Quantcast
Channel: Tech Support Guy - Virus & Other Malware Removal
Viewing all 4746 articles
Browse latest View live

poss full of spyware etc cos pages loading slow and coming out wrong

$
0
0
# AdwCleaner v4.111 - Logfile created 24/02/2015 at 00:00:09
# Updated 18/02/2015 by Xplode
# Database : 2015-02-18.3 [Local]
# Operating system : Windows 8.1 (x64)
# Username : User - LENOVO-PC
# Running from : C:\Users\User\Desktop\AdwCleaner(1).exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\InstallCore
Key Found : HKCU\Software\Vosteran Browser
Key Found : [x64] HKCU\Software\InstallCore
Key Found : [x64] HKCU\Software\Vosteran Browser
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Mozilla Firefox v35.0.1 (x86 en-US)


-\\ Google Chrome v40.0.2214.115

[C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Web data] - Found [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=ORJ&o=&locale=&apn_uid=06541220-B42B-4C95-A507-A9A0DB341F9B&apn_ptnrs=U4&apn_sauid=5B2E5DC9-669C-4888-9717-6C4CDB00C7C2&apn_dtid=OSJ000YYUK&q={searchTerms}
[C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Web data] - Found [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=ORJ&o=&locale=&apn_uid=06541220-B42B-4C95-A507-A9A0DB341F9B&apn_ptnrs=U4&apn_sauid=5B2E5DC9-669C-4888-9717-6C4CDB00C7C2&apn_dtid=OSJ000YYUK&q={searchTerms}
[C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Web data] - Found [Search Provider] : hxxp://uk.ask.com/web?q={searchTerms}
[C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Web data] - Found [Search Provider] : hxxp://Vosteran.com/results.php?f=4&q={searchTerms}&a=vst_ir_15_02_ff&cd=2XzuyEtN2Y1L1Qzu0AyE0D 0BtAtDzyzzyE0F0C0A0C0CtDtCtN0D0Tzu0StCtCtDyEtN1L2XzutAtFyCtFtCyCtFyCtN1L1Cz utCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyDyByCzz0F0A0E0AtGtCtAzyyEtG0FtB0CyD tG0F0DzztDtGyDyBtDyDzy0DyEtDtC0CyB0B2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0CyBtDzzzz0By EyCtGyEyDyC0FtGyE0A0E0BtGzztAtB0EtG0DtBtAzyyB0A0FzyyB0ByByC2Q&cr=1870843504 &ir=
[C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Web data] - Found [Search Provider] : hxxp://Vosteran.com/results.php?f=4&q={searchTerms}&a=vst_ir_15_02_ff&cd=2XzuyEtN2Y1L1Qzu0AyE0D 0BtAtDzyzzyE0F0C0A0C0CtDtCtN0D0Tzu0StCtCtDyEtN1L2XzutAtFyCtFtCyCtFyCtN1L1Cz utCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyDyByCzz0F0A0E0AtGtCtAzyyEtG0FtB0CyD tG0F0DzztDtGyDyBtDyDzy0DyEtDtC0CyB0B2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0CyBtDzzzz0By EyCtGyEyDyC0FtGyE0A0E0BtGzztAtB0EtG0DtBtAzyyB0A0FzyyB0ByByC2Q&cr=1870843504 &ir=
*************************

AdwCleaner[R0].txt - [4595 bytes] - [06/04/2014 16:26:53]
AdwCleaner[R10].txt - [3622 bytes] - [24/01/2015 03:53:55]
AdwCleaner[R11].txt - [3729 bytes] - [23/02/2015 23:59:31]
AdwCleaner[R12].txt - [2816 bytes] - [24/02/2015 00:00:09]
AdwCleaner[R1].txt - [993 bytes] - [07/04/2014 18:41:05]
AdwCleaner[R2].txt - [1496 bytes] - [22/10/2014 18:01:42]
AdwCleaner[R3].txt - [1556 bytes] - [22/10/2014 18:12:11]
AdwCleaner[R4].txt - [1616 bytes] - [22/10/2014 19:59:00]
AdwCleaner[R5].txt - [2348 bytes] - [03/12/2014 19:21:39]
AdwCleaner[R6].txt - [2204 bytes] - [10/12/2014 10:53:11]
AdwCleaner[R7].txt - [1506 bytes] - [14/12/2014 14:35:47]
AdwCleaner[R8].txt - [2901 bytes] - [22/12/2014 14:30:59]
AdwCleaner[R9].txt - [2250 bytes] - [04/01/2015 01:10:17]
AdwCleaner[S0].txt - [4590 bytes] - [06/04/2014 16:28:53]
AdwCleaner[S1].txt - [1053 bytes] - [07/04/2014 18:41:53]
AdwCleaner[S2].txt - [2943 bytes] - [22/12/2014 14:35:44]
AdwCleaner[S3].txt - [2317 bytes] - [04/01/2015 01:14:29]

########## EOF - C:\AdwCleaner\AdwCleaner[R12].txt - [3642 bytes] ##########

Ripped Off ??

$
0
0
Bill
Kaspersky has been on the computer remotely most of the day.
closed the checking / debit after getting cash.
went and filed police report; in case of dispute.

Unable to download any file(s) to computer...Need Help

$
0
0
Hello,

I am needing help with my computer. I'm unsure of the exact cause of this problem; but I absolutely cannot download any filetypes to my hard drive or flashdrive(s). When I attempt to download .jpeg, .pdf, .gif , etc. I get this message "(insert file type) contained a virus and was deleted." I am unsure of what to do at this point and I need all the help I can get! I had McAfee Total Protection 1 PC 2013 installed and have since removed it as it was of no use with this problem. Please help!

* I attempted to download DDS and received the same message that "dds.scr contained a virus and was deleted."

Please help!

Nothing works, when i start computer

$
0
0
Hi all, so the problem i, that when i start computer, type in the password, i see the desktop. Bus soon ii notice, that there is no internet connection(but it should be on), all the programs that started with the windows now are no longer responding, i cant open anything else, because no program opens, it feels like pressing desktop, no icon or stuff like that work. When i wanted to shut my computer down, it turned off background programs, desktop and that was it. It didn't shut down, computer just stopped shutting down and all i could see was my empty desktop. Then i force shut it down and started windows in safe mode... So here i am. Amy advice, what could it be and what should i do?
P.S. Everything was fine yesterday.
P.S.S sorry for my grammar(not my native).

EDIT: I tried restroring windows to its previous version(when everything was fine) didn't help. Now, when i type in the password, not just only desktop doesn't work... it doesn't even show up, just black screen with the mouse pointer.

Popups

$
0
0
Is there any way to get rid of, or stop, these stupid video ads that play automatically, or the "deal" things that pop up from the bottom of the screen telling me I can save money on this thing on Amazon, or that pop up whenever I scroll over a picture or those things that open a new window to some other website. It's well past the point of annoying.

Malware preventing connection to Internet?

$
0
0
I've tried everything I know how to do (which admittedly isn't much) and I'm hoping someone can help. I've run Spybot, Malwarebytes, and AVG. They all say they detected something called Astromedia and removed it, but now my computer is running worse than when I started. Every time I open my browser or a new tab it acts like it's not connected to the Internet until I reload multiple times. Can someone please help? My system info is below.
Thank you!


Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows 7 Home Premium, Service Pack 1, 64 bit
Processor: AMD A10-4600M APU with Radeon(tm) HD Graphics, AMD64 Family 21 Model 16 Stepping 1
Processor Count: 4
RAM: 5609 Mb
Graphics Card: AMD Radeon HD 7660G, 512 Mb
Hard Drives: C: Total - 590202 MB, Free - 403986 MB; D: Total - 19972 MB, Free - 2166 MB;
Motherboard: Hewlett-Packard, 18A6
Antivirus: AVG AntiVirus Free Edition 2015, Updated and Enabled

Win32:Dropper-gen[Drp)

$
0
0
Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows 8.1, 64 bit
Processor: Intel(R) Pentium(R) CPU N3530 @ 2.16GHz, Intel64 Family 6 Model 55 Stepping 8
Processor Count: 4
RAM: 3984 Mb
Graphics Card: Intel(R) HD Graphics, -2039 Mb
Hard Drives: C: Total - 452874 MB, Free - 406263 MB; D: Total - 23020 MB, Free - 2227 MB;
Motherboard: Hewlett-Packard, 2213
Antivirus: Windows Defender, Disabled

