inksdata.com has constantly been popping up with advertising and asking me to complete surveys to be rewarded with a gift .It is so annoying and I cannot seem to find anything that will help me get it off my computer.Help please !!!I do not want to turn off my pop up blocker as I require to have it on for certain games I play online .Thank you
Updated 08/06/2013 by Xplode
Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
User : Darren - CARR-NB
Boot Mode : Normal
Running from : C:\Users\Darren\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CO28WYUV\adwcleaner (1).exe
Option [Search]
***** [Services] *****
***** [Files / Folders] *****
Folder Found : C:\Program Files (x86)\Common Files\AVG Secure Search
Folder Found : C:\Users\Darren\AppData\Roaming\Mozilla\Firefox\Profiles\r8waru6e.default\extensions\plugin@getwebcake.com
***** [Registry] *****
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings{AF6B0594-6008-4327-93E5-608AD710A6FA}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats{AF6B0594-6008-4327-93E5-608AD710A6FA}
Key Found : HKLM\SOFTWARE\Classes\AppID{7169BBB3-3289-4696-B35D-4A88BCF6FB12}
Key Found : HKLM\SOFTWARE\Classes\AppID\WebCakeIEClient.DLL
Key Found : HKLM\SOFTWARE\Classes\TypeLib{EFDF368C-8DD9-4E05-87CD-16AA5CB03CB8}
Key Found : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api
Key Found : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api.1
Key Found : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers
Key Found : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers.1
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved{AF6B0594-6008-4327-93E5-608AD710A6FA}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID{AF6B0594-6008-4327-93E5-608AD710A6FA}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID{DF84E609-C3A4-49CB-A160-61767DAF8899}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface{DF84E609-C3A4-49CB-A160-61767DAF8899}
Key Found : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh
Key Found : HKLM\SOFTWARE\Classes\Interface{DF84E609-C3A4-49CB-A160-61767DAF8899}
Use ADWCleaner to remove the files and registery values of inksdata.com
AdwCleaner is a powerful program to detect and remove unwanted toolbars.
It is easy very easy to use.
This software will browsers completely clean and restore to default values.
Close all browsers / websites
Download AdwCleaner from the official site, to you desktop (Desktop) from Windows
download from: http://general-changelog-team.fr/en/downloads/finish/20-outils-de-xplode/2-adwcleaner
Start AdwCleaner.exe
NOTE: Windows XP users, double-click adwcleaner.exe / Windows Vista – 7 users, right-click adwcleaner.exe and select “run as administrator“.
Click Delete
a logfile will open with the results
if you need to restart do so, the logfile will open after you restart the computer
Perform a scan with MalwareBytes Anti-Malware to complete clean and protect the computer from future infections,
Have placed log on original post now but here it is again ty
Updated 08/06/2013 by Xplode
Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
User : Darren - CARR-NB
Boot Mode : Normal
Running from : C:\Users\Darren\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CO28WYUV\adwcleaner (1).exe
Option [Search]
***** [Services] *****
***** [Files / Folders] *****
Folder Found : C:\Program Files (x86)\Common Files\AVG Secure Search
Folder Found : C:\Users\Darren\AppData\Roaming\Mozilla\Firefox\Profiles\r8waru6e.default\extensions\plugin@getwebcake.com
***** [Registry] *****
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings{AF6B0594-6008-4327-93E5-608AD710A6FA}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats{AF6B0594-6008-4327-93E5-608AD710A6FA}
Key Found : HKLM\SOFTWARE\Classes\AppID{7169BBB3-3289-4696-B35D-4A88BCF6FB12}
Key Found : HKLM\SOFTWARE\Classes\AppID\WebCakeIEClient.DLL
Key Found : HKLM\SOFTWARE\Classes\TypeLib{EFDF368C-8DD9-4E05-87CD-16AA5CB03CB8}
Key Found : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api
Key Found : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api.1
Key Found : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers
Key Found : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers.1
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved{AF6B0594-6008-4327-93E5-608AD710A6FA}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID{AF6B0594-6008-4327-93E5-608AD710A6FA}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID{DF84E609-C3A4-49CB-A160-61767DAF8899}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface{DF84E609-C3A4-49CB-A160-61767DAF8899}
Key Found : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh
Key Found : HKLM\SOFTWARE\Classes\Interface{DF84E609-C3A4-49CB-A160-61767DAF8899}
Your making it very hard to follow your issue as your posting in multiple areas, stick with your topic in the viruses and worms section http://forum.avast.com/index.php?topic=126751.msg950760 and attach the extra logs requested - Malwarebytes and OTL ( don’t copy paste ).
[quote author=Musbemee link=topic=126558.msg950501#msg950501 date=1370691178] Not even adwCleaner got rid of it and am certainly not technically minded so don’t know what to do next confidently.
Log below from adw
***** [Files / Folders] *****
Folder Found : C:\Program Files (x86)\Common Files\AVG Secure Search