Jump to content

stellaxtine

Members
  • Posts

    8
  • Joined

  • Last visited

Everything posted by stellaxtine

  1. Here is the OTM log: All processes killed========== FILES ==========C:\AI_RecycleBin\{D5B51823-070B-4C6A-9F61-50D8C415F34E}\3\Strongvault\StrongVaultApp.exe moved successfully.C:\ProgramData\BitGuard\2.7.1832.68\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings folder moved successfully.C:\ProgramData\BitGuard\2.7.1832.68\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\FirefoxExtension folder moved successfully.C:\ProgramData\BitGuard\2.7.1832.68\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8} folder moved successfully.C:\ProgramData\BitGuard\2.7.1832.68 folder moved successfully.C:\ProgramData\BitGuard folder moved successfully.File/Folder C:\Users\All Users\BitGuard not found.C:\Users\austin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XRR1AWYE\OptimizerPro[1].exe moved successfully.C:\Users\Garrett2\AppData\Local\CRE\dnmlhhbehhdmajijfenoldcajelckpmn.crx moved successfully.C:\Users\Garrett2\AppData\Local\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847}\SweetFB.crx moved successfully.C:\Users\Garrett2\AppData\Local\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847}\SweetNT.crx moved successfully.LoadLibrary failed for C:\Users\Garrett2\AppData\LocalLow\InternetHelper\hk64tbInt0.dllC:\Users\Garrett2\AppData\LocalLow\InternetHelper\hk64tbInt0.dll moved successfully.LoadLibrary failed for C:\Users\Garrett2\AppData\LocalLow\InternetHelper\hk64tbInt2.dllC:\Users\Garrett2\AppData\LocalLow\InternetHelper\hk64tbInt2.dll moved successfully.DllUnregisterServer procedure not found in C:\Users\Garrett2\AppData\LocalLow\InternetHelper\hktbInt0.dllC:\Users\Garrett2\AppData\LocalLow\InternetHelper\hktbInt0.dll moved successfully.DllUnregisterServer procedure not found in C:\Users\Garrett2\AppData\LocalLow\InternetHelper\hktbInt2.dllC:\Users\Garrett2\AppData\LocalLow\InternetHelper\hktbInt2.dll moved successfully.DllUnregisterServer procedure not found in C:\Users\Garrett2\AppData\LocalLow\InternetHelper\ldrtbInt0.dllC:\Users\Garrett2\AppData\LocalLow\InternetHelper\ldrtbInt0.dll moved successfully.DllUnregisterServer procedure not found in C:\Users\Garrett2\AppData\LocalLow\InternetHelper\ldrtbInt2.dllC:\Users\Garrett2\AppData\LocalLow\InternetHelper\ldrtbInt2.dll moved successfully.DllUnregisterServer procedure not found in C:\Users\Garrett2\AppData\LocalLow\InternetHelper\ldrtbInte.dllC:\Users\Garrett2\AppData\LocalLow\InternetHelper\ldrtbInte.dll moved successfully.DllUnregisterServer procedure not found in C:\Users\Garrett2\AppData\LocalLow\InternetHelper\tbInt0.dllC:\Users\Garrett2\AppData\LocalLow\InternetHelper\tbInt0.dll moved successfully.DllUnregisterServer procedure not found in C:\Users\Garrett2\AppData\LocalLow\InternetHelper\tbInt1.dllC:\Users\Garrett2\AppData\LocalLow\InternetHelper\tbInt1.dll moved successfully.DllUnregisterServer procedure not found in C:\Users\Garrett2\AppData\LocalLow\InternetHelper\tbInt2.dllC:\Users\Garrett2\AppData\LocalLow\InternetHelper\tbInt2.dll moved successfully.DllUnregisterServer procedure not found in C:\Users\Garrett2\AppData\LocalLow\InternetHelper\tbInte.dllC:\Users\Garrett2\AppData\LocalLow\InternetHelper\tbInte.dll moved successfully.C:\Users\Garrett2\Downloads\Setup (1).exe moved successfully.C:\Users\Garrett2\Downloads\Setup (2).exe moved successfully.C:\Users\Garrett2\Downloads\setup (6).exe moved successfully.C:\Users\Garrett2\Downloads\setup.exe moved successfully.DllUnregisterServer procedure not found in C:\Users\savannah banana\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\277N6RIJ\tbedrs[1].dllC:\Users\savannah banana\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\277N6RIJ\tbedrs[1].dll moved successfully.C:\Users\savannah banana\AppData\Local\Temp\908209415\wssetup.exe moved successfully.DllUnregisterServer procedure not found in C:\Users\savannah banana\AppData\Local\Temp\nsa78A3.tmp\Helper.dllC:\Users\savannah banana\AppData\Local\Temp\nsa78A3.tmp\Helper.dll moved successfully.DllUnregisterServer procedure not found in C:\Users\savannah banana\AppData\Local\Temp\nsgC3D5.tmp\Helper.dllC:\Users\savannah banana\AppData\Local\Temp\nsgC3D5.tmp\Helper.dll moved successfully.DllUnregisterServer procedure not found in C:\Users\savannah banana\AppData\Local\Temp\nslCD97.tmp\Helper.dllC:\Users\savannah banana\AppData\Local\Temp\nslCD97.tmp\Helper.dll moved successfully.DllUnregisterServer procedure not found in C:\Users\savannah banana\AppData\Local\Temp\nss55C7.tmp\Helper.dllC:\Users\savannah banana\AppData\Local\Temp\nss55C7.tmp\Helper.dll moved successfully.C:\Users\savannah banana\AppData\Local\Temp\scoped_dir_7060_8860\SweetNT.crx moved successfully.C:\Users\savannah banana\AppData\Local\Temp\scoped_dir_7060_8860\CRX_INSTALL\flavour.js moved successfully.C:\Users\savannah banana\AppData\Local\Temp\scoped_dir_7060_8860\CRX_INSTALL\newtab.js moved successfully.C:\Users\savannah banana\AppData\Local\Temp\scoped_dir_7060_8860\CRX_INSTALL\toolbar.js moved successfully.C:\Users\savannah banana\AppData\Local\Temp\scoped_dir_7748_15556\DefaultTab.crx moved successfully.DllUnregisterServer procedure not found in C:\Users\savannah banana\AppData\Local\Temp\scoped_dir_7748_15556\CRX_INSTALL\plugins\npDefaultTabSearch.dllC:\Users\savannah banana\AppData\Local\Temp\scoped_dir_7748_15556\CRX_INSTALL\plugins\npDefaultTabSearch.dll moved successfully.C:\Users\savannah banana\AppData\Local\Temp\updFF84\BabMaint.x moved successfully.C:\Users\savannah banana\AppData\Local\Temp\updFF84\BUSolution.x moved successfully.DllUnregisterServer procedure not found in C:\Users\savannah banana\AppData\LocalLow\InternetHelper\ldrtbInte.dllC:\Users\savannah banana\AppData\LocalLow\InternetHelper\ldrtbInte.dll moved successfully.DllUnregisterServer procedure not found in C:\Users\savannah banana\AppData\LocalLow\InternetHelper\tbInt1.dllC:\Users\savannah banana\AppData\LocalLow\InternetHelper\tbInt1.dll moved successfully.DllUnregisterServer procedure not found in C:\Users\savannah banana\AppData\LocalLow\InternetHelper\tbInte.dllC:\Users\savannah banana\AppData\LocalLow\InternetHelper\tbInte.dll moved successfully.C:\Users\savannah banana\AppData\Roaming\BabSolution\Shared\BabMaint.exe moved successfully.DllUnregisterServer procedure not found in C:\Users\savannah banana\AppData\Roaming\BabSolution\Shared\BUSolution.dllC:\Users\savannah banana\AppData\Roaming\BabSolution\Shared\BUSolution.dll moved successfully.C:\Users\savannah banana\AppData\Roaming\BabSolution\Shared folder moved successfully.C:\Users\savannah banana\AppData\Roaming\BabSolution folder moved successfully.C:\Users\savannah banana\Documents\APNSetup.exe moved successfully.DllUnregisterServer procedure not found in C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.25_0\plugins\npDefaultTabSearch.dllC:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.25_0\plugins\npDefaultTabSearch.dll moved successfully.DllUnregisterServer procedure not found in C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.29_0\plugins\npDefaultTabSearch.dllC:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.29_0\plugins\npDefaultTabSearch.dll moved successfully.DllUnregisterServer procedure not found in C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.30_0\plugins\npDefaultTabSearch.dllC:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.30_0\plugins\npDefaultTabSearch.dll moved successfully.C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\DefaultTabUninstaller.exe moved successfully.C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\uninstalldt.exe moved successfully.File/Folder C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.25_0\plugins\npDefaultTabSearch.dll not found.File/Folder C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.29_0\plugins\npDefaultTabSearch.dll not found.File/Folder C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.30_0\plugins\npDefaultTabSearch.dll not found.File/Folder C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\DefaultTabUninstaller.exe not found.File/Folder C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\uninstalldt.exe not found.========== COMMANDS ========== [EMPTYTEMP] User: Administrator->Temp folder emptied: 1335503 bytes->Temporary Internet Files folder emptied: 8218846 bytes User: All Users User: austin->Temp folder emptied: 25067958 bytes->Temporary Internet Files folder emptied: 184443091 bytes->Google Chrome cache emptied: 401340206 bytes->Flash cache emptied: 1723 bytes User: Default->Temp folder emptied: 0 bytes->Temporary Internet Files folder emptied: 0 bytes User: Default User->Temp folder emptied: 0 bytes->Temporary Internet Files folder emptied: 0 bytes User: Down4Sound->Temp folder emptied: 38545 bytes->Temporary Internet Files folder emptied: 22086812 bytes->Flash cache emptied: 842 bytes User: Garrett2->Temp folder emptied: 285086814 bytes->Temporary Internet Files folder emptied: 460325 bytes->Java cache emptied: 96800 bytes->Google Chrome cache emptied: 856432 bytes->Flash cache emptied: 728 bytes User: Mcx1-GARRETT2-HP->Temp folder emptied: 516 bytes->Temporary Internet Files folder emptied: 40780 bytes User: Public User: savannah banana->Temp folder emptied: 669441465 bytes->Temporary Internet Files folder emptied: 332373156 bytes->Java cache emptied: 0 bytes->Google Chrome cache emptied: 449134532 bytes->Flash cache emptied: 58586 bytes %systemdrive% .tmp files removed: 0 bytes%systemroot% .tmp files removed: 0 bytes%systemroot%\System32 .tmp files removed: 0 bytes%systemroot%\System32 (64bit) .tmp files removed: 0 bytes%systemroot%\System32\drivers .tmp files removed: 0 bytesWindows Temp folder emptied: 3497396 bytes%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 8837586 bytes%systemroot%\system32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 753 bytes%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 24041901 bytesRecycleBin emptied: 0 bytes Total Files Cleaned = 2,305.00 mb OTM by OldTimer - Version 3.1.21.0 log created on 09042014_014932Files moved on Reboot...C:\Users\Administrator\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.File C:\Users\Administrator\AppData\Local\Temp\~DF08368DF4BC73F1B6.TMP not found!File C:\Users\Administrator\AppData\Local\Temp\~DF232BFF64133FE747.TMP not found!File C:\Users\Administrator\AppData\Local\Temp\~DF47D6048A24D790CE.TMP not found!File C:\Users\Administrator\AppData\Local\Temp\~DF736E61224732ECA1.TMP not found!File C:\Users\Administrator\AppData\Local\Temp\~DF74575CB34EDD7979.TMP not found!File C:\Users\Administrator\AppData\Local\Temp\~DF8EFEEE3146D52E25.TMP not found!File C:\Users\Administrator\AppData\Local\Temp\~DF92AEAB86CB9356DF.TMP not found!File C:\Users\Administrator\AppData\Local\Temp\~DFD271E1B00709F058.TMP not found!File C:\Users\Administrator\AppData\Local\Temp\~DFDBECF158A01F3FFD.TMP not found!File C:\Users\Administrator\AppData\Local\Temp\~DFF45834ACCFFDA4C5.TMP not found!C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HCLFOU4O\fastbutton[1].htm moved successfully.C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HCLFOU4O\like[1].htm moved successfully.C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HCLFOU4O\postmessageRelay[2].htm moved successfully.C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BZD92A9K\index[3].htm moved successfully.C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BZD92A9K\ZEbdHPQfV3x[1].htm moved successfully.C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.File move failed. C:\Windows\temp\Low\SkypeClickToCall\Logs\AutoUpdateSvc.log scheduled to be moved on reboot.Registry entries deleted on Reboot...Adobe Reader and Shockwave updated successfully and I ran MSE with no problems.
  2. Here are the Escan results: C:\AI_RecycleBin\{D5B51823-070B-4C6A-9F61-50D8C415F34E}\3\Strongvault\StrongVaultApp.exe MSIL/Adware.StrongVault.A application C:\ProgramData\BitGuard\2.7.1832.68\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\x64injector.exe Win64/bProtector.A potentially unwanted application C:\Users\All Users\BitGuard\2.7.1832.68\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\x64injector.exe Win64/bProtector.A potentially unwanted application C:\Users\austin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XRR1AWYE\OptimizerPro[1].exe Win32/SpeedingUpMyPC.I application C:\Users\Garrett2\AppData\Local\CRE\dnmlhhbehhdmajijfenoldcajelckpmn.crx a variant of Win32/Toolbar.Conduit.AH potentially unwanted application C:\Users\Garrett2\AppData\Local\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847}\SweetFB.crx a variant of Win32/SweetIM.L potentially unwanted application C:\Users\Garrett2\AppData\Local\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847}\SweetNT.crx a variant of Win32/SweetIM.L potentially unwanted application C:\Users\Garrett2\AppData\LocalLow\InternetHelper\hk64tbInt0.dll a variant of Win64/Toolbar.Conduit.B potentially unwanted application C:\Users\Garrett2\AppData\LocalLow\InternetHelper\hk64tbInt2.dll a variant of Win64/Toolbar.Conduit.B potentially unwanted application C:\Users\Garrett2\AppData\LocalLow\InternetHelper\hktbInt0.dll a variant of Win32/Toolbar.Conduit.X potentially unwanted application C:\Users\Garrett2\AppData\LocalLow\InternetHelper\hktbInt2.dll a variant of Win32/Toolbar.Conduit.X potentially unwanted application C:\Users\Garrett2\AppData\LocalLow\InternetHelper\ldrtbInt0.dll a variant of Win32/Toolbar.Conduit.P potentially unwanted application C:\Users\Garrett2\AppData\LocalLow\InternetHelper\ldrtbInt2.dll a variant of Win32/Toolbar.Conduit.P potentially unwanted application C:\Users\Garrett2\AppData\LocalLow\InternetHelper\ldrtbInte.dll a variant of Win32/Toolbar.Conduit.P potentially unwanted application C:\Users\Garrett2\AppData\LocalLow\InternetHelper\tbInt0.dll a variant of Win32/Toolbar.Conduit.X potentially unwanted application C:\Users\Garrett2\AppData\LocalLow\InternetHelper\tbInt1.dll a variant of Win32/Toolbar.Conduit.Y potentially unwanted application C:\Users\Garrett2\AppData\LocalLow\InternetHelper\tbInt2.dll a variant of Win32/Toolbar.Conduit.X potentially unwanted application C:\Users\Garrett2\AppData\LocalLow\InternetHelper\tbInte.dll a variant of Win32/Toolbar.Conduit.B potentially unwanted application C:\Users\Garrett2\Downloads\Setup (1).exe a variant of Win32/AirAdInstaller.A potentially unwanted application C:\Users\Garrett2\Downloads\Setup (2).exe a variant of Win32/AirAdInstaller.A potentially unwanted application C:\Users\Garrett2\Downloads\setup (6).exe Win32/OutBrowse.J potentially unwanted application C:\Users\Garrett2\Downloads\setup.exe Win32/Toolbar.CrossRider.C potentially unwanted application C:\Users\savannah banana\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\277N6RIJ\tbedrs[1].dll a variant of Win32/Toolbar.Conduit.Y potentially unwanted application C:\Users\savannah banana\AppData\Local\Temp\908209415\wssetup.exe Win32/SweetIM.E potentially unwanted application C:\Users\savannah banana\AppData\Local\Temp\nsa78A3.tmp\Helper.dll a variant of Win32/Toolbar.SearchSuite.P potentially unwanted application C:\Users\savannah banana\AppData\Local\Temp\nsgC3D5.tmp\Helper.dll a variant of Win32/Toolbar.SearchSuite.P potentially unwanted application C:\Users\savannah banana\AppData\Local\Temp\nslCD97.tmp\Helper.dll Win32/Toolbar.SearchSuite.B potentially unwanted application C:\Users\savannah banana\AppData\Local\Temp\nss55C7.tmp\Helper.dll a variant of Win32/Toolbar.SearchSuite.P potentially unwanted application C:\Users\savannah banana\AppData\Local\Temp\scoped_dir_7060_8860\SweetNT.crx Win32/SweetIM.J potentially unwanted application C:\Users\savannah banana\AppData\Local\Temp\scoped_dir_7060_8860\CRX_INSTALL\flavour.js Win32/SweetIM.J potentially unwanted application C:\Users\savannah banana\AppData\Local\Temp\scoped_dir_7060_8860\CRX_INSTALL\newtab.js Win32/SweetIM.J potentially unwanted application C:\Users\savannah banana\AppData\Local\Temp\scoped_dir_7060_8860\CRX_INSTALL\toolbar.js Win32/SweetIM.J potentially unwanted application C:\Users\savannah banana\AppData\Local\Temp\scoped_dir_7748_15556\DefaultTab.crx a variant of Win32/Toolbar.DefaultTab.C potentially unwanted application C:\Users\savannah banana\AppData\Local\Temp\scoped_dir_7748_15556\CRX_INSTALL\plugins\npDefaultTabSearch.dll a variant of Win32/Toolbar.DefaultTab.C potentially unwanted application C:\Users\savannah banana\AppData\Local\Temp\updFF84\BabMaint.x Win32/Toolbar.Babylon.I potentially unwanted application C:\Users\savannah banana\AppData\Local\Temp\updFF84\BUSolution.x a variant of Win32/Toolbar.Babylon.P potentially unwanted application C:\Users\savannah banana\AppData\LocalLow\InternetHelper\ldrtbInte.dll a variant of Win32/Toolbar.Conduit.P potentially unwanted application C:\Users\savannah banana\AppData\LocalLow\InternetHelper\tbInt1.dll a variant of Win32/Toolbar.Conduit.Y potentially unwanted application C:\Users\savannah banana\AppData\LocalLow\InternetHelper\tbInte.dll a variant of Win32/Toolbar.Conduit.B potentially unwanted application C:\Users\savannah banana\AppData\Roaming\BabSolution\Shared\BabMaint.exe Win32/Toolbar.Babylon.I potentially unwanted application C:\Users\savannah banana\AppData\Roaming\BabSolution\Shared\BUSolution.dll a variant of Win32/Toolbar.Babylon.P potentially unwanted application C:\Users\savannah banana\Documents\APNSetup.exe a variant of Win32/Bundled.Toolbar.Ask.E potentially unsafe application C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.25_0\plugins\npDefaultTabSearch.dll a variant of Win32/Toolbar.DefaultTab.C potentially unwanted application C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.29_0\plugins\npDefaultTabSearch.dll a variant of Win32/Toolbar.DefaultTab.C potentially unwanted application C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.30_0\plugins\npDefaultTabSearch.dll a variant of Win32/Toolbar.DefaultTab.C potentially unwanted application C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\DefaultTabUninstaller.exe Win32/Toolbar.DefaultTab.E potentially unwanted application C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\uninstalldt.exe a variant of Win32/Toolbar.DefaultTab.E potentially unwanted application C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.25_0\plugins\npDefaultTabSearch.dll a variant of Win32/Toolbar.DefaultTab.C potentially unwanted application C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.29_0\plugins\npDefaultTabSearch.dll a variant of Win32/Toolbar.DefaultTab.C potentially unwanted application C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.30_0\plugins\npDefaultTabSearch.dll a variant of Win32/Toolbar.DefaultTab.C potentially unwanted application C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\DefaultTabUninstaller.exe Win32/Toolbar.DefaultTab.E potentially unwanted application C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\uninstalldt.exe a variant of Win32/Toolbar.DefaultTab.E potentially unwanted application And here are the results of the checkup: Results of screen317's Security Check version 0.99.87 Windows 7 Service Pack 1 x64 (UAC is disabled!) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Windows Firewall Enabled! WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:````````` Adobe Flash Player 10 Flash Player out of Date! Adobe Reader 10.1.9 Adobe Reader out of Date! ````````Process Check: objlist.exe by Laurent```````` `````````````````System Health check````````````````` Total Fragmentation on Drive C: 6% ````````````````````End of Log``````````````````````
  3. Oh wow I think things are working again- I was able to connect to the internet! Here are those logs. FSS.txt _Windows_Repair_Log.txt
  4. Thanks for the reply, kevin! Sorry, was there a p2p program listed? If you can give me the name of it then I can go ahead and uninstall it but since it's not my computer I was trying to avoid messing with anything unnecessarily so I didn't go through the installed software. Fixlog.txt FSS.txt
  5. Originally posted in Malwarebytes Anti-Malware Help forum. I also have log set 1 attached! Sometimes you have to wonder how people can mess up their computers so badly... I decided to help a friend out with their laptop because they said it was having issues. Took it home, booted it up, realized right away I might be in over my head. Tons of really weird processes running in the background, all these programs installed that look suspicious, and networking is completely broken, neither wifi nor wired connection goes through- error comes up for Diagnostic Policy Service not running. I gave up on that and decided to just install CCleaner (I always use this to clean out unnecessary files and obvious unwanted programs before scanning), MBAM, and Avast from a flash drive, and deal with it later. Well Avast wouldn't install at all because Base Filtering Engine wasn't running and refused to run. I googled the issue and tried the following, to no avail: giving "Everyone" Full Access to BFE in regedit, downloading and running ServicesRepair, downloading a clean BFE, and downloading a clean MpsSvc. So I gave up on that for the moment. At first, MBAM wouldn't run so I had to use Chameleon, and I ran a Custom Scan to include rootkits and all drives. Found 36 infected files. Unfortunately, a log file was not saved (even though the option was checked, so I'm not sure what happened) so I can't post it All I can give you is a list of what was quarantined: hundreds of PUPs and Security.Hijack Trojan.FakeAlert.ASC Rogue.InternetSecurityEssentials Trojan.BHO Adware.OneStep Trojan.Agent Adware.GamePlayLab. Computer was still giving a lot of issues and Services were still messed up so I ran the same scan again, this time in Safe Mode (didn't think of it earlier). 96 infected files were found this time, and the log file didn't save again. Quarantined: Trojan.RotBrowse Trojan. RotBrow.A Hijack.Regedit and also hundreds of PUPs and Security.Hijack again Ran the scan one more time in Safe Mode and no infected files! It actually saved a log file this time, too. It probably won't help at all, since I seem to have removed all infections (knock on wood), but here is the log file from the 3rd/final scan: Malwarebytes Anti-Malwarewww.malwarebytes.orgScan Date: 8/30/2014Scan Time: 7:26:59 AMLogfile: mbam.txtAdministrator: YesVersion: 2.00.2.1012Malware Database: v2014.08.27.05Rootkit Database: v2014.08.21.01License: FreeMalware Protection: DisabledMalicious Website Protection: DisabledSelf-protection: DisabledOS: Windows 7 Service Pack 1CPU: x64File System: NTFSUser: (xxxxxxx)Scan Type: Custom ScanResult: CompletedObjects Scanned: 821084Time Elapsed: 12 hr, 42 min, 44 secMemory: EnabledStartup: EnabledFilesystem: EnabledArchives: EnabledRootkits: EnabledHeuristics: EnabledPUP: EnabledPUM: EnabledProcesses: 0(No malicious items detected)Modules: 0(No malicious items detected)Registry Keys: 0(No malicious items detected)Registry Values: 0(No malicious items detected)Registry Data: 0(No malicious items detected)Folders: 0(No malicious items detected)Files: 0(No malicious items detected)Physical Sectors: 0(No malicious items detected)(end)I'm not sure what to do now...I went back to regular boot and BFE/DPS are still broken. I tried to run the ServicesRepair again but it didn't help. Ran SFC /scannow and no integrity violations were found. I'd like to not wipe the computer clean and/or fresh install Windows 7, if possible (I don't have their repair disk, anyway). I've run out of ways to word my google searches to find the answer Hopefully you guys can help me here! Thanks! Addition.txt FRST.txt
  6. Hi, thanks 1pw I'm pretty sure the computer is clean now, it's just that I can't figure out how to get it back into working order. Would you still like me to post in the Malware Removal Help forum?
  7. Sometimes you have to wonder how people can mess up their computers so badly... I decided to help a friend out with their laptop because they said it was having issues. Took it home, booted it up, realized right away I might be in over my head. Tons of really weird processes running in the background, all these programs installed that look suspicious, and networking is completely broken, neither wifi nor wired connection goes through- error comes up for Diagnostic Policy Service not running. I gave up on that and decided to just install CCleaner (I always use this to clean out unnecessary files and obvious unwanted programs before scanning), MBAM, and Avast from a flash drive, and deal with it later. Well Avast wouldn't install at all because Base Filtering Engine wasn't running and refused to run. I googled the issue and tried the following, to no avail: giving "Everyone" Full Access to BFE in regedit, downloading and running ServicesRepair, downloading a clean BFE, and downloading a clean MpsSvc. So I gave up on that for the moment. At first, MBAM wouldn't run so I had to use Chameleon, and I ran a Custom Scan to include rootkits and all drives. Found 36 infected files. Unfortunately, a log file was not saved (even though the option was checked, so I'm not sure what happened) so I can't post it All I can give you is a list of what was quarantined: hundreds of PUPs and Security.Hijack Trojan.FakeAlert.ASC Rogue.InternetSecurityEssentials Trojan.BHO Adware.OneStep Trojan.Agent Adware.GamePlayLab. Computer was still giving a lot of issues and Services were still messed up so I ran the same scan again, this time in Safe Mode (didn't think of it earlier). 96 infected files were found this time, and the log file didn't save again. Quarantined: Trojan.RotBrowse Trojan. RotBrow.A Hijack.Regedit and also hundreds of PUPs and Security.Hijack again Ran the scan one more time in Safe Mode and no infected files! It actually saved a log file this time, too. It probably won't help at all, since I seem to have removed all infections (knock on wood), but here is the log file from the 3rd/final scan: Malwarebytes Anti-Malwarewww.malwarebytes.orgScan Date: 8/30/2014Scan Time: 7:26:59 AMLogfile: mbam.txtAdministrator: YesVersion: 2.00.2.1012Malware Database: v2014.08.27.05Rootkit Database: v2014.08.21.01License: FreeMalware Protection: DisabledMalicious Website Protection: DisabledSelf-protection: DisabledOS: Windows 7 Service Pack 1CPU: x64File System: NTFSUser: (xxxxxxx)Scan Type: Custom ScanResult: CompletedObjects Scanned: 821084Time Elapsed: 12 hr, 42 min, 44 secMemory: EnabledStartup: EnabledFilesystem: EnabledArchives: EnabledRootkits: EnabledHeuristics: EnabledPUP: EnabledPUM: EnabledProcesses: 0(No malicious items detected)Modules: 0(No malicious items detected)Registry Keys: 0(No malicious items detected)Registry Values: 0(No malicious items detected)Registry Data: 0(No malicious items detected)Folders: 0(No malicious items detected)Files: 0(No malicious items detected)Physical Sectors: 0(No malicious items detected)(end)I'm not sure what to do now...I went back to regular boot and BFE/DPS are still broken. I tried to run the ServicesRepair again but it didn't help. Ran SFC /scannow and no integrity violations were found. I'd like to not wipe the computer clean and/or fresh install Windows 7, if possible (I don't have their repair disk, anyway). I've run out of ways to word my google searches to find the answer Hopefully you guys can help me here! Thanks!
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.