Page 2 of 2 FirstFirst 12
Results 11 to 14 of 14

Thread: Malware Removal - No Admin Priveleges

  1. #11
    Junior Member kamo516's Avatar
    Join Date
    Mar 2007
    Posts
    28

    Default

    Alright, here's the AdwCleaner log run with the "Delete" option. My computer seems to be running a little smoother now after performing some of the cleanup. I'll keep the re-install or reset back to factory defaults as an option if the admin and sluggishness persists. I appreciate the suggestion.

    # AdwCleaner v2.302 - Logfile created 06/09/2013 at 21:17:48
    # Updated 06/06/2013 by Xplode
    # Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
    # User : Kevin - TOSHIBA
    # Boot Mode : Normal
    # Running from : C:\Users\Kevin\Desktop\Protection Software\AdwCleaner.exe
    # Option [Delete]


    ***** [Services] *****


    ***** [Files / Folders] *****

    File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\avg-secure-search.xml
    Folder Deleted : C:\ProgramData\AVG Security Toolbar
    Folder Deleted : C:\ProgramData\Partner
    Folder Deleted : C:\Users\Kevin Murray\AppData\LocalLow\AVG Security Toolbar

    ***** [Registry] *****

    Key Deleted : HKCU\Software\AppDataLow\Software\AVG Security Toolbar
    Key Deleted : HKCU\Software\AVG Security Toolbar
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\grusskartencenter.com
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\grusskartencenter.com
    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{13ABD093-D46F-40DF-A608-47E162EC799D}
    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{94496571-6AC5-4836-82D5-D46260C44B17}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{BC9FD17D-30F6-4464-9E53-596A90AFF023}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
    Key Deleted : HKLM\SOFTWARE\Software
    Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]

    ***** [Internet Browsers] *****

    -\\ Internet Explorer v8.0.7601.17514

    [OK] Registry is clean.

    -\\ Mozilla Firefox v13.0.1 (en-US)

    File : C:\Users\Kevin\AppData\Roaming\Mozilla\Firefox\Profiles\n0i30omf.default\prefs.js

    [OK] File is clean.

    *************************

    AdwCleaner[R1].txt - [4362 octets] - [06/06/2013 21:20:41]
    AdwCleaner[S1].txt - [3802 octets] - [09/06/2013 21:17:48]

    ########## EOF - C:\AdwCleaner[S1].txt - [3862 octets] ##########

  2. #12
    Emeritus
    Join Date
    Nov 2005
    Location
    @localhost
    Posts
    6,066

    Default

    You can try CCleaner. its good for tidying things up. There is also a built in registry "clean" tool you can use. One of the few registry tools I would recommend using. Download Link. And the
    Website
    If i remember during the install process a option to install Chrome or maybe that annoying other thing, the ask toolbar is presented. Uncheck it before proceeding unless of course you want Chrome installed. I would pass on any toolbar offer.
    See if that helps any. The cleaner is something you could run occasionally. The registry cleaner even less frequently.
    How Can I Reduce My Risk?

  3. #13
    Junior Member kamo516's Avatar
    Join Date
    Mar 2007
    Posts
    28

    Default

    Thanks for the advice. It looks like there weren't any major issues, but just needed to cleanup the system a little and remove some old programs and reduce the number at startup. I've used CCleaner on previous computers and now have it installed on this one as well. I appreciate the help.

    Kevin

  4. #14
    Emeritus
    Join Date
    Nov 2005
    Location
    @localhost
    Posts
    6,066

    Default

    Your good as far as malware goes. You can remove combofix like this: Start and in the search field type in combofix /uninstall
    Note the space after the x and before the /
    Right click on adwcleaner and "run as admin" click on uninstall. You can also delete the adwcleaner logs. Note that the free version of Malwarebytes must be updated manually and a scan started manually.
    If you go the reinstall/reset route at any time make sure you know if you will be losing any data, in which case you can pull it off before proceeding. So if all is good on your end: happy safe surfing.
    How Can I Reduce My Risk?

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •