Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

White Screen of DEATH.... :0(.


  • Please log in to reply

#31
SleepyDude

SleepyDude

    Trusted Helper

  • Malware Removal
  • 4,401 posts
Hello Julz,

By the way from the logs Sendori got removed just fine.


Now the best part... Your log looks clean to me :), good work :thumbsup:

Before you go I have some housekeeping tasks for you, updates, remove the tools we use and I would like to provide some recommendations about how to protect your computer against future malware infections.


Step 1 - Update Programs

From the Security Check log there are some critical programs that you need to update:

Your version of Java (64-bit) version is outdated!, most users don't need 64 Bit's version installed only 32-Bit, you should access the Control Panel and uninstall Java 7 Update 13 (64-bit) and Java SE Development Kit 7 Update 13 (64-bit).

IMPORTANT!: In light of the recent events surrounding Java that is constantly target by malware, users must seriously consider their use of Java.
Do you really need it? If yes, follow the instructions to Update Java below. In case you don't need java use the Control Panel > Programs and Features to uninstall everything related to Java.

» Update Java
Go to the Java download page and click from the link Windows Offline this file will not include any unneeded extras like the ASK Toolbar. When java is installed its extremely important to update immediately when you get a notification pop-up from the Java Updater. If you use the 32-bit and the 64-bit versions you need to keep both updated.

» Update Adobe Reader
The Adobe Reader you have is outdated! and vulnerable to security exploits. The version presently installed it's very old, you need to Uninstall Adobe Reader by using the Control Panel > Uninstall a program (or Programs and Features if in Classic View). Next download and install the most recent version by visiting the Adobe Reader page, make sure you uncheck the box offering any extra programs like the McAfee Security Scan Plus.


Step 2 - Empty The System Restore

Remove infected Restore Points and create a New Clean Restore Point.
  • Right click on the icon Posted Image and choose Run as Administrator to execute the tool. Make sure all other windows are closed and to let it run uninterrupted.
    Do not change any other settings unless otherwise told to do so.
  • Under the Posted Image box at the bottom, paste in the following:
    :Files
    %windir%\system32\vssadmin delete shadows /for=c: /all /quiet /c
    
    :Commands
    [CreateRestorePoint]
    
  • click the Run Fix button at the top
    Notes:
  • when done OTL will show a windows with Fix Complete!, click OK to access the report.
  • Copy & Paste the result in your next reply and not as attachment.


Step 3 - Remove the Tools we use

» AdwCleaner
  • Double-click then Posted Image icon on the Desktop to run the program.
    (On Windows Vista and higher accept the UAC prompt to allow changes to the computer).
  • click the Uninstall button.
» OTL
  • Double-click the OTL Icon Posted Image on the Desktop to start the program
    (On Windows Vista and higher accept the UAC prompt to allow changes to the computer).
  • click the Posted Image button. Accept the prompt to Reboot.
» Uninstall ESET On-line Scanner
  • Please open Start > Control Panel > Uninstall a program or Programs and Features if in Classic View, locate ESET On-line Scanner on the list and uninstall because it's no longer needed.
» Others
  • Delete any .log, .txt, file created on the Desktop during the cleaning process.


Step 4 - How to prevent new infections

To protect your computer from being infected again its very important to keep Windows Updated and all the programs related with the internet, Web Browser, Flash Player, Adobe Reader and Java only to mention the most targeted by today security exploits. Follow the instructions below to keep these critical programs updated:
    • Windows and Internet Explorer
      To keep Windows and Internet Explorer updated make sure you have Windows Update enabled on the Control Panel applet, follow the instructions for Windows 7 on this MS article How to configure and use Automatic Updates in Windows or use the FixIt tool provided.
    • Antivirus and Antimalware programs
      Make sure you have a Antivirus program always updated and running.
      Sometimes Antivirus can miss some malware, when that happens its good to have Malwarebytes installed like you have, Update and run weekly to keep your system clean. Malwarebytes is also good to revert some system changes made by the malware.
    • Enable the Firewall
      No system can be considered safe if not protected by a Firewall. If you are connected to the Internet by a Router you should check its configuration and make sure the firewall is active.
      If you connect by modem or to a open Local Network you should enable the Windows 7 built-in firewall.
    • Adobe Flash Player
      To update Adobe Flash Player accept any prompt to update or manually initiate the update by opening Start Menu > Settings > Control Panel open the applet called Flash Player, on the Advanced tab click the Check Now button. Accept any prompt to install an updated version.
      If the update process redirect you to the Adobe webpage you need to download the latest version of Adobe Flash and install for both Internet Explorer and Firefox, make sure you uncheck the box offering to install any extra programs (Google Chrome and Google Toolbar or McAfee Security Scan Plus) before downloading. Repeat the above steps with the other browser.
    • Adobe Reader
      Adobe Reader, can be updated by opening Adobe Reader from the Start Menu, when the program full load click on the Help menu next click the Check for updates now option. Follow the prompts to install any new update.
    • Java Runtime
      When java is installed its extremely important to update immediately when you get a notification pop-up from the Java Updater. Or update manually by opening the Start Menu > Settings > Control Panel, open the applet called Java on the Update tab click the Update Now button. The program will prompt you to install any new updated version available.
      Every time you update Java make sure you uncheck the box asking to Install the Ask Toolbar and make Ask my default search provider
    Use the instructions above to keep the programs updated or use one of the following programs to help you keeping the programs updated:
  • Keep Installed Programs Up to Date
    It's important to keep all other programs on your computer updated because they can also have security vulnerability explored by the malware to infect you. Therefore, it is also a good idea to check for the latest versions of commonly installed applications to fix vulnerabilities, this can be done manually by using the Update feature included in most programs or you can use one of the following programs to help you with this task:
  • Surf the Net with extra Security
    Every web browser is a target for malware, the bad guys are always trying to explorer security holes to infect the computers, and this is especially true for Internet Explorer because is one of the most used. Using alternatives like Mozilla Firefox or Google Chrome can help protecting your computer from infections.
    And for Firefox and Chrome you can get an extra layer of protection by installing two add-ons AdBlockPlus and Web Of Trust (WOT). WOT can also protect Internet Explorer.

::: Some final recommendations :::
Best Regards and have a Safe surfing! :wave:
  • 0

Advertisements


#32
Julz1960

Julz1960

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

Your version of Java (64-bit) version is outdated!, most users don't need 64 Bit's version installed only 32-Bit, you should access the Control Panel and uninstall Java 7 Update 13 (64-bit) and Java SE Development Kit 7 Update 13 (64-bit).

IMPORTANT!: In light of the recent events surrounding Java that is constantly target by malware, users must seriously consider their use of Java.
Do you really need it? If yes, follow the instructions to Update Java below. In case you don't need java use the Control Panel > Programs and Features to uninstall everything related to Java.


I went ahead and uninstalled the outdated versions and will look into our need for it. At this point I have not install an updated Java version at this time.

» Update Adobe Reader
The Adobe Reader you have is outdated! and vulnerable to security exploits. The version presently installed it's very old, you need to Uninstall Adobe Reader by using the Control Panel > Uninstall a program (or Programs and Features if in Classic View). Next download and install the most recent version by visiting the Adobe Reader page, make sure you uncheck the box offering any extra programs like the McAfee Security Scan Plus.


New Adobe Reader installed unchecking McAfee offer.

Step 2 - Empty The System Restore


OTL Fix Report:

========== FILES ==========
< %windir%\system32\vssadmin delete shadows /for=c: /all /quiet /c >
vssadmin 1.1 - Volume Shadow Copy Service administrative command-line tool
© Copyright 2001-2005 Microsoft Corp.
Error: Unexpected failure: Class not registered
C:\Users\SnJWitter\Desktop\cmd.bat deleted successfully.
C:\Users\SnJWitter\Desktop\cmd.txt deleted successfully.
========== COMMANDS ==========
Restore point Set: OTL Restore Point

OTL by OldTimer - Version 3.2.69.0 log created on 09042013_203309
  • 0

#33
Julz1960

Julz1960

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

» Uninstall ESET On-line Scanner
Please open Start > Control Panel > Uninstall a program or Programs and Features if in Classic View, locate ESET On-line Scanner on the list and uninstall because it's no longer needed.


Followed your direction but the esetsmartinstaller_enu application/ ESET Smart Installer(.exe) was not removed from the desktop.

The following tools also reside on the desktop:

JRT (.exe) Junkware Removal Tool
RogueKillerX64 (.exe) Anti-malware tool
SecurityCheck (.exe)

Now the best part... Your log looks clean to me :), good work :thumbsup:


Great work to you! :cheers: I definitely could not have done any of this with out you!!! :wacko:

I have to go out of town tomorrow so will continue with cleanup on 9/6...

Thank you so much... :hug:

Julz..
  • 0

#34
SleepyDude

SleepyDude

    Trusted Helper

  • Malware Removal
  • 4,401 posts

Your version of Java (64-bit) version is outdated!, most users don't need 64 Bit's version installed only 32-Bit, you should access the Control Panel and uninstall Java 7 Update 13 (64-bit) and Java SE Development Kit 7 Update 13 (64-bit).

IMPORTANT!: In light of the recent events surrounding Java that is constantly target by malware, users must seriously consider their use of Java.
Do you really need it? If yes, follow the instructions to Update Java below. In case you don't need java use the Control Panel > Programs and Features to uninstall everything related to Java.


I went ahead and uninstalled the outdated versions and will look into our need for it. At this point I have not install an updated Java version at this time.

Ok. The 32-bit version you have now is current but keep on eye on it because there are updates almost every week.

Step 2 - Empty The System Restore


OTL Fix Report:

========== FILES ==========
< %windir%\system32\vssadmin delete shadows /for=c: /all /quiet /c >
vssadmin 1.1 - Volume Shadow Copy Service administrative command-line tool
© Copyright 2001-2005 Microsoft Corp.
Error: Unexpected failure: Class not registered
C:\Users\SnJWitter\Desktop\cmd.bat deleted successfully.
C:\Users\SnJWitter\Desktop\cmd.txt deleted successfully.
========== COMMANDS ==========
Restore point Set: OTL Restore Point

OTL by OldTimer - Version 3.2.69.0 log created on 09042013_203309


I did a mistake on this one and the System Restore points didn't get deleted, the correct instructions:

Step 2 - Empty The System Restore

Remove infected Restore Points and create a New Clean Restore Point.
  • Right click on the icon Posted Image and choose Run as Administrator to execute the tool. Make sure all other windows are closed and to let it run uninterrupted.
    Do not change any other settings unless otherwise told to do so.
  • Under the Posted Image box at the bottom, paste in the following:
    :Files
    %windir%\sysnative\vssadmin delete shadows /for=c: /all /quiet /c
    
    :Commands
    [CreateRestorePoint]
    
  • click the Run Fix button at the top
    Notes:
  • when done OTL will show a windows with Fix Complete!, click OK to access the report.
  • Copy & Paste the result in your next reply and not as attachment.

  • 0

#35
SleepyDude

SleepyDude

    Trusted Helper

  • Malware Removal
  • 4,401 posts

» Uninstall ESET On-line Scanner
Please open Start > Control Panel > Uninstall a program or Programs and Features if in Classic View, locate ESET On-line Scanner on the list and uninstall because it's no longer needed.


Followed your direction but the esetsmartinstaller_enu application/ ESET Smart Installer(.exe) was not removed from the desktop.

The following tools also reside on the desktop:

JRT (.exe) Junkware Removal Tool
RogueKillerX64 (.exe) Anti-malware tool
SecurityCheck (.exe)

Sorry, my instructions could be more specific...
Yes you need to delete all that JRT.exe, RogueKillerX64.exe, SecurityCheck.exe, esetsmartinstaller_enu.exe and also other logs JRT.txt, check.txt, etc.
In case this tools are needed again you must download fresh copies because they are updated very often.

Now the best part... Your log looks clean to me :), good work :thumbsup:


Great work to you! :cheers: I definitely could not have done any of this with out you!!! :wacko:

You did a good job without which this result would not be possible. :thumbsup:

I have to go out of town tomorrow so will continue with cleanup on 9/6...

I will be around in case you have more questions.

Thank you so much... :hug:

You're welcome. :cheers:
  • 0

#36
Julz1960

Julz1960

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts

I did a mistake on this one and the System Restore points didn't get deleted, the correct instructions:

Step 2 - Empty The System Restore

Remove infected Restore Points and create a New Clean Restore Point.
Right click on the icon Posted Image and choose Run as Administrator to execute the tool. Make sure all other windows are closed and to let it run uninterrupted.
Do not change any other settings unless otherwise told to do so.
Under the Posted Image box at the bottom, paste in the following:
:Files
%windir%\sysnative\vssadmin delete shadows /for=c: /all /quiet /c

:Commands
[CreateRestorePoint]

click the Run Fix button at the top
Notes:
when done OTL will show a windows with Fix Complete!, click OK to access the report.
Copy & Paste the result in your next reply and not as attachment.


Here are the results for the updated fix:
========== FILES ==========
< %windir%\sysnative\vssadmin delete shadows /for=c: /all /quiet /c >
vssadmin 1.1 - Volume Shadow Copy Service administrative command-line tool
© Copyright 2001-2005 Microsoft Corp.
C:\Users\SnJWitter\Desktop\cmd.bat deleted successfully.
C:\Users\SnJWitter\Desktop\cmd.txt deleted successfully.
========== COMMANDS ==========
Restore point Set: OTL Restore Point

OTL by OldTimer - Version 3.2.69.0 log created on 09062013_152623
  • 0

#37
Julz1960

Julz1960

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
Thank you for the Prevention Tips as well as all your help. :)
  • 0

#38
SleepyDude

SleepyDude

    Trusted Helper

  • Malware Removal
  • 4,401 posts

Thank you for the Prevention Tips as well as all your help. :)


Ok, All good now.

Regards.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP