Illegal Software WarningI noticed that you use illegal sofwate like keygens, cracks or something like that. We don't support illegal machines and because of that we will remove all the illegal Software in the Malware Removal Process. Believe me, I'll find
ALL of the illegal software. If you don't like that I remove the illegal software, just tell me! The consequence will be that I won't support you anymore! If you accept this we will remove all the illegal software and I'll guarantee further support.
Illegal entries:- O1 - Hosts: 127.0.0.1 3dns.adobe.com 3dns-1.adobe.com 3dns-2.adobe.com 3dns-3.adobe.com 3dns-4.adobe.com activate.adobe.com activate-sea.adobe.com activate-sjc0.adobe.com activate.wip.adobe.com
- O1 - Hosts: 127.0.0.1 activate.wip1.adobe.com activate.wip2.adobe.com activate.wip3.adobe.com activate.wip4.adobe.com adobe-dns.adobe.com adobe-dns-1.adobe.com adobe-dns-2.adobe.com adobe-dns-3.adobe.com adobe-dns-4.adobe.com
- O1 - Hosts: 127.0.0.1 adobeereg.com practivate.adobe practivate.adobe.com practivate.adobe.newoa practivate.adobe.ntp practivate.adobe.ipp ereg.adobe.com ereg.wip.adobe.com ereg.wip1.adobe.com
- O1 - Hosts: 127.0.0.1 ereg.wip2.adobe.com ereg.wip3.adobe.com ereg.wip4.adobe.com hl2rcv.adobe.com wip.adobe.com wip1.adobe.com wip2.adobe.com wip3.adobe.com wip4.adobe.com
- O1 - Hosts: 127.0.0.1 www.adobeereg.com wwis-dubc1-vip60.adobe.com www.wip.adobe.com www.wip1.adobe.com
- O1 - Hosts: 127.0.0.1 www.wip2.adobe.com www.wip3.adobe.com www.wip4.adobe.com wwis-dubc1-vip60.adobe.com crl.verisign.net CRL.VERISIGN.NET ood.opsource.net
OTL Fix- Run OTL.
- Copy (Ctrl+C) and Paste (Ctrl+V) all of the following text into the Custom Scans/Fixes box:
:Commands
[CreateRestorePoint]
:OTL
SRV - File not found [Auto | Stopped] -- C:\Program Files\Yontoo\Y2Desktop.Updater.exe C:\Users\Matt\AppData\Roaming\Yontoo\YontooDesktop.exe -- (Yontoo Desktop Updater)
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://start.mysearc...cr=38300765&ir=
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://start.mysearc...cr=38300765&ir=
FF - prefs.js..browser.search.defaultenginename: "Mysearchdial"
FF - prefs.js..browser.search.defaultthis.engineName: "WhiteSmoke New Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT3289847&CUI=UN14575276994848118&UM=2&SearchSource=3&q={searchTerms}&sspv=TB_TS3"
FF - prefs.js..browser.search.selectedEngine: "Mysearchdial"
[2013/11/14 14:47:42 | 000,000,000 | ---D | M] (WhiteSmoke New) -- C:\Users\Matt\AppData\Roaming\Mozilla\Firefox\Profiles\8gghl8tn.default\extensions\{739df940-c5ee-4bab-9d7e-270894ae687a}
[2013/08/04 02:47:09 | 000,000,000 | ---D | M] ("MySearchDial" />) -- C:\Users\Matt\AppData\Roaming\Mozilla\Firefox\Profiles\8gghl8tn.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}
[2013/06/24 01:01:46 | 000,000,000 | ---D | M] (cOentinuaetosaeve) -- C:\Users\Matt\AppData\Roaming\Mozilla\Firefox\Profiles\8gghl8tn.default\extensions\[email protected]
[2013/06/30 08:44:04 | 000,239,491 | ---- | M] () (No name found) -- C:\Users\Matt\AppData\Roaming\Mozilla\Firefox\Profiles\8gghl8tn.default\extensions\[email protected]
O15 - HKCU\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: sony.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: vizzed.com ([www] * in Trusted sites)
[2013/07/31 15:28:28 | 000,423,709 | ---- | C] () -- C:\Users\Matt\AppData\Local\mysearchdial_speedial_v9.0.2.crx
@Alternate Data Stream - 192 bytes -> C:\Windows:nlsPreferences
:Files
C:\Program Files\Yontoo
C:\Users\Matt\AppData\Roaming\Yontoo
:Commands
[ResetHosts]
[EMPTYTEMP]
- Click the Run Fix button.
- The computer will reboot - after that reboot a textdocument will open - please post that into your next reply
AdwCleanerPlease download
AdwCleaner (by Xplode) from the link below and save it to your
Desktop:
Download Mirror #1- Right-click on AdwCleaner.exe and select Run as administrator.
- Click Scan and let the scan run.
- When it finishes, click Clean, following the on screen prompts
- After your computer reboots, a log will open. Please Copy (Ctrl+C) and Paste (Ctrl+V) this into your next post.
Note: The log can also be found in here:
C:\AdwCleaner\JRT Run Please download
Junkware Removal Tool to your desktop.
- Shut down your protection software now to avoid potential conflicts.
- Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
- The tool will open and start scanning your system.
- Please be patient as this can take a while to complete depending on your system's specifications.
- On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
- Post the contents of JRT.txt into your next message.
CKScanner RunDownload
CKScanner from
hereImportant : Save it to your desktop.
- Doubleclick CKScanner.exe and click Search For Files.
- After a very short time, when the cursor hourglass disappears, click Save List To File.
- A message box will verify that the file is saved.
- Double-click the CKFiles.txt icon on your desktop and copy/paste the contents in your next reply.
OTL Scan[/list]Please also post the
Extras.txt file.