frazier

Members
  • Content Count

    5
  • Joined

  • Last visited

Posts posted by frazier

  1. nkware Removal Tool (JRT) by Thisisu
    Version: 6.1.2 (02.20.2014:1)
    OS: Windows 7 Home Premium x64
    Ran by frazier on Sun 03/23/2014 at  8:12:19.29
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

     

    ~~~ Services

     

    ~~~ Registry Values

     

    ~~~ Registry Keys

     

    ~~~ Files

     

    ~~~ Folders

    Successfully deleted: [Folder] "C:\Program Files (x86)\coupons"

     

    ~~~ Event Viewer Logs were cleared

     

     

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Scan was completed on Sun 03/23/2014 at  8:18:15.77
    End of JRT log
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

  2. # AdwCleaner v3.022 - Report created 23/03/2014 at 08:00:11
    # Updated 13/03/2014 by Xplode
    # Operating System : Windows 7 Home Premium  (64 bits)
    # Username : frazier - FRAZIER-PC
    # Running from : C:\Users\frazier\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1MJH84HS\adwcleaner[1].exe
    # Option : Clean

    ***** [ Services ] *****

    ***** [ Files / Folders ] *****

    Folder Deleted : C:\Users\frazier\AppData\Roaming\File Type Helper
    File Deleted : C:\windows\System32\roboot64.exe

    ***** [ Shortcuts ] *****

    ***** [ Registry ] *****

    Key Deleted : HKLM\SOFTWARE\Classes\AppID\WLXQuickTimeShellExt.DLL
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}

    ***** [ Browsers ] *****

    -\\ Internet Explorer v8.0.7600.17267

    *************************

    AdwCleaner[R0].txt - [957 octets] - [23/03/2014 07:50:30]
    AdwCleaner[s0].txt - [889 octets] - [23/03/2014 08:00:11]

    ########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [948 octets] ##########

  3. nti-Malware (Trial) 1.75.0.1300
    www.malwarebytes.org

    Database version: v2014.03.23.06

    Windows 7 x64 NTFS (Safe Mode/Networking)
    Internet Explorer 8.0.7600.16385
    frazier :: FRAZIER-PC [administrator]

    Protection: Disabled

    3/23/2014 7:19:35 AM
    mbam-log-2014-03-23 (07-19-35).txt

    Scan type: Quick scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
    Scan options disabled: P2P
    Objects scanned: 220666
    Time elapsed: 4 minute(s), 5 second(s)

    Memory Processes Detected: 0
    (No malicious items detected)

    Memory Modules Detected: 0
    (No malicious items detected)

    Registry Keys Detected: 0
    (No malicious items detected)

    Registry Values Detected: 2
    HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce|AS2014 (Rogue.FakeAV) -> Data: C:\ProgramData\WDXRVpDn\WDXRVpDn.exe -> Quarantined and deleted successfully.
    HKCU\Control Panel\don't load|wscui.cpl (Hijack.SecurityCenter) -> Data: No -> Quarantined and deleted successfully.

    Registry Data Items Detected: 0
    (No malicious items detected)

    Folders Detected: 0
    (No malicious items detected)

    Files Detected: 7
    C:\ProgramData\WDXRVpDn\WDXRVpDn.exe (Rogue.FakeAV) -> Quarantined and deleted successfully.
    C:\Users\frazier\AppData\Roaming\Adobe\acupx217.dll (Trojan.FakeMS.ED) -> Quarantined and deleted successfully.
    C:\Users\frazier\AppData\Local\Temp\MASMAHL120A.exe (Trojan.Agent) -> Quarantined and deleted successfully.
    C:\Users\frazier\AppData\Local\Owrics\xkbruvppgygzcd.dll (VirTool.Vbcrypt) -> Quarantined and deleted successfully.
    C:\Users\frazier\Local Settings\Temporary Internet Files\Content.IE5\K7RS94C3\AbPSi.exe (Trojan.Happili) -> Quarantined a