Alright, lets take a look as some information from your machine to see what is going on...
Adware Cleaner Scan.
Please
download AdwCleaner by Xplode onto your desktop.
- Close all open programs and internet browsers.
- Double click on adwcleaner.exe to run the tool.
- Click on Scan button.
- When the scan has finished click on Clean button.
- Your computer will be rebooted automatically. A text file will open after the restart.
- Please post the contents of that logfile with your next reply.
- You can find the logfile at C:\AdwCleaner[S1].txt as well.
JRT Scan.
Please download
Junkware Removal Tool and save it on your desktop.
- Shut down your anti-virus, anti-spyware, and firewall software now to avoid potential conflicts.
- Run the tool by double-clicking it. If you are using Windows Vista or Windows 7, right-click it and select Run as administrator.
- The tool will open and start scanning your system.
- Please be patient as this can take a while to complete depending on your system's specifications.
- On completion, a log is saved to your desktop and will automatically open.
- Please post the JRT log.
Adware Removal Tool Scan.
Download
Adware removal tool to your desktop, right click the icon and select Run as Administrator.
Hit Ok.
Hit next make sure to leave all items checked, for removal.
The Program will close all open programs to complete the removal, so save any work and hit
OK. Then hit
OK after the removal process is complete, then
OK again to finish up
. Post log generated by tool.
ZHP Scan.
Please
download Zhp Cleaner to your desktop. Right Click the icon and select run as administrator.
2. Once you have started the program, you will need to click the
scanner button.
The program will close all open browsers!
3. Once the scan is completed, the you will want to click the
Repair button.
At the end of the process you may be asked to reboot your machine. After you reboot a report will open on your desktop.
Copy and paste the report here in your next reply.
Security Check Scan.
- Download Security Check to your desktop.
- Right click it run as administrator.
- When the program completes, the tool will automatically open a log file.
- Please post that log here in your next post.
~ ZHPCleaner v2016.11.29.207 by Nicolas Coolman (2016/11/29)
~ Run by Kaga (Administrator) (30/11/2016 17:02:44)
~ Web:
https://www.nicolascoolman.com
~ Blog:
https://www.anti-malware.top
~ Facebook :
https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Repair
~ Report : C:\Users\Kaga\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Kaga\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Home, 64-bit (Build 14393)
---\\ Services (0)
~ No malicious or unnecessary items found.
---\\ Browser internet (0)
~ No malicious or unnecessary items found.
---\\ Hosts file (1)
~ The hosts file is legitimate (21)
---\\ Scheduled automatic tasks. (0)
~ No malicious or unnecessary items found.
---\\ Explorer ( File, Folder) (16)
MOVED file: C:\Windows\Installer\wix{21D65C5B-7EB7-42A2-A596-56C275341D53}.SchedServiceConfig.rmi =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI5227.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI5295.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI5F42.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI62A0.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI6545.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI6632.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI67F9.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSIBA22.tmp- =>.Superfluous.Emapty
MOVED folder: C:\WINDOWS\Installer\MSIBE00.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSIBFA7.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSIBFF6.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSIC055.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSIC0A4.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSIC6A3.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSIC6F2.tmp- =>.Superfluous.Empty
---\\ Registry ( Key, Value, Data) (0)
~ No malicious or unnecessary items found.
---\\ Summary of the elements found (1)
https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.Empty
---\\ Other deletions. (44)
~ Registry Keys Tracing deleted (44)
~ Remove the old reports ZHPCleaner. (0)
---\\ Result of repair
~ Repair carried out successfully
~ Browser not found (Opera Software)
---\\ Statistics
~ Items scanned : 640
~ Items found : 0
~ Items cancelled : 0
~ Items repaired : 16
~ End of clean in 00h00mn07s
~====================
ZHPCleaner-[R]-30112016-17_02_51.txt
ZHPCleaner-
-30112016-16_57_52.txt
ZHPCleaner--30112016-17_02_00.txt
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.9 (09.30.2016)
Operating System: Windows 10 Home x64
Ran by Kaga (Administrator) on Wed 11/30/2016 at 17:03:50.89
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
File System: 0
Registry: 0
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Wed 11/30/2016 at 17:04:52.89
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
# AdwCleaner v6.030 - Logfile created 30/11/2016 at 17:06:31
# Updated on 19/10/2016 by Malwarebytes
# Database : 2016-11-29.1 [Server]
# Operating System : Windows 10 Home (X64)
# Username : Kaga - LAPTOP-3R6BD33E
# Running from : C:\Users\Kaga\Desktop\adwcleaner_6.030.exe
# Mode: Clean
# Support : hxxps://
www.malwarebytes.com/support
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Shortcuts ] *****
***** [ Scheduled Tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
[-] [C:\Users\Kaga\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: aol.com
[-] [C:\Users\Kaga\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: ask.com
[-] [C:\Users\Kaga\AppData\Local\Google\Chrome\User Data\Profile 4\Web data] [Search Provider] Deleted: aol.com
[-] [C:\Users\Kaga\AppData\Local\Google\Chrome\User Data\Profile 4\Web data] [Search Provider] Deleted: ask.com
*************************
:: "Tracing" keys deleted
:: Winsock settings cleared
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [1203 Bytes] - [30/11/2016 17:06:31]
C:\AdwCleaner\AdwCleaner[S0].txt - [1509 Bytes] - [30/11/2016 17:06:21]
########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [1349 Bytes] ##########