Netengine.exe

Status
This thread has been Locked and is not open to further replies. Please start a New Thread if you're having a similar issue. View our Welcome Guide to learn how to use this site.

charlesxxx

Thread Starter
Joined
Dec 19, 2014
Messages
12
i opened my task manager and noticed a new process called netengine.exe. do i need this process running? what is it? can i get rid of it if it is not needed?
 

blues_harp28

Moderator
Joined
Jan 9, 2005
Messages
19,431
Hi, post the following,
Download Security Check by screen317 from.
http://screen317.spywareinfoforum.org/
Or
http://www.bleepingcomputer.com/download/securitycheck/dl/123/

Save it to your Desktop.
Double click the install icon.
A command Prompt window will open.
Let it scan the Pc - press any key when asked.
It should now open in Notepad.
Copy and Paste the result of the scan in the reply box below.
======
Download AdwCleaner by Xplode to your desktop.
http://www.bleepingcomputer.com/download/adwcleaner/
Click on the Download Now @BleepingComputer button and save it to your desktop.

NOTE: If using Internet Explorer and you get an alert that stops the program downloading click on Smartscreen Filter > Turn off Smartscreen Filter then click on OK in the box that opens. Then click on the link again.

Close any browsers that may be open - double click on the ADWCleaner icon on your desktop
Click on the Scan button.
Let it scan your Pc - when that is done click on the Logfile button.
The report will appear on your desktop - Copy and Paste it into your next post.
 

charlesxxx

Thread Starter
Joined
Dec 19, 2014
Messages
12
Results of screen317's Security Check version 0.99.99
Windows XP Service Pack 3 x86
Internet Explorer 8
``````````````Antivirus/Firewall Check:``````````````
Windows Firewall Enabled!
avast! Antivirus
Antivirus up to date!
`````````Anti-malware/Other Utilities Check:`````````
Java 7 Update 67
Java version 32-bit out of Date!
Adobe Flash Player 16.0.0.305 Flash Player out of Date!
Adobe Reader XI
Mozilla Firefox (36.0.4)
````````Process Check: objlist.exe by Laurent````````
Alwil Software Avast5 AvastSvc.exe
Alwil Software Avast5 AvastUI.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C:: 0%
````````````````````End of Log``````````````````````



# AdwCleaner v4.200 - Logfile created 02/04/2015 at 12:40:40
# Updated 29/03/2015 by Xplode
# Database : 2015-03-29.1 [Server]
# Operating system : Microsoft Windows XP Service Pack 3 (x86)
# Username : charles rivard - HACKER1
# Running from : C:\Documents and Settings\charles rivard\My Documents\Downloads\adwcleaner_4.200.exe
# Option : Scan

***** [ Services ] *****

Service Found : torchcrashhandler
Service Found : YahooAUService

***** [ Files / Folders ] *****

File Found : C:\Documents and Settings\charles rivard\Application Data\Microsoft\Internet Explorer\Quick Launch\Vosteran.lnk
File Found : C:\Documents and Settings\charles rivard\Application Data\Mozilla\Firefox\Profiles\qy2umwin.default-1419908406437\invalidprefs.js
File Found : C:\Documents and Settings\charles rivard\Application Data\Mozilla\Firefox\Profiles\qy2umwin.default-1419908406437\searchplugins\Vosteran.xml
File Found : C:\Documents and Settings\charles rivard\Application Data\Mozilla\Firefox\Profiles\qy2umwin.default-1419908406437\user.js
File Found : C:\Documents and Settings\charles rivard\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_aaaalipaokhkccgmgkdglfinfnfhflko_0.localstorage
File Found : C:\Documents and Settings\charles rivard\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_aaaalipaokhkccgmgkdglfinfnfhflko_0.localstorage-journal
File Found : C:\Documents and Settings\charles rivard\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_cmaiofennmphjldldcpphcechfnnohja_0.localstorage
File Found : C:\Documents and Settings\charles rivard\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_cmaiofennmphjldldcpphcechfnnohja_0.localstorage-journal
File Found : C:\Documents and Settings\charles rivard\Start Menu\Programs\Torch.lnk
File Found : C:\WINDOWS\system32\conduitEngine.tmp
File Found : C:\WINDOWS\system32\roboot.exe
Folder Found : C:\BywifiSave
Folder Found : C:\BywifiShare
Folder Found : C:\DOCUME~1\CHARLE~1\LOCALS~1\Temp\apn
Folder Found : C:\DOCUME~1\CHARLE~1\LOCALS~1\Temp\VideoEgg
Folder Found : C:\Documents and Settings\All Users\Application Data\Activeris
Folder Found : C:\Documents and Settings\All Users\Application Data\apn
Folder Found : C:\Documents and Settings\All Users\Application Data\Babylon
Folder Found : C:\Documents and Settings\All Users\Application Data\baidu
Folder Found : C:\Documents and Settings\All Users\Application Data\Browser
Folder Found : C:\Documents and Settings\All Users\Application Data\SecTaskMan
Folder Found : C:\Documents and Settings\All Users\Application Data\Tarma Installer
Folder Found : C:\Documents and Settings\All Users\Application Data\torchcrashhandler
Folder Found : C:\Documents and Settings\All Users\Application Data\Viewpoint
Folder Found : C:\Documents and Settings\All Users\Application Data\Yahoo! Companion
Folder Found : C:\Documents and Settings\All Users\Start Menu\Programs\Activeris AntiMalware
Folder Found : C:\Documents and Settings\All Users\Start Menu\Programs\Coupons
Folder Found : C:\Documents and Settings\All Users\Start Menu\Programs\FlvPlayer
Folder Found : C:\Documents and Settings\All Users\Start Menu\Programs\WinZip Registry Optimizer
Folder Found : C:\Documents and Settings\charles rivard\Application Data\1H1Q1V1N1N1O1R
Folder Found : C:\Documents and Settings\charles rivard\Application Data\Activeris
Folder Found : C:\Documents and Settings\charles rivard\Application Data\AVG SafeGuard toolbar
Folder Found : C:\Documents and Settings\charles rivard\Application Data\Babylon
Folder Found : C:\Documents and Settings\charles rivard\Application Data\BrowserExtensions
Folder Found : C:\Documents and Settings\charles rivard\Application Data\DigitalSites
Folder Found : C:\Documents and Settings\charles rivard\Application Data\File Type Helper
Folder Found : C:\Documents and Settings\charles rivard\Application Data\Movies Toolbar
Folder Found : C:\Documents and Settings\charles rivard\Application Data\PriceGong
Folder Found : C:\Documents and Settings\charles rivard\Application Data\ProgSense
Folder Found : C:\Documents and Settings\charles rivard\Application Data\Search Protection
Folder Found : C:\Documents and Settings\charles rivard\Application Data\SearchProtect
Folder Found : C:\Documents and Settings\charles rivard\Application Data\searchresultstb
Folder Found : C:\Documents and Settings\charles rivard\Application Data\ShopAtHome
Folder Found : C:\Documents and Settings\charles rivard\Application Data\StumbleUpon
Folder Found : C:\Documents and Settings\charles rivard\Application Data\VideoEgg
Folder Found : C:\Documents and Settings\charles rivard\Application Data\Viewpoint
Folder Found : C:\Documents and Settings\charles rivard\Application Data\vmntoolbar
Folder Found : C:\Documents and Settings\charles rivard\Application Data\WSE_Vosteran
Folder Found : C:\Documents and Settings\charles rivard\Local Settings\Application Data\AVG SafeGuard toolbar
Folder Found : C:\Documents and Settings\charles rivard\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\aaaalipaokhkccgmgkdglfinfnfhflko
Folder Found : C:\Documents and Settings\charles rivard\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\cmaiofennmphjldldcpphcechfnnohja
Folder Found : C:\Documents and Settings\charles rivard\Local Settings\Application Data\Conduit
Folder Found : C:\Documents and Settings\charles rivard\Local Settings\Application Data\SoftonicAssistant
Folder Found : C:\Documents and Settings\charles rivard\Local Settings\Application Data\torch
Folder Found : C:\Documents and Settings\charles rivard\Local Settings\Application Data\Vosteran
Folder Found : C:\Documents and Settings\charles rivard\My Documents\ShopToWin
Folder Found : C:\Documents and Settings\charles rivard\Start Menu\Programs\StumbleUpon
Folder Found : C:\Documents and Settings\charles rivard\Start Menu\Programs\Vosteran
Folder Found : C:\Program Files\Activeris AntiMalware
Folder Found : C:\Program Files\A-ToolBar
Folder Found : C:\Program Files\AVG SafeGuard toolbar
Folder Found : C:\Program Files\Common Files\AVG Secure Search
Folder Found : C:\Program Files\Common Files\download Manager
Folder Found : C:\Program Files\FilmFanaticEI
Folder Found : C:\Program Files\Free Offers from Freeze.com
Folder Found : C:\Program Files\Freecorder extension
Folder Found : C:\Program Files\Movies Toolbar
Folder Found : C:\Program Files\Search Toolbar
Folder Found : C:\Program Files\SearchProtect
Folder Found : C:\Program Files\SelectRebates
Folder Found : C:\Program Files\Shop To Win
Folder Found : C:\Program Files\Uniblue
Folder Found : C:\Program Files\Viewpoint
Folder Found : C:\Program Files\vmntoolbar
Folder Found : C:\Program Files\WinZip Registry Optimizer

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Data Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - local
Key Found : HKCU\Software\Adknowledge
Key Found : HKCU\Software\APN PIP
Key Found : HKCU\Software\APNDTX
Key Found : HKCU\Software\AppDataLow\Software\IncrediMail_MediaBar_2
Key Found : HKCU\Software\AppDataLow\Software\Search Protection
Key Found : HKCU\Software\Binkiland Browser
Key Found : HKCU\Software\Brothersoft
Key Found : HKCU\Software\BRS
Key Found : HKCU\Software\Classes\iLivid.torrent
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\DataMngr
Key Found : HKCU\Software\Headlight
Key Found : HKCU\Software\ICQToolbar
Key Found : HKCU\Software\ilivid
Key Found : HKCU\Software\ilividmoviestoolbar20
Key Found : HKCU\Software\ImInstaller
Key Found : HKCU\Software\InstallCore
Key Found : HKCU\Software\MGShareware
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CDD56A72-212C-4838-A6FD-B9694FB7648E}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Binkiland
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Digital Sites
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ilivid
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Search Protection
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SoftonicAssistant
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\torch
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Vosteran
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98279C38-DE4B-4BCF-93C9-8EC26069D6F4}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C4743D3E-20D7-4B52-84F2-5E4E277B2D82}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E8DAAA30-6CAA-4B58-9603-8E54238219E2}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{000123B4-9B42-4900-B3F7-F4B073EFC214}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{09E90109-A9AA-4980-BCEF-76F8D924E902}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2977D8CC-8902-4340-BE88-2C676BF96B8D}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{81017EA9-9AA8-4A6A-9734-7AF40E7D593F}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98279C38-DE4B-4BCF-93C9-8EC26069D6F4}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9D425283-D487-4337-BAB6-AB8354A81457}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C4743D3E-20D7-4B52-84F2-5E4E277B2D82}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E8DAAA30-6CAA-4B58-9603-8E54238219E2}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Binkiland
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Digital Sites
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\ilivid
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Search Protection
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SoftonicAssistant
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\torch
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran
Key Found : HKCU\Software\PriceGong
Key Found : HKCU\Software\ProgSense
Key Found : HKCU\Software\SecuredDownload
Key Found : HKCU\Software\Smart PC Solutions
Key Found : HKCU\Software\Softonic
Key Found : HKCU\Software\torch
Key Found : HKCU\Software\vmntoolbar
Key Found : HKCU\Software\Vosteran
Key Found : HKCU\Software\Vosteran Browser
Key Found : HKCU\Software\WEDLMNGR
Key Found : HKCU\Software\WSE_Vosteran
Key Found : HKCU\Software\YahooPartnerToolbar
Key Found : HKCU\Software\Zugo
Key Found : HKLM\SOFTWARE\Classes\AppID\{A7DDCBDE-5C86-415C-8A37-763AE183E7E4}
Key Found : HKLM\SOFTWARE\Classes\AppID\NCTAudioCDGrabber2.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\WMHelper.DLL
Key Found : HKLM\SOFTWARE\Classes\Applications\Torch.exe
Key Found : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtl
Key Found : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtl.1
Key Found : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtlSecondary
Key Found : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtlSecondary.1
Key Found : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{058F0E48-61CA-4964-9FBA-1978A1BB060D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{18F33C35-8EF2-40D7-8BA4-932B0121B472}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5EB0259D-AB79-4AE6-A6E6-24FFE21C3DA4}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{81017EA9-9AA8-4A6A-9734-7AF40E7D593F}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A43DE495-3D00-47D4-9D2C-303115707939}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}
Key Found : HKLM\SOFTWARE\Classes\Conduit.Engine
Key Found : HKLM\SOFTWARE\Classes\iLivid.torrent
Key Found : HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{2BEF239C-752E-4001-8048-F256E0D8CD93}
Key Found : HKLM\SOFTWARE\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B}
Key Found : HKLM\SOFTWARE\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982}
Key Found : HKLM\SOFTWARE\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377}
Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Found : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard
Key Found : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard.1
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT1547340
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2724386
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}
Key Found : HKLM\SOFTWARE\Classes\vmntoolbar.vmntoolbar
Key Found : HKLM\SOFTWARE\Classes\vmntoolbar.vmntoolbarmenu button
Key Found : HKLM\SOFTWARE\Classes\vmntoolbar.vmntoolbartoggle button
Key Found : HKLM\SOFTWARE\Conduit
Key Found : HKLM\SOFTWARE\DataMngr
Key Found : HKLM\SOFTWARE\FlvPlayer
Key Found : HKLM\SOFTWARE\Freeze.com
Key Found : HKLM\SOFTWARE\ImInstaller
Key Found : HKLM\SOFTWARE\InstallCore
Key Found : HKLM\SOFTWARE\InstallIQ
Key Found : HKLM\SOFTWARE\MetaStream
Key Found : HKLM\SOFTWARE\MGShareware
Key Found : HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Key Found : HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{09E90109-A9AA-4980-BCEF-76F8D924E902}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
Key Found : HKLM\SOFTWARE\microsoft\shared tools\msconfig\startupreg\Search Protection
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{B25D67C4-E885-43F8-8085-B532F6261529}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\conduitEngine
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Coupon Printer for Windows5.0.0.0
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\eSpeak_is1
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\NavHelper
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ViewpointMediaPlayer
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\vmntoolbar
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WSE_Vosteran
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\torch.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2977D8CC-8902-4340-BE88-2C676BF96B8D}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D425283-D487-4337-BAB6-AB8354A81457}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B25D67C4-E885-43F8-8085-B532F6261529}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Coupon Printer for Windows5.0.0.0
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\eSpeak_is1
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WSE_Vosteran
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Toolbar
Key Found : HKLM\SOFTWARE\MozillaPlugins\@funwebproducts.com/Plugin
Key Found : HKLM\SOFTWARE\MozillaPlugins\@viewpoint.com/VMP
Key Found : HKLM\SOFTWARE\MozillaPlugins\TorchVLC
Key Found : HKLM\SOFTWARE\StumbleUpon
Key Found : HKLM\SOFTWARE\Tarma Installer
Key Found : HKLM\SOFTWARE\torch
Key Found : HKLM\SOFTWARE\Viewpoint
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{98279C38-DE4B-4BCF-93C9-8EC26069D6F4}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{81017EA9-9AA8-4A6A-9734-7AF40E7D593F}]
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce [WSE_Vosteran]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{2977D8CC-8902-4340-BE88-2C676BF96B8D}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{9D425283-D487-4337-BAB6-AB8354A81457}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce [WSE_Vosteran]

***** [ Web browsers ] *****

-\\ Internet Explorer v8.0.6001.18702

Setting Found : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://binkiland.com/?f=1&a=bnk_secureddownload_15_10&cd=2XzuyEtN2Y1L1QzutDtDtCtAyBtBtAtAyE0E0B0FtC0ByD0AtN0D0Tzu0StCtCyCtCtN1L2XzutAtFzztFyEtFtAtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyDzyyCyDtCtAtCzztGzztAtA0CtGyCtC0D0CtG0Bzy0ByDtGyDyByDtDtDyDzz0EtA0F0DtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyC0CzyyDyD0EtDyBtGyByDtDyCtGyE0B0C0EtG0ByDzy0FtGyDyCtBtB0ByEtBzyyC0B0Azy2QtN1B2Z1V1T1S1NzuyDyBtA&cr=2105977889&ir=

-\\ Mozilla Firefox v36.0.4 (x86 en-US)

[qy2umwin.default-1419908406437] - Line Found : user_pref("browser.startup.homepage", "hxxp://binkiland.com/?f=1&a=bnk_secureddownload_15_10&cd=2XzuyEtN2Y1L1QzutDtDtCtAyBtBtAtAyE0E0B0FtC0ByD0AtN0D0Tzu0StCtCyCtCtN1L2XzutAtFzztFyEtFtAtN1L1CzutCyEtBzy[...]

-\\ Pale Moon v


-\\ Comodo Dragon v

[C:\Documents and Settings\charles rivard\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Web data] - Found [Search Provider] : hxxp://search.aol.com/aol/search?query={searchTerms}
[C:\Documents and Settings\charles rivard\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Web data] - Found [Search Provider] : hxxp://search.ask.com/web?o=APN10257&doi=2014-12-24&apn_dtid=%5ECMD331%5EYY%5EUS&apn_ptnrs=%5EAGO&q={searchTerms}
[C:\Documents and Settings\charles rivard\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Preferences] - Found [Extension] : cmaiofennmphjldldcpphcechfnnohja
[C:\Documents and Settings\charles rivard\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Preferences] - Found [Extension] : aaaalipaokhkccgmgkdglfinfnfhflko

-\\ Opera v26.0.1656.60


*************************

AdwCleaner[R0].txt - [23580 bytes] - [19/12/2014 11:47:56]
AdwCleaner[R1].txt - [24275 bytes] - [02/04/2015 12:40:40]

########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [24335 bytes] ##########
 

blues_harp28

Moderator
Joined
Jan 9, 2005
Messages
19,431
Run AdwCleaner again - Scan > click Cleaning allow it to clean and restart your pc.
Then post the latest log file.
======
Download Junkware Removal Tool
http://www.bleepingcomputer.com/download/junkware-removal-tool/

Temporarily shutdown your anti-virus to avoid any conflicts.
http://www.bleepingcomputer.com/for...nti-virus-firewall-and-anti-malware-programs/
Be sure to enable the anti-virus program after the scan.

Right-mouse click JRT.exe and select Run as administrator (If using XP just double click on the icon to run it.)
The tool will open and start scanning your system.
Please be patient as this can take a while to complete.
It will close down your desktop and then restart your pc - allow it to do so.
On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
Post the contents of JRT.txt into your next message.
======
Download MalwareBytes to your desktop.
Download the Free version.
MalwareBytes

Once downloaded to your desktop.
Close all open browser windows.
Click on the Install icon - allow it to update during the install process.
Start Malwarebytes Anti-Malware.
Before you run a scan.
Under Settings > Detection and Protection in the left pane.
Under Detection Options - make sure that all three entries are ticked
Under Non-Malware detections - set to Treat detections as Malware

Now click - Scan button.
Then select - Threat Scan.
Then - Scan Now.
If any infections are found during the scan, the number of them will be listed.
When the scan is finished, make sure to select and remove Everything in the list.
You may be prompted to restart to finish the removal process.
If Yes - restart your Pc.

Start Malwarebytes Anti-Malware again.
Click History > Application Logs.
Select the most recent scan log.
Click View.
Select Export >Text File.
Name it mbam > then save it on the desktop.
Copy-and-paste its contents in the reply box below.
 

flavallee

Frank
Trusted Advisor
Joined
May 12, 2002
Messages
83,135
AFTER you complete all of the instructions in post #4, do the following:

Go here, then click the large blue "Download Now @ Author's site" button to download and save TFC.exe (Temp File Cleaner by OldTimer) to your desktop.

After it's downloaded and saved, close all open windows.

Double-click it to load its main window.

Click the "Start" button.

If there are a large number of temp files and/or there are multiple user accounts, the temp file deletion process may appear to freeze or may take a few minutes, so be patient.

After the temp file deletion process is finished, restart the computer.

Advise how many temp files in MB's or GB's were found and deleted.

----------------------------------------------------------------------
 

charlesxxx

Thread Starter
Joined
Dec 19, 2014
Messages
12
I fixed the problem myself. I found out what program was causing it and used the add/remove programs in my control panel to delete it. Thanks for the help though.
 

blues_harp28

Moderator
Joined
Jan 9, 2005
Messages
19,431
Did you let AdwCleaner remove what it found?
Your pc is infected with all manner of Adware and possible Malware including the following.
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\DataMngr
Key Found : HKCU\Software\Smart PC Solutions
Key Found : HKCU\Software\Softonic
Folder Found : C:\Documents and Settings\All Users\Application Data\Babylon
Folder Found : C:\Documents and Settings\All Users\Application Data\baidu
Etc etc
======
Although you are using Avast anti-virus program, you need to install some Malware programs to check your pc.
I suggest that you do what is suggested above.
Install and run Malwarebytes.
Let AdwCleaner remove what it found.
Download and run Junkware Removal Tool.
 

flavallee

Frank
Trusted Advisor
Joined
May 12, 2002
Messages
83,135
I agree with blues_harp28.

You need to do a "Scan" and "Cleaning" with AdwCleaner because your computer is heavily infested with malware, spyware, etc..

Your computing habits will infest it on a regular basis, so be prepared to have problems appear on a regular basis.

-----------------------------------------------------------
 

plodr

Liz
Joined
Jun 27, 2014
Messages
23,659
See the items in red? Java version 32-bit out of Date!
Flash Player out of Date!

Hackers scan computers looking for exactly those things.
http://www.pcworld.com/article/2903333/
Programs like Java and Flash, which run on many different operating systems are "gifts to hackers," said Kasper Lindgaard, director of research and security for Secunia.
I don't have the exact figures for 2014 but over 90+% of malware enters a computer using outdated flash and Java.


 
Status
This thread has been Locked and is not open to further replies. Please start a New Thread if you're having a similar issue. View our Welcome Guide to learn how to use this site.

Users Who Are Viewing This Thread (Users: 0, Guests: 1)

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 807,865 other people just like you!

Latest posts

Staff online

Top