1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

Solved: removing fst us 108 (free soft today)

Discussion in 'All Other Software' started by Lynnstuff, Jun 19, 2014.

Thread Status:
Not open for further replies.
Advertisement
  1. Lynnstuff

    Lynnstuff Thread Starter

    Joined:
    Jul 19, 2007
    Messages:
    117
    when I try to get rid of this software, I get the run around and it tries to install more software. How do I remove this from my system Windows 7 RLynn
     
  2. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    78,503
    First Name:
    Frank
    Go here, then click the large blue "Download Now @ Bleeping Computer" button to download and save AdwCleaner.exe to your desktop.

    Close all open windows first, then double-click AdwCleaner.exe to load its main window.

    Click the "Scan" button, then allow the scanning process to finish.

    Click the "Report" button.

    When the log appears, save it.

    Return here to your thread, then copy-and-paste the ENTIRE log here.

    -------------------------------------------------------------------
     
  3. Lynnstuff

    Lynnstuff Thread Starter

    Joined:
    Jul 19, 2007
    Messages:
    117
    # AdwCleaner v3.212 - Report created 19/06/2014 at 15:50:18
    # Updated 05/06/2014 by Xplode
    # Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
    # Username : RLynn - RLYNN-PC
    # Running from : C:\Users\RLynn\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PB80E5X9\AdwCleaner.exe
    # Option : Clean

    ***** [ Services ] *****

    [x] Not Deleted : BackupStack
    [#] Service Deleted : globalUpdate
    [#] Service Deleted : globalUpdatem
    [x] Not Deleted : NewPlayerUpdaterService
    [#] Service Deleted : Partner Service
    Service Deleted : vosr
    Service Deleted : yewimmxqbs64

    ***** [ Files / Folders ] *****

    Folder Deleted : C:\ProgramData\apn
    Folder Deleted : C:\ProgramData\Ask
    Folder Deleted : C:\ProgramData\Babylon
    Folder Deleted : C:\ProgramData\Conduit
    Folder Deleted : C:\ProgramData\DSearchLink
    Folder Deleted : C:\ProgramData\Partner
    Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewPlayer
    Folder Deleted : C:\Program Files (x86)\AnyProtectEx
    Folder Deleted : C:\Program Files (x86)\Conduit
    Folder Deleted : C:\Program Files (x86)\globalUpdate
    [!] Folder Deleted : C:\Program Files (x86)\MyPC Backup
    Folder Deleted : C:\Program Files (x86)\NewPlayer
    Folder Deleted : C:\Program Files (x86)\Optimizer Pro
    Folder Deleted : C:\Program Files (x86)\predm
    Folder Deleted : C:\Program Files (x86)\WebConnect
    Folder Deleted : C:\Program Files (x86)\Vafmusic2
    Folder Deleted : C:\Program Files (x86)\Common Files\337
    Folder Deleted : C:\Program Files\002
    Folder Deleted : C:\Program Files\RrFilter
    Folder Deleted : C:\Program Files\RrSavings
    Folder Deleted : C:\Users\RLynn\AppData\Local\apn
    Folder Deleted : C:\Users\RLynn\AppData\Local\AVG Secure Search
    Folder Deleted : C:\Users\RLynn\AppData\Local\Conduit
    Folder Deleted : C:\Users\RLynn\AppData\Local\globalUpdate
    Folder Deleted : C:\Users\RLynn\AppData\Local\iac
    Folder Deleted : C:\Users\RLynn\AppData\Local\NewPlayer
    Folder Deleted : C:\Users\RLynn\AppData\Local\Temp\AtuZi
    Folder Deleted : C:\Users\RLynn\AppData\LocalLow\Conduit
    Folder Deleted : C:\Users\RLynn\AppData\LocalLow\Delta
    Folder Deleted : C:\Users\RLynn\AppData\LocalLow\iac
    Folder Deleted : C:\Users\RLynn\AppData\LocalLow\PriceGong
    Folder Deleted : C:\Users\RLynn\AppData\LocalLow\Vafmusic2
    Folder Deleted : C:\Users\RLynn\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z
    Folder Deleted : C:\Users\RLynn\AppData\Roaming\Babylon
    Folder Deleted : C:\Users\RLynn\AppData\Roaming\digitalsite
    Folder Deleted : C:\Users\RLynn\AppData\Roaming\DigitalSites
    Folder Deleted : C:\Users\RLynn\AppData\Roaming\DSite
    Folder Deleted : C:\Users\RLynn\AppData\Roaming\Systweak
    Folder Deleted : C:\Users\RLynn\AppData\Roaming\VOPackage
    Folder Deleted : C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
    Folder Deleted : C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
    Folder Deleted : C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
    Folder Deleted : C:\Users\RLynn\Documents\Optimizer Pro
    Folder Deleted : C:\Users\RLynn\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaipilfmheplbcghignccoiiebekkdhe
    Folder Deleted : C:\Users\RLynn\AppData\Local\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh
    Folder Deleted : C:\Users\RLynn\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbjibcbpmbcabnfnohhgjjmkgkimajko
    File Deleted : C:\END
    File Deleted : C:\Users\Public\Desktop\NewPlayer.lnk
    File Deleted : C:\Windows\System32\roboot64.exe
    File Deleted : C:\Users\RLynn\AppData\Local\Temp\Uninstall.exe
    File Deleted : C:\Users\RLynn\AppData\Roaming\aps.scan.quick.results
    File Deleted : C:\Users\RLynn\AppData\Roaming\aps.scan.results
    File Deleted : C:\Users\RLynn\AppData\Roaming\aps.uninstall.scan.results
    File Deleted : C:\Users\RLynn\Desktop\AnyProtect.lnk
    File Deleted : C:\Users\RLynn\Desktop\Continue VuuPC Installation.lnk
    File Deleted : C:\Users\RLynn\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
    File Deleted : C:\Users\RLynn\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
    File Deleted : C:\Windows\Tasks\APSnotifierPP1.job
    File Deleted : C:\Windows\System32\Tasks\APSnotifierPP1
    File Deleted : C:\Windows\Tasks\APSnotifierPP2.job
    File Deleted : C:\Windows\System32\Tasks\APSnotifierPP2
    File Deleted : C:\Windows\Tasks\APSnotifierPP3.job
    File Deleted : C:\Windows\System32\Tasks\APSnotifierPP3
    File Deleted : C:\Windows\System32\Tasks\Desk 365 RunAsStdUser
    File Deleted : C:\Windows\Tasks\Digital Sites.job
    File Deleted : C:\Windows\System32\Tasks\Digital Sites
    File Deleted : C:\Windows\Tasks\DSite.job
    File Deleted : C:\Windows\System32\Tasks\DSite
    File Deleted : C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
    File Deleted : C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
    File Deleted : C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
    File Deleted : C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
    File Deleted : C:\Windows\System32\Tasks\LaunchApp
    File Deleted : C:\Windows\Tasks\f28bf2f2-5e4f-4789-ad3a-5816e5437859-1.job
    File Deleted : C:\Windows\System32\Tasks\f28bf2f2-5e4f-4789-ad3a-5816e5437859-1
    File Deleted : C:\Windows\Tasks\f28bf2f2-5e4f-4789-ad3a-5816e5437859-11.job
    File Deleted : C:\Windows\System32\Tasks\f28bf2f2-5e4f-4789-ad3a-5816e5437859-11
    File Deleted : C:\Windows\Tasks\f28bf2f2-5e4f-4789-ad3a-5816e5437859-2.job
    File Deleted : C:\Windows\System32\Tasks\f28bf2f2-5e4f-4789-ad3a-5816e5437859-2
    File Deleted : C:\Windows\Tasks\f28bf2f2-5e4f-4789-ad3a-5816e5437859-3.job
    File Deleted : C:\Windows\System32\Tasks\f28bf2f2-5e4f-4789-ad3a-5816e5437859-3
    File Deleted : C:\Windows\Tasks\f28bf2f2-5e4f-4789-ad3a-5816e5437859-4.job
    File Deleted : C:\Windows\System32\Tasks\f28bf2f2-5e4f-4789-ad3a-5816e5437859-4
    File Deleted : C:\Windows\Tasks\f28bf2f2-5e4f-4789-ad3a-5816e5437859-5.job
    File Deleted : C:\Windows\System32\Tasks\f28bf2f2-5e4f-4789-ad3a-5816e5437859-5
    File Deleted : C:\Windows\Tasks\f28bf2f2-5e4f-4789-ad3a-5816e5437859-6.job
    File Deleted : C:\Windows\System32\Tasks\f28bf2f2-5e4f-4789-ad3a-5816e5437859-6
    File Deleted : C:\Windows\Tasks\f28bf2f2-5e4f-4789-ad3a-5816e5437859-7.job
    File Deleted : C:\Windows\System32\Tasks\f28bf2f2-5e4f-4789-ad3a-5816e5437859-7

    ***** [ Shortcuts ] *****


    ***** [ Registry ] *****

    Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh
    Key Deleted : HKCU\Software\Google\Chrome\Extensions\cbjibcbpmbcabnfnohhgjjmkgkimajko
    Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\cbjibcbpmbcabnfnohhgjjmkgkimajko
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\kt_bho_dll.dll
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
    Key Deleted : HKLM\SOFTWARE\Classes\kt_bho.KettleBho
    Key Deleted : HKLM\SOFTWARE\Classes\kt_bho.KettleBho.1
    Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
    Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
    Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
    Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\alotservice_RASAPI32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\alotservice_RASMANCS
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASAPI32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASMANCS
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apntoolbarinstaller_RASAPI32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apntoolbarinstaller_RASMANCS
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\desk365_RASAPI32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\desk365_RASMANCS
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\HomeTab_RASAPI32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\HomeTab_RASMANCS
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\NewPlayer_RASAPI32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\NewPlayer_RASMANCS
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optimizerpro_rasapi32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optimizerpro_rasmancs
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup
    Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
    Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
    Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\DeskSvc
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IECT3294791
    Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0052916.BHO
    Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0052916.BHO.1
    Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0052916.Sandbox
    Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0052916.Sandbox.1
    Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3294791
    Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3297947
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\{28A88B70-D874-4F73-BBBA-9B2B222FB7D6}
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\{72D89EBF-0C5D-4190-91FD-398E45F1D007}
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7F3F960E-A836-45CA-8911-0ACCB522246E}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AACF7D0F-FF0C-4849-A7CE-33374F35BFD8}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110511291116}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220522292216}
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550555295516}
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566296616}
    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{86676E13-D6D8-4652-9FCF-F2047F1FB000}
    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440544294416}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F3F960E-A836-45CA-8911-0ACCB522246E}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511291116}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A1E28287-1A31-4B0F-8D05-AA8C465D3C5A}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BC7E25D7-4681-46A3-AF5A-9A1B865783ED}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7F3F960E-A836-45CA-8911-0ACCB522246E}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AACF7D0F-FF0C-4849-A7CE-33374F35BFD8}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511291116}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7F3F960E-A836-45CA-8911-0ACCB522246E}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AACF7D0F-FF0C-4849-A7CE-33374F35BFD8}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511291116}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AACF7D0F-FF0C-4849-A7CE-33374F35BFD8}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F364253B-F463-43D6-A6ED-BB5E6ABC77C4}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{55A5B4A9-3C43-4132-8A47-B2F3B2869535}
    Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
    Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
    Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
    Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{C04B7D22-5AEC-4561-8F49-27F6269208F6}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
    Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{7F3F960E-A836-45CA-8911-0ACCB522246E}]
    Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]
    Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D7E97865-918F-41E4-9CD0-25AB1C574CE8}]
    Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{7F3F960E-A836-45CA-8911-0ACCB522246E}]
    Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{7F3F960E-A836-45CA-8911-0ACCB522246E}]
    Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5}
    Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
    Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110511291116}
    Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220522292216}
    Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
    Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{23119123-0854-469D-807A-171568457991}
    Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{36B445BF-1B84-466A-A623-A360A8CFF8C3}
    Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{6CBF5C01-C876-481B-867E-111CB1D2A7D6}
    Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
    Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D97143C2-4282-496B-BDC4-7EC852F1497C}
    Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550555295516}
    Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566296616}
    Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5}
    Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
    Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511291116}
    Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
    Key Deleted : HKCU\Software\AnyProtect
    Key Deleted : HKCU\Software\APN PIP
    Key Deleted : HKCU\Software\BabSolution
    Key Deleted : HKCU\Software\Conduit
    Key Deleted : HKCU\Software\Default Tab
    Key Deleted : HKCU\Software\Delta
    Key Deleted : HKCU\Software\dsiteproducts
    Key Deleted : HKCU\Software\IM
    Key Deleted : HKCU\Software\InstallCore
    Key Deleted : HKCU\Software\installedbrowserextensions
    Key Deleted : HKCU\Software\InstalledThirdPartyPrograms
    Key Deleted : HKCU\Software\PIP
    Key Deleted : HKCU\Software\simplytech
    Key Deleted : HKCU\Software\SweetIM
    Key Deleted : HKCU\Software\systweak
    Key Deleted : HKCU\Software\Tutorials
    Key Deleted : HKCU\Software\TutoTag
    Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
    Key Deleted : HKCU\Software\AppDataLow\Toolbar
    Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
    Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
    Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
    Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
    Key Deleted : HKCU\Software\AppDataLow\Software\Rr Savings
    Key Deleted : HKCU\Software\AppDataLow\Software\simplytech
    Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
    Key Deleted : HKCU\Software\AppDataLow\Software\Vafmusic2
    Key Deleted : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
    Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
    Key Deleted : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
    Key Deleted : HKLM\Software\Conduit
    Key Deleted : HKLM\Software\Default Tab
    Key Deleted : HKLM\Software\DefaultTab
    Key Deleted : HKLM\Software\Delta
    Key Deleted : HKLM\Software\Desksvc
    Key Deleted : HKLM\Software\Free_soft_today
    Key Deleted : HKLM\Software\Freeze.com
    Key Deleted : HKLM\Software\hdcode
    Key Deleted : HKLM\Software\installedbrowserextensions
    Key Deleted : HKLM\Software\InstallIQ
    Key Deleted : HKLM\Software\NewPlayer
    Key Deleted : HKLM\Software\PIP
    Key Deleted : HKLM\Software\SweetIM
    Key Deleted : HKLM\Software\systweak
    Key Deleted : HKLM\Software\Tutorials
    Key Deleted : HKLM\Software\Uniblue
    Key Deleted : HKLM\Software\V9
    Key Deleted : HKLM\Software\Vafmusic2
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\DigitalSite
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\DSite
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AnyProtect
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\NewPlayer
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
    Key Deleted : [x64] HKLM\SOFTWARE\DomaIQ
    Key Deleted : [x64] HKLM\SOFTWARE\installedbrowserextensions
    Key Deleted : [x64] HKLM\SOFTWARE\InstalledThirdPartyPrograms
    Key Deleted : [x64] HKLM\SOFTWARE\LevelQualityWatcher
    Key Deleted : [x64] HKLM\SOFTWARE\RrSavings
    Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup

    ***** [ Browsers ] *****

    -\\ Internet Explorer v11.0.9600.17126

    Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
    Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar]
    Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
    Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Default_Page_URL]
    Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
    Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
    Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Default_Page_URL]
    Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Bar]
    Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL]
    Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Start Page]
    Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Start Default_Page_URL]
    Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Search Bar]
    Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Search Page]
    Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs]
    Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Start Page]
    Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Start Default_Page_URL]
    Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Default_Search_URL]
    Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Bar]
    Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Page]
    Setting Restored : HKCU\Software\Microsoft\Internet Explorer\SearchUrl []
    Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl []

    -\\ Google Chrome v35.0.1916.153

    [ File : C:\Users\RLynn\AppData\Local\Google\Chrome\User Data\Default\preferences ]

    Deleted [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=AD5&o=APN10090&locale=en_US&apn_uid=5b33700f-d126-4fba-b55b-04e9c303dec3&apn_ptnrs=%5EA5G&apn_sauid=F62356C9-7C08-4BE5-A35C-B32E260D3C8A&apn_dtid=%5EYYYYYY%5EYY%5EUS&q={searchTerms}
    Deleted [Search Provider] : hxxp://www2.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=06D99C4E360376B1&affID=119351&tt=160913_nocpn&tsp=5008
    Deleted [Search Provider] : hxxp://search.conduit.com/Results.aspx?q={searchTerms}&SearchSource=49&CUI=UN23365914981430427&ctid=CT3294791&UM=2
    Deleted [Search Provider] : hxxp://search.aol.com/aol/search?query={searchTerms}
    Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
    Deleted [Search Provider] : hxxp://www2.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=06D99C4E360376B1&affID=119351&tt=160913_nocpn&tsp=5008
    Deleted [Search Provider] : hxxp://search.conduit.com/Results.aspx?ctid=CT3325805&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=5&UP=SP51B42980-8912-4CC8-82C2-312C3322970A&q={searchTerms}&SSPV=
    Deleted [Search Provider] : hxxp://search.certified-toolbar.com?si=82443&st=bs&tid=24086&ver=6.4&ts=1403150400000.000000&tguid=82443-24086-1403192489572-452971558708CBA5A6040F12916D5214&q={searchTerms}
    Deleted [Search Provider] : hxxp://www.trovi.com/Results.aspx?q={searchTerms}&stype=Results&Suggest=POWER+TO+GO&useHistory=0&UP=SP51B42980-8912-4CC8-82C2-312C3322970A&isid=M41B8E545-D7EF-48A6-9137-6DAA2D788A8C&UM=5&SelfSearch=1&SearchType=SearchWeb&SearchSource=55&ctid=CT3324775&octid=EB_ORIGINAL_CTID
    Deleted [Startup_urls] : hxxp://www.trovi.com/?gd=&ctid=CT3324775&octid=EB_ORIGINAL_CTID&ISID=M41B8E545-D7EF-48A6-9137-6DAA2D788A8C&SearchSource=55&CUI=&UM=5&UP=SP51B42980-8912-4CC8-82C2-312C3322970A&SSPV=
    Deleted [Startup_urls] : hxxp://search.certified-toolbar.com?si=82443&st=home&tid=24086&ver=6.4&ts=1403150400000.000000&tguid=82443-24086-1403192489572-452971558708CBA5A6040F12916D5214
    Deleted [Homepage] : hxxp://www.trovi.com/?gd=&ctid=CT3324775&octid=EB_ORIGINAL_CTID&ISID=M41B8E545-D7EF-48A6-9137-6DAA2D788A8C&SearchSource=55&CUI=&UM=5&UP=SP51B42980-8912-4CC8-82C2-312C3322970A&SSPV=
    Deleted [Extension] : aaipilfmheplbcghignccoiiebekkdhe
    Deleted [Extension] : booedmolknjekdopkepjjeckmjkdpfgl
    Deleted [Extension] : bopakagnckmlgajfccecajhnimjiiedh
    Deleted [Extension] : cbjibcbpmbcabnfnohhgjjmkgkimajko
    Deleted [Extension] : flpcjncodpafbgdpnkljologafpionhb
    Deleted [Extension] : ndibdjnfmopecpmkdieinmbadjfpblof

    *************************

    AdwCleaner[R0].txt - [28664 octets] - [19/06/2014 15:41:16]
    AdwCleaner[S0].txt - [24639 octets] - [19/06/2014 15:50:18]

    ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [24700 octets] ##########
     
  4. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    78,503
    First Name:
    Frank
    You jumped the gun and did a "scan" and "clean" instead of a "scan" and "report" before we had a chance to review the AdwCleaner log.

    That's okay though because it found and removed a LOT of threats in your computer.

    It appears though that not ALL threats were removed the first time, so you need to do another "scan" and "clean".

    After the computer restarts, submit the new log.

    --------------------------------------------------------
     
  5. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    78,503
    First Name:
    Frank
    After you complete post #4, do the following.

    ---------------------------------------------------------

    Download and save and then install the free version of SUPERAntiSpyware 5.7.0.1026

    Make sure to update its definition files during the install process.

    Make sure to uncheck and decline to install any extras, such as toolbars and homepages, it may offer.

    Make sure to uncheck and decline to use the "Pro" or "Trial" version, if it's offered.

    After it's installed and updated, select the "Quick Scan" option, then click "Scan your Computer".

    If infections or problems are found during the scan, a list will appear and the number of them will be highlighted in red.

    When the scan is finished and the scan summary window appears, click "Continue".

    Make sure that EVERYTHING in the list is selected, then click "Remove Threats".

    Click "OK - Finish".

    If you're prompted to restart to finish the removal process, do so.

    Start SUPERAntiSpyware again.

    Click "System Tools & Program Settings".

    Click "Scan Logs".

    Highlight the scan log entry, then click "View Selected Log".

    When the scan log appears in Notepad, return here and then copy-and-paste it here.

    ---------------------------------------------------------
     
  6. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    78,503
    First Name:
    Frank
    I'm getting ready to shut down for the rest of the day.

    I'll check back here in the morning to view the AdwCleaner and SUPERAntiSpyware logs. (y)

    I don't want to get too far ahead of you, so we'll continue in the morning.

    ----------------------------------------------------------
     
  7. Lynnstuff

    Lynnstuff Thread Starter

    Joined:
    Jul 19, 2007
    Messages:
    117
    Message after scanning: No unwanted or harmful software detected.
    Your computer is running normally RLynn
     
  8. Lynnstuff

    Lynnstuff Thread Starter

    Joined:
    Jul 19, 2007
    Messages:
    117
    SUPERAntiSpyware Scan Log
    http://www.superantispyware.com

    Generated 06/19/2014 at 06:14 PM

    Application Version : 5.7.1026

    Core Rules Database Version : 11318
    Trace Rules Database Version: 9130

    Scan type : Quick Scan
    Total Scan Time : 00:06:31

    Operating System Information
    Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601)
    UAC On - Limited User

    Memory items scanned : 781
    Memory threats detected : 0
    Registry items scanned : 61906
    Registry threats detected : 0
    File items scanned : 12306
    File threats detected : 43

    Adware.Tracking Cookie
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\E4AISSHY.txt [ /tribalfusion.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\ZV4PYPDZ.txt [ /liveperson.net ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\T1J7YL3Z.txt [ /at.atwola.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\4QKTCNQW.txt [ /doubleclick.net ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\DODCS2QH.txt [ /ads.yahoo.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\49CH1EA1.txt [ /ads.sambamediasl.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\SOZRERU5.txt [ /insightexpressai.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\UXDV1N28.txt [ /ru4.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\F2GPQR6M.txt [ /amazon-adsystem.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\DV4BDK9R.txt [ /fastclick.net ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\0GI6J0OU.txt [ /ads.ad-center.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\V2X0R4AS.txt [ /advertising.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\Low\3M2QIKFU.txt [ /atdmt.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\Low\HLPKVPNX.txt [ /dmtracker.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\Low\GN0F6NV3.txt [ /revsci.net ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\Low\0RXWM751.txt [ /casalemedia.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\Low\1T39W51L.txt [ /doubleclick.net ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\Low\M2PCGTD7.txt [ /ads.creative-serving.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\Low\72MXQXEZ.txt [ /ads.pubmatic.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\Low\P2NB0C1F.txt [ /kontera.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\Low\3TNQ5AJ5.txt [ /ads.yahoo.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\Low\NLQCHRHG.txt [ /ru4.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\Low\YDRDUTOC.txt [ /c1.adform.net ]
    .doubleclick.net [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .atdmt.com [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .atdmt.com [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .atdmt.com [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .statcounter.com [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .imrworldwide.com [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .levelwing.112.2o7.net [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .tollfinder.com [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .tollfinder.com [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .s.clickability.com [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .s.clickability.com [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .liveperson.net [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .liveperson.net [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .tracktrk.net [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .tracktrk.net [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    statse.webtrendslive.com [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .dmtracker.com [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .atlanticmedia.122.2o7.net [ C:\USERS\RLYNN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]

    Trojan.Agent/Gen-BDIJ
    C:\USERS\RLYNN\APPDATA\LOCAL\MICROSOFT\WINDOWS\TEMPORARY INTERNET FILES\CONTENT.IE5\9UML1HQY\DL[1].HTM
    C:\USERS\RLYNN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\9UML1HQY\DL[1].HTM
     
  9. DaveBurnett

    DaveBurnett Account Closed

    Joined:
    Nov 11, 2002
    Messages:
    12,970
    At least, and as soon as possible, I suggest you go into safe mode and delete the the folder 9UML1HQY. as above.
    Frank will advise you further.
     
  10. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    78,503
    First Name:
    Frank
    Regardless of whether the second AdwCleaner "Scan" and "Clean" found any threats or not, it would've displayed a log.

    Run a "Scan" and "Report", then submit that log here.

    -----------------------------------------------------

    Did you select and remove EVERYTHING that was found?

    -----------------------------------------------------
     
  11. Lynnstuff

    Lynnstuff Thread Starter

    Joined:
    Jul 19, 2007
    Messages:
    117
    # AdwCleaner v3.212 - Report created 20/06/2014 at 12:35:36
    # Updated 05/06/2014 by Xplode
    # Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
    # Username : RLynn - RLYNN-PC
    # Running from : C:\Users\RLynn\Downloads\AdwCleaner.exe
    # Option : Clean

    ***** [ Services ] *****

    [#] Service Deleted : BackupStack
    Service Deleted : CltMngSvc
    [#] Service Deleted : NewPlayerUpdaterService

    ***** [ Files / Folders ] *****

    Folder Deleted : C:\Program Files (x86)\MyPC Backup
    Folder Deleted : C:\Program Files (x86)\SearchProtect
    Folder Deleted : C:\Users\RLynn\AppData\Local\SearchProtect
    Folder Deleted : C:\Users\RLynn\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaipilfmheplbcghignccoiiebekkdhe
    Folder Deleted : C:\Users\RLynn\AppData\Local\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh

    ***** [ Shortcuts ] *****


    ***** [ Registry ] *****

    Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
    Key Deleted : HKCU\Software\Tuto4PC
    Key Deleted : HKCU\Software\Tutorials
    Key Deleted : HKLM\Software\SearchProtect
    Key Deleted : HKLM\Software\Tutorials
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
    Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
    Data Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll

    ***** [ Browsers ] *****

    -\\ Internet Explorer v11.0.9600.17126

    Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]

    -\\ Google Chrome v35.0.1916.153

    [ File : C:\Users\RLynn\AppData\Local\Google\Chrome\User Data\Default\preferences ]

    Deleted [Search Provider] : hxxp://search.conduit.com/Results.aspx?ctid=CT3325805&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=5&UP=SP5D01239B-0706-418E-842D-2776AAA34280&q={searchTerms}&SSPV=
    Deleted [Startup_urls] : hxxp://www.trovi.com/?gd=&ctid=CT3329910&octid=EB_ORIGINAL_CTID&ISID=MAD875FB2-60B0-478A-BAD7-DDF7D470EC5F&SearchSource=55&CUI=&UM=2&UP=SP5D01239B-0706-418E-842D-2776AAA34280&SSPV=
    Deleted [Homepage] : hxxp://www.trovi.com/?gd=&ctid=CT3329910&octid=EB_ORIGINAL_CTID&ISID=MAD875FB2-60B0-478A-BAD7-DDF7D470EC5F&SearchSource=55&CUI=&UM=2&UP=SP5D01239B-0706-418E-842D-2776AAA34280&SSPV=
    Deleted [Extension] : booedmolknjekdopkepjjeckmjkdpfgl
    Deleted [Extension] : flpcjncodpafbgdpnkljologafpionhb

    *************************

    AdwCleaner[R0].txt - [28664 octets] - [19/06/2014 15:41:16]
    AdwCleaner[R1].txt - [3201 octets] - [20/06/2014 12:34:54]
    AdwCleaner[S0].txt - [24869 octets] - [19/06/2014 15:50:18]
    AdwCleaner[S1].txt - [2791 octets] - [20/06/2014 12:35:36]

    ########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [2851 octets] ##########
     
  12. Lynnstuff

    Lynnstuff Thread Starter

    Joined:
    Jul 19, 2007
    Messages:
    117
    Also ran SUPERAntiSpyware (full scan). Here's the log:
    SUPERAntiSpyware Scan Log
    http://www.superantispyware.com

    Generated 06/20/2014 at 11:49 AM

    Application Version : 5.7.1026

    Core Rules Database Version : 11320
    Trace Rules Database Version: 9132

    Scan type : Complete Scan
    Total Scan Time : 01:54:37

    Operating System Information
    Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601)
    UAC On - Limited User

    Memory items scanned : 803
    Memory threats detected : 0
    Registry items scanned : 74540
    Registry threats detected : 0
    File items scanned : 93256
    File threats detected : 6

    Adware.Tracking Cookie
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\Low\WQZ2VMD7.txt [ /doubleclick.net ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\Low\A70SI8MK.txt [ /ads.yahoo.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\Low\GBCM1OM8.txt [ /serving-sys.com ]
    C:\Users\RLynn\AppData\Roaming\Microsoft\Windows\Cookies\Low\D81F3Y2G.txt [ /imrworldwide.com ]

    PUP.InstallCore/Variant
    C:\USERS\RLYNN\DOWNLOADS\IMAGEEDITORSETUP (1).EXE
    C:\USERS\RLYNN\DOWNLOADS\IMAGEEDITORSETUP (2).EXE
     
  13. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    78,503
    First Name:
    Frank
    AdwCleaner is still finding and deleting threats, so you need to do another "Scan" and "Clean" and then submit the new log.

    ---------------------------------------------------------

    Also do the following afterwards:

    Go here, then click the large blue "Download Now @ Author's site" button to download and save TFC.exe (Temp File Cleaner by OldTimer) to your desktop.

    After it's downloaded and saved, close all open windows.

    Double-click it to load its main window.

    Click the "Start" button.

    Once the temp file deletion process is finished, it'll advise you how many temp files in KB's or MB's or GB's were deleted.

    If you're prompted to restart the computer to complete the deletion process, do so.

    ---------------------------------------------------------
     
  14. Lynnstuff

    Lynnstuff Thread Starter

    Joined:
    Jul 19, 2007
    Messages:
    117
    # AdwCleaner v3.212 - Report created 20/06/2014 at 16:15:57
    # Updated 05/06/2014 by Xplode
    # Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
    # Username : RLynn - RLYNN-PC
    # Running from : C:\Users\RLynn\Downloads\AdwCleaner.exe
    # Option : Clean

    ***** [ Services ] *****


    ***** [ Files / Folders ] *****


    ***** [ Shortcuts ] *****


    ***** [ Registry ] *****

    Key Deleted : HKCU\Software\Tutorials
    Key Deleted : HKLM\Software\Tutorials

    ***** [ Browsers ] *****

    -\\ Internet Explorer v11.0.9600.17126


    -\\ Google Chrome v35.0.1916.153

    [ File : C:\Users\RLynn\AppData\Local\Google\Chrome\User Data\Default\preferences ]


    *************************

    AdwCleaner[R0].txt - [28664 octets] - [19/06/2014 15:41:16]
    AdwCleaner[R1].txt - [3201 octets] - [20/06/2014 12:34:54]
    AdwCleaner[R2].txt - [1123 octets] - [20/06/2014 16:07:19]
    AdwCleaner[S0].txt - [24869 octets] - [19/06/2014 15:50:18]
    AdwCleaner[S1].txt - [2935 octets] - [20/06/2014 12:35:36]
    AdwCleaner[S2].txt - [1006 octets] - [20/06/2014 16:15:57]

    ########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1066 octets] ##########
     
  15. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    78,503
    First Name:
    Frank
    The AdwCleaner log looks better now. (y)

    Have you run Temp File Cleaner by OldTimer?

    Is your computer still having its original issue?

    -----------------------------------------------------------
     
  16. Sponsor

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Similar Threads - Solved removing (free
  1. staffingpro
    Replies:
    4
    Views:
    399
  2. James321
    Replies:
    52
    Views:
    1,214
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/1128139

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice