been using avast! for about a week now since my computer was running really slow and ever since i installed it and let it run the scanners there’s one that it can’t seem to get rid of. it’s basically from chrome everytime and different sites such as “theparenttrace” “files2share” etc etc etc, i get atleast 20 while on the computer for around 10 minutes, sometimes without even opening chrome itself…
I tried using Malwarebytes Anti-malware to scan but it gets stuck about 3/4 of the way through and i’ve left it to finish for about 3 hours and nothing, still says scanning… shall i leave it running overnight? any help would be appreciated! thanks in advance
Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
[*]Right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer.
[*]Select additions at the bottom
[*]Press Scan button.
[*]It will produce a log called FRST.txt in the same directory the tool is run from.
[*]Please attach both logs generated.
THEN
Download aswMBR.exe ( 4.5mb ) to your desktop.
Double click the aswMBR.exe to run it.
You may be offered the option of using virtualisation, accept that
When it offers to download the virus database allow that as well
Click the “Scan” button to start scan
it does the same with avast. I think it’s something in google chrome but I can’t see anything when i go to apps/extensions. They must be hidden. I attached the other files if they’re any use to you.
Run FRST and press Fix
On completion a log will be generated please post that
THEN
Please download AdwCleaner by Xplode onto your desktop.
[*]Close all open programs and internet browsers.
[*]Double click on AdwCleaner.exe to run the tool.
[*]Click on Scan.
[*]After the scan is complete click on “Clean”
[*]Confirm each time with Ok.
[*]Your computer will be rebooted automatically. A text file will open after the restart.
[*]Please post the content of that logfile with your next answer.
[*]You can find the logfile at C:\AdwCleaner[S1].txt as well.
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 25-02-2015 01
Ran by Stu at 2015-02-27 23:44:16 Run:2
Running from C:\Users\Stu\Desktop
Loaded Profiles: Stu (Available profiles: Stu & Mcx1-STU-HP & Guest)
Boot Mode: Normal
Restore point was successfully created.
HKLM\SOFTWARE\Policies\Google => Key not found.
HKU.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable => value deleted successfully.
HKU.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer => value deleted successfully.
HKLM\Software\Microsoft\Internet Explorer\Main\Start Page => Value was restored successfully.
HKLM\Software\Microsoft\Internet Explorer\Main\Search Page => Value was restored successfully.
HKLM\Software\Microsoft\Internet Explorer\Main\Default_Page_URL => Value was restored successfully.
HKLM\Software\Microsoft\Internet Explorer\Main\Default_Search_URL => Value was restored successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes{006ee092-9658-4fd6-bd8e-a21a348e59f5} => Key not found.
HKCR\Wow6432Node\CLSID{006ee092-9658-4fd6-bd8e-a21a348e59f5} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key not found.
HKCR\Wow6432Node\CLSID{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key not found.
HKU\S-1-5-21-2190921567-3002956030-1035014947-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes{099A4A17-E294-40F7-A3BC-8CFA58599E1F} => Key not found.
HKCR\CLSID{099A4A17-E294-40F7-A3BC-8CFA58599E1F} => Key not found.
HKU\S-1-5-21-2190921567-3002956030-1035014947-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes{d43b3890-80c7-4010-a95d-1e77b5924dc3} => Key not found.
HKCR\CLSID{d43b3890-80c7-4010-a95d-1e77b5924dc3} => Key not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} => Key not found.
HKCR\CLSID{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} => Key not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects{F9E4A054-E9B1-4BC3-83A3-76A1AE736170} => Key not found.
HKCR\CLSID{F9E4A054-E9B1-4BC3-83A3-76A1AE736170} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} => Key not found.
HKCR\Wow6432Node\CLSID{E76FD755-C1BA-4DCB-9F13-99BD91223ADE} => Key not found.
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} => Key not found.
HKCR\CLSID{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} => Key not found.
HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\Default => Value was restored successfully.
Chrome HomePage not detected.
Chrome StartupUrls not detected.
Chrome DefaultSearchKeyword not detected.
Chrome DefaultSuggestURL not detected.
C:\Users\Stu\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.6.758_platform_specific\win_x86\widevinecdmadapter.dll not found.
C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\PepperFlash\pepflashplayer.dll not found.
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\internal-nacl-plugin No File not found.
C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\pdf.dll not found.
C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll not found.
C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll not found.
C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll not found.
C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll not found.
C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll not found.
C:\Users\Stu\AppData\Roaming\Mozilla\plugins\np-mswmp.dll not found.
C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL not found.
C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll not found.
C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll not found.
C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll not found.
C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll not found.
C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll not found.
C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll not found.
C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll not found.
C:\Users\Stu\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll not found.
C:\Windows\SysWOW64\Adobe\Director\np32dsw_1203133.dll not found.
C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll not found.
c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll not found.
CHR Profile: C:\Users\Stu\AppData\Local\Google\Chrome\User Data\Default => Error: No automatic fix found for this entry.
C:\Users\Stu\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf directory not found.
C:\Users\Stu\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn directory not found.
C:\Users\Stu\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo directory not found.
C:\Users\Stu\AppData\Local\Google\Chrome\User Data\Default\Extensions\cahedbegdkagmcjfolhdlechbkeaieki directory not found.
C:\Users\Stu\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf directory not found.
C:\Users\Stu\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme directory not found.
C:\Users\Stu\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom directory not found.
C:\Users\Stu\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik directory not found.
C:\Users\Stu\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda directory not found.
C:\Users\Stu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia directory not found.
HKLM\SOFTWARE\Google\Chrome\Extensions\jeaohhlajejodfjadcponpnjgkiikocn => Key not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\aepeildmfnnehghlknddebgjghlompfe => Key not found.
“C:\Program Files (x86)\HP SimplePass 2011\tschrome.crx” => File/Directory not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki => Key not found.
Could not move “C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx” => Scheduled to move on reboot.
fdfcd97f => Service not found.
“C:\Windows\SysWOW64\sho3091.tmp” => File/Directory not found.
“C:\Program Files (x86)\SuaaveirPro” => File/Directory not found.
“C:\Program Files (x86)\saVinshaope” => File/Directory not found.
“C:\Program Files (x86)\saveribox” => File/Directory not found.
“C:\Program Files (x86)\SmarttCoMparEE” => File/Directory not found.
“C:\ProgramData\17328935941484846146” => File/Directory not found.
“C:\Program Files (x86)\APptoU” => File/Directory not found.
“C:\ProgramData\WildWestCoupon” => File/Directory not found.
“C:\Program Files (x86)\UpgradeLeader” => File/Directory not found.
“C:\ProgramData\8915822200006085” => File/Directory not found.
“C:\Users\Stu\AppData\Roaming\KWETHZ” => File/Directory not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{1F021751-EE67-4CCF-B56D-6F84D6243949} => Key not found.
C:\Windows\System32\Tasks{A8C14615-6471-4CCE-AB07-54A72DB99AF4} not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree{A8C14615-6471-4CCE-AB07-54A72DB99AF4} => Key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{4545BD3D-00B5-4787-A88B-5AB9F828C357} => Key not found.
C:\Windows\System32\Tasks\LaunchSignup not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\LaunchSignup => Key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{565361CD-0CEC-4654-9E4D-D9A9C3F828F2} => Key not found.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA => Key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{8E764BC1-7F90-409C-9132-5DE356C73551} => Key not found.
C:\Windows\System32\Tasks{7C7F113E-90E0-4ECA-9E43-FAE8AD77BA25} not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree{7C7F113E-90E0-4ECA-9E43-FAE8AD77BA25} => Key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{C30FCCD7-2BDF-4738-8FB5-E768E4C10B97} => Key not found.
C:\Windows\System32\Tasks{D76A49F9-4721-4471-B2A0-A037D849E64C} not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree{D76A49F9-4721-4471-B2A0-A037D849E64C} => Key not found.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job not found.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job not found.
“C:\Users\Stu\jagex_cl_runescape_LIVE.dat” => File/Directory not found.
“C:\Users\Stu\random.dat” => File/Directory not found.
“C:\Program Files (x86)\Google\Chrome” => File/Directory not found.
“C:\Users\Stu\AppData\Local\Google\Chrome” => File/Directory not found.
“c:\Program Files (x86)\UpgradeLeader” => File/Directory not found.
“C:\Users\Stu\AppData\Roaming\omiga-plus” => File/Directory not found.
“C:\Program Files (x86)\MyPC Backup” => File/Directory not found.
========= bitsadmin /reset /allusers =========
BITSADMIN version 3.0 [ 7.5.7601 ]
BITS administration utility.
(C) Copyright 2000-2006 Microsoft Corp.
BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.
0 out of 0 jobs canceled.
========= End of CMD: =========
EmptyTemp: => Removed 515 KB temporary data.
=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2015-02-27 23:52:04)<=
“C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx” => File could not move.
essex it seems to have stopped but it’s taking longer to restart the laptop and when it comes on it tells me catalyst control panel stopped working? i’m unsure if that’s important or not?