Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Support
Windows Malware Removal Help & Support
Help removing Delta search virus
Message
<blockquote data-quote="Sammie" data-source="post: 112379" data-attributes="member: 6806"><p>AdwCleaner results</p><p></p><p> AdwCleaner v2.115 - Logfile created 03/21/2013 at 07:16:18</p><p># Updated 17/03/2013 by Xplode</p><p># Operating system : Windows (TM) Vista Home Premium Service Pack 2 (64 bits)</p><p># User : frys - SAMMIE</p><p># Boot Mode : Normal</p><p># Running from : C:\Users\frys\Desktop\AdwCleaner.exe</p><p># Option [Delete]</p><p></p><p></p><p>***** [Services] *****</p><p></p><p></p><p>***** [Files / Folders] *****</p><p></p><p>Deleted on reboot : C:\Users\frys\AppData\Roaming\Mozilla\Firefox\Profiles\4q2oclfw.default\jetpack</p><p>File Deleted : C:\END</p><p>File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\avg-secure-search.xml</p><p>File Deleted : C:\Users\frys\AppData\Roaming\Mozilla\Firefox\Profiles\4q2oclfw.default\searchplugins\safesearch.xml</p><p></p><p>***** [Registry] *****</p><p></p><p>Key Deleted : HKCU\Software\DataMngr</p><p>Key Deleted : HKCU\Software\DataMngr_Toolbar</p><p>Key Deleted : HKCU\Software\delta LTD</p><p>Key Deleted : HKCU\Software\InstallCore</p><p>Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}</p><p>Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}</p><p>Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}</p><p>Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Anti-phishing Domain Advisor</p><p>Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F6AFBF1-E065-4627-A2FD-810366367D01}</p><p>Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}</p><p>Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}</p><p>Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}</p><p>Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}</p><p>Key Deleted : HKCU\Software\wecarereminder</p><p>Key Deleted : HKCU\Software\58088ddb73ee847</p><p>Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}</p><p>Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}</p><p>Key Deleted : HKLM\Software\DataMngr</p><p>Key Deleted : HKLM\Software\Description</p><p>Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7F6AFBF1-E065-4627-A2FD-810366367D01}</p><p>Key Deleted : HKLM\SOFTWARE\Wow6432Node\58088ddb73ee847</p><p>Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}</p><p>Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}</p><p>Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}</p><p>Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Anti-phishing Domain Advisor</p><p>Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}</p><p>Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}</p><p>Key Deleted : HKLM\SOFTWARE\Tarma Installer</p><p>Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]</p><p></p><p>***** [Internet Browsers] *****</p><p></p><p>-\\ Internet Explorer v9.0.8112.16470</p><p></p><p>[OK] Registry is clean.</p><p></p><p>-\\ Mozilla Firefox v19.0.2 (en-US)</p><p></p><p>File : C:\Users\frys\AppData\Roaming\Mozilla\Firefox\Profiles\4q2oclfw.default\prefs.js</p><p></p><p>Deleted : user_pref("extensions.crossriderapp21154.21154.backgroundjs", "\n\n/********************************[...]</p><p>Deleted : user_pref("extensions.crossriderapp21154.21154.js", "\n\n /****************************************[...]</p><p>Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_14.code", "if(typeof(appAPI)===\"undef[...]</p><p>Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_16.code", "if((typeof isBackground===\[...]</p><p>Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_17.code", "if(typeof window!==\"undefi[...]</p><p>Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_22.code", "(function(a){appAPI.queueMa[...]</p><p>Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_4.code", "var jQuery = $jquery_171 = $[...]</p><p>Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_6.code", "appAPI.sidebar=(function(x){[...]</p><p>Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_64.code", "(function(){var h=\"__CR_EM[...]</p><p>Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_7.code", "appAPI.hooks={$:$jquery_171,[...]</p><p>Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_78.code", "if(typeof jQuery!==\"undefi[...]</p><p>Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_9.code", "appAPI.hooks.addHook(\"searc[...]</p><p></p><p>-\\ Google Chrome v25.0.1364.172</p><p></p><p>File : C:\Users\frys\AppData\Local\Google\Chrome\User Data\Default\Preferences</p><p></p><p>[OK] File is clean.</p><p></p><p>*************************</p><p></p><p>AdwCleaner[S1].txt - [5064 octets] - [21/03/2013 07:16:18]</p><p></p><p>########## EOF - C:\AdwCleaner[S1].txt - [5124 octets] ##########</p></blockquote><p></p>
[QUOTE="Sammie, post: 112379, member: 6806"] AdwCleaner results AdwCleaner v2.115 - Logfile created 03/21/2013 at 07:16:18 # Updated 17/03/2013 by Xplode # Operating system : Windows (TM) Vista Home Premium Service Pack 2 (64 bits) # User : frys - SAMMIE # Boot Mode : Normal # Running from : C:\Users\frys\Desktop\AdwCleaner.exe # Option [Delete] ***** [Services] ***** ***** [Files / Folders] ***** Deleted on reboot : C:\Users\frys\AppData\Roaming\Mozilla\Firefox\Profiles\4q2oclfw.default\jetpack File Deleted : C:\END File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\avg-secure-search.xml File Deleted : C:\Users\frys\AppData\Roaming\Mozilla\Firefox\Profiles\4q2oclfw.default\searchplugins\safesearch.xml ***** [Registry] ***** Key Deleted : HKCU\Software\DataMngr Key Deleted : HKCU\Software\DataMngr_Toolbar Key Deleted : HKCU\Software\delta LTD Key Deleted : HKCU\Software\InstallCore Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Anti-phishing Domain Advisor Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F6AFBF1-E065-4627-A2FD-810366367D01} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CC59E0F9-7E43-44FA-9FAA-8377850BF205} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CC59E0F9-7E43-44FA-9FAA-8377850BF205} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440} Key Deleted : HKCU\Software\wecarereminder Key Deleted : HKCU\Software\58088ddb73ee847 Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8} Key Deleted : HKLM\Software\DataMngr Key Deleted : HKLM\Software\Description Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7F6AFBF1-E065-4627-A2FD-810366367D01} Key Deleted : HKLM\SOFTWARE\Wow6432Node\58088ddb73ee847 Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CC59E0F9-7E43-44FA-9FAA-8377850BF205} Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205} Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Anti-phishing Domain Advisor Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Key Deleted : HKLM\SOFTWARE\Tarma Installer Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}] ***** [Internet Browsers] ***** -\\ Internet Explorer v9.0.8112.16470 [OK] Registry is clean. -\\ Mozilla Firefox v19.0.2 (en-US) File : C:\Users\frys\AppData\Roaming\Mozilla\Firefox\Profiles\4q2oclfw.default\prefs.js Deleted : user_pref("extensions.crossriderapp21154.21154.backgroundjs", "\n\n/********************************[...] Deleted : user_pref("extensions.crossriderapp21154.21154.js", "\n\n /****************************************[...] Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_14.code", "if(typeof(appAPI)===\"undef[...] Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_16.code", "if((typeof isBackground===\[...] Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_17.code", "if(typeof window!==\"undefi[...] Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_22.code", "(function(a){appAPI.queueMa[...] Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_4.code", "var jQuery = $jquery_171 = $[...] Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_6.code", "appAPI.sidebar=(function(x){[...] Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_64.code", "(function(){var h=\"__CR_EM[...] Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_7.code", "appAPI.hooks={$:$jquery_171,[...] Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_78.code", "if(typeof jQuery!==\"undefi[...] Deleted : user_pref("extensions.crossriderapp21154.21154.plugins.plugin_9.code", "appAPI.hooks.addHook(\"searc[...] -\\ Google Chrome v25.0.1364.172 File : C:\Users\frys\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] File is clean. ************************* AdwCleaner[S1].txt - [5064 octets] - [21/03/2013 07:16:18] ########## EOF - C:\AdwCleaner[S1].txt - [5124 octets] ########## [/QUOTE]
Insert quotes…
Verification
Post reply
Top