Windows 10: help, urgently ><

Discus and support help, urgently >< in Windows 10 Support to solve the problem; Okay as the title says I have some sort of... uh an issue with windows 10 and that is as the picture shows that(2nd one) I have "microsoft essentials... Discussion in 'Windows 10 Support' started by khalitzy, Jun 15, 2016.

  1. khalitzy Win User

    help, urgently ><


    • Okay as the title says I have some sort of... uh an issue with windows 10 and that is as the picture shows
      that(2nd one) I have "microsoft essentials prerelease" turned on.. even tho I don't have it installed or anything and I tried uninstalling it, but didn't find it anywhere.. checked services.. also didn't see it there.. and I have windows defender disabled.. however I can't enable it lol.. says something along the lines of signature something something.. what I concluded is that after installing win 10 from win 7, something happened that messed up windows defender, but I digress. Anyway I wanna know how to turn off that microsoft thing, and as for the 2nd problem.. it's about the error 0x800700E1.. so there are some files that I can't copy or extract out of a .RAR file cuz of a stupid error that pops up saying that this file contains a virus or a potential malware.. like the 1st picture.. hope my problem is clear >< and thanks in advance. This is my first thread on here.. hopefully I get something out of the hours I spent trying to find something useful on google..

    :)
     
    khalitzy, Jun 15, 2016
    #1
  2. demcsjnr Win User

    facebook news feed error

    <p>Hello pls my Facebook account was having a problem logging me in and i posted a it here and an expert help me out by removing it completely form my account settings and add it again. It worked perfectly for me but the problem i have is in my news feed
    only what i post&nbsp;comes on my wall, but at first pics that by friends tags me in and status also appear there but recently not anymore.</p><p></p><p>So pls i want to see post and pics am tagged in appear on my "me" wall so i can lyk nd comment. </p><p></p><p>Pls
    help me it urgent.</p><p></p><p>Thanks</p>&nbsp;
     
    demcsjnr, Jun 15, 2016
    #2
  3. phishing websites

    Hi,

    These url are phishing websites that you should add urgently to your database:

    <list of sites removed>

    Thanks
     
    christophesalengro, Jun 15, 2016
    #3
  4. khalitzy Win User

    help, urgently ><

    also I forgot to mention that I still couldn't solve the 2nd problem (the 0x800700E1 problem) by disabling my anti viruses/ security stuff or firewall. It still persists after all.. I doubt it's cuz of that microsfot essentials thing that I cannot turn off..but idk, hope you guys help.
     
    khalitzy, Jun 15, 2016
    #4
  5. Berton Win User
    One issue I can think of is that Microsoft Security Essentials has been discontinued on Win10 and Windows Defender is better than what it was on Win7, I'd uninstall MSE completely, not just disable it. The 2 computers I'd installed MSE on Win7 had it disabled when I Upgraded to Win10 and installed Windows Defender automatically, have been working fine.
     
    Berton, Jun 15, 2016
    #5
  6. khalitzy Win User
    Yeah I KNOW, but I can't uninstall MSE.. can't find a way to uninstall it anywhere.. you missed the point xD
     
    khalitzy, Jun 15, 2016
    #6
  7. Berton Win User
    In the vernacular of others, my bad, thought you knew that programs can be installed in Control Panel, Programs and Features. But it could be your computer is badly infected and more drastic measures are needed.
     
    Berton, Jun 15, 2016
    #7
  8. RWOne Win User

    help, urgently ><

    Other than infection or not looking in programs and features, you could try CCleaner free to remove essentials and any reg entries from it.

    BUT, deal with the system as if infected first, scan and clean, run malwarebytes on it.

    In case it is a false positive, just what exactly is the RAR in which you are extracting files?
     
    RWOne, Jun 15, 2016
    #8
  9. khalitzy Win User
    In the vernacular .. uh man I know what control panel is, and ofc i've been over it and the programs (uninstall/repair) list.. it just isn't there, and I am quite sure my pc isn't infected cause I've run limitless scans.. by avast, bitdefender, panda security and even other cleaning programs.. and I guess it's really hard to get my problem understood online as if it'd be better if someone had access to it in person but meh i guess ill just get a new pc later anyway, this one's been aging for a while.. not so long tho but what can I do..
     
    khalitzy, Jun 16, 2016
    #9
  10. Well this doesn't look good!

    Microsoft Security Essentials 2016 Pre-Release
    Microsoft Security Essentials (English) Win 10/8/8.1 - The FileHippo.com - Popular Software Free Download

    Besides the poor grammar and typos, the link itself is a knock-off of filehippo and the download link is to a SimilarHippoName on blogspot.

    It was the only thing Google returned that was as closely matched.
    sro_client.exe could be valid or could be malware. Either way it is not part of Windows
    Search C: for sro_client

    C:\Program Files\Silkroad is the expected location

    If it is found under Windows, it's probably a virus.

    Download two utilities

    Click here to download Old Timer-TFC.

    Click here to download AdwCleaner (author: Xplode)

    Save these instructions
    then ...
    Safe Mode - Start Windows 10 in - Windows 10 Forums
    5. To Start Windows 10 in Safe Mode

    Right click TFC
    Seelect Run as administrator

    Click the Start button to begin the cleaning up temporary files and folders.

    Do not work on other things while TFC is running - most applications use some sort of temporary files. Just let TFC run by itself on the machine until it completes.

    AdwCleaner is a two step process. Scan then Clean


    • Right-click AdwCleaner.exe and select Run As Administrator to run the scanner with full privilege rights.
      AdwCleaner is a standalone executable, there is no install.

    • Click on the Scan button.
      • AdwCleaner begins scanning your system. It might take some time to complete.

      • Review the detected objects grouped under each of the tabs.
        --> If there is something you KNOW should NOT be cleaned, clear the checkbox
        help, urgently >< [​IMG]
        next to the object. If you're not sure about an object, paste the scan logfile (AdwCleaner[S#].txt) in a new post for a member to review and advise you.
        Otherwise, go to the next step.

    • After the scan has finished and you have reviewed the objects to be cleaned, click on the Clean button.
      • Answer OK to the close all programs prompt, then follow the onscreen prompts.
      • Answer OK to the restart the computer prompt to complete the removal process.
        The AdwCleaner log file is opened in your default Text editor when the machine has restarted.
        Each time AdwCleaner runs, the log file number [#] is incremented, the highest number is the most recent. There are two log files, one for the scan (AdwCleaner[S#].txt) and one for the clean (AdwCleaner[C#].txt).
    Paste the entire clean logfile (AdwCleaner[C#].txt) in your next post.
    --> AdwCleaner logs are located in the C:\AdwCleaner folder if you need to reference them again
     
    Slartybart, Jun 16, 2016
    #10
  11. simrick Win User
    As far as I know, there is no such thing as "microsoft essentials prerelease". You are infected, and Slartybart has provided the next steps for your system.
     
    simrick, Jun 16, 2016
    #11
  12. khalitzy Win User
    # AdwCleaner v5.200 - Logfile created 20/06/2016 at 00:23:59
    # Updated 14/06/2016 by ToolsLib
    # Database : 2016-06-19.1 [Server]
    # Operating system : Windows 10 Pro (X64)
    # Username : Admin - ADMIN-PC
    # Running from : C:\Users\Admin\Desktop\AdwCleaner.exe
    # Option : Clean
    # Support : ToolsLib - Forum: Ask for help or share your experience.


    ***** [ Services ] *****




    ***** [ Folders ] *****


    [-] Folder Deleted : C:\Users\Admin\AppData\Roaming\eCyber
    [-] Folder Deleted : C:\Users\Admin\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ffbhefmlcoihbjcmibbfkocmnaiacinp
    [-] Folder Deleted : C:\Users\Admin\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fjmkjchhgcppbhigfcpgoiccienhnphp
    [-] Folder Deleted : C:\Users\Admin\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\nfdhgaiblnnfjlccmlkhffkciacpkmpc
    [-] Folder Deleted : C:\Users\Admin\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\nhgndjiojokhjeagncgaeeehopdklcge
    [#] Folder Deleted : C:\Users\Admin\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ffbhefmlcoihbjcmibbfkocmnaiacinp
    [#] Folder Deleted : C:\Users\Admin\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fjmkjchhgcppbhigfcpgoiccienhnphp
    [#] Folder Deleted : C:\Users\Admin\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\nfdhgaiblnnfjlccmlkhffkciacpkmpc
    [#] Folder Deleted : C:\Users\Admin\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\nhgndjiojokhjeagncgaeeehopdklcge
    [-] Folder Deleted : C:\Users\Admin\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ffbhefmlcoihbjcmibbfkocmnaiacinp
    [-] Folder Deleted : C:\Users\Admin\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fjmkjchhgcppbhigfcpgoiccienhnphp
    [-] Folder Deleted : C:\Users\Admin\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\nfdhgaiblnnfjlccmlkhffkciacpkmpc
    [-] Folder Deleted : C:\Users\Admin\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\nhgndjiojokhjeagncgaeeehopdklcge
    [#] Folder Deleted : C:\Users\Admin\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ffbhefmlcoihbjcmibbfkocmnaiacinp
    [#] Folder Deleted : C:\Users\Admin\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fjmkjchhgcppbhigfcpgoiccienhnphp
    [#] Folder Deleted : C:\Users\Admin\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\nfdhgaiblnnfjlccmlkhffkciacpkmpc
    [#] Folder Deleted : C:\Users\Admin\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\nhgndjiojokhjeagncgaeeehopdklcge
    [-] Folder Deleted : C:\Users\Public\Documents\dmp
    [-] Folder Deleted : C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1


    ***** [ Files ] *****


    [-] File Deleted : C:\WINDOWS\Reimage.ini
    [-] File Deleted : C:\WINDOWS\SysWOW64\findit.xml
    [-] File Deleted : C:\Users\Admin\AppData\Local\Temp\Utils.dll
    [-] File Deleted : C:\Users\Admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\qksee.lnk
    [-] File Deleted : C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\rtxqphw0.default\searchplugins\findit.xml
    [-] File Deleted : C:\WINDOWS\SysNative\drivers\netfilter2.sys


    ***** [ DLLs ] *****




    ***** [ WMI ] *****




    ***** [ Shortcuts ] *****




    ***** [ Scheduled tasks ] *****


    [-] Task Deleted : LaunchSignup
    [-] Task Deleted : WinTaske
    [-] Task Deleted : Browser Updater Task(Core)
    [-] Task Deleted : 5dd25e49-e804-4391-8f79-f8cbe2583311-1
    [-] Task Deleted : 5dd25e49-e804-4391-8f79-f8cbe2583311-5
    [-] Task Deleted : 5dd25e49-e804-4391-8f79-f8cbe2583311-5_user
    [-] Task Deleted : 5dd25e49-e804-4391-8f79-f8cbe2583311-6
    [-] Task Deleted : 5dd25e49-e804-4391-8f79-f8cbe2583311-7
    [-] Task Deleted : 5dd25e49-e804-4391-8f79-f8cbe2583311-1
    [-] Task Deleted : 5dd25e49-e804-4391-8f79-f8cbe2583311-5
    [-] Task Deleted : 5dd25e49-e804-4391-8f79-f8cbe2583311-5_user
    [-] Task Deleted : 5dd25e49-e804-4391-8f79-f8cbe2583311-6
    [-] Task Deleted : 5dd25e49-e804-4391-8f79-f8cbe2583311-7


    ***** [ Registry ] *****


    [-] Value Deleted : HKLM\SOFTWARE\Classes\.htm\OpenWithProgids [CRSBRWSHTML]
    [-] Value Deleted : HKLM\SOFTWARE\Classes\.html\OpenWithProgids [CRSBRWSHTML]
    [-] Value Deleted : HKLM\SOFTWARE\Classes\.shtml\OpenWithProgIDs [CRSBRWSHTML]
    [-] Value Deleted : HKLM\SOFTWARE\Classes\.webp\OpenWithProgIDs [CRSBRWSHTML]
    [-] Value Deleted : HKLM\SOFTWARE\Classes\.xht\OpenWithProgIDs [CRSBRWSHTML]
    [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SEARCHSCOPES\IELNKSRCH
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Mediaplayer\Shiminclusionlist\crossbrowse.exe
    [-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
    [-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
    [-] Value Deleted : HKLM\SOFTWARE\RegisteredApplications [Crossbrowse]
    [-] Key Deleted : HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ielnksrch}
    [-] Value Deleted : HKCU\Environment [SNF]
    [-] Value Deleted : HKCU\Environment [SNP]
    [-] Key Deleted : HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\Application Hosting.exe
    [-] Value Deleted : HKLM\SOFTWARE\CLASSES\.XHTML\OPENWITHPROGIDS [CRSBRWSHTML]
    [-] Key Deleted : HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Application Hosting
    [-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [SavePass 1.1-bg.exe]
    [-] Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
    [-] Key Deleted : HKLM\SOFTWARE\52d404f9-9d3c-4d65-9cb1-940fa5cdad78
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Applications\iLividSetup-r679-n-bc.exe
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Crossbrowse
    [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
    [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
    [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
    [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
    [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
    [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
    [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
    [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
    [-] Key Deleted : HKLM\SOFTWARE\Classes\IEHelper.IEButton
    [-] Key Deleted : HKLM\SOFTWARE\Classes\IEHelper.IEButton.1
    [-] Key Deleted : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine
    [-] Key Deleted : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1
    [-] Key Deleted : HKLM\SOFTWARE\Classes\YBrowserToolbar.YBrowserToolbar
    [-] Key Deleted : HKLM\SOFTWARE\Classes\YBrowserToolbar.YBrowserToolbar.1
    [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7375D127-3955-4654-8E7D-1949A7A9C902}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A8F7D0A5-7074-40B8-9BDC-1174BDD0A132}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D14D64BC-A0E4-42E3-BB72-FB41EA43C198}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DD1F043F-ABC8-4643-8B95-D2C5B22BB019}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E3F3E8F9-F747-4DD6-BA6B-82A6CE1E0860}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{ED0B64D4-BF27-4521-AD27-190F49BF5EA7}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{023E9EC8-B147-40EB-B0B3-DF90618FB371}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0522D9A4-4D57-437D-978D-E5B3B6C9005D}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{07F41522-AF7D-4F26-B394-094F059FDB8A}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0C40F472-7407-4467-8914-1DEA7C326972}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{212E6D43-6062-492A-B8CC-144669FF11ED}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{224FE662-1E6D-4BC0-AEBB-9E2FB4057BE9}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3A807417-B46D-4D37-8C9A-19AC6DE204F9}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3CC60715-D6C5-429D-830E-43FA3F86C61D}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4517D94C-19BA-46FA-BE66-2A30CEAC4A85}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{555D7146-94A8-4C94-AE76-C39CDC7F7705}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{59D188FA-757A-424E-8C93-F58FFD896BD7}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8120D9D6-785C-4413-9C0C-DF2028C56FAD}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{823AE2EB-E62C-4847-B192-C99B91B92416}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9B4F7CFE-987D-410E-A8E4-20182E0B3C24}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9B9A45F4-18FC-484A-BACA-076D78273D8E}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A6D54287-7939-466A-8579-92546D946C8C}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A78EDAFB-926F-4D93-AB13-8232D7378EB1}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
    [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8DD92279-9B04-4C6F-A862-EF3C24603804}
    [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2974C985-8151-4DE5-B23C-B875F0A8522F}
    [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10921475-03CE-4E04-90CE-E2E7EF20C814}
    [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10ECCE17-29B5-4880-A8F5-EAD298611484}
    [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10921475-03CE-4E04-90CE-E2E7EF20C814}
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2974C985-8151-4DE5-B23C-B875F0A8522F}
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7BCC228A-C730-4004-93F9-72CBB7033A62}
    [-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}]
    [-] Key Deleted : HKCU\Software\CrossBrowser
    [-] Key Deleted : HKCU\Software\GlobalUpdate
    [-] Key Deleted : HKCU\Software\InstalledBrowserExtensions
    [-] Key Deleted : HKCU\Software\Reimage
    [-] Key Deleted : HKCU\Software\Yahoo\Companion
    [-] Key Deleted : HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief.
    [-] Key Deleted : HKCU\Software\AppDataLow\Software\Yahoo\Companion
    [-] Key Deleted : HKLM\SOFTWARE\AppDataLow\SOFTWARE\Crossrider
    [-] Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
    [-] Key Deleted : HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
    [-] Key Deleted : HKLM\SOFTWARE\Email Notifier
    [-] Key Deleted : HKLM\SOFTWARE\GlobalUpdate
    [-] Key Deleted : HKLM\SOFTWARE\hdcode
    [-] Key Deleted : HKLM\SOFTWARE\ihpmserver
    [-] Key Deleted : HKLM\SOFTWARE\IHProtect
    [-] Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
    [-] Key Deleted : HKLM\SOFTWARE\omiga-plusSoftware
    [-] Key Deleted : HKLM\SOFTWARE\RayDld
    [-] Key Deleted : HKLM\SOFTWARE\Yahoo\Companion
    [-] Key Deleted : HKLM\SOFTWARE\yessearchesSoftware
    [-] Key Deleted : HKLM\SOFTWARE\qkseeSvc
    [-] Key Deleted : HKLM\SOFTWARE\{E6276374-DE18-4AA5-A365-9016A2F98A2D}
    [-] Key Deleted : HKLM\SOFTWARE\{G6276374-DEEE-4AAA-A355-9016A2F98A2D}
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7DD5E91C-3864-77EC-7635-D14910C2A03E}
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}
    [-] Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Reimage
    [-] Key Deleted : [x64] HKLM\SOFTWARE\TornTv Downloader
    [-] Key Deleted : [x64] HKLM\SOFTWARE\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678}
    [-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
    [-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_
    [-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\SavePass 1.1
    [-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [pcmgr]
    [-] Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 [pcmgr]
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\services\IHProtect Service
    [-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\WindowsMangerProtect
    [-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\winzipersvc
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\services\YahooAUService
    [-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\qkseeService


    ***** [ Web browsers ] *****


    [-] [C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : fjmkjchhgcppbhigfcpgoiccienhnphp
    [-] [C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : fjmkjchhgcppbhigfcpgoiccienhnphp
    [-] [C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : nfdhgaiblnnfjlccmlkhffkciacpkmpc
    [-] [C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : nfdhgaiblnnfjlccmlkhffkciacpkmpc
    [-] [C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : nhgndjiojokhjeagncgaeeehopdklcge
    [-] [C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : nhgndjiojokhjeagncgaeeehopdklcge


    *************************


    :: "Tracing" keys deleted
    :: Winsock settings cleared


    *************************


    C:\AdwCleaner\AdwCleaner[C1].txt - [1846 bytes] - [20/06/2016 00:11:21]
    C:\AdwCleaner\AdwCleaner[C2].txt - [14981 bytes] - [20/06/2016 00:23:59]
    C:\AdwCleaner\AdwCleaner[S1].txt - [16728 bytes] - [20/06/2016 00:08:08]
    C:\AdwCleaner\AdwCleaner[S2].txt - [15465 bytes] - [20/06/2016 00:19:35]


    ########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [15203 bytes] ##########
     
    khalitzy, Jun 19, 2016
    #12
  13. simrick Win User

    help, urgently ><

    Crossbrowser, yessearches...yes, you are infected and may even have a rootkit or two.
    A similar infection can be found "cleaned" over at BleepingComputer:
    Recurring adware/malware installation - Am I infected? What do I do?

    So, if you're still having problems, you might want to read through that thread. Perhaps Slartybart has some additional instructions for you.
     
    simrick, Jun 19, 2016
    #13
  14. simrick Win User
    FYI: qkseeSvc scan on VirusTotal:
    https://www.virustotal.com/en/file/b...0077/analysis/

    AVware Trojan.Win32.Generic!BT 20160613 Ad-Aware Trojan.GenericKD.3212218 20160613 Antiy-AVL Trojan/Win32.SGeneric 20160613 Arcabit Trojan.Generic.D3103BA 20160613 Avira (no cloud) ADWARE/ELEX.695000 20160613 Baidu-International Adware.Win32.ELEX.CK 20160606 BitDefender Trojan.GenericKD.3212218 20160613 CAT-QuickHeal Trojan.Xadupi.r5 20160613 Comodo Application.Win32.ELEX.DAQ 20160613 Cyren W32/Trojan.JMCZ-1306 20160613 DrWeb Adware.Mutabaha.1050 20160613 ESET-NOD32 a variant of Win32/ELEX.CK potentially unwanted 20160613 Emsisoft Trojan.GenericKD.3212218 (B) 20160613 F-Secure Trojan.GenericKD.3212218 20160613 Fortinet W32/Obfuscated.NFV!tr 20160613 GData Trojan.GenericKD.3212218 20160613 Ikarus PUA.AddLyrics 20160613 K7AntiVirus Adware ( 004d42a81 ) 20160613 K7GW Adware ( 004d42a81 ) 20160613 Malwarebytes Adware.Qksee 20160613 McAfee Artemis!7DB0607CC1A6 20160613 McAfee-GW-Edition Artemis!Trojan 20160613 eScan Trojan.GenericKD.3212218 20160613 Microsoft Trojan:Win32/Xadupi 20160613 Panda PUP/AdwarePlugin 20160612 Sophos Generic PUA GG (PUA) 20160613 TrendMicro TROJ_GEN.R03EC0DE716 20160613 VIPRE Trojan.Win32.Generic!BT 20160613 Zillya Trojan.GenericKD.Win32.7717 20160612 nProtect Trojan.GenericKD.3212218 20160610
     
    simrick, Jun 19, 2016
    #14
  15. khalitzy Win User
    would a windows 10 reset help it? I have a copy of the programs and stuff I need on another.
     
    khalitzy, Jun 19, 2016
    #15
Thema:

help, urgently ><

Loading...
  1. help, urgently >< - Similar Threads - help urgently

  2. Help Urgent! My Microsoft account was hacked and all my banking information is on there!

    in Windows 10 Gaming
    Help Urgent! My Microsoft account was hacked and all my banking information is on there!: My Microsoft account had gotten hacked through a intricate scam that I sadly fell for. The account in question has had the password, email, and phone number changed, making it virtually impossible to get my account back through proper channels. I am freaking out because I had...
  3. Help Urgent! My Microsoft account was hacked and all my banking information is on there!

    in Windows 10 Software and Apps
    Help Urgent! My Microsoft account was hacked and all my banking information is on there!: My Microsoft account had gotten hacked through a intricate scam that I sadly fell for. The account in question has had the password, email, and phone number changed, making it virtually impossible to get my account back through proper channels. I am freaking out because I had...
  4. Urgently request help!! After i open my window11 with connect internet.CMD has fast auto...

    in AntiVirus, Firewalls and System Security
    Urgently request help!! After i open my window11 with connect internet.CMD has fast auto...: I got a file from a client that is cmd.exe. The customer claims that it is a spec file. I think it's strange. But in the end, my curiosity got too much. After clicking, of course I didn't get any files. But my computer will automatically run CMD and run the code and quickly...
  5. I need urgent access to my laptop. I’m locked out. Please help. Thanks

    in Windows 10 Gaming
    I need urgent access to my laptop. I’m locked out. Please help. Thanks: Hi, I just changed my pincode but it failed and didn’t change. Now when I try to login with my fingerprint or password it says ‘Your pin is required to sign in’ . The setup my pin option doesn’t do anything. It’s not allowing me to type my Pin as well. Please help!!...
  6. I need urgent access to my laptop. I’m locked out. Please help. Thanks

    in Windows 10 Software and Apps
    I need urgent access to my laptop. I’m locked out. Please help. Thanks: Hi, I just changed my pincode but it failed and didn’t change. Now when I try to login with my fingerprint or password it says ‘Your pin is required to sign in’ . The setup my pin option doesn’t do anything. It’s not allowing me to type my Pin as well. Please help!!...
  7. I need urgent access to my laptop. I’m locked out. Please help. Thanks

    in Windows Hello & Lockscreen
    I need urgent access to my laptop. I’m locked out. Please help. Thanks: Hi, I just changed my pincode but it failed and didn’t change. Now when I try to login with my fingerprint or password it says ‘Your pin is required to sign in’ . The setup my pin option doesn’t do anything. It’s not allowing me to type my Pin as well. Please help!!...
  8. URGENT HELP PLEASE....!

    in Windows 10 Gaming
    URGENT HELP PLEASE....!: I had asked question previously please help me I'm rly in bad situation... Help pls.https://answers.microsoft.com/en-us/windows/forum/windows_11-wintop_account/locked-out-of-my-own-account/9fd3dd9b-dd6d-405a-b2b3-d6837c992d78 Link to my previous un answered question...
  9. URGENT HELP PLEASE....!

    in Windows 10 Software and Apps
    URGENT HELP PLEASE....!: I had asked question previously please help me I'm rly in bad situation... Help pls.https://answers.microsoft.com/en-us/windows/forum/windows_11-wintop_account/locked-out-of-my-own-account/9fd3dd9b-dd6d-405a-b2b3-d6837c992d78 Link to my previous un answered question...
  10. [URGENT HELP] Blinking Black Screen

    in Windows 10 Gaming
    [URGENT HELP] Blinking Black Screen: [URGENT HELP] Can you please help me, im having troubled turning on my laptop but it keeps boot looping stuck in windows logo and it keeps loading , and then i tried to follow a tutorial on youtube which led me to accessing the Command prompt and system restore, after a...