Jump to content

zChris

Honorary Members
  • Posts

    40
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Alright, everything has finished. I think that covers everything. Laptop is running much better now. I'll check out the link. Thank you for your help, once again. I really appreciate it. Hopefully I won't be bothering you guys again anytime soon
  2. I had to update Adobe Flash for Internet Explorer, too. Here's an updated log: Results of screen317's Security Check version 0.99.81 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Windows Firewall Enabled! AVG AntiVirus Free Edition 2013 Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware version 1.75.0.1300 AVG PC Tuneup 2011 Java version out of Date! Adobe Flash Player 12.0.0.77 Adobe Reader XI Google Chrome 32.0.1700.107 Google Chrome 33.0.1750.154 ````````Process Check: objlist.exe by Laurent```````` AVG avgwdsvc.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log``````````````````````
  3. Here is the log: Results of screen317's Security Check version 0.99.81 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Windows Firewall Enabled! AVG AntiVirus Free Edition 2013 Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware version 1.75.0.1300 AVG PC Tuneup 2011 Java version out of Date! Adobe Flash Player 10 Flash Player out of Date! Adobe Reader XI Google Chrome 32.0.1700.107 Google Chrome 33.0.1750.154 ````````Process Check: objlist.exe by Laurent```````` AVG avgwdsvc.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` I uninstalled Java.. I'm not sure why it's still showing up. I also updated Flash Player, but I'll try again.
  4. Here is the log: RogueKiller V8.8.15 _x64_ [Mar 27 2014] by Adlice Softwaremail : http://www.adlice.com/contact/Feedback : http://forum.adlice.comWebsite : http://www.adlice.com/softwares/roguekiller/Blog : http://www.adlice.com Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits versionStarted in : Normal modeUser : MoM25 [Admin rights]Mode : Scan -- Date : 03/27/2014 22:42:58| ARK || FAK || MBR | ¤¤¤ Bad processes : 0 ¤¤¤ ¤¤¤ Registry Entries : 5 ¤¤¤[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowSetProgramAccessAndDefaults (0) -> FOUND[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND ¤¤¤ Scheduled tasks : 0 ¤¤¤ ¤¤¤ Startup Entries : 0 ¤¤¤ ¤¤¤ Web browsers : 0 ¤¤¤ ¤¤¤ Browser Addons : 0 ¤¤¤ ¤¤¤ Particular Files / Folders: ¤¤¤ ¤¤¤ Driver : [NOT LOADED 0x0] ¤¤¤ ¤¤¤ External Hives: ¤¤¤ ¤¤¤ Infection : ¤¤¤ ¤¤¤ HOSTS File: ¤¤¤--> %SystemRoot%\System32\drivers\etc\hosts ¤¤¤ MBR Check: ¤¤¤ +++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) Hitachi HTS725050A9A364 +++++--- User ---[MBR] 38740cfe2404d6ea27d2a40f3e108843[bSP] bea3831875410966cb08314c01f6a5c7 : Windows Vista/7/8 MBR CodePartition table:0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 199 MB1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 409600 | Size: 463773 MB2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 950216704 | Size: 12863 MB3 - [XXXXXX] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 976560128 | Size: 103 MBUser = LL1 ... OK!User = LL2 ... OK! Finished : << RKreport[0]_S_03272014_224258.txt >>
  5. I was also wondering about the D (RECOVERY) and E (Local Disk) drives.. I don't know where they came from. Could they have come with the laptop?
  6. It's running a little better now. The CPU can go longer without reaching 100%. I decided to test it by loading up a video on YouTube.. It made it about 7 minutes in before it started struggling, and reached 100% shortly after that. The Physical Memory never went over the 50% mark, though. Is there anything that I could do about that?
  7. I used the standard uninstaller, rather than Revo, and was able to remove Java. I updated Adobe Reader. I think I updated Adobe Flash, too. Chrome says it was blocked because it's out of date. When I tested my flash player on the site, it said that I have the most recent version. So I guess that's done.. I'm about to install the Service Pack. I'll let you know how it goes.
  8. I tried installing the new service pack via windows update a few times, but it keeps failing. I also tried removing Java and it told me it couldn't be removed.
  9. There isn't a log, but it has folders containing files that it moved. Here is the log from Security Check: Results of screen317's Security Check version 0.99.81 Windows 7 x64 (UAC is enabled) Out of date service pack!! Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Windows Firewall Enabled! AVG AntiVirus Free Edition 2013 Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware version 1.75.0.1300 AVG PC Tuneup 2011 JavaFX 2.1.1 Java 6 Update 23 Java 7 Update 5 Java version out of Date! Adobe Flash Player 10 Flash Player out of Date! Adobe Reader 9 Adobe Reader out of Date! Google Chrome 32.0.1700.107 Google Chrome 33.0.1750.154 ````````Process Check: objlist.exe by Laurent```````` AVG avgwdsvc.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log``````````````````````
  10. I think it finished.. I ran it, but I wasn't able to copy the results. The program stopped responding and closed right after the text appeared in the Results window. I only caught a glimpse of what it said. I think I saw "All files moved successfully" Do I need to try again? Or should I move on to the security check?
  11. Same issue. This is what it gets done before the error shows up: All processes killed ========== FILES ==========< ipconfig /flushdns /c >Windows IP ConfigurationSuccessfully flushed the DNS Resolver Cache.C:\Users\MoM25\Downloads\cmd.bat deleted successfully.C:\Users\MoM25\Downloads\cmd.txt deleted successfully.File/Folder C:\autorun.inf not found.File/Folder C:\$Recycle.Bin\S-1-5-21-4085380671-887356356-3133374699-1000\$R846PGI\CheatEngine60.exe not found.File/Folder C:\$Recycle.Bin\S-1-5-21-4085380671-887356356-3133374699-1000\$R846PGI\Facemoods.exe not found.File/Folder C:\Downloads\Software\Elf_1.13.exe not found.File/Folder C:\Downloads\Software\Game_Master_1.1.exe not found.File/Folder C:\Downloads\Software\iBario_Free_Apps.exe not found.File/Folder C:\Downloads\Software\SoftonicDownloader_for_call-of-duty-4.exe not found.File/Folder C:\Downloads\Software\SoftonicDownloader_for_gta-iv.exe not found.File/Folder C:\FRST\Quarantine\C\Users\Guest\AppData\Local\Temp\Babylon8_setup_16510_US.exe.xBAD not found.File/Folder C:\FRST\Quarantine\C\Users\Guest\AppData\Local\Temp\YontooSetup-DropDownDeals-SilentInstaller.exe.xBAD not found.File/Folder C:\FRST\Quarantine\C\Users\MoM25\AppData\Local\Temp\tbNCH.dll.xBAD not found.File/Folder C:\FRST\Quarantine\C\Users\MoM25\AppData\Local\Temp\uninst.exe.xBAD not found.File/Folder C:\Program Files (x86)\NCH Software\PhotoStage\photostage.exe not found.File/Folder C:\Program Files (x86)\NCH Software\PhotoStage\pstagesetup_v2.13.exe not found.File/Folder C:\Program Files (x86)\NCH Software\PhotoStage\uninst.exe not found.File/Folder C:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\AXGQ3KOQ\eW91dHViZS5jb218fDk0NUQtNzY5OHx8Z2FtZXN1c2xpfHwxLjI=[1].htm not found.File/Folder C:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\AXGQ3KOQ\eW91dHViZS5jb218fDk0NUQtNzY5OHx8Z2FtZXN1c2xpfHwxLjI=[2].htm not found.File/Folder C:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\AXGQ3KOQ\eW91dHViZS5jb218fDk0NUQtNzY5OHx8Z2FtZXN1c2xpfHwxLjI=[3].htm not found.File/Folder C:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\F6DWL26A\Z29vZ2xlLmNvbXx8OTQ1RC03Njk4fHxnYW1lc3VzbGl8fDEuMg==[1].htm not found.File/Folder C:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\R0QBX2CA\eW91dHViZS5jb218fDk0NUQtNzY5OHx8Z2FtZXN1c2xpfHwxLjI=[1].htm not found.File/Folder C:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\R0QBX2CA\eW91dHViZS5jb218fDk0NUQtNzY5OHx8Z2FtZXN1c2xpfHwxLjI=[2].htm not found.File/Folder C:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\R0QBX2CA\eW91dHViZS5jb218fDk0NUQtNzY5OHx8Z2FtZXN1c2xpfHwxLjI=[3].htm