Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: Malware log  (Read 16434 times)

0 Members and 1 Guest are viewing this topic.

AlwaysScrewed

    Topic Starter


    Intermediate

    Malware log
    « on: December 18, 2013, 03:35:18 PM »
    Here is my malware log suggested from Allen in response to this thread:

    I cannot do the MalwareBytes one because MalwareBytes isn't updating. It is getting stuck and not updating.

    AdwCleaner:

    # AdwCleaner v3.015 - Report created 18/12/2013 at 17:21:14
    # Updated 10/12/2013 by Xplode
    # Operating System : Windows 7 Home Premium  (64 bits)
    # Username : Matt - MATT-PC
    # Running from : C:\Users\Matt\Documents\My Downloads\adwcleaner.exe
    # Option : Scan

    ***** [ Services ] *****


    ***** [ Files / Folders ] *****

    File Found : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.dll
    File Found : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.xpt
    File Found : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.dll
    File Found : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.xpt
    File Found : C:\Program Files (x86)\Mozilla Firefox\searchplugins\avg-secure-search.xml
    File Found : C:\Program Files (x86)\Mozilla Firefox\searchplugins\fcmdSrch.xml
    Folder Found C:\Program Files (x86)\Common Files\Software Update Utility
    Folder Found C:\Program Files (x86)\Conduit
    Folder Found C:\Users\Matt\AppData\Local\PackageAware
    Folder Found C:\Users\Matt\AppData\LocalLow\Conduit

    ***** [ Shortcuts ] *****


    ***** [ Registry ] *****

    Key Found : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
    Key Found : HKCU\Software\IGearSettings
    Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0D7562AE-8EF6-416D-A838-AB665251703A}
    Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{443789B7-F39C-4B5C-9287-DA72D38F4FE6}
    Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
    Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
    Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{64182481-4F71-486B-A045-B233BD0DA8FC}
    Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
    Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
    Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DB4E9724-F518-4DFD-9C7C-78B52103CAB9}
    Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2974C985-8151-4DE5-B23C-B875F0A8522F}
    Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64182481-4F71-486B-A045-B233BD0DA8FC}
    Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7B089B94-D1DC-4C6B-87E1-8156E22C1D96}
    Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
    Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
    Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DB4E9724-F518-4DFD-9C7C-78B52103CAB9}
    Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
    Key Found : HKCU\Software\YahooPartnerToolbar
    Key Found : [x64] HKCU\Software\IGearSettings
    Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0D7562AE-8EF6-416D-A838-AB665251703A}
    Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{443789B7-F39C-4B5C-9287-DA72D38F4FE6}
    Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
    Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
    Key Found : [x64] HKCU\Software\YahooPartnerToolbar
    Key Found : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
    Key Found : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0}
    Key Found : HKLM\SOFTWARE\Classes\AppID\{6C259840-5BA8-46E6-8ED1-EF3BA47D8BA1}
    Key Found : HKLM\SOFTWARE\Classes\AppID\{B27D9527-3762-4D71-963D-FB7A94FDD678}
    Key Found : HKLM\SOFTWARE\Classes\AppID\dnu.EXE
    Key Found : HKLM\SOFTWARE\Classes\AppID\WLXQuickTimeShellExt.DLL
    Key Found : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
    Key Found : HKLM\SOFTWARE\Classes\CLSID\{2974C985-8151-4DE5-B23C-B875F0A8522F}
    Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
    Key Found : HKLM\SOFTWARE\Classes\CLSID\{7B089B94-D1DC-4C6B-87E1-8156E22C1D96}
    Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
    Key Found : HKLM\SOFTWARE\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}
    Key Found : HKLM\SOFTWARE\Classes\CLSID\{E15A9BFD-D16D-496D-8222-44CADF316E70}
    Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
    Key Found : HKLM\SOFTWARE\Classes\dnUpdate
    Key Found : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUIBrowser
    Key Found : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUIBrowser.1
    Key Found : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUpdController
    Key Found : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUpdController.1
    Key Found : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
    Key Found : HKLM\SOFTWARE\Classes\Interface\{660E6F4F-840D-436D-B668-433D9591BAC5}
    Key Found : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
    Key Found : HKLM\SOFTWARE\Classes\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}
    Key Found : HKLM\SOFTWARE\Classes\Interface\{E7435878-65B9-44D1-A443-81754E5DFC90}
    Key Found : HKLM\SOFTWARE\Classes\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}
    Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2653012
    Key Found : HKLM\SOFTWARE\Classes\TypeLib\{92380354-381A-471F-BE2E-DD9ACD9777EA}
    Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
    Key Found : HKLM\Software\Conduit
    Key Found : HKLM\Software\DeviceVM
    Key Found : HKLM\Software\firstsearch
    Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{443789B7-F39C-4B5C-9287-DA72D38F4FE6}
    Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
    Key Found : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32
    Key Found : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS
    Key Found : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_veoh_RASAPI32
    Key Found : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_veoh_RASMANCS
    Key Found : HKLM\SOFTWARE\Microsoft\Tracing\facemoodssrv_RASAPI32
    Key Found : HKLM\SOFTWARE\Microsoft\Tracing\facemoodssrv_RASMANCS
    Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
    Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7B089B94-D1DC-4C6B-87E1-8156E22C1D96}
    Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ASUS_Screensaver
    Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdUtility
    Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
    Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
    Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{660E6F4F-840D-436D-B668-433D9591BAC5}
    Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
    Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}
    Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{E7435878-65B9-44D1-A443-81754E5DFC90}
    Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}
    Key Found : [x64] HKLM\SOFTWARE\DeviceVM
    Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
    Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]

    ***** [ Browsers ] *****

    -\\ Internet Explorer v8.0.7600.17267

    Setting Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [SearchAssistant] - hxxp://start.facemoods.com/?a=ddrnw&s={searchTerms}&f=4

    -\\ Mozilla Firefox v26.0 (en-US)

    [ File : C:\Users\Matt\AppData\Roaming\Mozilla\Firefox\Profiles\1zo07rds.default-1387391116230\prefs.js ]

    Line Found : user_pref("aol_toolbar.aolmail.address", "");
    Line Found : user_pref("aol_toolbar.aolmail.count", "0");
    Line Found : user_pref("aol_toolbar.aolmail.id", "value");
    Line Found : user_pref("aol_toolbar.aolmail.imagelist.layout", "empty");
    Line Found : user_pref("aol_toolbar.aolmail.popup.autoclose", "true");
    Line Found : user_pref("aol_toolbar.aolmail.user", "");
    Line Found : user_pref("aol_toolbar.button.1363278395898_138739 2347820.view", "1");
    Line Found : user_pref("aol_toolbar.buttons.defaultview", 1);
    Line Found : user_pref("aol_toolbar.buttons.layout", "1363278395898_1387392347820;mapquest_40872;netflix_46519;techcrunch_47552;ebay_46278");
    Line Found : user_pref("aol_toolbar.calendar.date", "{system.date.timestamp}");
    Line Found : user_pref("aol_toolbar.calendar.displaydate", "{system.date.locale}");
    Line Found : user_pref("aol_toolbar.calendar.timestamp", "1387405197014");
    Line Found : user_pref("aol_toolbar.cookie.homepage", "0");
    Line Found : user_pref("aol_toolbar.cookie.newtab", "0");
    Line Found : user_pref("aol_toolbar.cookie.search", "0");
    Line Found : user_pref("aol_toolbar.curtain.congrats", "curtain");
    Line Found : user_pref("aol_toolbar.default.historybutton.num", "3");
    Line Found : user_pref("aol_toolbar.default.homepage.check", false);
    Line Found : user_pref("aol_toolbar.default.newtab.check", false);
    Line Found : user_pref("aol_toolbar.default.search.check", false);
    Line Found : user_pref("aol_toolbar.firsttime.showwindow", false);
    Line Found : user_pref("aol_toolbar.guid", "{9C002330-9B57-3D84-8EA8-4D4316CB9EE4}");
    Line Found : user_pref("aol_toolbar.historybutton.active", true);
    Line Found : user_pref("aol_toolbar.historybutton.enabled", true);
    Line Found : user_pref("aol_toolbar.historybutton.ignoreids", "");
    Line Found : user_pref("aol_toolbar.homepageprotection.enabled", false);
    Line Found : user_pref("aol_toolbar.install.distroid", "");
    Line Found : user_pref("aol_toolbar.install.lastTbVersion", "5.74.1.9838");
    Line Found : user_pref("aol_toolbar.install.lid", "hyplognew00000010");
    Line Found : user_pref("aol_toolbar.install.mtmhp", "hyplogusaolp00000015");
    Line Found : user_pref("aol_toolbar.install.ncid", "download");
    Line Found : user_pref("aol_toolbar.install.sethomepage", "0");
    Line Found : user_pref("aol_toolbar.install.setnewtab", "0");
    Line Found : user_pref("aol_toolbar.install.setsearch", "0");
    Line Found : user_pref("aol_toolbar.install.type", "new");
    Line Found : user_pref("aol_toolbar.metrics.activestampdate", "18");
    Line Found : user_pref("aol_toolbar.metrics.activestampmonth", "11");
    Line Found : user_pref("aol_toolbar.metrics.activestampyear", "2013");
    Line Found : user_pref("aol_toolbar.metrics.log", false);
    Line Found : user_pref("aol_toolbar.metrics.originalDate", "18");
    Line Found : user_pref("aol_toolbar.metrics.originalHours", "5");
    Line Found : user_pref("aol_toolbar.metrics.originalMinutes", "0");
    Line Found : user_pref("aol_toolbar.metrics.originalMonth", "12");
    Line Found : user_pref("aol_toolbar.metrics.originalSeconds", "0");
    Line Found : user_pref("aol_toolbar.metrics.originalYear", "2013");
    Line Found : user_pref("aol_toolbar.presethomepage", "aol.com");
    Line Found : user_pref("aol_toolbar.presetnewtab", "about:newtab");
    Line Found : user_pref("aol_toolbar.presetsearch", "Google");
    Line Found : user_pref("aol_toolbar.relatednews.enabled", false);
    Line Found : user_pref("aol_toolbar.remote..xml", "1387405197230");
    Line Found : user_pref("aol_toolbar.remote.config.js", "");
    Line Found : user_pref("aol_toolbar.remote.historyconfig.js", "");
    Line Found : user_pref("aol_toolbar.remote.publish.xml", "1387405197230");
    Line Found : user_pref("aol_toolbar.remote.searchterm.js", "");
    Line Found : user_pref("aol_toolbar.rtw.active", false);
    Line Found : user_pref("aol_toolbar.search.button", true);
    Line Found : user_pref("aol_toolbar.search.cid", "18-12-2013");
    Line Found : user_pref("aol_toolbar.search.instd", "9C0023309B573D848EA84D4316CB9EE4");
    Line Found : user_pref("aol_toolbar.search.oid", "18-12-2013");
    Line Found : user_pref("aol_toolbar.search.placement", "right");
    Line Found : user_pref("aol_toolbar.search.populateoncomplete", false);
    Line Found : user_pref("aol_toolbar.search.savehistory", false);
    Line Found : user_pref("aol_toolbar.search.searchtype", "web");
    Line Found : user_pref("aol_toolbar.search.source", "aolrt");
    Line Found : user_pref("aol_toolbar.searchprotection.enabled", false);
    Line Found : user_pref("aol_toolbar.skin.custom", false);
    Line Found : user_pref("aol_toolbar.toolbar.langlocale", "en-US");
    Line Found : user_pref("aol_toolbar.uninstallreset", "3");
    Line Found : user_pref("aol_toolbar.upgrade.showwindow", false);
    Line Found : user_pref("aol_toolbar.weather.condition", "33_n");
    Line Found : user_pref("aol_toolbar.weather.degc", "2");
    Line Found : user_pref("aol_toolbar.weather.degf", "35");
    Line Found : user_pref("aol_toolbar.weather.degrees", "F");
    Line Found : user_pref("aol_toolbar.weather.lastupdate", "");
    Line Found : user_pref("aol_toolbar.weather.locationid", "USNY0996");
    Line Found : user_pref("aol_toolbar.weather.zipcode", "10006");
    Line Found : user_pref("aol_toolbar.widgets.layout", "aolmail,youtube,calendar,weather");
    Line Found : user_pref("aol_toolbar.widgets.log", false);
    Line Found : user_pref("aol_toolbar.widgets.timestamp", "1387392352755");
    Line Found : user_pref("aol_toolbar.widgets.version", "5.74.1.9838");
    Line Found : user_pref("aol_toolbar.youtube.color", "white");
    Line Found : user_pref("aol_toolbar.youtube.id", "0");
    Line Found : user_pref("aol_toolbar.youtube.imagelist.layout", "youtube");
    Line Found : user_pref("aol_toolbar.youtube.lastpage", "0");
    Line Found : user_pref("aol_toolbar.youtube.lasttab", "0");
    Line Found : user_pref("aol_toolbar.youtube.timestamp", "0");

    -\\ Google Chrome v

    [ File : C:\Users\Matt\AppData\Local\Google\Chrome\User Data\Default\preferences ]


    *************************

    AdwCleaner[R0].txt - [13952 octets] - [18/12/2013 17:21:14]

    ########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [14013 octets] ##########

    SecurityCheck:

     Results of screen317's Security Check version 0.99.77 
     Windows 7  x64 (UAC is enabled) 
     Out of date service pack!![/b]
    ``````````````Antivirus/Firewall Check:``````````````[/u]
     Windows Firewall Disabled! 
    avast! Antivirus   
     Antivirus up to date!   
    `````````Anti-malware/Other Utilities Check:`````````[/u]
     MVPS Hosts File 
     Spybot - Search & Destroy
     Malwarebytes Anti-Malware version 1.75.0.1300 
     Java 7 Update 45 
     Adobe Flash Player 11.9.900.170 
     Adobe Reader 10.1.8 Adobe Reader out of Date! 
     Mozilla Firefox (26.0)
    ````````Process Check: objlist.exe by Laurent````````[/u] 
     Comodo Firewall cmdagent.exe
     Comodo Firewall cfp.exe
     Alwil Software Avast5 AvastSvc.exe 
     Alwil Software Avast5 AvastUI.exe 
    `````````````````System Health check`````````````````[/u]
     Total Fragmentation on Drive C: 7%
    ````````````````````End of Log``````````````````````[/u]


    SuperDave

    • Malware Removal Specialist


    • Genius
    • Thanked: 1020
    • Certifications: List
    • Experience: Expert
    • OS: Windows 10
    Re: Malware log
    « Reply #1 on: December 18, 2013, 04:22:23 PM »
    Hello and welcome to Computer Hope Forum. My name is Dave. I will be helping you out with your particular problem on your computer.

    1. I will be working on your Malware issues. This may or may not solve other issues you have with your machine.
    2. The fixes are specific to your problem and should only be used for this issue on this machine.
    3. If you don't know or understand something, please don't hesitate to ask.
    4. Please DO NOT run any other tools or scans while I am helping you.
    5. It is important that you reply to this thread. Do not start a new topic.
    6. Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.
    7. Absence of symptoms does not mean that everything is clear.

    If you can't access the internet with your infected computer you will have to download and transfer any programs to the computer you're using now and transfer them to the infected computer with a CD-RW or a USB storage device. I prefer a CD because a storage device can get infected. If you use a storage device hold the shift key down while inserting the USB storage device for about 10 secs. You will also have to transfer the logs you receive back to the good computer using the same method until we can get the computer back on-line.
    *************************************************************************
    Please run MBAM even if you can't update it.

    Remove the Adware:
    • Please close all open programs and internet browsers.
    • Double click on adwcleaner.exe to run the tool.
    • Click on Delete.
    • Confirm each time with OK
    • Your computer will be rebooted automatically. A text file will open after the restart.
    • Please post the content of that logfile in your reply.
    • You can find the logfile at C:\AdwCleaner[Sn].txt as well - n is the order number.
    ************************************************
    Please download Junkware Removal Tool to your desktop.

    Warning! Once the scan is complete JRT will shut down your browser with NO warning.

    Shut down your protection software now to avoid potential conflicts.

    •Temporarily disable your Antivirus and any Antispyware real time protection before performing a scan. Click this link to see a list of security programs that should be disabled and how to disable them.

    •Run the tool by double-clicking it. If you are using Windows Vista or Windows 7, right-click JRT and select Run as Administrator

    •The tool will open and start scanning your system.

    •Please be patient as this can take a while to complete depending on your system's specifications.

    •On completion, a log (JRT.txt) is saved to your desktop and will automatically open.

    •Copy and Paste the JRT.txt log into your next message.
    Windows 8 and Windows 10 dual boot with two SSD's

    AlwaysScrewed

      Topic Starter


      Intermediate

      Re: Malware log
      « Reply #2 on: December 18, 2013, 04:30:25 PM »
      There is no "delete" in AdwCleaner. There is just "Clean"

      Is that what you mean? There are also Registry items that appear in AdwCleaner as well yet you said to get rid of everything that appeared. I thought messing with the registry was bad?

      Are you sure doing this is safe? Should I really remove these registry items that appeared in AdwCleaner?

      SuperDave

      • Malware Removal Specialist


      • Genius
      • Thanked: 1020
      • Certifications: List
      • Experience: Expert
      • OS: Windows 10
      Re: Malware log
      « Reply #3 on: December 18, 2013, 07:31:36 PM »
      Quote
      Is that what you mean? There are also Registry items that appear in AdwCleaner as well yet you said to get rid of everything that appeared. I thought messing with the registry was bad?

      Are you sure doing this is safe? Should I really remove these registry items that appeared in AdwCleaner?
      Yes, click the Clean button. Messing with the Registry using the command regedit is not advised but using AdwCleaner to clean out bad registry items is quite safe.
      Windows 8 and Windows 10 dual boot with two SSD's

      AlwaysScrewed

        Topic Starter


        Intermediate

        Re: Malware log
        « Reply #4 on: December 20, 2013, 12:31:12 PM »
        AdwCleaner:

        # AdwCleaner v3.015 - Report created 19/12/2013 at 10:59:39
        # Updated 10/12/2013 by Xplode
        # Operating System : Windows 7 Home Premium  (64 bits)
        # Username : Matt - MATT-PC
        # Running from : C:\Users\Matt\Documents\My Downloads\adwcleaner.exe
        # Option : Clean

        ***** [ Services ] *****


        ***** [ Files / Folders ] *****

        Folder Deleted : C:\Program Files (x86)\Conduit
        Folder Deleted : C:\Program Files (x86)\Common Files\Software Update Utility
        Folder Deleted : C:\Users\Matt\AppData\Local\PackageAware
        Folder Deleted : C:\Users\Matt\AppData\LocalLow\Conduit
        File Deleted : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.dll
        File Deleted : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.xpt
        File Deleted : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.dll
        File Deleted : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.xpt
        File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\avg-secure-search.xml
        File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\fcmdSrch.xml

        ***** [ Shortcuts ] *****


        ***** [ Registry ] *****

        Key Deleted : HKLM\SOFTWARE\Classes\AppID\dnu.EXE
        Key Deleted : HKLM\SOFTWARE\Classes\AppID\WLXQuickTimeShellExt.DLL
        Key Deleted : HKLM\SOFTWARE\Classes\dnUpdate
        Key Deleted : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUIBrowser
        Key Deleted : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUIBrowser.1
        Key Deleted : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUpdController
        Key Deleted : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUpdController.1
        Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32
        Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS
        Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_veoh_RASAPI32
        Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_veoh_RASMANCS
        Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\facemoodssrv_RASAPI32
        Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\facemoodssrv_RASMANCS
        Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ASUS_Screensaver
        Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2653012
        Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
        Key Deleted : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0}
        Key Deleted : HKLM\SOFTWARE\Classes\AppID\{6C259840-5BA8-46E6-8ED1-EF3BA47D8BA1}
        Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B27D9527-3762-4D71-963D-FB7A94FDD678}
        Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
        Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2974C985-8151-4DE5-B23C-B875F0A8522F}
        Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
        Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7B089B94-D1DC-4C6B-87E1-8156E22C1D96}
        Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
        Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}
        Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E15A9BFD-D16D-496D-8222-44CADF316E70}
        Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
        Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
        Key Deleted : HKLM\SOFTWARE\Classes\Interface\{660E6F4F-840D-436D-B668-433D9591BAC5}
        Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
        Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}
        Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7435878-65B9-44D1-A443-81754E5DFC90}
        Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}
        Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{92380354-381A-471F-BE2E-DD9ACD9777EA}
        Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
        Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
        Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2974C985-8151-4DE5-B23C-B875F0A8522F}
        Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64182481-4F71-486B-A045-B233BD0DA8FC}
        Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7B089B94-D1DC-4C6B-87E1-8156E22C1D96}
        Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
        Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
        Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DB4E9724-F518-4DFD-9C7C-78B52103CAB9}
        Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
        Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{64182481-4F71-486B-A045-B233BD0DA8FC}
        Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
        Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
        Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DB4E9724-F518-4DFD-9C7C-78B52103CAB9}
        Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7B089B94-D1DC-4C6B-87E1-8156E22C1D96}
        Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0D7562AE-8EF6-416D-A838-AB665251703A}
        Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{443789B7-F39C-4B5C-9287-DA72D38F4FE6}
        Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
        Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
        Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{443789B7-F39C-4B5C-9287-DA72D38F4FE6}
        Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
        Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
        Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
        Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
        Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{660E6F4F-840D-436D-B668-433D9591BAC5}
        Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
        Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}
        Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E7435878-65B9-44D1-A443-81754E5DFC90}
        Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}
        Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
        Key Deleted : HKCU\Software\IGearSettings
        Key Deleted : HKCU\Software\YahooPartnerToolbar
        Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
        Key Deleted : HKLM\Software\Conduit
        Key Deleted : HKLM\Software\DeviceVM
        Key Deleted : HKLM\Software\firstsearch
        Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdUtility
        Key Deleted : [x64] HKLM\SOFTWARE\DeviceVM

        ***** [ Browsers ] *****

        -\\ Internet Explorer v8.0.7600.17267

        Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [SearchAssistant]

        -\\ Mozilla Firefox v26.0 (en-US)

        [ File : C:\Users\Matt\AppData\Roaming\Mozilla\Firefox\Profiles\1zo07rds.default-1387391116230\prefs.js ]

        Line Deleted : user_pref("aol_toolbar.aolmail.address", "");
        Line Deleted : user_pref("aol_toolbar.aolmail.count", "0");
        Line Deleted : user_pref("aol_toolbar.aolmail.id", "value");
        Line Deleted : user_pref("aol_toolbar.aolmail.imagelist.layout", "empty");
        Line Deleted : user_pref("aol_toolbar.aolmail.popup.autoclose", "true");
        Line Deleted : user_pref("aol_toolbar.aolmail.user", "");
        Line Deleted : user_pref("aol_toolbar.button.1363278395898_138739 2347820.view", "1");
        Line Deleted : user_pref("aol_toolbar.buttons.defaultview", 1);
        Line Deleted : user_pref("aol_toolbar.buttons.layout", "1363278395898_1387392347820;mapquest_40872;netflix_46519;techcrunch_47552;ebay_46278");
        Line Deleted : user_pref("aol_toolbar.calendar.date", "{system.date.timestamp}");
        Line Deleted : user_pref("aol_toolbar.calendar.displaydate", "{system.date.locale}");
        Line Deleted : user_pref("aol_toolbar.calendar.timestamp", "1387405942666");
        Line Deleted : user_pref("aol_toolbar.cookie.homepage", "0");
        Line Deleted : user_pref("aol_toolbar.cookie.newtab", "0");
        Line Deleted : user_pref("aol_toolbar.cookie.search", "0");
        Line Deleted : user_pref("aol_toolbar.curtain.congrats", "curtain");
        Line Deleted : user_pref("aol_toolbar.default.historybutton.num", "3");
        Line Deleted : user_pref("aol_toolbar.default.homepage.check", false);
        Line Deleted : user_pref("aol_toolbar.default.newtab.check", false);
        Line Deleted : user_pref("aol_toolbar.default.search.check", false);
        Line Deleted : user_pref("aol_toolbar.firsttime.showwindow", false);
        Line Deleted : user_pref("aol_toolbar.guid", "{9C002330-9B57-3D84-8EA8-4D4316CB9EE4}");
        Line Deleted : user_pref("aol_toolbar.historybutton.active", true);
        Line Deleted : user_pref("aol_toolbar.historybutton.enabled", true);
        Line Deleted : user_pref("aol_toolbar.historybutton.ignoreids", "");
        Line Deleted : user_pref("aol_toolbar.homepageprotection.enabled", false);
        Line Deleted : user_pref("aol_toolbar.install.distroid", "");
        Line Deleted : user_pref("aol_toolbar.install.lastTbVersion", "5.74.1.9838");
        Line Deleted : user_pref("aol_toolbar.install.lid", "hyplognew00000010");
        Line Deleted : user_pref("aol_toolbar.install.mtmhp", "hyplogusaolp00000015");
        Line Deleted : user_pref("aol_toolbar.install.ncid", "download");
        Line Deleted : user_pref("aol_toolbar.install.sethomepage", "0");
        Line Deleted : user_pref("aol_toolbar.install.setnewtab", "0");
        Line Deleted : user_pref("aol_toolbar.install.setsearch", "0");
        Line Deleted : user_pref("aol_toolbar.install.type", "new");
        Line Deleted : user_pref("aol_toolbar.metrics.activestampdate", "18");
        Line Deleted : user_pref("aol_toolbar.metrics.activestampmonth", "11");
        Line Deleted : user_pref("aol_toolbar.metrics.activestampyear", "2013");
        Line Deleted : user_pref("aol_toolbar.metrics.log", false);
        Line Deleted : user_pref("aol_toolbar.metrics.originalDate", "18");
        Line Deleted : user_pref("aol_toolbar.metrics.originalHours", "5");
        Line Deleted : user_pref("aol_toolbar.metrics.originalMinutes", "0");
        Line Deleted : user_pref("aol_toolbar.metrics.originalMonth", "12");
        Line Deleted : user_pref("aol_toolbar.metrics.originalSeconds", "0");
        Line Deleted : user_pref("aol_toolbar.metrics.originalYear", "2013");
        Line Deleted : user_pref("aol_toolbar.presethomepage", "aol.com");
        Line Deleted : user_pref("aol_toolbar.presetnewtab", "about:newtab");
        Line Deleted : user_pref("aol_toolbar.presetsearch", "Google");
        Line Deleted : user_pref("aol_toolbar.relatednews.enabled", false);
        Line Deleted : user_pref("aol_toolbar.remote..xml", "1387405942556");
        Line Deleted : user_pref("aol_toolbar.remote.config.js", "");
        Line Deleted : user_pref("aol_toolbar.remote.historyconfig.js", "");
        Line Deleted : user_pref("aol_toolbar.remote.publish.xml", "1387405942556");
        Line Deleted : user_pref("aol_toolbar.remote.searchterm.js", "");
        Line Deleted : user_pref("aol_toolbar.rtw.active", false);
        Line Deleted : user_pref("aol_toolbar.search.button", true);
        Line Deleted : user_pref("aol_toolbar.search.cid", "18-12-2013");
        Line Deleted : user_pref("aol_toolbar.search.instd", "9C0023309B573D848EA84D4316CB9EE4");
        Line Deleted : user_pref("aol_toolbar.search.oid", "18-12-2013");
        Line Deleted : user_pref("aol_toolbar.search.placement", "right");
        Line Deleted : user_pref("aol_toolbar.search.populateoncomplete", false);
        Line Deleted : user_pref("aol_toolbar.search.savehistory", false);
        Line Deleted : user_pref("aol_toolbar.search.searchtype", "web");
        Line Deleted : user_pref("aol_toolbar.search.source", "aolrt");
        Line Deleted : user_pref("aol_toolbar.searchprotection.enabled", false);
        Line Deleted : user_pref("aol_toolbar.skin.custom", false);
        Line Deleted : user_pref("aol_toolbar.toolbar.langlocale", "en-US");
        Line Deleted : user_pref("aol_toolbar.uninstallreset", "3");
        Line Deleted : user_pref("aol_toolbar.upgrade.showwindow", false);
        Line Deleted : user_pref("aol_toolbar.weather.condition", "33_n");
        Line Deleted : user_pref("aol_toolbar.weather.degc", "2");
        Line Deleted : user_pref("aol_toolbar.weather.degf", "35");
        Line Deleted : user_pref("aol_toolbar.weather.degrees", "F");
        Line Deleted : user_pref("aol_toolbar.weather.lastupdate", "");
        Line Deleted : user_pref("aol_toolbar.weather.locationid", "USNY0996");
        Line Deleted : user_pref("aol_toolbar.weather.zipcode", "10006");
        Line Deleted : user_pref("aol_toolbar.widgets.layout", "aolmail,youtube,calendar,weather");
        Line Deleted : user_pref("aol_toolbar.widgets.log", false);
        Line Deleted : user_pref("aol_toolbar.widgets.timestamp", "1387392352755");
        Line Deleted : user_pref("aol_toolbar.widgets.version", "5.74.1.9838");
        Line Deleted : user_pref("aol_toolbar.youtube.color", "white");
        Line Deleted : user_pref("aol_toolbar.youtube.id", "0");
        Line Deleted : user_pref("aol_toolbar.youtube.imagelist.layout", "youtube");
        Line Deleted : user_pref("aol_toolbar.youtube.lastpage", "0");
        Line Deleted : user_pref("aol_toolbar.youtube.lasttab", "0");
        Line Deleted : user_pref("aol_toolbar.youtube.timestamp", "0");

        -\\ Google Chrome v

        [ File : C:\Users\Matt\AppData\Local\Google\Chrome\User Data\Default\preferences ]


        *************************

        AdwCleaner[R0].txt - [14154 octets] - [18/12/2013 17:21:14]
        AdwCleaner[R1].txt - [14215 octets] - [19/12/2013 10:58:49]
        AdwCleaner[S0].txt - [13834 octets] - [19/12/2013 10:59:39]

        ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [13895 octets] ##########

        JRT:

        ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
        Junkware Removal Tool (JRT) by Thisisu
        Version: 6.0.8 (11.05.2013:1)
        OS: Windows 7 Home Premium x64
        Ran by Matt on Fri 12/20/2013 at 14:08:38.12
        ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




        ~~~ Services



        ~~~ Registry Values



        ~~~ Registry Keys



        ~~~ Files

        Successfully deleted: [File] "C:\users\default user\start menu\programs\startup\best buy pc app.lnk"



        ~~~ Folders

        Successfully deleted: [Folder] "C:\ProgramData\best buy pc app"
        Successfully deleted: [Folder] "C:\Users\Matt\appdata\local\best buy pc app"
        Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin"



        ~~~ FireFox

        Successfully deleted: [Folder] C:\Users\Matt\AppData\Roaming\mozilla\firefox\profiles\1zo07rds.default-1387391116230\extensions\{7affbfae-c4e2-4915-8c0f-00fa3ec610a1}
        Emptied folder: C:\Users\Matt\AppData\Roaming\mozilla\firefox\profiles\1zo07rds.default-1387391116230\minidumps [1 files]



        ~~~ Event Viewer Logs were cleared





        ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
        Scan was completed on Fri 12/20/2013 at 14:22:37.65
        End of JRT log
        ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


        SuperDave

        • Malware Removal Specialist


        • Genius
        • Thanked: 1020
        • Certifications: List
        • Experience: Expert
        • OS: Windows 10
        Re: Malware log
        « Reply #5 on: December 20, 2013, 12:56:46 PM »
        Were you able to run MBAM?

        I'd like to scan your machine with ESET OnlineScan

        •Hold down Control and click on the following link to open ESET OnlineScan in a new window.
        ESET OnlineScan

        •Click the button.
        •For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
        • Click on to download the ESET Smart Installer. Save it to your desktop.
        • Double click on the icon on your desktop.
        •Check
        •Click the button.
        •Accept any security warnings from your browser.
        • Leave the check mark next to Remove found threats.
        •Check
        •Push the Start button.
        •ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
        •When the scan completes, push
        •Push , and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
        •Push the button.
        •Push
        A log file will be saved here: C:\Program Files\ESET\ESET Online Scanner\log.txt
        Windows 8 and Windows 10 dual boot with two SSD's

        AlwaysScrewed

          Topic Starter


          Intermediate

          Re: Malware log
          « Reply #6 on: December 20, 2013, 01:58:12 PM »
          No.

          I cannot do what you suggested as it is getting stuck at 15% and not going any farther. It said "Unexpected error 2002"

          So... what am I supposed to do now?

          SuperDave

          • Malware Removal Specialist


          • Genius
          • Thanked: 1020
          • Certifications: List
          • Experience: Expert
          • OS: Windows 10
          Re: Malware log
          « Reply #7 on: December 20, 2013, 07:01:09 PM »
          No.

          I cannot do what you suggested as it is getting stuck at 15% and not going any farther. It said "Unexpected error 2002"

          So... what am I supposed to do now?
          Can you run the ESET scan?
          Windows 8 and Windows 10 dual boot with two SSD's

          AlwaysScrewed

            Topic Starter


            Intermediate

            Re: Malware log
            « Reply #8 on: December 20, 2013, 07:08:53 PM »

            SuperDave

            • Malware Removal Specialist


            • Genius
            • Thanked: 1020
            • Certifications: List
            • Experience: Expert
            • OS: Windows 10
            Re: Malware log
            « Reply #9 on: December 21, 2013, 12:37:46 PM »
            To Run the SFC /SCANNOW Command in Windows 7
            1. Open an elevated command prompt.

            2. To Scan and Repair System Files
            NOTE: Scans the integrity of all protected system files and repairs the system files if needed.
            A) In the elevated command prompt, type sfc /scannow and press Enter. (see screenshot below)
            NOTE: This may take some time to finish.



            B) Go to step 4.

            3. To Only Verify if the System Files are Corrupted
            NOTE: Scans and only verifies the integrity of all proteced system files only.
            A) In the elevated command prompt, type sfc /verifyonly and press Enter.

            4. When the scan is complete, hopefully you will see all is ok like the screenshot below.
            NOTE: If not, then you can attempt to run a System Restore using a restore point dated before the bad file occured to fix it. You may need to repeat doing a System Restore until you find a older restore point that may work.



            5. When done, close the elevated command prompt.
            Windows 8 and Windows 10 dual boot with two SSD's

            AlwaysScrewed

              Topic Starter


              Intermediate

              Re: Malware log
              « Reply #10 on: December 21, 2013, 06:01:22 PM »
              I did it and it did say the same thing in your screenshot.

              Now what?

              SuperDave

              • Malware Removal Specialist


              • Genius
              • Thanked: 1020
              • Certifications: List
              • Experience: Expert
              • OS: Windows 10
              Re: Malware log
              « Reply #11 on: December 22, 2013, 11:25:57 AM »
              Can you try a System Restore to before the problem started?
              Windows 8 and Windows 10 dual boot with two SSD's

              AlwaysScrewed

                Topic Starter


                Intermediate

                Re: Malware log
                « Reply #12 on: December 22, 2013, 01:25:47 PM »
                I did the System Restore but the same problem is still occurring.

                Am I screwed now...?

                 :'(

                SuperDave

                • Malware Removal Specialist


                • Genius
                • Thanked: 1020
                • Certifications: List
                • Experience: Expert
                • OS: Windows 10
                Re: Malware log
                « Reply #13 on: December 22, 2013, 06:51:52 PM »
                Ok, please try this: Re-boot in Safe Mode and try to run MBAM.
                Windows 8 and Windows 10 dual boot with two SSD's

                AlwaysScrewed

                  Topic Starter


                  Intermediate

                  Re: Malware log
                  « Reply #14 on: December 22, 2013, 08:32:31 PM »
                  Ok, please try this: Re-boot in Safe Mode and try to run MBAM.

                  It ran but I cannot update it because you said "Safe Mode" and not "Safe Mode with Networking"