Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Freezing pages, cannot run OTL, rogue killer shows ntoskml.exe


  • This topic is locked This topic is locked

#46
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,803 posts
Hello,

Those entries in rogueKiller are legit. Be careful using automated tools like that, and speaking of automated tools it's time to remove them all from your computer, we will also clear all restore points except 1. Restore points can carry Malware so I advise you to follow through and we will close the topic.

Download DelFix by Xplode and save it to your desktop.
  • Run the tool by right click on the 51a5ce45263de-delfix.png icon and Run as administrator option.
  • Make sure that these ones are checked:
    • Remove disinfection tools
    • Purge system restore
    • Reset system settings
  • Push Run.
  • The program will run for a few seconds and display a notepad report.
    Paste it for my review.
Thanks
Joe :)
  • 0

Advertisements


#47
Vintage Charms

Vintage Charms

    Member

  • Topic Starter
  • Member
  • PipPip
  • 75 posts

# DelFix v10.8 - Logfile created 19/08/2014 at 20:52:21
# Updated 29/07/2014 by Xplode
# Username : Hewlett - HEWLETT-PC
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)

~ Removing disinfection tools ...

Deleted : C:\FRST
Deleted : C:\AdwCleaner
Deleted : C:\TDSSKiller.3.0.0.40_09.08.2014_17.03.31_log.txt
Deleted : C:\Users\Hewlett\Desktop\FRST64.exe
Deleted : C:\Users\Hewlett\Desktop\JRT_NEW.exe
Deleted : C:\Users\Hewlett\Desktop\RogueKiller.exe - Shortcut (2).lnk
Deleted : C:\Users\Hewlett\Desktop\RogueKiller.exe - Shortcut.lnk
Deleted : C:\Users\Hewlett\Desktop\tdsskiller.exe - Shortcut.lnk
Deleted : C:\Users\Hewlett\Desktop\TFC.exe
Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cfxxe
Deleted : HKLM\SOFTWARE\OldTimer Tools
Deleted : HKLM\SOFTWARE\AdwCleaner
Deleted : HKLM\SOFTWARE\Classes\.cfxxe
Deleted : HKLM\SOFTWARE\Classes\cfxxefile
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys

~ Cleaning system restore ...


New restore point created !

~ Resetting system settings ... OK

########## - EOF - ##########
 


  • 0

#48
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,803 posts
Thank you so much,

Once again I am sorry for the delay in posting back to you. It's been a pleasure working with you and being able to solve some of the issues you were experiencing.

Here are a number of recommendations that can help you, and which will contribute to making you a less likely victim:

Safe Computing Practices please read Here

Thanks
Joe :)
  • 0

#49
Vintage Charms

Vintage Charms

    Member

  • Topic Starter
  • Member
  • PipPip
  • 75 posts

thanks again. 


  • 0

#50
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,803 posts
Since this issue appears to be resolved ... this Topic has been closed. Glad we could help.

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.


Thanks
Joe :)
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP