flashh4

Moderator
  • Content Count

    3035
  • Joined

  • Last visited

Everything posted by flashh4

  1. Stormy, This will fix what was found above: AdwCleaner * Close all open programs and internet browsers. * Double click on adwcleaner.exe to run the tool. * Click on Delete. * Confirm each time with Ok. * You will be prompted to restart your computer. A text file will open after the restart. * Please post the contents of that logfile with your next reply. * You can find the logfile at C:\AdwCleaner[s1].txt as well. NEXT This scan will take a little while so be patient ! Do Not use the computer or mouse while it's running !! Download OldTimer to your desk top ! If you alre
  2. Your doing great Stormy. That came back clean so run the other scan !! Chuck
  3. Thanks Stormy, now see if it will run long enough to get me the Malwarebytes log & the AdwCleaner log !! Chuck
  4. Howdy and welcome to BestTechie !!! My name is flashh4 (Chuck) and i will be assisting you with the cleaning of your computer. If you don't understand something, please don't hesitate to ask for clarification before proceeding !!! You can PM me if you need to !! So Do Not Remove anything or run any tools/programs until advised to do so ! Please stay with us until we give you the "All Clean Speech"! Just because the problem has stopped it may still need some clean-up ! Please note that all instructions given are customized for this computer only, the tools used may cause damage if used on
  5. Hi, i will be right back with a start ! Thanks Chuck
  6. I bumped it up for you !! Stay Safe & clean !! Thank you for my charge, those kind words make what i do worth while !! ....... "thanks" is my charge/fee !!! I will lock this post in 5 days & if you need it re-opened just PM me or any mod here !! I do this so we have no "drive by users in your thread/post"
  7. guera, Congratulation you are clean !!! It seems as the 2 problems have stopped ! I know you may have some of these installed, this is just my standard all clean speech ! Any of the logs that you created for use in the forums or remaining tools that have not yet been removed can be deleted so they aren't cluttering up your desktop. Here are some tips to reduce the potential for spyware infection in the future: 1. Make your Internet Explorer more secure - This can be done by following these simple instructions: * From within Internet Explorer click on the Tools menu and then click on Op
  8. Ok lets try to fix those problems ! 1. Click Start, type msconfig in the Start Search box, and then press ENTER. 2. On the General tab, click Selective Startup. 3. Under Selective Startup, click to clear the Load Startup Items check box >>> Click on the services tab and find the one for the proset event log and uncheck it. Click "OK" and you're done. See if that helps the Intel® PROSet/Wireless Event Log Service from popping up ! Now run this to get rid of that Worm:MSIL/Necast.D >>>> http://www.microsoft.../scanner/en-gb/ <<< download & run this then l
  9. Hi, how's it running ? Are you still getting the same 2 problems ?
  10. Good evening, yes delete quarantined files then follow up with finish !!Then post me the ESET Scan fix !! Thanks Chuck
  11. Guess they would have to distinguish either Male or Female also !! Good to see ya hanging in there Pete my friend !! Chuck
  12. Pay no attention to the photobucket image removed !!
  13. guera, we are almost done with the cleaning ! Clean up with OTL Right-click OTL.exe and select " Run as administrator " to run it. This will remove all the tools we used to clean your pc. Close all other programs apart from OTL as this step will require a reboot On the OTL main screen, press the CleanUp! button Say Yes to the prompt and then allow the program to reboot your computer. You can now delete any tools we used if they remain on your Desktop NEXT STEP: Eset online scannner You can use either Internet Explorer or Mozilla FireFox for this scan. Note: If you are using Windows Vista,
  14. Great job, ok lets take care of what i found in the OTL log !! We need to Run an OTL fix !! * Double-click OTL.exe to start the program. * Copy and Paste the following code into the . Do not include the word Code :OTL IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bin
  15. guera, anything we remove can always be re-downloaded if you ever need them !! Run this again please & make sure you click "DELETE" this time !! AdwCleaner * Close all open programs and internet browsers. * Double click on adwcleaner.exe to run the tool. * Click on Delete. * Confirm each time with Ok. * You will be prompted to restart your computer. A text file will open after the restart. * Please post the contents of that logfile with your next reply. * You can find the logfile at C:\AdwCleaner[s1].txt as well. Post log please ! Thanks Chuck
  16. DO YOU USE THIS >> Folder Found : C:\Program Files (x86)\ImTranslator_Pro <<<< AdwCleaner wants to get rid of it, i agree unless you want to keep it !!!
  17. Ok, lets get rid of those found before we get to OTL fix !! I be right back !! Chuck DO YOU USE THIS >> Folder Found : C:\Program Files (x86)\ImTranslator_Pro <<<< AdwCleaner says get rid of it and it knows what needs to go !!!
  18. guera, hold off on the run of scan disk & defrag until we are threw please !!! Sometimes it can make things more difficult !! That's why i posted in the first post So Do Not Remove anything or run any tools/programs until advised to do so ! Ok, lets continue with the cleaning. There is a bunch in the OTL log we need to remove but first run this scan for me !! Please download adwcleaner by Xplode onto your desktop.. * Double click on AdwCleaner.exe to run the tool. * Click on Search. * A logfile will automatically open after the scan has finished. * Please post the contents
  19. guera,go ahead & post the logs. I have to leave for the rest of the day but we will continue this in the morning ! You are not showing any infections yet but i want to make sure everything is good ! Worm:MSIL/Necast.D has been renamed to TrojanDownloader:Win32/Delf.PG. That infection, if actually present is what is knows as a Backdoor Trojan we will search & see if it does exist !! Thanks Chuck It should be running faster already, what antivirus are you running ??
  20. guera, it's still showing "no action taken" that means you did not select the "remove" again !! These will be removed when you select the "remove selected" Registry Values Detected: 1 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Windows Update Server (Backdoor.IRCBot) -> Data: C:\Users\guerajasso\1os0ieiryvktk-10083.exe -> No action taken. Registry Data Items Detected: 1 HKCR\SOFTWARE\Microsoft\Internet Explorer\SearchScopes|URL (Hijack.SearchPage) -> Bad: (http://findgala.com/...q={searchTerms}) Good: (http://www.google.co...age={startPage}) -> No action taken. Folders De
  21. guera, good job following my instructions. Go ahead & post the new Malwarebytes log !! We have cleaned a lot but i want to deep clean it so it runs like new !! This next tool/program will take a while so get a sandwich or coffee while it's running !! Download OldTimer to your desk top ! Links: http://oldtimer.geekstogo.com/OTL.com http://oldtimer.geekstogo.com/OTL.scr If you already have a copy of OTL delete it and use this version. (Note: If you are running on Vista, right-click on the file and choose Run As Administrator). * Double click OTL.exe to launch the program. * Check the
  22. guera, we need to run Malwarebytes again, this time make sure Remove Selected is checked as in my instructions above, please. it will remove the bad it found in the log above !! Post that new Malwarebytes log for me !! Also i need the Junkware log please !! Thanks for that Junk log ! Thanks Chuck