not found.File/Folder C:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\VHPMZJUV\c2hvcDYtMS5mb3JsZXNzLmNvbXx8OTQ1RC03Njk4fHxnYW1lc3VzbGl8fDEuMg==[1].htm not found.File/Folder C:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\VHPMZJUV\eW91dHViZS5jb218fDk0NUQtNzY5OHx8Z2FtZXN1c2xpfHwxLjI=[1].htm not found.File/Folder C:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\VHPMZJUV\eW91dHViZS5jb218fDk0NUQtNzY5OHx8Z2FtZXN1c2xpfHwxLjI=[2].htm not found.File/Folder C:\Users\Guest\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9PU0S7XV\iBarioGames[1].exe not found.File/Folder C:\Users\Guest\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D3MY8NT4\iBarioGames[1].exe not found.File/Folder C:\Users\Guest\AppData\LocalLow\Elf_1\tbElf_.dll not found.File/Folder C:\Users\Guest\AppData\LocalLow\Elf_1\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.1.1\bin\PriceGongIE.dll not found. A window will show up that says: "Invalid time flag! [ Toolbar.Conduit.8 potentially unwanted application ] Must be numerical."
  12. I'm not sure what happened.. I copied it (starting with colon), pasted in the 'Items to be Moved' section, then clicked moveit! It started moving the files, but it stopped and said something about a file needing to be a numerical value (can't remember exact words). I clicked moveit again, and it had a bunch of errors. It ended up freezing and closing.
  13. ESET scan is finally done. I noticed a file in the results named NFS GameHack.. I removed as much as I could prior to the scan, but I don't have access to my son's account. He 'forgot' his password.. I left it on the list because I want all of the piracy-related files off of my computer. I hope this doesn't interfere with anything. Here is the log: C:\autorun.inf INF/Autorun worm C:\$Recycle.Bin\S-1-5-21-4085380671-887356356-3133374699-1000\$R846PGI\CheatEngine60.exe Win32/OpenCandy potentially unsafe applicationC:\$Recycle.Bin\S-1-5-21-4085380671-887356356-3133374699-1000\$R846PGI\Facemoods.exe a variant of Win32/SweetIM.B potentially unwanted applicationC:\AdwCleaner\Quarantine\C\Program Files (x86)\MyWebSearch\bar\1.bin\M3AUXSTB.DLL.vir Win32/Toolbar.MyWebSearch.H potentially unwanted applicationC:\AdwCleaner\Quarantine\C\Program Files (x86)\MyWebSearch\bar\1.bin\M3DLGHK.DLL.vir a variant of Win32/Toolbar.MyWebSearch.I potentially unwanted applicationC:\AdwCleaner\Quarantine\C\Program Files (x86)\MyWebSearch\bar\1.bin\M3TPINST.DLL.vir a variant of Win32/Toolbar.MyWebSearch.I potentially unwanted applicationC:\AdwCleaner\Quarantine\C\Program Files (x86)\MyWebSearch\bar\1.bin\MWSOEMON.EXE.vir Win32/Toolbar.MyWebSearch potentially unwanted applicationC:\AdwCleaner\Quarantine\C\Program Files (x86)\MyWebSearch\bar\1.bin\MWSOESTB.DLL.vir Win32/Toolbar.MyWebSearch potentially unwanted applicationC:\AdwCleaner\Quarantine\C\Program Files (x86)\MyWebSearch\bar\1.bin\MWSSRCAS.DLL.vir Win32/Toolbar.MyWebSearch potentially unwanted applicationC:\AdwCleaner\Quarantine\C\Program Files (x86)\MyWebSearch\bar\1.bin\MWSSVC.EXE.vir Win32/Toolbar.MyWebSearch potentially unwanted applicationC:\AdwCleaner\Quarantine\C\Program Files (x86)\MyWebSearch\bar\2.bin\M3AUXSTB.DLL.vir Win32/Toolbar.MyWebSearch.H potentially unwanted applicationC:\AdwCleaner\Quarantine\C\Program Files (x86)\MyWebSearch\bar\2.bin\M3DLGHK.DLL.vir a variant of Win32/Toolbar.MyWebSearch.I potentially unwanted applicationC:\AdwCleaner\Quarantine\C\Program Files (x86)\MyWebSearch\bar\2.bin\M3TPINST.DLL.vir a variant of Win32/Toolbar.MyWebSearch.I potentially unwanted applicationC:\AdwCleaner\Quarantine\C\Program Files (x86)\MyWebSearch\bar\2.bin\MWSOEMON.EXE.vir Win32/Toolbar.MyWebSearch potentially unwanted applicationC:\AdwCleaner\Quarantine\C\Program Files (x86)\MyWebSearch\bar\2.bin\MWSOESTB.DLL.vir Win32/Toolbar.MyWebSearch potentially unwanted applicationC:\AdwCleaner\Quarantine\C\Program Files (x86)\MyWebSearch\bar\2.bin\MWSSRCAS.DLL.vir Win32/Toolbar.MyWebSearch potentially unwanted applicationC:\AdwCleaner\Quarantine\C\Program Files (x86)\MyWebSearch\bar\2.bin\MWSSVC.EXE.vir Win32/Toolbar.MyWebSearch potentially unwanted applicationC:\AdwCleaner\Quarantine\C\Program Files (x86)\Search Toolbar\SearchToolbar.dll.vir Win32/Toolbar.Zugo potentially unwanted applicationC:\Downloads\Software\Elf_1.13.exe a variant of Win32/Toolbar.Conduit.B potentially unwanted applicationC:\Downloads\Software\Game_Master_1.1.exe a variant of Win32/Toolbar.Conduit.B potentially unwanted applicationC:\Downloads\Software\iBario_Free_Apps.exe probably a variant of Win32/SweetIM.A potentially unwanted applicationC:\Downloads\Software\SoftonicDownloader_for_call-of-duty-4.exe Win32/SoftonicDownloader.A potentially unwanted applicationC:\Downloads\Software\SoftonicDownloader_for_gta-iv.exe Win32/SoftonicDownloader.A potentially unwanted applicationC:\FRST\Quarantine\C\Users\Guest\AppData\Local\Temp\Babylon8_setup_16510_US.exe.xBAD a variant of Win32/Toolbar.Babylon.H potentially unwanted applicationC:\FRST\Quarantine\C\Users\Guest\AppData\Local\Temp\YontooSetup-DropDownDeals-SilentInstaller.exe.xBAD Win32/Adware.Yontoo.A applicationC:\FRST\Quarantine\C\Users\MoM25\AppData\Local\Temp\tbNCH.dll.xBAD a variant of Win32/Toolbar.Conduit.B potentially unwanted applicationC:\FRST\Quarantine\C\Users\MoM25\AppData\Local\Temp\uninst.exe.xBAD a variant of Win32/Toolbar.Conduit.J potentially unwanted applicationC:\Program Files (x86)\NCH Software\PhotoStage\photostage.exe a variant of Win32/Toolbar.Conduit.H potentially unwanted applicationC:\Program Files (x86)\NCH Software\PhotoStage\pstagesetup_v2.13.exe a variant of Win32/Toolbar.Conduit.H potentially unwanted applicationC:\Program Files (x86)\NCH Software\PhotoStage\uninst.exe a variant of Win32/Toolbar.Conduit.H potentially unwanted applicationC:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\AXGQ3KOQ\eW91dHViZS5jb218fDk0NUQtNzY5OHx8Z2FtZXN1c2xpfHwxLjI=[1].htm JS/Agent.NJV trojanC:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\AXGQ3KOQ\eW91dHViZS5jb218fDk0NUQtNzY5OHx8Z2FtZXN1c2xpfHwxLjI=[2].htm JS/Agent.NJV trojanC:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\AXGQ3KOQ\eW91dHViZS5jb218fDk0NUQtNzY5OHx8Z2FtZXN1c2xpfHwxLjI=[3].htm JS/Agent.NJV trojanC:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\F6DWL26A\Z29vZ2xlLmNvbXx8OTQ1RC03Njk4fHxnYW1lc3VzbGl8fDEuMg==[1].htm JS/Agent.NJV trojanC:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\R0QBX2CA\eW91dHViZS5jb218fDk0NUQtNzY5OHx8Z2FtZXN1c2xpfHwxLjI=[1].htm JS/Agent.NJV trojanC:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\R0QBX2CA\eW91dHViZS5jb218fDk0NUQtNzY5OHx8Z2FtZXN1c2xpfHwxLjI=[2].htm JS/Agent.NJV trojanC:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\R0QBX2CA\eW91dHViZS5jb218fDk0NUQtNzY5OHx8Z2FtZXN1c2xpfHwxLjI=[3].htm JS/Agent.NJV trojanC:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\VHPMZJUV\c2hvcDYtMS5mb3JsZXNzLmNvbXx8OTQ1RC03Njk4fHxnYW1lc3VzbGl8fDEuMg==[1].htm JS/Agent.NJV trojanC:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\VHPMZJUV\eW91dHViZS5jb218fDk0NUQtNzY5OHx8Z2FtZXN1c2xpfHwxLjI=[1].htm JS/Agent.NJV trojanC:\Users\Account For Everyone\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\VHPMZJUV\eW91dHViZS5jb218fDk0NUQtNzY5OHx8Z2FtZXN1c2xpfHwxLjI=[2].htm JS/Agent.NJV trojanC:\Users\Guest\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9PU0S7XV\iBarioGames[1].exe a variant of Win32/Obfuscated.NEX trojanC:\Users\Guest\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\D3MY8NT4\iBarioGames[1].exe a variant of Win32/Obfuscated.NEX trojanC:\Users\Guest\AppData\LocalLow\Elf_1\tbElf_.dll a variant of Win32/Toolbar.Conduit.B potentially unwanted applicationC:\Users\Guest\AppData\LocalLow\Elf_1\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.1.1\bin\PriceGongIE.dll a variant of Win32/PriceGong.A potentially unwanted applicationC:\Users\Guest\AppData\LocalLow\Elf_1.13\tbElf_.dll a variant of Win32/Toolbar.Conduit.B potentially unwanted applicationC:\Users\Guest\AppData\LocalLow\Elf_1.13\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.1.1\bin\PriceGongIE.dll a variant of Win32/PriceGong.A potentially unwanted applicationC:\Users\Guest\AppData\LocalLow\Elf_1.15\tbElf_.dll a variant of Win32/Toolbar.Conduit.B potentially unwanted applicationC:\Users\Guest\AppData\LocalLow\Elf_1.15\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.1.1\bin\PriceGongIE.dll a variant of Win32/PriceGong.A potentially unwanted applicationC:\Users\Guest\AppData\LocalLow\Game_Master_1.1\tbGame.dll a variant of Win32/Toolbar.Conduit.B potentially unwanted applicationC:\Users\Guest\AppData\LocalLow\Game_Master_1.1\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.1.1\bin\PriceGongIE.dll a variant of Win32/PriceGong.A potentially unwanted applicationC:\Users\Guest\AppData\LocalLow\NCH\ldrtbNCH.dll a variant of Win32/Toolbar.Conduit.P potentially unwanted applicationC:\Users\Guest\AppData\LocalLow\NCH\tbNCH.dll a variant of Win32/Toolbar.Conduit.B potentially unwanted applicationC:\Users\Guest\AppData\LocalLow\Softonic-Eng7\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.1.1\bin\PriceGongIE.dll a variant of Win32/PriceGong.A potentially unwanted applicationC:\Users\Guest\AppData\LocalLow\uTorrentBar\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.1.1\bin\PriceGongIE.dll a variant of Win32/PriceGong.A potentially unwanted applicationC:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\4gapwnmc.default\extensions\plugin@yontoo.com\content\overlay.js Win32/Adware.Yontoo applicationC:\Users\Justin\AppData\LocalLow\NCH\ldrtbNCH.dll a variant of Win32/Toolbar.Conduit.P potentially unwanted applicationC:\Users\Justin\AppData\LocalLow\NCH\tbNCH.dll a variant of Win32/Toolbar.Conduit.B potentially unwanted applicationC:\Users\Justin246\Documents\Trainer_by_eXtalia_(for_NFSU_1.1001)[1]\shaikh_nfs_underground.exe a variant of Win32/GameHack.HH potentially unsafe applicationC:\Users\Justin246\Documents\Trainer_by_gghz_(for_NFSU_1.0)[1]\gghz-NFSU_tr.exe Win32/GameHack.AD potentially unsafe applicationC:\Users\Justin246\Downloads\debutsetup.exe a variant of Win32/Toolbar.Conduit.J potentially unwanted applicationC:\Users\MoM25\AppData\Local\Temp\nchuninst\uninst.exe a variant of Win32/Toolbar.Conduit.H potentially unwanted applicationC:\Users\Public\Downloads\PedalToTheMetalSetup-dm[1].exe a variant of Win32/Adware.Trymedia.A potentially unwanted applicationD:\autorun.inf INF/Autorun wormE:\autorun.inf INF/Autorun worm
  14. MalwareBytes didn't find anything on this scan. It found 16 on a previous scan. I don't know if you want the log for that, though. Here is an AdwCleaner Log from two days ago: # AdwCleaner v3.022 - Report created 20/03/2014 at 20:05:19 # Updated 13/03/2014 by Xplode# Operating System : Windows 7 Home Premium (64 bits)# Username : MoM25 - LOUISEATWORK# Running from : C:\Users\MoM25\Desktop\AdwCleaner.exe# Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** Folder Deleted : C:\ProgramData\AVG Secure SearchFolder Deleted : C:\ProgramData\AVG Security ToolbarFolder Deleted : C:\ProgramData\Free Ride GamesFolder Deleted : C:\ProgramData\PremiumFolder Deleted : C:\ProgramData\Tarma InstallerFolder Deleted : C:\ProgramData\TrymediaFolder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip Registry OptimizerFolder Deleted : C:\Program Files (x86)\AVG Secure SearchFolder Deleted : C:\Program Files (x86)\BabylonFolder Deleted : C:\Program Files (x86)\Free Offers from Freeze.comFolder Deleted : C:\Program Files (x86)\Free Ride GamesFolder Deleted : C:\Program Files (x86)\FunWebProductsFolder Deleted : C:\Program Files (x86)\MyWebSearchFolder Deleted : C:\Program Files (x86)\ObjectFolder Deleted : C:\Program Files (x86)\Search ToolbarFolder Deleted : C:\Program Files (x86)\Yontoo Layers ClientFolder Deleted : C:\Program Files (x86)\Common Files\AVG Secure SearchFolder Deleted : C:\Program Files (x86)\Common Files\FreeCauseFolder Deleted : C:\Program Files\Babylon[!] Folder Deleted : C:\Users\MoM25\AppData\Local\AVG Secure SearchFolder Deleted : C:\Users\MoM25\AppData\Local\PackageAwareFolder Deleted : C:\Users\MoM25\AppData\LocalLow\AVG Secure SearchFolder Deleted : C:\Users\MoM25\AppData\LocalLow\ConduitFolder Deleted : C:\Users\MoM25\AppData\LocalLow\PriceGongFolder Deleted : C:\Users\Justin\AppData\Local\AVG Secure SearchFolder Deleted : C:\Users\Justin\AppData\LocalLow\AVG Secure SearchFolder Deleted : C:\Users\Justin\AppData\LocalLow\ConduitFolder Deleted : C:\Users\Justin\AppData\LocalLow\PriceGongFile Deleted : C:\Program Files (x86)\Mozilla Firefox\Extensions\{1FD91A9C-410C-4090-BBCC-55D3450EF433}File Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay.lnkFile Deleted : C:\Windows\System32\roboot64.exeFile Deleted : C:\Users\MoM25\AppData\Local\Temp\Uninstall.exeFile Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\fcmdSrch.xmlFile Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\SearchquWebSearch.xml ***** [ Shortcuts ] ***** ***** [ Registry ] ***** Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [m3ffxtbr@mywebsearch.com]Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dhkplhfnhceodhffomolpfigojocbpcbKey Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblofKey Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlcKey Deleted : HKLM\SOFTWARE\Classes\AppID\BabylonHelper.EXEKey Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLLKey Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXEKey Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLLKey Deleted : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLLKey Deleted : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exeKey Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPIKey Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObjKey Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1Key Deleted : HKLM\SOFTWARE\Classes\Conduit.EngineKey Deleted : HKLM\SOFTWARE\Classes\facemoods.facemoodsHlprKey Deleted : HKLM\SOFTWARE\Classes\facemoods.facemoodsHlpr.1Key Deleted : HKLM\SOFTWARE\Classes\Prod.capKey Deleted : HKLM\SOFTWARE\Classes\protocols\handler\viprotocolKey Deleted : HKLM\SOFTWARE\Classes\SKey Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApiKey Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLEKey Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1Key Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.ApiKey Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.Api.1Key Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.LayersKey Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.Layers.1Key Deleted : HKLM\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pssKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancsKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancsKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BabylonTC_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BabylonTC_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\CToolbar_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\CToolbar_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\facemoods_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\facemoods_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\facemoodssrv_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\facemoodssrv_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Searchqu Toolbar uninstall_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Searchqu Toolbar uninstall_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasapi32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasmancsKey Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-pluginKey Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2117678Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2405280Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2786678Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2856415Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2856449Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2857573Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2866295Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_battlefield-2_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_battlefield-2_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_call-of-duty-4_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_call-of-duty-4_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_free-realms[1]_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_free-realms[1]_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_gta-iv_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_gta-iv_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_need-for-speed-most-wanted_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_need-for-speed-most-wanted_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_the-weather-channel-desktop[1]_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_the-weather-channel-desktop[1]_RASMANCSKey Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_windows-live-messenger[1]_RASAPI32Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_windows-live-messenger[1]_RASMANCSKey Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}Key Deleted : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0}Key Deleted : HKLM\SOFTWARE\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}Key Deleted : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{64182481-4F71-486B-A045-B233BD0DA8FC}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{74F475FA-6C75-43BD-AAB9-ECDA6184F600}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9AFB8248-617F-460D-9366-D71CDEDA3179}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A4730EBE-43A6-443E-9776-36915D323AD3}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A69A551A-1AAE-4B67-8C2E-52F8B8A19504}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DDE2C74F-58CC-4D71-8CE1-09DEBB8CFB78}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0BF91075-F457-4A8B-99EF-140B52D2F22A}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{37425600-CB21-49A0-8659-476FBAB0F8E8}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{431FB0E5-2CBB-4602-9FE6-F1D64488ADD7}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{5C9A230D-70A5-11D5-AFB0-0050DAC67890}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{618AAD04-921F-44C2-BE38-C0818AF69861}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8911483C-C00A-4183-9FBC-6C9C00946C15}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B5D2ED96-62F9-4C2C-956D-E425B1F67337}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C3F058A9-407D-4CD1-8F66-B75605B54B69}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{CF54BE1C-9359-4395-8533-1657CF209CFE}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D3A412E8-1E4B-47D2-9B12-F88291F5AFBB}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EFDCAF05-D29C-4D4D-9836-8CDCD606A6B2}Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{09C554C3-109B-483C-A06B-F14172F1A947}Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{5C9A2304-70A5-11D5-AFB0-0050DAC67890}Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D518921A-4A03-425E-9873-B9A71756821E}Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E1EF512D-604D-4776-AF11-410704DA1911}Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{74F475FA-6C75-43BD-AAB9-ECDA6184F600}Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{74F475FA-6C75-43BD-AAB9-ECDA6184F600}Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{74F475FA-6C75-43BD-AAB9-ECDA6184F600}Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{A69A551A-1AAE-4B67-8C2E-52F8B8A19504}Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8A96AF9E-4074-43B7-BEA3-87217BDA7406}Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{CCC7A320-B3CA-4199-B1A6-9F516DD69829}]Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{0BF91075-F457-4A8B-99EF-140B52D2F22A}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{30B15818-E110-4527-9C05-46ACE5A3460D}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{37425600-CB21-49A0-8659-476FBAB0F8E8}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{431FB0E5-2CBB-4602-9FE6-F1D64488ADD7}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{5C9A230D-70A5-11D5-AFB0-0050DAC67890}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{618AAD04-921F-44C2-BE38-C0818AF69861}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{8911483C-C00A-4183-9FBC-6C9C00946C15}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B5D2ED96-62F9-4C2C-956D-E425B1F67337}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C3F058A9-407D-4CD1-8F66-B75605B54B69}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{CF54BE1C-9359-4395-8533-1657CF209CFE}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D3A412E8-1E4B-47D2-9B12-F88291F5AFBB}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EFDCAF05-D29C-4D4D-9836-8CDCD606A6B2}Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}Key Deleted : HKCU\Software\AVG Secure SearchKey Deleted : HKCU\Software\SoftonicKey Deleted : HKCU\Software\AppDataLow\Software\ConduitKey Deleted : HKLM\Software\AVG Secure SearchKey Deleted : HKLM\Software\AVG Security ToolbarKey Deleted : HKLM\Software\ConduitKey Deleted : HKLM\Software\FocusInteractiveKey Deleted : HKLM\Software\Freeze.comKey Deleted : HKLM\Software\Fun Web ProductsKey Deleted : HKLM\Software\MyWebSearchKey Deleted : HKLM\Software\Trymedia SystemsKey Deleted : HKLM\Software\UniblueKey Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{2B7BDADB-EC8C-4C54-B5DD-CE45A016D3A7}Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8D15E1B2-D2B7-4A17-B44B-D2DDE5981406}Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure SearchKey Deleted : [x64] HKLM\SOFTWARE\Tarma InstallerKey Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}Data Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\WI3C8A~1\Datamngr\x64\datamngr.dllData Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\WI3C8A~1\Datamngr\x64\IEBHO.dll ***** [ Browsers ] ***** -\\ Internet Explorer v9.0.8112.16476 ************************* AdwCleaner[R0].txt - [20122 octets] - [20/03/2014 19:48:15]AdwCleaner[s0].txt - [20279 octets] - [20/03/2014 20:05:19] ########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [20340 octets] ########## And here is a log from a few minutes ago: # AdwCleaner v3.022 - Report created 22/03/2014 at 16:43:23# Updated 13/03/2014 by Xplode# Operating System : Windows 7 Home Premium (64 bits)# Username : MoM25 - LOUISEATWORK# Running from : C:\Users\MoM25\Desktop\AdwCleaner.exe# Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** [!] Folder Deleted : C:\Users\MoM25\AppData\Local\AVG Secure Search ***** [ Shortcuts ] ***** ***** [ Registry ] ***** ***** [ Browsers ] ***** -\\ Internet Explorer v9.0.8112.16476 ************************* AdwCleaner[R0].txt - [20122 octets] - [20/03/2014 19:48:15]AdwCleaner[R1].txt - [808 octets] - [22/03/2014 16:38:01]AdwCleaner[s0].txt - [20529 octets] - [20/03/2014 20:05:19]AdwCleaner[s1].txt - [738 octets] - [22/03/2014 16:43:23] ########## EOF - C:\AdwCleaner\AdwCleaner[s1].txt - [797 octets] ########## I'm about to run ESET..
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.