Jump to content

gringo_pr

Staff
  • Posts

    10,752
  • Joined

  • Last visited

Posts posted by gringo_pr

  1. Hello John

     

    I would like to get some additional information for our researchers - this will help us compare to others if someone else comes in with the same trouble.

     


    Please download " Farbar Recovery Scan Tool (FRST)" from one of the following links, and save it to your Desktop (please note that some web browsers will automatically save all downloads in your Downloads folder, so in those cases please move them to the desktop.)
    .

    Note: You need to run the version compatible with your computer. If you are not sure which version applies to your computer, then download both of them and try to run them. Only one of them will run on your computer, and that will be the right version.

    .
    For 32-bit (x86) editions of Windows: >> FRST.exe <<

    For 64-bit (x64) editions of Windows: >> FRST64.exe <<

    .

    1. Run the “FRST” download that works on your computer
    2. When the tool opens click Yes for the disclaimer in order to continue using “FRST”.
    3. Under the section called “Whitelist” make sure all boxes are checked
    4. Under the section called “Optional Scan” I would like you to have a check mark next to “Addition.txt”
    5. Press the Scan button.
    6. When the scan is done, it will save the reports to the same location as FRST (if you had saved “FRST” on your desktop, then the reports will be saved on the desktop).
    7. Please attach the “FRST.txt” and the “Addition.txt” log file to your next reply to me (it is best if you do not copy and paste it into an e-mail).

    .

    Youtube video on how to run FRST – https://www.youtube.com/watch?v=yIAT-7hqvw4

    .
    It would be better for you and for me if you can attach the reports to the email instead of copying and pasting them, the email system changes the format of them and makes them very hard to read.
    .

    If you are not used to attaching files to e-mails, then just look for a button in the toolbar above where you write your message that has a paperclip icon, and that should be the attachment button. You can also get the idea on how to attach files to an email from watching this video – >> How to attach <<

    .
    When you reply back to me you should have Two reports for me
    FRST.txt
    Addition.txt

  2. Hello

    .

    The first program that I would like you to run is “Junkware Removal Tool”:

    .

    1. Download “Junkware Removal Tool” and save it to your desktop. >> JRT.exe <<
    2. Shutdown your antivirus to avoid any conflicts.
    3. Right-mouse click “JRT.exe” and select Run as administrator
    4. If prompted by the UAC select Yes
    5. The tool will open, press Any Key to start the scanning
    6. Please be patient as this can take a while to complete.
    7. On completion, a log (“JRT.txt”) is saved to your desktop and will automatically open.
    8. Please attach “JRT.txt” to your next reply

    .

    The next program that I would like you to run is “AdwCleaner”:

    .

    1. Download “AdwCleaner” and save it to your desktop.>> AdwCleaner <<
    2. Shutdown your antivirus to avoid any conflicts.
    3. Right-mouse click “AdwCleaner” and select Run as administrator
    4. Click on I Agree at the Terms Of Use
    5. When “AdwCleaner” opens I want you to click on Scan
    6. After the scan has completed I want you to click on Cleaning
    7. At the information screen click on OK
    8. Once done it will ask you to reboot, allow the reboot – it is very important
    9. After the computer restarts a report will be open, Save this report to your desktop and attach it to your next reply

    .

    Once both programs are complete then reply back to me with the two reports and remember to let me know how things are doing.

    .
    The Reports that I will be wanting are named.
    JRT.txt
    AdwCleaner[S0].txt

    .

    .
    If you cannot download it from the links above then please use these links

    Junkware Removal Tool – http://downloads.malwarebytes.org/file/jrt
    AdwCleaner – https://toolslib.net/downloads/finish/1/get/MtP2wJKYTkhmJX1N1UVA8hGn09bIvEa7/

     

  3. Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.Other members who need assistance please start your own topic in a new thread. Thanks!

  4. : Why we need to remove some of our tools:

    Some of the tools we have used to clean your computer were made by volunteer malware fighters and are very powerful and if used incorrectly or at the wrong time can make the computer an expensive paper weight. They are updated all the time and some of them more than once per day so by the time you are ready to use them again they will already be outdated.

    .
    The following procedures will implement some cleanup procedures to remove these tools. It will also reset your System Restore by flushing out previous restore points and create a new restore point. It will also remove all the backups our tools may have made.

    1. Download DelFix and save it to your desktop: >> Delfix.exe <<
    2. Double-click “DelFix.exe”.
    3. select all options avalible
    4. Click the “Run” button.
    5. The tool will delete itself once it finishes, if not delete it by yourself.
    6. If asked to restart the computer, please do so

    .

    : Security awareness:

    .
    It is good security practice to change your passwords to all your online accounts on a fairly regular basis, this is especially true after an infection. Refer to this Microsoft article >> Strong passwords: How to create and use them <<

    Then consider a password keeper to keep all your passwords safe.

    .

    .
    The other question I am asked all the time is “How can I prevent this from happening again.” and the short answer to that is to be aware of what is out there and how to start spotting dangers.

    .
    Here are some articles that are must reads and should be read by everybody in your household that uses the internet

  5. Hello

     

    They are a couple to test different type of scanners

     

    Anti-Virus - you would use Eicar test file - http://www.eicar.org/86-0-Intended-use.html

     

    For anti-malware you would use spycar - http://www.testmypcsecurity.com/securitytests/spycar_suite.html

     

    It is good security practice to change your passwords to all your online accounts on a fairly regular basis, this is especially true after an infection. Refer to this Microsoft article >> Strong passwords: How to create and use them <<

    Then consider a password keeper to keep all your passwords safe.

    .

    .
    Here are some articles that are must reads and should be read by everybody in your household that uses the internet

    From my friends at Bleeping computer – Simple and easy ways to keep your computer safe and secure on the Internet

    .

    Regards,

    William Rowland – “Gringo_pr”

  6. I want you to completely remove Chrome from the computer, We saved your bookmarks before so you can import them back later.

    I want you to use this program called Revo to uninstall it – during the install you might be asked about user data or user settings – I want these to be removed also

    .

    1. Click this link to start the download – Revo Uninstaller
    2. Wait for download to start and click on “Save”
    3. Double click Revo Uninstaller to run it.
    4. From the list of programs double click on
      • “Chrome”
    5. When prompted if you want to uninstall click Yes.
    6. Be sure the “Moderate” option is selected then click Next.
    7. The program will run, If prompted again click Yes
    8. when the built-in uninstaller is finished click on Next.
    9. Once the program has searched for leftovers click Next.
    10. If there is anything left over in the Registry section Check/tick the bolded items only on the list then click Delete
    11. If they are any leftovers in the File and Folder section then they may all be removed
    12. Once done click Finish.

    .

    Now that we have it completely uninstalled I want you to restart the computer and then after the restart you can reinstall Chrome from here – http://www.google.com/chrome/

    .

    Regards,

     

  7. Hello Johnsy

     

    Don't worry - they look good anyway

     


    .
    Download Kasperky virus removal tool from here "KVRT.exe":http://devbuilds.kaspersky-labs.com/devbuilds/KVRT/latest/full/KVRT.exe
    Double click on KVRT.exe to start the program
    Click on Accept and let it finish loading
    Click on where it says "Change parameters"
    ** Make sure all 4 boxes have checkmarks and click on "OK"

    Now click on Start Scan


    Please note that it may take some time to complete
    Once it is complete allow it to remove what it finds
    .

    Regards,

     


  8. Hello Casey



    Now I need you to download this script that I have made for you --> fixlist.txt

    It needs to be saved Next to the  "Farbar Recovery Scan Tool" (FRST) program (If asked to overwrite existing one please allow)

    Run FRST again but this time press the Fix button just once and wait.


    When finished, it will make a log (fixlog.txt) next to FRST. Please attach the contents of this file to your reply.


    NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system


    Gringo

     

  9. We are going to refresh FireFox and see if that will fix your problem
    .

    1. Open FireFox
    2. Click on the “menu” icon in the upper right-hand corner (Three horizontal lines together)
    3. In the menu that opens click on the Question mark “(?)” at the bottom of the window
    4. Click on where it says “Troubleshooting Information” and a new page will open
    5. In the Upper right-hand corner you will see a box that says “Give Firefox a tune up”
    6. Click on the “Refresh FireFox” Button
    7. Confirm you want to refresh by clicking on the “Refresh FireFox” button
    8. Click on “Finish”
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.