Jump to content

jayjay99

Members
  • Posts

    34
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Marius, Thanks again! How do I go about enrolling in the Malware Removal School?
  2. Marius, Delfix and TFC did not auttomatically save a log file. I did remember to save one for Delfix. FRST quarantine folder is indeed deleted. Do you need to see it? How do I go about becoming proficient enough to others like you were doing?
  3. Marius, Thanks! What about the FRST quarantine? I am proceeding with the delete of the logs, etc that weren't done earlier.
  4. Marius, How do I go about finding the Recycler folder in these disks?
  5. C:\$Recycle.Bin\S-1-5-21-3404179652-3976374348-2591870498-1000\$RTY85NQ\Backup Set 2011-11-17 111520\Backup Files 2011-11-17 111520\Backup files 3.zip Win32/Toolbar.Inbox.A potentially unwanted application C:\$Recycle.Bin\S-1-5-21-3404179652-3976374348-2591870498-1000\$RTY85NQ\Backup Set 2011-11-17 111520\Backup Files 2011-11-17 111520\Backup files 5.zip Win32/Toolbar.Inbox.A potentially unwanted application C:\$Recycle.Bin\S-1-5-21-3404179652-3976374348-2591870498-1000\$RTY85NQ\Backup Set 2011-11-17 111520\Backup Files 2011-11-17 111520\Backup files 6.zip Win32/Toolbar.Inbox.A potentially unwanted application C:\FRST\Quarantine\C\Downloads\ccsetup311.exe.xBAD Win32/Bundled.Toolbar.Google.E potentially unsafe application C:\FRST\Quarantine\C\Downloads\software\CuteWriter.exe.xBAD a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application C:\FRST\Quarantine\C\iodownloads\SOLOCommCenter.exe.xBAD probably a variant of Win32/Adware.BargainBuddy.C application C:\FRST\Quarantine\C\IOMEGA_HDD\copy2009dec\Softwares\Ahead Nero 7 Premium Incl Keygen-Paradox\Ahead.Nero.v7.7.5.1 Standalone Installer with crack\Nero-7.7.5.1_eng_trial.exe Win32/Toolbar.AskSBar potentially unwanted application C:\FRST\Quarantine\C\IOMEGA_HDD\My Picts\sd2007\downloads\SOLOCommCenter.exe.xBAD probably a variant of Win32/Adware.BargainBuddy.C application C:\FRST\Quarantine\C\IOMEGA_HDD\My Picts\sd2007\downloads\zlsSetup_70_462_000_en.exe.xBAD a variant of Win32/AdInstaller potentially unwanted application C:\FRST\Quarantine\C\IOMEGA_HDD\Pictures\kingston\downloads\zlsSetup_70_470_000_en.exe.xBAD a variant of Win32/AdInstaller potentially unwanted application C:\FRST\Quarantine\C\IOMEGA_HDD\Pictures\My Pictures\sd2007\downloads\SOLOCommCenter.exe.xBAD probably a variant of Win32/Adware.BargainBuddy.C application C:\FRST\Quarantine\C\IOMEGA_HDD\Pictures\My Pictures\sd2007\downloads\zlsSetup_70_462_000_en.exe.xBAD a variant of Win32/AdInstaller potentially unwanted application C:\FRST\Quarantine\C\IOMEGA_HDD\Pictures\thumb1gb\Setup_FreeBurnerN.exe.xBAD Win32/Toolbar.Widgi potentially unwanted application C:\FRST\Quarantine\C\langPC\Downloads\DPSetup.exe.xBAD a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application C:\FRST\Quarantine\C\ProgramData\InstallMate\{0E8B3E5E-27B2-432D-A1C6-6F90D5681CA8}\Custom.dll Win32/InstalleRex.M potentially unwanted application C:\FRST\Quarantine\C\toshiba\Local Disk\downloads\zlsSetup_70_470_000_en.exe.xBAD a variant of Win32/AdInstaller potentially unwanted application C:\FRST\Quarantine\C\Users\ING\AppData\Roaming\serv\ClickAndMark_2040-5250.exe.xBAD Win32/AdWare.AddLyrics.BJ application C:\FRST\Quarantine\C\Users\ING\AppData\Roaming\serv\VoPackage.exe.xBAD Win32/VOPackage.U potentially unwanted application C:\FRST\Quarantine\C\Users\ING\AppData\Roaming\VOPackage\runasu.exe a variant of Win32/VOPackage.R potentially unwanted application C:\FRST\Quarantine\C\Users\ING\AppData\Roaming\VOPackage\Uninstall.exe Win32/VOPackage.S potentially unwanted application C:\FRST\Quarantine\C\Users\ING\AppData\Roaming\VOPackage\VOPackage.exe Win32/VOPackage.U potentially unwanted application C:\FRST\Quarantine\C\Users\ING\AppData\Roaming\VOPackage\VOsrv.exe a variant of Win32/VOPackage.S potentially unwanted application C:\FRST\Quarantine\C\Users\ING\Downloads\ccsetup412.exe.xBAD Win32/Bundled.Toolbar.Google.D potentially unsafe application C:\FRST\Quarantine\C\Users\ING\Downloads\SOLOCommCenter.exe.xBAD probably a variant of Win32/Adware.BargainBuddy.C application C:\FRST\Quarantine\C\Users\ING\Downloads\utils\CuteWriter.exe.xBAD a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application C:\FRST\Quarantine\C\Users\ING\Pictures\2008\downloads\zlsSetup_70_470_000_en.exe.xBAD a variant of Win32/AdInstaller potentially unwanted application C:\FRST\Quarantine\C\ZIP96\FCOL\TRUMPING.EXE Win16/Flooder.ICMP.ICMPBomb.A trojan C:\FRST\Quarantine\C\ZIP96\JAXNET\TRUMPING.EXE Win16/Flooder.ICMP.ICMPBomb.A trojan C:\FRST\Quarantine\C\ZIP96\POWER\UPPER.COM a variant of Tic.109.B virus I:\HITACHI\14libdownloads\Downloads\ccsetup311.exe Win32/Bundled.Toolbar.Google.E potentially unsafe application I:\HITACHI\14libdownloads\Downloads\software\CuteWriter.exe a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application I:\HITACHI\downloads\ccsetup312.exe Win32/Bundled.Toolbar.Google.E potentially unsafe application I:\HITACHI\downloads\cnet2_Zemana_AntiLogger_1_9_2_819_exe.exe a variant of Win32/InstallCore.D potentially unwanted application I:\HITACHI\downloads\Setup_FreeBurnerN.exe Win32/Toolbar.Widgi potentially unwanted application I:\HITACHI\downloads\SOLOCommCenter.exe probably a variant of Win32/Adware.BargainBuddy.C application I:\HITACHI\downloads\zlsSetup_70_462_000_en.exe a variant of Win32/AdInstaller potentially unwanted application I:\HITACHI\downloads\software\CuteWriter.exe a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application I:\HITACHI\downloads\software\freeopener.exe a variant of Win32/InstallIQ.A potentially unwanted application I:\HITACHI\downloads\software\infrarecorder_34.exe a variant of Win32/InstallIQ.A potentially unwanted application I:\HITACHI\RECYCLER\S-1-5-21-2431036538-2261379889-830085686-500\Df51\ccsetup312.exe Win32/Bundled.Toolbar.Google.E potentially unsafe application I:\HITACHI\RECYCLER\S-1-5-21-2431036538-2261379889-830085686-500\Df63\CuteWriter.exe a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application I:\HITACHI\RECYCLER\S-1-5-21-2431036538-2261379889-830085686-500\Df63\freeopener.exe a variant of Win32/InstallIQ.A potentially unwanted application I:\HITACHI\RECYCLER\S-1-5-21-2431036538-2261379889-830085686-500\Df63\infrarecorder_34.exe a variant of Win32/InstallIQ.A potentially unwanted application I:\HITACHI\RECYCLER\S-1-5-21-2431036538-2261379889-830085686-500\Df65\cnet2_Zemana_AntiLogger_1_9_2_819_exe.exe a variant of Win32/InstallCore.D potentially unwanted application I:\HITACHI\RECYCLER\S-1-5-21-2431036538-2261379889-830085686-500\Df81\ccsetup312.exe Win32/Bundled.Toolbar.Google.E potentially unsafe application I:\HITACHI\wdext\Buffalo backup\HD-PFU2 (E)\fox-recorder-setup.exe a variant of Win32/Toolbar.Conduit.B potentially unwanted application I:\HITACHI\wdext\Buffalo backup\HD-PFU2 (E)\MP3VoiceRecorderSetup.exe multiple threats J:\14libdownloads\Downloads\ccsetup311.exe Win32/Bundled.Toolbar.Google.E potentially unsafe application J:\14libdownloads\Downloads\software\CuteWriter.exe a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application J:\downloads\ccsetup312.exe Win32/Bundled.Toolbar.Google.E potentially unsafe application J:\downloads\cnet2_Zemana_AntiLogger_1_9_2_819_exe.exe a variant of Win32/InstallCore.D potentially unwanted application J:\downloads\Setup_FreeBurnerN.exe Win32/Toolbar.Widgi potentially unwanted application J:\downloads\SOLOCommCenter.exe probably a variant of Win32/Adware.BargainBuddy.C application J:\downloads\zlsSetup_70_462_000_en.exe a variant of Win32/AdInstaller potentially unwanted application J:\downloads\software\CuteWriter.exe a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application J:\downloads\software\freeopener.exe a variant of Win32/InstallIQ.A potentially unwanted application J:\downloads\software\infrarecorder_34.exe a variant of Win32/InstallIQ.A potentially unwanted application J:\RECYCLER\S-1-5-21-2431036538-2261379889-830085686-500\Df51\ccsetup312.exe Win32/Bundled.Toolbar.Google.E potentially unsafe application J:\RECYCLER\S-1-5-21-2431036538-2261379889-830085686-500\Df63\CuteWriter.exe a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application J:\RECYCLER\S-1-5-21-2431036538-2261379889-830085686-500\Df63\freeopener.exe a variant of Win32/InstallIQ.A potentially unwanted application J:\RECYCLER\S-1-5-21-2431036538-2261379889-830085686-500\Df63\infrarecorder_34.exe a variant of Win32/InstallIQ.A potentially unwanted application J:\RECYCLER\S-1-5-21-2431036538-2261379889-830085686-500\Df65\cnet2_Zemana_AntiLogger_1_9_2_819_exe.exe a variant of Win32/InstallCore.D potentially unwanted application J:\RECYCLER\S-1-5-21-2431036538-2261379889-830085686-500\Df81\ccsetup312.exe Win32/Bundled.Toolbar.Google.E potentially unsafe application J:\wdext\Buffalo backup\HD-PFU2 (E)\fox-recorder-setup.exe a variant of Win32/Toolbar.Conduit.B potentially unwanted application J:\wdext\Buffalo backup\HD-PFU2 (E)\MP3VoiceRecorderSetup.exe multiple threats
  6. Marius, I have two other extternal hard disks. Is there any danger that malware in them can infect the system? I have not proceeded to delete materials used for cleaning so far.
  7. C:\FRST\Quarantine\C\Downloads\ccsetup311.exe.xBAD Win32/Bundled.Toolbar.Google.E potentially unsafe application C:\FRST\Quarantine\C\Downloads\software\CuteWriter.exe.xBAD a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application C:\FRST\Quarantine\C\iodownloads\SOLOCommCenter.exe.xBAD probably a variant of Win32/Adware.BargainBuddy.C application C:\FRST\Quarantine\C\IOMEGA_HDD\copy2009dec\Softwares\Ahead Nero 7 Premium Incl Keygen-Paradox\Ahead.Nero.v7.7.5.1 Standalone Installer with crack\Nero-7.7.5.1_eng_trial.exe Win32/Toolbar.AskSBar potentially unwanted application C:\FRST\Quarantine\C\IOMEGA_HDD\My Picts\sd2007\downloads\SOLOCommCenter.exe.xBAD probably a variant of Win32/Adware.BargainBuddy.C application C:\FRST\Quarantine\C\IOMEGA_HDD\My Picts\sd2007\downloads\zlsSetup_70_462_000_en.exe.xBAD a variant of Win32/AdInstaller potentially unwanted application C:\FRST\Quarantine\C\IOMEGA_HDD\Pictures\kingston\downloads\zlsSetup_70_470_000_en.exe.xBAD a variant of Win32/AdInstaller potentially unwanted application C:\FRST\Quarantine\C\IOMEGA_HDD\Pictures\My Pictures\sd2007\downloads\SOLOCommCenter.exe.xBAD probably a variant of Win32/Adware.BargainBuddy.C application C:\FRST\Quarantine\C\IOMEGA_HDD\Pictures\My Pictures\sd2007\downloads\zlsSetup_70_462_000_en.exe.xBAD a variant of Win32/AdInstaller potentially unwanted application C:\FRST\Quarantine\C\IOMEGA_HDD\Pictures\thumb1gb\Setup_FreeBurnerN.exe.xBAD Win32/Toolbar.Widgi potentially unwanted application C:\FRST\Quarantine\C\langPC\Downloads\DPSetup.exe.xBAD a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application C:\FRST\Quarantine\C\ProgramData\InstallMate\{0E8B3E5E-27B2-432D-A1C6-6F90D5681CA8}\Custom.dll Win32/InstalleRex.M potentially unwanted application C:\FRST\Quarantine\C\toshiba\Local Disk\downloads\zlsSetup_70_470_000_en.exe.xBAD a variant of Win32/AdInstaller potentially unwanted application C:\FRST\Quarantine\C\Users\ING\AppData\Roaming\serv\ClickAndMark_2040-5250.exe.xBAD Win32/AdWare.AddLyrics.BJ application C:\FRST\Quarantine\C\Users\ING\AppData\Roaming\serv\VoPackage.exe.xBAD Win32/VOPackage.U potentially unwanted application C:\FRST\Quarantine\C\Users\ING\AppData\Roaming\VOPackage\runasu.exe a variant of Win32/VOPackage.R potentially unwanted application C:\FRST\Quarantine\C\Users\ING\AppData\Roaming\VOPackage\Uninstall.exe Win32/VOPackage.S potentially unwanted application C:\FRST\Quarantine\C\Users\ING\AppData\Roaming\VOPackage\VOPackage.exe Win32/VOPackage.U potentially unwanted application C:\FRST\Quarantine\C\Users\ING\AppData\Roaming\VOPackage\VOsrv.exe a variant of Win32/VOPackage.S potentially unwanted application C:\FRST\Quarantine\C\Users\ING\Downloads\ccsetup412.exe.xBAD Win32/Bundled.Toolbar.Google.D potentially unsafe application C:\FRST\Quarantine\C\Users\ING\Downloads\SOLOCommCenter.exe.xBAD probably a variant of Win32/Adware.BargainBuddy.C application C:\FRST\Quarantine\C\Users\ING\Downloads\utils\CuteWriter.exe.xBAD a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application C:\FRST\Quarantine\C\Users\ING\Pictures\2008\downloads\zlsSetup_70_470_000_en.exe.xBAD a variant of Win32/AdInstaller potentially unwanted application C:\FRST\Quarantine\C\ZIP96\FCOL\TRUMPING.EXE Win16/Flooder.ICMP.ICMPBomb.A trojan C:\FRST\Quarantine\C\ZIP96\JAXNET\TRUMPING.EXE Win16/Flooder.ICMP.ICMPBomb.A trojan C:\FRST\Quarantine\C\ZIP96\POWER\UPPER.COM a variant of Tic.109.B virus C:\IOMEGA_HDD\E527WIN7\Backup Set 2011-11-17 111520\Backup Files 2011-11-17 111520\Backup files 3.zip Win32/Toolbar.Inbox.A potentially unwanted application C:\IOMEGA_HDD\E527WIN7\Backup Set 2011-11-17 111520\Backup Files 2011-11-17 111520\Backup files 5.zip Win32/Toolbar.Inbox.A potentially unwanted application C:\IOMEGA_HDD\E527WIN7\Backup Set 2011-11-17 111520\Backup Files 2011-11-17 111520\Backup files 6.zip Win32/Toolbar.Inbox.A potentially unwanted application J:\copy2009dec\Softwares\Ahead Nero 7 Premium Incl Keygen-Paradox\Ahead.Nero.v7.7.5.1 Standalone Installer with crack\Nero-7.7.5.1_eng_trial.exe Win32/Toolbar.AskSBar potentially unwanted application J:\E527WIN7\Backup Set 2011-11-17 223027\Backup Files 2011-11-17 223027\Backup files 3.zip Win32/Toolbar.Inbox.A potentially unwanted application J:\E527WIN7\Backup Set 2011-11-17 223027\Backup Files 2011-11-17 223027\Backup files 5.zip Win32/Toolbar.Inbox.A potentially unwanted application J:\E527WIN7\Backup Set 2011-11-17 223027\Backup Files 2011-11-17 223027\Backup files 6.zip Win32/Toolbar.Inbox.A potentially unwanted application J:\ingB351\Pictures\Pictures\2008\downloads\zlsSetup_70_470_000_en.exe a variant of Win32/AdInstaller potentially unwanted application J:\mydoc2012apr\My Pictures\sd2007\downloads\SOLOCommCenter.exe probably a variant of Win32/Adware.BargainBuddy.C application J:\mydoc2012apr\My Pictures\sd2007\downloads\zlsSetup_70_462_000_en.exe a variant of Win32/AdInstaller potentially unwanted application
  8. Marius, Eset online scan is a onetime use. When I tried to download a 30-day trial, it wants me to uninstall my anti-virus program, Miscrosoft Security Essentials/Defender. Do I follow through? What about Malwarebytes, AdwCleaner and Superantispyware?
  9. Marius, The malware were in some of the folders which were created when I consolidated some files from external drives. How do I go about cleaning up those drives?
  10. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows 7 Professional x64 Ran by ING on Tue 08/19/2014 at 20:39:35.55 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} ~~~ Files ~~~ Folders Successfully deleted: [Empty Folder] C:\Users\ING\appdata\local\{3D999C2C-EDB3-43E3-887C-B916AE885302} Successfully deleted: [Empty Folder] C:\Users\ING\appdata\local\{C2B31ABD-51FE-48A7-96D5-A627AFEF6A23} ~~~ FireFox Emptied folder: C:\Users\ING\AppData\Roaming\mozilla\firefox\profiles\gv5dpixu.default\minidumps [105 files] firstlink log in RogueKiller/Logs: Results of screen317's Security Check version 0.99.87 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Windows Firewall Enabled! Microsoft Security Essentials Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Java 7 Update 67 Adobe Flash Player 14.0.0.145 Adobe Reader 10.1.11 Adobe Reader out of Date! Mozilla Firefox (31.0) ````````Process Check: objlist.exe by Laurent```````` Microsoft Security Essentials MSMpEng.exe Microsoft Security Essentials msseces.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: 0% ````````````````````End of Log`````````````````````` Secondlink log in RogueKiller/Logs: Results of screen317's Security Check version 0.99.87 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Windows Firewall Enabled! Microsoft Security Essentials Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Java 7 Update 67 Adobe Flash Player 14.0.0.145 Adobe Reader 10.1.11 Adobe Reader out of Date! Mozilla Firefox (31.0) ````````Process Check: objlist.exe by Laurent```````` Microsoft Security Essentials MSMpEng.exe Microsoft Security Essentials msseces.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: 0% ````````````````````End of Log``````````````````````
  11. AdwCleaner[R0] # AdwCleaner v3.307 - Report created 19/08/2014 at 10:32:24 # Updated 17/08/2014 by Xplode # Operating System : Windows 7 Professional Service Pack 1 (64 bits) # Username : ING - ING-B351 # Running from : C:\Users\ING\Desktop\adwcleaner_3.307.exe # Option : Scan ***** [ Services ] ***** ***** [ Files / Folders ] ***** File Found : C:\END File Found : C:\Users\ING\AppData\RoamING\aps.uninstall.scan.results File Found : C:\Users\ING\AppData\RoamING\Mozilla\Firefox\Profiles\gv5dpixu.default\user.js ***** [ Scheduled Tasks ] ***** ***** [ Shortcuts ] ***** ***** [ Registry ] ***** Key Found : HKCU\Software\AnyProtect Key Found : HKCU\Software\RegisteredApplicationsEx Key Found : [x64] HKCU\Software\AnyProtect Key Found : [x64] HKCU\Software\RegisteredApplicationsEx Key Found : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} Key Found : HKLM\SOFTWARE\Classes\TypeLib\{1C1356DA-1E98-4810-A9F6-18D89BD1C0C0} Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{74F475FA-6C75-43BD-AAB9-ECDA6184F600} Key Found : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS Key Found : HKLM\SOFTWARE\Microsoft\Tracing\mconduitinstaller_RASAPI32 Key Found : HKLM\SOFTWARE\Microsoft\Tracing\mconduitinstaller_RASMANCS Key Found : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASAPI32 Key Found : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASMANCS Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4 Key Found : [x64] HKLM\SOFTWARE\Tarma Installer ***** [ Browsers ] ***** -\\ Internet Explorer v11.0.9600.17239 -\\ Mozilla Firefox v31.0 (x86 en-US) [ File : C:\Users\ING\AppData\RoamING\Mozilla\Firefox\Profiles\gv5dpixu.default\prefs.js ] Line Found : user_pref("extensions.lHHc.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.ne[...] -\\ Google Chrome v [ File : C:\Users\ING\AppData\Local\Google\Chrome\User Data\Default\preferences ] Found [search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms} Found [search Provider] : hxxp://www.ask.com/web?q={searchTerms} ************************* AdwCleaner[R0].txt - [2315 octets] - [19/08/2014 10:32:24] ########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [2375 octets] ########## AdwCleaner[s0] AdwCleaner v3.307 - Report created 19/08/2014 at 19:06:41 # Updated 17/08/2014 by Xplode # Operating System : Windows 7 Professional Service Pack 1 (64 bits) # Username : ING - ING-B351 # Running from : C:\Users\ING\Desktop\adwcleaner_3.307.exe # Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** File Deleted : C:\END File Deleted : C:\Users\ING\AppData\RoamING\aps.uninstall.scan.results File Deleted : C:\Users\ING\AppData\RoamING\Mozilla\Firefox\Profiles\gv5dpixu.default\user.js ***** [ Scheduled Tasks ] ***** ***** [ Shortcuts ] ***** ***** [ Registry ] ***** Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{74F475FA-6C75-43BD-AAB9-ECDA6184F600} Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\mconduitinstaller_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\mconduitinstaller_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASMANCS Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{1C1356DA-1E98-4810-A9F6-18D89BD1C0C0} Key Deleted : HKCU\Software\AnyProtect Key Deleted : HKCU\Software\RegisteredApplicationsEx Key Deleted : [x64] HKLM\SOFTWARE\Tarma Installer Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4 ***** [ Browsers ] ***** -\\ Internet Explorer v11.0.9600.17239 -\\ Mozilla Firefox v31.0 (x86 en-US) [ File : C:\Users\ING\AppData\RoamING\Mozilla\Firefox\Profiles\gv5dpixu.default\prefs.js ] Line Deleted : user_pref("extensions.lHHc.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.ne[...] -\\ Google Chrome v [ File : C:\Users\ING\AppData\Local\Google\Chrome\User Data\Default\preferences ] Deleted [search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms} Deleted [search Provider] : hxxp://www.ask.com/web?q={searchTerms} *************************
  12. Marius, It has been several hours since I hit scan. There is no direct statement that says it has finished. However, there is a "Pending. Please uncheck elements you don't want to remove." Should I hit Clean now or wait for more message?
  13. Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 17-08-2014 01 Ran by ING at 2014-08-19 07:38:40 Run:2 Running from C:\Users\ING\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** C:\Downloads\ccsetup311.exe C:\Downloads\software\CuteWriter.exe C:\iodownloads\SOLOCommCenter.exe C:\IOMEGA_HDD\copy2009dec\Softwares\Ahead Nero 7 Premium Incl Keygen-Paradox C:\IOMEGA_HDD\My Picts\sd2007\downloads\SOLOCommCenter.exe C:\IOMEGA_HDD\My Picts\sd2007\downloads\zlsSetup_70_462_000_en.exe C:\IOMEGA_HDD\Pictures\kingston\downloads\zlsSetup_70_470_000_en.exe C:\IOMEGA_HDD\Pictures\My Pictures\sd2007\downloads\SOLOCommCenter.exe C:\IOMEGA_HDD\Pictures\My Pictures\sd2007\downloads\zlsSetup_70_462_000_en.exe C:\IOMEGA_HDD\Pictures\thumb1gb\Setup_FreeBurnerN.exe C:\langPC\Downloads\DPSetup.exe C:\toshiba\Local Disk\downloads\zlsSetup_70_470_000_en.exe C:\Users\ING\AppData\Roaming\serv\ClickAndMark_2040-5250.exe C:\Users\ING\AppData\Roaming\serv\CostMin.exe C:\Users\ING\AppData\Roaming\serv\VoPackage.exe C:\Users\ING\Downloads\ccsetup412.exe C:\Users\ING\Downloads\SOLOCommCenter.exe C:\Users\ING\Downloads\utils\CuteWriter.exe C:\Users\ING\Pictures\2008\downloads\zlsSetup_70_470_000_en.exe C:\ZIP96 EmptyTemp: ***************** C:\Downloads\ccsetup311.exe => Moved successfully. C:\Downloads\software\CuteWriter.exe => Moved successfully. C:\iodownloads\SOLOCommCenter.exe => Moved successfully. C:\IOMEGA_HDD\copy2009dec\Softwares\Ahead Nero 7 Premium Incl Keygen-Paradox => Moved successfully. C:\IOMEGA_HDD\My Picts\sd2007\downloads\SOLOCommCenter.exe => Moved successfully. C:\IOMEGA_HDD\My Picts\sd2007\downloads\zlsSetup_70_462_000_en.exe => Moved successfully. C:\IOMEGA_HDD\Pictures\kingston\downloads\zlsSetup_70_470_000_en.exe => Moved successfully. C:\IOMEGA_HDD\Pictures\My Pictures\sd2007\downloads\SOLOCommCenter.exe => Moved successfully. C:\IOMEGA_HDD\Pictures\My Pictures\sd2007\downloads\zlsSetup_70_462_000_en.exe => Moved successfully. C:\IOMEGA_HDD\Pictures\thumb1gb\Setup_FreeBurnerN.exe => Moved successfully. C:\langPC\Downloads\DPSetup.exe => Moved successfully. C:\toshiba\Local Disk\downloads\zlsSetup_70_470_000_en.exe => Moved successfully. C:\Users\ING\AppData\Roaming\serv\ClickAndMark_2040-5250.exe => Moved successfully. "C:\Users\ING\AppData\Roaming\serv\CostMin.exe" => File/Directory not found. C:\Users\ING\AppData\Roaming\serv\VoPackage.exe => Moved successfully. C:\Users\ING\Downloads\ccsetup412.exe => Moved successfully. C:\Users\ING\Downloads\SOLOCommCenter.exe => Moved successfully. C:\Users\ING\Downloads\utils\CuteWriter.exe => Moved successfully. C:\Users\ING\Pictures\2008\downloads\zlsSetup_70_470_000_en.exe => Moved successfully. C:\ZIP96 => Moved successfully. EmptyTemp: => Removed 600.6 MB temporary data. The system needed a reboot. ==== End of Fixlog ====
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.