Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Can only connect to internet using Safe Mode after win update


  • This topic is locked This topic is locked

#1
rmarie5

rmarie5

    New Member

  • Member
  • Pip
  • 7 posts
I uninstalled Microsoft security essentials and it's working just fine now! Thank you!

Edited by rmarie5, 13 March 2014 - 08:21 PM.

  • 0

Advertisements


#2
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,797 posts
Hi! My name is zep516 and Welcome to Geekstogo
I'll do the best I can to resolve your computer issue
Please make sure to carefully read any instruction that I give you. If you're not sure, or if something unexpected happens, don't continue Stop and ask! Never be afraid to ask questions! :)

First

"Your" OTL Log you posted.

OTL logfile created on: 13/03/2014 12:56:45 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\DSM\Downloads

OTL is running from the Downloads folder, please drag an drop OTL to the desktop so it runs from that location.
Everything we download goes to the desktop, every tool that is run is "Right clicked and ran as administrator."
Please keep those steps in mind.

Next

Programs to remove.
==> Click > Start > Control Panel > Programs & Features.
  • Java™ 6 Update 10
  • Java™ 6 Update 5

Next
Your Firefox according to "installed" programs is "13" versions out of date. Lets up-Date it now.

In the Firefox browser click help, click About Firefox and up-date it from there.

Next

We need to do a fix to delete some files using OTL.

  • Double click on the Posted Image to open the program. On Vista/Win7/Win8 right click select Run As Administrator to start the program. If prompted by UAC, please allow it.
  • Under the Custom Scans/Fixes box at the bottom, paste in the following

    :COMMANDS
    [CREATERESTOREPOINT]
    
    :OTL
    IE - HKLM\..\URLSearchHook: {bc04b34e-5dd8-465a-a5e0-86f7c11bc009} - No CLSID value found
    IE - HKLM\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b}
    IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.condui...&ctid=CT2452474
    O2 - BHO: (no name) - {bc04b34e-5dd8-465a-a5e0-86f7c11bc009} - No CLSID value found.
    O3 - HKLM\..\Toolbar: (no name) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - No CLSID value found.
    O3 - HKLM\..\Toolbar: (no name) - {bc04b34e-5dd8-465a-a5e0-86f7c11bc009} - No CLSID value found.
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {3041D03E-FD4B-44E0-B742-2D9B88305F98} - No CLSID value found.
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {BC04B34E-5DD8-465A-A5E0-86F7C11BC009} - No CLSID value found.
    O4 - HKLM..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe" File not found
    O4 - HKLM..\RunOnce: [SpUninstallCleanUp] REG delete HKEY_LOCAL_MACHINE\Software\SearchProtect /f File not found
    O4 - Startup: C:\Users\DSM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock.lnk = File not found
    O13 - gopher Prefix: missing
    O16 - DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} http://173.19.208.236/activex/AMC.cab (Reg Error: Key error.)
    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
    O20 - Winlogon\Notify\GoToAssist: DllName - (C:\Program Files\Citrix\GoToAssist\514\G2AWinLogon.dll) - File not found
    O33 - MountPoints2\{7716dad5-3d01-11df-b9b1-00219b041a1b}\Shell - "" = AutoRun
    O33 - MountPoints2\{7716dad5-3d01-11df-b9b1-00219b041a1b}\Shell\AutoRun\command - "" = G:\LaunchU3.exe -a
    O33 - MountPoints2\{a0a7695e-535d-11dd-90ec-806e6f6e6963}\Shell - "" = AutoRun
    O33 - MountPoints2\{a0a7695e-535d-11dd-90ec-806e6f6e6963}\Shell\AutoRun\command - "" = E:\autorun.exe
    O33 - MountPoints2\{d1cea704-1b63-11e0-998c-00219b041a1b}\Shell - "" = AutoRun
    O33 - MountPoints2\{d1cea704-1b63-11e0-998c-00219b041a1b}\Shell\AutoRun\command - "" = F:\LGAutoRun.exe
    @Alternate Data Stream - 128 bytes -> C:\Windows:nlsPreferences
    @Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:D1B5B4F1
    
    :Files
    netsh int ip reset c:\resetlog.txt /c
    ipconfig /flushdns /c
    ipconfig /release /c
    ipconfig /renew /c 
    netsh advfirewall reset /c
    netsh advfirewall set allprofiles state on /c 
    
    :Commands
    
    [emptytemp]
    [resethosts]
    
  • Make sure all other windows are closed.
  • Click the Run Fix button at the top
  • Let the program run uninterrupted. The computer should reboot when the scan is done. If not, please reboot the computer.
  • Post the log that is found in C:\_OTL\Moved Files in your next reply.
  • Open OTL again and click the Quick Scan button.

Next

Please download MiniToolBox http://download.blee...MiniToolBox.exe and run it.

Checkmark following boxes:

  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Users, Partitions and Memory size
  • List Restore Points

Click Go and post the result.

In your next reply to me please post:

  • OTL Fix log located here ---->C:\_OTL\Moved Files
  • OTL Log after quick scan.
  • MiniToolBox log report.

Thanks
Joe :)
  • 0

#3
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,797 posts
Hello,

Are you still with us ?
  • 0

#4
rmarie5

rmarie5

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts
Hi yes, however I uninstalled Microsoft security essentials and it's working just fine now. Thank you!
  • 0

#5
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,797 posts
Did you do this, if not will you do it for me.

Next

We need to do a fix to delete some files using OTL.

  • Double click on the Posted Image to open the program. On Vista/Win7/Win8 right click select Run As Administrator to start the program. If prompted by UAC, please allow it.
  • Under the Custom Scans/Fixes box at the bottom, paste in the following

    :COMMANDS
    [CREATERESTOREPOINT]
    
    :OTL
    IE - HKLM\..\URLSearchHook: {bc04b34e-5dd8-465a-a5e0-86f7c11bc009} - No CLSID value found
    IE - HKLM\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b}
    IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.condui...&ctid=CT2452474
    O2 - BHO: (no name) - {bc04b34e-5dd8-465a-a5e0-86f7c11bc009} - No CLSID value found.
    O3 - HKLM\..\Toolbar: (no name) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - No CLSID value found.
    O3 - HKLM\..\Toolbar: (no name) - {bc04b34e-5dd8-465a-a5e0-86f7c11bc009} - No CLSID value found.
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {3041D03E-FD4B-44E0-B742-2D9B88305F98} - No CLSID value found.
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {BC04B34E-5DD8-465A-A5E0-86F7C11BC009} - No CLSID value found.
    O4 - HKLM..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe" File not found
    O4 - HKLM..\RunOnce: [SpUninstallCleanUp] REG delete HKEY_LOCAL_MACHINE\Software\SearchProtect /f File not found
    O4 - Startup: C:\Users\DSM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock.lnk = File not found
    O13 - gopher Prefix: missing
    O16 - DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} http://173.19.208.236/activex/AMC.cab (Reg Error: Key error.)
    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
    O20 - Winlogon\Notify\GoToAssist: DllName - (C:\Program Files\Citrix\GoToAssist\514\G2AWinLogon.dll) - File not found
    O33 - MountPoints2\{7716dad5-3d01-11df-b9b1-00219b041a1b}\Shell - "" = AutoRun
    O33 - MountPoints2\{7716dad5-3d01-11df-b9b1-00219b041a1b}\Shell\AutoRun\command - "" = G:\LaunchU3.exe -a
    O33 - MountPoints2\{a0a7695e-535d-11dd-90ec-806e6f6e6963}\Shell - "" = AutoRun
    O33 - MountPoints2\{a0a7695e-535d-11dd-90ec-806e6f6e6963}\Shell\AutoRun\command - "" = E:\autorun.exe
    O33 - MountPoints2\{d1cea704-1b63-11e0-998c-00219b041a1b}\Shell - "" = AutoRun
    O33 - MountPoints2\{d1cea704-1b63-11e0-998c-00219b041a1b}\Shell\AutoRun\command - "" = F:\LGAutoRun.exe
    @Alternate Data Stream - 128 bytes -> C:\Windows:nlsPreferences
    @Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:D1B5B4F1
    
    :Files
    
    ipconfig /flushdns /c
    
    [emptytemp]
    [resethosts]
    
  • Make sure all other windows are closed.
  • Click the Run Fix button at the top
  • Let the program run uninterrupted. The computer should reboot when the scan is done. If not, please reboot the computer.
  • Post the log that is found in C:\_OTL\Moved Files in your next reply.
  • Open OTL again and click the Quick Scan button.


In your next reply post

  • The OTL Fix log located here C:\_OTL\Moved Files
  • The OTL.TXT after Quick scan

Thanks
Joe :)
  • 0

#6
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,797 posts
Since this issue appears to be resolved ... this Topic has been closed. Glad we could help.

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP