Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Browser Redirect storage.googleapis.com


  • Please log in to reply
7 replies to this topic

#1 iudicium

iudicium

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:08:29 AM

Posted 11 May 2016 - 01:22 PM

Hi computer genies,

 

I believe my computer is infected, but this virus has been able to avoid detection with the tools I have. A few days ago I clicked a link that downloaded something in the background before I could stop it. Ever since then when I use chrome, my browser periodically redirects to storage.googleapis.com and tells me I'm infected and to call some 1800 number. I close the browser through task manager when it happens. I know this is just some of fishing scheme, but I can't seem to find the virus file. I have run the free versions of SUPERAntiSpryware, Malwarebytes, and Avast Antivirus. None of them can seem to find what's possibly infecting my computer. I am using Windows 7 64bit. Hope you all can help!

 

Thanks,

 

Chris



BC AdBot (Login to Remove)

 


#2 buddy215

buddy215

  • Moderator
  • 13,314 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:08:29 AM

Posted 11 May 2016 - 02:09 PM

Use CCleaner to remove Temporary files, program caches, cookies, logs, etc. Use the Default settings. No need to use the

Registry Cleaning Tool...risky. Pay close attention while installing and UNcheck offers of toolbars....especially Google.

After install, open CCleaner and run by clicking on the Run Cleaner button in the bottom right corner.

CCleaner - PC Optimization and Cleaning - Free Download

 

Download AdwCleaner by Xplode onto your desktop.

  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on Scan button.
  • When the scan has finished click on Clean button.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.
  • download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message
  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
  • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
  • Double click on the esetsmartinstaller_enu.png icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.
  • NOTE:Sometimes if ESET finds no infections it will not create a log.

“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss
A 1792 U.S. penny, designed in part by Thomas Jefferson and George Washington, reads “Liberty Parent of Science & Industry.”

#3 iudicium

iudicium
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:08:29 AM

Posted 11 May 2016 - 04:30 PM

# AdwCleaner v5.116 - Logfile created 11/05/2016 at 14:21:47
# Updated 09/05/2016 by Xplode
# Database : 2016-05-09.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (X64)
# Username : Chris - SHODAN
# Running from : C:\Users\Chris\Downloads\AdwCleaner.exe
# Option : Clean
 
***** [ Services ] *****
 
 
***** [ Folders ] *****
 
 
***** [ Files ] *****
 
 
***** [ DLLs ] *****
 
 
***** [ WMI ] *****
 
 
***** [ Shortcuts ] *****
 
[-] Shortcut Disinfected : C:\Users\Public\Desktop\Avast SafeZone Browser.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
[-] Shortcut Disinfected : C:\Users\Chris\Desktop\Internet Explorer.lnk
[-] Shortcut Disinfected : C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[-] Shortcut Disinfected : C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
[-] Shortcut Disinfected : C:\Users\Chris\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
 
***** [ Scheduled tasks ] *****
 
 
***** [ Registry ] *****
 
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION [WeatherBug.exe]
[-] Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.Protector
[-] Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.Protector.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
[-] Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
[-] Key Deleted : HKCU\Software\DownLite
[-] Key Deleted : HKCU\Software\SoftSuma
[-] Key Deleted : HKLM\SOFTWARE\SrpnFiles
 
***** [ Web browsers ] *****
 
[-] [C:\Users\Chris\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : aol.com
[-] [C:\Users\Chris\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : ask.com
 
*************************
 
:: "Tracing" keys deleted
:: Winsock settings cleared
 
*************************
 
C:\AdwCleaner\AdwCleaner[C1].txt - [2149 bytes] - [11/05/2016 14:21:47]
C:\AdwCleaner\AdwCleaner[S1].txt - [2902 bytes] - [11/05/2016 14:15:14]
 
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [2295 bytes] ##########


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.6 (04.25.2016)
Operating System: Windows 7 Home Premium x64 
Ran by Chris (Administrator) on Wed 05/11/2016 at 14:27:07.00
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
File System: 13 
 
Successfully deleted: C:\Users\Chris\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gkojfkhlekighikafcpjkiklfbnlmeio_0.localstorage (File) 
Successfully deleted: C:\Users\Chris\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3368XM20 (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Chris\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\67VKMXK9 (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Chris\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D8NY2L86 (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Chris\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LLFLWV37 (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Chris\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TJNZWFOP (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Chris\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZYFTU1Q8 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3368XM20 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\67VKMXK9 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D8NY2L86 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LLFLWV37 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TJNZWFOP (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZYFTU1Q8 (Temporary Internet Files Folder) 
 
 
 
Registry: 0 
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Wed 05/11/2016 at 14:31:35.22
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


ESET didn't find anything


#4 buddy215

buddy215

  • Moderator
  • 13,314 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:08:29 AM

Posted 11 May 2016 - 05:17 PM

Are you still seeing the criminal's ad?

 

Post the three lists mentioned below using CCleaner.

Open CCleaner and click on Tools. Choose Startups. On that page you will see a list of Windows Startups and at the top tabs for each browser and Scheduled Tasks.

At the bottom right of that page you will see a button when clicked will allow you to Copy and Paste the list of Windows Startups and Scheduled Tasks into your next

post. Please do that.

 

Open CCleaner and click on Tools. Choose Uninstall. On that page you will see a list of programs installed on your computer and at the bottom right of that page you

will see a button when clicked will allow you to Copy and Paste that list in your next post. Please do that.


“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss
A 1792 U.S. penny, designed in part by Thomas Jefferson and George Washington, reads “Liberty Parent of Science & Industry.”

#5 iudicium

iudicium
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:08:29 AM

Posted 11 May 2016 - 05:42 PM

I haven't gotten the exact ad I was getting, but I still am getting browser redirects to some ad agency offer.alibaba.com. 

Startup: 

No HKCU:Run Akamai NetSession Interface Akamai Technologies, Inc. "C:\Users\Chris\AppData\Local\Akamai\netsession_win.exe"
Yes HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
No HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
No HKCU:Run Skype Skype Technologies S.A. "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
Yes HKCU:Run SpyShelter Datpol D:\SpyShelter Free Anti-keylogger\SpyShelter.exe
No HKCU:Run Steam Valve Corporation "C:\Program Files (x86)\Steam\Steam.exe" -silent
No HKCU:Run SUPERAntiSpyware SUPERAntiSpyware C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Yes HKLM:Run AvastUI.exe AVAST Software "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
No HKLM:Run emsisoft anti-malware Emsisoft Ltd "c:\program files (x86)\emsisoft anti-malware\a2guard.exe" /d=60
No HKLM:Run HP Software Update Hewlett-Packard C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
No HKLM:Run IAStorIcon Intel Corporation C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" 60
Yes HKLM:Run LogMeIn Hamachi Ui LogMeIn Inc. "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
No HKLM:Run MaxMenuMgr Seagate LLC "C:\Program Files (x86)\Seagate\SeagateManager\FreeAgent Status\StxMenuMgr.exe"
Yes HKLM:Run MSC Microsoft Corporation "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
Yes HKLM:Run PlaysTV Plays.tv, LLC "C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe" --startup
Yes HKLM:Run Raptr Raptr, Inc "C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe" --startup
No HKLM:Run Razer Synapse Razer Inc. "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
No HKLM:Run RTHDVCPL Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s
No HKLM:Run StartCCC "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
Yes HKLM:Run StartCN Advanced Micro Devices, Inc. "C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe" atlogon
Yes HKLM:Run SunJavaUpdateSched Oracle Corporation "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
No HKLM:Run USB3MON Intel Corporation "C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
No Startup Common NETGEAR WNA3100 Genie.lnk NETGEAR C:\PROGRA~2\NETGEAR\WNA3100\WNA3100.exe 
No Startup User OneNote 2007 Screen Clipper and Launcher.lnk Microsoft Corporation C:\PROGRA~2\MICROS~3\Office12\ONENOTEM.EXE /tsr


Scheduled Tasks: 
Yes Task Adobe Acrobat Update Task Adobe Systems Incorporated C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
Yes Task Adobe Flash Player Updater Adobe Systems Incorporated C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Yes Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
Yes Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
Yes Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
Yes Task SafeZone scheduled Autoupdate 1459116790 Avast Software C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
Yes Task {04EA17A1-E347-4507-86DC-21E1F111B9A3} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\program files (x86)\steam\steamapps\common\Skyrim\Installer.exe" -d "C:\program files (x86)\steam\steamapps\common\Skyrim"
Yes Task {384708DA-225F-4AB3-896F-A8B0CAD5BD1F} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Users\Chris\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QD30SUZA\irfanview_plugins_436_setup.exe" -d C:\Users\Chris\Desktop
Yes Task {CA94E39F-B9F0-4B59-92B0-4F7CAF79AD6D} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Steam\steam.exe" -c steam://uninstall/72850

Install:
7-Zip 15.14 (x64 edition) Igor Pavlov 3/27/2016 4.87 MB 15.14.00.0
Adobe Acrobat Reader DC Adobe Systems Incorporated 5/10/2016 197 MB 15.016.20039
Adobe AIR Adobe Systems Incorporated 5/8/2016 21.0.0.198
Adobe Flash Player 21 ActiveX Adobe Systems Incorporated 5/8/2016 18.4 MB 21.0.0.213
Adobe Flash Player 21 NPAPI Adobe Systems Incorporated 5/8/2016 19.0 MB 21.0.0.213
Adobe Shockwave Player 12.2 Adobe Systems, Inc. 3/27/2016 12.2.4.194
Akamai NetSession Interface Akamai Technologies, Inc 3/2/2015
AMD Install Manager Advanced Micro Devices, Inc. 4/22/2016 26.3 MB 9.0.000.4
Asheron's Call Turbine 4/11/2015 1.00.0000
ASUS Product Register Program ASUS 2/11/2013 3.21 MB 1.0.014
Avast Free Antivirus AVAST Software 4/18/2016 11.2.2261
Battle.net Blizzard Entertainment 5/27/2014
Battlefield Heroes EA Digital illusions 9/23/2014
CCleaner Piriform 8/10/2015 5.08
CDisplayEx 1.10.29 Progdigy Software S.A.R.L. 1/10/2016 20.8 MB
Combined Community Codec Pack 64bit 2015-10-18 CCCP Project 3/11/2016 36.6 MB 2015.10.19.0
Counter-Strike: Global Offensive Valve 12/7/2015
CutePDF Writer 3.0 CutePDF.com 1/24/2014 3.0
DayZ Commander Dotjosh Studios 7/15/2013 4.01 MB 0.92.85
Deluge 1.3.12 1/10/2016
Diablo II Blizzard Entertainment 1/22/2015
Dragon Age™: Inquisition Electronic Arts 10/14/2015 36.1 GB 1.0.0.12
Emsisoft Anti-Malware Emsisoft Ltd. 7/30/2015 213 MB 9.0
Endless Legend AMPLITUDE Studios 6/14/2015
Fallout 4 Bethesda Game Studios 11/11/2015
GOG.com The Longest Journey 2/25/2016
Google Chrome Google Inc. 2/11/2013 50.0.2661.94
Google Toolbar for Internet Explorer Google Inc. 4/28/2016 7.5.7619.1252
Guild Wars 2 NCsoft Corporation, Ltd. 5/2/2014
Heroes of Might and Magic V - Tribes of the East GOG.com 8/24/2015 1.28 MB 2.1.0.24
Heroes of Might and Magic V with Hammers of Fate GOG.com 8/24/2015 1.28 MB 2.1.0.22
HP FWUpdateEDO2 Hewlett-Packard 8/11/2013 1.53 MB 1.2.0.0
HP Photosmart 5520 series Basic Device Software Hewlett-Packard Co. 7/28/2013 120 MB 28.0.1315.0
HP Photosmart 5520 series Help Hewlett Packard 7/28/2013 12.1 MB 27.0.0
HP Update Hewlett-Packard 1/18/2015 3.99 MB 5.005.002.002
Intel® Control Center Intel Corporation 2/12/2013 1.2.1.1007
Intel® Management Engine Components Intel Corporation 2/12/2013 8.0.4.1441
Intel® Rapid Storage Technology Intel Corporation 2/12/2013 11.1.0.1006
Intel® USB 3.0 eXtensible Host Controller Driver Intel Corporation 5/20/2012 1.0.5.235
Intel® Trusted Connect Service Client Intel Corporation 2/11/2013 10.6 MB 1.23.605.1
IrfanView (remove only) Irfan Skiljan 5/8/2016 3.00 MB 4.42
Java 8 Update 91 (64-bit) Oracle Corporation 4/22/2016 102 MB 8.0.910.14
Kodi XBMC-Foundation 11/5/2015
Little Inferno Tomorrow Corporation 7/12/2013
LogMeIn Hamachi LogMeIn, Inc. 5/11/2016 2.2.0.428
Lone Survivor: The Director's Cut Jasper Byrne 2/28/2015
LOOT LOOT Development Team 7/7/2015 0.7.1
Magic ISO Maker v5.5 (build 0281) 8/24/2015
Malwarebytes Anti-Malware version 2.2.1.1043 Malwarebytes 3/26/2016 66.8 MB 2.2.1.1043
MASSIVE CHALICE Double Fine Productions 12/2/2014
Microsoft .NET Framework 4.6.1 Microsoft Corporation 2/10/2016 38.8 MB 4.6.01055
Microsoft Office File Validation Add-In Microsoft Corporation 5/15/2014 10.9 MB 14.0.5130.5003
Microsoft Office Home and Student 2007 Microsoft Corporation 8/27/2013 12.0.6612.1000
Microsoft Security Essentials Microsoft Corporation 2/23/2016 4.9.218.0
Microsoft Silverlight Microsoft Corporation 1/13/2016 497 MB 5.1.41212.0
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 8/6/2013 300 KB 8.0.61001
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 8/6/2013 708 KB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 5/3/2013 252 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Corporation 2/11/2013 788 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2/13/2013 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2/20/2013 238 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2/11/2013 596 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2/13/2013 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 Microsoft Corporation 4/2/2015 13.8 MB 10.0.40219
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 Microsoft Corporation 4/2/2015 11.1 MB 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 Microsoft Corporation 5/14/2015 20.5 MB 11.0.61030.0
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 Microsoft Corporation 5/14/2015 17.3 MB 11.0.61030.0
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 Microsoft Corporation 3/2/2015 20.5 MB 12.0.21005.1
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 Microsoft Corporation 11/5/2015 17.1 MB 12.0.21005.1
Microsoft XNA Framework Redistributable 4.0 Microsoft Corporation 5/20/2014 8.03 MB 4.0.20823.0
Might & Magic ® Heroes ® VI 4/2/2013
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2/13/2013 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2/13/2013 1.33 MB 4.20.9876.0
NETGEAR WNA3100 wireless USB 2.0 adapter NETGEAR 5/3/2014 2.2.0.2
Nexus Mod Manager Black Tree Gaming 3/13/2016 19.1 MB 0.61.14
NVIDIA PhysX NVIDIA Corporation 3/1/2016 160 MB 9.14.0702
Origin Electronic Arts, Inc. 2/13/2015 9.5.5.2850
Path of Exile Grinding Gear Games 11/6/2013
Path of Exile Grinding Gear Games 4/9/2014 12.9 MB 1.1.2.32551
Planetary Annihilation Uber Entertainment 5/14/2015
PlaysTV Plays.tv, LLC 5/11/2016 214 MB 1.10.1-r112682-release
Raptr Raptr, Inc 4/22/2016 210 MB 5.1.2-r111396-release
Razer Surround Driver Installer version 1.5 inXile Entertainment 9/27/2014 1.5
Razer Synapse Razer Inc. 10/29/2015 24.8 MB 1.18.21.27748
Realtek Ethernet Controller Driver Realtek 2/11/2013 7.52.203.2012
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2/11/2013 6.0.1.6602
Rocket League Psyonix 3/1/2016
Seagate Manager Installer Seagate 2/11/2013 40.9 MB 2.01.0013
Sid Meier's Civilization V 2K Games, Inc. 8/20/2014
SimCity™ Electronic Arts 5/5/2016 2.89 GB 4.0.86.0859
Skype Click to Call Microsoft Corporation 5/6/2016 19.0 MB 8.1.0.9134
Skype™ 7.23 Skype Technologies S.A. 5/8/2016 77.7 MB 7.23.105
SpyShelter Free Anti-keylogger 10.7.6 Datpol 4/15/2016 10.4 MB 10.7.6
StarCraft II Blizzard Entertainment 1/16/2016
Steam Valve Corporation 2/11/2013 1.77 MB 1.0.0.0
SUPERAntiSpyware SUPERAntiSpyware.com 10/29/2014 46.4 MB 6.0.1158
System Shock 2 Irrational Games 7/14/2013
TeamSpeak 3 Client TeamSpeak Systems GmbH 7/31/2014 3.0.15.1
Terraria Re-Logic 5/20/2014
The Banner Saga: Factions 3/17/2013
The Elder Scrolls III: Morrowind Bethesda Game Studios® 1/6/2015
The Elder Scrolls V: Skyrim Bethesda Game Studios 1/10/2016
The Longest Journey GOG.com 2/25/2016 1.76 GB 2.0.0.12
Tomb Raider Crystal Dynamics 3/12/2013
Torchlight II Runic Games 10/5/2015
Trine Frozenbyte 7/15/2013
Ubisoft Game Launcher UBISOFT 4/3/2013 1.0.0.0
Uplay Ubisoft 9/7/2015 7.4
VLC media player VideoLAN 5/8/2016 2.2.3
Vulkan Run Time Libraries 1.0.3.1 LunarG, Inc. 4/22/2016 1.66 MB 1.0.3.1
WebOptimum 5/8/2016
WinRAR 5.31 (64-bit) win.rar GmbH 5/8/2016 5.31.0
Wrye Bash Wrye & Wrye Bash Development Team 1/27/2014 3.0.4.3
 


#6 buddy215

buddy215

  • Moderator
  • 13,314 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:08:29 AM

Posted 11 May 2016 - 06:37 PM

See if resetting Google Chrome helps.

You can restore your browser settings in Chrome at any time. You might need to do this if apps or extensions you installed changed your settings without your knowledge. Your saved bookmarks and passwords won't be cleared or changed.

  1. Open Chrome.
  2. In the top right, click the icon you see: Menu  or More
  3. Click Settings.
  4. At the bottom, click Show advanced settings.
  5. Under the section "Reset settings,” click Reset settings.
  6. In the box that appears, click Reset. ​

 

Disable these Windows Startups: Use CCleaner by clicking on each item and choosing Disable on the right.

Yes HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR

Yes HKLM:Run PlaysTV Plays.tv, LLC "C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe" --startup
Yes HKLM:Run Raptr Raptr, Inc "C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe" --startup
 
Disable these Scheduled Tasks: Use CCleaner by clicking on each item and choosing Disable on the right.
Yes Task Adobe Acrobat Update Task Adobe Systems Incorporated C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
Yes Task Adobe Flash Player Updater Adobe Systems Incorporated C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Yes Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
Yes Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
Yes Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
Yes Task SafeZone scheduled Autoupdate 1459116790 Avast Software C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
Yes Task {04EA17A1-E347-4507-86DC-21E1F111B9A3} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\program files (x86)\steam\steamapps\common\Skyrim\Installer.exe" -d "C:\program files (x86)\steam\steamapps\common\Skyrim"
Yes Task {384708DA-225F-4AB3-896F-A8B0CAD5BD1F} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Users\Chris\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QD30SUZA\irfanview_plugins_436_setup.exe" -d C:\Users\Chris\Desktop
Yes Task {CA94E39F-B9F0-4B59-92B0-4F7CAF79AD6D} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Steam\steam.exe" -c steam://uninstall/72850
 
Uninstall these programs:
Google Toolbar for Internet Explorer Google Inc. 4/28/2016 7.5.7619.1252
Skype Click to Call Microsoft Corporation 5/6/2016 19.0 MB 8.1.0.9134
SUPERAntiSpyware SUPERAntiSpyware.com 10/29/2014 46.4 MB 6.0.1158
WebOptimum 5/8/2016 (You may need to use Download Revo Uninstaller Freeware in Advanced Mode to uninstall this adware)

“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss
A 1792 U.S. penny, designed in part by Thomas Jefferson and George Washington, reads “Liberty Parent of Science & Industry.”

#7 iudicium

iudicium
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:08:29 AM

Posted 11 May 2016 - 09:06 PM

As far as I can tell, the problem has been resolved. I've been browsing for about 10 minutes without a redirect. Thanks for your help!



#8 buddy215

buddy215

  • Moderator
  • 13,314 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:08:29 AM

Posted 12 May 2016 - 05:24 AM

You're welcome....happy surfin'


“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss
A 1792 U.S. penny, designed in part by Thomas Jefferson and George Washington, reads “Liberty Parent of Science & Industry.”




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users