Need Help Removing Segurazo

Humble

Well-known member
Joined
Jul 15, 2016
Posts
233
Windows 10 Home, HP Spectre, convertible

Emisoft Emergency Kit found 9 instances of Segurazo PUP.
After trying to delete and/or quarantine them and restarting, there's a black screen with a loop of running lines that does not stop until I shut down the machine with hardware power button. Has anyone experienced a similar issue and dealt with it successfully?

Am unable to get FRST runnning on this machine
 
Last edited:
Update:

Malwarebytes detected/removed Segurazo.
Newer version of FRST ran just fine.
 
Great that Malwarebytes worked but I suggest you post the FRST logs so @icotonev can see if there are other issues.
 
Hi ..! :-) And what happens in safe mode ....? Can you do FRST scan in safe mode ..!

Hi Icotonev! Thanks so much for reaching out!

Seems the first FRST run attempt didn't fly due to old version.
Newer version worked.
Please see scan report attached to response to Corrine

Look forward to learning what the report tells you :-)
 
Hi ,Humble..!:-) I'm joining the forum now. Thank you for the diaries ..! Please give me some time to go over your logs and I will get back to you as soon as possible... !!! :-)

Furthermore:

Please include the Malwarebytes log in your next post:

  • click on the ‘Reports’ tab
  • double-click on the most recent Scan Report
  • click on Export, then Copy to Clipboard

+


Scanning with SecurityCheck by glax24

  • Download SecurityCheck by glax24 from here and remember the tool on the desktop.
  • Run the program right-click the administrator name
  • Wait for the scan to finish. It will open in a text file named SecurityType.txt. Copy the contents of this file to your next post
  • You can find this file in the root of the system disk in a folder called SecurityCheck, C: \\ SecurityCheck \\ SecurityCheck.txt

----------------------------------------------------------------------------------------



In your next reply, please include:

  • Mbam.txt
  • SecurityCheck.txt
 
Hi ,Humble..!:-) I'm joining the forum now. Thank you for the diaries ..! Please give me some time to go over your logs and I will get back to you as soon as possible... !!! :-)

Furthermore:

Please include the Malwarebytes log in your next post:



+


Scanning with SecurityCheck by glax24

  • Download SecurityCheck by glax24 from here and remember the tool on the desktop.
  • Run the program right-click the administrator name
  • Wait for the scan to finish. It will open in a text file named SecurityType.txt. Copy the contents of this file to your next post
  • You can find this file in the root of the system disk in a folder called SecurityCheck, C: \\ SecurityCheck \\ SecurityCheck.txt

----------------------------------------------------------------------------------------



In your next reply, please include:

  • Mbam.txt
  • SecurityCheck.txt

Hi there ! Thanks.
As you requested:

Malwarebytes
www.malwarebytes.com

-Log Details-
Scan Date: 2/8/20
Scan Time: 8:39 PM
Log File: 7cad6df0-4a78-11ea-9d29-000000000000.json

-Software Information-
Version: 4.0.4.49
Components Version: 1.0.810
Update Package Version: 1.0.18872
License: Free

-System Information-
OS: Windows 10 (Build 18362.592)
CPU: x64
File System: NTFS

-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 317588
Threats Detected: 213
Threats Quarantined: 0
Time Elapsed: 2 min, 3 sec

-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect

-Scan Details-
Process: 2
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\DriverReviver.exe, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Smart Monitor\ReviverSoft Smart Monitor Service.exe, No Action By User, 4225, 237942, , , ,

Module: 2
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\DriverReviver.exe, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Smart Monitor\ReviverSoft Smart Monitor Service.exe, No Action By User, 4225, 237942, , , ,

Registry Key: 15
PUP.Optional.DriverReviver, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Start Driver Reviver with delay for VICSSPECTRE@Joy, No Action By User, 4225, 237946, 1.0.18872, , ame,
PUP.Optional.DriverReviver, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Start Driver Reviver Check Driver Update, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{20BE8012-5D56-42DA-9F52-6F2BA940BFB3}, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{20BE8012-5D56-42DA-9F52-6F2BA940BFB3}, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Start Driver Reviver for VICSSPECTRE@Joy(logon), No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{28E50445-A147-4748-8464-EC655A5A8A05}, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{28E50445-A147-4748-8464-EC655A5A8A05}, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Start Driver Reviver Schedule, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{D1DA6D2A-3D66-4FF2-BC65-B667B56D12B4}, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{D1DA6D2A-3D66-4FF2-BC65-B667B56D12B4}, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Start Driver Reviver Update, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{909CE1C9-650E-47A7-8AF7-8CBB62E37E06}, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{909CE1C9-650E-47A7-8AF7-8CBB62E37E06}, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Driver Reviver, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ReviverSoft Smart Monitor Service, No Action By User, 4225, 237942, , , ,

Registry Value: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Data Stream: 0
(No malicious items detected)

Folder: 51
PUP.Optional.Segurazo, C:\PROGRAM FILES (X86)\SEGURAZO\X86, No Action By User, 5410, 788611, 1.0.18872, , ame,
PUP.Optional.Segurazo, C:\PROGRAM FILES (X86)\SEGURAZO\AMD64, No Action By User, 5410, 788613, 1.0.18872, , ame,
PUP.Optional.Segurazo, C:\PROGRAMDATA\SEGURAZO, No Action By User, 5410, 788616, 1.0.18872, , ame,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\pt-br, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\zh-tw, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\dpi_175, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\dpi_125, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\pt-br, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\zh-tw, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\files, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\da, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\de, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\en, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\es, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\fi, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\fr, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\it, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\ja, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\nl, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\no, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\ru, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\sv, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\tr, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\fi, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\fr, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\it, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\ja, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\nl, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\no, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\ru, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\sv, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\tr, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\da, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\de, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\en, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\es, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Smart Monitor, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\PROGRAM FILES\REVIVERSOFT, No Action By User, 4225, 237942, 1.0.18872, , ame,
PUP.Optional.DriverReviver, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\REVIVERSOFT\DRIVER REVIVER, No Action By User, 4225, 237943, 1.0.18872, , ame,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\S-1-5-21-1077749657-1337653834-2207440643-1001, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Smart Monitor\S-1-5-21-1077749657-1337653834-2207440643-1001, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\Language, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\backups, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Smart Monitor, No Action By User, 4225, 237940, , , ,

File: 143
PUP.Optional.DriverReviver, C:\PROGRAM FILES\REVIVERSOFT\DRIVER REVIVER\7ZA.EXE, No Action By User, 4225, 237942, 1.0.18872, , ame,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\da\exitdialog.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\de\exitdialog.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\en\exitdialog.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\es\exitdialog.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\fi\exitdialog.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\agePoints.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\btn-purchase-hover.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\btn-purchase.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\checkmark.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\common.css, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\DomManager.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\exit-2018-0918.css, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\exit-arrow.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\exit.min.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\ie-shim.min.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\list-calendar.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\list-clock.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\list-speed.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\Manager.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\objects.min.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\oclock.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\PIE.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\pubsub.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\queryManager.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\smartConfig.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\top-arrow.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\utils.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\files\xclose2.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\fr\exitdialog.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\it\exitdialog.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\ja\exitdialog.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\nl\exitdialog.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\no\exitdialog.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\pt-br\exitdialog.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\ru\exitdialog.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\sv\exitdialog.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\tr\exitdialog.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\exitdialog\zh-tw\exitdialog.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\dpi_125\learnmore.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\dpi_175\learnmore.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\files\checkmark.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\files\checkmark_white.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\files\common.css, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\files\ie-shim.min.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\files\j.php, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\files\learn-more.css, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\files\learn-more.min.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\files\learn-more.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\files\objects.min.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\files\oclock.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\files\pubsub.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\files\queryManager.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\files\top-arrow.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\files\utils.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\learnmore\files\xclose2.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\da\registration.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\de\registration.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\en\registration.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\es\registration.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\fi\registration.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\btn-purchase-hover.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\btn-purchase.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\checkmark.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\common.css, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\ie-shim.min.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\list-calendar.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\list-clock.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\list-speed.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\objects.min.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\oclock.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\PIE.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\post-scan-2018-0918.css, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\post-scan.min.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\pubsub.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\queryManager.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\rotate.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\top-arrow.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\utils.js, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\files\xclose2.png, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\fr\registration.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\it\registration.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\ja\registration.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\nl\registration.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\no\registration.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\pt-br\registration.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\ru\registration.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\sv\registration.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\tr\registration.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\offline\registration\zh-tw\registration.html, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\DriverReviver.exe, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\DriverReviver.mab, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\DriverReviverUpdater.exe, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\DriverReviverUpdater.mab, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\DRNotifier.exe, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\DRNotifierTray.exe, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\lci.lci, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\OpenSSL_License.txt, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Driver Reviver\Uninstall.exe, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Smart Monitor\apps, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Smart Monitor\ReviverSoft Smart Monitor Service.exe, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Smart Monitor\ReviverSoft Smart Monitor Service.mab, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Smart Monitor\ReviverSoftSmartMonitor.exe, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Smart Monitor\ReviverSoftSmartMonitor.mab, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Smart Monitor\Settings.exe, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Smart Monitor\Settings.mab, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\Program Files\ReviverSoft\Smart Monitor\Uninstall.exe, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\WINDOWS\SYSTEM32\TASKS\Start Driver Reviver Check Driver Update, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\WINDOWS\SYSTEM32\TASKS\Start Driver Reviver for VICSSPECTRE@Joy(logon), No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\WINDOWS\SYSTEM32\TASKS\Start Driver Reviver Schedule, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\WINDOWS\SYSTEM32\TASKS\Start Driver Reviver Update, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\$RECYCLE.BIN\S-1-5-21-1077749657-1337653834-2207440643-1001\$R95M93V.lnk, No Action By User, 4225, 237942, , , ,
PUP.Optional.DriverReviver, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\REVIVERSOFT\DRIVER REVIVER\DRIVER REVIVER.LNK, No Action By User, 4225, 237943, 1.0.18872, , ame,
PUP.Optional.DriverReviver, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ReviverSoft\Driver Reviver\Uninstall.lnk, No Action By User, 4225, 237943, , , ,
PUP.Optional.DriverReviver, C:\PROGRAMDATA\REVIVERSOFT\DRIVER REVIVER\COMMONSETTINGS.XML, No Action By User, 4225, 237940, 1.0.18872, , ame,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\backups\BackupInfo.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\downloads\96.zip, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\Language\Brazilian.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\Language\Danish.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\Language\Dutch.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\Language\English.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\Language\Finnish.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\Language\French.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\Language\German.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\Language\Italian.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\Language\Japanese.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\Language\Norwegian.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\Language\Russian.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\Language\Spanish.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\Language\Swedish.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\Language\TradChinese.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\Language\Turkish.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\S-1-5-21-1077749657-1337653834-2207440643-1001\AppSettings.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\S-1-5-21-1077749657-1337653834-2207440643-1001\app_log.log, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\S-1-5-21-1077749657-1337653834-2207440643-1001\DRmanager_log.log, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\S-1-5-21-1077749657-1337653834-2207440643-1001\du_statistic, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\S-1-5-21-1077749657-1337653834-2207440643-1001\Request.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\S-1-5-21-1077749657-1337653834-2207440643-1001\Response.xml, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Driver Reviver\unplugged drivers\unplugged drivers versions, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\ProgramData\ReviverSoft\Smart Monitor\S-1-5-21-1077749657-1337653834-2207440643-1001\smsettings, No Action By User, 4225, 237940, , , ,
PUP.Optional.DriverReviver, C:\PROGRAMDATA\REVIVERSOFT\DRIVER REVIVER\FREEDRIVER, No Action By User, 4225, 337680, 1.0.18872, , ame,
Adware.InstallCore, C:\USERS\JOY\DOWNLOADS\AVG-REMOVER-16-7134_0208252546.EXE, No Action By User, 494, 695147, 1.0.18872, , ame,
PUP.Optional.DriverReviver, C:\USERS\JOY\DOWNLOADS\DRIVERREVIVERSETUP.EXE, No Action By User, 4225, 462815, 1.0.18872, , ame,

Physical Sector: 0
(No malicious items detected)

WMI: 0
(No malicious items detected)


(end)


And here the SecurityCheck log:

I am surprised to find AVG listed as "enabled and up to date ", even though I uninstalled it, even with AVG removal tool.

SecurityCheck by glax24 & Severnyj v.1.4.0.53 [27.10.17]
WebSite: www.safezone.cc
DateLog: 08.02.2020 20:47:55
Path starting: C:\Users\...\AppData\Local\Temp\SecurityCheck\SecurityCheck.exe
Log directory: C:\SecurityCheck\
IsAdmin: True
User: ...
VersionXML: 7.16is-01.02.2020
___________________________________________________________________________

Windows 10(6.3.18363) (x64) Core Release: 1909 Lang: English(0809)
Installation date OS: 06.02.2020 06:44:57
LicenseStatus: Windows(R), Core edition The machine is permanently activated.
Boot Mode: Normal
Default Browser: C:\Program Files\Mozilla Firefox\firefox.exe
SystemDrive: C: FS: [NTFS] Capacity: [462.9 Gb] Used: [353.3 Gb] Free: [109.6 Gb]
------------------------------- [ Windows ] -------------------------------
Internet Explorer 11.592.18362.0
User Account Control disabled (Level 1)
^It is recommended to enable (default): Win+R typing UserAccountControlSettings and Enter^
Never check for updates
Security Center (wscsvc) - The service is running
Remote Registry (RemoteRegistry) - The service has stopped
SSDP Discovery (SSDPSRV) - The service is running
Remote Desktop Services (TermService) - The service has stopped
Windows Remote Management (WS-Management) (WinRM) - The service has stopped
---------------------------- [ Antivirus_WMI ] ----------------------------
Windows Defender (enabled and up to date)
--------------------------- [ FirewallWindows ] ---------------------------
Windows Defender Firewall (mpssvc) - The service is running
--------------------------- [ AntiSpyware_WMI ] ---------------------------
Windows Defender (disabled and up to date)
AVG Antivirus (enabled and up to date)
---------------------- [ AntiVirusFirewallInstall ] -----------------------
Malwarebytes version 4.0.4.49 v.4.0.4.49
-------------------------- [ SecurityUtilities ] --------------------------
SUPERAntiSpyware v.8.0.1048
--------------------------- [ OtherUtilities ] ----------------------------
GIMP 2.10.14 v.2.10.14
IrfanView 4.54 (64-bit) v.4.54
VLC media player v.3.0.8
Foxit Reader v.9.7.0.29455 Warning! Download Update
Picasa 3 v.3.9.141.259 Warning! This software is no longer supported.
OpenOffice 4.1.5 v.4.15.9789 Warning! Download Update
--------------------------------- [ IM ] ----------------------------------
Skype version 8.55 v.8.55 Warning! Download Update
------------------------------- [ Browser ] -------------------------------
Mozilla Firefox 72.0.2 (x64 en-US) v.72.0.2
Opera Stable 66.0.3515.72 v.66.0.3515.72 [+]
Google Chrome v.80.0.3987.87 [+]
----------------------------- [ EmailClient ] -----------------------------
Mozilla Thunderbird 68.2.2 (x86 de) v.68.2.2 Warning! Download Update
------------------ [ AntivirusFirewallProcessServices ] -------------------
C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe v.4.0.0.524
Malwarebytes Service (MBAMService) - The service is running
C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe v.3.2.0.874
SAS Core Service (!SASCORE) - The service is running
C:\Program Files\SUPERAntiSpyware\SASCore64.exe v.6.0.0.1082
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe v.8.0.0.1048
C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\MsMpEng.exe v.4.18.1911.3
C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\NisSrv.exe v.4.18.1911.3
Windows Defender Antivirus Service (WinDefend) - The service is running
Windows Defender Antivirus Network Inspection Service (WdNisSvc) - The service is running
---------------------------- [ UnwantedApps ] -----------------------------
Driver Reviver v.5.32.1.4 Warning! Suspected Adware! If this program is not familiar to you it is recommended to uninstall it and execute PC scanning using Malwarebytes Anti-Malware and Malwarebytes AdwCleaner. Before uninstallation and scanning it is necessary to consult in the forum where cure is provided for you!!!
VdhCoApp 1.3.0 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
Driver Booster 7 v.7.2.0 Warning! Suspected demo version of anti-spyware or optimization program. If this program is not familiar to you it is recommended to uninstall it and execute PC scanning using Malwarebytes Anti-Malware. Possible you became a victim of fraud or social engineering.
IObit Software Updater v.2.3.0.2839 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
IObit Uninstaller 9 v.9.2.0.16 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
Wondershare Helper Compact 2.6.0 v.2.6.0 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
ReviverSoft Smart Monitor Service (ReviverSoft Smart Monitor Service) - The service is running
C:\Program Files\ReviverSoft\Smart Monitor\ReviverSoft Smart Monitor Service.exe v.2.11.1.4
C:\Program Files\ReviverSoft\Driver Reviver\DriverReviver.exe v.5.32.1.4
IObit Uninstaller Service (IObitUnSvr) - The service has stopped
ReviverSoft Smart Monitor Service (ReviverSoft Smart Monitor Service) - The service is running
C:\Program Files\ReviverSoft\Smart Monitor\ReviverSoft Smart Monitor Service.exe v.2.11.1.4
SpyHunter 5 Kernel Monitor (ShMonitor) - The service has stopped
----------------------------- [ End of Log ] ------------------------------
 
UPDATE: Following recommendation from SecurityCheck I am uninstalling Driver Reviver and Driver Booster
 
Driver Reviver v.5.32.1.4 Warning! Suspected Adware! If this program is not familiar to you it is recommended to uninstall it and execute PC scanning using Malwarebytes Anti-Malware and Malwarebytes AdwCleaner. Before uninstallation and scanning it is necessary to consult in the forum where cure is provided for you!!!
VdhCoApp 1.3.0 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
Driver Booster 7 v.7.2.0 Warning! Suspected demo version of anti-spyware or optimization program. If this program is not familiar to you it is recommended to uninstall it and execute PC scanning using Malwarebytes Anti-Malware. Possible you became a victim of fraud or social engineering.
IObit Software Updater v.2.3.0.2839 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
IObit Uninstaller 9 v.9.2.0.16 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
Wondershare Helper Compact 2.6.0 v.2.6.0 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.


I do not recommend such software and would not keep it on my computer ..! :-)



Uninstall a Program


  • Press the Windows Key + R.
  • Type appwiz.cpl in the Run box and click OK.
  • The Add/Remove Programs list will open. Locate the following program(s) on the list:
Driver Reviver
VdhCoApp
Driver Booster 7
IObit Software Updater
IObit Uninstaller
Wondershare Helper Compact

  • Select the above program(s) and click Uninstall.
  • Restart the computer if prompted.

=================================================================================


Furthermore:

Because you have not taken any action:

No Action By User

..start again Malwarebytes, but this time:

  • If potential threats are detected, ensure to check mark all the listed items, and click the Quarantine Selected button
Please post the log for my review...!

==================================================================================


FRST scan

  • Double-click FRST.exe/FRST64.exe to run it.
  • Press the Scan button.
  • When finished, it will produce logs called FRST.txt and Addition.txt in the same directory the tool was run from.
  • Please copy and paste the logs in your next reply.


In your next reply, please include:

  • Mbam.txt
  • FRST.txt
  • Addition.txt
 
Hi! Thanks a bundle for your help!


MBAM

Malwarebytes
www.malwarebytes.com

-Log Details-
Scan Date: 2/9/20
Scan Time: 7:15 AM
Log File: 3d084284-4ad1-11ea-bf4f-000000000000.json

-Software Information-
Version: 4.0.4.49
Components Version: 1.0.810
Update Package Version: 1.0.18896
License: Free

-System Information-
OS: Windows 10 (Build 18362.592)
CPU: x64
File System: NTFS
User: VICSSPECTRE\Joy

-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 316567
Threats Detected: 2
Threats Quarantined: 2
Time Elapsed: 1 min, 48 sec

-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect

-Scan Details-
Process: 0
(No malicious items detected)

Module: 0
(No malicious items detected)

Registry Key: 0
(No malicious items detected)

Registry Value: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Data Stream: 0
(No malicious items detected)

Folder: 0
(No malicious items detected)

File: 2
Adware.InstallCore, C:\USERS\JOY\DOWNLOADS\AVG-REMOVER-16-7134_0208252546.EXE, Quarantined, 494, 695147, 1.0.18896, , ame,
PUP.Optional.DriverReviver, C:\USERS\JOY\DOWNLOADS\DRIVERREVIVERSETUP.EXE, Quarantined, 4225, 462815, 1.0.18896, , ame,

Physical Sector: 0
(No malicious items detected)

WMI: 0
(No malicious items detected)


(end)
 
MB AdwCleaner and SecurityCheck logs

# -------------------------------
# Malwarebytes AdwCleaner 8.0.2.0
# -------------------------------
# Build: 01-27-2020
# Database: 2020-01-24.1 (Cloud)
# Support: Customer Support & Help Center
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 02-09-2020
# Duration: 00:00:00
# OS: Windows 10 Home
# Cleaned: 1
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\Users\Joy\AppData\Roaming\IObit\Advanced SystemCare

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1899 octets] - [17/10/2018 21:44:09]
AdwCleaner[C00].txt - [1933 octets] - [17/10/2018 21:44:47]
AdwCleaner[S01].txt - [1372 octets] - [20/10/2018 02:07:55]
AdwCleaner[C01].txt - [1558 octets] - [20/10/2018 02:09:19]
AdwCleaner[S02].txt - [4675 octets] - [07/08/2019 19:43:40]
AdwCleaner[S03].txt - [3907 octets] - [08/08/2019 16:22:20]
AdwCleaner[C03].txt - [3823 octets] - [08/08/2019 16:22:42]
AdwCleaner[S04].txt - [1755 octets] - [08/08/2019 16:26:41]
AdwCleaner[S05].txt - [1816 octets] - [08/08/2019 22:09:50]
AdwCleaner[S06].txt - [3158 octets] - [16/08/2019 23:50:55]
AdwCleaner[C06].txt - [3105 octets] - [16/08/2019 23:51:05]
AdwCleaner[S07].txt - [1999 octets] - [17/08/2019 17:31:52]
AdwCleaner[S08].txt - [2885 octets] - [09/02/2020 07:01:23]
AdwCleaner[C08].txt - [2960 octets] - [09/02/2020 07:03:13]
AdwCleaner[S09].txt - [2319 octets] - [09/02/2020 07:20:01]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C09].txt ##########
 

Attachments

Good morning, Humble ..! Excellent work.. :-)! Now the situation looks very good ..!

It appears you had AVG Antivirus

AS: AVG Antivirus (Enabled - Up to date) {F4A6BD41-306E-5B9F-464B-23E1AE81F649}

installed on this device at one time but it isn't showing in installed programs and you have Windows Defender set as your AV.
I suggest you go to:

Select Start > Settings > Update & Security > Windows Security > Virus & threat protection > Manage settings and uncheck AVG Antivirus .



Farbar Recovery Scan Tool - Fix

  • Highlight the contents of the below code box and press Ctrl + C on your keyboard
Code:
Start::
CreateRestorePoint:
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
IFEO\chrmstp.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\AutoReactivator.exe
IFEO\CompatTelRunner.exe: [Debugger] C:\WINDOWS\System32\taskkill.exe
IFEO\DeviceCensus.exe: [Debugger] C:\WINDOWS\System32\taskkill.exe
IFEO\sas_enum_cookies.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\AutoReactivator.exe
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
SearchScopes: HKU\S-1-5-21-1077749657-1337653834-2207440643-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1077749657-1337653834-2207440643-1001 -> {2A23ab71-4ac6-41f2-a955-ea576e553146} URL =
S2 EsgShKernel; "C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe" [X]
S2 ShMonitor; "C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe" [X]
R2 gzflt; C:\WINDOWS\System32\DRIVERS\gzflt.sys [176112 2018-05-02] (Bitdefender SRL -> BitDefender LLC)
S3 Trufos; C:\WINDOWS\System32\DRIVERS\TRUFOS.sys [439928 2018-04-24] (Bitdefender SRL -> BitDefender S.R.L.)
R1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard64.sys [250024 2018-10-14] (Zemana Ltd. -> Copyright 2017.)
2020-02-08 11:19 - 2020-02-08 11:19 - 004001704 ____C (AVG Technologies CZ, s.r.o.) C:\Users\Joy\Downloads\avg-remover-16-7134.exe
2020-02-08 07:49 - 2020-02-08 21:13 - 000000000 ____D C:\Program Files\ReviverSoft
2020-02-06 22:10 - 2020-02-08 11:14 - 000000000 ___DC C:\AVG_Remover
2020-02-09 07:20 - 2019-08-14 17:22 - 000000000 ___DC C:\Users\Joy\AppData\Roaming\IObit
2020-02-09 07:03 - 2019-08-14 17:22 - 000000000 ___DC C:\ProgramData\IObit
2020-02-06 22:19 - 2019-08-02 01:10 - 000000000 ___DC C:\Users\Joy\AppData\Local\Avg
2020-02-06 22:19 - 2019-08-02 01:09 - 000000000 ___DC C:\ProgramData\AVG
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> No File
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> No File
AlternateDataStreams: C:\Users\Joy\Documents\desktop.ini:gs5sys [2560]
EmptyTemp:
Reboot:
End::


NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

  • Double-click FRST.exe/FRST64.exe to run it.
  • Press the Fix button just once and wait.
    Note: No need to paste the script into FRST.
  • Restart the computer if prompted.
  • When the fix is complete FRST will generate a log in the same location it was run from (Fixlog.txt)
  • Please copy and paste its contents into your reply.


n your next reply, please include:
  • Fixlog.txt
 
n your next reply, please include:
  • Fixlog.txt
Fix result of Farbar Recovery Scan Tool (x64) Version: 02-02-2020 02
Ran by Joy (09-02-2020 14:51:22) Run:1
Running from C:\Users\Joy\Desktop
Loaded Profiles: Joy (Available Profiles: Joy & Administrator)
Boot Mode: Normal
==============================================

fixlist content:
*****************
CreateRestorePoint:
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
IFEO\chrmstp.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\AutoReactivator.exe
IFEO\CompatTelRunner.exe: [Debugger] C:\WINDOWS\System32\taskkill.exe
IFEO\DeviceCensus.exe: [Debugger] C:\WINDOWS\System32\taskkill.exe
IFEO\sas_enum_cookies.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\AutoReactivator.exe
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
SearchScopes: HKU\S-1-5-21-1077749657-1337653834-2207440643-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1077749657-1337653834-2207440643-1001 -> {2A23ab71-4ac6-41f2-a955-ea576e553146} URL =
S2 EsgShKernel; "C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe" [X]
S2 ShMonitor; "C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe" [X]
R2 gzflt; C:\WINDOWS\System32\DRIVERS\gzflt.sys [176112 2018-05-02] (Bitdefender SRL -> BitDefender LLC)
S3 Trufos; C:\WINDOWS\System32\DRIVERS\TRUFOS.sys [439928 2018-04-24] (Bitdefender SRL -> BitDefender S.R.L.)
R1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard64.sys [250024 2018-10-14] (Zemana Ltd. -> Copyright 2017.)
2020-02-08 11:19 - 2020-02-08 11:19 - 004001704 ____C (AVG Technologies CZ, s.r.o.) C:\Users\Joy\Downloads\avg-remover-16-7134.exe
2020-02-08 07:49 - 2020-02-08 21:13 - 000000000 ____D C:\Program Files\ReviverSoft
2020-02-06 22:10 - 2020-02-08 11:14 - 000000000 ___DC C:\AVG_Remover
2020-02-09 07:20 - 2019-08-14 17:22 - 000000000 ___DC C:\Users\Joy\AppData\Roaming\IObit
2020-02-09 07:03 - 2019-08-14 17:22 - 000000000 ___DC C:\ProgramData\IObit
2020-02-06 22:19 - 2019-08-02 01:10 - 000000000 ___DC C:\Users\Joy\AppData\Local\Avg
2020-02-06 22:19 - 2019-08-02 01:09 - 000000000 ___DC C:\ProgramData\AVG
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> No File
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> No File
AlternateDataStreams: C:\Users\Joy\Documents\desktop.ini:gs5sys [2560]
EmptyTemp:
Reboot:

*****************

Restore point was successfully created.
Processes closed successfully.
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => could not remove, key could be protected
HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\chrmstp.exe => removed successfully
HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\CompatTelRunner.exe => removed successfully
HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\DeviceCensus.exe => removed successfully
HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\sas_enum_cookies.exe => removed successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Policies\Google => removed successfully
HKU\S-1-5-21-1077749657-1337653834-2207440643-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => removed successfully
HKU\S-1-5-21-1077749657-1337653834-2207440643-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2A23ab71-4ac6-41f2-a955-ea576e553146} => removed successfully
HKLM\System\CurrentControlSet\Services\EsgShKernel => removed successfully
EsgShKernel => service removed successfully
HKLM\System\CurrentControlSet\Services\ShMonitor => removed successfully
ShMonitor => service removed successfully
gzflt => Unable to stop service.
HKLM\System\CurrentControlSet\Services\gzflt => removed successfully
gzflt => service removed successfully
HKLM\System\CurrentControlSet\Services\Trufos => removed successfully
Trufos => service removed successfully
ZAM_Guard => Unable to stop service.
HKLM\System\CurrentControlSet\Services\ZAM_Guard => removed successfully
ZAM_Guard => service removed successfully
C:\Users\Joy\Downloads\avg-remover-16-7134.exe => moved successfully
C:\Program Files\ReviverSoft => moved successfully
C:\AVG_Remover => moved successfully
C:\Users\Joy\AppData\Roaming\IObit => moved successfully
C:\ProgramData\IObit => moved successfully
C:\Users\Joy\AppData\Local\Avg => moved successfully
C:\ProgramData\AVG => moved successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avg => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\IObitUnstaler => removed successfully
HKLM\Software\Classes\CLSID\{836AB26C-2DE4-41D3-AC24-4C6C2699B960} => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\IObitUnstaler => removed successfully
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\IObitUnstaler => removed successfully
C:\Users\Joy\Documents\desktop.ini => ":gs5sys" ADS removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 9199616 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 44413448 B
Java, Flash, Steam htmlcache => 1109 B
Windows/system/drivers => 85432 B
Edge => 127674 B
Chrome => 0 B
Firefox => 33125416 B
Opera => 2866 B

Temp, IE cache, history, cookies, recent:
Default => 6656 B
Users => 6656 B
ProgramData => 6656 B
Public => 6656 B
systemprofile => 6656 B
systemprofile32 => 6656 B
LocalService => 6656 B
NetworkService => 13120 B
Joy => 8794790 B
Administrator => 8805174 B

RecycleBin => 111173137 B
EmptyTemp: => 205.8 MB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 09-02-2020 14:52:39)


Result of scheduled keys to remove after reboot:

HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully

==== End of Fixlog 14:52:39 ====


Thank you for sharing your expertise in such a clear, easy (even for me) format !


Re: Virus & threat protection > Manage settings and uncheck AVG Antivirus .

Yes, AVG was previously installed but now I do not see it mentioned in the "manage" section.



Do you maybe have an idea for me regarding what else I could try about the original issue that got me to the forum:

Disappearing pop up windows!

making it hard/impossible to select something.

For instance, I type in Search bar, pop up with results will appear
soon as I move pointer to select from there, it closes.

Similar with other items from taskbar, volume, networking

This does not happen EVERY time, but 9 out of 10

You can see what I already did in my other posts, with support from Brian Britechguy.
 
P.S.: Just noticed the following:

Clicking "Options" in Search pop up Window and selecting indexing options results in

Exception Processing message 0x0000005
Parameters
0x7ffa897f2d58 0x7ffa897f2d58 0x7ffa897f2d58


and selecting "Searching Windows" under Search settings closes the window
 
+

FRST scan

  • Double-click FRST.exe/FRST64.exe to run it.
  • Press the Scan button.
  • When finished, it will produce logs called FRST.txt and Addition.txt in the same directory the tool was run from.
  • Please copy and paste the logs in your next reply.


In your next reply, please include:

  • FRST.txt
  • Addition.txt
 
+

FRST scan

  • Double-click FRST.exe/FRST64.exe to run it.
  • Press the Scan button.
  • When finished, it will produce logs called FRST.txt and Addition.txt in the same directory the tool was run from.
  • Please copy and paste the logs in your next reply.


In your next reply, please include:

  • FRST.txt
  • Addition.txt

Not quite clear on this part. Do not see option for automatic updates in the windows update panel, set windows update service to automatic.
 

Attachments

Has Sysnative Forums helped you? Please consider donating to help us support the site!

Back
Top