Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Unwanted programs


  • Please log in to reply
22 replies to this topic

#1 Enuf2Bdangerous2

Enuf2Bdangerous2

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:12:54 AM

Posted 13 May 2014 - 09:50 PM

How do I get rid of Ads by OnlineBrowserAdvertising?

I'm also having a problem with not being able to remove unwanted programs because they do not appear in my control panel, yet they are crashing my laptop!


Edited by hamluis, 14 May 2014 - 07:11 AM.
Moved from Win 7 to Am I Infected - Hamluis.


BC AdBot (Login to Remove)

 


#2 Condobloke

Condobloke

    Outback Aussie @ 54.2101 N, 0.2906 W


  • Members
  • 6,082 posts
  • ONLINE
  •  
  • Gender:Male
  • Local time:02:54 PM

Posted 14 May 2014 - 12:04 AM

G'day Enuf2Bdangerous2 !!....and :welcome:  to BC.

 

Please run the following for me...and COPY AND PASTE the resulting logs in your next reply

 

Download HERE Screen317 Security Check[/url]   and save it to your Desktop.
* Double-click SecurityCheck.exe
* Follow the onscreen instructions inside of the black box.
* A Notepad document should open automatically called checkup.txt
* Please post the contents of that document.
Note:: If any security program requests permission to access the Internet, allow it to do so.

 

Please download MiniToolBox   to desktop and run it.
Checkmark the following boxes:

* List content of Hosts
* Flush DNS
* Report IE Proxy Settings
* Reset IE Proxy Settings
* Report FF Proxy Settings
* Reset FF Proxy Settings
* List last 10 Event Viewer log
* List Installed Programs
* List Users, Partitions and Memory size
Note: When using "Reset FF Proxy Settings" option Firefox should be closed.
Click Go and Copy / Paste the result. (result.txt)


Condobloke ...Outback Australian  fed up with Windows antics...??....LINUX IS THE ANSWER....I USE LINUX MINT 18.3  EXCLUSIVELY.

“A man travels the world in search of what he needs and returns home to find it."

It has been said that time heals all wounds. I don't agree. The wounds remain. Time - the mind, protecting its sanity - covers them with some scar tissue and the pain lessens, but it is never gone. Rose Kennedy

 GcnI1aH.jpg

 

 


#3 Condobloke

Condobloke

    Outback Aussie @ 54.2101 N, 0.2906 W


  • Members
  • 6,082 posts
  • ONLINE
  •  
  • Gender:Male
  • Local time:02:54 PM

Posted 20 May 2014 - 09:32 PM

Do you still need help ?

 

If not I will remove you from my watch list.

 

Talk to me please.


Condobloke ...Outback Australian  fed up with Windows antics...??....LINUX IS THE ANSWER....I USE LINUX MINT 18.3  EXCLUSIVELY.

“A man travels the world in search of what he needs and returns home to find it."

It has been said that time heals all wounds. I don't agree. The wounds remain. Time - the mind, protecting its sanity - covers them with some scar tissue and the pain lessens, but it is never gone. Rose Kennedy

 GcnI1aH.jpg

 

 


#4 Enuf2Bdangerous2

Enuf2Bdangerous2
  • Topic Starter

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:12:54 AM

Posted 23 May 2014 - 08:46 AM

Hi Condobloke,

Yes, I still need help. I ran the items you suggested and got results. When I replied to the email message, my reply bounced back telling me the address did not exist [bleep@bleepingcomputer.com].

Do you want me to paste the results here? Or try emailing you at another address with the results?

Thanks for your help.

~Enuf2Be

P.S. Forgive my ignorance if it appears that I don't understand how all of this works.



#5 Enuf2Bdangerous2

Enuf2Bdangerous2
  • Topic Starter

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:12:54 AM

Posted 23 May 2014 - 08:47 AM

sorry for the duplicate post. Can someone tell me how to delete the duplicate?

 



#6 Enuf2Bdangerous2

Enuf2Bdangerous2
  • Topic Starter

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:12:54 AM

Posted 23 May 2014 - 08:50 AM

Do you still need help ?

 

If not I will remove you from my watch list.

 

Talk to me please.

I just replied to your post from May 14th. Thanks for your patience. Problem still not resolved.



#7 Condobloke

Condobloke

    Outback Aussie @ 54.2101 N, 0.2906 W


  • Members
  • 6,082 posts
  • ONLINE
  •  
  • Gender:Male
  • Local time:02:54 PM

Posted 23 May 2014 - 08:43 PM

Sorry, i didn't spot your reply last night.

Copy and paste the results here, on this page.

Replying to the email will not work. It is only sent to advise you of a reply.

If you are still awake i will study your results and give you more to do.

 

Dont panic......the system takes a little getting used to...we are all learners at some stage.

 

Regards,


Condobloke ...Outback Australian  fed up with Windows antics...??....LINUX IS THE ANSWER....I USE LINUX MINT 18.3  EXCLUSIVELY.

“A man travels the world in search of what he needs and returns home to find it."

It has been said that time heals all wounds. I don't agree. The wounds remain. Time - the mind, protecting its sanity - covers them with some scar tissue and the pain lessens, but it is never gone. Rose Kennedy

 GcnI1aH.jpg

 

 


#8 Condobloke

Condobloke

    Outback Aussie @ 54.2101 N, 0.2906 W


  • Members
  • 6,082 posts
  • ONLINE
  •  
  • Gender:Male
  • Local time:02:54 PM

Posted 28 May 2014 - 06:09 PM

Please download avast! Browser Cleanup
This tool serves to delete pesky and unwanted toolbars and plug-ins from your browser(s). Simply download and run the Browser Cleanup utility. Once you run the utility, you will see a list of bad and good toolbars and plug-ins and be able to disable or to remove them.
More info here: http://www.avast.com/faq.php?article=AVKB115

 

 

 

Please download AdwCleaner by Xplode and save to your Desktop.
NOTE : Please close or save all work, as the computer will be Rebooted
Double-click on AdwCleaner.exe to run the tool.
Vista/Windows 7/8 users right-click and select Run As Administrator.
Click on the Scan button. (only once)
AdwCleaner will begin...be patient as the scan may take some time to complete.
After the scan has finished, click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
If you see any which you do not want removed, remove the check mark next to it.
Next: Click on the Clean button (only once) to remove the selected items.
You will receive a message telling you that all programs will be close so that the infections can be removed.
Click on OK, and then OK again to confirm the reboot.
When cleaning process is complete a log (AdwCleaner[S0].txt ) of what was removed will be on your desktop.
Please copy and the paste this log in your next post.

 

A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.

 

 

Download Malwarebytes Anti-Malware and save it to your desktop
* Double click the desktop icon, click Run, then OK
* Click Next
* Select I accept the agreement then continue to click Next then finally click Install
** Uncheck Enable free trial of Malwarebytes Anti-Malware Premium if you do not want the free trial of the paid version, then click Finish
* If you are notified the Database is out of date click Update Now
* Click Scan Now >>
** Note: If Malwarebytes will not launch please do the following to launch Malwarebytes Chameleon:
* Click Start (Start, Search, All files and folders for Windows XP) then type mbam
* Double click one of the four following files (if one does not work try the next one, and so on) - A black command window will open. Follow those instructions until the Malwarebytes program starts the scan

mbam-chameleon.scr
mbam-chameleon
mbam-chameleon.exe
mbam-chameleon.com
** When completed click the down arrow on Export Log and select Text file (*.txt)
* Save the file to your desktop as MBAM
* Click Apply Actions then restart your computer if requested
* Copy and past the contents of MBAM.txt in your reply

 

 

 

This next scan will take some Time !!....upwards of 2 or 3 hours is not unusual.

Once it has started scanning, you can leave it unattended if that suits you.

 

I would like you to use the ESET OnlineScanner -
This is best done with Internet Explorer, as it uses ActineX  with the scan
How-ever alternate directions are left for those that will not use Internet Explorer
Please read and follow How To Temporarily Disable Your Anti-virus during the scan.
1 / Hold down Control (Ctrl) key and click on This Link to open ESET OnlineScan in a new window.
2 / Click the  ESET Onliner Scanner button.
3 / For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)

3.1 - / Click on This Link to download theExternal ESET Smart Installer.
3.2 - / Save it to your desktop.

4 / Double click on the  icon on your desktop.
5 / Check "YES, I accept the Terms of Use."
5 / Click the Start button.
6 / Accept any security warnings from your browser.
7 / Under scan settings, check "Scan Archives" and "Remove found threats"
8 / Click Advanced settings and select the following:
* Scan potentially unwanted applications
* Scan for potentially unsafe applications
* Enable Anti-Stealth technology
9 / ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this will take some time.
10 / When the scan completes, click List Threats
11 / Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
12 / Click the Back button.
13 / Click the Finish button.
NOTE:Sometimes if ESET finds no infections it will not create a log.


Edited by Condobloke, 28 May 2014 - 06:41 PM.

Condobloke ...Outback Australian  fed up with Windows antics...??....LINUX IS THE ANSWER....I USE LINUX MINT 18.3  EXCLUSIVELY.

“A man travels the world in search of what he needs and returns home to find it."

It has been said that time heals all wounds. I don't agree. The wounds remain. Time - the mind, protecting its sanity - covers them with some scar tissue and the pain lessens, but it is never gone. Rose Kennedy

 GcnI1aH.jpg

 

 


#9 Condobloke

Condobloke

    Outback Aussie @ 54.2101 N, 0.2906 W


  • Members
  • 6,082 posts
  • ONLINE
  •  
  • Gender:Male
  • Local time:02:54 PM

Posted 31 May 2014 - 05:30 PM

Do you need help with the scans?...if so just talk to me

 

Brian


Condobloke ...Outback Australian  fed up with Windows antics...??....LINUX IS THE ANSWER....I USE LINUX MINT 18.3  EXCLUSIVELY.

“A man travels the world in search of what he needs and returns home to find it."

It has been said that time heals all wounds. I don't agree. The wounds remain. Time - the mind, protecting its sanity - covers them with some scar tissue and the pain lessens, but it is never gone. Rose Kennedy

 GcnI1aH.jpg

 

 


#10 Enuf2Bdangerous2

Enuf2Bdangerous2
  • Topic Starter

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:12:54 AM

Posted 04 June 2014 - 06:02 PM

Hi Brian,

 

I just sent you a message reply under another thread, and then I saw this thread. Sorry for the confusion. I will run these scans now and reply back to you with the results. Another annoying problem I am having is that while I am typing, the cursor just randomly jumps elsewhere and messes up what I am typing. I think I have caught all the booboos, but if you see anything horribly misspelled or nonsensical, it could be a "seizure" I didn't catch.

 

Thanks,

Cindy



#11 Condobloke

Condobloke

    Outback Aussie @ 54.2101 N, 0.2906 W


  • Members
  • 6,082 posts
  • ONLINE
  •  
  • Gender:Male
  • Local time:02:54 PM

Posted 04 June 2014 - 07:26 PM

All good mate.....no problem.

 

Take your time if you need to.

 

 

Edit to Add.......ESET scan will take a longggg time...3 hours + is to be expected


Edited by Condobloke, 04 June 2014 - 07:27 PM.

Condobloke ...Outback Australian  fed up with Windows antics...??....LINUX IS THE ANSWER....I USE LINUX MINT 18.3  EXCLUSIVELY.

“A man travels the world in search of what he needs and returns home to find it."

It has been said that time heals all wounds. I don't agree. The wounds remain. Time - the mind, protecting its sanity - covers them with some scar tissue and the pain lessens, but it is never gone. Rose Kennedy

 GcnI1aH.jpg

 

 


#12 Enuf2Bdangerous2

Enuf2Bdangerous2
  • Topic Starter

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:12:54 AM

Posted 05 June 2014 - 04:46 PM

When I went to download the AdwCleaner, I got a message warning that said:

"AdwCleaner.exe is not commonly downloaded and could harm your computer". The publisher is Unknown and not signed by its author. The warning further suggested that this might be an attempt to fool me and recommended that I delete it.

Why should I continue to download?



#13 Condobloke

Condobloke

    Outback Aussie @ 54.2101 N, 0.2906 W


  • Members
  • 6,082 posts
  • ONLINE
  •  
  • Gender:Male
  • Local time:02:54 PM

Posted 05 June 2014 - 10:23 PM

That is typical 'malware speak'.......in other words the malware present on your computer is sending you that message in the hope that you will stop the process.

 

Go ahead, download it and run it.

 

AdwCleaner is downloaded and run hundreds of times each day here on BC alone....i downloaded and ran it on my own PC yesterday. I can assure you it is perfectly safe.

 

If it fails to run, let me know.


Condobloke ...Outback Australian  fed up with Windows antics...??....LINUX IS THE ANSWER....I USE LINUX MINT 18.3  EXCLUSIVELY.

“A man travels the world in search of what he needs and returns home to find it."

It has been said that time heals all wounds. I don't agree. The wounds remain. Time - the mind, protecting its sanity - covers them with some scar tissue and the pain lessens, but it is never gone. Rose Kennedy

 GcnI1aH.jpg

 

 


#14 Enuf2Bdangerous2

Enuf2Bdangerous2
  • Topic Starter

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:12:54 AM

Posted 07 June 2014 - 01:41 PM

Okay, here are the log results for AdwCleaner, Malwarebytes, & ESET scan all below:

 

AdwCleaner[R1].txt

 

# AdwCleaner v3.212 - Report created 06/06/2014 at 19:32:44

# Updated 05/06/2014 by Xplode

# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)

# Username : Cindy - GIDGET

# Running from : C:\Users\Cindy\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0UCVY9NW\AdwCleaner.exe

# Option : Scan

 

***** [ Services ] *****

 

 

***** [ Files / Folders ] *****

 

 

***** [ Shortcuts ] *****

 

 

***** [ Registry ] *****

 

 

***** [ Browsers ] *****

 

-\\ Internet Explorer v11.0.9600.17041

 

 

-\\ Mozilla Firefox v

 

[ File : C:\Users\Cindy\AppData\Roaming\Mozilla\Firefox\Profiles\nszljw6b.default\prefs.js ]

 

 

*************************

 

AdwCleaner[R0].txt - [9002 octets] - [06/06/2014 09:44:58]

AdwCleaner[R1].txt - [749 octets] - [06/06/2014 19:32:44]

AdwCleaner[S0].txt - [8548 octets] - [06/06/2014 09:56:57]

 

########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [868 octets] ##########

 

 

 

 

AdwCleaner[S0].txt

 

# AdwCleaner v3.212 - Report created 06/06/2014 at 09:56:57

# Updated 05/06/2014 by Xplode

# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)

# Username : Cindy - GIDGET

# Running from : C:\Users\Cindy\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J5MTIO3R\AdwCleaner.exe

# Option : Clean

 

***** [ Services ] *****

 

 

***** [ Files / Folders ] *****

 

Folder Deleted : C:\ProgramData\apn

Folder Deleted : C:\ProgramData\Tarma Installer

Folder Deleted : C:\ProgramData\VisualBee

Folder Deleted : C:\ProgramData\w3i

Folder Deleted : C:\Program Files (x86)\Conduit

Folder Deleted : C:\Program Files (x86)\OApps

Folder Deleted : C:\Program Files (x86)\SearchProtect

Folder Deleted : C:\Program Files (x86)\Software Updater

Folder Deleted : C:\Program Files (x86)\w3i

Folder Deleted : C:\Program Files\pcreg

Folder Deleted : C:\Users\Cindy\AppData\Local\Conduit

Folder Deleted : C:\Users\Cindy\AppData\Local\emaze

Folder Deleted : C:\Users\Cindy\AppData\Local\Ilivid Player

Folder Deleted : C:\Users\Cindy\AppData\Local\NativeMessaging

Folder Deleted : C:\Users\Cindy\AppData\Local\PackageAware

Folder Deleted : C:\Users\Cindy\AppData\Local\WhiteListing

Folder Deleted : C:\Users\Cindy\AppData\Local\Temp\AirInstaller

Folder Deleted : C:\Users\Cindy\AppData\LocalLow\Conduit

Folder Deleted : C:\Users\Cindy\AppData\LocalLow\Mysearchdial

Folder Deleted : C:\Users\Cindy\AppData\LocalLow\PriceGong

Folder Deleted : C:\Users\Cindy\AppData\Roaming\DefaultTab

Folder Deleted : C:\Users\Cindy\AppData\Roaming\PC Speed Maximizer

Folder Deleted : C:\Users\Cindy\AppData\Roaming\xVidly

Folder Deleted : C:\Users\Cindy\Documents\PC Speed Maximizer

File Deleted : C:\Users\Cindy\AppData\Roaming\aps.scan.quick.results

File Deleted : C:\Users\Cindy\AppData\Roaming\aps.scan.results

File Deleted : C:\Users\Cindy\AppData\Roaming\aps.uninstall.scan.results

File Deleted : C:\Users\Cindy\AppData\Roaming\Mozilla\Firefox\Profiles\nszljw6b.default\user.js

File Deleted : C:\Windows\System32\Tasks\DTReg

File Deleted : C:\Windows\System32\Tasks\PC Speed Maximizer Schedule

 

***** [ Shortcuts ] *****

 

 

***** [ Registry ] *****

 

Key Deleted : HKCU\Software\Google\Chrome\Extensions\fdkednngfjmpnljkolbapdednncafhen

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\fdkednngfjmpnljkolbapdednncafhen

Key Deleted : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL

Key Deleted : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exe

Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho

Key Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.Api

Key Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.Api.1

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConfigTask_RASAPI32

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConfigTask_RASMANCS

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASAPI32

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASMANCS

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\QuickShare_RASAPI32

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\QuickShare_RASMANCS

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_midipiano_RASAPI32

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_midipiano_RASMANCS

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0}

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{058F0E48-61CA-4964-9FBA-1978A1BB060D}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{18F33C35-8EF2-40D7-8BA4-932B0121B472}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550555035568}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550555305598}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566036668}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566306698}

Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440544034468}

Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440544304498}

Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}

Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}

Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}

Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}

Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}

Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}

Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}

Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]

Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]

Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1F8EDE97-36D5-422A-B8F0-9406E2D87C60}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550555035568}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550555305598}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566036668}

Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566306698}

Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]

Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}

Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}

Key Deleted : HKCU\Software\AnyProtect

Key Deleted : HKCU\Software\Conduit

Key Deleted : HKCU\Software\IM

Key Deleted : HKCU\Software\ImInstaller

Key Deleted : HKCU\Software\pc speed maximizer

Key Deleted : HKCU\Software\SmartBar

Key Deleted : HKCU\Software\SocialBit

Key Deleted : HKCU\Software\YahooPartnerToolbar

Key Deleted : HKCU\Software\Zugo

Key Deleted : HKCU\Software\AppDataLow\Software\Conduit

Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes

Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar

Key Deleted : HKLM\Software\CompeteInc

Key Deleted : HKLM\Software\Conduit

Key Deleted : HKLM\Software\Freeze.com

Key Deleted : HKLM\Software\mysearchdial

Key Deleted : HKLM\Software\SearchProtect

Key Deleted : HKLM\Software\Uniblue

Key Deleted : HKLM\Software\visualbee

Key Deleted : [x64] HKLM\SOFTWARE\Tarma Installer

 

***** [ Browsers ] *****

 

-\\ Internet Explorer v11.0.9600.17041

 

 

-\\ Mozilla Firefox v

 

[ File : C:\Users\Cindy\AppData\Roaming\Mozilla\Firefox\Profiles\nszljw6b.default\prefs.js ]

 

Line Deleted : user_pref("browser.search.defaultenginename", "Mysearchdial");

 

*************************

 

AdwCleaner[R0].txt - [9002 octets] - [06/06/2014 09:44:58]

AdwCleaner[S0].txt - [8360 octets] - [06/06/2014 09:56:57]

 

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8420 octets] ##########

 

 

 

MBAM log:

 

Administrator: Yes

Version: 2.00.2.1012
Malware Database: v2014.06.07.02
Rootkit Database: v2014.06.02.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Cindy

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 343927
Time Elapsed: 34 min, 39 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)

(end)

 

 

 

ESET scan:

 

C:\$Recycle.Bin\S-1-5-21-1948974352-2913188515-3856743551-1000\$RFEMR9I.exe        a variant of Win32/SpeedingUpMyPC application        cleaned by deleting - quarantined

C:\AdwCleaner\Quarantine\C\ProgramData\apn\APN-Stub\W3IV6-G\APNIC.dll.vir        a variant of Win32/Bundled.Toolbar.Ask.F potentially unsafe application        deleted - quarantined

C:\Program Files (x86)\FastMediaConverter\FastMediaConverterApp.exe        a variant of MSIL/Adware.StrongVault.A application        cleaned by deleting - quarantined



#15 Condobloke

Condobloke

    Outback Aussie @ 54.2101 N, 0.2906 W


  • Members
  • 6,082 posts
  • ONLINE
  •  
  • Gender:Male
  • Local time:02:54 PM

Posted 07 June 2014 - 05:49 PM

How is your computer running now ?

 

Please update Java, from HERE

Caution: When you either Update or Download ANYTHING.....choose the 'custom' install if available, and READ each page before you click Next !!

Your adwcleaner results are worth looking at closely.....they show various toolbars etc etc that have probably been "added" or "bundled" with other programs which you have tried/downloaded.

 

 

Give some thought to installing Firefox Browser, and then using the 'AdBlock Plus' add on with it.....also the WOT add on which will give you an immediate idea of whether a particular website is trustworthy or not.

 

Internet Explorer is showing errors.

Please Reset it.

http://support.microsoft.com/kb/923737

 

Please run TFC

TFC. or Temp File Cleaner, is a small utility that will clean out all the folders on your computer that house temporary files.  The temp folders that TFC will clean are the Java, Windows Temp Folder, and the Internet Explorer, Opera, Chrome, and Safari caches. This tool will clean the folders for all accounts on the computer including the Administrator, NetworkService, and LocalService accounts.
 
Download it to your desktop. Double click the icon , then single click to Run. A window will open....click on Start......your Desktop will Disappear !!!....don't panic    .....it is working.....it will take several minutes depending on the number of temporary files etc that it has to find .....it will restore your desktop....and it may ask for a reboot.....if it does....then reboot immediately.
 
 
 
 

Condobloke ...Outback Australian  fed up with Windows antics...??....LINUX IS THE ANSWER....I USE LINUX MINT 18.3  EXCLUSIVELY.

“A man travels the world in search of what he needs and returns home to find it."

It has been said that time heals all wounds. I don't agree. The wounds remain. Time - the mind, protecting its sanity - covers them with some scar tissue and the pain lessens, but it is never gone. Rose Kennedy

 GcnI1aH.jpg

 

 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users