Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

I clicked on a link that hijacked my PC.


  • Please log in to reply

#1
Spanish891

Spanish891

    New Member

  • Member
  • Pip
  • 3 posts

Hey guys, so i clicked on a link on a youtube video comment thread. The link then hijacked my browser and speakers and everytime i tried to press a button it would open a new window and the sound would increase, it did this about 3 times, before finally i turned off my PC. I want to know if the link possibly was able to download any malware or some kind of backdoor for hackers to steal informations or just get into my PC?  I can provide the link but i'd say its dangerous because i don't want others clicking it. But i can provide it incase anyone has some sort of link scanner tool?

 

So do you think it's possible to get a malware installed in your PC by just clicking a link? 


  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,029 posts
  • MVP

Sometimes you don't even have to click.  Let's look:

 

 
Download : ADWCleaner to your desktop.  Make sure you get the correct Download button.  Sometimes the ads on BleepingComputer will mimic the real Download button which should say: Download Now @BleepingComputer
 
NOTE: If using Internet Explorer and you get an alert that stops the program downloading, click on the warning and allow the download to complete.
 
Close  all programs, pause your anti-virus and run AdwCleaner (Vista or Win 7 => right click and Run As Administrator).
 
scan-results.jpg
 
Click on Scan  and follow the prompts. Let it run unhindered. When done, click on the Clean button, and follow the prompts. Allow the system to reboot. You will then be presented with the report. Copy & Paste this report on your next reply.
 
The report will be saved in the C:\AdwCleaner folder.
 
 
 
Junkware-Removal-Tool
 
Please download Junkware Removal Tool to your desktop.  Make sure you get the correct Download button.  Sometimes the ads on BleepingComputer will mimic the real Download button which should say: Download Now @Author's site
  • Pause your anti-virus.  Close all browsers.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
  •  
     
     
    •  
  • Right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer. 
  • Check the Addition.txt box
  • Press Scan button. 
  • It will produce a log called FRST.txt in the same directory the tool is run from.  
  • Please copy and paste log back here. 
  • It will generate another log (Addition.txt - also located in the same directory as FRST.exe/FRST64.exe). Please also paste that along with the FRST.txt into your reply. 

    • 0

    #3
    Spanish891

    Spanish891

      New Member

    • Topic Starter
    • Member
    • Pip
    • 3 posts

    Thanks for the reply. I ran Malwarebytes before reading your post. It found 3 trojans and 300 other possible files. I had it remove them all.

     

    Malwarebytes won't let me copy and paste the list of items it found. 

     

    I am currently doing a full system scan with malwarebytes, but i'll run the scanner you recommended tomorrow as well and see if anything shows up.

     

     

    Also the link i clicked on that hijacked my PC, I can't find anything on it. I think someone just created it to screw with peoples computers. I still remember the name of the link entirely in case anyones curious., it had 4 letters and followed by a (.org)

     

    I'll update tomorrow if the scanner tool you gave me shows anything else.


    Edited by Spanish891, 06 July 2016 - 08:38 PM.

    • 0

    #4
    Spanish891

    Spanish891

      New Member

    • Topic Starter
    • Member
    • Pip
    • 3 posts

    Heres the report.

     

    # AdwCleaner v5.201 - Logfile created 07/07/2016 at 18:32:32
    # Updated 30/06/2016 by ToolsLib
    # Database : 2016-07-06.1 [Server]
    # Operating system : Windows 7 Home Premium Service Pack 1 (X64)
    # Username : PC - PC-PC
    # Running from : C:\Users\PC\Desktop\AdwCleaner.exe
    # Option : Clean
     
    ***** [ Services ] *****
     
     
    ***** [ Folders ] *****
     
    [-] Folder Deleted : C:\ProgramData\apn
    [-] Folder Deleted : C:\ProgramData\Ask
    [-] Folder Deleted : C:\ProgramData\Babylon
    [-] Folder Deleted : C:\ProgramData\blekko toolbars
    [-] Folder Deleted : C:\ProgramData\Premium
    [-] Folder Deleted : C:\ProgramData\RightClick
    [-] Folder Deleted : C:\ProgramData\Trymedia
    [#] Folder Deleted : C:\ProgramData\Application Data\apn
    [#] Folder Deleted : C:\ProgramData\Application Data\Ask
    [#] Folder Deleted : C:\ProgramData\Application Data\Babylon
    [#] Folder Deleted : C:\ProgramData\Application Data\blekko toolbars
    [#] Folder Deleted : C:\ProgramData\Application Data\Premium
    [#] Folder Deleted : C:\ProgramData\Application Data\RightClick
    [#] Folder Deleted : C:\ProgramData\Application Data\Trymedia
    [-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Finder
    [-] Folder Deleted : C:\Program Files (x86)\FlvPlayer
    [-] Folder Deleted : C:\Program Files (x86)\OApps
    [#] Folder Deleted : C:\Program Files (x86)\FLVPlayer
    [-] Folder Deleted : C:\Program Files (x86)\Common Files\337
    [-] Folder Deleted : C:\Users\PC\AppData\Local\Ilivid Player
    [-] Folder Deleted : C:\Users\PC\AppData\Local\SwvUpdater
    [-] Folder Deleted : C:\Users\PC\AppData\Local\28050
    [-] Folder Deleted : C:\Users\PC\AppData\LocalLow\continuetosave
    [-] Folder Deleted : C:\Users\PC\AppData\Roaming\Babylon
    [-] Folder Deleted : C:\Users\PC\AppData\Roaming\Media Finder
    [-] Folder Deleted : C:\Users\PC\AppData\Roaming\YourFileDownloader
    [-] Folder Deleted : C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\gngocbkfmikdgphklgmmehbjjlfgdemm
     
    ***** [ Files ] *****
     
    [-] File Deleted : C:\END
    [-] File Deleted : C:\ProgramData\uninstaller.exe
    [#] File Deleted : C:\ProgramData\Application Data\uninstaller.exe
    [-] File Deleted : C:\Users\PC\AppData\LocalLow\SkwConfig.bin
    [-] File Deleted : C:\Users\PC\AppData\LocalLow\Microsoft\Internet Explorer\Services\Search_ask.com.xml
    [-] File Deleted : C:\Users\PC\AppData\Roaming\LiveSupport.exe_log.txt
    [-] File Deleted : C:\Users\PC\AppData\Roaming\regsvr32.exe_log.txt
    [-] File Deleted : C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\bpsb390l.default\searchplugins\Search Provided by Bing.xml
    [-] File Deleted : C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gngocbkfmikdgphklgmmehbjjlfgdemm_0.localstorage
    [-] File Deleted : C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gngocbkfmikdgphklgmmehbjjlfgdemm_0.localstorage-journal
    [-] File Deleted : C:\Users\PC\AppData\Local\Chromium\User Data\Default\Local Storage\hxxp_yourtemplatefinder.dl.myway.com_0.localstorage
    [-] File Deleted : C:\Users\PC\AppData\Local\Chromium\User Data\Default\Local Storage\hxxp_yourtemplatefinder.dl.myway.com_0.localstorage-journal
    [-] File Deleted : C:\Users\PC\AppData\Local\Chromium\User Data\Default\Local Storage\hxxp_yourtemplatefinder.dl.tb.ask.com_0.localstorage
    [-] File Deleted : C:\Users\PC\AppData\Local\Chromium\User Data\Default\Local Storage\hxxp_yourtemplatefinder.dl.tb.ask.com_0.localstorage-journal
    [-] File Deleted : C:\user.js
     
    ***** [ DLLs ] *****
     
     
    ***** [ WMI ] *****
     
     
    ***** [ Shortcuts ] *****
     
     
    ***** [ Scheduled tasks ] *****
     
    [-] Task Deleted : RunAsStdUser
    [-] Task Deleted : Your File Updater
    [-] Task Deleted : updateTask
    [-] Task Deleted : Your File Updater
     
    ***** [ Registry ] *****
     
    [-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [Backup.old.Start Page]
    [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\MenuExt\Download with &Media Finder
    [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Activities\Search\ask.com
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exe
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Record\{425E7597-03A2-338D-B72A-0E51FFE77A7E}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Record\{915BB7D5-082E-3B91-B1E0-45B5FDE01F24}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Record\{2009AF2F-5786-3067-8799-B97F7832FDD6}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Record\{FB2E65F4-5687-33EF-9BBF-4E3C9C98D3B9}
    [-] Key Deleted : HKLM\SOFTWARE\Clients\StartMenuInternet\Torch
    [-] Key Deleted : HKLM\SOFTWARE\5255888ae168b910
    [-] Key Deleted : HKCU\Software\Classes\pokki
    [-] Key Deleted : HKLM\SOFTWARE\Classes\1ClicktorrentFile
    [-] Key Deleted : HKLM\SOFTWARE\Classes\1ClicktorrentFile1
    [-] Key Deleted : HKLM\SOFTWARE\Classes\AmiBs.Boot
    [-] Key Deleted : HKLM\SOFTWARE\Classes\AmiBs.Boot.1
    [-] Key Deleted : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr
    [-] Key Deleted : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
    [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{14F35FFC-522A-4DD1-A07E-6B8B65C6891E}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2EECD738-5844-4A99-B4B6-146BF802613B}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{82EA3E77-7BD2-4744-A8F2-670770767EC5}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8769ADCE-DBA5-48E9-AFB5-67B12CDF2E61}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D879A501-50A7-BEFC-A4C5-32DC6E0CB208}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3AE26843-9171-4F23-A8E5-5421701276A4}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{AC329328-7EC4-4C34-B672-0A2B90CB9B00}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{B00FE392-639D-4688-976E-A1BFF368CB96}
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{82EA3E77-7BD2-4744-A8F2-670770767EC5}
    [-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FDBFEA30-EC51-4B8D-B4F0-8CA4F7253C0A}
    [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}
    [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82EA3E77-7BD2-4744-A8F2-670770767EC5}
    [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
    [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
    [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B}
    [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82EA3E77-7BD2-4744-A8F2-670770767EC5}
    [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FDBFEA30-EC51-4B8D-B4F0-8CA4F7253C0A}
    [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{82EA3E77-7BD2-4744-A8F2-670770767EC5}
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{82EA3E77-7BD2-4744-A8F2-670770767EC5}
    [-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
    [-] Key Deleted : HKCU\Software\BABSOLUTION
    [-] Key Deleted : HKCU\Software\Conduit
    [-] Key Deleted : HKCU\Software\Cr_Installer
    [-] Key Deleted : HKCU\Software\GetPrivate
    [-] Key Deleted : HKCU\Software\IM
    [-] Key Deleted : HKCU\Software\ImInstaller
    [-] Key Deleted : HKCU\Software\MediaFinder
    [-] Key Deleted : HKCU\Software\PrivitizeVPNInstallDates
    [-] Key Deleted : HKCU\Software\SecurityUpdatesService
    [-] Key Deleted : HKCU\Software\StartSearch
    [-] Key Deleted : HKCU\Software\torch
    [-] Key Deleted : HKCU\Software\YourFileDownloader
    [-] Key Deleted : HKCU\Software\delta
    [-] Key Deleted : HKCU\Software\Link64
    [-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-18\Software\Web Assistant
    [-] Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
    [-] Key Deleted : HKLM\SOFTWARE\Babylon
    [-] Key Deleted : HKLM\SOFTWARE\Conduit
    [-] Key Deleted : HKLM\SOFTWARE\Desksvc
    [-] Key Deleted : HKLM\SOFTWARE\hdcode
    [-] Key Deleted : HKLM\SOFTWARE\SP Global
    [-] Key Deleted : HKLM\SOFTWARE\SProtector
    [-] Key Deleted : HKLM\SOFTWARE\torch
    [-] Key Deleted : HKLM\SOFTWARE\V9
    [-] Key Deleted : HKLM\SOFTWARE\Web Assistant
    [-] Key Deleted : HKLM\SOFTWARE\YourFileDownloader
    [-] Key Deleted : HKLM\SOFTWARE\delta
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C670DCAE-E392-AA32-6F42-143C7FC4BDFD}
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\facemoods
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Tarma Installer
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Web Assistant
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\facemoods
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
    [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2764631113-3841040507-2078038900-1000\Software\AVG Secure Search
    [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2764631113-3841040507-2078038900-1000\Software\SweetIM
    [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2764631113-3841040507-2078038900-1000\Software\Wajam
    [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2764631113-3841040507-2078038900-1000\Software\Web Assistant
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3152E1F19977892449DC968802CE8964
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467
    [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Shared Tools\MsConfig\StartupReg\ApnUpdater
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Shared Tools\MsConfig\StartupReg\BrowserAppCoreService
    [-] Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Media Finder]
    [#] Value Deleted : HKU\S-1-5-21-2764631113-3841040507-2078038900-1000\Software\Microsoft\Windows\CurrentVersion\Run [Media Finder]
    [-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\desksvc
     
    ***** [ Web browsers ] *****
     
    [-] [C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : aol.com
    [-] [C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : ask.com
    [-] [C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : Search Provided by Yahoo.com
    [-] [C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxps://us.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_camstd_15_46&param1=1&param2=f%3D7%26b%3DChrome%26cc%3Dus%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzuzz0Czzzy0AyD0Dzy0F0DyE0D0E0D0E0AtN0D0Tzu0StCyEtDzytN1L2XzutAtFtCyEtFtDtFtCtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StD0FyD0B0D0E0A0EtGyE0D0AtCtGyEtAyBtDtGyE0ByDtAtG0EtBtB0EyEyC0B0F0Ezz0E0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0BtC0D0E0DyB0DtAtGtAtDyC0EtGyEyCzzyEtG0B0FyCyEtG0AtAyD0B0EyCyDyCyCzztCtA2QtN0A0LzuyE%26cr%3D1572590625%26a%3Dwncy_camstd_15_46%26os%3DWindows%2B7%2BHome%2BPremium
    [-] [C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Default_Search_Provider_Data] Deleted : hxxps://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_camstd_15_46&param1=1&param2=f%3D4%26b%3DChrome%26cc%3Dus%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzuzz0Czzzy0AyD0Dzy0F0DyE0D0E0D0E0AtN0D0Tzu0StCyEtDzytN1L2XzutAtFtCyEtFtDtFtCtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StD0FyD0B0D0E0A0EtGyE0D0AtCtGyEtAyBtDtGyE0ByDtAtG0EtBtB0EyEyC0B0F0Ezz0E0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0BtC0D0E0DyB0DtAtGtAtDyC0EtGyEyCzzyEtG0B0FyCyEtG0AtAyD0B0EyCyDyCyCzztCtA2QtN0A0LzuyE%26cr%3D1572590625%26a%3Dwncy_camstd_15_46%26os%3DWindows%2B7%2BHome%2BPremium&p={searchTerms}
    [-] [C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : banjjklfojcdbofbhbgiedekefohoaff
    [-] [C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : gngocbkfmikdgphklgmmehbjjlfgdemm
    [-] [C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Homepage] Deleted : hxxps://us.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_camstd_15_46&param1=1&param2=f%3D1%26b%3DChrome%26cc%3Dus%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzuzz0Czzzy0AyD0Dzy0F0DyE0D0E0D0E0AtN0D0Tzu0StCyEtDzytN1L2XzutAtFtCyEtFtDtFtCtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StD0FyD0B0D0E0A0EtGyE0D0AtCtGyEtAyBtDtGyE0ByDtAtG0EtBtB0EyEyC0B0F0Ezz0E0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0BtC0D0E0DyB0DtAtGtAtDyC0EtGyEyCzzyEtG0B0FyCyEtG0AtAyD0B0EyCyDyCyCzztCtA2QtN0A0LzuyE%26cr%3D1572590625%26a%3Dwncy_camstd_15_46%26os%3DWindows%2B7%2BHome%2BPremium
    [-] [C:\Users\PC\AppData\Local\Chromium\User Data\Default\Secure Preferences] [Homepage] Deleted : hxxps://us.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_camstd_15_46&param1=1&param2=f%3D1%26b%3Dchmm%26cc%3Dus%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzuzz0Czzzy0AyD0Dzy0F0DyE0D0E0D0E0AtN0D0Tzu0StCyEtDzytN1L2XzutAtFtCyEtFtDtFtCtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StD0FyD0B0D0E0A0EtGyE0D0AtCtGyEtAyBtDtGyE0ByDtAtG0EtBtB0EyEyC0B0F0Ezz0E0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0BtC0D0E0DyB0DtAtGtAtDyC0EtGyEyCzzyEtG0B0FyCyEtG0AtAyD0B0EyCyDyCyCzztCtA2QtN0A0LzuyE%26cr%3D1572590625%26a%3Dwncy_camstd_15_46%26os%3DWindows%2B7%2BHome%2BPremium&uref=chmm
     
    *************************
     
    :: "Tracing" keys deleted
    :: Winsock settings cleared
     
    *************************
     
    C:\AdwCleaner\AdwCleaner[C1].txt - [15392 bytes] - [07/07/2016 18:32:32]
    C:\AdwCleaner\AdwCleaner[S1].txt - [16163 bytes] - [07/07/2016 18:28:14]
     
    ########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [15540 bytes] ##########

    • 0






    Similar Topics

    0 user(s) are reading this topic

    0 members, 0 guests, 0 anonymous users

    As Featured On:

    Microsoft Yahoo BBC MSN PC Magazine Washington Post HP