Hi, thanks for responding.
Well that should be good news!
Is the log file the same as the application file in Malwarebytes? It is not very detailed....
Here is the last file of the last scan I did (of several):
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 31/08/2016
Scan Time: 3:25:56 PM
Logfile: mbam.txt
Administrator: Yes
Version: 2.2.1.1043
Malware Database: v2016.08.31.08
Rootkit Database: v2016.08.15.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows Vista Service Pack 2
CPU: x86
File System: NTFS
User: SSP
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 288604
Time Elapsed: 31 min, 41 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Warn
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 0
(No malicious items detected)
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 0
(No malicious items detected)
Files: 0
(No malicious items detected)
Physical Sectors: 0
(No malicious items detected)
(end)
Here is the first file of the first scan I did when problems arose. Can you tell me if anything looks like anything more than adware? Another question: Avira and Malwarebytes both picked things up and they were quarantined. Should I delete them from the quarantine??
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 29/08/2016
Scan Time: 3:29:20 PM
Logfile: mbam1.txt
Administrator: Yes
Version: 2.2.1.1043
Malware Database: v2016.08.29.08
Rootkit Database: v2016.08.15.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows Vista Service Pack 2
CPU: x86
File System: NTFS
User: SSP
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 289486
Time Elapsed: 38 min, 6 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Warn
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 13
PUP.Optional.Incredibar, HKLM\SOFTWARE\CLASSES\APPID\{608D3067-77E8-463D-9084-908966806826}, Quarantined, [ca1255fb8b0f55e1a828bfd725ddba46],
Adware.1ClickDownload, HKLM\SOFTWARE\CLASSES\APPID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}, Quarantined, [8656a3ad1981ec4a1b406730d82a9868],
PUP.Optional.Babylon, HKU\S-1-5-21-2052785061-3910762923-1482414851-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}, Quarantined, [ae2eea66d1c95ed8acec7c1222e0ea16],
PUP.Optional.DataMngr.AppFlsh, HKLM\SOFTWARE\DataMngr, Quarantined, [8b5190c041596accc835835ab2518779],
PUP.Optional.Iminent, HKLM\SOFTWARE\Iminent, Quarantined, [3f9d113fd0ca9d991e7e4066f112ce32],
PUP.Optional.SweetIM, HKLM\SOFTWARE\SweetIM, Quarantined, [0ecefe52e4b623138eff9c1b39ca8d73],
PUP.Optional.OnlineHDTV, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\dkinklhnkmkhkhofcnapakaoehijaoih, Quarantined, [e4f83e122e6c6ec864b756a6be4555ab],
PUP.Optional.SettingsProtector, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\pgafcinpmmpklohkojmllohdhomoefph, Quarantined, [855781cf6e2c3ef889dd179d030008f8],
PUP.Optional.APNToolBar.Gen, HKU\S-1-5-18\SOFTWARE\AskPartnerNetwork, Quarantined, [c616153ba8f2ed491f4c6178d52d03fd],
PUP.Optional.1ClickDownload, HKU\S-1-5-21-2052785061-3910762923-1482414851-1000\SOFTWARE\1ClickDownload, Quarantined, [786478d81288f54135d20492e221b34d],
PUP.Optional.DataMngr.AppFlsh, HKU\S-1-5-21-2052785061-3910762923-1482414851-1000\SOFTWARE\DataMngr, Quarantined, [d606ee621387d75fdd1e1cc15ca78c74],
PUP.Optional.SweetIM, HKU\S-1-5-21-2052785061-3910762923-1482414851-1000\SOFTWARE\SweetIM, Quarantined, [fae25af6405a8da95930199e5ea59e62],
PUP.Optional.BProtector, HKU\S-1-5-21-2052785061-3910762923-1482414851-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\bProtectSettings, Quarantined, [ab311739a6f404320a2252476e95b14f],
Registry Values: 3
PUP.Optional.BProtector, HKU\S-1-5-21-2052785061-3910762923-1482414851-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|bProtectorDefaultScope, {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}, Quarantined, [02da81cff1a9350145e8ebeb679c58a8]
PUP.Optional.Babylon, HKU\S-1-5-21-2052785061-3910762923-1482414851-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}|URL, http://search.babylon.com/?q={searchTerms}&affID=109220&tt=311012_niche_4412_3&babsrc=SP_ss&mntrId=28f0922e00000000000000027618caac, Quarantined, [30acc68a2d6d93a37875217691724db3]
PUP.Optional.Babylon, HKU\S-1-5-21-2052785061-3910762923-1482414851-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}|FaviconURL, search.babylon.com/favicon.ico, Quarantined, [7b614b05c6d4ea4c36b78512f310e020]
Registry Data: 2
PUP.Optional.Babylon, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\ABOUTURLS|Tabs, http://search.babylon.com/?affID=109220&tt=311012_niche_4412_3&babsrc=NT_ss&mntrId=28f0922e00000000000000027618caac, Good: (www.google.com), Bad: (http://search.babylon.com/?affID=109220&tt=311012_niche_4412_3&babsrc=NT_ss&mntrId=28f0922e00000000000000027618caac),Replaced,[95474d03039742f42b947dfade26ff01]
PUP.Optional.Babylon, HKU\S-1-5-21-2052785061-3910762923-1482414851-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://search.babylon.com/?affID=109220&tt=311012_niche_4412_3&babsrc=HP_ss&mntrId=28f0922e00000000000000027618caac, Good: (www.google.com), Bad: (http://search.babylon.com/?affID=109220&tt=311012_niche_4412_3&babsrc=HP_ss&mntrId=28f0922e00000000000000027618caac),Replaced,[f4e888c899019c9a3b838ee9d62ef50b]
Folders: 5
PUP.Optional.APNToolBar.Gen, C:\ProgramData\APN\APN-Stub, Quarantined, [f9e3a6aa6d2d66d0e78aebc0d82aa759],
PUP.Optional.OnlineVid, C:\Program Files\OnlineHD.TV, Quarantined, [ba22aea2afeb6fc78b664970936fb848],
PUP.Optional.Yontoo, C:\ProgramData\Tarma Installer, Quarantined, [706c2828aeec0c2a215befd51be7629e],
PUP.Optional.Yontoo, C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}, Quarantined, [706c2828aeec0c2a215befd51be7629e],
PUP.Optional.Yontoo, C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Cache, Quarantined, [706c2828aeec0c2a215befd51be7629e],
Files: 7
PUP.Optional.BProtector, C:\Users\SSP\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences, Quarantined, [06d68bc58b0f87afe9423564a2613cc4],
PUP.Optional.Yontoo, C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.dat, Quarantined, [706c2828aeec0c2a215befd51be7629e],
PUP.Optional.Yontoo, C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.exe, Quarantined, [706c2828aeec0c2a215befd51be7629e],
PUP.Optional.Yontoo, C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.ico, Quarantined, [706c2828aeec0c2a215befd51be7629e],
PUP.Optional.Yontoo, C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\_Setup.dll, Quarantined, [706c2828aeec0c2a215befd51be7629e],
PUP.Optional.BrowserHijack.ShrtCln, C:\Program Files\Internet Explorer\iexplore.bat, Good: (), Bad: (http://www.asearch.online"), Replaced,[0dcf93bd0b8fde58d0109d02ca3ab050]
PUP.Optional.BrowserHijack.ShrtCln, C:\Program Files\Mozilla Firefox\firefox.bat, Good: (), Bad: (http://www.asearch.online"), Replaced,[9b41ada3edad85b17a67fea1e81c0ef2]
Physical Sectors: 0
(No malicious items detected)
(end)
Last question: The several (30ish) registry keys that AdwCleaner picked up are just sitting in a folder called "Quarantine". Is it possible or would it be harmful for me to put those back into the registry so that I can access Safe Mode again?
Thanks so much for responding.