Rorschach112

Managers
  • Content Count

    425
  • Joined

  • Last visited

Everything posted by Rorschach112

  1. can you try the OTL step again, seems you may have made a mistake Make sure to copy everything from :OTL and down then do this Download TFC to your desktop Open the file and close any other windows. It will close all programs itself when run, make sure to let it run uninterrupted. Click the Start button to begin the process. The program should not take long to finish its job Once its finished it should reboot your machine, if not, do this yourself to ensure a complete clean Please download Malwarebytes' Anti-Malware from Here Double Click mbam-setup.exe to install the application. Make sure
  2. sorry I've been away, busy week who suggested combofix ? Run OTL Under the Custom Scans/Fixes box at the bottom, paste in the following :OTL O33 - MountPoints2\{b5de488a-a3ae-11dd-8801-001ec9755754}\Shell\AutoRun\command - "" = E:\wd_windows_tools\WDSetup.exe -- File not found O33 - MountPoints2\{b8817e38-43e1-11dd-87dc-001ec9755754}\Shell\AutoRun\command - "" = E:\InstallTomTomHOME.exe -- File not found NetSvcs: msncache - Service key not found. File not found [2009/07/28 17:42:57 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\14899704 :Services :Reg [HKE
  3. hi Download Security Check from here or here. Save it to your Desktop. Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box. A Notepad document should open automatically called checkup.txt; please post the contents of that document.
  4. http://www.besttechie.net/forums/index.php?showtopic=12175
  5. did you disable or uninstall them ? your issue isn't malware related thats for sure
  6. I think your problem is down to too many security programs running I would remove Comodo, Spyware Doctor, and Spybot See how it runs after that
  7. Inactive topic... If you still need help on this problem, contact me or one of the Moderators to re-open this up. Topic closed.
  8. Inactive topic... If you still need help on this problem, contact me or one of the Moderators to re-open this up. Topic closed.
  9. hi Run OTL Under the Custom Scans/Fixes box at the bottom, paste in the following :OTL PRC - C:\Program Files\Spyware Doctor\pctsAuxs.exe (PC Tools) PRC - C:\Program Files\Spyware Doctor\pctsSvc.exe (PC Tools) PRC - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.) PRC - C:\Program Files\Spyware Doctor\pctsTray.exe (PC Tools) O33 - MountPoints2\{2df57193-99f6-11dc-b156-806e6f6e6963}\Shell - "" = AutoRun O33 - MountPoints2\{2df57193-99f6-11dc-b156-806e6f6e6963}\Shell\AutoRun\command - "" = F:\Setup\rsrc\Autorun.exe -- [2000/01/17 17:28:36 | 00,028,672 | R--- |
  10. Inactive topic... If you still need help on this problem, contact me or one of the Moderators to re-open this up. Topic closed.
  11. hi Before we begin, you should save these instructions in Notepad to your desktop, or print them, for easy reference. Much of our fix will be done in Safe mode, and you will be unable to access this thread at that time. If you have questions at any point, or are unsure of the instructions, feel free to post here and ask for clarification before proceeding. Please download SmitfraudFix (by S!Ri) to your Desktop. Next, please reboot your computer in Safe Mode by doing the following : Restart your computer After hearing your computer beep once during startup, but before the Windows icon appears,
  12. hi Run OTL Under the Custom Scans/Fixes box at the bottom, paste in the following :OTL PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation) O33 - MountPoints2\{06c46914-d339-11dc-808a-000d616f5eea}\Shell - "" = AutoRun O33 - MountPoints2\{3953ed82-ded0-11dc-80ae-000d616f5eea}\Shell\AutoRun\command - "" = F:\PortableApps\PortableAppsMenu\PortableAppsMenu.exe -- File not found [2009.07.10 11:15:14 | 00,000,130 | ---- | C] () -- C:\WINDOWS\cfplogvw.INI :Services :Reg :Files :Commands [purity] [emptytemp] [Reboot] Then click the Run Fix button at the top Let
  13. have you posted anywhere else Download RootRepeal.zip or from here and unzip it to your Desktop. Double click RootRepeal.exe to start the program Click on the Report tab at the bottom of the program window Click the Scan button In the Select Scan dialog, check: Processes Hidden Services [*]Click the OK button [*]In the next dialog, select your main drive, usually C:\ [*]Click OK to start the scan Note: The scan can take some time. DO NOT run any other programs while the scan is running [*]When the scan is complete, the Save Report button will become available [*]Click this and save the rep
  14. Since this issue appears to be resolved ... this Topic has been closed. Glad we could help. If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread. Everyone else please begin a New Topic.
  15. You were told to read the sticky threads before posting, I suggest you do it
  16. Since this issue appears to be resolved ... this Topic has been closed. Glad we could help. If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread. Everyone else please begin a New Topic.
  17. Your logs are clean Follow these steps to uninstall Combofix and tools used in the removal of malware Click START then RUN Now type Combofix /u in the runbox and click OK. Note the space between the X and the U, it needs to be there. Download OTC to your desktop and run it Click Yes to beginning the Cleanup process and remove these components, including this application. You will be asked to reboot the machine to finish the Cleanup process. Choose Yes. Below I have included a number of recommendations for how to protect your computer against malware infections. Keep Windows updated b
  18. can you boot into safe mode and try that fix again please
  19. nearly done make sure firefox is closed for this step Run OTL Under the Custom Scans/Fixes box at the bottom, paste in the following :OTL FF - prefs.js..keyword.URL: "http://search.mywebsearch.com/mywebsearch/cfg_redir2.jhtml?ptb=C996D0E2-B8AA-4540-BA8B-5429E0517C52-TS&id=ZKfox002RWUS&ptnrS=ZKfox002RWUS&url=http%3A//search.mywebsearch.com/mywebsearch/AJmain.jhtml&st=kwd&ind=2009032823&searchfor=" :Services :Reg :Files :Commands [purity] [emptytemp] [Reboot] Then click the Run Fix button at the top Let the program run unhindered, reboot the PC when it is done Open
  20. update mbam, run a quick scan again, post that log also open OTL, click Quick Scan, post that log too
  21. Your logs are clean Now we need to create a new System Restore point. Click Start Menu > Run > type (or copy and paste) %SystemRoot%\System32\restore\rstrui.exe Press OK. Choose Create a Restore Point then click Next. Name it and click Create, when the confirmation screen shows the restore point has been created click Close. Next goto Start Menu > Run > type cleanmgr Click OK, Disk Cleanup will open and start calculating the amount of space that can be freed, Once thats finished it will open the Disk Cleanup options screen, click the More Options tab then click Clean up on the syst
  22. hi Download TFC to your desktop Open the file and close any other windows. It will close all programs itself when run, make sure to let it run uninterrupted. Click the Start button to begin the process. The program should not take long to finish its job Once its finished it should reboot your machine, if not, do this yourself to ensure a complete clean Please download Malwarebytes' Anti-Malware from Here Double Click mbam-setup.exe to install the application. Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish. If
  23. Inactive topic... If you still need help on this problem, contact me or one of the Moderators to re-open this up. Topic closed.
  24. Inactive topic... If you still need help on this problem, contact me or one of the Moderators to re-open this up. Topic closed.
  25. hi Run OTL Under the Custom Scans/Fixes box at the bottom, paste in the following :OTL PRC - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft) PRC - C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.) O33 - MountPoints2\{3c116c57-faa1-11d9-980c-806d6172696f}\Shell - "" = AutoRun O33 - MountPoints2\{3c116c57-faa1-11d9-980c-806d6172696f}\Shell\AutoRun - "" = Auto&Play O33 - MountPoints2\{87d0bcef-c8a3-11d9-9ff5-806d6172696f}\Shell - "" = AutoRun O33 - MountPoints2\{87d0bcef-c8a3-11d9-9ff5-806d6172696f}\Shell\AutoRun - "" = Auto&Play [2009/07/05