sunshine&flowerpots
New member
Hi Juliet,
What I had done before posting was uninstalled Chrome again via Renvo, ran Malware scan & followed previous post (I've attached log), then after reboot, reinstalled Chrome, opened up a random page & saw that other pages were also loading. Uninstalled Chrome again & posted here.
The log from the scan I ran is:
Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 1/28/17
Scan Time: 6:20 PM
Logfile:
Administrator: Yes
-Software Information-
Version: 3.0.6.1469
Components Version: 1.0.50
Update Package Version: 1.0.1122
License: Trial
-System Information-
OS: Windows 10
CPU: x64
File System: NTFS
User: HP-PC\HP
-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 419028
Time Elapsed: 3 min, 6 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
-Scan Details-
Process: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registry Key: 9
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{9D3C75FC-CDBC-A47C-7C3C-D4FCACBC077C}, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, HKU\S-1-5-21-855933916-2125327620-179708743-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2211D4A5-48D0-47F5-A7CD-81E861470F7F}, Quarantined, [117], [182758],1.0.1122
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2211D4A5-48D0-47F5-A7CD-81E861470F7F}, Quarantined, [117], [182758],1.0.1122
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2211d4a5-48d0-47f5-a7cd-81e861470f7f}, Quarantined, [117], [182758],1.0.1122
PUP.Optional.ProductSetup, HKU\S-1-5-21-855933916-2125327620-179708743-1000\SOFTWARE\PRODUCTSETUP, Quarantined, [17184], [242047],1.0.1122
PUP.Optional.SearchManager, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\pilplloabdedfmialnfchjomjmpjcoej, Quarantined, [647], [260991],1.0.1122
PUP.Optional.InstallCore, HKU\S-1-5-21-855933916-2125327620-179708743-1000\SOFTWARE\csastats, Quarantined, [8], [260986],1.0.1122
PUP.Optional.InstallCore, HKU\S-1-5-21-855933916-2125327620-179708743-1000\SOFTWARE\ICSW1.23, Quarantined, [8], [239562],1.0.1122
PUP.Optional.WinYahoo, HKU\S-1-5-21-855933916-2125327620-179708743-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}, Quarantined, [117], [182757],1.0.1122
Registry Value: 4
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2211d4a5-48d0-47f5-a7cd-81e861470f7f}|URL, Quarantined, [117], [182758],1.0.1122
PUP.Optional.ProductSetup, HKU\S-1-5-21-855933916-2125327620-179708743-1000\SOFTWARE\PRODUCTSETUP|TB, Quarantined, [17184], [242047],1.0.1122
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2211d4a5-48d0-47f5-a7cd-81e861470f7f}|URL, Quarantined, [117], [182758],1.0.1122
PUP.Optional.WinYahoo, HKU\S-1-5-21-855933916-2125327620-179708743-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, Quarantined, [117], [182757],1.0.1122
Registry Data: 3
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Replaced, [117], [293461],1.0.1122
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Replaced, [117], [293461],1.0.1122
PUP.Optional.WinYahoo, HKU\S-1-5-21-855933916-2125327620-179708743-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Replaced, [117], [293459],1.0.1122
Data Stream: 0
(No malicious items detected)
Folder: 13
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\icons, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\fonts, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\skin\icons, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\_metadata, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\vendor, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\skin, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\USERS\HP\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\EXTENSIONS\pilplloabdedfmialnfchjomjmpjcoej, Quarantined, [647], [331417],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\USERS\HP\APPDATA\LOCAL\{29A91FF5-0D01-734D-6099-56A544F1AA3D}, Quarantined, [117], [302717],1.0.1122
File: 98
PUP.Optional.WinYahoo, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\HOWTOREMOVE.HTML.LNK, Quarantined, [117], [254335],1.0.1122
PUP.Optional.BundleInstaller, C:\USERS\HP\DESKTOP\REVOUNINPROSETUP.EXE, Quarantined, [39], [364536],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\fonts\HelveticaNeue-Thin.otf, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\fonts\neue-bold.woff, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\fonts\neue.woff, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\icons\128.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\icons\16.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\icons\48.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\icons\close.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\icons\favicon.ico, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\01d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\01n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\02d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\02n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\03d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\03n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\04d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\04n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\09d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\09n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\10d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\10n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\11d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\11n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\13d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\13n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\50d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\50n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\bing.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\bing_large.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\bluesky-bg.jpg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\brush.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\bt.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\clock.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\cloud.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\cupcake-bg.jpg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\desk-bg.jpg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\doodle.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\down.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\eyeglass.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\google.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\google_large.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\hero-bg.jpg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\just-the-box.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\mountain-bg.jpg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\pointer2.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\sea-bg.jpg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\settings.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\yahoo.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\yahoo.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\yahoo_large.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\bundle.v0.0.1.min.css, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\skin\icons\16.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\vendor\md5.min.js, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\vendor\react-dom.min.js, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\vendor\react-with-addons.min.js, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\vendor\underscore-min.js, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\_metadata\verified_contents.json, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\2bfc185be71f44cd73ac81511fc1f5a5.woff, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\b495e340f4ef8924fea0284c1bf9e7ac.woff, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\background.html, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\background.v0.0.1.min.js, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\c5a5cbf4dbcaa7064f2bc77f52101aec.otf, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\client.v0.0.1.min.js, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\common.js, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\e_.json, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\index.html, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\manifest.json, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\popupTab2.html, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\popupTab2.js, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\responseConfig.json, Quarantined, [647], [331417],1.0.1122
PUP.Optional.BundleInstaller, C:\USERS\HP\DOWNLOADS\REVOUNINPROSETUP.EXE, Quarantined, [39], [364536],1.0.1122
PUP.Optional.WinYahoo, C:\USERS\HP\APPDATA\LOCAL\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HOWTOREMOVE\HOWTOREMOVE.HTML, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\chromium-min.jpg, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\control panel-min-min.JPG, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\down.png, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\ff menu.JPG, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\ff search engine-min.png, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\hp-min ff.png, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\hp-min ie.png, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\search engine.gif, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\setup pages.gif, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\sp-min.png, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\start-min.jpg, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\up.png, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\bapi_chmm.dat, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\bapi_ff.dat, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\bapi_ie.dat, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\dora, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\install.log, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\nase, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\rede, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\Sqlite3.dll, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\tona, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\uninst.dat, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\uninst.exe, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\uninstp.dat, Quarantined, [117], [302717],1.0.1122
PUP.Optional.SearchManager, C:\USERS\HP\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\LOCAL STORAGE\chrome-extension_pilplloabdedfmialnfchjomjmpjcoej_0.localstorage, Quarantined, [647], [260990],1.0.1122
Physical Sector: 0
(No malicious items detected)
(end)
Your scan:
Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 1/28/17
Scan Time: 9:08 PM
Logfile:
Administrator: Yes
-Software Information-
Version: 3.0.6.1469
Components Version: 1.0.50
Update Package Version: 1.0.1124
License: Trial
-System Information-
OS: Windows 10
CPU: x64
File System: NTFS
User: HP-PC\HP
-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 419195
Time Elapsed: 2 min, 7 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
-Scan Details-
Process: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registry Key: 0
(No malicious items detected)
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 0
(No malicious items detected)
Physical Sector: 0
(No malicious items detected)
(end)
AdwCleaner:
# AdwCleaner v6.043 - Logfile created 28/01/2017 at 21:23:39
# Updated on 27/01/2017 by Malwarebytes
# Database : 2017-01-28.1 [Server]
# Operating System : Windows 10 Pro (X64)
# Username : HP - HP-PC
# Running from : C:\Users\HP\Desktop\adwcleaner_6.043.exe
# Mode: Clean
# Support : https://www.malwarebytes.com/support
***** [ Services ] *****
[-] Service deleted: rtop
[-] Service deleted: ByteFenceService
***** [ Folders ] *****
[-] Folder deleted: C:\Program Files\ByteFence
[-] Folder deleted: C:\ProgramData\ByteFence
[#] Folder deleted on reboot: C:\ProgramData\Application Data\ByteFence
[-] Folder deleted: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ByteFence Anti-Malware
***** [ Files ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Shortcuts ] *****
***** [ Scheduled Tasks ] *****
[-] Task deleted: ByteFence
[-] Task deleted: ByteFence Scan
***** [ Registry ] *****
[-] Key deleted: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\ByteFenceService
[#] Key deleted on reboot: [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\ByteFenceService
[-] Key deleted: HKU\S-1-5-21-855933916-2125327620-179708743-1000\Software\ByteFence
[#] Key deleted on reboot: HKCU\Software\ByteFence
[-] Key deleted: HKLM\SOFTWARE\ByteFence
[-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ByteFence
[#] Key deleted on reboot: [x64] HKCU\Software\ByteFence
[-] Key deleted: [x64] HKLM\SOFTWARE\ByteFence
[-] Key deleted: HKLM\SOFTWARE\Classes\Directory\shell\ByteFence Folder Scan
[-] Key deleted: HKLM\SOFTWARE\Classes\*\shell\ByteFence File Scan
***** [ Web browsers ] *****
*************************
:: "Tracing" keys deleted
:: Winsock settings cleared
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [1844 Bytes] - [28/01/2017 21:23:39]
C:\AdwCleaner\AdwCleaner[S0].txt - [1995 Bytes] - [28/01/2017 21:17:47]
########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [1990 Bytes] ##########
JRT:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.0 (12.05.2016)
Operating System: Windows 10 Pro x64
Ran by HP (Administrator) on 28/01/2017 at 21:28:36.01
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
File System: 0
Registry: 0
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 28/01/2017 at 21:31:27.60
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
What I had done before posting was uninstalled Chrome again via Renvo, ran Malware scan & followed previous post (I've attached log), then after reboot, reinstalled Chrome, opened up a random page & saw that other pages were also loading. Uninstalled Chrome again & posted here.
The log from the scan I ran is:
Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 1/28/17
Scan Time: 6:20 PM
Logfile:
Administrator: Yes
-Software Information-
Version: 3.0.6.1469
Components Version: 1.0.50
Update Package Version: 1.0.1122
License: Trial
-System Information-
OS: Windows 10
CPU: x64
File System: NTFS
User: HP-PC\HP
-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 419028
Time Elapsed: 3 min, 6 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
-Scan Details-
Process: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registry Key: 9
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{9D3C75FC-CDBC-A47C-7C3C-D4FCACBC077C}, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, HKU\S-1-5-21-855933916-2125327620-179708743-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2211D4A5-48D0-47F5-A7CD-81E861470F7F}, Quarantined, [117], [182758],1.0.1122
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2211D4A5-48D0-47F5-A7CD-81E861470F7F}, Quarantined, [117], [182758],1.0.1122
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2211d4a5-48d0-47f5-a7cd-81e861470f7f}, Quarantined, [117], [182758],1.0.1122
PUP.Optional.ProductSetup, HKU\S-1-5-21-855933916-2125327620-179708743-1000\SOFTWARE\PRODUCTSETUP, Quarantined, [17184], [242047],1.0.1122
PUP.Optional.SearchManager, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\pilplloabdedfmialnfchjomjmpjcoej, Quarantined, [647], [260991],1.0.1122
PUP.Optional.InstallCore, HKU\S-1-5-21-855933916-2125327620-179708743-1000\SOFTWARE\csastats, Quarantined, [8], [260986],1.0.1122
PUP.Optional.InstallCore, HKU\S-1-5-21-855933916-2125327620-179708743-1000\SOFTWARE\ICSW1.23, Quarantined, [8], [239562],1.0.1122
PUP.Optional.WinYahoo, HKU\S-1-5-21-855933916-2125327620-179708743-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}, Quarantined, [117], [182757],1.0.1122
Registry Value: 4
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2211d4a5-48d0-47f5-a7cd-81e861470f7f}|URL, Quarantined, [117], [182758],1.0.1122
PUP.Optional.ProductSetup, HKU\S-1-5-21-855933916-2125327620-179708743-1000\SOFTWARE\PRODUCTSETUP|TB, Quarantined, [17184], [242047],1.0.1122
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2211d4a5-48d0-47f5-a7cd-81e861470f7f}|URL, Quarantined, [117], [182758],1.0.1122
PUP.Optional.WinYahoo, HKU\S-1-5-21-855933916-2125327620-179708743-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, Quarantined, [117], [182757],1.0.1122
Registry Data: 3
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Replaced, [117], [293461],1.0.1122
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Replaced, [117], [293461],1.0.1122
PUP.Optional.WinYahoo, HKU\S-1-5-21-855933916-2125327620-179708743-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Replaced, [117], [293459],1.0.1122
Data Stream: 0
(No malicious items detected)
Folder: 13
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\icons, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\fonts, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\skin\icons, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\_metadata, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\vendor, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\skin, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\USERS\HP\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\EXTENSIONS\pilplloabdedfmialnfchjomjmpjcoej, Quarantined, [647], [331417],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\USERS\HP\APPDATA\LOCAL\{29A91FF5-0D01-734D-6099-56A544F1AA3D}, Quarantined, [117], [302717],1.0.1122
File: 98
PUP.Optional.WinYahoo, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\HOWTOREMOVE.HTML.LNK, Quarantined, [117], [254335],1.0.1122
PUP.Optional.BundleInstaller, C:\USERS\HP\DESKTOP\REVOUNINPROSETUP.EXE, Quarantined, [39], [364536],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\fonts\HelveticaNeue-Thin.otf, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\fonts\neue-bold.woff, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\fonts\neue.woff, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\icons\128.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\icons\16.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\icons\48.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\icons\close.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\icons\favicon.ico, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\01d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\01n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\02d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\02n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\03d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\03n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\04d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\04n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\09d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\09n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\10d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\10n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\11d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\11n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\13d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\13n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\50d.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\weather\50n.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\bing.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\bing_large.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\bluesky-bg.jpg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\brush.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\bt.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\clock.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\cloud.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\cupcake-bg.jpg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\desk-bg.jpg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\doodle.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\down.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\eyeglass.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\google.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\google_large.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\hero-bg.jpg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\just-the-box.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\mountain-bg.jpg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\pointer2.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\sea-bg.jpg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\settings.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\yahoo.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\yahoo.svg, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\images\yahoo_large.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\content\bundle.v0.0.1.min.css, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\skin\icons\16.png, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\vendor\md5.min.js, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\vendor\react-dom.min.js, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\vendor\react-with-addons.min.js, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\vendor\underscore-min.js, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\_metadata\verified_contents.json, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\2bfc185be71f44cd73ac81511fc1f5a5.woff, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\b495e340f4ef8924fea0284c1bf9e7ac.woff, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\background.html, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\background.v0.0.1.min.js, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\c5a5cbf4dbcaa7064f2bc77f52101aec.otf, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\client.v0.0.1.min.js, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\common.js, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\e_.json, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\index.html, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\manifest.json, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\popupTab2.html, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\popupTab2.js, Quarantined, [647], [331417],1.0.1122
PUP.Optional.SearchManager, C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\10.1.0.54_0\responseConfig.json, Quarantined, [647], [331417],1.0.1122
PUP.Optional.BundleInstaller, C:\USERS\HP\DOWNLOADS\REVOUNINPROSETUP.EXE, Quarantined, [39], [364536],1.0.1122
PUP.Optional.WinYahoo, C:\USERS\HP\APPDATA\LOCAL\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HOWTOREMOVE\HOWTOREMOVE.HTML, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\chromium-min.jpg, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\control panel-min-min.JPG, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\down.png, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\ff menu.JPG, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\ff search engine-min.png, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\hp-min ff.png, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\hp-min ie.png, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\search engine.gif, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\setup pages.gif, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\sp-min.png, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\start-min.jpg, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\HowToRemove\up.png, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\bapi_chmm.dat, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\bapi_ff.dat, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\bapi_ie.dat, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\dora, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\install.log, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\nase, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\rede, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\Sqlite3.dll, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\tona, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\uninst.dat, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\uninst.exe, Quarantined, [117], [302717],1.0.1122
PUP.Optional.WinYahoo, C:\Users\HP\AppData\Local\{29A91FF5-0D01-734D-6099-56A544F1AA3D}\uninstp.dat, Quarantined, [117], [302717],1.0.1122
PUP.Optional.SearchManager, C:\USERS\HP\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\LOCAL STORAGE\chrome-extension_pilplloabdedfmialnfchjomjmpjcoej_0.localstorage, Quarantined, [647], [260990],1.0.1122
Physical Sector: 0
(No malicious items detected)
(end)
Your scan:
Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 1/28/17
Scan Time: 9:08 PM
Logfile:
Administrator: Yes
-Software Information-
Version: 3.0.6.1469
Components Version: 1.0.50
Update Package Version: 1.0.1124
License: Trial
-System Information-
OS: Windows 10
CPU: x64
File System: NTFS
User: HP-PC\HP
-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 419195
Time Elapsed: 2 min, 7 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
-Scan Details-
Process: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registry Key: 0
(No malicious items detected)
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 0
(No malicious items detected)
Physical Sector: 0
(No malicious items detected)
(end)
AdwCleaner:
# AdwCleaner v6.043 - Logfile created 28/01/2017 at 21:23:39
# Updated on 27/01/2017 by Malwarebytes
# Database : 2017-01-28.1 [Server]
# Operating System : Windows 10 Pro (X64)
# Username : HP - HP-PC
# Running from : C:\Users\HP\Desktop\adwcleaner_6.043.exe
# Mode: Clean
# Support : https://www.malwarebytes.com/support
***** [ Services ] *****
[-] Service deleted: rtop
[-] Service deleted: ByteFenceService
***** [ Folders ] *****
[-] Folder deleted: C:\Program Files\ByteFence
[-] Folder deleted: C:\ProgramData\ByteFence
[#] Folder deleted on reboot: C:\ProgramData\Application Data\ByteFence
[-] Folder deleted: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ByteFence Anti-Malware
***** [ Files ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Shortcuts ] *****
***** [ Scheduled Tasks ] *****
[-] Task deleted: ByteFence
[-] Task deleted: ByteFence Scan
***** [ Registry ] *****
[-] Key deleted: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\ByteFenceService
[#] Key deleted on reboot: [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\ByteFenceService
[-] Key deleted: HKU\S-1-5-21-855933916-2125327620-179708743-1000\Software\ByteFence
[#] Key deleted on reboot: HKCU\Software\ByteFence
[-] Key deleted: HKLM\SOFTWARE\ByteFence
[-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ByteFence
[#] Key deleted on reboot: [x64] HKCU\Software\ByteFence
[-] Key deleted: [x64] HKLM\SOFTWARE\ByteFence
[-] Key deleted: HKLM\SOFTWARE\Classes\Directory\shell\ByteFence Folder Scan
[-] Key deleted: HKLM\SOFTWARE\Classes\*\shell\ByteFence File Scan
***** [ Web browsers ] *****
*************************
:: "Tracing" keys deleted
:: Winsock settings cleared
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [1844 Bytes] - [28/01/2017 21:23:39]
C:\AdwCleaner\AdwCleaner[S0].txt - [1995 Bytes] - [28/01/2017 21:17:47]
########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [1990 Bytes] ##########
JRT:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.0 (12.05.2016)
Operating System: Windows 10 Pro x64
Ran by HP (Administrator) on 28/01/2017 at 21:28:36.01
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
File System: 0
Registry: 0
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 28/01/2017 at 21:31:27.60
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~