thefredderf
Honorary Members-
Posts
23 -
Joined
-
Last visited
Reputation
0 NeutralRecent Profile Visitors
673 profile views
-
qqpctray virus Windows 10
thefredderf replied to thefredderf's topic in Resolved Malware Removal Logs
The Sophos tool did not find any threats and claims that my computer is clean. I have no other complaints about my computer's performance. Fixlog.txt -
qqpctray virus Windows 10
thefredderf replied to thefredderf's topic in Resolved Malware Removal Logs
Addition1.txt FRST1.txt -
qqpctray virus Windows 10
thefredderf replied to thefredderf's topic in Resolved Malware Removal Logs
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.0.4 (03.14.2016) Operating System: Windows 10 Home x64 Ran by matt (Administrator) on Mon 03/28/2016 at 21:48:03.60 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 0 Registry: 0 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on Mon 03/28/2016 at 21:52:20.03 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ -
qqpctray virus Windows 10
thefredderf replied to thefredderf's topic in Resolved Malware Removal Logs
Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 3/28/2016 Scan Time: 7:54 PM Logfile: Administrator: Yes Version: 2.2.1.1043 Malware Database: v2016.03.28.07 Rootkit Database: v2016.03.12.01 License: Free Malware Protection: Disabled Malicious Website Protection: Disabled Self-protection: Disabled OS: Windows 10 CPU: x64 File System: NTFS User: matt Scan Type: Threat Scan Result: Completed Objects Scanned: 351828 Time Elapsed: 31 min, 23 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Enabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 4 PUP.Optional.SpaceSoundPro, C:\Program Files\SpaceSoundPro\idscservice.exe, 6668, Delete-on-Reboot, [75b28d00e4b5f6400b40e913ec15e11f] PUP.Optional.TorrentSearch, C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe, 8156, Delete-on-Reboot, [8b9cf6978514be781c1ba13a1ee4d62a] Trojan.ProxyHijacker, C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe, 8156, Delete-on-Reboot, [f7300c81b3e657df4d657c5f976b718f] PUP.Optional.ConvertAd.Gen, C:\Program Files (x86)\35444335-1459030384-4E33-5A4B-3CA82ABE1DD8\knsc1EF6.tmp, 9560, Delete-on-Reboot, [d84f8409623766d04f260c859f65a65a] Modules: 0 (No malicious items detected) Registry Keys: 36 PUP.Optional.TorrentSearch, HKLM\SOFTWARE\CLASSES\CLSID\{03AE1B7B-A9E7-4D5A-9D34-89999C31B659}, Quarantined, [8b9cf6978514be781c1ba13a1ee4d62a], PUP.Optional.TorrentSearch, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\GamesAppIntegrationService, Quarantined, [8b9cf6978514be781c1ba13a1ee4d62a], PUP.Optional.TorrentSearch, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{03AE1B7B-A9E7-4D5A-9D34-89999C31B659}, Quarantined, [8b9cf6978514be781c1ba13a1ee4d62a], PUP.Optional.TorrentSearch, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{03AE1B7B-A9E7-4D5A-9D34-89999C31B659}, Quarantined, [8b9cf6978514be781c1ba13a1ee4d62a], PUP.Optional.TSearch, HKLM\SOFTWARE\CLASSES\CLSID\{6E727987-C8EA-44DA-8749-310C0FBE3C3E}, Quarantined, [7bac3f4e4e4bd85effac884935cd44bc], PUP.Optional.TSearch, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{6E727987-C8EA-44DA-8749-310C0FBE3C3E}, Quarantined, [7bac3f4e4e4bd85effac884935cd44bc], PUP.Optional.TSearch, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{6E727987-C8EA-44DA-8749-310C0FBE3C3E}, Quarantined, [7bac3f4e4e4bd85effac884935cd44bc], PUP.Optional.TSearch, HKU\S-1-5-21-419213813-1265261995-1154862781-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{6E727987-C8EA-44DA-8749-310C0FBE3C3E}, Quarantined, [7bac3f4e4e4bd85effac884935cd44bc], Trojan.ProxyHijacker, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{C379EAD1-CB34-4B09-AF6B-7E587F8BCD80}, Quarantined, [f7300c81b3e657df4d657c5f976b718f], Trojan.ProxyHijacker, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\GamesAppIntegrationService, Quarantined, [f7300c81b3e657df4d657c5f976b718f], Trojan.ProxyHijacker, HKLM\SOFTWARE\CLASSES\setup.DynamicNS, Quarantined, [f7300c81b3e657df4d657c5f976b718f], Trojan.ProxyHijacker, HKLM\SOFTWARE\WOW6432NODE\CLASSES\setup.DynamicNS, Quarantined, [f7300c81b3e657df4d657c5f976b718f], Trojan.ProxyHijacker, HKLM\SOFTWARE\CLASSES\WOW6432NODE\setup.DynamicNS, Quarantined, [f7300c81b3e657df4d657c5f976b718f], Trojan.ProxyHijacker, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{C379EAD1-CB34-4B09-AF6B-7E587F8BCD80}, Quarantined, [f7300c81b3e657df4d657c5f976b718f], PUP.Optional.TorrentSearch, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{DCFCC2EC-3F33-45A8-8ADF-A6C81F11232F}, Quarantined, [ec3bc1ccbedbaf87e355cb102dd55ca4], PUP.Optional.TorrentSearch, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{DCFCC2EC-3F33-45A8-8ADF-A6C81F11232F}, Quarantined, [ec3bc1ccbedbaf87e355cb102dd55ca4], PUP.Optional.SpaceSoundPro, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\SpaceSoundPro, Quarantined, [20077a137425ad893219c5378e73e818], PUP.Optional.ConvertAd.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\mibilerizbt, Quarantined, [d84f8409623766d04f260c859f65a65a], PUP.Optional.SpaceSoundPro, HKLM\SOFTWARE\SpaceSoundPro, Quarantined, [a681deaf18818aac01aa45f3a262b34d], PUP.Optional.SoftwareUpdater.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\AmiUpdXp, Quarantined, [67c0bad3ff9a9a9c72bc2a4a14f028d8], PUP.Optional.OneSoftPerDay, HKLM\SOFTWARE\WOW6432NODE\ONESOFTPERDAY, Quarantined, [ac7b90fd4e4b4de9acea1c0f38cc6b95], PUP.Optional.OneSoftPerDay, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\ospd_us_037010280_is1, Quarantined, [af78fa93d4c5f046a9ecae7d7c8836ca], PUP.Optional.MultiPlug, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PopupProduct, Quarantined, [6eb98508356445f1423b9fd24fb57888], PUP.Optional.VOPackage, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\VOPackage, Quarantined, [ed3a9fee2b6eb28402ddcb758183639d], PUP.Optional.Tuto4PC, HKLM\SOFTWARE\WOW6432NODE\TUTORIALS, Quarantined, [33f4305dc5d488aef8d2e05e1aea03fd], PUP.Optional.TweakBit, HKLM\SOFTWARE\WOW6432NODE\TWEAKBIT\ATPopups, Quarantined, [64c355389affeb4bcb31ac929470b34d], PUP.Optional.TweakBit, HKLM\SOFTWARE\WOW6432NODE\TWEAKBIT\ATUpdaters, Quarantined, [111693fad7c296a05aa26bd333d137c9], PUP.Optional.TweakBit, HKLM\SOFTWARE\WOW6432NODE\TWEAKBIT\Google Analytics Package, Quarantined, [26019bf2cacfd165aa541a24e123b848], PUP.Optional.InstallCore, HKU\S-1-5-21-419213813-1265261995-1154862781-1001\SOFTWARE\ICSW1.17, Quarantined, [1b0c8d00ebae8ea845f78b9504006c94], PUP.Optional.Tuto4PC, HKU\S-1-5-21-419213813-1265261995-1154862781-1001\SOFTWARE\TutoTag, Quarantined, [4add424bcecb2016dbebef4fb153619f], PUP.Optional.Tuto4PC, HKU\S-1-5-21-419213813-1265261995-1154862781-1001\SOFTWARE\MICROSOFT\OTUT, Quarantined, [35f21875afea171f542fc6cfa163966a], PUP.Optional.ProductSetup, HKU\S-1-5-21-419213813-1265261995-1154862781-1001\SOFTWARE\PRODUCTSETUP, Quarantined, [2403721b9dfc989ec01c87a819eb49b7], PUP.Optional.Tuto4PC, HKU\S-1-5-21-419213813-1265261995-1154862781-1001\SOFTWARE\TUTORIALS\updatetutorialshp, Quarantined, [37f0f39a5742bc7acbf980bea95b0af6], PUP.Optional.Tuto4PC, HKU\S-1-5-21-419213813-1265261995-1154862781-1001\SOFTWARE\TUTORIALS\updv, Quarantined, [bf6805880a8f57df0db8b68856aec33d], PUP.Optional.SpaceSoundPro, HKLM\SOFTWARE\CLASSES\CLSID\{5013A5D0-34A9-489F-BF9A-3A0E34D8902B}, Quarantined, [8c9bfc91e9b0a591a5b0c35faf54e61a], PUP.Optional.SpaceSoundPro, HKLM\SOFTWARE\CLASSES\CLSID\{B43F10EC-BD1C-48D5-A123-3DCA3321C187}, Quarantined, [8c9bfc91e9b0a591a5b0c35faf54e61a], Registry Values: 8 PUP.Optional.SpaceSoundPro, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE|IDSCPRODUCT, "C:\Program Files\SpaceSoundPro\idscservice.exe", Quarantined, [75b28d00e4b5f6400b40e913ec15e11f] PUP.Optional.OneSoftPerDay, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|ospd_us_037010280, "C:\Program Files (x86)\ospd_us_037010280\ospd_us_037010280.exe", Quarantined, [54d38c012d6c0432296a78b3659fad53] PUP.Optional.Package, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE|Update, C:\Users\matt\AppData\Roaming\ASPackage\ASPackage.exe /runonce, Quarantined, [b86fef9e86131b1b88b3d55727dd08f8] PUP.Optional.Tuto4PC, HKLM\SOFTWARE\WOW6432NODE\TUTORIALS|HostGUID, 4430D1EC-20B2-4763-B657-C79850551A5D, Quarantined, [33f4305dc5d488aef8d2e05e1aea03fd] PUP.Optional.ConvertAd.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\mibilerizbt|ImagePath, C:\Program Files (x86)\35444335-1459030384-4E33-5A4B-3CA82ABE1DD8\knsc1EF6.tmp, Quarantined, [b96e4944cfca171f94eb0c85aa5a59a7] PUP.Optional.Tuto4PC, HKU\S-1-5-21-419213813-1265261995-1154862781-1001\SOFTWARE\MICROSOFT\OTUT|product, tutoproduct, Quarantined, [35f21875afea171f542fc6cfa163966a] PUP.Optional.Tuto4PC, HKU\S-1-5-21-419213813-1265261995-1154862781-1001\SOFTWARE\MICROSOFT\OTUT|partner, tuto, Quarantined, [3ceb77166435da5cd3b0fa9bcc38c63a] PUP.Optional.ProductSetup, HKU\S-1-5-21-419213813-1265261995-1154862781-1001\SOFTWARE\PRODUCTSETUP|tb, 0P1R1Q1B1F1R2W0E, Quarantined, [2403721b9dfc989ec01c87a819eb49b7] Registry Data: 0 (No malicious items detected) Folders: 20 PUP.Optional.Amonetize, C:\Users\matt\AppData\Local\14640, Quarantined, [af780b82f6a33afcc30290a054af05fb], PUP.Optional.DailyPCClean, C:\Users\matt\Documents\DailyPCClean, Quarantined, [bf680a836138ed49b785819206fef709], PUP.Optional.ConvertAd.Gen, C:\Program Files (x86)\35444335-1459030384-4E33-5A4B-3CA82ABE1DD8, Delete-on-Reboot, [d84f8409623766d04f260c859f65a65a], PUP.Optional.OneSoftPerDay, C:\Users\matt\AppData\Local\ospd_us_037010280, Quarantined, [1314414cbadf93a3a1fe52bb838006fa], PUP.Optional.OneSoftPerDay, C:\Program Files (x86)\ospd_us_037010280, Quarantined, [2dfa761769308caa227e15f848bb10f0], PUP.Optional.OneSoftPerDay, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ONESOFTPERDAY, Quarantined, [d6510a838e0bb87e3b6638d5847fcb35], PUP.Optional.SpaceSoundPro, C:\Users\matt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpaceSoundPro 1.0, Quarantined, [29feb5d8edace056c7fe1ff58c7753ad], PUP.Optional.TweakBit, C:\ProgramData\TweakBit\FixMyPC, Quarantined, [1c0bb2dbe7b21224d38469aec2411ee2], PUP.Optional.TweakBit, C:\ProgramData\TweakBit\FixMyPC\1.x, Quarantined, [1c0bb2dbe7b21224d38469aec2411ee2], PUP.Optional.TweakBit, C:\ProgramData\TweakBit\FixMyPC\1.x\Logs, Quarantined, [1c0bb2dbe7b21224d38469aec2411ee2], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\nfeotgmnpeepdbcklegpcengnhgllhoe, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\Updates, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\weboptimum@bscodecs.com, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\weboptimum@bscodecs.com\chrome, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\weboptimum@bscodecs.com\chrome\content, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\weboptimum@bscodecs.com\chrome\skin, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.WebOptimum, C:\Program Files (x86)\WebOptimum, Quarantined, [55d246473168112544618b94847f2ed2], PUP.Optional.SpaceSoundPro, C:\Program Files\SpaceSoundPro, Delete-on-Reboot, [8c9bfc91e9b0a591a5b0c35faf54e61a], PUP.Optional.SpaceSoundPro, C:\Program Files\SpaceSoundPro\config, Quarantined, [8c9bfc91e9b0a591a5b0c35faf54e61a], Files: 80 PUP.Optional.SpaceSoundPro, C:\Program Files\SpaceSoundPro\idscservice.exe, Delete-on-Reboot, [75b28d00e4b5f6400b40e913ec15e11f], PUP.Optional.TorrentSearch, C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe, Delete-on-Reboot, [8b9cf6978514be781c1ba13a1ee4d62a], Trojan.ProxyHijacker, C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe, Delete-on-Reboot, [f7300c81b3e657df4d657c5f976b718f], PUP.Optional.SpaceSoundPro, C:\Program Files\SpaceSoundPro\uninstaller.exe, Quarantined, [20077a137425ad893219c5378e73e818], PUP.Optional.ConvertAd, C:\Program Files (x86)\35444335-1459030384-4E33-5A4B-3CA82ABE1DD8\rnsg821E.exe, Quarantined, [cb5c028b3e5b40f6e1a33dd7927031cf], Adware.ConvertAd, C:\Program Files (x86)\35444335-1459030384-4E33-5A4B-3CA82ABE1DD8\Uninstall.exe, Quarantined, [2502612cecadb0861b76c73e37cbd12f], Adware.ConvertAd, C:\Program Files (x86)\35444335-1459030384-4E33-5A4B-3CA82ABE1DD8\vnsb3726.tmp, Quarantined, [a87f0e7f1f7ac274593811f408fa14ec], PUP.Optional.Tuto4PC, C:\Program Files (x86)\DailyPcClean Support\DailyPCClean.exe, Quarantined, [e6413756acedac8ac85980bca362f907], Adware.EoRezo, C:\Program Files (x86)\DailyPcClean Support\predm.exe, Quarantined, [9097d9b47f1aa393814c99c0b74929d7], PUP.Optional.Tuto4PC, C:\Program Files (x86)\ospd_us_037010280\onesoftperday_widget.exe, Quarantined, [a97e107de2b72511a9e361f1f8083cc4], Adware.EoRezo, C:\Program Files (x86)\ospd_us_037010280\predm.exe, Quarantined, [c7602a63badf63d3616c19408a76c43c], PUP.Optional.WebOptimum, C:\Program Files (x86)\WebOptimum\IEPluginSetup.msi, Quarantined, [3fe86b2275244cea0117fe4eec1957a9], PUP.Optional.WebOptimum, C:\Program Files (x86)\WebOptimum\IEWebOptimumPlugin.dll, Quarantined, [b27593fad0c940f6f91fcc8094713dc3], PUP.Optional.SpaceSoundPro, C:\Users\matt\AppData\Local\Temp\SQER75NQRX.exe, Quarantined, [bd6a92fbe0b95ed8d24f80865aabdc24], PUP.Optional.Amonetize, C:\Users\matt\AppData\Local\Temp\1DB73134-00B6-4E69-8E28-C6BDEFCB4220\Bundle_NetworkManager.exe, Quarantined, [65c2abe22079ba7ce504104541c07b85], Adware.EoRezo.Gen, C:\Users\matt\AppData\Local\Temp\7588DB81-0FDB-4796-A49E-46726DD6128F\setup_dpcc_en.exe, Quarantined, [6bbc226b6d2cb87e7e772db92ed31fe1], PUP.Optional.SpaceSoundPro, C:\Users\matt\AppData\Local\Temp\797AP04RCB\testversion.exe, Quarantined, [2205127bdebb56e0df6c2cd0d13011ef], PUP.Optional.Tuto4PC, C:\Users\matt\AppData\Local\Temp\797AP04RCB\win.exe, Quarantined, [5fc84f3e73263bfbb5e869f50cf42cd4], Adware.ConvertAd, C:\Users\matt\AppData\Local\Temp\8B811C73-D7E1-47E5-BDAA-74FC8ACF9416\ASIns.exe, Quarantined, [5ec9a9e4b5e4e551a3ee7f8640c2f907], PUP.Optional.InstallCore, C:\Users\matt\Downloads\DirectX Setup.exe, Quarantined, [1c0beba22a6f7abca471c31d3dc4a25e], PUP.Optional.InstallCore, C:\Users\matt\Downloads\dr_lunatic_supreme_with_cheese.exe, Quarantined, [71b67a137e1b092dc1e2441709f8f808], PUP.Optional.ConvertAd, C:\Users\matt\AppData\Local\35444335-1459113187-4E33-5A4B-3CA82ABE1DD8\nst697E.tmp, Quarantined, [1215e3aa4059b87ebd9cbf2542bf9868], Adware.EoRezo, C:\Users\matt\AppData\Local\ospd_us_037010280\upospd_us_037010280.exe, Quarantined, [1413e3aa554479bd9037874ff20fe818], PUP.Optional.Amonetize, C:\Users\matt\AppData\Local\14640\status.cfg, Quarantined, [af780b82f6a33afcc30290a054af05fb], PUP.Optional.Amonetize, C:\Users\matt\AppData\Local\14640\Updater.xml, Quarantined, [af780b82f6a33afcc30290a054af05fb], PUP.Optional.DailyPCClean, C:\Users\matt\Documents\DailyPCClean\CookieExclusions.txt, Quarantined, [bf680a836138ed49b785819206fef709], PUP.Optional.SoftwareUpdater, C:\Windows\Tasks\AmiUpdXp.job, Quarantined, [67c089049ffad2646bc0b3c1ea1aa858], PUP.Optional.SoftwareUpdater.A, C:\Windows\System32\Tasks\AmiUpdXp, Quarantined, [b176f9944a4fde588e9f561e9371c53b], Trojan.FakeAlert, C:\Users\matt\AppData\Local\Temp\797AP04RCB\testversion.exe, Quarantined, [5ec91578d4c5c1752d739def50b421df], PUP.Optional.ConvertAd.Gen, C:\Program Files (x86)\35444335-1459030384-4E33-5A4B-3CA82ABE1DD8\knsc1EF6.tmp, Delete-on-Reboot, [d84f8409623766d04f260c859f65a65a], PUP.Optional.ConvertAd.Gen, C:\Program Files (x86)\35444335-1459030384-4E33-5A4B-3CA82ABE1DD8\Uninstall.exe, Quarantined, [d84f8409623766d04f260c859f65a65a], PUP.Optional.ConvertAd.Gen, C:\Program Files (x86)\35444335-1459030384-4E33-5A4B-3CA82ABE1DD8\vnsb3726.tmp, Quarantined, [d84f8409623766d04f260c859f65a65a], PUP.Optional.OneSoftPerDay, C:\Users\matt\AppData\Local\ospd_us_037010280\upospd_us_037010280.exe, Quarantined, [1314414cbadf93a3a1fe52bb838006fa], PUP.Optional.OneSoftPerDay, C:\Program Files (x86)\ospd_us_037010280\ospd_us_037010280 - uninstall.dat, Quarantined, [2dfa761769308caa227e15f848bb10f0], PUP.Optional.OneSoftPerDay, C:\Program Files (x86)\ospd_us_037010280\ospd_us_037010280 - uninstall.exe, Quarantined, [2dfa761769308caa227e15f848bb10f0], PUP.Optional.OneSoftPerDay, C:\Program Files (x86)\ospd_us_037010280\predm.exe, Quarantined, [2dfa761769308caa227e15f848bb10f0], PUP.Optional.OneSoftPerDay, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ONESOFTPERDAY\Onesoftperday.lnk, Quarantined, [d6510a838e0bb87e3b6638d5847fcb35], PUP.Optional.SpaceSoundPro, C:\Users\matt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpaceSoundPro 1.0\SpaceSoundPro.lnk, Quarantined, [29feb5d8edace056c7fe1ff58c7753ad], PUP.Optional.SpaceSoundPro, C:\Users\matt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpaceSoundPro 1.0\Uninstall.lnk, Quarantined, [29feb5d8edace056c7fe1ff58c7753ad], PUP.Optional.TweakBit, C:\ProgramData\TweakBit\FixMyPC\1.x\StatDB.json, Quarantined, [1c0bb2dbe7b21224d38469aec2411ee2], PUP.Optional.TweakBit, C:\ProgramData\TweakBit\FixMyPC\1.x\Unfixed.err, Quarantined, [1c0bb2dbe7b21224d38469aec2411ee2], PUP.Optional.TweakBit, C:\ProgramData\TweakBit\FixMyPC\1.x\Logs\CheckSerialNumber.log, Quarantined, [1c0bb2dbe7b21224d38469aec2411ee2], PUP.Optional.TweakBit, C:\ProgramData\TweakBit\FixMyPC\1.x\Logs\FixMyPC.log, Quarantined, [1c0bb2dbe7b21224d38469aec2411ee2], PUP.Optional.TweakBit, C:\ProgramData\TweakBit\FixMyPC\1.x\Logs\FixMyPCLogic.log, Quarantined, [1c0bb2dbe7b21224d38469aec2411ee2], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\nfeotgmnpeepdbcklegpcengnhgllhoe\background.js, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\nfeotgmnpeepdbcklegpcengnhgllhoe\contscr.js, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\nfeotgmnpeepdbcklegpcengnhgllhoe\icon128.png, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\nfeotgmnpeepdbcklegpcengnhgllhoe\icon48.png, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\nfeotgmnpeepdbcklegpcengnhgllhoe\jquery-1.8.0.min.js, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\nfeotgmnpeepdbcklegpcengnhgllhoe\manifest.json, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\Updates\daily.txt, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\Updates\upcheck.txt, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\weboptimum@bscodecs.com\chrome.manifest, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\weboptimum@bscodecs.com\install.rdf, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\weboptimum@bscodecs.com\chrome\content\jquery-1.8.2.min.js, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\weboptimum@bscodecs.com\chrome\content\weboptimum.xul, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\weboptimum@bscodecs.com\chrome\skin\weboptimum.css, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.FASTExtensions, C:\Users\matt\AppData\Local\FASTExtensions\weboptimum@bscodecs.com\chrome\skin\weboptimumlogo.png, Quarantined, [8d9a1c71bcddc373cada9788d72ca65a], PUP.Optional.WebOptimum, C:\Program Files (x86)\WebOptimum\Interop.IWshRuntimeLibrary.dll, Quarantined, [55d246473168112544618b94847f2ed2], PUP.Optional.WebOptimum, C:\Program Files (x86)\WebOptimum\Interop.SHDocVw.dll, Quarantined, [55d246473168112544618b94847f2ed2], PUP.Optional.WebOptimum, C:\Program Files (x86)\WebOptimum\Microsoft.mshtml.dll, Quarantined, [55d246473168112544618b94847f2ed2], PUP.Optional.WebOptimum, C:\Program Files (x86)\WebOptimum\Newtonsoft.Json.dll, Quarantined, [55d246473168112544618b94847f2ed2], PUP.Optional.WebOptimum, C:\Program Files (x86)\WebOptimum\System.Data.SQLite.dll, Quarantined, [55d246473168112544618b94847f2ed2], PUP.Optional.WebOptimum, C:\Program Files (x86)\WebOptimum\System.Data.SQLite.Linq.dll, Quarantined, [55d246473168112544618b94847f2ed2], PUP.Optional.WebOptimum, C:\Program Files (x86)\WebOptimum\unico.ico, Quarantined, [55d246473168112544618b94847f2ed2], PUP.Optional.WebOptimum, C:\Program Files (x86)\WebOptimum\UpdaterEscort.dll, Quarantined, [55d246473168112544618b94847f2ed2], PUP.Optional.WebOptimum, C:\Program Files (x86)\WebOptimum\UrlHistoryLibrary.dll, Quarantined, [55d246473168112544618b94847f2ed2], PUP.Optional.WebOptimum, C:\Program Files (x86)\WebOptimum\WebOptimum.url, Quarantined, [55d246473168112544618b94847f2ed2], PUP.Optional.WebOptimum, C:\Program Files (x86)\WebOptimum\WebOptimumSolution.msi, Quarantined, [55d246473168112544618b94847f2ed2], PUP.Optional.SpaceSoundPro, C:\Program Files\SpaceSoundPro\backup_Realtek High Definition Audio_Speaker_HP.reg, Quarantined, [8c9bfc91e9b0a591a5b0c35faf54e61a], PUP.Optional.SpaceSoundPro, C:\Program Files\SpaceSoundPro\config.conf, Quarantined, [8c9bfc91e9b0a591a5b0c35faf54e61a], PUP.Optional.SpaceSoundPro, C:\Program Files\SpaceSoundPro\silentconfigurator.exe, Quarantined, [8c9bfc91e9b0a591a5b0c35faf54e61a], PUP.Optional.SpaceSoundPro, C:\Program Files\SpaceSoundPro\silentunconfigurator.exe, Quarantined, [8c9bfc91e9b0a591a5b0c35faf54e61a], PUP.Optional.SpaceSoundPro, C:\Program Files\SpaceSoundPro\SpaceSoundPro.dll, Quarantined, [8c9bfc91e9b0a591a5b0c35faf54e61a], PUP.Optional.SpaceSoundPro, C:\Program Files\SpaceSoundPro\SpaceSoundPro.exe, Quarantined, [8c9bfc91e9b0a591a5b0c35faf54e61a], PUP.Optional.SpaceSoundPro, C:\Program Files\SpaceSoundPro\Uninstall.exe, Quarantined, [8c9bfc91e9b0a591a5b0c35faf54e61a], PUP.Optional.SpaceSoundPro, C:\Program Files\SpaceSoundPro\config\SpaceSoundPro.conf, Quarantined, [8c9bfc91e9b0a591a5b0c35faf54e61a], PUP.Optional.SpaceSoundPro, C:\Program Files\SpaceSoundPro\config\SpaceSoundPro.err, Quarantined, [8c9bfc91e9b0a591a5b0c35faf54e61a], PUP.Optional.SpaceSoundPro, C:\Program Files\SpaceSoundPro\config\SpaceSoundProUser.conf, Quarantined, [8c9bfc91e9b0a591a5b0c35faf54e61a], PUP.Optional.VBSLoader, C:\task.vbs, Quarantined, [35f2543947527db9bb550353699ce917], Physical Sectors: 0 (No malicious items detected) (end) # AdwCleaner v5.107 - Logfile created 28/03/2016 at 21:15:45 # Updated 28/03/2016 by Xplode # Database : 2016-03-28.2 [Server] # Operating system : Windows 10 Home (x64) # Username : matt - DESKTOP-5NAHCD1 # Running from : C:\Users\matt\Desktop\AdwCleaner.exe # Option : Clean # Support : http://toolslib.net/forum ***** [ Services ] ***** [!] Service Not Deleted : QQPCRTP [!] Service Not Deleted : TAOAccelerator [!] Service Not Deleted : TSSysKit [!] Service Not Deleted : QMUdisk [!] Service Not Deleted : QQSysMonX64 [!] Service Not Deleted : TFsFlt [!] Service Not Deleted : TAOKernelDriver [!] Service Not Deleted : softaal ***** [ Folders ] ***** [#] Folder Deleted : C:\Program Files (x86)\tencent [#] Folder Deleted : C:\Program Files\Common Files\tencent [#] Folder Deleted : C:\ProgramData\tencent [#] Folder Deleted : C:\Users\matt\AppData\Roaming\tencent ***** [ Files ] ***** [#] File Deleted : C:\WINDOWS\SysNative\drivers\TFsFltX64.sys ***** [ DLLs ] ***** ***** [ Shortcuts ] ***** ***** [ Scheduled tasks ] ***** ***** [ Registry ] ***** [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1} [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{70DE12EA-79F4-46BC-9812-86DB50A2FD64} [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E} [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E} [-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{0677DA44-0BAF-44F0-A54B-83C61C6CB5BD}] [-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{CBAE7814-3692-4CB9-923B-64C985B76381}] ***** [ Web browsers ] ***** ************************* :: "Tracing" keys deleted :: Winsock settings cleared ************************* C:\AdwCleaner\AdwCleaner[C1].txt - [2502 bytes] - [28/03/2016 20:43:35] C:\AdwCleaner\AdwCleaner[C2].txt - [12366 bytes] - [28/03/2016 20:48:09] C:\AdwCleaner\AdwCleaner[C3].txt - [1961 bytes] - [28/03/2016 20:59:42] C:\AdwCleaner\AdwCleaner[C4].txt - [2148 bytes] - [28/03/2016 21:15:45] C:\AdwCleaner\AdwCleaner[S1].txt - [12988 bytes] - [28/03/2016 20:39:22] C:\AdwCleaner\AdwCleaner[S2].txt - [12398 bytes] - [28/03/2016 20:46:06] C:\AdwCleaner\AdwCleaner[S3].txt - [1671 bytes] - [28/03/2016 20:57:00] C:\AdwCleaner\AdwCleaner[S4].txt - [2290 bytes] - [28/03/2016 21:13:45] ########## EOF - C:\AdwCleaner\AdwCleaner[C4].txt - [2515 bytes] ########## -
qqpctray virus Windows 10
thefredderf replied to thefredderf's topic in Resolved Malware Removal Logs
Hi Kevin, When using the Geek Uninstaller, the program Tencent did not appear on the list. I was able to remove SpyHunter 4, however. -
I have determined that my computer is infected with a virus that is causing foreign characters to appear on the screen. I have downloaded and run a scan with Farber Recovery Scan Tool. Attached are the logs from it. Addition.txt FRST.txt
-
Alright, I will take these tips into consideration. Thank you for your time and good day! I am fine with this topic being closed.
-
Well, the main problem I had— streaming music through iHeartRadio— still persists. The music is still interrupted and choppy.
-
This is the fixlog from the last fixlist you gave to me. Fixlog.txt
-
Here are the other two logs. The computer restarted without prompting me after the Farber fix. Fixlog.txt SystemLook.txt
-
Here are the two logs with Winpatrol uninstalled. Addition.txt FRST.txt
-
Hi, I followed the steps but there is no "Automatically Run WinPatrol When Computer Starts" option in the program. I have attached a screenshot of the program to help you determine if I have a different version of WinPatrol or something.
-
the first log you asked for is caption, location, command.txt. The second log is tasklist.txt. The third log you asked for is tasklist svc.txt. I use IHeartRadio to stream music, and it is interrupted and stops playing sometimes. I think this is another result of whatever is slowing the rest of the computer down. caption, location, command.txt tasklist svc.txt tasklist.txt
-
Well, I am having a hard time pinpointing the service that caused the problem, but the memory usage just goes steadily up as I add services and restart. With them all running, the computer runs slower, and with none running, the computer runs better. Are there any of these services that I don't need at all? I don't notice any difference in the way the computer runs besides the performance. Thanks for your time!
-
Hi, thanks for taking time to help me out! I am getting ready for work at the moment, and I will do these steps as soon as I have time!