Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

audio virus, redirected web searches, false warnings [Closed] [Solved]


  • This topic is locked This topic is locked

#16
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,912 posts
Hello :)

Thank you for the log, let's uninstall some malware related programs and run some further scans.

Step 1: Program Uninstalls

Please uninstall the programs in the list below from your computer.

  • SweetPacks Toolbar for IE
  • Internet Updater
  • Websteroids
  • MyPC Backup
  • PC Optimizer Pro
  • BuzzSearch 2013.11.07.232809
  • FilesFrog Update Checker

  • Open Programs and Features by clicking the Start button, click Control Panel, click Programs, and then click Programs and Features.
  • Select a program, and then click Uninstall. If you are prompted for an administrator password or confirmation, type the password or provide confirmation.
  • If one of the programs I've requested you uninstall is not on the list, don't worry, just move on to the next one.


Step 2: AdwCleaner


Download ADWcleaner by clicking here. Please save it to your Desktop


Posted Image

  • Double click (Vista and 7 Users)right click the adwcleaner.exe file and click Run as Adminstrator and accept the UAC prompt to run AdwCleaner
  • Close any open windows or browsers.
  • Pause your Anti-Virus program if it is running.
  • Once it starts, click on the Scan button.
  • Let the scan complete itself. This may take a few minutes.
  • Once the scan has finished, click the Clean button. When finished, it will ask to reboot. Please reboot.
  • When the machine has rebooted, a log will be produced. Please copy/paste that in your next reply. Here's how:
  • Click the Report button and the log will open. Copy and Paste the contents of the log file into your next reply.
This report is also saved at C:\AdwCleaner[R0].txt


Step 3: Junkware Removal Tool


Posted Image Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.


Things I need to see in your next post:

AdwCleaner Log

Junkware Removal Tool Log

How is the computer running? Are the audio ads still playing?

  • 0

Advertisements


#17
audreymaye

audreymaye

    Member

  • Topic Starter
  • Member
  • PipPip
  • 23 posts
Everything uninstalled except Sweetpacks toolbar for IE won't uninstall. I keep trying. When I click the uninstall button, a box pops up....but there is no text inside it...I can only see the boxes to check or uncheck and the buttons to click to tell it to proceed. Again, no text to explain. I've tried pushing the button that is usually the "go ahead and do it" button but it is unresponsive. The X button to close the box will not function either. I've tried restarting several times, but I get the same problem. Any advice?
  • 0

#18
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,912 posts
Ok, no worries :) Leave that for now and proceed with the rest of the instructions. :thumbsup:
  • 0

#19
audreymaye

audreymaye

    Member

  • Topic Starter
  • Member
  • PipPip
  • 23 posts
Okay here's the log from the ADWcleaner: Thanks

# AdwCleaner v3.016 - Report created 08/01/2014 at 14:53:38
# Updated 23/12/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Audrey - AUDREYS-PC
# Running from : C:\Users\Audrey\Desktop\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Program Files (x86)\Mozilla Firefox\browser\nsprotector.js
File Found : C:\Program Files (x86)\Mozilla Firefox\searchplugins\safeguard-secure-search.xml
File Found : C:\Users\Audrey\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0.localstorage
File Found : C:\Users\Audrey\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_app.mam.conduit.com_0.localstorage
File Found : C:\Users\Audrey\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_app.mam.conduit.com_0.localstorage-journal
File Found : C:\Users\Audrey\AppData\Roaming\Mozilla\Firefox\Profiles\7z6g35x0.default\invalidprefs.js
File Found : C:\Users\Audrey\AppData\Roaming\Mozilla\Firefox\Profiles\7z6g35x0.default\searchplugins\safeguard-secure-search.xml
File Found : C:\Users\Audrey\AppData\Roaming\Mozilla\Firefox\Profiles\7z6g35x0.default\user.js
File Found : C:\Users\Audrey\Desktop\iLivid.lnk
File Found : C:\Users\Audrey\Desktop\MyPC Backup.lnk
File Found : C:\windows\System32\ImhxxpComm.dll
Folder Found : C:\Users\Audrey\AppData\Local\Google\Chrome\User Data\Default\Extensions\banjjklfojcdbofbhbgiedekefohoaff
Folder Found : C:\Users\Audrey\AppData\Local\Google\Chrome\User Data\Default\Extensions\banjjklfojcdbofbhbgiedekefohoaff
Folder Found C:\Program Files (x86)\Conduit
Folder Found C:\Program Files (x86)\Searchprotect
Folder Found C:\ProgramData\AVG SafeGuard toolbar
Folder Found C:\ProgramData\BitGuard
Folder Found C:\ProgramData\Browser Manager
Folder Found C:\ProgramData\BrowserProtect
Folder Found C:\ProgramData\Conduit
Folder Found C:\ProgramData\Partner
Folder Found C:\Users\Audrey\AppData\Local\Conduit
Folder Found C:\Users\Audrey\AppData\Local\Minibar
Folder Found C:\Users\Audrey\AppData\Local\torch
Folder Found C:\Users\Audrey\AppData\Local\webplayer
Folder Found C:\Users\Audrey\AppData\LocalLow\Conduit
Folder Found C:\Users\Audrey\AppData\LocalLow\Minibar
Folder Found C:\Users\Audrey\AppData\LocalLow\PriceGong
Folder Found C:\Users\Audrey\AppData\LocalLow\SweetPacks
Folder Found C:\Users\Audrey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
Folder Found C:\Users\Audrey\AppData\Roaming\Mozilla\Firefox\Profiles\7z6g35x0.default\ilividmoviestoolbarha
Folder Found C:\Users\kids\AppData\LocalLow\AVG SafeGuard toolbar
Folder Found C:\Users\kids\AppData\Roaming\Mozilla\Firefox\Profiles\hzx3xpud.default\ilividmoviestoolbarha
Folder Found C:\windows\SysWOW64\ARFC
Folder Found C:\windows\SysWOW64\WNLT

***** [ Shortcuts ] *****

Shortcut Found : C:\Users\Audrey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat\Uninstall.lnk ( _?=C:\Users\Audrey\AppData\Local\WebPlayer\AppsHat )

***** [ Registry ] *****

Data Found : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command [(Default)] - C:\Program Files\Internet Explorer\iexplore.exe hxxp://aartemis.com/?type=sc&ts=1385923131&from=cor&uid=WDCXWD3200BPVT-24JJ5T0_WD-WX51C421130111301
Key Found : HKCU\Software\APN DTX
Key Found : HKCU\Software\AppDataLow\Software\Compete
Key Found : HKCU\Software\AppDataLow\Software\CompeteInc
Key Found : HKCU\Software\AppDataLow\Software\Conduit
Key Found : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Found : HKCU\Software\AppDataLow\Software\DynConIE
Key Found : HKCU\Software\AppDataLow\Software\PriceGong
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\AppDataLow\Software\SweetPacks
Key Found : HKCU\Software\AppDataLow\Software\SweetPacks
Key Found : HKCU\Software\AppDataLow\Toolbar
Key Found : HKCU\Software\BI
Key Found : HKCU\Software\BuzzSearch
Key Found : HKCU\Software\Classes\iLivid.torrent
Key Found : HKCU\Software\Compete
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Google\Chrome\Extensions\banjjklfojcdbofbhbgiedekefohoaff
Key Found : HKCU\Software\Google\Chrome\Extensions\banjjklfojcdbofbhbgiedekefohoaff
Key Found : HKCU\Software\ilivid
Key Found : HKCU\Software\IM
Key Found : HKCU\Software\ImInstaller
Key Found : HKCU\Software\InstallCore
Key Found : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\conduit.com
Key Found : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\conduit.com
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5E6C03E0-D368-4690-8168-9848D4C0F587}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\AppsHat Mobile Apps
Key Found : HKCU\Software\pc optimizer pro
Key Found : HKCU\Software\SearchProtect
Key Found : HKCU\Software\SocialBit
Key Found : HKCU\Software\torch
Key Found : HKCU\Software\Webplayer
Key Found : HKCU\Software\wecarereminder
Key Found : HKCU\Software\wnlt
Key Found : [x64] HKCU\Software\APN DTX
Key Found : [x64] HKCU\Software\BI
Key Found : [x64] HKCU\Software\BuzzSearch
Key Found : [x64] HKCU\Software\Compete
Key Found : [x64] HKCU\Software\Conduit
Key Found : [x64] HKCU\Software\ilivid
Key Found : [x64] HKCU\Software\IM
Key Found : [x64] HKCU\Software\ImInstaller
Key Found : [x64] HKCU\Software\InstallCore
Key Found : [x64] HKCU\Software\pc optimizer pro
Key Found : [x64] HKCU\Software\SearchProtect
Key Found : [x64] HKCU\Software\SocialBit
Key Found : [x64] HKCU\Software\torch
Key Found : [x64] HKCU\Software\Webplayer
Key Found : [x64] HKCU\Software\wecarereminder
Key Found : [x64] HKCU\Software\wnlt
Key Found : HKLM\Software\aartemisSoftware
Key Found : HKLM\Software\BuzzSearch
Key Found : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Found : HKLM\SOFTWARE\Classes\AppID\{A57F7191-1E7F-4852-BAAF-F80A43E2687A}
Key Found : HKLM\SOFTWARE\Classes\AppID\{DBBBC528-9C8C-4051-9187-ED6F01A457C9}
Key Found : HKLM\SOFTWARE\Classes\AppID\{DD7C44CC-0F60-4FD9-A38F-5CF30D698AC2}
Key Found : HKLM\SOFTWARE\Classes\AppID\CptUrlPassthru.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\dca-api.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\dca-bho.DLL
Key Found : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{058F0E48-61CA-4964-9FBA-1978A1BB060D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{18F33C35-8EF2-40D7-8BA4-932B0121B472}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5E6C03E0-D368-4690-8168-9848D4C0F587}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{60260024-AA48-4A2F-84DA-2C2DCB24AAD0}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{60EACC1A-33FA-443D-9846-17B28E2C9BDB}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{D824F0DE-3D60-4F57-9EB1-66033ECD8ABB}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{F63AAEDC-3602-49EF-AA45-262380A98980}
Key Found : HKLM\SOFTWARE\Classes\CptUrlPassthru.hxxpMonitor
Key Found : HKLM\SOFTWARE\Classes\CptUrlPassthru.hxxpMonitor.1
Key Found : HKLM\SOFTWARE\Classes\dcabho.Dca
Key Found : HKLM\SOFTWARE\Classes\dcabho.Dca.1
Key Found : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : HKLM\SOFTWARE\Classes\Interface\{06E50566-0AB7-431C-841D-62794727DAF9}
Key Found : HKLM\SOFTWARE\Classes\Interface\{15527BF5-9729-49DC-889C-9F956983154C}
Key Found : HKLM\SOFTWARE\Classes\Interface\{26E7211D-0650-43CF-8498-4C81E83AEAAA}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{DD05B915-F77B-474A-9D42-9FEEAF5475C4}
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT3310511
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{7BAB653D-88FB-4F60-AFC2-8E6FD59FAFF3}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{A57F7191-1E7F-4852-BAAF-F80A43E2687A}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{C8758BC4-4581-48C7-BA38-C1A650477AE9}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{F13D3582-1359-4F8F-9A48-EF3AE9F5701C}
Key Found : HKLM\Software\CompeteInc
Key Found : HKLM\Software\Conduit
Key Found : HKLM\Software\DataMngr
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\banjjklfojcdbofbhbgiedekefohoaff
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\banjjklfojcdbofbhbgiedekefohoaff
Key Found : HKLM\Software\InstallIQ
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2B602967-9675-4EF6-8CFD-69CFA0C1ECC1}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D86A75B-CB6B-4764-885D-CA6336F04BA2}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{49E59CF4-0186-44D6-ABA8-0CCAE8C3F844}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5E6C03E0-D368-4690-8168-9848D4C0F587}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\wnlt
Key Found : HKLM\Software\Minibar
Key Found : HKLM\Software\SearchProtect
Key Found : HKLM\Software\SweetPacks
Key Found : HKLM\Software\SweetPacks
Key Found : HKLM\Software\torch
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{F63AAEDC-3602-49EF-AA45-262380A98980}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{06E50566-0AB7-431C-841D-62794727DAF9}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{15527BF5-9729-49DC-889C-9F956983154C}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{26E7211D-0650-43CF-8498-4C81E83AEAAA}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{DD05B915-F77B-474A-9D42-9FEEAF5475C4}
Key Found : [x64] HKLM\SOFTWARE\wnlt
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Updater]

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16428


-\\ Mozilla Firefox v25.0.1 (en-US)

[ File : C:\Users\Audrey\AppData\Roaming\Mozilla\Firefox\Profiles\7z6g35x0.default\prefs.js ]

Line Found : user_pref("CT3310511.FF19Solved", "true");
Line Found : user_pref("CT3310511.UserID", "UN28704612281010251");
Line Found : user_pref("CT3310511.browser.search.defaultthis.engineName", "true");
Line Found : user_pref("CT3310511.fullUserID", "UN28704612281010251.IN.20130927200919");
Line Found : user_pref("CT3310511.installDate", "27/09/2013 20:09:31");
Line Found : user_pref("CT3310511.installSessionId", "{BEB0EA03-6926-4E19-8936-95BB041D129B}");
Line Found : user_pref("CT3310511.installSp", "TRUE");
Line Found : user_pref("CT3310511.installerVersion", "1.7.1.4");
Line Found : user_pref("CT3310511.keyword", "true");
Line Found : user_pref("CT3310511.originalHomepage", "hxxp://mysearch.avg.com/?cid={92A9C95D-3631-4FA4-8991-57C1893B79C9}&mid=6dc6022cc4e447d3b5880d47e70fe101-2b83dadd5558d54591bc796b236692a141a74811&lang=en&ds=dn[...]
Line Found : user_pref("CT3310511.originalSearchAddressUrl", "");
Line Found : user_pref("CT3310511.originalSearchEngine", "AVG Secure Search");
Line Found : user_pref("CT3310511.originalSearchEngineName", "AVG Secure Search");
Line Found : user_pref("CT3310511.searchRevert", "false");
Line Found : user_pref("CT3310511.searchUserMode", "2");
Line Found : user_pref("CT3310511.smartbar.homepage", "true");
Line Found : user_pref("CT3310511.versionFromInstaller", "10.20.1.8");
Line Found : user_pref("CT3310511.xpeMode", "0");
Line Found : user_pref("Smartbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT3310511&CUI=UN28704612281010251&UM=2&SearchSource=13&UP=SP13D3C4DA-2D88-4B4E-BD93-8F548048EC44");
Line Found : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "");

[ File : C:\Users\kids\AppData\Roaming\Mozilla\Firefox\Profiles\hzx3xpud.default\prefs.js ]


-\\ Google Chrome v31.0.1650.57

[ File : C:\Users\Audrey\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [13354 octets] - [08/01/2014 14:53:38]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [13415 octets] ##########
  • 0

#20
audreymaye

audreymaye

    Member

  • Topic Starter
  • Member
  • PipPip
  • 23 posts
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.0 (01.07.2014:1)
OS: Windows 7 Home Premium x64
Ran by Audrey on Thu 01/09/2014 at 11:49:30.53
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services

Successfully stopped: [Service] consumerinput_updatem
Successfully deleted: [Service] consumerinput_updatem



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\dynconie.dynconieobject
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\dynconie.dynconieobject.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{2830488C-079B-45C2-88B6-AFE4EAA2DF85}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{781CA792-9B6E-400B-B36F-15C097D2CA54}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\compete
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\sweetim



~~~ Files

Successfully deleted: [File] "C:\Users\Audrey\appdata\locallow\SkwConfig.bin"



~~~ Folders

Successfully deleted: [Folder] "C:\Users\Audrey\appdata\local\appshat mobile apps"
Successfully deleted: [Folder] "C:\Users\Audrey\appdata\local\consumer input"
Successfully deleted: [Folder] "C:\Users\Audrey\appdata\local\cre"
Failed to delete: [Folder] "C:\Program Files (x86)\consumer input"
Successfully deleted: [Folder] "C:\Program Files (x86)\wiseconvert"



~~~ FireFox

Emptied folder: C:\Users\Audrey\AppData\Roaming\mozilla\firefox\profiles\7z6g35x0.default\minidumps [15 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Thu 01/09/2014 at 12:16:11.96
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  • 0

#21
audreymaye

audreymaye

    Member

  • Topic Starter
  • Member
  • PipPip
  • 23 posts
My computer is basically running the same. Still hearing the audio ads and having trouble with the system freezing and running slow. Thanks for all your help
  • 0

#22
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,912 posts

My computer is basically running the same. Still hearing the audio ads and having trouble with the system freezing and running slow. Thanks for all your help


I noticed in the Adwcleaner log you only scanned. Please run the scan again, and when it finishes scanning, press the Clean button. once it has cleaned out what it has found, please post the log, and let me know if there's any change in your system performance.
  • 0

#23
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,912 posts
Hello :)

It's been a couple days since I've heard from you. Have applied the instructions for removing the items found in AdwCleaner? Please let me know, and thank you. :thumbsup:
  • 0

#24
CompCav

CompCav

    Member 5k

  • Expert
  • 12,454 posts
Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
  • 0

#25
CompCav

CompCav

    Member 5k

  • Expert
  • 12,454 posts
User returned.
  • 0

Advertisements


#26
audreymaye

audreymaye

    Member

  • Topic Starter
  • Member
  • PipPip
  • 23 posts
Thank you for re-opening. Here's the JRT log after the cleaning:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.0 (01.07.2014:1)
OS: Windows 7 Home Premium x64
Ran by Audrey on Thu 01/09/2014 at 11:49:30.53
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services

Successfully stopped: [Service] consumerinput_updatem
Successfully deleted: [Service] consumerinput_updatem



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\dynconie.dynconieobject
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\dynconie.dynconieobject.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{2830488C-079B-45C2-88B6-AFE4EAA2DF85}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{781CA792-9B6E-400B-B36F-15C097D2CA54}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\compete
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\sweetim



~~~ Files

Successfully deleted: [File] "C:\Users\Audrey\appdata\locallow\SkwConfig.bin"



~~~ Folders

Successfully deleted: [Folder] "C:\Users\Audrey\appdata\local\appshat mobile apps"
Successfully deleted: [Folder] "C:\Users\Audrey\appdata\local\consumer input"
Successfully deleted: [Folder] "C:\Users\Audrey\appdata\local\cre"
Failed to delete: [Folder] "C:\Program Files (x86)\consumer input"
Successfully deleted: [Folder] "C:\Program Files (x86)\wiseconvert"



~~~ FireFox

Emptied folder: C:\Users\Audrey\AppData\Roaming\mozilla\firefox\profiles\7z6g35x0.default\minidumps [15 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Thu 01/09/2014 at 12:16:11.96
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  • 0

#27
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,912 posts
You're very welcome. :)

That looks good :thumbsup: Go ahead and run the scan with AdwCleaner and clean out whatever it finds. Also, when you post the AdwCleaner log, how is the computer doing now? Are you still getting the audio ads?
  • 0

#28
audreymaye

audreymaye

    Member

  • Topic Starter
  • Member
  • PipPip
  • 23 posts
That is the log I got after running the scan, clicking on "clean" and then restarting....Am I doing something wrong?
  • 0

#29
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,912 posts

That is the log I got after running the scan, clicking on "clean" and then restarting....Am I doing something wrong?



Hi :)

The tool I need you to run is AdwCleaner, not Junkware Removal tool. That is a log from Junkware Removal tool. Click here to go back to Post #16 and follow the instructions for AdwCleaner in Step #2. :) :thumbsup:
  • 0

#30
audreymaye

audreymaye

    Member

  • Topic Starter
  • Member
  • PipPip
  • 23 posts
Okay, here is the log. When it finished scanning, the message it gave said "pending...unclick items you don't wish to remove". I waited another hour, but nothing changed. There were no items listed to click or unclick, so I went ahead and chose to clean. It rebooted and gave me the log, so here it is.

# AdwCleaner v3.017 - Report created 13/01/2014 at 18:16:46
# Updated 12/01/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Audrey - AUDREYS-PC
# Running from : C:\Users\Audrey\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\RHelpers

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\AppDataLow\Software\Compete
Key Deleted : HKLM\Software\CompeteInc

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16428


-\\ Mozilla Firefox v25.0.1 (en-US)

[ File : C:\Users\Audrey\AppData\Roaming\Mozilla\Firefox\Profiles\7z6g35x0.default\prefs.js ]


[ File : C:\Users\kids\AppData\Roaming\Mozilla\Firefox\Profiles\hzx3xpud.default\prefs.js ]


-\\ Google Chrome v31.0.1650.57

[ File : C:\Users\Audrey\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [13596 octets] - [08/01/2014 14:53:38]
AdwCleaner[R1].txt - [1161 octets] - [09/01/2014 16:52:07]
AdwCleaner[R2].txt - [1375 octets] - [13/01/2014 17:41:31]
AdwCleaner[S0].txt - [12878 octets] - [08/01/2014 14:58:05]
AdwCleaner[S1].txt - [1225 octets] - [09/01/2014 16:54:39]
AdwCleaner[S2].txt - [1304 octets] - [13/01/2014 18:16:46]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1364 octets] ##########
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP