Jump to content

Recommended Posts

Hello and :welcome: :

 

What is the name and version of the medical records program?

 

The staff will need to see a bit more info in order to determine what's going on.

 

Please read the following and post back attached to your next reply the 3 requested logs - Diagnostic Logs (the 3 logs are: FRST.txt, Addition.txt and CheckResults.txt)
Also, please attach the relevant scan logs to your next reply, so we can see what was detected.  Instructions for doing that are below.
 
Thanks,
 
---------------

How to get scan logs:
(Export log to save as a txt file for posting in the forum when requested)

  • Open MBAM from the desktop shortcut.
  • Click on the HISTORY tab > APPLICATION LOGS.
  • Double-click on the SCAN LOG which shows the date and time of the scan just performed (or the one you are asked to post).
  • Click EXPORT.
  • Click TEXT FILE (*.txt)
  • In the "Save File" dialog box which appears, click on DESKTOP.
  • In the FILE NAME box, type a name for your scan log.
  • A message box named "File Saved" should appear, stating that "Your file has been successfully exported".
  • Click OK.
  • Attach the saved log to your next reply.
Link to post
Share on other sites

Are you not able to run these tools, at least for starters?

 

Please read the following and post back attached to your next reply the 3 requested logs - Diagnostic Logs (the 3 logs are: FRST.txt, Addition.txt and CheckResults.txt)

 

Can you tell us, please: what is the name and exact version of the software about which you are reporting the issue?

 

Thanks,

Link to post
Share on other sites

I did finally find them - it put them into Notebook.  Dont see where there is a file save button on here.

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 10/23/2014
Scan Time: 7:15:01 AM
Logfile: log1.txt
Administrator: Yes

Version: 2.00.3.1025
Malware Database: v2014.10.23.01
Rootkit Database: v2014.10.22.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Dr. Biggs

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 343010
Time Elapsed: 1 hr, 0 min, 39 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)

Link to post
Share on other sites

Log 2:

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 10/22/2014
Scan Time: 7:22:49 PM
Logfile: log2.txt
Administrator: Yes

Version: 2.00.3.1025
Malware Database: v2014.10.21.11
Rootkit Database: v2014.10.21.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Dr. Biggs

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 342197
Time Elapsed: 21 min, 53 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)

(end)

Link to post
Share on other sites

log 3:

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 10/21/2014
Scan Time: 10:23:14 PM
Logfile: log3.txt
Administrator: Yes

Version: 2.00.3.1025
Malware Database: v2014.10.21.11
Rootkit Database: v2014.10.21.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Dr. Biggs

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 343465
Time Elapsed: 24 min, 32 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 16
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\65brstub.dll, Delete-on-Reboot, [5f003add0874c175f0c25690ec1815eb],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\65brstub.dll, Delete-on-Reboot, [5f003add0874c175f0c25690ec1815eb],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\65brstub.dll, Delete-on-Reboot, [5f003add0874c175f0c25690ec1815eb],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\65brstub.dll, Delete-on-Reboot, [5f003add0874c175f0c25690ec1815eb],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\65brstub.dll, Delete-on-Reboot, [5f003add0874c175f0c25690ec1815eb],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\65brstub.dll, Delete-on-Reboot, [5f003add0874c175f0c25690ec1815eb],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\65brstub.dll, Delete-on-Reboot, [5f003add0874c175f0c25690ec1815eb],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\65brstub.dll, Delete-on-Reboot, [5f003add0874c175f0c25690ec1815eb],
PUP.Optional.MindSpark, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\65auxstb.dll, Delete-on-Reboot, [144baa6de597de5890a7f3c630d120e0],
PUP.Optional.MindSpark, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\65auxstb.dll, Delete-on-Reboot, [144baa6de597de5890a7f3c630d120e0],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\65SrcAs.dll, Delete-on-Reboot, [352a9b7cc2ba49edc55eb7a039cc6f91],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\65SrcAs.dll, Delete-on-Reboot, [352a9b7cc2ba49edc55eb7a039cc6f91],
PUP.Optional.MindSpark, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\65dlghk.dll, Delete-on-Reboot, [d58a42d5631979bd0c2b7f3a2fd248b8],
PUP.Optional.MindSpark, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\65dlghk.dll, Delete-on-Reboot, [d58a42d5631979bd0c2b7f3a2fd248b8],
PUP.Optional.MindSpark, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\65ieovr.dll, Delete-on-Reboot, [3b2406111a620b2bdc5b7445837e728e],
PUP.Optional.MindSpark, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\65ieovr.dll, Delete-on-Reboot, [3b2406111a620b2bdc5b7445837e728e],

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 35
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\assists\ie_default_search_provider, Delete-on-Reboot, [7be468af29530432f144c335946e926e],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\chrome, Quarantined, [7be468af29530432f144c335946e926e],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\1.bin\ThirdPartyInstallers, Quarantined, [7be468af29530432f144c335946e926e],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\gen1, Quarantined, [7be468af29530432f144c335946e926e],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\IE9Mesg, Quarantined, [7be468af29530432f144c335946e926e],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\Message, Quarantined, [7be468af29530432f144c335946e926e],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\FromDocToPDF_65\bar\Settings, Quarantined, [7be468af29530432f144c335946e926e],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\64c2283e78652d1ba5b13bb49fe3ea4af5553abf, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\64c2283e78652d1ba5b13bb49fe3ea4af5553abf\1.2.0, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\64c2283e78652d1ba5b13bb49fe3ea4af5553abf\1.2.0\css, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\64c2283e78652d1ba5b13bb49fe3ea4af5553abf\1.2.0\fonts, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\64c2283e78652d1ba5b13bb49fe3ea4af5553abf\1.2.0\images, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\64c2283e78652d1ba5b13bb49fe3ea4af5553abf\1.2.0\js, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\64c2283e78652d1ba5b13bb49fe3ea4af5553abf\1.2.0\swf, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\7a4bf2afb464bdbef98bc8110582aee93fa811e5, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\7a4bf2afb464bdbef98bc8110582aee93fa811e5\1.2.0, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\7a4bf2afb464bdbef98bc8110582aee93fa811e5\1.2.0\css, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\7a4bf2afb464bdbef98bc8110582aee93fa811e5\1.2.0\fonts, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\7a4bf2afb464bdbef98bc8110582aee93fa811e5\1.2.0\images, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\7a4bf2afb464bdbef98bc8110582aee93fa811e5\1.2.0\js, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\7a4bf2afb464bdbef98bc8110582aee93fa811e5\1.2.0\swf, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\9df238df22677b09b4c439018fbd136cc469293a, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\9df238df22677b09b4c439018fbd136cc469293a\1.1.1, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\9df238df22677b09b4c439018fbd136cc469293a\1.1.1\images, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\Local\FromDocToPDF_65\9df238df22677b09b4c439018fbd136cc469293a\1.1.1\js, Quarantined, [29363fd890ec171f7cba18e027db946c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\LocalLow\FromDocToPDF_65, Quarantined, [85da30e7b3c952e4b432f10ea55db44c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\LocalLow\FromDocToPDF_65\bar, Quarantined, [85da30e7b3c952e4b432f10ea55db44c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\LocalLow\FromDocToPDF_65\bar\Cache, Quarantined, [85da30e7b3c952e4b432f10ea55db44c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\LocalLow\FromDocToPDF_65\bar\History, Quarantined, [85da30e7b3c952e4b432f10ea55db44c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\LocalLow\FromDocToPDF_65\bar\ie9mesg, Quarantined, [85da30e7b3c952e4b432f10ea55db44c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\LocalLow\FromDocToPDF_65\bar\ie9mesg\COMMON, Quarantined, [85da30e7b3c952e4b432f10ea55db44c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\LocalLow\FromDocToPDF_65\bar\Message, Quarantined, [85da30e7b3c952e4b432f10ea55db44c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\LocalLow\FromDocToPDF_65\bar\Message\COMMON, Quarantined, [85da30e7b3c952e4b432f10ea55db44c],
PUP.Optional.MindSpark.A, C:\Users\Dr. Biggs\AppData\LocalLow\FromDocToPDF_65\bar\Settings, Quarantined, [85da30e7b3c952e4b432f10ea55db44c],

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)

(end)

Link to post
Share on other sites

Hi:
 
It appears that you had many PUPs removed with the scan on 10/21.
The 2 more recent scans look clean.

However, additional scans might be needed to know for sure.
And I am neither qualified nor authorized to say whether removing those PUPs would have created the problems you reported for one of your installed software programs.

It would help if you could please post the requested Diagnostic Logs, as explained here in this pinned topic: >>>>DIAGNOSTIC LOGS<<<<
 
Under the circumstances, though, it might be a good idea (and more efficient for you) to get some expert help checking the system for additional malware remnants and damage.
That sort of work is not permitted in this particular area of the forum.

So, for expert assistance, I suggest that you might want to please follow the advice in this pinned topic: Available Assistance For Possibly Infected Computers.
It explains the options for free, expert help >>AND<< the preliminary steps to expedite the process.
A malware analyst will guide you through the scanning and cleanup process.

Your malware expert can also assist you with fixing damage caused by the malware.

Thanks,

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.