Just nu i M3-nätverket
Gå till innehåll

Josefin upplever datorn som seg


cybertears

Rekommendera Poster

Josefin upplever datorn som seg och att program hänger sig allt för ofta

 

Om man kollar igenom FRST loggen lite så ser jag 

 

() C:\Program Files (x86)\Mobogenie\DaemonProcess.exe

 

HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = http://www2.delta-search.com/?affID=121562&tt=gc_&babsrc=HP_ss&mntrId=C6DC4C72B9F6BD23

 

Jag har kollat igenom och avinstallerat massa tillägg i chrome.

 

MySearchDial såg jag också, ska det också avinstalleras?

 

Adobe Flash Player 12 Plugin ska jag uppdatera till henne för den är gammal.

 

AVG Nation toolbar är det bara att avinstallera rakt av?

 

BrowserProtect har en ATTENTION varning.

 

Delta toolbar ska avinstalleras.

 

Mobogenie har också en varning, ska jag testa att avinstallera den?

 

Search Protect har också en varning.

 

Yontoo har också en varning.

 

Valokuvavalikoima känner jag inte alls igen.

FRST.txt

Addition.txt

Länk till kommentar
Dela på andra webbplatser

MySearchDial, AVG Nation toolbar, BrowserProtect, DefaultTab, Delta toolbar, Mobogenie och Yontooo ska avinstalleras (i den mån det går).

Däremot om man avinstallerar Search Protect får man problem med den avinstalleraren är så vansinnigt dålig, så den ska man låta AdwCleaner ta bort i stället.

 

Valokuvavalikoima är nog något Microsoft-program på finska eller estniska eftersom något Windows Live ser ut vara på det språket också.

 

Starta om datorn efter avinstallationerna. Kör sen AdwCleaner.

Länk till kommentar
Dela på andra webbplatser

MySearchDial
AVG Nation toolbar

DefaultTab
Delta toolbar och Yontooo fanns inte under Lägg till/Ta bort program

detta fanns:

BrowserProtect
Mobogenie  och är avinstallerat.

 

flash player har avinstallerats

Länk till kommentar
Dela på andra webbplatser

# AdwCleaner v4.101 - Report created 19/11/2014 at 16:05:04
# Updated 09/11/2014 by Xplode
# Database : 2014-11-16.1 [Live]
# Operating System : Windows 8.1  (64 bits)
# Username : IMA - JOSSE
# Running from : C:\Users\IMA\Desktop\adwcleaner_4.101.exe
# Option : Scan

***** [ Services ] *****

***** [ Files / Folders ] *****

File Found : C:\Users\IMA\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences
File Found : C:\Users\IMA\AppData\Local\mysearchdial_speedial_v9.0.2.crx
File Found : C:\Users\IMA\daemonprocess.txt
File Found : C:\WINDOWS\System32\roboot64.exe
Folder Found : C:\Program Files (x86)\MyPC Backup
Folder Found : C:\Program Files (x86)\PC Performer
Folder Found : C:\ProgramData\Babylon
Folder Found : C:\ProgramData\BrowserProtect
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Performer
Folder Found : C:\ProgramData\ParetoLogic
Folder Found : C:\ProgramData\Tarma Installer
Folder Found : C:\Users\IMA\AppData\Local\genienext
Folder Found : C:\Users\IMA\AppData\Local\Mobogenie
Folder Found : C:\Users\IMA\AppData\LocalLow\Delta
Folder Found : C:\Users\IMA\AppData\Roaming\Babylon
Folder Found : C:\Users\IMA\AppData\Roaming\DriverCure
Folder Found : C:\Users\IMA\AppData\Roaming\dvdvideosoftiehelpers
Folder Found : C:\Users\IMA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserProtect
Folder Found : C:\Users\IMA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie
Folder Found : C:\Users\IMA\AppData\Roaming\Mysearchdial
Folder Found : C:\Users\IMA\AppData\Roaming\newnext.me
Folder Found : C:\Users\IMA\AppData\Roaming\OpenCandy
Folder Found : C:\Users\IMA\AppData\Roaming\ParetoLogic
Folder Found : C:\Users\IMA\AppData\Roaming\SpeedTestAnalysis
Folder Found : C:\Users\IMA\Documents\Mobogenie
Folder Found : C:\Users\wangjihua\AppData\Local\Mobogenie
Folder Found : C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\defaulttab
Folder Found : C:\WINDOWS\SysWOW64\SearchProtect

***** [ Scheduled Tasks ] *****

Task Found : BrowserProtect

***** [ Shortcuts ] *****

***** [ Registry ] *****

Key Found : HKCU\Software\808a8ae76eee49
Key Found : HKCU\Software\DataMngr
Key Found : HKCU\Software\DataMngr_Toolbar
Key Found : HKCU\Software\Google\Chrome\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp
Key Found : HKCU\Software\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Key Found : HKCU\Software\InstallCore
Key Found : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\en.softonic.com
Key Found : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\plants-v-zombies.en.softonic.com
Key Found : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\softonic.com
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{656E7F11-FA7A-7386-D48D-4703073F5997}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{310D38FE-EB4C-467C-8781-B7C2AEB7847D}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Found : HKCU\Software\Myfree Codec
Key Found : HKCU\Software\mysearchdial
Key Found : HKCU\Software\ParetoLogic
Key Found : HKCU\Software\PerformerSoft
Key Found : HKCU\Software\Softonic
Key Found : [x64] HKCU\Software\DataMngr
Key Found : [x64] HKCU\Software\DataMngr_Toolbar
Key Found : [x64] HKCU\Software\InstallCore
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{656E7F11-FA7A-7386-D48D-4703073F5997}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Found : [x64] HKCU\Software\Myfree Codec
Key Found : [x64] HKCU\Software\mysearchdial
Key Found : [x64] HKCU\Software\ParetoLogic
Key Found : [x64] HKCU\Software\PerformerSoft
Key Found : [x64] HKCU\Software\Softonic
Key Found : HKLM\SOFTWARE\808a8ae76eee49
Key Found : HKLM\SOFTWARE\Babylon
Key Found : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Found : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Found : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Key Found : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Key Found : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Key Found : HKLM\SOFTWARE\Classes\AppID\{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}
Key Found : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
Key Found : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Found : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Found : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{D40753C7-8A59-4C1F-BE88-C300F4624D5B}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Found : HKLM\SOFTWARE\Classes\esrv.mysearchdialesrvc
Key Found : HKLM\SOFTWARE\Classes\esrv.mysearchdialesrvc.1
Key Found : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : HKLM\SOFTWARE\Classes\Prod.cap
Key Found : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Key Found : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Key Found : HKLM\SOFTWARE\DataMngr
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Key Found : HKLM\SOFTWARE\InstallCore
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{219046AE-358F-4CF1-B1FD-2B4DE83642A8}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Found : HKLM\SOFTWARE\Myfree Codec
Key Found : HKLM\SOFTWARE\ParetoLogic
Key Found : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WajamUpdater
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Found : [x64] HKLM\SOFTWARE\Tarma Installer
Value Found : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Value Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [NextLive]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17416

Setting Found : HKCU\Software\Microsoft\Internet Explorer\Main [start Page] - hxxp://search.conduit.com/?gd=&ctid=CT3314958&octid=EB_ORIGINAL_CTID&ISID=ME9FAE90C-DD6C-4C8D-B2AC-0C0CEA41C6B2&SearchSource=55&CUI=&UM=5&UP=SP6A5F4404-D898-4AC4-9C96-2003BB95FD32&SSPV=
Setting Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [start Page] - hxxp://start.mysearchdial.com/?f=1&a=dnldmsd&cd=2XzuyEtN2Y1L1QzuyE0CyBtB0Bzy0FyC0B0DtBtA0C0BtBzztN0D0Tzu0CyCyEzytN1L2XzutBtFtBtFyEtFyBtAtCtN1L1Czu1Q1G1I1Q1H1B1Q&cr=902065565&ir=

-\\ Google Chrome v38.0.2125.111

[C:\Users\IMA\AppData\Local\Google\Chrome\User Data\Default\Web data] - Found [search Provider] : hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=CPDTDF
[C:\Users\IMA\AppData\Local\Google\Chrome\User Data\Default\Web data] - Found [search Provider] : hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=dnldmsd&cd=2XzuyEtN2Y1L1QzuyE0CyBtB0Bzy0FyC0B0DtBtA0C0BtBzztN0D0Tzu0CyCyEzytN1L2XzutBtFtBtFyEtFyBtAtCtN1L1Czu1Q1G1I1Q1H1B1Q&cr=902065565&ir=
[C:\Users\IMA\AppData\Local\Google\Chrome\User Data\Default\Web data] - Found [search Provider] : hxxp://en.softonic.com/s/{searchTerms}

*************************

AdwCleaner[R0].txt - [10695 octets] - [19/11/2014 16:05:04]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [10756 octets] ##########

Länk till kommentar
Dela på andra webbplatser

# AdwCleaner v4.101 - Report created 19/11/2014 at 16:10:08
# Updated 09/11/2014 by Xplode
# Database : 2014-11-16.1 [Live]
# Operating System : Windows 8.1  (64 bits)
# Username : IMA - JOSSE
# Running from : C:\Users\IMA\Desktop\adwcleaner_4.101.exe
# Option : Clean

***** [ Services ] *****

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\BrowserProtect
Folder Deleted : C:\ProgramData\ParetoLogic
Folder Deleted : C:\ProgramData\Tarma Installer
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Performer
Folder Deleted : C:\Program Files (x86)\MyPC Backup
Folder Deleted : C:\Program Files (x86)\PC Performer
Folder Deleted : C:\WINDOWS\SysWOW64\SearchProtect
Folder Deleted : C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\defaulttab
Folder Deleted : C:\Users\IMA\AppData\Local\genienext
Folder Deleted : C:\Users\IMA\AppData\Local\Mobogenie
Folder Deleted : C:\Users\IMA\AppData\LocalLow\Delta
Folder Deleted : C:\Users\IMA\AppData\Roaming\Babylon
Folder Deleted : C:\Users\IMA\AppData\Roaming\DriverCure
Folder Deleted : C:\Users\IMA\AppData\Roaming\dvdvideosoftiehelpers
Folder Deleted : C:\Users\IMA\AppData\Roaming\Mysearchdial
Folder Deleted : C:\Users\IMA\AppData\Roaming\newnext.me
Folder Deleted : C:\Users\IMA\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\IMA\AppData\Roaming\ParetoLogic
Folder Deleted : C:\Users\IMA\AppData\Roaming\SpeedTestAnalysis
Folder Deleted : C:\Users\IMA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserProtect
Folder Deleted : C:\Users\IMA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie
Folder Deleted : C:\Users\IMA\Documents\Mobogenie
Folder Deleted : C:\Users\wangjihua\AppData\Local\Mobogenie
File Deleted : C:\WINDOWS\System32\roboot64.exe
File Deleted : C:\Users\IMA\daemonprocess.txt
File Deleted : C:\Users\IMA\AppData\Local\mysearchdial_speedial_v9.0.2.crx
File Deleted : C:\Users\IMA\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences

***** [ Scheduled Tasks ] *****

Task Deleted : BrowserProtect

***** [ Shortcuts ] *****

***** [ Registry ] *****

Key Deleted : HKCU\Software\Google\Chrome\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp
Key Deleted : HKCU\Software\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Key Deleted : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [NextLive]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Deleted : HKLM\SOFTWARE\Classes\esrv.mysearchdialesrvc
Key Deleted : HKLM\SOFTWARE\Classes\esrv.mysearchdialesrvc.1
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WajamUpdater
Key Deleted : HKCU\Software\808a8ae76eee49
Key Deleted : HKLM\SOFTWARE\808a8ae76eee49
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D40753C7-8A59-4C1F-BE88-C300F4624D5B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{310D38FE-EB4C-467C-8781-B7C2AEB7847D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{219046AE-358F-4CF1-B1FD-2B4DE83642A8}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{656E7F11-FA7A-7386-D48D-4703073F5997}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Key Deleted : HKCU\Software\DataMngr
[#] Key Deleted : HKCU\Software\DataMngr_Toolbar
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\Myfree Codec
Key Deleted : HKCU\Software\mysearchdial
Key Deleted : HKCU\Software\ParetoLogic
Key Deleted : HKCU\Software\PerformerSoft
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKLM\SOFTWARE\Babylon
Key Deleted : HKLM\SOFTWARE\DataMngr
Key Deleted : HKLM\SOFTWARE\InstallCore
Key Deleted : HKLM\SOFTWARE\Myfree Codec
Key Deleted : HKLM\SOFTWARE\ParetoLogic
Key Deleted : [x64] HKLM\SOFTWARE\Tarma Installer
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\en.softonic.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\plants-v-zombies.en.softonic.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\softonic.com

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17416

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [start Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [start Page]

-\\ Google Chrome v38.0.2125.111

[C:\Users\IMA\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [search Provider] : hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=CPDTDF
[C:\Users\IMA\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [search Provider] : hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=dnldmsd&cd=2XzuyEtN2Y1L1QzuyE0CyBtB0Bzy0FyC0B0DtBtA0C0BtBzztN0D0Tzu0CyCyEzytN1L2XzutBtFtBtFyEtFyBtAtCtN1L1Czu1Q1G1I1Q1H1B1Q&cr=902065565&ir=
[C:\Users\IMA\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [search Provider] : hxxp://en.softonic.com/s/{searchTerms}

*************************

AdwCleaner[R0].txt - [10945 octets] - [19/11/2014 16:05:04]
AdwCleaner[s0].txt - [9560 octets] - [19/11/2014 16:10:08]

########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [9620 octets] ##########

Länk till kommentar
Dela på andra webbplatser

Fint, då är det dags för nya FRST-loggar och en Eset-skanning.

Ny FRST logg: FRST.txt

 

Jag vet inte om du vill ha den andra också, det brukar du inte vilja ha men bifogar ändå: Addition.txt

 

Eset skanning håller på att köras.

Länk till kommentar
Dela på andra webbplatser

Kollade igenom Addition lite snabbt och undrar lite över detta:

 

Task: {C6929B8B-EA60-4A89-B338-F75615B51B94} - \DTChk No Task File <==== ATTENTION

 

Total Pagefile: 6667.65 MB   <-- är växlingsfilen inte lite väl stor? kanske därför datorn går lite trögt också pga det?

Available Pagefile: 4535.89 MB

 

CustomCLSID: HKU\S-1-5-21-3172561427-3826061773-3635199243-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\IMA\AppData\Local\Microsoft\SkyDrive\17.0.4029.0217\amd64\FileSyncApi64.dll No File

 

finns inte den pga att det är en registernyckel som är borttagen tro?

om Man kollar i FRST loggen så fundera jag lite över detta vad detta innebär:

 

FF HKLM-x32\...\Firefox\Extensions: [speedtestanalysis@SpeedAnalysis.com] - C:\Users\IMA\AppData\Roaming\Mozilla\Extensions\speedtestanalysis@SpeedAnalysis.com

FF Extension: Speed Test Analysis - C:\Users\IMA\AppData\Roaming\Mozilla\Extensions\speedtestanalysis@SpeedAnalysis.com [2013-12-13]

söker man på speedtestanalysis så står det på google: Speed Test Analysis by PerformerSoft, och PerformerSoft är ju inte känt som världens bästa program som någon vill ha i sin dator.

 

CHR HomePage: Default -> hxxp://www.mysearchresults.com/?c=3523&t=01
CHR StartupUrls: Default -> "hxxp://www.google.se/"
CHR DefaultSearchKeyword: Default -> search here
CHR DefaultSearchURL: Default -> http://www.mysearchresults.com/search?c=3523&t=01&q={searchTerms}

 

Default homepage och startupURLs måste jag nog ändra manuellt eller? 

Länk till kommentar
Dela på andra webbplatser

Kollade igenom Addition lite snabbt och undrar lite över detta:

 

Task: {C6929B8B-EA60-4A89-B338-F75615B51B94} - \DTChk No Task File <==== ATTENTION

Filen har tagits bort vid en avinstallation eller av ett antivirusprogram men referensen till den i schemalagda händelser (Tasks) finns kvar. Referensen kan tas bort med FRST.

 

Total Pagefile: 6667.65 MB   <-- är växlingsfilen inte lite väl stor? kanske därför datorn går lite trögt också pga det?

Available Pagefile: 4535.89 MB

Jo, det är en onödigt stor växlingsfil om man inte håller på med filmredigering eller liknande som behöver väldigt mycket minne. Men det gör inte datorn trög.

 

CustomCLSID: HKU\S-1-5-21-3172561427-3826061773-3635199243-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\IMA\AppData\Local\Microsoft\SkyDrive\17.0.4029.0217\amd64\FileSyncApi64.dll No File

 

finns inte den pga att det är en registernyckel som är borttagen tro?

SkyDrive är avinstallerad och filen är borta men inte registernyckeln. Registernyckeln kan tas bort med FRST.

 

om Man kollar i FRST loggen så fundera jag lite över detta vad detta innebär:

 

FF HKLM-x32\...\Firefox\Extensions: [speedtestanalysis@SpeedAnalysis.com] - C:\Users\IMA\AppData\Roaming\Mozilla\Extensions\speedtestanalysis@SpeedAnalysis.com

FF Extension: Speed Test Analysis - C:\Users\IMA\AppData\Roaming\Mozilla\Extensions\speedtestanalysis@SpeedAnalysis.com [2013-12-13]

 

söker man på speedtestanalysis så står det på google: Speed Test Analysis by PerformerSoft, och PerformerSoft är ju inte känt som världens bästa program som någon vill ha i sin dator.

Alldeles riktigt. Du kan antingen avinstallera den inifrån Firefox eller låta FRST ta bort den.

 

CHR HomePage: Default -> hxxp://www.mysearchresults.com/?c=3523&t=01

CHR StartupUrls: Default -> "hxxp://www.google.se/"

CHR DefaultSearchKeyword: Default -> search here

CHR DefaultSearchURL: Default -> http://www.mysearchresults.com/search?c=3523&t=01&q={searchTerms}

 

Default homepage och startupURLs måste jag nog ändra manuellt eller?

Låt FRST sätta standardvärden först och sen kan du/datorägaren sätta de värden ni vill.
Länk till kommentar
Dela på andra webbplatser

Filen har tagits bort vid en avinstallation eller av ett antivirusprogram men referensen till den i schemalagda händelser (Tasks) finns kvar. Referensen kan tas bort med FRST.

 

Jo, det är en onödigt stor växlingsfil om man inte håller på med filmredigering eller liknande som behöver väldigt mycket minne. Men det gör inte datorn trög.

 

SkyDrive är avinstallerad och filen är borta men inte registernyckeln. Registernyckeln kan tas bort med FRST.

 

Alldeles riktigt. Du kan antingen avinstallera den inifrån Firefox eller låta FRST ta bort den.

 

Låt FRST sätta standardvärden först och sen kan du/datorägaren sätta de värden ni vill.

Hon håller inte på med filmredigering så för henne är det helt onödigt att ha en sådan stor växlingsfil. Men det är bra att du rättar mig, man lär sig nåt nytt varje dag.

 

Tror det är bättre om FRST tar hand om det.

Hur talar man om att FRST ska sätta standardvärden? :) 

Länk till kommentar
Dela på andra webbplatser

Logg från Eset:

 

C:\AdwCleaner\Quarantine\C\Program Files (x86)\PC Performer\PCPerformer.exe.vir a variant of Win32/Systweak potentially unwanted application

 

C:\AdwCleaner\Quarantine\C\Users\IMA\AppData\Local\genienext\nengine.dll.vir Win32/NextLive.A potentially unwanted application

 

C:\AdwCleaner\Quarantine\C\Users\IMA\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie2.2.0.zip.vir a variant of Win32/Mobogenie.A potentially unwanted application

 

C:\AdwCleaner\Quarantine\C\Users\IMA\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\DaemonProcess.exe.vir a variant of Win32/Mobogenie.A potentially unwanted application

 

C:\AdwCleaner\Quarantine\C\Users\IMA\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\Mobogenie.exe.vir a variant of Win32/Mobogenie.A potentially unwanted application

 

C:\AdwCleaner\Quarantine\C\Users\IMA\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\MUServer.apk.vir a variant of Android/Mobserv.A potentially unwanted application

 

C:\AdwCleaner\Quarantine\C\Users\IMA\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\nengine.dll.vir Win32/NextLive.A potentially unwanted application

 

C:\AdwCleaner\Quarantine\C\Users\IMA\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\New_UpdateMoboGenie.exe.vir a variant of Win32/Mobogenie.A potentially unwanted application

 

C:\AdwCleaner\Quarantine\C\Users\IMA\AppData\Roaming\newnext.me\nengine.dll.vir Win32/NextLive.A potentially unwanted application

 

C:\AdwCleaner\Quarantine\C\Users\IMA\AppData\Roaming\OpenCandy\164D1EE2BC6C40E0BD37B3485F7E3076\OCBrowserHelper_1.0.6.125.exe.vir a variant of Win32/OpenCandy.A potentially unsafe application

 

C:\AdwCleaner\Quarantine\C\Users\IMA\AppData\Roaming\SpeedTestAnalysis\install_helper.exe.vir Win32/bProtector.H potentially unwanted application

 

C:\AdwCleaner\Quarantine\C\WINDOWS\SysWOW64\config\sy,stemprofile\AppData\Roaming\defaulttab\defaulttab\DefaultTabBHO.dll.vir a variant of Win32/Toolbar.DefaultTab.B potentially unwanted application

 

C:\AdwCleaner\Quarantine\C\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\DefaultTabStart.exe.vir a variant of Win32/Toolbar.DefaultTab.B potentially unwanted application

 

C:\AdwCleaner\Quarantine\C\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\DefaultTabStart64.exe.vir Win64/Toolbar.DefaultTab.B potentially unwanted application

 

C:\AdwCleaner\Quarantine\C\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\DefaultTabUninstaller.exe.vir Win32/Toolbar.DefaultTab.E potentially unwanted application

 

C:\AdwCleaner\Quarantine\C\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\DefaultTabWrap.dll.vir a variant of Win32/Toolbar.DefaultTab.B potentially unwanted application

 

 

C:\AdwCleaner\Quarantine\C\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\DefaultTabWrap64.dll.vir Win64/Toolbar.DefaultTab.B potentially unwanted application

 

C:\Users\IMA\Documents\FreeYouTubeToMP3Converter.exe Win32/OpenCandy potentially unsafe application

 

C:\Users\IMA\Downloads\FreeSoundRecorder.exe Win32/OpenCandy potentially unsafe application

 

C:\Users\IMA\Downloads\SoftonicDownloader_for_quicktime.exe a variant of Win32/SoftonicDownloader.F potentially unwanted application

 

C:\Users\IMA\Downloads\wzdu18.exe a variant of Win32/Systweak.H potentially unwanted application

 

C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.30_0\plugins\npDefaultTabSearch.dll a variant of Win32/Toolbar.DefaultTab.C potentially unwanted application

 

C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.30_0\plugins\npDefaultTabSearch.dll a variant of 0Win32/Toolbar.DefaultTab.C potentially unwanted application

 

Det mesta har ju AdwCleaner redan tagit hand om :) 

Länk till kommentar
Dela på andra webbplatser

Hur talar man om att FRST ska sätta standardvärden?

Det blir det nedan.

 

Starta Anteckningar.

Kopiera alla rader i rutan:

HKU\S-1-5-21-3172561427-3826061773-3635199243-1001\...\MountPoints2: {47f593b3-b951-11e2-be6e-806e6f6e6963} - "E:\Autorun.exe" 
HKU\S-1-5-21-3172561427-3826061773-3635199243-1001\...\MountPoints2: {769ccfea-bb2b-11e3-bef6-4c72b9f6bd23} - "G:\Startme.exe" 
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
FF HKLM-x32\...\Firefox\Extensions: [speedtestanalysis@SpeedAnalysis.com] - C:\Users\IMA\AppData\Roaming\Mozilla\Extensions\speedtestanalysis@SpeedAnalysis.com
FF Extension: Speed Test Analysis - C:\Users\IMA\AppData\Roaming\Mozilla\Extensions\speedtestanalysis@SpeedAnalysis.com [2013-12-13]
CHR HomePage: Default -> hxxp://www.mysearchresults.com/?c=3523&t=01
CHR DefaultSearchKeyword: Default -> search here
CHR DefaultSearchURL: Default -> http://www.mysearchresults.com/search?c=3523&t=01&q={searchTerms}
CHR DefaultSuggestURL: Default -> 
Task: {5EF92E37-51CF-41EA-8667-3E2C64FD373B} - \DTReg No Task File <==== ATTENTION
Task: {C6929B8B-EA60-4A89-B338-F75615B51B94} - \DTChk No Task File <==== ATTENTION

C:\Users\IMA\Downloads\SoftonicDownloader_for_quicktime.exe
C:\Users\IMA\Downloads\wzdu18.exe
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc
C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc
och klistra in i Anteckningar. Kontrollera att inga filer har delats upp på två rader.

Spara filen på skrivbordet med namnet fixlist.txt.

 

Starta FRST som finns på skrivbordet.

Klicka på knappen Fix.

Vänta tills programmet är klart.

 

Programmet skapar en logg Fixlog.txt på skrivbordet.

Klistra in innehållet i den i ditt svar.

Länk till kommentar
Dela på andra webbplatser

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 20-11-2014
Ran by IMA at 2014-11-21 18:11:27 Run:1
Running from C:\Users\IMA\Desktop
Loaded Profile: IMA (Available profiles: IMA)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
HKU\S-1-5-21-3172561427-3826061773-3635199243-1001\...\MountPoints2: {47f593b3-b951-11e2-be6e-806e6f6e6963} - "E:\Autorun.exe"
HKU\S-1-5-21-3172561427-3826061773-3635199243-1001\...\MountPoints2: {769ccfea-bb2b-11e3-bef6-4c72b9f6bd23} - "G:\Startme.exe"
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF HKLM-x32\...\Firefox\Extensions: [speedtestanalysis@SpeedAnalysis.com] - C:\Users\IMA\AppData\Roaming\Mozilla\Extensions\speedtestanalysis@SpeedAnalysis.com
FF Extension: Speed Test Analysis - C:\Users\IMA\AppData\Roaming\Mozilla\Extensions\speedtestanalysis@SpeedAnalysis.com [2013-12-13]
CHR HomePage: Default -> hxxp://www.mysearchresults.com/?c=3523&t=01
CHR DefaultSearchKeyword: Default -> search here
CHR DefaultSearchURL: Default -> http://www.mysearchresults.com/search?c=3523&t=01&q={searchTerms}
CHR DefaultSuggestURL: Default ->
Task: {5EF92E37-51CF-41EA-8667-3E2C64FD373B} - \DTReg No Task File <==== ATTENTION
Task: {C6929B8B-EA60-4A89-B338-F75615B51B94} - \DTChk No Task File <==== ATTENTION
C:\Users\IMA\Downloads\SoftonicDownloader_for_quicktime.exe
C:\Users\IMA\Downloads\wzdu18.exe
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc
C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc
*****************

"HKU\S-1-5-21-3172561427-3826061773-3635199243-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{47f593b3-b951-11e2-be6e-806e6f6e6963}" => Key deleted successfully.
"HKCR\CLSID\{47f593b3-b951-11e2-be6e-806e6f6e6963}" => Key not found.
"HKU\S-1-5-21-3172561427-3826061773-3635199243-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{769ccfea-bb2b-11e3-bef6-4c72b9f6bd23}" => Key deleted successfully.
"HKCR\CLSID\{769ccfea-bb2b-11e3-bef6-4c72b9f6bd23}" => Key not found.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\speedtestanalysis@SpeedAnalysis.com => value deleted successfully.
C:\Users\IMA\AppData\Roaming\Mozilla\Extensions\speedtestanalysis@SpeedAnalysis.com => Moved successfully.
Chrome HomePage not detected.
Chrome DefaultSearchKeyword deleted successfully.
Chrome DefaultSearchURL deleted successfully.
Chrome DefaultSuggestURL deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5EF92E37-51CF-41EA-8667-3E2C64FD373B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5EF92E37-51CF-41EA-8667-3E2C64FD373B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DTReg" => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C6929B8B-EA60-4A89-B338-F75615B51B94}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C6929B8B-EA60-4A89-B338-F75615B51B94}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DTChk" => Key not found.
C:\Users\IMA\Downloads\SoftonicDownloader_for_quicktime.exe => Moved successfully.
C:\Users\IMA\Downloads\wzdu18.exe => Moved successfully.
"C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc" => File/Directory not found.
C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc => Moved successfully.

==== End of Fixlog ====

Länk till kommentar
Dela på andra webbplatser

Det ser ju bra ut.

 

Om det inte är fler frågor att det dags för dig att avinstallera AdwCleaner och FRST.

Länk till kommentar
Dela på andra webbplatser

Det ser ju bra ut.

 

Om det inte är fler frågor att det dags för dig att avinstallera AdwCleaner och FRST.

Både hon och jag tackar för hjälpen, vi är väldigt tacksamma för din hjälp Cecilia :) 

Länk till kommentar
Dela på andra webbplatser

Arkiverat

Det här ämnet är nu arkiverat och är stängt för ytterligare svar.

×
×
  • Skapa nytt...