Avast full scan reports: Win32:dropper-gen[Drp]. For some time my machine(HP 15-r013ca Notebook)
Intel(R) Pentium(R) CPU N3530 2.16GHz 64bits using 64GB ram on Windows 8.1 (big mistake!) has
been very slow. Did all kinds of scans: Avast, Acura, MAM, SuperAntiSpware and others. Using CCleaner
tools > duplicate finder: found pages and pages of duplicates. I'm not sure what to delete as there
are many .exe, .dll, etc. Note that I changed machine from XP, millenium, Vista, 8.1. Guess many of
these duplicates come from that?. Would you like a copy of those duplicates?
Would appreciate your help please.

MacBook Pro virus

$
0
0
Help! I have a virus of somekind and cannon seem to get rid of it! I tried anti malware programs and they do not stop it! My MacBook opens pop up windows everytime I try and use safari. One is Mac Keeper, another is zip cloud and there are a few more. I need to get rid I this ASAP. I also get a message with a number telling me to call for immediate support but am afraid it's prob a scam too! I am not technically inclined at all though. Can someone walk me through fixing this?

computer locking up may be a virus

$
0
0
Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows 7 Home Premium, Service Pack 1, 64 bit
Processor: Intel(R) Core(TM) i5-2320 CPU @ 3.00GHz, Intel64 Family 6 Model 42 Stepping 7
Processor Count: 4
RAM: 8040 Mb
Graphics Card: LogMeIn Mirror Driver, 8 Mb
Hard Drives: C: Total - 1048570 MB, Free - 663307 MB; E: Total - 1907695 MB, Free - 243462 MB;
Motherboard: LENOVO, To be filled by O.E.M.
Antivirus: McAfee Anti-Virus and Anti-Spyware, Updated and Enabled

Run Dll error message

$
0
0
The dll error message reads:

There was a problem starting

C:\ (swiggle line) 1\common\ (swiggle line) 1\system\sysmenu.dll

The specific module could not be found

OK (the only option)

Then the window closes!!!!


Manofmarin

printer error for pdf

$
0
0
It won't let me download TSG SysInfo. I tried to run, no luck. 1. changed printer from HP84i0C to HPenvy4500. Had difficulty removing 840C. I have been unable to print anything. Now I am trying to print a PDF file. Error Msg: Printer Error 481, then 482, then "problem trying to access driver". Please help. Thanks.

Cant bget rid of Surfvox ....

Software Restriction Policy Has Disabled AVG

$
0
0
In the past few days AVG has stopped working on my computer and does not show in the System Tray, and my system has been sluggish in general. When I try to launch AVG I get an error message:

"C:\Program Files\AVG\AVG2015\avgui.exe - Windows cannot open this program because it has been prevented by a software restriction policy. For more information, open Event Viewer or contact your system administrator."

I tried repairing my AVG installation, then a full uninstall/reinstall, but still got the same error. Also tried running Malwarebytes with no luck. Please help!


Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows XP Professional, Service Pack 3, 32 bit
Processor: Intel(R) Pentium(R) D CPU 3.20GHz, x86 Family 15 Model 6 Stepping 4
Processor Count: 2
RAM: 2046 Mb
Graphics Card: RADEON X600 256MB HyperMemory, 256 Mb
Hard Drives: C: Total - 111176 MB, Free - 71387 MB; D: Total - 37934 MB, Free - 37835 MB; G: Total - 953835 MB, Free - 832073 MB;
Motherboard: Dell Inc., 0HJ054
Antivirus: AVG AntiVirus Free Edition 2015, Updated: Yes, On-Demand Scanner: Enabled

Wrong website opens after a google search & click link

How to remove Adware Generic5.CDUL from Laptop

$
0
0
Hello, I have an Acer Aspire 5536 Laptop with an AMD Athlon Processor QL-64 2.1 GHz. It has 3.00 GB of RAM, it’s a 32 bit system and it’s running Vista Home Premium w/ Service Pack 2. The antivirus is AVG Free and it’s detecting a virus called “Adware Generic5.CDUL” and the result shows this: “Forced Removal can cause system unstability or even crash”when I try to use System Restore, the most recent option for a restore point is Oct 2014. I’ve tried numerous restore points and none have removed the virus. How can I remove it without downloading a “Cleaner” and risking another virus?
Thanks for any info…

Computer Infected! Please Help!!

$
0
0
My computer is running very slow and making an awful grinding type of sound. I opened my tower and cleaned everything so I know it is not dirty. Please help!!

Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows 8.1, 64 bit
Processor: Intel(R) Core(TM) i7-3770 CPU @ 3.40GHz, Intel64 Family 6 Model 58 Stepping 9
Processor Count: 8
RAM: 16345 Mb
Graphics Card: NVIDIA GeForce GT 620, 1024 Mb
Hard Drives: C: Total - 963306 MB, Free - 812179 MB; D: Total - 935068 MB, Free - 765179 MB; I: Total - 476937 MB, Free - 249403 MB;
Motherboard: Dell Inc., 0NW73C
Antivirus: Kaspersky Internet Security, Updated and Enabled

No desktop on startup

$
0
0
Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows 8.1, 64 bit
Processor: Intel(R) Core(TM) i3-3227U CPU @ 1.90GHz, Intel64 Family 6 Model 58 Stepping 9
Processor Count: 4
RAM: 3911 Mb
Graphics Card: Intel(R) HD Graphics 4000, -2012 Mb
Hard Drives: C: Total - 108824 MB, Free - 28981 MB;
Motherboard: Acer, Hummingbird2
Antivirus: Windows Defender, Disabled

------------------------------------------------

A couple of weeks ago, I was having a problem where my desktop would not appear upon startup, as well as minor functionality was lost. Here is a link to that thread:

http://forums.techguy.org/windows-8/...-start-up.html

And a description of what was happening at the time (description copy and pasted from thread):

I think my impatience may have gotten me in trouble. I have a pdf of a book on my laptop but it didn't have bookmarks, and because of some error messages I'd gotten last week I uninstalled Adobe Acrobat Pro XI with the intention of reinstalling it later. So I go to just install a trial version just so I can complete this one task, and it seemed to me that the installer got stuck, so I tried to cancel through task manager and it finally closed. I restarted the computer to end the old installation process, but when it came back to the user sign-in screen, I signed in and it took an unusually long time to sign me in. Once past that, I was expecting the desktop to appear but only blackness. I touched the touch pad and the pointer appeared onscreen but that was it. I have to open the task manager using ctrl+alt+del, right-click a program to get to explorer, then proceed to use whatever I need like normal. Just NO DESKTOP.

This was earlier today. After a little while (I don't know how long as I wasn't keeping track of that) the desktop and explorer just came back while I was online. I didn't do anything special that I'm aware of. Now just recently, my battery died because I forgot to plug it up and since it was shut down and I had to sign back in, it has done the same thing as before. A long time to log in, and only a black background with no desktop or explorer. I also can't scroll. I have to manually scroll a page by tapping the up/down arrows in anything with a scroll bar. I've also since installed Acrobat and it's working fine.

EDIT: My desktop finally appeared @ 0927p. I logged in at @0824p (after this, I learned that if I left the computer on long enough, the desktop would finally appear, usually over an hour later and it would work like normal.)
-------------------------------------------------------------------

Since then the problem has been resolved but I was advised to post here to be sure all traces could be removed.

Is this malware?

$
0
0
I don't have google chrome installed on this work computer running Win 7 64 bit but I got a pop up that said Whoa! google chrome has crashed. Relaunch now? If I go into task manager I see a lot of entries for Ftlkpklzjfa.exe as a Google Chrome description and they are using a lot of resources. Any suggestions on how to proceed? Here is a screenshot capture.

Attached Images
File Type: jpg Problem.jpg (76.2 KB)

Constantly re-directed by malware

$
0
0
Hiya

Are you still having this problem? If so, can you try this. Download the following to the computer that is working, and transfer over using a usb drive etc


Please download Malwarebytes' Anti-Malware from Here or Here

Transfer to the USB drive.


Also, download the manual updates, just in case it won't connect online correctly when updating (it tries to update when you click Scan)

http://malwarebytes.gt500.org/

and select Manually Updating Malwarebytes' Anti-Malware download

Put that on the same disk, and install after you've installed the program.


-----------

Also, get AdwAware and transfer onto the drive:

Go here, to download and save AdwCleaner.exe to your desktop.



Just click on the Download Now @BleepingComputer

Note: It looks like a gray bug with 6 black legs.

--------------------------------------------



Close all open windows first, then double-click AdwCleaner.exe to load its main window.

Click the Scan button, then click "OK".

Allow the scan process to finish.

If it appears to freeze, be patient for a few minutes.

When it's finished, click on the Report button.

Return here to your thread, then copy-and-paste the ENTIRE log here


-------------
  • Double Click the downloaded mbam-setup-x.x.x.xxxx.exe to install the application. (x.x.x.xxxx represents the current version number).
  • During installation, make sure uncheck Enable free trial of Malwarebytes Anti-Malware Premium, then click Finish. You can always upgrade later ;) :



  • If an update is found, it will download and install the latest updates automatically:



  • Now select the Settings tab, and check the box next to Scan for rootkits:


  • Go back to the Dashboard tab, and click the Scan Now button:


  • The scan may take some time to finish,so please be patient.


  • When the scan is complete, it will show you the results. (This one is clean):


  • Make sure that everything is checked, and click Quarantine All (or similar).
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note below) If the log doesn't open, select View detailed log in the Scan tab:


  • The log is automatically saved by MBAM and can be viewed by going to the History tab and clicking on Application Logs:


  • Choose the latest Scan Log, and click on the View button:


  • In the bottom of the Scanning History Log window that opens, you can click on Export > Save to Text file (*.txt). Save the report to your Desktop.


  • Copy & Paste the entire contents of the report log in your next reply.

Extra Note: If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer, please do so immediately.

*** In your next reply, I need you to Copy&Paste the contents of the MBAM log file.

-----------------------------

Transfer both logs back to this computer, and copy/paste them here :)

Thanks


eddie

Unstoppable popups "2"

$
0
0
This is my second PC .
# AdwCleaner v4.111 - Logfile created 26/02/2015 at 00:11:41
# Updated 18/02/2015 by Xplode
# Database : 2015-02-18.3 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Dylan18 - DYLAN18-HP
# Running from : C:\Downloads\adwcleaner_4.111.exe
# Option : Cleaning

***** [ Services ] *****

[#] Service Deleted : YouTubeAcceleratorService

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\EnergoTech
Folder Deleted : C:\ProgramData\MovieWizard
Folder Deleted : C:\ProgramData\CouponFactor
Folder Deleted : C:\ProgramData\14292097924930845942
Folder Deleted : C:\ProgramData\c657bb570699bcf6
Folder Deleted : C:\ProgramData\d3c4547600000dc4
Folder Deleted : C:\Program Files (x86)\Bench
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\PepperZip
Folder Deleted : C:\Program Files (x86)\predm
Folder Deleted : C:\Program Files (x86)\FlexibleShOpppoer
Folder Deleted : C:\Program Files (x86)\rEaldeal
Folder Deleted : C:\Program Files (x86)\SaoveerAaddon
Folder Deleted : C:\Program Files (x86)\ssavveittkeep
Folder Deleted : C:\Program Files (x86)\surfkEEepit
Folder Deleted : C:\Program Files (x86)\webSaover
Folder Deleted : C:\Users\Dylan18\AppData\Local\Temp\Iminent
Folder Deleted : C:\Program Files\BubbleSound
Folder Deleted : C:\Users\Dylan18\AppData\Local\apn
Folder Deleted : C:\Users\Dylan18\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Dylan18\AppData\Local\CrashRpt
Folder Deleted : C:\Users\Dylan18\AppData\Local\MovieWizard
Folder Deleted : C:\Users\Dylan18\AppData\Local\Taplika
Folder Deleted : C:\Users\Dylan18\AppData\Roaming\Optimizer Pro
Folder Deleted : C:\Users\Dylan18\AppData\Roaming\Taplika
Folder Deleted : C:\Users\Dylan18\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PepperZip
Folder Deleted : C:\Users\Dylan18\Documents\Optimizer Pro
Folder Deleted : C:\Users\Dylan18\Documents\ProPCCleaner
Folder Deleted : C:\Users\Dylan18\AppData\Roaming\Mozilla\Firefox\Profiles\cyuv5jam.default\ Extensions\{4C59F3E5-BBD0-4344-8DD2-30866FA0B31E}
Folder Deleted : C:\Users\Dylan18\AppData\Roaming\Mozilla\Firefox\Profiles\cyuv5jam.default\ Extensions\A@VhGwKRICu.net
Folder Deleted : C:\ProgramData\bgflbemdomiibjehnepgjcpkapmgbple
File Deleted : C:\Users\Dylan18\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TornTvDownloader.lnk
File Deleted : C:\Users\Dylan18\AppData\Roaming\Mozilla\Firefox\Profiles\cyuv5jam.default\ searchplugins\trovi-search.xml
File Deleted : C:\Users\Dylan18\AppData\Roaming\Mozilla\Firefox\Profiles\cyuv5jam.default\ searchplugins\Web Search.xml
File Deleted : C:\Users\Dylan18\AppData\Roaming\Mozilla\Firefox\Profiles\cyuv5jam.default\ user.js
File Deleted : C:\Users\Dylan18\AppData\Roaming\Mozilla\Firefox\Profiles\cyuv5jam.default\ searchplugins\Taplika.xml
File Deleted : C:\Users\Dylan18\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_igdhbblpcellaljokkpfhcjlagemhgjl_0.localstorage
File Deleted : C:\Users\Dylan18\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage
File Deleted : C:\Users\Dylan18\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage-journal
File Deleted : C:\Users\Dylan18\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
File Deleted : C:\Users\Dylan18\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
File Deleted : C:\Users\Dylan18\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_start.iminent.com_0.localstorage
File Deleted : C:\Users\Dylan18\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
File Deleted : C:\Users\Dylan18\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
File Deleted : C:\Users\Dylan18\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.select-n-go00.select-n-go.com_0.localstorage
File Deleted : C:\Users\Dylan18\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.select-n-go00.select-n-go.com_0.localstorage-journal

***** [ Scheduled tasks ] *****

Task Deleted : EnergoTech Update

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [DynamicPricer@dynamic-pricer.com]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [GoobzoYouTubeAccelerator]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Torntv Downloader]
Key Deleted : HKLM\SOFTWARE\Classes\Iminent
Key Deleted : HKLM\SOFTWARE\Classes\P14dfc6e0_99dd_4e31_9d15_6b2aea7eee6a_.P14dfc6e0_99dd _4e31_9d15_6b2aea7eee6a_
Key Deleted : HKLM\SOFTWARE\Classes\P14dfc6e0_99dd_4e31_9d15_6b2aea7eee6a_.P14dfc6e0_99dd _4e31_9d15_6b2aea7eee6a_.9
Key Deleted : HKLM\SOFTWARE\Classes\P15ac78b7_b4e0_4537_9aaa_ce2cac47bdb1_.P15ac78b7_b4e0 _4537_9aaa_ce2cac47bdb1_
Key Deleted : HKLM\SOFTWARE\Classes\P15ac78b7_b4e0_4537_9aaa_ce2cac47bdb1_.P15ac78b7_b4e0 _4537_9aaa_ce2cac47bdb1_.9
Key Deleted : HKLM\SOFTWARE\Classes\Pe84f917c_f2bc_44fc_854d_4da6d18f3a2b_.Pe84f917c_f2bc _44fc_854d_4da6d18f3a2b_
Key Deleted : HKLM\SOFTWARE\Classes\Pe84f917c_f2bc_44fc_854d_4da6d18f3a2b_.Pe84f917c_f2bc _44fc_854d_4da6d18f3a2b_.9
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{14dfc6e0-99dd-4e31-9d15-6b2aea7eee6a}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{15ac78b7-b4e0-4537-9aaa-ce2cac47bdb1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{e84f917c-f2bc-44fc-854d-4da6d18f3a2b}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8FB1A663-2820-468B-95C4-5060A4C5F413}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{079E2F0F-FCA0-4163-BC82-5355B879E86E}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C7405EEB-2E16-40FE-9E27-1F48CAAB15E1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{14dfc6e0-99dd-4e31-9d15-6b2aea7eee6a}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{15ac78b7-b4e0-4537-9aaa-ce2cac47bdb1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e84f917c-f2bc-44fc-854d-4da6d18f3a2b}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{15ac78b7-b4e0-4537-9aaa-ce2cac47bdb1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{e84f917c-f2bc-44fc-854d-4da6d18f3a2b}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{15ac78b7-b4e0-4537-9aaa-ce2cac47bdb1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{e84f917c-f2bc-44fc-854d-4da6d18f3a2b}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{14dfc6e0-99dd-4e31-9d15-6b2aea7eee6a}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{15ac78b7-b4e0-4537-9aaa-ce2cac47bdb1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{e84f917c-f2bc-44fc-854d-4da6d18f3a2b}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{84FF7BD6-B47F-46F8-9130-01B2696B36CB}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{14dfc6e0-99dd-4e31-9d15-6b2aea7eee6a}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{15ac78b7-b4e0-4537-9aaa-ce2cac47bdb1}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{e84f917c-f2bc-44fc-854d-4da6d18f3a2b}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{15527BF5-9729-49DC-889C-9F956983154C}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{14dfc6e0-99dd-4e31-9d15-6b2aea7eee6a}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{15ac78b7-b4e0-4537-9aaa-ce2cac47bdb1}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e84f917c-f2bc-44fc-854d-4da6d18f3a2b}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{215FF469-8C3E-4039-A464-0403EB42E34E}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{ACA2121B-1392-483F-93EA-4621A65A9166}
Key Deleted : HKCU\Software\1ClickDownload
Key Deleted : HKCU\Software\Compete
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\powerpack
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\SOFTWARE\AdvertisingSupport
Key Deleted : HKLM\SOFTWARE\CompeteInc
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\Goobzo
Key Deleted : HKLM\SOFTWARE\Iminent
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YouTube Accelerator
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search module
Key Deleted : [x64] HKLM\SOFTWARE\AllDaySavings
Key Deleted : [x64] HKLM\SOFTWARE\TornTv Downloader
Data Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <-loopback>

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17631

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]

-\\ Mozilla Firefox v20.0.1 (en-US)

[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("browser.search.order.1", "Ask.com");
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.BUTTON_STRUCTURE", "[{\"b\":221352991,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":22135299 2,\"c\":\"mindspark.entersearchterms\",\"p\":\"L.0.0[...]
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.browser.version.last", "20.0");
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.firstKnownVersion", "6.58.4.19978");
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.homepage", "hxxp://home.tb.ask.com/index.jhtml?n=780c982c&p2=^ZO^xpi000^YYA^");
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.hp.user.defined", true);
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.initialized", true);
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.installation.contextKey ", "");
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.installation.installDat e", "2014091308");
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.installation.partnerId" , "^ZO^xpi000^YYA^");
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.installation.partnerSub Id", "");
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.installation.success", false);
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.isCompliantUninstallImp lementation", true);
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.lastKnownVersion", "6.85.5.65368");
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.options.defaultSearch", false);
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.options.homePageEnabled ", false);
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.options.keywordEnabled" , false);
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.options.tabEnabled", false);
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.partnerPixelFired", false);
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.successUrl", "hxxp://utilitychest.dl.tb.ask.com/installComplete.jhtml");
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.toolbarCollapsed", true);
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.weather.location", "16001");
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark.lastInstalled", "utilitychest@mindspark.com");
[cyuv5jam.default\prefs.js] - Line Deleted : user_pref("iminent.BirthDate", "1423685917");

-\\ Google Chrome v40.0.2214.111


-\\ Comodo Dragon v


-\\ Chrome Canary v


*************************

AdwCleaner[R0].txt - [47740 bytes] - [08/09/2014 11:16:36]
AdwCleaner[R1].txt - [15286 bytes] - [26/02/2015 00:05:47]
AdwCleaner[S0].txt - [43685 bytes] - [08/09/2014 11:21:33]
AdwCleaner[S1].txt - [14687 bytes] - [26/02/2015 00:11:41]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [14747 bytes] ##########
Viewing all 4746 articles
Browse latest View live




Latest Images