poor performance, locks up randomly restarts [Solved]
#1
Posted 13 December 2014 - 07:17 PM
#2
Posted 14 December 2014 - 12:19 AM
Welcome to Geeks to Go--the friendliest online community dedicated to the sole goal of helping people from all around the world! I am Pyxis and I will be assisting you. As such, I would like to stress the following reminders:
- It is important that you do not install anything unless asked while the process is ongoing. Doing so may hinder or even complicate the cleaning of your system. You will get the chance to install things as you would like after the process has been completed.
- Ensure you take extra caution to precisely follow my instructions. Please only use the tools I have asked you to. The instructions for your computer are unique and should therefore only apply to your system.
- Since the cleaning process is quite delicate, your timely response is crucial. Topics are marked inactive and thus closed within 3 full days of no activity. If you deem I have overlooked your thread--which is in a matter of more than 48 hours--please send me a PM and I will get back to you shortly.
- Step 1
Run your copy of OTL by double-clicking it.- Copy and paste the following into the Custom Scans/Fixes box:
:OTL SRV:64bit: - File not found [Auto | Stopped] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe /McCoreSvc -- (McAfee SiteAdvisor Service) SRV - [2012/02/10 11:28:06 | 000,240,408 | ---- | M] (Microsoft Corporation.) [On_Demand | Running] -- C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\SeaPort.EXE -- (BBUpdate) SRV - [2012/02/10 11:28:06 | 000,193,816 | ---- | M] (Microsoft Corporation.) [Auto | Stopped] -- C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BBSvc.EXE -- (BBSvc) SRV - [2011/06/17 12:33:04 | 000,237,008 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\McAfee Security Scan\3.0.207\McCHSvc.exe -- (McComponentHostService) IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer...54z1i5v47721306 IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer...54z1i5v47721306 IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990} IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer...54z1i5v47721306 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer...54z1i5v47721306 IE - HKLM\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC IE - HKLM\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.co...ng}&rlz=1I7ACAW IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer...54z1i5v47721306 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.ask.com/w...8M^YYYYYY^YY^US IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://homepage.acer...54z1i5v47721306 IE - HKCU\..\URLSearchHook: {B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD} - C:\Program Files (x86)\searchresultstb\searchresultsDx.dll () IE - HKCU\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64} IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE8SRC IE - HKCU\..\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}: "URL" = http://www.ask.com/w...q={searchTerms} IE - HKCU\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.co...AW_enUS411US411 IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7 IE - HKCU\..\SearchScopes\{B0F6A9E6-A20E-2078-1826-6C700C6E8C1D}: "URL" = http://www.bing.com/...045&form=ZGAIDF FF - prefs.js..browser.search.selectedEngine: "Ask.com" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://www.ask.com/w...M^YYYYYY^YY^US" FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.3 FF - prefs.js..extensions.enabledItems: wecarereminder@bryan:4.0.11.11 FF - prefs.js..extensions.enabledItems: {B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}:1.0 FF - prefs.js..keyword.URL: "http://www.ask.com/w...YYYYY^YY^US&q=" FF - user.js - File not found FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files (x86)\McAfee\SiteAdvisor [2011/03/01 17:09:25 | 000,000,000 | ---D | M] [2012/08/01 14:30:38 | 000,000,000 | ---D | M] (Search-Results Toolbar) -- C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD} [2012/06/19 15:18:28 | 000,000,000 | ---D | M] (SaveTheChildren App By We-Care.com) -- C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\wecarereminder@bryan [2011/07/04 11:48:16 | 000,001,919 | ---- | M] () -- C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\searchplugins\bing-zugo.xml [2011/03/01 17:09:25 | 000,000,000 | ---D | M] (McAfee SiteAdvisor) -- C:\PROGRAM FILES (X86)\MCAFEE\SITEADVISOR [2011/07/04 11:48:37 | 000,002,280 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\search.xml [2012/08/01 14:31:09 | 000,000,686 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\searchresultstb.xml C:\Users\JPR\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho C:\Users\JPR\AppData\Local\Google\Chrome\User Data\Default\Extensions\ippkomaaonokjnfjoikaemidanojkfmm O2:64bit: - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) O2 - BHO: (Bing Bar Helper) - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll (Microsoft Corporation.) O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found. O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) O2 - BHO: (Search-Results Toolbar) - {B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD} - C:\Program Files (x86)\searchresultstb\searchresultsDx.dll () O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) O3:64bit: - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) O3 - HKLM\..\Toolbar: (Search-Results Toolbar) - {B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD} - C:\Program Files (x86)\searchresultstb\searchresultsDx.dll () O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) O3 - HKLM\..\Toolbar: (Bing Bar) - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll (Microsoft Corporation.) O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) O3 - HKCU\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) O4 - HKLM..\Run: [] File not found O4 - HKCU..\Run: [ooVoo.exe] C:\Program Files (x86)\ooVoo\oovoo.exe (ooVoo LLC) O18:64bit: - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) O18:64bit: - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) [2010/12/26 15:52:56 | 000,000,048 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat :Commands [emptytemp]
- Click Run Fix.
- OTL will reboot your system. Allow it by clicking OK.
- After the reboot, a Notepad window will appear, named MMDDYYYY_HHMMSS.log. Alternatively, you can find that log at C:\_OTL\MovedFiles\MMDDYYYY_HHMMSS.log.
- Copy (CTRL + A and CTRL + C) and paste (CTRL + V) the content of the log in your next reply.
- Copy and paste the following into the Custom Scans/Fixes box:
- Step 2
Download 'AdwCleaner by Xplode' and save it to your desktop.- Simply double-click the program icon to run it. It will ask for administrator privileges.
- Read the Terms of Use and click I Agree.
- Click Scan and choose Clean after.
- Wait for it to finish. It won't take long.
- Click OK for the next prompts. Your system will automatically reboot.
- A log will automatically pop-up after rebooting. Alternatively, you can find it at C:\AdwCleaner\AdwCleaner[S*].txt.
- Copy (CTRL + A and CTRL + C) and paste (CTRL + V) the content of the log in your next reply.
- Step 3
Download 'Junkware Removal Tool by thisisu' and save it to your desktop.- Ensure all programs and windows are closed before proceeding.
- Simply double-click the program icon to run it. It will ask for administrator privileges.
- A black window will appear. Press any key to continue.
- Wait for it to finish. It won't take long.
- A log will automatically pop-up once done. Alternatively, you can find JRT.txt at your desktop.
- Copy (CTRL + A and CTRL + C) and paste (CTRL + V) the content of the log in your next reply.
- Logs to Post
In summary of the above, I will need you to post the following log(s):- MMDDYYYY_HHMMSS.log (OTL)
- AdwCleaner[S*].txt (AdwCleaner)
- JRT.txt (Junkware Removal Tool)
#3
Posted 14 December 2014 - 12:26 PM
thanks for the fast help response pyxis very appreciated
All processes killed
========== OTL ==========
Service McAfee SiteAdvisor Service stopped successfully!
Service McAfee SiteAdvisor Service deleted successfully!
File C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe /McCoreSvc not found.
Service BBUpdate stopped successfully!
Service BBUpdate deleted successfully!
C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\SeaPort.EXE moved successfully.
Service BBSvc stopped successfully!
Service BBSvc deleted successfully!
C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BBSvc.EXE moved successfully.
Service McComponentHostService stopped successfully!
Service McComponentHostService deleted successfully!
C:\Program Files (x86)\McAfee Security Scan\3.0.207\McCHSvc.exe moved successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page Restore| /E : value set successfully!
Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\ deleted successfully.
C:\Program Files (x86)\searchresultstb\searchresultsDx.dll moved successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B0F6A9E6-A20E-2078-1826-6C700C6E8C1D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B0F6A9E6-A20E-2078-1826-6C700C6E8C1D}\ not found.
Prefs.js: "Ask.com" removed from browser.search.selectedEngine
Prefs.js: true removed from browser.search.useDBForOrder
Prefs.js: "http://www.ask.com/w...M^YYYYYY^YY^US" removed from browser.startup.homepage
Prefs.js: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.3 removed from extensions.enabledItems
Prefs.js: wecarereminder@bryan:4.0.11.11 removed from extensions.enabledItems
Prefs.js: {B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}:1.0 removed from extensions.enabledItems
Prefs.js: "http://www.ask.com/w.....YYYYY^YY^US=" removed from keyword.URL
Registry value HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B7082FAA-CB62-4872-9106-E42DD88EDE45}\ not found.
C:\Program Files (x86)\McAfee\SiteAdvisor\x64 folder moved successfully.
C:\Program Files (x86)\McAfee\SiteAdvisor\Scripts folder moved successfully.
C:\Program Files (x86)\McAfee\SiteAdvisor\Download folder moved successfully.
C:\Program Files (x86)\McAfee\SiteAdvisor\Components folder moved successfully.
C:\Program Files (x86)\McAfee\SiteAdvisor folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\components folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\skin\options folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\skin\lib\weatherbutton\panels\images folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\skin\lib\weatherbutton\panels folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\skin\lib\weatherbutton\icons folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\skin\lib\weatherbutton folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\skin\lib\uwa folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\skin\lib\panels\images folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\skin\lib\panels\default\scripts folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\skin\lib\panels\default\images folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\skin\lib\panels\default\css folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\skin\lib\panels\default folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\skin\lib\panels\css folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\skin\lib\panels folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\skin\lib folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\skin folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\locale\toolbar folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\locale\lib folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\locale folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\data\search folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\data folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\scripts folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\images folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.YouTube_v2\skin\css folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.YouTube_v2\skin folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.YouTube_v2\js folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.YouTube_v2\images folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.YouTube_v2\css folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.YouTube_v2 folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.WebTV\skin\scripts folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.WebTV\skin\images folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.WebTV\skin\css folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.WebTV\skin folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.WebTV\js folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.WebTV\images folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.WebTV\css folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.WebTV folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.Shopzilla\skin\scripts folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.Shopzilla\skin\images folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.Shopzilla\skin\css folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.Shopzilla\skin folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.Shopzilla\js folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.Shopzilla\images folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.Shopzilla\css folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.Shopzilla folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.RadioBeta folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\scripts folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\images folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin\css folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.MyStartFacebook\skin folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.MyStartFacebook\js folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.MyStartFacebook\images folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.MyStartFacebook\css folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets\net.vmn.www.MyStartFacebook folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\widgets folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\modules folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content\lib folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome\content folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\chrome folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD} folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\wecarereminder@bryan\META-INF folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\wecarereminder@bryan\defaults\preferences folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\wecarereminder@bryan\defaults folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\wecarereminder@bryan\components folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\wecarereminder@bryan\chrome folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\extensions\wecarereminder@bryan folder moved successfully.
C:\Users\JPR\AppData\Roaming\Mozilla\Firefox\Profiles\257xl4w6.default\searchplugins\bing-zugo.xml moved successfully.
Folder C:\PROGRAM FILES (X86)\MCAFEE\SITEADVISOR\ not found.
C:\Program Files (x86)\Mozilla Firefox\searchplugins\search.xml moved successfully.
C:\Program Files (x86)\Mozilla Firefox\searchplugins\searchresultstb.xml moved successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}\ deleted successfully.
File c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1dad3af3-ef2f-4f64-ac4b-11789189fcb6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1dad3af3-ef2f-4f64-ac4b-11789189fcb6}\ deleted successfully.
C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}\ deleted successfully.
File c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\ not found.
File C:\Program Files (x86)\searchresultstb\searchresultsDx.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll moved successfully.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064}\ deleted successfully.
File c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll not found.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064}\ deleted successfully.
File c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}\ not found.
File C:\Program Files (x86)\searchresultstb\searchresultsDx.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
File C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{eec0f710-38b5-4aba-99bf-ec87564a4e13} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{eec0f710-38b5-4aba-99bf-ec87564a4e13}\ deleted successfully.
File C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
64bit-Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ deleted successfully.
C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll moved successfully.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11d4-9B18-009027A5CD4F}\ not found.
File C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
File C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\ooVoo.exe deleted successfully.
C:\Program Files (x86)\ooVoo\ooVoo.exe moved successfully.
File c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\dssrequest\ deleted successfully.
File c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll not found.
File c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\dssrequest\ not found.
File c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll not found.
File c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\sacore\ deleted successfully.
File c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll not found.
File c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\sacore\ not found.
File c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll not found.
C:\ProgramData\ezsidmv.dat moved successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56504 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Desktop
User: Guest
->Temp folder emptied: 2554637 bytes
->Temporary Internet Files folder emptied: 68054699 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 41692194 bytes
->Google Chrome cache emptied: 373056844 bytes
->Flash cache emptied: 58149 bytes
User: JPR
->Temp folder emptied: 43597064 bytes
->Temporary Internet Files folder emptied: 90137020 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 48168631 bytes
->Google Chrome cache emptied: 76664616 bytes
->Flash cache emptied: 58838 bytes
User: maddie
->Temp folder emptied: 909098516 bytes
->Temporary Internet Files folder emptied: 369740342 bytes
->Java cache emptied: 802674 bytes
->FireFox cache emptied: 427804365 bytes
->Google Chrome cache emptied: 292651121 bytes
->Flash cache emptied: 169815 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 771424 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 262580268 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50467 bytes
RecycleBin emptied: 1947 bytes
Total Files Cleaned = 2,868.00 mb
OTL by OldTimer - Version 3.2.69.0 log created on 12142014_121352
Files\Folders moved on Reboot...
C:\Users\JPR\AppData\Local\Temp\Low\JavaDeployReg.log moved successfully.
C:\Users\JPR\AppData\Local\Temp\Low\~DF054ED33CCB2866A5.TMP moved successfully.
C:\Users\JPR\AppData\Local\Temp\4723.tmp moved successfully.
C:\Users\JPR\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File\Folder C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Y4PPZR6V\AdServerServlet[1].htm not found!
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Y4PPZR6V\cJZKeOuBrn4kERxqtaUH3T8E0i7KZn-EPnyo3HZu7kw[1].woff moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Y4PPZR6V\criteo_iframe[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Y4PPZR6V\k3k702ZOKiLJc3WVjuplzHhCUOGz7vYGh680lGh-uXM[1].woff moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Y4PPZR6V\mail[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Y4PPZR6V\pf[1].htm moved successfully.
File\Folder C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Y4PPZR6V\ping[1].htm not found!
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Y4PPZR6V\PRmiXeptR36kaC0GEAetxjqR_3kx9_hJXbbyU8S6IN0[1].woff moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Y4PPZR6V\xjAJXh38I15wypJXxuGMBobN6UDyHWBl620a-IRfuBk[1].woff moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\Y4PPZR6V\zrt_lookup[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WCAKGNAD\20269[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WCAKGNAD\AdDisplayTrackerServlet[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WCAKGNAD\ads[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WCAKGNAD\afs[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WCAKGNAD\comScore[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WCAKGNAD\cs[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WCAKGNAD\inbox_left[2].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WCAKGNAD\index[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WCAKGNAD\push[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WCAKGNAD\push[2].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WCAKGNAD\push[3].htm moved successfully.
File\Folder C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\WCAKGNAD\um[1].htm not found!
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\GXMJODK4\411f1e96-3bde-4d85-b17e-63749e5f0695[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\GXMJODK4\AdDisplayTrackerServlet[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\GXMJODK4\blankHistory[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\GXMJODK4\container[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\GXMJODK4\container[2].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\GXMJODK4\i[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\GXMJODK4\showad[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\E2NJFQVY\ai[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\E2NJFQVY\handshake[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\E2NJFQVY\imgad[1].gif moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\E2NJFQVY\v1[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\E2NJFQVY\web[1].htm moved successfully.
C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\MSIMGSIZ.DAT moved successfully.
File move failed. C:\Windows\temp\dsiwmis.log scheduled to be moved on reboot.
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
# AdwCleaner v4.105 - Report created 14/12/2014 at 12:34:46
# Updated 08/12/2014 by Xplode
# Database : 2014-12-13.4 [Live]
# Operating System : Windows 7 Home Premium (64 bits)
# Username : JPR - MADDIE-PC
# Running from : C:\Users\JPR\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JLH7NTE7\AdwCleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\Partner
Folder Deleted : C:\ProgramData\WeCareReminder
Folder Deleted : C:\Program Files (x86)\Ask.com
Folder Deleted : C:\Program Files (x86)\GamesBar
Folder Deleted : C:\Program Files (x86)\searchresultstb
Folder Deleted : C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}
Folder Deleted : C:\Users\Guest\AppData\LocalLow\AskToolbar
Folder Deleted : C:\Users\JPR\AppData\LocalLow\AskToolbar
Folder Deleted : C:\Users\JPR\AppData\LocalLow\searchresultstb
Folder Deleted : C:\Users\JPR\AppData\Roaming\Ask.com
Folder Deleted : C:\Users\maddie\AppData\LocalLow\AskToolbar
Folder Deleted : C:\Users\maddie\AppData\Roaming\Mozilla\Firefox\Profiles\s924gzls.default\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
Folder Deleted : C:\Users\maddie\AppData\Roaming\Mozilla\Firefox\Profiles\s924gzls.default\Extensions\[email protected]
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\ippkomaaonokjnfjoikaemidanojkfmm
Folder Deleted : C:\Users\JPR\AppData\Local\Google\Chrome\User Data\Default\Extensions\ippkomaaonokjnfjoikaemidanojkfmm
File Deleted : C:\Users\maddie\AppData\Roaming\Mozilla\Firefox\Profiles\s924gzls.default\searchplugins\Askcom.xml
File Deleted : C:\Users\maddie\AppData\Roaming\Mozilla\Firefox\Profiles\s924gzls.default\user.js
File Deleted : C:\Users\maddie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage
File Deleted : C:\Users\maddie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage-journal
File Deleted : C:\Users\maddie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.saveur.com_0.localstorage
File Deleted : C:\Users\maddie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.saveur.com_0.localstorage-journal
File Deleted : C:\Users\maddie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.ask.com_0.localstorage
File Deleted : C:\Users\maddie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.ask.com_0.localstorage-journal
File Deleted : C:\Users\maddie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_services.hearstmags.com_0.localstorage-journal
File Deleted : C:\Users\maddie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_services.hearstmags.com_0.localstorage
***** [ Scheduled Tasks ] *****
Task Deleted : Scheduled Update for Ask Toolbar
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ippkomaaonokjnfjoikaemidanojkfmm
Key Deleted : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\IEHelperv2.5.0.DLL
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4FBBF769-ECEB-420A-B536-133B1D505C36}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C3721E85-F0AC-4B7E-AE4C-3E738011DC9D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F773BB94-6C19-4643-A570-0E429103D1C3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C3721E85-F0AC-4B7E-AE4C-3E738011DC9D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C3721E85-F0AC-4B7E-AE4C-3E738011DC9D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC5B6CDA-8F90-4740-9A8C-28AC5D3C73FE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
Key Deleted : HKCU\Software\searchresultstb
Key Deleted : HKCU\Software\Somoto Toolbar
Key Deleted : HKCU\Software\wecarereminder
Key Deleted : HKCU\Software\Zugo
Key Deleted : HKCU\Software\AppDataLow\Software\AskToolbar
Key Deleted : HKCU\Software\AppDataLow\Software\searchresultstb
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CD95D125-2992-4858-B3EF-5F6FB52FBAD6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\searchresultstb
Key Deleted : HKLM\SOFTWARE\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\SOFTWARE\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
***** [ Browsers ] *****
-\\ Internet Explorer v9.0.8112.16526
-\\ Mozilla Firefox v3.6.13 (en-US)
[257xl4w6.default\prefs.js] - Line Deleted : user_pref("browser.startup.homepage", "hxxp://www.ask.com/web?l=dis&o=41648007&gct=hp&apn_dtid=^YYYYYY^YY^US&apn_ptnrs=^8M&apn_uid=5230400222244252&p2=^8M^YYYYYY^YY^US");
[257xl4w6.default\prefs.js] - Line Deleted : user_pref("keyword.URL", "hxxp://www.ask.com/web?l=dis&o=41648007&gct=kwd&qsrc=2869&apn_dtid=^YYYYYY^YY^US&apn_ptnrs=^8M&apn_uid=5230400222244252&p2=^8M^YYYYYY^YY^US&q=");
[s924gzls.default\prefs.js] - Line Deleted : user_pref("browser.search.defaultengine", "Ask.com");
[s924gzls.default\prefs.js] - Line Deleted : user_pref("browser.search.order.1", "Ask.com");
[s924gzls.default\prefs.js] - Line Deleted : user_pref("extensions.asktb.cbid", "5I");
[s924gzls.default\prefs.js] - Line Deleted : user_pref("extensions.asktb.crumb", "2010.12.26+12.44.46-toolbar002iad-US-UGVubnNhdWtlbixOSixVbml0ZWQgU3RhdGVz");
[s924gzls.default\prefs.js] - Line Deleted : user_pref("extensions.asktb.default-channel-url-mask", "hxxp://www.ask.com/web?q={query}&o={o}&l={l}&qsrc={qsrc}&gct=bar");
[s924gzls.default\prefs.js] - Line Deleted : user_pref("extensions.asktb.dtid", "YYYYYYYYUS");
[s924gzls.default\prefs.js] - Line Deleted : user_pref("extensions.asktb.fresh-install", false);
[s924gzls.default\prefs.js] - Line Deleted : user_pref("extensions.asktb.l", "dis");
[s924gzls.default\prefs.js] - Line Deleted : user_pref("extensions.asktb.last-config-req", "1406960361927");
[s924gzls.default\prefs.js] - Line Deleted : user_pref("extensions.asktb.locale", "en_US");
[s924gzls.default\prefs.js] - Line Deleted : user_pref("extensions.asktb.o", "102868");
[s924gzls.default\prefs.js] - Line Deleted : user_pref("extensions.asktb.overlay-reloaded-using-restart", true);
[s924gzls.default\prefs.js] - Line Deleted : user_pref("extensions.asktb.qsrc", "2871");
[s924gzls.default\prefs.js] - Line Deleted : user_pref("extensions.asktb.r", "9");
[s924gzls.default\prefs.js] - Line Deleted : user_pref("extensions.asktb.search-plugin-suggestions-url", "hxxp://ss.websearch.ask.com/query?qsrc=2922&li=ff&sstype=prefix&q={searchTerms}");
[s924gzls.default\prefs.js] - Line Deleted : user_pref("extensions.asktb.search-suggestions-enabled", true);
[s924gzls.default\prefs.js] - Line Deleted : user_pref("extensions.asktb.v", "3.9.1.100013");
[s924gzls.default\prefs.js] - Line Deleted : user_pref("extensions.enabledItems", "{B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.3,[email protected]:3.9.1.100013,{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22,{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}:1.0,{[...]
[s924gzls.default\prefs.js] - Line Deleted : user_pref("keyword.URL", "hxxp://www.ask.com/web?l=dis&o=41648007&gct=kwd&qsrc=2869&apn_dtid=^YYYYYY^YY^US&apn_ptnrs=^8M&apn_uid=undefined&p2=^8M^YYYYYY^YY^US&q=");
-\\ Google Chrome v39.0.2171.95
[C:\Users\JPR\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
[C:\Users\JPR\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
[C:\Users\maddie\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://shopping.kelkoo.co.uk/ctl/do/search?siteSearchQuery={searchTerms}&from=colibri
[C:\Users\maddie\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://movies.netflix.com/WiSearch?raw_query=bones+&ac_category_type=none&ac_rel_posn=-1&ac_abs_posn=-1&v1={searchTerms}&search_submit=
[C:\Users\maddie\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
[C:\Users\maddie\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
*************************
AdwCleaner[R0].txt - [13314 octets] - [14/12/2014 12:32:01]
AdwCleaner[S0].txt - [13384 octets] - [14/12/2014 12:34:46]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [13445 octets] ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.0 (11.29.2014:1)
OS: Windows 7 Home Premium x64
Ran by JPR on Sun 12/14/2014 at 13:11:19.80
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9"
~~~ Files
Successfully deleted: [File] C:\Windows\prefetch\GOOGLETOOLBARNOTIFIER.EXE-969E73DB.pf
Successfully deleted: [File] "C:\Windows\wininit.ini"
~~~ Folders
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sun 12/14/2014 at 13:16:47.00
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
#4
Posted 14 December 2014 - 02:41 PM
- Step 1
Download the free version of 'Malwarebytes Anti-Malware by Malwarebytes Corporation' and save it to your desktop.- Double-click mbam-setup-*.exe and proceed to installing the program.
- Accept the License Agreement.
- At the end, untick Enable free trial of Malwarebytes Anti-Malware Premium and ensure Launch Malwarebytes' Anti-Malware is checked.
- Click Finish after.
- Once the program has loaded, navigate to the Settings tab and select Detection and Protection.
- Tick the Scan For Rootkits box.
- Go back to the Dashboard and select Update Now. Click Scan Now after.
- Updates can sometimes still be present. Be sure to select Update Now again if you are prompted.
- Once the scan is complete, click Apply Actions.
- If you are prompted to reboot, allow it by pressing Yes.
- Navigate to the program's History tab to retrieve the log.
- Click Application Logs and double-click on the most recent Scan Log.
- Export the log to your desktop as a .TXT file.
- You can also choose to directly copy the log by selecting Copy to Clipboard.
- Copy (CTRL + A and CTRL + C) and paste (CTRL + V) the content of the log in your next reply.
- Double-click mbam-setup-*.exe and proceed to installing the program.
- Step 2
Run a free 'ESET Online Scan by ESET' by firstly saving the file to your desktop.- Double-click esetsmartinstaller_enu.exe. Accept the Terms of Use then click on Start.
- Ensure the following settings are followed before clicking Start (you may or may not see the software warning at the very bottom):
- The virus signature database will begin to download. Wait for the scan to end--it may take several hours.
- Upon completion, select List of found threats > Export to text file....
- Press Back and put a check on the following:
- Uninstall application on close
- Delete quarantined files
- Click Finish.
- Copy (CTRL + A and CTRL + C) and paste (CTRL + V) the content of the log in your next reply.
- Step 3
Download 'SecurityCheck by screen317' and save it to your desktop.- Simply double-click the program icon to run it. It will ask for administrator privileges.
- A black window will appear. Press any key to continue.
- Wait for it to finish. It won't take long.
- A log will automatically pop-up after once done.
- Copy (CTRL + A and CTRL + C) and paste (CTRL + V) the content of the log in your next reply.
- Logs to Post
In summary of the above, I will need you to post the following log(s):- checkup.txt (SecurityCheck)
- log.txt (ESET Online Scan)
- mbam-log-YYYY-MM-DD (HH-MM-SS).xml (Malwarebytes Anti-Malware)
#5
Posted 14 December 2014 - 10:25 PM
the laptop is unable to run any scans now even in safe mode. it freezes during the scan.
#6
Posted 15 December 2014 - 03:27 AM
the laptop is unable to run any scans now even in safe mode. it freezes during the scan.
Mind rebooting? Once successful, wait for a few minutes to allow the computer to load things. Proceed to performing the aforementioned steps. If you get stuck again, please let me know at which part and when.
#7
Posted 16 December 2014 - 10:27 AM
#8
Posted 18 December 2014 - 08:49 PM
it hangs up on a recycle bin file.
Did you mean the scanning? If so, could you empty your Recycle Bin first before proceeding with the scan?
it also wont complete windows update [ it crashes and then does a ckdsk scan on reboot ]
I see. That is very symptomatic of the problem here, which is likely a corrupt hard disk. May I ask how old this computer is, and whether or not you have a spare flash drive?
#9
Posted 21 December 2014 - 08:12 AM
i had emptied the bin but it still hung up.. i ran MB in safe mode overnite and it completed finally...
the eset wont complete a scan it just locks up then reboots...
update/ in safe mode and 11 hrs later the eset worked ...however i forgot to save the log file,,my bad
2014/12/20 19:39:55 -0500 mbam-log-2014-12-20 (19-39-34).xml yes 2.00.4.1028 v2014.12.20.07 v2014.12.14.01 trial disabled disabled disabled Windows 7 x64 JPR NTFS threat completed 433229 17086 0 0 6 4 0 0 5 0 enabled enabled enabled enabled enabled disabled enabled warn enabled HKU\S-1-5-21-2149775182-1744775763-1669362473-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{D4027C7F-154A-4066-A1AD-4243D8127440}PUP.Optional.FrostwireTB.Asuccess51cc8bd8532962d44bebd43d06fdb24e HKU\S-1-5-21-2149775182-1744775763-1669362473-501-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{D4027C7F-154A-4066-A1AD-4243D8127440}PUP.Optional.FrostwireTB.Asuccess51cc8bd8532962d44bebd43d06fdb24e HKU\S-1-5-21-2149775182-1744775763-1669362473-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{D4027C7F-154A-4066-A1AD-4243D8127440}PUP.Optional.FrostwireTB.Asuccess51cc8bd8532962d44bebd43d06fdb24e HKU\S-1-5-21-2149775182-1744775763-1669362473-501-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{D4027C7F-154A-4066-A1AD-4243D8127440}PUP.Optional.FrostwireTB.Asuccess51cc8bd8532962d44bebd43d06fdb24e HKU\S-1-5-21-2149775182-1744775763-1669362473-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{D824F0DE-3D60-4F57-9EB1-66033ECD8ABB}PUP.Optional.WeCare.Asuccess65b873f06517ee489e6ece3f8e7521df HKU\S-1-5-21-2149775182-1744775763-1669362473-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{D824F0DE-3D60-4F57-9EB1-66033ECD8ABB}PUP.Optional.WeCare.Asuccess65b873f06517ee489e6ece3f8e7521df HKU\S-1-5-21-2149775182-1744775763-1669362473-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER{D4027C7F-154A-4066-A1AD-4243D8127440}PUP.Optional.FrostwireTB.Asuccess
Results of screen317's Security Check version 0.99.93
Windows 7 x64
Out of date service pack!!
Internet Explorer 11
``````````````Antivirus/Firewall Check:``````````````
Windows Security Center service is not running! This report may not be accurate!
Windows Firewall Enabled!
WMI entry may not exist for antivirus; attempting automatic update.
`````````Anti-malware/Other Utilities Check:`````````
Java version 32-bit out of Date!
Adobe Flash Player 10 Flash Player out of Date!
Adobe Flash Player 11.6.602.171 Flash Player out of Date!
Adobe Reader 9 Adobe Reader out of Date!
Mozilla Firefox (3.6.13) Firefox out of Date!
Google Chrome (39.0.2171.71)
Google Chrome (39.0.2171.95)
````````Process Check: objlist.exe by Laurent````````
`````````````````System Health check`````````````````
Total Fragmentation on Drive C:
````````````````````End of Log``````````````````````
Edited by richclan, 21 December 2014 - 08:18 PM.
#10
Posted 22 December 2014 - 11:50 AM
I do not recommend pushing through with any updates from Windows Update at the moment, given your situation. I really feel the issue has to do with hardware, but let us see. Again, may I ask how old this computer is, and whether or not you have a spare flash drive?
- Step 1
Download 'Windows Repair (All In One) by Tweaking.com' and save it to your desktop.- Simply double-click the program icon to run it. It will ask for administrator privileges.
- Go through the installer. At the end of the process, the program screen should pop-up.
- Navigate to Step 3: Optional:
- Click Check. The scan will commence.
- Select Do It if errors were found. Otherwise, proceed to the next step.
- Navigate to Step 4: Optional:
- Click Do It.
- Navigate to Start Repairs and press Start. Choose No at the prompt.
- Uncheck the following items:
- 28 - Repair Windows 8 App Store
- 29 - Repair Windows 8 Component Store
- 30 - Restore Windows 8 COM+ Unmarshalers
- Press Start to begin the process. It will take a while.
- Note that a gray box will pop-up from time to time--this is normal.
- Uncheck the following items:
- Once done click the View Logs button.
- Post the logs contained within the folder.
- If you find it inconvenient, highlight all of the files (CTRL + A) > right-click on any of the items > Send to > Compressed (zipped) folder > Yes.
- Attach the folder found at your desktop.
- Logs to Post
In summary of the above, I will need you to post the following log(s):- *.txt (Windows Repair (All In One)
#11
Posted 22 December 2014 - 12:36 PM
after the reboot it went into what I,ve read is an endless loop. startup repair. I don't think I have a repair disk but I haven't been able to look for one yet. im thinking its the boot loader, sorry you got stuck with this issue.
#12
Posted 22 December 2014 - 11:50 PM
I believe I may be able to provide that for you if it really is inexistent. In some cases, the company does not provide a disc because the recovery modules are built-in. I have some questions I hope you could answer to help me determine the best course of action:
- Which company manufactured this computer?
- Is this the screen you happen to be stuck at?
- Does tapping the F8 button continuously before the Windows logo appears lead you to a screen similar to this?
- Can you confirm that your operating system is Windows 7 Home Premium, 64-bit?
- Are there sensitive files saved onto this computer that have not been backed up?
- Are you able to locate your Windows license? A sticker containing the latter is usually present at the underside (for laptops) or at the side of the case (desktops).
#13
Posted 26 December 2014 - 06:47 AM
its an acer with win 7 / 64bit
yes to both screen shots
no she does have many files and music that are NOT backed up
yes we have the license sticker
i located the repair disks i made when i first got my laptop 3 cd's [same OS and its an acer ] and i also did the image backup as well.
the repair disk did nothing to fix it. i DO have Knoppix 6.0 , 3.5, and a partition commander disk if these will help us.
thanks
#14
Posted 28 December 2014 - 05:27 AM
This is what I have in mind, let me know if the idea is alright with you and we will proceed:
- Restore any working instances of the system via System Restore.
- Backup all important files.
- Perform an in-place upgrade to fix the operating system.
#15
Posted 28 December 2014 - 10:41 AM
im ok as long as we can somehow save her docs photos and music from deletion
thanks
Similar Topics
0 user(s) are reading this topic
0 members, 0 guests, 0 anonymous users