Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Need Help Removing advertising when using browser [Solved]


  • This topic is locked This topic is locked

#16
Schoodic_pnt

Schoodic_pnt

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts
I haven't surfed the net yet to see if it keeps redirecting me to advertsing sites. But i can try after i run the next scans.

What is the virus Kaspersky found?
  • 0

Advertisements


#17
Schoodic_pnt

Schoodic_pnt

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts
All processes killed
========== FILES ==========
C:\Documents and Settings\NetworkService\Application Data\Sun\Java\Deployment\cache\6.0\44\5473416c-3c008303 moved successfully.
========== COMMANDS ==========

[EMPTYFLASH]

User: Administrator

User: All Users

User: Default User
->Flash cache emptied: 41620 bytes

User: LocalService

User: Mark
->Flash cache emptied: 48930 bytes

User: NetworkService
->Flash cache emptied: 2582 bytes

Total Flash Files Cleaned = 0.00 mb


[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 297187 bytes

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 0 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 32835 bytes

User: Mark
->Temp folder emptied: 106974823 bytes
->Temporary Internet Files folder emptied: 13083037 bytes
->Java cache emptied: 128094 bytes
->Flash cache emptied: 0 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Java cache emptied: 2798 bytes
->Flash cache emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 2402044 bytes
%systemroot%\System32 .tmp files removed: 2577 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 117.00 mb


OTL by OldTimer - Version 3.2.4.1 log created on 05092010_232408

Files\Folders moved on Reboot...
File\Folder C:\Documents and Settings\Mark\Local Settings\Temp\~DFA642.tmp not found!
File\Folder C:\Documents and Settings\Mark\Local Settings\Temp\~DFA683.tmp not found!
File\Folder C:\Documents and Settings\Mark\Local Settings\Temp\~DFA749.tmp not found!
File\Folder C:\Documents and Settings\Mark\Local Settings\Temp\~DFA76E.tmp not found!
File\Folder C:\Documents and Settings\Mark\Local Settings\Temp\~DFA85B.tmp not found!
File\Folder C:\Documents and Settings\Mark\Local Settings\Temp\~DFA866.tmp not found!
C:\Documents and Settings\Mark\Local Settings\Temporary Internet Files\Content.IE5\UKK69Q6F\iframe[1].htm moved successfully.
C:\Documents and Settings\Mark\Local Settings\Temporary Internet Files\Content.IE5\1QNCD2TT\Need-Help-Removing-advertising-when-using-browser-t276447[2].html moved successfully.

Registry entries deleted on Reboot...
  • 0

#18
RPMcMurphy

RPMcMurphy

    Trusted Helper

  • Malware Removal
  • 930 posts
It was garden variety exploit in your Java cache. Nothing too hairy. Go ahead and surf a bit and let me know if everything is OK.
  • 0

#19
Schoodic_pnt

Schoodic_pnt

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts
Here's the latest log.

Attached Files

  • Attached File  OTL2.Txt   128.58KB   76 downloads

  • 0

#20
Schoodic_pnt

Schoodic_pnt

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts
Surfinf seems to be fine.
  • 0

#21
RPMcMurphy

RPMcMurphy

    Trusted Helper

  • Malware Removal
  • 930 posts
Good work - that looks clean! Now I have some important cleanup for you to take care of:

Posted Image Uninstall ComboFix
  • Press the Windows key + R on your keyboard or click Start -> Run. Copy and past the following text into the run box that opens and press OK:
    Combofix /Uninstall
Posted Image

Posted Image Clean up with OTL:
  • Double-click OTL.exe to start the program.
  • Close all other programs apart from OTL as this step will require a reboot
  • On the OTL main screen, press the CLEANUP button
  • Say Yes to the prompt and then allow the program to reboot your computer.
  • Manually delete any remaining logs or tools.
Posted Image Finally, I'd like to make a couple of suggestions to help you stay clean in the future:
  • Restart any anti-malware programs that we disabled while we were cleaning your machine.
  • Keep your antivirus application current and updated. Also, hang on to MBAM. Scan with them at least weekly.
  • Consider running in a limited user account. See this post for more information.
  • Please carefully review the information in our Preventing Malware and Safe Computing thread located HERE
Please post once more so I know you are all set and I can close this thread. Good luck and stay safe!
  • 0

#22
Schoodic_pnt

Schoodic_pnt

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts
Ok. Uninstalled it. Ran OTL clean up. Deleted logs.

Thank you for all of your help! You are excellent!!!!!!!!!!!!!!!!!!!!
  • 0

#23
RPMcMurphy

RPMcMurphy

    Trusted Helper

  • Malware Removal
  • 930 posts
You're very welcome. Take care.
  • 0

#24
RPMcMurphy

RPMcMurphy

    Trusted Helper

  • Malware Removal
  • 930 posts
Since this issue appears to be resolved ... this Topic has been closed. Glad we could help. :)

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP