Jean J Marcus Posted February 1, 2014 Report Share Posted February 1, 2014 Ok can you see me now. Link to post Share on other sites
flashh4 Posted February 1, 2014 Report Share Posted February 1, 2014 Hi Jean, Run these 1 at a time & post each log as you get it ! Work them as your time permits you to !!If you don't understand something, please don't hesitate to ask for clarification before proceeding !!! You can PM me if you need to !!Do Not Remove anything or run any tools/programs until advised to do so !Perform all actions in the order given.Please stay with us until we give you the "All Clean Speech"! Just because the problem has stopped it may still need some clean-up ! Please note that all instructions given are customized for this computer only, the tools used may cause damage if used on a computer with different infections. If you think you have similar problems, please post a log in the Malware Removal forum and wait for help. ===================================AdwCleaner Please download adwcleaner by Xplode onto your desktop.Double click on AdwCleaner.exe to run the tool again. Windows XP : Double click on the icon to run it. Windows Vista, Windows 7 & 8 : Right click and select "Run as Administrator" *Click on the Scan button. *AdwCleaner will begin to scan your computer like it did before. *After the scan has finished ....... This time, click on the Clean button. *Press OK when asked to close all programs and follow the onscreen prompts. *Press OK again to allow AdwCleaner to restart the computer and complete the removal process. *After rebooting, a logfile report (AdwCleaner[s0].txt) will open automatically. *Copy and paste the contents of that logfile in your next reply. *A copy of that logfile will also be saved in the C:\AdwCleaner folder.NEXT Please download Junkware Removal Tool and save to your desk top. Shut down your protection software now to avoid potential conflicts. * Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator". * The tool will open and start scanning your system. * Please be patient as this can take a while to complete depending on your system's specifications. * On completion, a log (JRT.txt) is saved to your desktop and will automatically open. * Post the contents of JRT.txt into your next reply ! Re-Boot your computer now !!NEXTMALWAREBYTES with Pics:Please download Malwarebytes' Anti-Malware to your desktop. Or from Here >> http://www.majorgeeks.com/Malwarebytes_Anti-Malware_d5756.html * Double-click mbam-setup.exe and follow the prompts to install the program. * At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish. * If an update is found, it will download and install the latest version. * Once the program has loaded, select Perform quick scan, then click Scan.When the scan is complete, click OK, then Show Results to view the results. * Then click Remove Selected . * When completed, a log will open in Notepad. Please save it to a convenient location and post the results. * Note: If you receive a notice that some of the items couldn't be removed, that they have been added to the delete on reboot list, please reboot.The log can also be found here: C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-date (time).txt Or via the Logs tab when the application is started.Please don't attach the scans / logs, use "copy/paste".Post next:1. AdwCleaner Log2. Junkware Removal Log3. Malwarebytes logThanksChuck Link to post Share on other sites
Jean J Marcus Posted February 1, 2014 Author Report Share Posted February 1, 2014 anything showing up on this page Link to post Share on other sites
Jean J Marcus Posted February 1, 2014 Author Report Share Posted February 1, 2014 ok I'm here but it still doesn't want to copy or paste. Link to post Share on other sites
flashh4 Posted February 1, 2014 Report Share Posted February 1, 2014 Posted by way of PM for Jean !!! # AdwCleaner v3.018 - Report created 31/01/2014 at 20:53:34 # Updated 28/01/2014 by Xplode# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)# Username : Jean - JEAN-PC # Running from : C:\Users\Jean\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3M5P7D65\adwcleaner.exe# Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** ***** [ Shortcuts ] ***** ***** [ Registry ]***** Key Deleted : HKCU\Software\AVG Secure Search ***** [ Browsers ] ***** -\\ Internet Explorer v11.0.9600.16428 ************************* AdwCleaner[R0].txt - [19201 octets] - [26/01/2014 16:31:30] AdwCleaner[R1].txt - [921 octets] - [31/01/2014 20:53:05] AdwCleaner[s0].txt - [18936 octets] - [26/01/2014 16:33:38]AdwCleaner[s1].txt - [794 octets] - [31/01/2014 20:53:34] ########## EOF -C:\AdwCleaner\AdwCleaner[s1].txt - [853 octets] ########## # AdwCleaner v3.018 - Report created 31/01/2014 at 20:53:34 # Updated 28/01/2014 by Xplode# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits) # Username : Jean - JEAN-PC# Running from : C:\Users\Jean\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3M5P7D65\adwcleaner.exe# Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** ***** [ Shortcuts ] ***** ***** [ Registry ] *****Key Deleted : HKCU\Software\AVG Secure Search ***** [ Browsers ] ***** -\\ Internet Explorer v11.0.9600.16428 ************************* AdwCleaner[R0].txt - [19201 octets] - [26/01/2014 16:31:30]AdwCleaner[R1].txt - [921 octets] - [31/01/2014 20:53:05] AdwCleaner[s0].txt - [18936 octets] - [26/01/2014 16:33:38]AdwCleaner[s1].txt - [794 octets] - [31/01/2014 20:53:34] ########## EOF - C:\AdwCleaner\AdwCleaner[s1].txt - [853 octets] ########## Link to post Share on other sites
flashh4 Posted February 1, 2014 Report Share Posted February 1, 2014 Junkware was clean ! Chuck Link to post Share on other sites
flashh4 Posted February 1, 2014 Report Share Posted February 1, 2014 Post the Malwarebytes log here if you can !! Chuck Link to post Share on other sites
flashh4 Posted February 1, 2014 Report Share Posted February 1, 2014 Because you are having trouble copy & pasteing i want you to open a notepad on your computer. Then type anything into it, then go to the top left corner, click the tab EDIT, click "Select All", go back to tab EDIT and click Copy, then come here to Besttechie and click once into the box Reply to Topic, then if the cursor is flashing, right click mouse then choose paste ! Now click the Black box saying Post !Lets see if that works for you ! If this does not work try something in word pad & paste it here !! Chuck Link to post Share on other sites
flashh4 Posted February 2, 2014 Report Share Posted February 2, 2014 Posted for Jean: Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Database version: v2014.02.01.01 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.16476Jean :: JEAN-PC [administrator] 1/31/2014 9:54:51 PM mbam-log-2014-01-31 (21-54-51).txt Scan type: Full scan (C:\|) Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled:P2P Objects scanned: 496316 Time elapsed: 1 hour(s), 7 minute(s), 36 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected:0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected:0 (No malicious items detected) Registry Data Items Detected:0 (No malicious items detected) Folders Detected:0 (No malicious items detected) Files Detected: 27C:\AdwCleaner\Quarantine\C\Program Files\Level Quality Watcher\v1.01\levelqualitywatcher32.exe.vir (PUP.Optional.Adpeak) -> Quarantined and deleted successfully.C:\AdwCleaner\Quarantine\C\Program Files\Level Quality Watcher\v1.01\levelqualitywatcher64.exe.vir (PUP.Optional.Adpeak) -> Quarantined and deleted successfully.C:\AdwCleaner\Quarantine\C\Program Files (x86)\ScorpionSaver\CustomActionInstall.vir (PUP.Optional.Adpeak) -> Quarantined and deleted successfully.C:\AdwCleaner\Quarantine\C\Program Files (x86)\ScorpionSaver\CustomActionUninstall.vir (PUP.Optional.Adpeak) -> Quarantined and deleted successfully.C:\AdwCleaner\Quarantine\C\Program Files (x86)\ScorpionSaver\IECore.dll.vir (PUP.Optional.Adpeak) -> Quarantined and deleted successfully.C:\AdwCleaner\Quarantine\C\Program Files (x86)\Wajam\IE\priam_bho.dll.vir (PUP.Optional.Wajam) -> Quarantined and deleted successfully.C:\AdwCleaner\Quarantine\C\Program Files (x86)\Wajam\Updater\update.exe.vir (PUP.Optional.Wajam) -> Quarantined and deleted successfully.C:\temp\000.exe (PUP.Optional.Adpeak) -> Quarantined and deleted successfully. C:\temp\scorpionsaver.exe (PUP.Optional.ScorpionSaver) -> Quarantined and deleted successfully.C:\temp\ScorpionSaver.msi (PUP.Optional.Adpeak) -> Quarantined and deleted successfully.C:\Users\Jean\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3M5P7D65\OfferBrokerage_14220b[1].exe (PUP.Optional.InstallIQ) -> Quarantined and deleted successfully.C:\Users\Jean\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8JBE6TA2\pack[1].7z (PUP.Optional.PerformerSoft.A) -> Quarantined and deleted successfully.C:\Users\Jean\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9S576SXV\wajam_downloadB[1].exe (PUP.Optional.Wajam) -> Quarantined and deleted successfully.C:\Users\Jean\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\V0Y2EKMK\9D0EB5E9-CCC9-4360-B7CA-3E645650CC53[1].exe (PUP.Optional.Adpeak) -> Quarantined and deleted successfully.C:\Users\Jean\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\V0Y2EKMK\wajam_install[1].exe (PUP.Optional.Wajam) -> Quarantined and deleted successfully.C:\Users\Jean\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VHL41FXQ\ffv_best_1.exe (PUP.Optional.InstallIQ) -> Quarantined and deleted successfully.C:\Users\Jean\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FWAFQO0Y\Setup[1].exe (PUP.Optional.BundleInstaller.A) -> Quarantined and deleted successfully.C:\Users\Jean\AppData\Local\Temp\air139A.exe (PUP.Optional.Adpeak) -> Quarantined and deleted successfully.C:\Users\Jean\AppData\Local\Temp\air7E2B.exe (PUP.Optional.InstallIQ) -> Quarantined and deleted successfully.C:\Users\Jean\AppData\Local\Temp\airDD7C.exe (PUP.Optional.Wajam) -> Quarantined and deleted successfully.C:\Users\Jean\AppData\Local\Temp\86855C8F-BAB0-7891-B808-5376CB597EF9\CrxInstaller.dll (PUP.Optional.Babylon.A) -> Quarantined and deleted successfully.C:\Users\Jean\AppData\Local\Temp\86855C8F-BAB0-7891-B808-5376CB597EF9\MntrDLLInstall.dll (PUP.Optional.Babylon.A) -> Quarantined and deleted successfully.C:\Users\Jean\AppData\Local\Temp\bus2D2\CrxUpdater_d.exe (PUP.Optional.CRX.A) -> Quarantined and deleted successfully.C:\Users\Jean\AppData\Local\Temp\bus5CBF\CrxUpdater_d.exe (PUP.Optional.CRX.A) -> Quarantined and deleted successfully.C:\Users\Jean\AppData\Local\Temp\busA0F9\CrxUpdater_d.exe (PUP.Optional.CRX.A) -> Quarantined and deleted successfully.C:\Users\Jean\AppData\Local\Temp\busBF34\CrxUpdater_d.exe (PUP.Optional.CRX.A) -> Quarantined and deleted successfully.C:\Windows\Installer\e419923.msi (PUP.Optional.Adpeak) -> Quarantined and deleted successfully. (end)1.75.0.130 Link to post Share on other sites
flashh4 Posted February 4, 2014 Report Share Posted February 4, 2014 Due to lack of interest this topic is closed ! Chuck Link to post Share on other sites
Recommended Posts