Jump to content

Purvis

Members
  • Posts

    15
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Ah heck, you didn't drag anything out. I just need very thorough instructions or I freeze up. Thank you so much for your help. And that delfix thinger is neat, I thought I'd have to clean that all up myself. Thank you so much for your time and patience, man. And for dipping into Chrome, I know it sucks to swap over to other browsers once you have your preference. Also I love your santaman =]
  2. Thankfully, it seemed happy with just my gmail password. Anyways, did all that, reinstalled chrome, put in adblock and the link check (I didn't know that latter one existed; useful!), and malawarebytes doesn't seem to detect any Yontoo. Hopefully it'll stay that way. Anything else that needs to be done?
  3. Looks like it wants my email. Which is why I asked a little bit ago if I should just use that?
  4. That sends me to chrome://settings/people, which no mention of synced data anywhere. Let me just hit you up with some hasty ugly screenshots of what I do have, maybe it'll save some of your time?
  5. Sorry to bump this, I want to make sure I'm doing it right before I proceed.
  6. I don't think I have an account? Certainly never one I've signed into, at least? It does note my gmail, though? But like there's no little thinger in the upper right corner that mentions any account being signed in. (I specifically never intended to sign in just because I never saw a need for it...)
  7. Okay. I'm going to be dense here, please accept my apologies. I followed that link, and it told me to go to https://www.google.com/dashboard/ When I do that, it takes me instead to https://myaccount.google.com/dashboard And it directs me to look for this: And I can't find anything like that. I've tried clicking around a little bit, and haven't seen anything talking about Chrome sync, let alone undoing anything like that. I'm not sure what I'm missing here. =[ Is the article out of date, perhaps? I note it's like five and a half years old.
  8. I am not sure what I am supposed to be doing with regards to dealing with synched data? It sends me here: https://support.google.com/chrome/answer/165139?hl=en-GB&visit_id=1-636474243401342501-866151747&rd=1 And this doesn't seem to say much on the topic? Maybe I am too dumb to see it? As far as I know, I never logged onto Chrome to start with, though. And just to be sure, once I've reinstalled, run Malawarebytes again, remove any yontoo instances, then restart and see if they came back? Or should they be gone entirely and nothing will be detected after this, assuming it works?
  9. Did both scans, in the order suggested, followed instructions about as well as I could. Found one bit of oddness from the second scan hiding in a folder full of stuff from my old computer from about two years ago which is largely untouched (that folder in particular, I don't think, has ever been touched on this computer). Tried to remove yontoo afterwards, restarted to finish, scanned again, and the three are still there. rk_6BA1.tmp.txt 2017.11.26-17.32.49-i0-t92-d1.txt
  10. Before I do that, do I need to shut down everything running again?
  11. I think this is what you want. I went out for a walk after closing everything and setting it to run, and when I came back it had opened chrome to yell at me about PUP removal. I assume this didn't break things? I'm hoping I used the right version... Anyways, the log: RogueKiller V12.11.25.0 (x64) [Nov 20 2017] (Free) by Adlice Software mail : http://www.adlice.com/contact/ Feedback : https://forum.adlice.com Website : http://www.adlice.com/download/roguekiller/ Blog : http://www.adlice.com Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version Started in : Normal mode User : Purvis [Administrator] Started from : C:\Users\Purvis\Desktop\RogueKiller_portable64.exe Mode : Scan -- Date : 11/26/2017 15:59:39 (Duration : 00:30:24) ¤¤¤ Processes : 0 ¤¤¤ ¤¤¤ Registry : 0 ¤¤¤ ¤¤¤ Tasks : 0 ¤¤¤ ¤¤¤ Files : 2 ¤¤¤ [PUP.Gen1][Folder] C:\ProgramData\APN -> Found [PUP.Gen1][Folder] C:\ProgramData\APN -> Found ¤¤¤ WMI : 0 ¤¤¤ ¤¤¤ Hosts File : 0 [Too big!] ¤¤¤ ¤¤¤ Antirootkit : 0 (Driver: Loaded) ¤¤¤ ¤¤¤ Web browsers : 0 ¤¤¤ ¤¤¤ MBR Check : ¤¤¤ +++++ PhysicalDrive0: WDC WD10 EZEX-00BN5A0 SATA Disk Device +++++ --- User --- [MBR] e09039ce3f7a28b4c473b4408ca42b23 [BSP] 3ab186ac5685b64784b27b1772dd6e83 : Windows Vista/7/8|VT.Unknown MBR Code Partition table: 0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader] 1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 953767 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader] User = LL1 ... OK User = LL2 ... OK
  12. I tried turning off chrome and doing a scan and quarantine, but after doing a quarantine restart and scanning again (I did not open chrome til the scan was done), the three instances of yontoo were still there. Looking at the next step, I don't seem to have any options to mess with sync at all. I don't actually log into chrome, though, so perhaps there is no syncing there to be an issue? I'm not sure if I even have an account to log into chrome to start with? Should I skip that part and move onto the next step, or what? Edit: Also, thanks for getting to me. Sorry to have neglected that. Edit edit: In fact, here is where I went to look for sync stuff, maybe I am dumber than I thought and went to the wrong place?
  13. The title says it, really. I run Malawarebytes, it finds three instances of Yontoo, I quarantine them and restart, run it again, and there they are. I've done a full MSE scan, got nothing. Done a Spybot scan, just got a bunch of niggling little low level threats threats it deems not very important. I am not sure what Malawarebytes report you want, before or after, so I included both. I hope they're the right ones, otherwise I'll need to be directed where to find the right ones... FRST.txt Addition.txt zzz Malawarebytes Nov 26 2017.txt zzz Malawarebytes Nov 26b 2017.txt
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.