Jump to content

Luketrio

Members
  • Posts

    17
  • Joined

  • Last visited

Everything posted by Luketrio

  1. Truly a superhero! Saved the day and my computer with quick response and easy instructions. Thanks Mr. Charlie!

  2. Results of screen317's Security Check version 0.99.74 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` Windows Firewall Enabled! Microsoft Security Essentials Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware version 1.75.0.1300 Adobe Flash Player 11.9.900.117 Adobe Reader XI Google Chrome 30.0.1599.101 Google Chrome 30.0.1599.69 ````````Process Check: objlist.exe by Laurent```````` Microsoft Security Essentials MSMpEng.exe Microsoft Security Essentials msseces.exe Symantec Norton Online Backup NOBuAgent.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: 0% ````````````````````End of Log``````````````````````
  3. It's awfully annoying, but if you don't think it's caused by a bug, I'll just deal with it. Googling doesn't give me any answers that work. As for the tools and logs you had me use yesterday, do I just uninstall and/or delete them? Or do you have a preferred way to get rid of them?
  4. Yes, tried that too and it still pops up. But I'm not sure that page is for my problem. It's for IE starting in "no add-ons mode". My problem is that the "manage add-ons" window pops up when I open IE. Can't find anything on the Microsoft page that addresses it. I did discover that I have IE 10, though. Maybe it doesn't have anything to do with what I did yesterday. Might be just a problem brought on by an IE update.
  5. Nope. I get an error message "Microsoft Fix it 50228...This Microsoft Fix It does not apply to your operating system or application version." I have Windows 7, but not sure what version of IE I have.
  6. It's a great morning! Chrome reset worked wonders. Everything is working well on Chrome today. However, I have a pop-up each time I open Internet Explorer that's titled "Manage Add-Ons...and says, "View and manage your Internet Explorer Add-Ons." That showed up yesterday. Can you tell me how to get that to stop?
  7. Worked briefly, then stopped working and got error message again several times. Rebooted and seems all clear so far. Going to keep opening, using, and closing this evening to make sure everything is OK. I'll check back in with you tomorrow morning. Thanks so much for your hard work, patience and expertise today!
  8. Oh, no! I celebrated too soon. I just brought up Chrome and I'm getting the error message that started this whole fiasco. It says "Your profile could not be opened correctly. Some features may be unavailable. Please check that the profile exists and you have permission to read and write its contents." Any thoughts on what this could be?
  9. Mr. Charlie, you made my day! I've been trying to fix this for a week now and you did it in one morning! You're the best! Installed Chrome without a problem. Rebooted and scanned again. Everything seems to be running exactly as it should. Now how do I get rid of the tools and logs?
  10. Just rebooted and ran another scan. Came up with ZERO detected! Yay!!! However, now I'm getting a pop-up whenever I open Internet Explorer titled "Manage Add-Ons....View and manage your Internet Explorer Add-Ons." That's new. I need to load Chrome back on. Is it OK to do that now? Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Database version: v2013.10.16.07 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 10.0.9200.16721 Lisa :: LAPTOP [administrator] 10/16/2013 10:34:44 AM mbam-log-2013-10-16 (10-34-44).txt Scan type: Quick scan Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 260184 Time elapsed: 10 minute(s), 53 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) (end)
  11. Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Database version: v2013.10.16.07 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 10.0.9200.16721 Lisa :: LAPTOP [administrator] 10/16/2013 10:14:48 AM mbam-log-2013-10-16 (10-14-48).txt Scan type: Quick scan Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 260726 Time elapsed: 10 minute(s), 21 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 2 C:\Users\Lisa\AppData\Local\Temp\ct3291325 (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully. C:\Users\Lisa\AppData\Local\GreatArcadeHits (PUP.Optional.GreatArcadeHits.A) -> Quarantined and deleted successfully. Files Detected: 15 C:\ProgramData\ZalmanInstaller_52331\otshotcomponent51.exe (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully. C:\Users\Lisa\AppData\Local\Temp\mconduitinstaller.exe (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully. C:\Users\Lisa\AppData\Local\Temp\newsetup.exe (PUP.Optional.GreatArcadeHits.A) -> Quarantined and deleted successfully. C:\Users\Lisa\AppData\Local\Temp\ct3291325\ctbe.exe (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully. C:\Users\Lisa\AppData\Local\Temp\ct3291325\statisticsStub.exe (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully. C:\Users\Lisa\Local Settings\Temporary Internet Files\Content.IE5\DJNIK1KN\checktbexist[1].exe (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully. C:\Users\Lisa\Local Settings\Temporary Internet Files\Content.IE5\DJNIK1KN\statisticsstub[1].exe (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully. C:\Users\Lisa\Local Settings\Temporary Internet Files\Content.IE5\RR8XY0BX\Setup.exe (PUP.Optional.iBryte) -> Quarantined and deleted successfully. C:\Users\Lisa\Local Settings\Temporary Internet Files\Content.IE5\SYA18KBN\GreatArcadeHits[1].exe (PUP.Optional.GreatArcadeHits.A) -> Quarantined and deleted successfully. C:\Users\Lisa\Local Settings\Temporary Internet Files\Content.IE5\V8RDQ3A9\KeyBar_1.12[1].exe (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully. C:\Users\Lisa\Local Settings\Temporary Internet Files\Content.IE5\V8RDQ3A9\OtshotInstaller7[1].exe (PUP.Optional.Otshot.A) -> Quarantined and deleted successfully. C:\Users\Lisa\AppData\Local\Temp\ct3291325\chromeid.txt (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully. C:\Users\Lisa\AppData\Local\Temp\ct3291325\setup.ini.txt (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully. C:\Users\Lisa\AppData\Local\Temp\ct3291325\stub.exe (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully. C:\Users\Lisa\AppData\Local\GreatArcadeHits\GAHUninstaller.exe (PUP.Optional.GreatArcadeHits.A) -> Quarantined and deleted successfully. (end)
  12. # AdwCleaner v3.007 - Report created 16/10/2013 at 09:41:39 # Updated 09/10/2013 by Xplode # Operating System : Windows 7 Home Premium Service Pack 1 (64 bits) # Username : Lisa - LAPTOP # Running from : C:\Users\Lisa\AppData\Local\Temp\Temp1_AdwCleaner.zip\AdwCleaner.exe # Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** Folder Deleted : C:\ProgramData\boost_interprocess Folder Deleted : C:\Program Files (x86)\Search Results Toolbar Folder Deleted : C:\Users\Lisa\AppData\Local\Ilivid Folder Deleted : C:\Users\Lisa\AppData\Local\torch Folder Deleted : C:\Users\Lisa\AppData\LocalLow\ilividtoolbarguid Folder Deleted : C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\fyy87xnd.default\ilividtoolbarguid Folder Deleted : C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\tzlnzdxm.default-1345204388458\ilividtoolbarguid Folder Deleted : C:\Users\McKenzie\AppData\Roaming\Mozilla\Firefox\Profiles\5tyk9hf2.default\ilividtoolbarguid Folder Deleted : C:\Users\Dalton\AppData\Roaming\Mozilla\Firefox\Profiles\ugn0uj0q.default\ilividtoolbarguid File Deleted : C:\END File Deleted : C:\Users\McKenzie\AppData\Roaming\Mozilla\Firefox\Profiles\5tyk9hf2.default\searchplugins\web-search.xml ***** [ Shortcuts ] ***** ***** [ Registry ] ***** Key Deleted : HKLM\SOFTWARE\Classes\AppID\BrowserConnection.dll Key Deleted : HKLM\SOFTWARE\Classes\Applications\ilividsetup.exe Key Deleted : HKLM\SOFTWARE\Classes\iLividIEHelper.DNSGuard Key Deleted : HKLM\SOFTWARE\Classes\iLividIEHelper.DNSGuard.1 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLivid_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLivid_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D97A8234-F2A2-4AD4-91D5-FECDB2C553AF} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014} Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{9FF9AE6F-4553-41A7-B645-B0E88850EABF} Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014} Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{CE4DB5A3-58E6-41F1-8761-47238DF4F468} Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014} Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Key Deleted : HKCU\Software\APN DTX Key Deleted : HKCU\Software\Conduit Key Deleted : HKCU\Software\ilivid Key Deleted : HKCU\Software\ilividtoolbarguid Key Deleted : HKCU\Software\torch Key Deleted : HKLM\Software\Conduit Key Deleted : HKLM\Software\DataMngr Key Deleted : HKLM\Software\iLividSRTB Key Deleted : HKLM\Software\torch Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} Key Deleted : [x64] HKLM\SOFTWARE\DataMngr Data Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SEARCH~1\Datamngr\x64\datamngr.dll Data Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SEARCH~1\Datamngr\x64\IEBHO.dll ***** [ Browsers ] ***** -\\ Internet Explorer v10.0.9200.16720 -\\ Mozilla Firefox v [ File : C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\fyy87xnd.default\prefs.js ] [ File : C:\Users\Lisa\AppData\Roaming\Mozilla\Firefox\Profiles\tzlnzdxm.default-1345204388458\prefs.js ] [ File : C:\Users\McKenzie\AppData\Roaming\Mozilla\Firefox\Profiles\5tyk9hf2.default\prefs.js ] Line Deleted : user_pref("browser.search.selectedEngine", "Web Search"); Line Deleted : user_pref("extensions.sahtb.searchEngineNameCurrent", "Web Search"); Line Deleted : user_pref("extensions.sahtb.searchEngineNameSAH", "Web Search"); [ File : C:\Users\Dalton\AppData\Roaming\Mozilla\Firefox\Profiles\ugn0uj0q.default\prefs.js ] -\\ Google Chrome v [ File : C:\Users\Lisa\AppData\Local\Google\Chrome\User Data\Default\preferences ] [ File : C:\Users\McKenzie\AppData\Local\Google\Chrome\User Data\Default\preferences ] Deleted : urls_to_restore_on_startup [ File : C:\Users\Dalton\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [6064 octets] - [16/10/2013 09:33:40] AdwCleaner[s0].txt - [5686 octets] - [16/10/2013 09:41:39] ########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [5746 octets] ##########
  13. Clicked on the adwcleaner link you had and downloaded it, but it showed up as BrowserSafeguard. Is that right? Also, my Comodo antivirus won't let me open it. It put it in the "sandbox". Can't figure out how to disable Comodo, so I'm thinking I just need to uninstall it. I'll wait to hear back from you before I do.
  14. OK, posted MB log and attached RK log. Looks nastier than I expected. Also, this morning when I started it and tried a MB quick scan, a popup came up, all black, and stopped the scan. Couldn't close it or the MB window. Wouldn't even let me click the Start button to power it down. Had to hold down the power key to turn it off. Thank you, Mr. Charlie, for your assistance in this! RKreport0_S_10162013_083303.txt
  15. Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Database version: v2013.10.13.06 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 10.0.9200.16721 Lisa :: LAPTOP [administrator] 10/15/2013 6:01:44 PM mbam-log-2013-10-15 (18-01-44).txt Scan type: Quick scan Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 258721 Time elapsed: 14 minute(s), 7 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 1 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014} (PUP.Datamngr) -> Quarantined and deleted successfully. Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) (end)
  16. Initial MBAM scan identified 100 viruses. Removed all but one. Shows up on MBAM scans every time I restart. Backed up all important files to DVD disc and downloaded DDS. Both logs saved to desktop and attached below. Should I try MB Anti-Rootkit next? attach.txt dds.txt
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.