-
Uninstalled AOE files
CKScanner 2.5 - Additional Security Risks - These are not necessarily bad
c:\games\world_of_tanks\res\audio\objects_ice_crack.fsb
c:\program files\steam\steamapps\common\race 07\gamedata\locations\anderstorp_2007\models\road_crack.gmt
c:\program files\steam\steamapps\common\race 07\gamedata\locations\anderstorp_2007\models\road_crack01.gmt
c:\program files\steam\steamapps\common\race 07\gamedata\locations\anderstorp_2007\models\road_crack02.gmt
c:\program files\steam\steamapps\common\race 07\gamedata\locations\anderstorp_2007\models\road_crack03.gmt
c:\program files\steam\steamapps\common\race 07\gamedata\locations\anderstorp_2007\textures\road_crack.dds
c:\program files\steam\steamapps\common\race 07\gamedata\locations\hockenheim\textures\road_crack1.dds
c:\program files\steam\steamapps\common\race 07\gamedata\locations\jyllandsringen\textures\road_crack01.dds
c:\program files\steam\steamapps\common\race 07\gamedata\locations\mantorp\textures\road_crack.dds
c:\program files\steam\steamapps\common\race 07\gamedata\locations\mantorp_10\textures\road_crack.dds
c:\program files\steam\steamapps\common\race 07\gamedata\locations\portimao09\texturas\road_crack1.dds
c:\program files\steam\steamapps\common\race 07\gamedata\locations\portimao09\texturas\road_crack1_blend.dds
c:\program files\steam\steamapps\common\race 07\gamedata\locations\valerbanen\textures\road_crack.dds
c:\program files\steam\steamapps\common\race 07\gamedata\locations\vara\models\pitlane_crack.gmt
c:\program files\steam\steamapps\common\race 07\gamedata\locations\vara\textures\road_crack.dds
scanner sequence 3.DK.11.TNBDB0
----- EOF -----
-
Thanks for understanding
I am attaching a FIXLIST file, you need to download it to your desktop where you have FRST or the fix wont work, after you download it , open up FRST and click on FIX ( Not Scan), it wont take long, after your computer reboots you will see a FIXLOG on your desktop , post it please
-
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 18-02-2015 01
Ran by Lawrence at 2015-02-18 19:22:00 Run:1
Running from C:\Users\Lawrence\Desktop
Loaded Profiles: Lawrence (Available profiles: Lawrence)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CreateRestorePoint:
CloseProcesses:
HKU\S-1-5-21-2443816963-3265071215-2752545654-1001\...\Run: [PastaLeadsApplication] => C:\Program Files\pastaleads\PastaLeadsApplication.exe
C:\Program Files\pastaleads
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2443816963-3265071215-2752545654-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
2015-02-16 10:53 - 2013-08-21 22:13 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20150216-105309.backup
2015-02-15 17:44 - 2015-02-15 17:44 - 00000000 ____D () C:\Program Files\turbodiagnosis
2015-02-15 17:44 - 2015-02-15 18:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\turbodiagnosis
2015-02-11 18:20 - 2015-02-11 18:20 - 00000875 _____ () C:\Users\Lawrence\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
Task: {4DF5BD81-FF92-4884-891E-0676F18C33F1} - System32\Tasks\{B475A164-2DDB-40A9-AFC3-4EFB1BFAB821} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW001124JOBINTRP.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {585C5A65-7276-411E-B096-DD00B7FAA632} - System32\Tasks\{37F099FC-14B3-4156-A702-9FB96C88A6C8} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW000120GRACEABD.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {59F5920B-E0A7-43A7-A8BC-F462CAEB005B} - System32\Tasks\{AB8A3491-5DF9-4C7A-BDD3-5F6543E5E4EE} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW000175CHESORTH.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {67E9DC32-7267-4146-87E9-E8D4160E8988} - System32\Tasks\{55F1F4AC-6A6B-4EA1-BD29-75FCAFA28C30} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW000208TRAIN12.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {6846BEA3-D043-4A26-87C7-514C17A1B0F4} - System32\Tasks\{8394D802-9149-491A-9738-A8C830A02F08} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW000176CHSCOMM.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {775D6F64-3739-47E8-9B08-CCE706FFD3BF} - System32\Tasks\{BF5415D6-CF2F-4ED9-867D-C2BFFB2AAE79} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW000119HOLYWAR.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {7A28690F-B7E0-4CF3-B96E-3FC6506F2C96} - System32\Tasks\{1C93FB29-FBA4-4DAA-A72F-2375B199FA68} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW000187GUYONPO.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {816B3A58-9D34-438C-A00B-2C6ECF4FB150} - System32\Tasks\CXFYCNE => C:\ProgramData\2abfacb28a86414db67072195669c416\2abfacb28a86414db67072195669c416.exe
Task: {8C5FD9E5-4136-4806-808F-8C7755933664} - System32\Tasks\{C9BF7C87-AB13-4E0E-AA21-E36047DC95A3} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RMSGeneratorAoE3_10LE.exe -d C:\Users\Lawrence\Desktop\Download
Task: {9A93320F-D8C5-4607-9148-7F92851FFDF1} - System32\Tasks\{E35FC523-AA21-4577-9FBC-94AE40E6776A} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW000209WATTSHYM.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {A1450527-2F8C-4B3E-8DEC-908F9D16D37A} - System32\Tasks\{AD2DB5EC-FB1B-4929-AE06-88184DD9EC53} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW001105BSPROPH.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {A2EC0AA0-AA43-46C0-9E1B-6168884B7E21} - System32\Tasks\{E8FCC46D-BA56-49B7-838A-7743019951A7} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW001101FREVIVL.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {A86F8B03-D14C-451A-A4C5-F76A5F3930E8} - System32\Tasks\{72D0B385-DF9D-4C26-9999-2DEFEAB89BF4} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW001115WHTFIELD.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {B9D5B60F-65AC-416B-B5BD-78CDE903DC6F} - System32\Tasks\{D487DED9-ED95-452D-8D45-C980AC4BD006} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW001125PROMISLD.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {C9E108BB-2CE6-4CD9-85D1-22DC72D28FA3} - System32\Tasks\{94E8A300-183B-4355-9EEA-DA41CFB81F16} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW000195JFKEEP.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {CD167435-E825-43BB-AA4B-2D99A85F4F52} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe
Task: {CFF8AFA4-F0C9-4832-9779-D8497E977125} - System32\Tasks\{C6ED5847-35CE-48F3-A5CF-85B41FBD6A8A} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW001107ENEMYREC.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {D8BEEEA9-BAE3-4EF5-88F0-7B1F4A242D5C} - System32\Tasks\{A6320549-8626-41EA-90CB-7C75D150832C} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW000171JESERM.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {E0594B1A-015A-422C-9019-A317EE6A6B83} - System32\Tasks\{A8A20EAB-661D-4496-8DAB-CF0213CC33CA} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW000118PILGRIMS.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {E4D0D4D0-33C1-4A70-AE8B-8D50F3E480C1} - System32\Tasks\{FEE18F95-FF01-43B1-80E0-FBC1269FA29B} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW001128LIFEOFCH.EXE -d C:\Users\Lawrence\Desktop\Download
Task: {EF27F2D5-57DF-4D2E-BBFA-6C64FBE0783A} - System32\Tasks\PastaLeads => C:\Program Files\pastaleads\ScheduledTask.exe
Task: {FDC538E6-FF25-4C82-BFD6-33599D4A8276} - System32\Tasks\{3110D307-CD4E-4FCF-8721-D063943CEC29} => pcalua.exe -a C:\Users\Lawrence\Desktop\Download\RW000183FREVIVA.EXE -d C:\Users\Lawrence\Desktop\Download
C:\Users\Lawrence\Desktop\Download
CMD: ipconfig /flushdns
Hosts:
EmptyTemp:
End
*****************
Restore point was successfully created.
Processes closed successfully.
HKU\S-1-5-21-2443816963-3265071215-2752545654-1001\Software\Microsoft\Windows\CurrentVersion\Run\\PastaLeadsApplication => value deleted successfully.
"C:\Program Files\pastaleads" => File/Directory not found.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKU\S-1-5-21-2443816963-3265071215-2752545654-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
C:\Windows\system32\Drivers\etc\hosts.20150216-105309.backup => Moved successfully.
C:\Program Files\turbodiagnosis => Moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\turbodiagnosis => Moved successfully.
C:\Users\Lawrence\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4DF5BD81-FF92-4884-891E-0676F18C33F1}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4DF5BD81-FF92-4884-891E-0676F18C33F1}" => Key deleted successfully.
