaming\Mozilla\Firefox\Profiles\ocv2w5cl.default\searchplugins\Conduit.xml
File Deleted : C:\Users\Public\Desktop\24x7 Help.lnk
Folder Deleted : C:\Program Files (x86)\AVG Secure Search
Folder Deleted : C:\Program Files (x86)\Common Files\Wondershare
Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\Program Files (x86)\Ilivid
Folder Deleted : C:\Program Files (x86)\SearchProtect
Folder Deleted : C:\Program Files (x86)\Swag_Bucks
Folder Deleted : C:\Program Files (x86)\Trustworthy
Folder Deleted : C:\Program Files (x86)\Wondershare
Folder Deleted : C:\ProgramData\Anti-phishing Domain Advisor
Folder Deleted : C:\ProgramData\AVG Secure Search
Folder Deleted : C:\ProgramData\blekko toolbars
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\24x7 Help
Folder Deleted : C:\Users\Bryan\AppData\Local\AVG Secure Search
Folder Deleted : C:\Users\Bryan\AppData\Local\Conduit
Folder Deleted : C:\Users\Bryan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apjkpjchfbckhjhokinlgdbmibpbbjak
Folder Deleted : C:\Users\Bryan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Folder Deleted : C:\Users\Bryan\AppData\Local\Ilivid Player
Folder Deleted : C:\Users\Bryan\AppData\Local\PackageAware
Folder Deleted : C:\Users\Bryan\AppData\Local\Temp\Conduit
Folder Deleted : C:\Users\Bryan\AppData\Local\Temp\CT2260173
Folder Deleted : C:\Users\Bryan\AppData\Local\Temp\CT2998365
Folder Deleted : C:\Users\Bryan\AppData\Local\Wondershare
Folder Deleted : C:\Users\Bryan\AppData\LocalLow\AVG Secure Search
Folder Deleted : C:\Users\Bryan\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Bryan\AppData\LocalLow\PriceGong
Folder Deleted : C:\Users\Bryan\AppData\LocalLow\Swag_Bucks
Folder Deleted : C:\Users\Bryan\AppData\LocalLow\Trustworthy
Folder Deleted : C:\Users\Bryan\AppData\Roaming\24x7 Help
Folder Deleted : C:\Users\Bryan\AppData\Roaming\Mozilla\Firefox\Profiles\ocv2w5cl.default\CT2260173
Folder Deleted : C:\Users\Bryan\AppData\Roaming\Mozilla\Firefox\Profiles\ocv2w5cl.default\CT2998365
Folder Deleted : C:\Users\Bryan\AppData\Roaming\Mozilla\Firefox\Profiles\ocv2w5cl.default\extensions\{8bdea9d6-6f62-45eb-8ee9-8a81af0d2f94}
Folder Deleted : C:\Users\Bryan\AppData\Roaming\Mozilla\Firefox\Profiles\ocv2w5cl.default\extensions\{ad32743c-16ef-46ec-977b-dce0c3c85b20}
Folder Deleted : C:\Users\Bryan\AppData\Roaming\Mozilla\Firefox\Profiles\ocv2w5cl.default\Smartbar
Folder Deleted : C:\Users\Bryan\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Bryan\AppData\Roaming\SearchProtect
 
***** [Registry] *****
 
Key Deleted : HKCU\Software\24x7HELP
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\AppDataLow\Software\Swag_Bucks
Key Deleted : HKCU\Software\AppDataLow\Software\Trustworthy
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\AVG Secure Search
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Cr_Installer
Key Deleted : HKCU\Software\Google\Chrome\Extensions\apjkpjchfbckhjhokinlgdbmibpbbjak
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8BDEA9D6-6F62-45EB-8EE9-8A81AF0D2F94}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8BDEA9D6-6F62-45EB-8EE9-8A81AF0D2F94}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Key Deleted : HKCU\Software\SearchProtect
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\Swag_Bucks
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}
Key Deleted : HKLM\Software\24x7HELP
Key Deleted : HKLM\Software\AVG Secure Search
Key Deleted : HKLM\Software\AVG Security Toolbar
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exe
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1
Key Deleted : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\viprotocol
Key Deleted : HKLM\SOFTWARE\Classes\S
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2260173
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2998365
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{13ABD093-D46F-40DF-A608-47E162EC799D}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{85675E8E-5807-456E-8005-29ECDFB5AA98}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{FF7D5016-8AB5-446B-BADC-1B2C069E3841}
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Deleted : HKLM\Software\SearchProtect
Key Deleted : HKLM\Software\Swag_Bucks
Key Deleted : HKLM\Software\Trustworthy
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{85675E8E-5807-456E-8005-29ECDFB5AA98}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{8BDEA9D6-6F62-45EB-8EE9-8A81AF0D2F94}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{94496571-6AC5-4836-82D5-D46260C44B17}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AD32743C-16EF-46EC-977B-DCE0C3C85B20}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{BC9FD17D-30F6-4464-9E53-596A90AFF023}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FF7D5016-8AB5-446B-BADC-1B2C069E3841}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\apjkpjchfbckhjhokinlgdbmibpbbjak
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6160216F-938C-48CF-B7FF-E0F6E212F8AD}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7D54A45D-C5EA-4F71-9028-8C5B3F5007AC}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{84B4BF9E-3E51-4906-876A-93E3A20A779A}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ACA363A3-9B06-4638-80D7-30798DC76FE0}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8BDEA9D6-6F62-45EB-8EE9-8A81AF0D2F94}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AD32743C-16EF-46EC-977B-DCE0C3C85B20}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Swag_Bucks Toolbar
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Trustworthy Toolbar
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{8BDEA9D6-6F62-45EB-8EE9-8A81AF0D2F94}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{AD32743C-16EF-46EC-977B-DCE0C3C85B20}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{8BDEA9D6-6F62-45EB-8EE9-8A81AF0D2F94}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{AD32743C-16EF-46EC-977B-DCE0C3C85B20}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [searchprotect]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{8BDEA9D6-6F62-45EB-8EE9-8A81AF0D2F94}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{AD32743C-16EF-46EC-977B-DCE0C3C85B20}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [24x7HELP]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SearchProtectAll]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{8BDEA9D6-6F62-45EB-8EE9-8A81AF0D2F94}]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{AD32743C-16EF-46EC-977B-DCE0C3C85B20}]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
 
***** [Internet Browsers] *****
 
-\\ Internet Explorer v10.0.9200.16576
 
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.conduit.com/?ctid=CT2998365&octid=CT2998365&SearchSource=61&CUI=UN24555522017025139&UM=2&UP=SPA3359D67-BFE0-4FED-83F9-0BF947B3D518 --> hxxp://www.google.com
 
-\\ Mozilla Firefox v11.0 (en-US)
 
File : C:\Users\Bryan\AppData\Roaming\Mozilla\Firefox\Profiles\ocv2w5cl.default\prefs.js
 
C:\Users\Bryan\AppData\Roaming\Mozilla\Firefox\Profiles\ocv2w5cl.default\user.js ... Deleted !
 
Deleted : user_pref("CT2998365.FF19Solved", "true");
Deleted : user_pref("CT2998365.UserID", "UN33138350531615114");
Deleted : user_pref("CT2998365.addressUrlXPETakeover", "true");
Deleted : user_pref("CT2998365.autoDisableScopes", -1);
Deleted : user_pref("CT2998365.browser.search.defaultthis.engineName", "true");
Deleted : user_pref("CT2998365.defaultSearchXPETakeover", "true");
Deleted : user_pref("CT2998365.fullUserID", "UN33138350531615114.IN.20130613233925");
Deleted : user_pref("CT2998365.installDate", "13/06/2013 23:39:25");
Deleted : user_pref("CT2998365.installSessionId", "{A4E239B5-E6E2-4389-A897-CBAF75ABE057}");
Deleted : user_pref("CT2998365.installSp", "TRUE");
Deleted : user_pref("CT2998365.installerVersion", "1.4.3.0");
Deleted : user_pref("CT2998365.keyword", "true");
Deleted : user_pref("CT2998365.originalHomepage", "about:home");
Deleted : user_pref("CT2998365.originalSearchAddressUrl", "");
Deleted : user_pref("CT2998365.originalSearchEngine", "");
Deleted : user_pref("CT2998365.searchRevert", "true");
Deleted : user_pref("CT2998365.searchUserMode", "2");
Deleted : user_pref("CT2998365.smartbar.homepage", "true");
Deleted : user_pref("CT2998365.startPageXPETakeover", "true");
Deleted : user_pref("CT2998365.versionFromInstaller", "10.15.2.23");
Deleted : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "");
Deleted : user_pref("browser.search.defaultthis.engineName", "Trustworthy Customized Web Search");
Deleted : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2998365&CUI[...]
Deleted : user_pref("browser.search.selectedEngine", "Trustworthy Customized Web Search");
Deleted : user_pref("browser.startup.homepage", "hxxp://search.conduit.com/?ctid=CT2998365&octid=CT2998365&Sea[...]
Deleted : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2998365&SearchSource=2&CU[...]
Deleted : user_pref("smartbar.addressBarOwnerCTID", "CT2998365");
Deleted : user_pref("smartbar.conduitHomepageList", "hxxp://search.conduit.com/?ctid=CT2998365&CUI=UN331383505[...]
Deleted : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT[...]
Deleted : user_pref("smartbar.defaultSearchOwnerCTID", "CT2998365");
Deleted : user_pref("smartbar.homePageOwnerCTID", "CT2998365");
Deleted : user_pref("smartbar.originalHomepage", "hxxp://search.conduit.com/?ctid=CT2998365&CUI=UN331383505316[...]
 
-\\ Google Chrome v27.0.1453.110
 
File : C:\Users\Bryan\AppData\Local\Google\Chrome\User Data\Default\Preferences
 
Deleted [l.3729] : urls_to_restore_on_startup = [ "hxxp://www.google.com/", "hxxp://isearch.avg.com/?cid={4676A4[...]
 
*************************
 
AdwCleaner[S1].txt - [19546 octets] - [14/06/2013 09:03:07]
 
########## EOF - C:\AdwCleaner[S1].txt - [19607 octets] ##########
 

Question: I think 24x7 is removed, but the "Optimize your PC" still remains.  Should I try deleting it through Programs/Features?



#3 aoebht

aoebht
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:10:44 PM

Posted 14 June 2013 - 11:51 AM

Ran JRT this time,

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 4.9.4 (05.06.2013:1)
OS: Windows 7 Home Premium x64
Ran by Bryan on Fri 06/14/2013 at  9:29:45.35
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
 
 
~~~ Registry Values
 
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\pcfixspeed
 
 
 
~~~ Registry Keys
 
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{3D9EBAF5-53FD-446F-8B7A-A750029D772A}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{4C897F26-F6C8-4FA4-BFD8-592C14622CFE}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{3D9EBAF5-53FD-446F-8B7A-A750029D772A}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2C4BA31C-0C15-11E2-90C7-9BFCBEB168B3}
 
 
 
~~~ Files
 
Successfully deleted: [File] C:\eula.1028.txt
Successfully deleted: [File] C:\eula.1031.txt
Successfully deleted: [File] C:\eula.1033.txt
Successfully deleted: [File] C:\eula.1036.txt
Successfully deleted: [File] C:\eula.1040.txt
Successfully deleted: [File] C:\eula.1041.txt
Successfully deleted: [File] C:\eula.1042.txt
Successfully deleted: [File] C:\eula.1049.txt
Successfully deleted: [File] C:\eula.2052.txt
Successfully deleted: [File] C:\install.res.1028.dll
Successfully deleted: [File] C:\install.res.1031.dll
Successfully deleted: [File] C:\install.res.1033.dll
Successfully deleted: [File] C:\install.res.1036.dll
Successfully deleted: [File] C:\install.res.1040.dll
Successfully deleted: [File] C:\install.res.1041.dll
Successfully deleted: [File] C:\install.res.1042.dll
Successfully deleted: [File] C:\install.res.1049.dll
Successfully deleted: [File] C:\install.res.2052.dll
Successfully deleted: [File] C:\install.res.3082.dll
 
 
 
~~~ Folders
 
Successfully deleted: [Folder] "C:\ProgramData\pcfixspeed"
Successfully deleted: [Folder] "C:\ProgramData\splashtop"
Successfully deleted: [Folder] "C:\Users\Bryan\AppData\Roaming\pcfixspeed"
Successfully deleted: [Folder] "C:\Users\Bryan\appdata\local\blekkotb_031"
Successfully deleted: [Folder] "C:\Users\Bryan\appdata\local\splashtop"
Successfully deleted: [Folder] "C:\Program Files (x86)\24x7help"
Successfully deleted: [Folder] "C:\Program Files (x86)\pcfixspeed"
Failed to delete: [Folder] "C:\Program Files (x86)\splashtop"
Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\pc fix speed"
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{09771BCC-93F9-493B-8E87-265A4AA70E41}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{1749108A-2797-445F-BDC0-18275EFFAC6E}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{1A55024D-B766-4281-92F6-DA3BAB3D3802}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{5D1A7137-136D-4AB9-837F-C60BCED877B6}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{6E646566-4A76-42CC-A321-4667BD9447CB}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{741BF93F-BD36-479B-8D6C-DC498B5D9D67}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{76EFD34E-19CD-4100-9B36-5798DC3B6516}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{917F2E5C-6326-45DD-BE87-596CF04BF89E}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{9DA1458A-C434-4F53-9733-454B698D6BAA}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{A480ECE0-3E63-4E3F-B784-6462C1301478}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{AED6DA89-1C72-415F-A9DF-32688624243B}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{B5DC4824-7888-4080-BFE7-7C63220901A0}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{BFB5D409-5024-464C-85F2-E953F5960A08}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{CA3293BD-5E37-48ED-8FE3-0D0A7D7B6922}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{D479F386-F23D-4BCB-9248-51E6D6F74514}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{DD8120E6-7A47-48BB-8BBC-F7E6E91BA3F7}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{E2038643-40A0-4D9B-A64C-A36D06C54627}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{E78F37D6-7822-4FA5-81B8-B8995D00ECEE}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{EB52DC74-B0BA-428A-876B-9E507159FC65}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{EC320CCB-6072-4AAF-B64C-80C92C7E19C9}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{F27F9225-E9FD-4AF9-A1D0-007A3D231536}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{FC96BA69-C4F8-4CC9-90E8-8F03D5EB79FF}
 
 
 
~~~ FireFox
 
Successfully deleted: [File] "C:\Program Files (x86)\Mozilla Firefox\searchplugins\search.xml"
Emptied folder: C:\Users\Bryan\AppData\Roaming\mozilla\firefox\profiles\ocv2w5cl.default\minidumps [7 files]
 
 
 
~~~ Event Viewer Logs were cleared
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Fri 06/14/2013 at  9:39:38.26
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
Note:~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 4.9.4 (05.06.2013:1)
OS: Windows 7 Home Premium x64
Ran by Bryan on Fri 06/14/2013 at  9:29:45.35
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
 
 
~~~ Registry Values
 
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\pcfixspeed
 
 
 
~~~ Registry Keys
 
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{3D9EBAF5-53FD-446F-8B7A-A750029D772A}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{4C897F26-F6C8-4FA4-BFD8-592C14622CFE}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{3D9EBAF5-53FD-446F-8B7A-A750029D772A}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2C4BA31C-0C15-11E2-90C7-9BFCBEB168B3}
 
 
 
~~~ Files
 
Successfully deleted: [File] C:\eula.1028.txt
Successfully deleted: [File] C:\eula.1031.txt
Successfully deleted: [File] C:\eula.1033.txt
Successfully deleted: [File] C:\eula.1036.txt
Successfully deleted: [File] C:\eula.1040.txt
Successfully deleted: [File] C:\eula.1041.txt
Successfully deleted: [File] C:\eula.1042.txt
Successfully deleted: [File] C:\eula.1049.txt
Successfully deleted: [File] C:\eula.2052.txt
Successfully deleted: [File] C:\install.res.1028.dll
Successfully deleted: [File] C:\install.res.1031.dll
Successfully deleted: [File] C:\install.res.1033.dll
Successfully deleted: [File] C:\install.res.1036.dll
Successfully deleted: [File] C:\install.res.1040.dll
Successfully deleted: [File] C:\install.res.1041.dll
Successfully deleted: [File] C:\install.res.1042.dll
Successfully deleted: [File] C:\install.res.1049.dll
Successfully deleted: [File] C:\install.res.2052.dll
Successfully deleted: [File] C:\install.res.3082.dll
 
 
 
~~~ Folders
 
Successfully deleted: [Folder] "C:\ProgramData\pcfixspeed"
Successfully deleted: [Folder] "C:\ProgramData\splashtop"
Successfully deleted: [Folder] "C:\Users\Bryan\AppData\Roaming\pcfixspeed"
Successfully deleted: [Folder] "C:\Users\Bryan\appdata\local\blekkotb_031"
Successfully deleted: [Folder] "C:\Users\Bryan\appdata\local\splashtop"
Successfully deleted: [Folder] "C:\Program Files (x86)\24x7help"
Successfully deleted: [Folder] "C:\Program Files (x86)\pcfixspeed"
Failed to delete: [Folder] "C:\Program Files (x86)\splashtop"
Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\pc fix speed"
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{09771BCC-93F9-493B-8E87-265A4AA70E41}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{1749108A-2797-445F-BDC0-18275EFFAC6E}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{1A55024D-B766-4281-92F6-DA3BAB3D3802}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{5D1A7137-136D-4AB9-837F-C60BCED877B6}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{6E646566-4A76-42CC-A321-4667BD9447CB}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{741BF93F-BD36-479B-8D6C-DC498B5D9D67}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{76EFD34E-19CD-4100-9B36-5798DC3B6516}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{917F2E5C-6326-45DD-BE87-596CF04BF89E}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{9DA1458A-C434-4F53-9733-454B698D6BAA}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{A480ECE0-3E63-4E3F-B784-6462C1301478}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{AED6DA89-1C72-415F-A9DF-32688624243B}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{B5DC4824-7888-4080-BFE7-7C63220901A0}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{BFB5D409-5024-464C-85F2-E953F5960A08}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{CA3293BD-5E37-48ED-8FE3-0D0A7D7B6922}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{D479F386-F23D-4BCB-9248-51E6D6F74514}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{DD8120E6-7A47-48BB-8BBC-F7E6E91BA3F7}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{E2038643-40A0-4D9B-A64C-A36D06C54627}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{E78F37D6-7822-4FA5-81B8-B8995D00ECEE}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{EB52DC74-B0BA-428A-876B-9E507159FC65}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{EC320CCB-6072-4AAF-B64C-80C92C7E19C9}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{F27F9225-E9FD-4AF9-A1D0-007A3D231536}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{FC96BA69-C4F8-4CC9-90E8-8F03D5EB79FF}
 
 
 
~~~ FireFox
 
Successfully deleted: [File] "C:\Program Files (x86)\Mozilla Firefox\searchplugins\search.xml"
Emptied folder: C:\Users\Bryan\AppData\Roaming\mozilla\firefox\profiles\ocv2w5cl.default\minidumps [7 files]
 
 
 
~~~ Event Viewer Logs were cleared
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Fri 06/14/2013 at  9:39:38.26
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 

Note:~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Junkware Removal Tool (JRT) by Thisisu
Version: 4.9.4 (05.06.2013:1)
OS: Windows 7 Home Premium x64
Ran by Bryan on Fri 06/14/2013 at  9:29:45.35
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
 
 
~~~ Registry Values
 
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\pcfixspeed
 
 
 
~~~ Registry Keys
 
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{3D9EBAF5-53FD-446F-8B7A-A750029D772A}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{4C897F26-F6C8-4FA4-BFD8-592C14622CFE}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{3D9EBAF5-53FD-446F-8B7A-A750029D772A}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2C4BA31C-0C15-11E2-90C7-9BFCBEB168B3}
 
 
 
~~~ Files
 
Successfully deleted: [File] C:\eula.1028.txt
Successfully deleted: [File] C:\eula.1031.txt
Successfully deleted: [File] C:\eula.1033.txt
Successfully deleted: [File] C:\eula.1036.txt
Successfully deleted: [File] C:\eula.1040.txt
Successfully deleted: [File] C:\eula.1041.txt
Successfully deleted: [File] C:\eula.1042.txt
Successfully deleted: [File] C:\eula.1049.txt
Successfully deleted: [File] C:\eula.2052.txt
Successfully deleted: [File] C:\install.res.1028.dll
Successfully deleted: [File] C:\install.res.1031.dll
Successfully deleted: [File] C:\install.res.1033.dll
Successfully deleted: [File] C:\install.res.1036.dll
Successfully deleted: [File] C:\install.res.1040.dll
Successfully deleted: [File] C:\install.res.1041.dll
Successfully deleted: [File] C:\install.res.1042.dll
Successfully deleted: [File] C:\install.res.1049.dll
Successfully deleted: [File] C:\install.res.2052.dll
Successfully deleted: [File] C:\install.res.3082.dll
 
 
 
~~~ Folders
 
Successfully deleted: [Folder] "C:\ProgramData\pcfixspeed"
Successfully deleted: [Folder] "C:\ProgramData\splashtop"
Successfully deleted: [Folder] "C:\Users\Bryan\AppData\Roaming\pcfixspeed"
Successfully deleted: [Folder] "C:\Users\Bryan\appdata\local\blekkotb_031"
Successfully deleted: [Folder] "C:\Users\Bryan\appdata\local\splashtop"
Successfully deleted: [Folder] "C:\Program Files (x86)\24x7help"
Successfully deleted: [Folder] "C:\Program Files (x86)\pcfixspeed"
Failed to delete: [Folder] "C:\Program Files (x86)\splashtop"
Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\pc fix speed"
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{09771BCC-93F9-493B-8E87-265A4AA70E41}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{1749108A-2797-445F-BDC0-18275EFFAC6E}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{1A55024D-B766-4281-92F6-DA3BAB3D3802}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{5D1A7137-136D-4AB9-837F-C60BCED877B6}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{6E646566-4A76-42CC-A321-4667BD9447CB}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{741BF93F-BD36-479B-8D6C-DC498B5D9D67}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{76EFD34E-19CD-4100-9B36-5798DC3B6516}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{917F2E5C-6326-45DD-BE87-596CF04BF89E}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{9DA1458A-C434-4F53-9733-454B698D6BAA}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{A480ECE0-3E63-4E3F-B784-6462C1301478}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{AED6DA89-1C72-415F-A9DF-32688624243B}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{B5DC4824-7888-4080-BFE7-7C63220901A0}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{BFB5D409-5024-464C-85F2-E953F5960A08}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{CA3293BD-5E37-48ED-8FE3-0D0A7D7B6922}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{D479F386-F23D-4BCB-9248-51E6D6F74514}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{DD8120E6-7A47-48BB-8BBC-F7E6E91BA3F7}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{E2038643-40A0-4D9B-A64C-A36D06C54627}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{E78F37D6-7822-4FA5-81B8-B8995D00ECEE}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{EB52DC74-B0BA-428A-876B-9E507159FC65}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{EC320CCB-6072-4AAF-B64C-80C92C7E19C9}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{F27F9225-E9FD-4AF9-A1D0-007A3D231536}
Successfully deleted: [Empty Folder] C:\Users\Bryan\appdata\local\{FC96BA69-C4F8-4CC9-90E8-8F03D5EB79FF}
 
 
 
~~~ FireFox
 
Successfully deleted: [File] "C:\Program Files (x86)\Mozilla Firefox\searchplugins\search.xml"
Emptied folder: C:\Users\Bryan\AppData\Roaming\mozilla\firefox\profiles\ocv2w5cl.default\minidumps [7 files]
 
 
 
~~~ Event Viewer Logs were cleared
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Fri 06/14/2013 at  9:39:38.26
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
Note: "Optimize your PC" is under "PCFixSpeed" so I think that's what it's deleting here..  Don't see it in "program files" anymore. "PCFixSpeed" is still in my programs/features.  Clicking uninstall says that it might've been deleted. 

Edited by aoebht, 14 June 2013 - 11:53 AM.





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users