Jump to content

Need complete removal of "Sweetpacks"


Recommended Posts

Got Sweetpacks ... My own fault for being in a rush to install everything on a new pc :(

 

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 8.0.7601.17514
Run by Maria at 12:06:28 on 2013-11-06
Microsoft Windows 7 Professional   6.1.7601.1.1252.44.1033.18.16272.13278 [GMT 0:00]
.
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Intel\iCLS Client\HeciServer.exe
C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
C:\Windows\System32\rundll32.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files\Logitech Gaming Software\LCore.exe
C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
C:\Program Files (x86)\Common Files\Logitech\LCD Manager\LCDMon.exe
E:\ALL APPS\LWS\Webcam Software\LWS.exe
C:\Program Files (x86)\Common Files\Logitech\LCD Manager\Applets\LCDClock.exe
C:\Program Files (x86)\Common Files\Logitech\LCD Manager\Applets\LCDPOP3.exe
C:\Program Files (x86)\Common Files\Logitech\LCD Manager\Applets\LCDCountdown.exe
C:\Program Files (x86)\Common Files\Logitech\LCD Manager\Applets\LCDMedia.exe
E:\ALL APPS\LWS\Webcam Software\CameraHelperShell.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\INSTALL HERE\The Secret World\ClientPatcher.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
E:\ALL APPS\Malwarebytes' Anti-Malware\mbamscheduler.exe
E:\ALL APPS\Malwarebytes' Anti-Malware\mbamservice.exe
E:\ALL APPS\Malwarebytes' Anti-Malware\mbamgui.exe
c:\program files\windows defender\MpCmdRun.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.


mWinlogon: Userinit = userinit.exe,
BHO: ArcPluginIEBHO Class: {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - C:\INSTALL HERE\Arc\plugins\ArcPluginIE.dll
BHO: i-beta: {ded2e6b6-d56b-4ccb-89b1-cd99f8b4fc4d} - C:\Program Files (x86)\i-beta.com\i-beta.com extension\adxloader.dll
mRun: [uSB3MON] "C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
mRun: [iSUSScheduler] "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe" -start
mRun: [Arc] C:\INSTALL HERE\Arc\ArcLauncher.exe /autorun
mRun: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
mRun: [Launch LCDMon] "C:\Program Files (x86)\Common Files\Logitech\LCD Manager\LCDMon.exe"
mRun: [LWS] E:\ALL APPS\LWS\Webcam Software\LWS.exe -hide
StartupFolder: C:\Users\Maria\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\LOGITE~1.LNK - E:\ALL APPS\Ereg\eReg.exe
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
TCP: NameServer = 192.168.0.1
TCP: Interfaces\{B7BE5112-B1C9-4FAF-B991-D9C3E34ED868} : DHCPNameServer = 192.168.0.1
SSODL: WebCheck - <orphaned>
x64-BHO: i-beta: {ded2e6b6-d56b-4ccb-89b1-cd99f8b4fc4d} - C:\Program Files (x86)\i-beta.com\i-beta.com extension\adxloader64.dll
x64-Run: [igfxTray] C:\Windows\System32\igfxtray.exe
x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
x64-Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Run: [iAStorIcon] "C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" 60
x64-Run: [Nvtmru] "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
x64-Run: [shadowPlay] C:\Windows\System32\rundll32.exe C:\Windows\System32\nvspcap64.dll,ShadowPlayOnSystemStart
x64-Run: [Launch LCore] C:\Program Files\Logitech Gaming Software\LCore.exe /minimized
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Maria\AppData\Roaming\Mozilla\Firefox\Profiles\6tw2374k.default\
FF - prefs.js: browser.search.defaulturl -
FF - prefs.js: browser.search.selectedEngine - Sweetpacks
FF - prefs.js: browser.startup.homepage - www.google.co.uk

FF - plugin: C:\INSTALL HERE\Arc\Plugins\npArcPluginFF.dll
FF - plugin: C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll
FF - plugin: C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll
FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll
FF - ExtSQL: 2013-11-05 14:24; {EEE6C361-6118-11DC-9C72-001320C79847}; C:\Users\Maria\AppData\Roaming\Mozilla\Firefox\Profiles\6tw2374k.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}.xpi
.
============= SERVICES / DRIVERS ===============
.
R0 iaStorA;iaStorA;C:\Windows\System32\drivers\iaStorA.sys [2013-1-31 652784]
R0 iaStorF;iaStorF;C:\Windows\System32\drivers\iaStorF.sys [2013-1-31 28656]
R0 iusb3hcs;Intel® USB 3.0 Host Controller Switch Driver;C:\Windows\System32\drivers\iusb3hcs.sys [2013-11-1 20616]
R1 AppleCharger;AppleCharger;C:\Windows\System32\drivers\AppleCharger.sys [2013-11-1 21584]
R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-1-31 15344]
R2 Intel® Capability Licensing Service Interface;Intel® Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-2-13 731648]
R2 jhi_service;Intel® Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe [2013-11-1 169432]
R2 MBAMScheduler;MBAMScheduler;E:\ALL APPS\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-11-6 418376]
R2 MBAMService;MBAMService;E:\ALL APPS\Malwarebytes' Anti-Malware\mbamservice.exe [2013-11-6 701512]
R2 NvStreamSvc;NVIDIA Streamer Service;C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-11-1 15122208]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-10-23 414496]
R3 IntcDAud;Intel® Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2013-11-1 442368]
R3 iusb3hub;Intel® USB 3.0 Hub Driver;C:\Windows\System32\drivers\iusb3hub.sys [2013-11-1 366216]
R3 iusb3xhc;Intel® USB 3.0 eXtensible Host Controller Driver;C:\Windows\System32\drivers\iusb3xhc.sys [2013-11-1 786056]
R3 LADF_CaptureOnly;LADF Capture Filter Driver;C:\Windows\System32\drivers\ladfGSCamd64.sys [2013-4-15 410008]
R3 LADF_RenderOnly;LADF Render Filter Driver;C:\Windows\System32\drivers\ladfGSRamd64.sys [2013-4-15 102808]
R3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver;C:\Windows\System32\drivers\LGBusEnum.sys [2009-11-24 22408]
R3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver;C:\Windows\System32\drivers\LGVirHid.sys [2009-11-24 16008]
R3 LVRS64;Logitech RightSound Filter Driver;C:\Windows\System32\drivers\lvrs64.sys [2012-9-21 351520]
R3 LVUVC64;Logitech HD Webcam C270(UVC);C:\Windows\System32\drivers\lvuvc64.sys [2012-9-21 4763680]
R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2013-11-6 25928]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);C:\Windows\System32\drivers\nvvad64v.sys [2013-11-1 39200]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2013-11-1 769168]
S1 UsbCharger;UsbCharger;C:\Windows\System32\drivers\UsbCharger.sys [2013-11-1 21072]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S3 AppleChargerSrv;AppleChargerSrv;system32\AppleChargerSrv.exe --> system32\AppleChargerSrv.exe [?]
S3 ArcService;Arc Service;C:\INSTALL HERE\Arc\ArcService.exe [2013-10-10 88424]
S3 dmvsc;dmvsc;C:\Windows\System32\drivers\dmvsc.sys [2011-4-12 71168]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service;C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe [2013-11-1 137488]
S3 Intel® Capability Licensing Service TCP IP Interface;Intel® Capability Licensing Service TCP IP Interface;C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-2-13 820184]
S3 StorSvc;Storage Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 27136]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2010-11-21 31232]
.
=============== Created Last 30 ================
.
2013-11-06 11:45:45    75888    ----a-w-    C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B6258072-DFAF-4197-BDFD-A44304CB81F2}\offreg.dll
2013-11-06 11:44:36    --------    d-----w-    C:\Users\Maria\AppData\Local\Funcom
2013-11-06 11:44:31    --------    d-----w-    C:\ProgramData\media center programs
2013-11-06 11:25:07    --------    d-----w-    C:\Users\Maria\AppData\Roaming\Malwarebytes
2013-11-06 11:24:55    25928    ----a-w-    C:\Windows\System32\drivers\mbam.sys
2013-11-06 11:24:55    --------    d-----w-    C:\ProgramData\Malwarebytes
2013-11-06 11:24:27    --------    d-----w-    C:\Users\Maria\AppData\Local\Programs
2013-11-06 11:23:08    --------    d-----w-    C:\Windows\System32\appmgmt
2013-11-06 11:18:24    --------    d-----w-    C:\Program Files\Enigma Software Group
2013-11-06 11:18:11    --------    d-----w-    C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP
2013-11-06 11:18:11    --------    d-----w-    C:\Program Files (x86)\Common Files\Wise Installation Wizard
2013-11-06 11:17:49    8199504    ----a-w-    C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
2013-11-06 11:17:48    10280728    ----a-w-    C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B6258072-DFAF-4197-BDFD-A44304CB81F2}\mpengine.dll
2013-11-05 16:48:01    --------    d-----w-    C:\Program Files\Logitech Gaming Software
2013-11-05 16:47:04    --------    d-----w-    C:\Users\Maria\AppData\Roaming\Logishrd
2013-11-05 15:34:01    --------    d-----w-    C:\Users\Maria\AppData\Roaming\NVIDIA
2013-11-05 14:28:16    --------    d-----w-    C:\Users\Maria\AppData\Local\Logitech® Webcam Software
2013-11-05 14:25:22    53248    ----a-r-    C:\Users\Maria\AppData\Roaming\Microsoft\Installer\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}\ARPPRODUCTICON.exe
2013-11-05 14:23:55    --------    d-----w-    C:\Program Files (x86)\SweetIM
2013-11-05 14:23:15    --------    d-----w-    C:\Program Files (x86)\i-beta.com
2013-11-05 14:23:15    --------    d-----w-    C:\Program Files (x86)\i-beta
2013-11-05 13:58:35    --------    d-----w-    C:\Users\Maria\AppData\Local\Logitech
2013-11-05 13:58:30    --------    d-----w-    C:\Program Files (x86)\Common Files\Logitech
2013-11-05 13:55:46    --------    d-----w-    C:\Users\Maria\AppData\Local\Razer
2013-11-05 13:48:00    --------    d-----w-    C:\Users\Maria\AppData\Local\NVIDIA
2013-11-05 13:46:53    --------    d--h--w-    C:\ArcTemp
2013-11-05 13:44:41    --------    d-----w-    C:\Users\Maria\AppData\Roaming\Arc
2013-11-05 13:42:12    --------    d-----w-    C:\INSTALL HERE
2013-11-05 13:40:15    --------    d-----w-    C:\Users\Maria\AppData\Local\Macromedia
2013-11-05 13:40:09    71048    ----a-w-    C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2013-11-05 13:40:09    692616    ----a-w-    C:\Windows\SysWow64\FlashPlayerApp.exe
2013-11-05 13:37:02    --------    d-----w-    C:\Users\Maria\AppData\Local\Mozilla
2013-11-05 13:34:48    826880    ----a-w-    C:\Windows\SysWow64\rdpcore.dll
2013-11-05 13:34:48    23552    ----a-w-    C:\Windows\System32\drivers\tdtcp.sys
2013-11-05 13:34:48    210944    ----a-w-    C:\Windows\System32\drivers\rdpwd.sys
2013-11-05 13:34:48    1031680    ----a-w-    C:\Windows\System32\rdpcore.dll
2013-11-05 12:25:47    2622464    ----a-w-    C:\Windows\System32\wucltux.dll
2013-11-05 12:25:46    99840    ----a-w-    C:\Windows\System32\wudriver.dll
2013-11-05 12:25:45    36864    ----a-w-    C:\Windows\System32\wuapp.exe
2013-11-05 12:25:45    186752    ----a-w-    C:\Windows\System32\wuwebv.dll
2013-11-05 12:23:54    --------    d-----w-    C:\Users\Maria\AppData\Roaming\Intel Corporation
2013-11-05 12:23:52    --------    d-----w-    C:\Users\Maria\AppData\Local\Futuremark
2013-11-05 12:23:51    --------    d-----w-    C:\Users\Maria\AppData\Local\IsolatedStorage
2013-11-01 16:37:17    --------    d-----w-    C:\Program Files (x86)\Futuremark
2013-11-01 16:36:38    --------    d-----w-    C:\Program Files\Futuremark
2013-11-01 16:32:51    --------    d-----w-    C:\OcUKTest
2013-11-01 16:12:51    955168    ----a-w-    C:\Windows\SysWow64\nvspcap.dll
2013-11-01 16:12:51    1063200    ----a-w-    C:\Windows\System32\nvspcap64.dll
2013-11-01 16:02:01    --------    d-----w-    C:\Program Files\NVIDIA Corporation
2013-11-01 16:01:48    --------    d-----w-    C:\NVIDIA
2013-11-01 01:19:23    --------    d-----w-    C:\Windows\Panther
2013-11-01 00:35:57    20616    ----a-w-    C:\Windows\System32\drivers\iusb3hcs.sys
2013-11-01 00:35:51    786056    ----a-w-    C:\Windows\System32\drivers\iusb3xhc.sys
2013-11-01 00:35:50    366216    ----a-w-    C:\Windows\System32\drivers\iusb3hub.sys
2013-11-01 00:35:02    769168    ----a-w-    C:\Windows\System32\drivers\Rt64win7.sys
2013-11-01 00:35:02    74344    ----a-w-    C:\Windows\System32\RtNicProp64.dll
2013-11-01 00:33:59    907544    ----a-w-    C:\Windows\System32\MaxxAudioAPOShell64.dll
2013-11-01 00:32:51    --------    d-----w-    C:\Program Files (x86)\Common Files\postureAgent
2013-11-01 00:32:49    64624    ----a-w-    C:\Windows\System32\drivers\HECIx64.sys
2013-11-01 00:32:18    53248    ----a-w-    C:\Windows\SysWow64\CSVer.dll
2013-11-01 00:32:10    --------    d-----w-    C:\Intel
2013-11-01 00:30:16    --------    d-sh--w-    C:\Windows\Installer
2013-10-23 10:02:36    589600    ----a-w-    C:\Windows\SysWow64\nvStreaming.exe
.
==================== Find3M  ====================
.
2013-10-23 08:20:08    6669600    ----a-w-    C:\Windows\System32\nvcpl.dll
2013-10-23 08:20:07    3489568    ----a-w-    C:\Windows\System32\nvsvc64.dll
2013-10-23 08:20:05    922912    ----a-w-    C:\Windows\System32\nvvsvc.exe
2013-10-23 08:20:05    63776    ----a-w-    C:\Windows\System32\nvshext.dll
2013-10-23 08:20:05    219424    ----a-w-    C:\Windows\System32\nvmctray.dll
2013-10-23 08:20:03    3426956    ----a-w-    C:\Windows\System32\nvcoproc.bin
2013-09-27 23:01:44    39200    ----a-w-    C:\Windows\System32\drivers\nvvad64v.sys
2013-09-27 23:01:38    29984    ----a-w-    C:\Windows\System32\nvaudcap64v.dll
2013-09-27 23:01:38    28960    ----a-w-    C:\Windows\SysWow64\nvaudcap32v.dll
2013-09-03 13:35:10    278800    ------w-    C:\Windows\System32\MpSigStub.exe
.
============= FINISH: 12:06:34.21 ===============
 

 

 

 

 

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 05/11/2013 12:22:44
System Uptime: 06/11/2013 11:32:01 (1 hours ago)
.
Motherboard: Gigabyte Technology Co., Ltd. |  | Z87-HD3
Processor: Intel® Core i5-4670K CPU @ 3.40GHz | SOCKET 0 | 3401/100mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 238 GiB total, 197.947 GiB free.
D: is CDROM ()
E: is FIXED (NTFS) - 1863 GiB total, 1862.681 GiB free.
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP3: 05/11/2013 12:25:42 - Windows Update
RP4: 05/11/2013 13:34:50 - Windows Update
RP5: 05/11/2013 13:44:34 - Installed Arc
RP6: 05/11/2013 13:49:11 - Installed DirectX
RP7: 05/11/2013 13:55:40 - Installed Razer Synapse 2.0.
RP8: 05/11/2013 13:58:23 - Installed Logitech Z-series Software 1.04.
RP9: 06/11/2013 11:18:14 - Installed SpyHunter
RP10: 06/11/2013 11:22:43 - Removed SpyHunter
.
==== Installed Programs ======================
.
3DMark
Adobe Flash Player 11 Plugin
Arc
CameraHelperMsi
erLT
Futuremark SystemInfo
GeForce Experience NvStream Client Components
i-beta.com extension
Intel® Management Engine Components
Intel® Processor Graphics
Intel® Rapid Storage Technology
Intel® SDK for OpenCL - CPU Only Runtime Package
Intel® USB 3.0 eXtensible Host Controller Driver
Intel® Trusted Connect Service Client
Logitech Gaming Software
Logitech Gaming Software 8.50
Logitech Webcam Software
Logitech Z-series Software 1.04
LWS Facebook
LWS Gallery
LWS Help_main
LWS Launcher
LWS Motion Detection
LWS Pictures And Video
LWS Twitter
LWS Webcam Software
LWS WLM Plugin
LWS YouTube Plugin
Malwarebytes Anti-Malware version 1.75.0.1300
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Extended
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
Mozilla Firefox 25.0 (x86 en-US)
Mozilla Maintenance Service
NVIDIA 3D Vision Controller Driver 331.65
NVIDIA 3D Vision Driver 331.65
NVIDIA Control Panel 331.65
NVIDIA GeForce Experience 1.7
NVIDIA Graphics Driver 331.65
NVIDIA HD Audio Driver 1.3.26.4
NVIDIA Install Application
NVIDIA LED Visualizer 1.0
NVIDIA PhysX
NVIDIA PhysX System Software 9.13.0725
NVIDIA ShadowPlay 9.3.16
NVIDIA Stereoscopic 3D Driver
NVIDIA Update 9.3.16
NVIDIA Update Components
NVIDIA Virtual Audio 1.2.9
ON_OFF Charge 2 B13.0403.1
ON_OFF Charge B13.0403.1
Razer Synapse 2.0
Realtek Ethernet Controller Driver
Realtek High Definition Audio Driver
SHIELD Streaming
The Secret World
.
==== Event Viewer Messages From Past Week ========
.
06/11/2013 11:32:07, Error: Service Control Manager [7026]  - The following boot-start or system-start driver(s) failed to load:  UsbCharger
05/11/2013 15:08:38, Error: Service Control Manager [7023]  - The Superfetch service terminated with the following error:  The service has not been started.
05/11/2013 12:24:20, Error: Service Control Manager [7000]  - The cpuz136 service failed to start due to the following error:  The system cannot find the path specified.
.
==== End Of File ===========================
 

Link to post
Share on other sites

Hi there,
my name is Marius and I will assist you with your malware related problems.

Before we move on, please read the following points carefully.

  • First, read my instructions completely. If there is anything that you do not understand kindly ask before proceeding.
  • Perform everything in the correct order. Sometimes one step requires the previous one.
  • If you have any problems while following my instructions, Stop there and tell me the exact nature of your problem.
  • Do not run any other scans without instruction or add/remove software unless I tell you to do so. This would change the output of our tools and could be confusing for me.
  • Post all logfiles as a reply rather than as an attachment unless I specifically ask you. If you can not post all logfiles in one reply, feel free to use more posts.
  • If I don't hear from you within 3 days from this initial or any subsequent post, then this thread will be closed.
  • Stay with me. I will give you some advice about prevention after the cleanup process. Absence of symptoms does not always mean the computer is clean.
  • My first language is not english. So please do not use slang or idioms. It could be hard for me to read. Thanks for your understanding.

 
 
 
 
Delete junk with adwCleaner


Please download AdwCleaner to your desktop.


  • Run adwcleaner.exe
  • Hit Scan and wait for the scan to finish.
  • Confirm the message but don´t uncheck anything.
  • Hit Clean
  • When the run is finished, it will open up a text file
  • Please post its contents within your next reply
  • You´ll find the log file at C:\AdwCleaner[s1].txt also

 

 

 

 

Delete junk with JRT

thisisujrt.gif Please download Junkware Removal Tool to your desktop.

  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.

Link to post
Share on other sites

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Professional x64
Ran by Maria on 06/11/2013 at 18:15:13.62
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1705178066-3779962272-1929588148-1001\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dmwu_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dmwu_rasmancs



~~~ Files

Successfully deleted: [File] "C:\Users\Maria\appdata\locallow\SkwConfig.bin"



~~~ Folders



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 06/11/2013 at 18:16:01.39
Computer was rebooted
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 

 

# AdwCleaner v3.011 - Report created 06/11/2013 at 18:05:48
# Updated 03/11/2013 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Maria - MARIA-PC
# Running from : E:\DOWNLOADS\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Program Files (x86)\i-beta.com
Folder Deleted : C:\Program Files (x86)\SweetIM
Folder Deleted : C:\Users\Maria\AppData\Roaming\Mozilla\Firefox\Profiles\6tw2374k.default\Extensions\plugin@i-beta.com
File Deleted : C:\Users\Maria\AppData\Roaming\Mozilla\Firefox\Profiles\6tw2374k.default\Extensions\{EEE6C361-6118-11DC-9C72-001320C79847}.xpi
File Deleted : C:\Users\Maria\AppData\Roaming\Mozilla\Firefox\Profiles\6tw2374k.default\searchplugins\SweetIm.xml
File Deleted : C:\Users\Maria\AppData\Roaming\Mozilla\Firefox\Profiles\6tw2374k.default\searchplugins\Sweetpacks Search.xml

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{8E9E3331-D360-4f87-8803-52DE43566502}]
Value Deleted : [x64] HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{8E9E3331-D360-4f87-8803-52DE43566502}]
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BundleSweetIMSetup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BundleSweetIMSetup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_logitech-hd-webcam-software_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_logitech-hd-webcam-software_RASMANCS
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DED2E6B6-D56B-4CCB-89B1-CD99F8B4FC4D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DED2E6B6-D56B-4CCB-89B1-CD99F8B4FC4D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DED2E6B6-D56B-4CCB-89B1-CD99F8B4FC4D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DED2E6B6-D56B-4CCB-89B1-CD99F8B4FC4D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DED2E6B6-D56B-4CCB-89B1-CD99F8B4FC4D}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{DED2E6B6-D56B-4CCB-89B1-CD99F8B4FC4D}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DED2E6B6-D56B-4CCB-89B1-CD99F8B4FC4D}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DED2E6B6-D56B-4CCB-89B1-CD99F8B4FC4D}
Key Deleted : HKCU\Software\IM
Key Deleted : HKCU\Software\ImInstaller
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\wnlt
Key Deleted : [x64] HKLM\SOFTWARE\Updater By Sweetpacks

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.7601.17514


-\\ Mozilla Firefox v25.0 (en-US)

[ File : C:\Users\Maria\AppData\Roaming\Mozilla\Firefox\Profiles\6tw2374k.default\prefs.js ]


Line Deleted : user_pref("browser.search.defaultenginename", "Sweetpacks");
Line Deleted : user_pref("browser.search.selectedEngine", "Sweetpacks");

Line Deleted : user_pref("sweetim.toolbar.previous.browser.search.defaultenginename", "");
Line Deleted : user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "");
Line Deleted : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "");
Line Deleted : user_pref("sweetim.toolbar.previous.keyword.URL", "");


*************************

AdwCleaner[R0].txt - [4450 octets] - [06/11/2013 18:05:07]
AdwCleaner[s0].txt - [4153 octets] - [06/11/2013 18:05:48]

########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [4213 octets] ##########
 

Link to post
Share on other sites

  • Root Admin

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
 Share

  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.