I downloaded, installed and ran Malwarebytes

September 14, 2014 at 10:42:34
Specs: Windows 7
It did not remove Astromenda Search nor did it remove ClearThink
Any more suggestions? Would ADW Cleaner work better???

See More: I downloaded, installed and ran Malwarebytes

Report •

#1
September 14, 2014 at 12:26:56
"Would ADW Cleaner work better???"
Lets try. These are the first 2 steps.

Run both of these, in this order.

Step 1: Run AdwCleaner
http://www.softpedia.com/get/Antivi...
http://www.softpedia.com/progScreen...
How to download from Softpedia
http://i.imgur.com/BWELEfV.gif
http://i.imgur.com/4luY3rU.gif
http://www.raymond.cc/blog/adwclean...
http://www.bleepingcomputer.com/dow...
Author's site
http://general-changelog-team.fr/en...
Tutorial
http://general-changelog-team.fr/en...
Close all open programs and internet browsers.
Double click on AdwCleaner.exe to run the tool.
Click on Clean.
Confirm each time with Ok.
Your computer will be rebooted automatically. A text file will open after the restart.
Please Copy & Paste the contents of that logfile with your next answer.
You can find the logfile at C:\AdwCleaner[S1].txt as well.

Step 2: Run Junkware Removal Tool
http://www.softpedia.com/get/Securi...
http://www.softpedia.com/progScreen...
How to download from Softpedia
http://i.imgur.com/qO92huz.gif
http://i.imgur.com/qzTUYkX.gif
http://www.bleepingcomputer.com/dow...
http://thisisudax.blogspot.com.au/2...
Download Junkware Removal Tool onto your Desktop. If your default download location is not the Desktop, drag it out of it's location onto the Desktop.
Warning! Once the scan is complete JRT will shut down your browser with NO warning.
Shut down your protection software now to avoid potential conflicts.
Temporarily disable your antivirus and any antispyware real time protection before performing a scan.
Click this link to see a list of security programs that should be disabled and how to disable them.
http://www.bleepingcomputer.com/for...
http://www.techsupportforum.com/for...
Run the tool by double-clicking it. If you are using Windows Vista or Windows 7/8, right-click JRT and select Run as Administrator.
The tool will open and start scanning your system.
Please be patient as this can take a while to complete depending on your system's specifications.
On completion, a log (JRT.txt) is saved onto your Desktop and will automatically open.
Copy and Paste the contents of the JRT.txt log please.


Report •

#2
September 15, 2014 at 09:27:57
This is the report from my scan with AdwCleaner. I'm assuming I want to get rid of all of these items?
# AdwCleaner v3.310 - Report created 15/09/2014 at 10:21:10
# Updated 12/09/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Acer - ACER-PC
# Running from : C:\Users\Acer\Downloads\adwcleaner_3.310.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage
File Found : C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage-journal
File Found : C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.lyricsfreak.com_0.localstorage
File Found : C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.lyricsfreak.com_0.localstorage-journal
File Found : C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.lyricsmode.com_0.localstorage
File Found : C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.lyricsmode.com_0.localstorage-journal
File Found : C:\Users\Public\Desktop\eBay.lnk
Folder Found : C:\Program Files (x86)\ClearThink
Folder Found : C:\ProgramData\Ask
Folder Found : C:\Users\Acer\AppData\Local\Temp\ClearThink
Folder Found : C:\Users\Acer\AppData\Roaming\UpdaterEX

***** [ Scheduled Tasks ] *****

Task Found : Driver Support-RTMRules
Task Found : Driver Support-RTMScan
Task Found : Driver Support-RTMScanRunOnce
Task Found : Driver Support-RTMUpdater
Task Found : UpdaterEX
Task Found : WSE_Astromenda

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\AppDataLow\ClearThink
Key Found : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.superfish.com
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\UpdaterEX
Key Found : HKCU\Software\UpdaterEX
Key Found : [x64] HKCU\Software\UpdaterEX
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Found : HKLM\SOFTWARE\Classes\Interface\{D8972B0D-B0FB-4158-A567-365283693AD6}
Key Found : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\ClearThink_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\ClearThink_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\ClearThinkUntemp_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\ClearThinkUntemp_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\updateClearThink_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\updateClearThink_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\utilClearThink_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\utilClearThink_RASMANCS
Key Found : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Update ClearThink
Key Found : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Util ClearThink
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{D8972B0D-B0FB-4158-A567-365283693AD6}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ac225167-00fc-452d-94c5-bb93600e7d9a}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ClearThink

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17280


-\\ Google Chrome v

[ File : C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Found [Startup_urls] : hxxp://astromenda.com/?f=7&a=ast_ir_14_35_ch&cd=2XzuyEtN2Y1L1Qzu0Ezzzy0Azz0F0CyEtA0CzytAyEtDyByEtN0D0Tzu0SzyyBtBtN1L2XzutAtFtDtFtCyCtFyCtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyD0DyDtAyB0FyCyBtGtAyBtByCtGtBtBtAyBtGyCtDzz0BtGtCzy0ByE0BzytAyDyDtAyC0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2StD0DtAtAyCzz0CzytGyDtAtAtDtGyEyEtCtAtGzzyByBzztG0FyCtB0D0FyDtAyByD0FyE0C2Q&cr=108677753&uref=308&ir=

*************************

AdwCleaner[R0].txt - [6337 octets] - [15/09/2014 10:21:10]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [6397 octets] ##########


Report •

#3
September 15, 2014 at 09:44:20
guess I jumped the gun - here's the logfile
# AdwCleaner v3.310 - Report created 15/09/2014 at 10:38:21
# Updated 12/09/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Acer - ACER-PC
# Running from : C:\Users\Acer\Downloads\adwcleaner_3.310.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Ask
Folder Deleted : C:\Program Files (x86)\ClearThink
Folder Deleted : C:\Users\Acer\AppData\Local\Temp\ClearThink
Folder Deleted : C:\Users\Acer\AppData\Roaming\UpdaterEX
[x] Not Deleted : C:\Users\Public\Desktop\eBay.lnk
File Deleted : C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage
File Deleted : C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage-journal
File Deleted : C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.lyricsfreak.com_0.localstorage
File Deleted : C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.lyricsfreak.com_0.localstorage-journal
File Deleted : C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.lyricsmode.com_0.localstorage
File Deleted : C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.lyricsmode.com_0.localstorage-journal

***** [ Scheduled Tasks ] *****

Task Deleted : Driver Support-RTMRules
Task Deleted : Driver Support-RTMScan
Task Deleted : Driver Support-RTMScanRunOnce
Task Deleted : Driver Support-RTMUpdater
Task Deleted : UpdaterEX
Task Deleted : WSE_Astromenda

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.superfish.com
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ClearThinkUntemp_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ClearThinkUntemp_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ClearThink_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ClearThink_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updateClearThink_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updateClearThink_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\utilClearThink_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\utilClearThink_RASMANCS
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Update ClearThink
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Util ClearThink
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D8972B0D-B0FB-4158-A567-365283693AD6}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D8972B0D-B0FB-4158-A567-365283693AD6}
Key Deleted : HKCU\Software\UpdaterEX
Key Deleted : HKCU\Software\AppDataLow\ClearThink
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\UpdaterEX
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ac225167-00fc-452d-94c5-bb93600e7d9a}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ClearThink
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17280


-\\ Google Chrome v

[ File : C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Search Provider] : hxxp://www.crawler.com/search/dispatcher.aspx?tp=bs&qkw={searchTerms}&tbid=10002&iwk=271&lng=en
Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
Deleted [Search Provider] : hxxp://dts.search-results.com/sr?src=crb&appid=114&systemid=1&sr=0&q={searchTerms}
Deleted [Search Provider] : hxxp://www.search.ask.com/web?p2=%5EBBK%5EOSJ000%5EYY%5ECA&gct=&o=APN11412&tpid=ORJ-V7C&itbv=12.7.0.15&doi=2014-01-04&apn_uid=4F9BD8DA-6874-4B53-9B10-D923A74CE6ED&apn_ptnrs=BBK&apn_dtid=%5EOSJ000%5EYY%5ECA&apn_dbr=cr_31.0.1650.63&psv=&trgb=CR&q={searchTerms}
Deleted [Search Provider] : hxxp://www.canadiantire.ca/en/search-results.html?searchByTerm=true&q={searchTerms}
Deleted [Startup_urls] : hxxp://astromenda.com/?f=7&a=ast_ir_14_35_ch&cd=2XzuyEtN2Y1L1Qzu0Ezzzy0Azz0F0CyEtA0CzytAyEtDyByEtN0D0Tzu0SzyyBtBtN1L2XzutAtFtDtFtCyCtFyCtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyD0DyDtAyB0FyCyBtGtAyBtByCtGtBtBtAyBtGyCtDzz0BtGtCzy0ByE0BzytAyDyDtAyC0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2StD0DtAtAyCzz0CzytGyDtAtAtDtGyEyEtCtAtGzzyByBzztG0FyCtB0D0FyDtAyByD0FyE0C2Q&cr=108677753&uref=308&ir=

*************************

AdwCleaner[R0].txt - [6557 octets] - [15/09/2014 10:21:10]
AdwCleaner[S0].txt - [6940 octets] - [15/09/2014 10:38:21]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [7000 octets] ##########


Report •

Related Solutions

#4
September 15, 2014 at 10:21:27
Here's the final junkware removal report - I believe all has been repaired!
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Premium x64
Ran by Acer on 15/09/2014 at 11:09:56.15
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


~~~ Services

~~~ Registry Values

~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{A9CD5B41-742D-477F-87B3-AB37F45B5148}

~~~ Files

~~~ Folders

Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{0067B60D-C804-48DB-A128-73E97CB1851A}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{023C903C-2779-44AD-A222-E67572D75124}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{0A9CE554-9834-403E-9D3D-6E93AC4D11C5}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{0C1BFBBB-78DF-4320-B0C5-40C4CC770EEA}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{0CF2D844-5603-4039-A79E-7793175B4F38}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{1504CC6B-03CB-4AAF-8A3B-2F33C035399D}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{17098668-4D95-4B72-80BA-698F890BC548}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{1BDD3F04-0141-478D-8F74-2D51FE02ECB1}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{2657A717-E286-4658-ACE4-C4692574A970}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{384C72B4-7C2D-40A5-A835-5B4246CA2395}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{406E0398-9263-448E-BEDC-170BABB983BE}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{4355D46C-6F37-49EB-B84D-2808E14E1556}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{5A3B0F70-4F82-43E5-BA3A-234C72DA2DA6}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{5F2E9819-90F0-495C-B433-305B7CC0901F}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{6A4924C6-8855-4E78-9E6B-88EC2055795D}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{75184457-B005-4059-B50C-D731180F02EC}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{8D065CAB-4692-46A3-8230-D2412971F2A1}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{926BA430-6E5D-4F44-85A0-0ACF39CF8888}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{A2664AD6-03CF-4494-A77B-4DAF621BEA4F}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{A645A69C-E839-448F-9B26-D8307CFE5DF1}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{ABB03927-E6EC-4131-A342-BF95A5FCBAA6}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{B7ABEA68-48C0-4CBC-997A-0EEDB09337B6}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{C0F4FB12-C33A-4738-B838-9B5F67940E41}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{CF2036BE-A617-4055-9D9B-F64852A51207}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{D2A08BAE-AB1E-4300-9075-B9BA3900D352}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{D70CE475-3CC4-40DC-A138-58C5D3C33A93}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{DAE9BBAB-0B7E-4831-9225-0FF1D42709BD}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{DB3FECB7-5D3F-400E-9841-0157093AAA2B}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{E532A03E-AF46-479F-B6AD-D9504BB51C7F}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{EDAF5770-AC3B-4D2F-B789-CFABEC84053A}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{F1957153-FBEE-4B69-AE9F-733AF542E7EE}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{F4BEE6EF-C477-408F-9F89-657158CE2F53}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{F664021B-BD73-4B56-80D6-FB162B6F7872}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{F775AD2F-FC43-483E-BDB2-B86D03C84AC1}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{F9EB4B3E-F417-417C-88AC-1D963968F113}
Successfully deleted: [Empty Folder] C:\Users\Acer\appdata\local\{FAAA114A-7278-45C2-B8AD-ACA6FC1F822F}

~~~ Event Viewer Logs were cleared

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 15/09/2014 at 11:18:07.94
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


Report •

#5
September 15, 2014 at 11:52:45
Well, apparently that did not work either! Guess I'm going to have to take this darn thing to a place that does computer repair

Report •

#6
September 15, 2014 at 16:08:46
Like I said > "Lets try. These are the first 2 steps"

Step 3: Run Malwarebytes again.

Click the Settings tab at the top, and then in the left column, select Detections and Protections, and if not already checked place a checkmark in the selection box to Scan for rootkits.
http://i.imgur.com/dZgt1g2.gif

Copy and Paste the contents of the log, in your reply please.
http://i.imgur.com/U9IqcVj.gif
http://i.imgur.com/zHMG6J9.gif

message edited by Johnw


Report •

Ask Question