C:\Windows\System32\Tasks\{B475A164-2DDB-40A9-AFC3-4EFB1BFAB821} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{B475A164-2DDB-40A9-AFC3-4EFB1BFAB821}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{585C5A65-7276-411E-B096-DD00B7FAA632}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{585C5A65-7276-411E-B096-DD00B7FAA632}" => Key deleted successfully.
C:\Windows\System32\Tasks\{37F099FC-14B3-4156-A702-9FB96C88A6C8} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{37F099FC-14B3-4156-A702-9FB96C88A6C8}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{59F5920B-E0A7-43A7-A8BC-F462CAEB005B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{59F5920B-E0A7-43A7-A8BC-F462CAEB005B}" => Key deleted successfully.
C:\Windows\System32\Tasks\{AB8A3491-5DF9-4C7A-BDD3-5F6543E5E4EE} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{AB8A3491-5DF9-4C7A-BDD3-5F6543E5E4EE}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{67E9DC32-7267-4146-87E9-E8D4160E8988}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{67E9DC32-7267-4146-87E9-E8D4160E8988}" => Key deleted successfully.
C:\Windows\System32\Tasks\{55F1F4AC-6A6B-4EA1-BD29-75FCAFA28C30} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{55F1F4AC-6A6B-4EA1-BD29-75FCAFA28C30}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6846BEA3-D043-4A26-87C7-514C17A1B0F4}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6846BEA3-D043-4A26-87C7-514C17A1B0F4}" => Key deleted successfully.
C:\Windows\System32\Tasks\{8394D802-9149-491A-9738-A8C830A02F08} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{8394D802-9149-491A-9738-A8C830A02F08}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{775D6F64-3739-47E8-9B08-CCE706FFD3BF}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{775D6F64-3739-47E8-9B08-CCE706FFD3BF}" => Key deleted successfully.
C:\Windows\System32\Tasks\{BF5415D6-CF2F-4ED9-867D-C2BFFB2AAE79} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{BF5415D6-CF2F-4ED9-867D-C2BFFB2AAE79}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7A28690F-B7E0-4CF3-B96E-3FC6506F2C96}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7A28690F-B7E0-4CF3-B96E-3FC6506F2C96}" => Key deleted successfully.
C:\Windows\System32\Tasks\{1C93FB29-FBA4-4DAA-A72F-2375B199FA68} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{1C93FB29-FBA4-4DAA-A72F-2375B199FA68}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{816B3A58-9D34-438C-A00B-2C6ECF4FB150}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{816B3A58-9D34-438C-A00B-2C6ECF4FB150}" => Key deleted successfully.
C:\Windows\System32\Tasks\CXFYCNE => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CXFYCNE" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8C5FD9E5-4136-4806-808F-8C7755933664}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8C5FD9E5-4136-4806-808F-8C7755933664}" => Key deleted successfully.
C:\Windows\System32\Tasks\{C9BF7C87-AB13-4E0E-AA21-E36047DC95A3} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C9BF7C87-AB13-4E0E-AA21-E36047DC95A3}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9A93320F-D8C5-4607-9148-7F92851FFDF1}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9A93320F-D8C5-4607-9148-7F92851FFDF1}" => Key deleted successfully.
C:\Windows\System32\Tasks\{E35FC523-AA21-4577-9FBC-94AE40E6776A} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{E35FC523-AA21-4577-9FBC-94AE40E6776A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A1450527-2F8C-4B3E-8DEC-908F9D16D37A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A1450527-2F8C-4B3E-8DEC-908F9D16D37A}" => Key deleted successfully.
C:\Windows\System32\Tasks\{AD2DB5EC-FB1B-4929-AE06-88184DD9EC53} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{AD2DB5EC-FB1B-4929-AE06-88184DD9EC53}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A2EC0AA0-AA43-46C0-9E1B-6168884B7E21}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A2EC0AA0-AA43-46C0-9E1B-6168884B7E21}" => Key deleted successfully.
C:\Windows\System32\Tasks\{E8FCC46D-BA56-49B7-838A-7743019951A7} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{E8FCC46D-BA56-49B7-838A-7743019951A7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A86F8B03-D14C-451A-A4C5-F76A5F3930E8}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A86F8B03-D14C-451A-A4C5-F76A5F3930E8}" => Key deleted successfully.
C:\Windows\System32\Tasks\{72D0B385-DF9D-4C26-9999-2DEFEAB89BF4} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{72D0B385-DF9D-4C26-9999-2DEFEAB89BF4}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B9D5B60F-65AC-416B-B5BD-78CDE903DC6F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B9D5B60F-65AC-416B-B5BD-78CDE903DC6F}" => Key deleted successfully.
C:\Windows\System32\Tasks\{D487DED9-ED95-452D-8D45-C980AC4BD006} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{D487DED9-ED95-452D-8D45-C980AC4BD006}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C9E108BB-2CE6-4CD9-85D1-22DC72D28FA3}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C9E108BB-2CE6-4CD9-85D1-22DC72D28FA3}" => Key deleted successfully.
C:\Windows\System32\Tasks\{94E8A300-183B-4355-9EEA-DA41CFB81F16} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{94E8A300-183B-4355-9EEA-DA41CFB81F16}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CD167435-E825-43BB-AA4B-2D99A85F4F52}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CD167435-E825-43BB-AA4B-2D99A85F4F52}" => Key deleted successfully.
C:\Windows\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Scan the system" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CFF8AFA4-F0C9-4832-9779-D8497E977125}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CFF8AFA4-F0C9-4832-9779-D8497E977125}" => Key deleted successfully.
C:\Windows\System32\Tasks\{C6ED5847-35CE-48F3-A5CF-85B41FBD6A8A} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C6ED5847-35CE-48F3-A5CF-85B41FBD6A8A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D8BEEEA9-BAE3-4EF5-88F0-7B1F4A242D5C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D8BEEEA9-BAE3-4EF5-88F0-7B1F4A242D5C}" => Key deleted successfully.
C:\Windows\System32\Tasks\{A6320549-8626-41EA-90CB-7C75D150832C} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{A6320549-8626-41EA-90CB-7C75D150832C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E0594B1A-015A-422C-9019-A317EE6A6B83}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E0594B1A-015A-422C-9019-A317EE6A6B83}" => Key deleted successfully.
C:\Windows\System32\Tasks\{A8A20EAB-661D-4496-8DAB-CF0213CC33CA} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{A8A20EAB-661D-4496-8DAB-CF0213CC33CA}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E4D0D4D0-33C1-4A70-AE8B-8D50F3E480C1}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E4D0D4D0-33C1-4A70-AE8B-8D50F3E480C1}" => Key deleted successfully.
C:\Windows\System32\Tasks\{FEE18F95-FF01-43B1-80E0-FBC1269FA29B} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{FEE18F95-FF01-43B1-80E0-FBC1269FA29B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EF27F2D5-57DF-4D2E-BBFA-6C64FBE0783A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EF27F2D5-57DF-4D2E-BBFA-6C64FBE0783A}" => Key deleted successfully.
C:\Windows\System32\Tasks\PastaLeads => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PastaLeads" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FDC538E6-FF25-4C82-BFD6-33599D4A8276}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FDC538E6-FF25-4C82-BFD6-33599D4A8276}" => Key deleted successfully.
C:\Windows\System32\Tasks\{3110D307-CD4E-4FCF-8721-D063943CEC29} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{3110D307-CD4E-4FCF-8721-D063943CEC29}" => Key deleted successfully.
C:\Users\Lawrence\Desktop\Download => Moved successfully.
========= ipconfig /flushdns =========
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
========= End of CMD: =========
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 475.3 MB temporary data.
The system needed a reboot.
==== End of Fixlog 19:23:25 ====
-
Good,
How are things running now ?
-
Working great! I want to thank you for all your help and patience.
I think I learned a lesson.
Lonnie.
-
Thats great Lonnie, remember what I said about downloading that garbage using the torrents, your just asking for trouble if you do. Also glad your back on track and things are working well for you again.
Double click on AdwCleaner.exe to run the tool again.
- Click on the Uninstall button.
- Click Yes when asked are you sure you want to uninstall.
- Both AdwCleaner.exe, its folder and all logs will be removed.
==========================================================
Please download DelFix and save the file to your Desktop.
- Windows XP Double Click DelFix.exe to run the program.
- Windows Vista > Win 7 > Win 8 Right Click on DelFix.exe and select RUN AS ADMINISTRATOR
- Checkmark " Remove Disinfection Tools"
- Click the Run button
This will remove the specialised tools we used to clean your system. Any leftover logs, files, folders or tools remaining on your Desktop which were not removed can be deleted manually
==========================================================
Safe Surfn
Ken
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules