New
#31
I ran the Farbar tool scan. Txt files are uploaded for your review. I also ran CyberFox Portable and it has worked its way into that program as well. The Albeiro toolbar came up a few times but not as many as with FireFox. It also does it on Internet Explorer.
Items of concern from your Farbar report:
Do you have any idea what this is?Code:CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION URLSearchHook: [S-1-5-21-3696031867-1153337989-4056362340-1002] ATTENTION => Default URLSearchHook is missing URLSearchHook: [S-1-5-21-3696031867-1153337989-4056362340-500] ATTENTION => Default URLSearchHook is missing URLSearchHook: [S-1-5-21-3696031867-1153337989-4056362340-501] ATTENTION => Default URLSearchHook is missing ======== FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\A87C39FC8F0CF859B51630DDD792240FA87C [2015-12-18] <==== ATTENTION 2016-05-08 09:49 - 2016-04-02 15:42 - 00000000 ____D C:\Program Files\Juwjadnaza Files to move or delete: ==================== C:\ProgramData\pclunst.exe
C:\Program Files\Juwjadnaza
I can find no reference to it anywhere. If you know what it is and need it remove the line from the list below shown in the CODE box.
RE: C:\ProgramData\pclunst.exe
https://herdprotect.com/pclunst.exe-...f2c4e997a.aspx
Suggest the following:
Please open a Notepad document (Start > All Programs > Accessories > Notepad)
Copy the entire contents of the Farbar script below
Save it to your Desktop and name it: fixlist.txt
Run Farbar again and this time choose the "Fix" button. Upload the Fixlog.txt file that will show up on your desktop.Code:start CHR HKLM\SOFTWARE\Policies\Google: HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: URLSearchHook: [S-1-5-21-3696031867-1153337989-4056362340-1002] URLSearchHook: [S-1-5-21-3696031867-1153337989-4056362340-500] URLSearchHook: [S-1-5-21-3696031867-1153337989-4056362340-501] FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\A87C39FC8F0CF859B51630DDD792240FA87C [2015-12-18] C:\Program Files\Juwjadnaza C:\ProgramData\pclunst.exe end
Thanks.
Callender:
It's gone!! I did exactly as you said in your last post and I have not had any hijacking, extra toolbars, ads or malware! You are the Tech! Again, thank you so much for your time, patience and assistance!