Jump to content

deeprybka

Experts
  • Content Count

    1,338
  • Joined

  • Last visited

Community Reputation

0 Neutral

About deeprybka

  • Rank
    Expert

Contact Methods

  • ICQ
    658528213

Profile Information

  • Location
    Germany
  • Interests
    PC, Chess,

Recent Profile Visitors

4,169 profile views
  1. That's it! Your logs look clean to me at the moment. We're gonna clean up everything now, close security holes on your computer and in the end I'll provide you with a list of security tips so you hopefully will not need our help anymore in the future. My help is free for everybody, however... If I have helped you fix your PC, then please consider donating to continue the fight against malware: Thank you! Clean Up Now we remove all the tools we used (including their logs and quarantine folders), restore your settings and delete old and infected system restorepoints: You c
  2. Hi, I don't think that the issue is caused by active malware. Please do the following to remove some adware remnants: Open Chrome and click the customize and control button ("3 streaks” icon or wrench icon in older versions). Select settings. In the On Startup section, click on Set Pages and delete the entries. Click Ok to save the changes. Please reboot your pc and check if the entries are gone.
  3. Step 1 Start FRST with administator privileges. Make sure the following option ischecked: Press the Scan button. When finished, FRST will produce two logs (FRST.txt and Addition.txt) in the same directory the tool was run from. Please copy and paste these logs in your next reply.
  4. I don't think so, but for analytical purposes they were interesting. Let's do a final check up to make sure that no other malicious files are present: Step 1 Please download HerdProtect by Reason Software (portable edition) and save the file to your desktop. Temporary disable your AntiVirus and AntiSpyware protection - instructions here. Right-click on icon and select Run as Administrator to install the scanner. It will ask for the location - leave the default one (%ProgramFiles%) or select another, convenient one. Agree to the terms, select Launch herdProtect and click Finish.
  5. Hi David, please do the following: Step 1 Press the + R on your keyboard at the same time. Type notepad and click OK. Copy the entire content of the codebox below and paste into the notepad document: CloseProcesses: HKLM\...\Run: [garnett] => "C:\Program Files (x86)\pecs\procurator.exe" C:\Program Files (x86)\pecs C:\Program Files (x86)\colorado\ HKLM-x32\...\Run: [treasure] => "C:\Program Files (x86)\pecs\procurator.exe" HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [] => 0 HKU\S-1-5-21-814913500-3249027553-3533128871-1000\...\Run: [SpybotPo
  6. Step 1 Start FRST with Administrator privileges. Write the following text into the Search textbox: procurator.exe Click on the Search Files button. When finished, a log file (Search.txt) pops up and is saved to the same location the tool was run from. Please copy and paste its contents in your next reply.
  7. We make sure that the problem isn't caused by Malware. Step 1 Please downloadOnline Scanner and save it to your Desktop. Disable the realtime-protection of your antivirus and anti-malware programs because they might interfere with the scan. Start with administartor privileges. Select the option Yes, I accept the Terms of Use and click on Start. Choose the following settings: Click on Start. The virus signature database will begin to download. This may take some time. When completed the Online Scan will begin automatically. Note:This scan might take a long time! Please be patie
  8. Hi & My name is Jürgen and I will be assisting you with your Malware related problems. Before we move on, please read the following points carefully. My native language isn't English. So please do not use slang or idioms. It could be hard for me to read. Thanks for your understanding. Please read my instructions completely. If there is anything that you do not understand kindly ask before proceeding. Perform everything in the correct order. Sometimes one step requires the previous one. If you have any problems while you are follow my instructions, Stop there and tell me the exact
  9. Hi & My name is Jürgen and I will be assisting you with your Malware related problems. Before we move on, please read the following points carefully. My native language isn't English. So please do not use slang or idioms. It could be hard for me to read. Thanks for your understanding.Please read my instructions completely. If there is anything that you do not understand kindly ask before proceeding.Perform everything in the correct order. Sometimes one step requires the previous one.If you have any problems while you are follow my instructions, Stop there and tell me the exact nature
  10. OK. But we're not done yet. Please go ahead and run MBAM and ESET: Step 1 Scan with Malwarebytes Anti-Malware. Please open Malwarebytes Anti-Malware and update the database.Click "Settings" [1] and go to "Detection and Protection" [2]Make sure "Scan for Rootkits" is checked.Click on Dashboard [3], then click on Scan Now [4] to start the scan. :exclame: If Malware or Potentially Unwanted Programs [PUPs] are found, you will receive a prompt: Click on "Remove Selected" [5]. Then click "Save Results" [6] and select Return to our forum. Paste your log into your next reply and then click
  11. Hi, Step 1 Press the + R on your keyboard at the same time. Type notepad and click OK. Copy the entire content of the codebox below and paste into the notepad document: CloseProcesses:C:\WINDOWS\system32\N1Service64.dll cmd: netsh winsock reset AlternateDataStreams: C:\ProgramData\Temp:56E2E879HKLM-x32\...\Run: [] => [X]Task: {063048D0-DEA2-423B-941B-FAD4767E99EB} - \SPBIW_UpdateTask_Time_3334363038373330372d2a55456c2d5a34575b413234 -> No File Task: {082A0DDB-D96E-4B84-9C8B-7E9E3AB5CD71} - \Adobe Flash Player Updater -> No File Task: {0D4F3C7A-39C4-4104-8425-785826EB9B10} - \PhraseP
  12. Hi & My name is Jürgen and I will be assisting you with your Malware related problems. Before we move on, please read the following points carefully. My native language isn't English. So please do not use slang or idioms. It could be hard for me to read. Thanks for your understanding.Please read my instructions completely. If there is anything that you do not understand kindly ask before proceeding.Perform everything in the correct order. Sometimes one step requires the previous one.If you have any problems while you are follow my instructions, Stop there and tell me the exact nature
  13. Hi & My name is Jürgen and I will be assisting you with your Malware related problems. Before we move on, please read the following points carefully. My native language isn't English. So please do not use slang or idioms. It could be hard for me to read. Thanks for your understanding.Please read my instructions completely. If there is anything that you do not understand kindly ask before proceeding.Perform everything in the correct order. Sometimes one step requires the previous one.If you have any problems while you are follow my instructions, Stop there and tell me the exact nature
  14. This looks good indeed. The stuff that ESET has found is already in quarantine or just some remnants, but no more active malware. That's it! Your logs look clean to me at the moment. :thumbup2: We're gonna clean up everything now, close security holes on your computer and in the end I'll provide you with a list of security tips so you hopefully will not need our help anymore in the future. My help is free for everybody, however... If I have helped you fix your PC, then please consider donating to continue the fight against malware: Thank you! Clean Up Now we remove all the tools
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.