Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Acquired ASUS Laptop, does it have a factory restore feature?


  • Please log in to reply
16 replies to this topic

#1 PCInquiries

PCInquiries

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:10:36 PM

Posted 16 November 2013 - 09:13 PM

I was given an ASUS laptop by a friend. It has the Windows 7 operating system. Unfortunately, as far as I have found, this notepad dydoes not come with a factory restore feature. With the original owner being the administrator I am having difficulty running certain programs Ex: Spybot Search and Destroy. I deleted the user log in from the user section in the control panel. However, that user is still considered to be the administrator even though my name set up under the user section in the control panel carries an administrator title. My question would be how can I totally erase any memory of the original administrator so my notebook can be my own. Any help would be appreciated! Thank you!


Edited by Budapest, 17 November 2013 - 03:16 AM.
Moved from Win7 ~Budapest


BC AdBot (Login to Remove)

 


#2 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:04:36 AM

Posted 16 November 2013 - 09:45 PM

Follow this guide:

http://technet.microsoft.com/en-us/library/cc753659.aspx

#3 PCInquiries

PCInquiries
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:10:36 PM

Posted 16 November 2013 - 11:27 PM

Well, to use SpyBot Search and Destroy as an example. To use method  this method I have SO MANY files that I would have to apply this to. I tried doing it to the C: drive but there are so many things that stop it from finalizing. Ex: Norton 360. (which I wasn't even able to stop through the processes; task manager.) I have been battling something called DoSearches (internet hijacker). I've used just about every program I can get my hands on. TrendMicro, Malaware Bytes, etc etc. So, I remembered the program SpyBot, but now with the whole administration issue I can not run it. With all that being said, what do you suggest I do?


Edited by PCInquiries, 16 November 2013 - 11:28 PM.


#4 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:04:36 AM

Posted 16 November 2013 - 11:32 PM

Lets see if we can get rid of the DoSearches issue:

ADW Cleaner


Please download AdwCleaner by Xplode onto your desktop.
  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on Clean.
  • Confirm each time with Ok.
  • You will be prompted to restart your computer. A text file will open after the restart.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.
thisisujrt.gif Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
p22002970.gif Please download Farbar Service Scanner (FSS) and run it on the computer with the issue.
  • Make sure the following options are checked:
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center/Action Center
    • Windows Update
    • Windows Defender
    • Other Services
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.


#5 PCInquiries

PCInquiries
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:10:36 PM

Posted 17 November 2013 - 11:10 AM

ADwCleaner

 

# AdwCleaner v3.012 - Report created 16/11/2013 at 22:50:38
# Updated 11/11/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : chris - MY-PC
# Running from : C:\Users\chris\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MVBDCZMS\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : CltMngSvc

***** [ Files / Folders ] *****

Folder Deleted : C:\Searchprotect
Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\boost_interprocess
Folder Deleted : C:\ProgramData\eSafe
Folder Deleted : C:\ProgramData\Tarma Installer
Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\Program Files (x86)\GamesBar
Folder Deleted : C:\Users\chris\AppData\Local\filetypeassistant
Folder Deleted : C:\Users\chris\AppData\Local\Supreme Savings
Folder Deleted : C:\Users\chris\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\chris\AppData\LocalLow\PriceGong
Folder Deleted : C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\cekcjpgehmohobmdiikfnopibipmgnml
Folder Deleted : C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcfjehbfanfhgoehogmbiebedkidedjb
Folder Deleted : C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdipjefcbnbcjgpgbgmpmcmgbmpjpjae
File Deleted : C:\Users\chris\AppData\Roaming\Mozilla\Firefox\Profiles\cmgytb01.default-1377227569332\searchplugins\bingp.xml
File Deleted : C:\Users\chris\AppData\Roaming\Mozilla\Firefox\Profiles\cmgytb01.default-1377227569332\user.js
File Deleted : C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_app.mam.conduit.com_0.localstorage
File Deleted : C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_storage.conduit.com_0.localstorage
File Deleted : C:\Windows\System32\Tasks\Express FilesUpdate

***** [ Shortcuts ] *****

Shortcut Disinfected : C:\Users\chris\Desktop\Google Chrome.lnk
Shortcut Disinfected : C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Shortcut Disinfected : C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Shortcut Disinfected : C:\Users\chris\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Shortcut Disinfected : C:\Users\chris\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk
Shortcut Disinfected : C:\Users\chris\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk

***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo
Key Deleted : HKCU\Software\Google\Chrome\Extensions\bcfjehbfanfhgoehogmbiebedkidedjb
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bcfjehbfanfhgoehogmbiebedkidedjb
Key Deleted : HKCU\Software\Google\Chrome\Extensions\cdipjefcbnbcjgpgbgmpmcmgbmpjpjae
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\cdipjefcbnbcjgpgbgmpmcmgbmpjpjae
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WsysSvc
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2C4BA31C-0C15-11E2-90C7-9BFCBEB168B3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B78F92C8-DEB3-11E2-9A0A-FB64281D6ADE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : HKCU\Software\1ClickDownload
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\InstalledThirdPartyPrograms
Key Deleted : HKCU\Software\OCS
Key Deleted : HKCU\Software\SearchProtect
Key Deleted : HKCU\Software\SocialBit
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\smartbar
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\dosearchessoftware
Key Deleted : HKLM\Software\ExpressFiles
Key Deleted : HKLM\Software\InstallIQ
Key Deleted : HKLM\Software\SearchProtect
Key Deleted : HKLM\Software\Vittalia
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Key Deleted : [x64] HKLM\SOFTWARE\InstalledThirdPartyPrograms
Key Deleted : [x64] HKLM\SOFTWARE\Tarma Installer

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16736

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Mozilla Firefox v

[ File : C:\Users\chris\AppData\Roaming\Mozilla\Firefox\Profiles\cmgytb01.default-1377227569332\prefs.js ]

-\\ Google Chrome v31.0.1650.57

[ File : C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted : icon_url

*************************

AdwCleaner[R0].txt - [10814 octets] - [16/11/2013 22:46:28]
AdwCleaner[S0].txt - [7443 octets] - [16/11/2013 22:50:38]

########## lEOF - C:\AdwCleaner\AdwCleaner[S0].txt - [7503 octets] ##########

 

 

Junkware removal Tool

Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Home Premium x64
Ran by chris on Sat 11/16/2013 at 23:05:27.28
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~opl;

 

~~~ Services

 

~~~ Registry Values

 

~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_USERS\.DEFAULT\Software\SearchProtect
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110111991162}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\mconduitinstaller_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\mconduitinstaller_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110111991162}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\mconduitinstaller_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\mconduitinstaller_RASMANCS

 

~~~ Files

Successfully deleted: [File] "C:\Users\chris\appdata\local\google\chrome\user data\default\local storage\http_pricegong.conduitapps.com_0.localstorage"

 

~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\big fish"
Successfully deleted: [Folder] "C:\Users\chris\appdata\local\big fish"
Successfully deleted: [Folder] "C:\Users\chris\appdata\local\cre"
Successfully deleted: [Folder] "C:\bigfishcache"
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{02794322-F876-4EED-A084-CEC3FFE566A6}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{02C8D2CD-5B64-48EA-AF1B-E5C1FDCE2409}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{02E13E67-792F-4904-A932-C91F3BC2F159}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{12366A20-2C3E-48E2-BEFC-8E436F1C5F84}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{128C7B79-0515-48D1-83E0-BEFCEA2B641C}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{3171167B-543A-4F2D-90BD-75EA821B1230}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{4091551B-6688-40EE-AD4F-92A0EB8C62EC}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{48716A1C-7488-481E-90FE-CDB3E636D375}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{4BF126F0-AA23-4408-A6BA-A566A146A03A}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{4ECF7BDB-1FD7-4F63-8442-315AE4D8616D}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{5D0A1171-9EC8-453E-98E0-E1C1D6BD5BC6}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{5EEEDEB3-87F3-4BC3-BBD3-7613676A21D0}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{5F2597F6-82FC-46EC-9C37-94FB9E744F04}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{6604D62F-FE7E-4DB8-9AAC-89F19B0B9805}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{66FE927F-9432-464A-820B-575C7DD2E639}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{67914F60-7CDD-468C-BDEE-9CB317D0AEF3}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{693FE2C6-F2AE-46E5-BAF1-62B9FFEEF62B}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{6DAA696A-24E3-4C10-BADF-34678CA11CFB}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{7344BD07-1537-485C-A456-17FD213F1C6A}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{77585FA1-A690-42C4-AFCB-20C7475A06F5}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{792CE033-9BF8-4CF0-B7F5-942BDF68C896}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{7FFE6A7A-4515-4410-B1D7-7656B08479E7}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{892ADA3A-266C-4C5E-8ED1-13A569D3E9BC}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{95B61FC3-BCFA-4E72-8A03-084FA50713B9}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{99105EB9-DB55-4FF9-B290-2775D140B7FA}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{9A1094CE-E849-4848-B96C-728870C9FC06}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{9F949BD2-9614-4A63-8637-2CB07F6DE28B}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{9FE3150C-CF48-470D-AAFA-B7869F5BA7FB}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{A361420C-413B-4F64-ACCE-DF8239F11F6A}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{A5092BD9-63E9-4F0C-9039-1E3D80623282}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{B2691613-313A-4C88-8A1C-EE99C21E5E5F}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{C594F52F-E4DB-4B79-B874-D7D0CE5F7909}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{CDF4E903-DEEE-4AD1-B4F2-51A5006BA511}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{D2F3F246-5F58-4F98-9827-A51F4AFD9FA0}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{D5E957A1-ABE4-459B-9553-CE4666B5C479}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{E963684B-B17E-4C0F-B585-0B762596B546}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{F9FDC6CF-06E1-4BA8-BBBC-C98EB72FB52C}

 

~~~ Event Viewer Logs were cleared

 

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sat 11/16/2013 at 23:31:49.52
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 

Farbar Service Scanner

Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Home Premium x64
Ran by chris on Sat 11/16/2013 at 23:05:27.28
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~opl;

 

~~~ Services

 

~~~ Registry Values

 

~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_USERS\.DEFAULT\Software\SearchProtect
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110111991162}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\mconduitinstaller_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\mconduitinstaller_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110111991162}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\mconduitinstaller_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\mconduitinstaller_RASMANCS

 

~~~ Files

Successfully deleted: [File] "C:\Users\chris\appdata\local\google\chrome\user data\default\local storage\http_pricegong.conduitapps.com_0.localstorage"

 

~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\big fish"
Successfully deleted: [Folder] "C:\Users\chris\appdata\local\big fish"
Successfully deleted: [Folder] "C:\Users\chris\appdata\local\cre"
Successfully deleted: [Folder] "C:\bigfishcache"
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{02794322-F876-4EED-A084-CEC3FFE566A6}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{02C8D2CD-5B64-48EA-AF1B-E5C1FDCE2409}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{02E13E67-792F-4904-A932-C91F3BC2F159}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{12366A20-2C3E-48E2-BEFC-8E436F1C5F84}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{128C7B79-0515-48D1-83E0-BEFCEA2B641C}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{3171167B-543A-4F2D-90BD-75EA821B1230}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{4091551B-6688-40EE-AD4F-92A0EB8C62EC}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{48716A1C-7488-481E-90FE-CDB3E636D375}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{4BF126F0-AA23-4408-A6BA-A566A146A03A}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{4ECF7BDB-1FD7-4F63-8442-315AE4D8616D}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{5D0A1171-9EC8-453E-98E0-E1C1D6BD5BC6}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{5EEEDEB3-87F3-4BC3-BBD3-7613676A21D0}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{5F2597F6-82FC-46EC-9C37-94FB9E744F04}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{6604D62F-FE7E-4DB8-9AAC-89F19B0B9805}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{66FE927F-9432-464A-820B-575C7DD2E639}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{67914F60-7CDD-468C-BDEE-9CB317D0AEF3}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{693FE2C6-F2AE-46E5-BAF1-62B9FFEEF62B}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{6DAA696A-24E3-4C10-BADF-34678CA11CFB}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{7344BD07-1537-485C-A456-17FD213F1C6A}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{77585FA1-A690-42C4-AFCB-20C7475A06F5}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{792CE033-9BF8-4CF0-B7F5-942BDF68C896}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{7FFE6A7A-4515-4410-B1D7-7656B08479E7}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{892ADA3A-266C-4C5E-8ED1-13A569D3E9BC}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{95B61FC3-BCFA-4E72-8A03-084FA50713B9}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{99105EB9-DB55-4FF9-B290-2775D140B7FA}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{9A1094CE-E849-4848-B96C-728870C9FC06}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{9F949BD2-9614-4A63-8637-2CB07F6DE28B}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{9FE3150C-CF48-470D-AAFA-B7869F5BA7FB}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{A361420C-413B-4F64-ACCE-DF8239F11F6A}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{A5092BD9-63E9-4F0C-9039-1E3D80623282}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{B2691613-313A-4C88-8A1C-EE99C21E5E5F}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{C594F52F-E4DB-4B79-B874-D7D0CE5F7909}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{CDF4E903-DEEE-4AD1-B4F2-51A5006BA511}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{D2F3F246-5F58-4F98-9827-A51F4AFD9FA0}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{D5E957A1-ABE4-459B-9553-CE4666B5C479}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{E963684B-B17E-4C0F-B585-0B762596B546}
Successfully deleted: [Empty Folder] C:\Users\chris\appdata\local\{F9FDC6CF-06E1-4BA8-BBBC-C98EB72FB52C}

 

~~~ Event Viewer Logs were cleared

 

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sat 11/16/2013 at 23:31:49.52
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 

 

This is the product of the three scans! Thank you for your help, by the way!



#6 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:04:36 AM

Posted 17 November 2013 - 11:11 AM

How is the PC running now?

#7 PCInquiries

PCInquiries
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:10:36 PM

Posted 17 November 2013 - 11:16 AM

Do searches appears to be gone. I would still like to remove the information and administration rights from the old user. Any ideas on how this can be done? With your ownership suggestion how would you bypass files such as 360?



#8 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:04:36 AM

Posted 17 November 2013 - 11:18 AM

As in Norton 360?

If so then you will want to run the following: Norton Removal Tool

#9 PCInquiries

PCInquiries
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:10:36 PM

Posted 17 November 2013 - 05:29 PM

But I don't want to remove Norton, I just want to bypass it!


But I don't want to remove Norton, I just want to bypass it. Yes, Norton 360!



#10 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:04:36 AM

Posted 17 November 2013 - 07:34 PM

Well there is no way to bypass Norton, but to remove it and you can put something much better on it like MSE, AVAST, AVG, or another one that you prefer.

#11 PCInquiries

PCInquiries
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:10:36 PM

Posted 17 November 2013 - 10:36 PM

Well there is no way to bypass Norton, but to remove it and you can put something much better on it like MSE, AVAST, AVG, or another one that you prefer.

I have another problem you can help me with if you don't mind. I don't know whats going on but as i'm trying to type, my typing is flying back into the middle of a sentence and starts typing in the middle of words that I've already typed, or deletes sentences all on its own, or page scrolls all on its own. I'm thinking its something keyboard related, but nothing has been spilled on it or anything. I'm the only user, so know no liquids have been on it. Its becoming quite the nuisance. Any ideas?



#12 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:04:36 AM

Posted 17 November 2013 - 10:39 PM

This happens to me when I am on my lap top its due the placement of the touchpad sometimes my hands slightly touch it and that causes me to have the samething you are experiencing.

#13 PCInquiries

PCInquiries
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:10:36 PM

Posted 17 November 2013 - 10:44 PM

.

This happens to me when I am on my lap top its due the placement of the touchpad sometimes my hands slightly touch it and that causes me to have the samething you are experiencing.

Well, I've used Fn/F9 which turns off the touchpad on my computer, and its still doing it



#14 PCInquiries

PCInquiries
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:10:36 PM

Posted 19 November 2013 - 10:37 PM

I wanted to thank you. It appears as though F9 was not functioning the way it should. As a result the whole typing crazy thing. I simply went to Control Panel / Mouse/ ELAN and disabled it. Thank you for pointing it out.

 

As far as replacing 360 goes, you do not seem to care for the program much. May I ask why?

 

Quote : "Well there is no way to bypass Norton, but to remove it and you can put something much better on it like MSE, AVAST, AVG, or another one that you prefer."

You stated better, but listed a few. Which do you use? Which do you think is best?



#15 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:04:36 AM

Posted 20 November 2013 - 06:22 AM

Anything that has been associated with the words Norton and Symantec have been notorious for causing major system issues such as slowness and instability. If 360 was paid for by the previous person, then it may expire one day leaving you without virus protection and you would be footing the bill for the next subscription.

I have used MSE and using Avast on a VM, so far both are adequate for my needs.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users