Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Reg Pro clean malware


  • This topic is locked This topic is locked

#16
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,792 posts
What browser is that happening in ?

In the mean time:

Please download MiniToolBox http://download.blee...MiniToolBox.exe and run it.

Checkmark following boxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • content of Hosts
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Users, Partitions and Memory size
  • List Restore Points
Click Go and post the result.

Joe
  • 0

Advertisements


#17
lmatuska

lmatuska

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts
Igot the scan to work and here is the log results I also saw at the end to post the scan results I hope that was the log results if not I can run it again if you need it

[email protected] as CAB hook log:
OnlineScanner64.ocx - registred OK
OnlineScanner.ocx - registred OK
esets_scanner_update returned -1 esets_gle=1
esets_scanner_update returned -1 esets_gle=1
esets_scanner_update returned -1 esets_gle=1
esets_scanner_update returned -1 esets_gle=41217
esets_scanner_update returned -1 esets_gle=1
  • 0

#18
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,792 posts
I think we are ok here,

Lets check a few items:

Download Security Check by screen317 from Here or Here
Save it to your Desktop.
Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
A Notepad document should open automatically called checkup.txt; please post the contents of that document.
  • 0

#19
lmatuska

lmatuska

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts

[email protected] as CAB hook log:
OnlineScanner64.ocx - registred OK
OnlineScanner.ocx - registred OK

 

scan results

 

scan files 163917

infected files  137

cleaned   0

scan time 47.07

scan status finished

 

C:\AdwCleaner\Quarantine\C\Program Files (x86)\OfferBoulevard\OfferBoulevard.exe.vir a variant of MSIL/Toolbar.Linkury.H potentially unwanted application
C:\AdwCleaner\Quarantine\C\Program Files (x86)\RegClean Pro\systweakasp.exe.vir MSIL/AdvancedSystemProtector.D potentially unwanted application
C:\AdwCleaner\Quarantine\C\ProgramData\Fast And Safe\FastAndSafe_x64.dll.vir a variant of Win64/SProtector.B potentially unwanted application
C:\AdwCleaner\Quarantine\C\ProgramData\wincert\win32cert.dll.vir Win32/Toolbar.SearchSuite.M potentially unwanted application
C:\AdwCleaner\Quarantine\C\ProgramData\wincert\win32prop.dll.vir Win32/Toolbar.SearchSuite.M potentially unwanted application
C:\AdwCleaner\Quarantine\C\ProgramData\wincert\win64cert.dll.vir a variant of Win64/Toolbar.SearchSuite.B potentially unwanted application
C:\AdwCleaner\Quarantine\C\ProgramData\wincert\win64prop.dll.vir Win64/Toolbar.SearchSuite.B potentially unwanted application
C:\AdwCleaner\Quarantine\C\Users\LarryandSharlene\AppData\Local\AnyProtectScannerSetup.exe.vir Win32/AnyProtect.E potentially unwanted application
C:\AdwCleaner\Quarantine\C\Users\LarryandSharlene\AppData\Roaming\DigitalSites\UpdateProc\UpdateTask.exe.vir a variant of Win32/DealPly.S potentially unwanted application
C:\AdwCleaner\Quarantine\C\Users\LarryandSharlene\AppData\Roaming\Mozilla\Firefox\Profiles\z0wshr36.default\Extensions\[email protected]\extensionData\plugins\91.js.vir JS/Toolbar.Crossrider.B potentially unwanted application
C:\AdwCleaner\Quarantine\C\Users\LarryandSharlene\AppData\Roaming\Systweak\ssd\SSDPTstub.exe.vir Win32/Systweak.G potentially unwanted application
C:\AdwCleaner\Quarantine\C\Windows\System32\roboot64.exe.vir a variant of Win64/Systweak.A potentially unwanted application
C:\AdwCleaner\Quarantine\C\Windows\System32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}Gw64.sys.vir a variant of Win64/Riskware.NetFilter.F application
C:\AdwCleaner\Quarantine\C\Windows\System32\drivers\{e48603e4-a4f7-4938-aba4-4e0eea0960da}w64.sys.vir a variant of Win64/BrowseFox.CD potentially unwanted application
C:\FRST\Quarantine\C\ProgramData\Browser\prompt.exe a variant of MSIL/Adware.PullUpdate.H application
C:\FRST\Quarantine\C\ProgramData\df3f9360-a3a2-443d-ba85-161336eea54e\maintainer.exe.xBAD Win32/BrowseFox.V potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\air3649.exe.xBAD Win32/InstallCore.BC potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\BackupSetup.exe.xBAD a variant of MSIL/MyPCBackup.A potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\f.exe.xBAD a variant of Win32/OutBrowse.BA potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\hbk.exe.xBAD a variant of Win32/Toolbar.BitCocktail.C potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\Launcher.exe.xBAD a variant of Win32/Amonetize.BP potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nRPb5.exe.xBAD a variant of Win32/Adware.AddLyrics.CL application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nsa49D.exe.xBAD Win32/Conduit.SearchProtect.R potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nsa894.exe.xBAD Win32/Conduit.SearchProtect.R potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nsaD906.exe.xBAD Win32/Conduit.SearchProtect.R potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nsb870F.exe.xBAD Win32/Conduit.SearchProtect.V potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nsb8A1C.exe.xBAD Win32/Conduit.SearchProtect.V potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nsb8CDB.exe.xBAD Win32/Conduit.SearchProtect.V potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nsbDF4E.exe.xBAD Win32/Conduit.SearchProtect.R potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nsfD137.exe.xBAD Win32/Conduit.SearchProtect.R potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nsfD57C.exe.xBAD Win32/Conduit.SearchProtect.R potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nskFE36.exe.xBAD Win32/Conduit.SearchProtect.R potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nsmC1D6.exe.xBAD Win32/Conduit.SearchProtect.V potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nsrDBB5.exe.xBAD Win32/Conduit.SearchProtect.R potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nsrEB91.exe.xBAD Win32/Conduit.SearchProtect.R potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nswBC48.exe.xBAD Win32/Conduit.SearchProtect.V potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nswBF07.exe.xBAD Win32/Conduit.SearchProtect.V potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\nswEF0B.exe.xBAD Win32/Conduit.SearchProtect.R potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\optprosetup.exe.xBAD a variant of Win32/OptimizerEliteMax.C potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\SavePass.exe.xBAD a variant of Win32/TrojanDropper.MsiDrop.A trojan
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\SearchProtectINT.exe.xBAD Win32/Toolbar.Conduit.R potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\setup_344.exe.xBAD multiple threats
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\setup_362.exe.xBAD Win32/Toolbar.BitCocktail.D potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\unelevate.exe.xBAD a variant of Win32/SBWatchman.D potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\VARemove.exe.xBAD a variant of Win32/SBWatchman.D potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Local\Temp\VOPackage.exe.xBAD Win32/VOPackage.AR potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Roaming\PDMOAT.exe.xBAD a variant of Win32/Toolbar.CrossRider.AX potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\AppData\Roaming\WWSVR.exe.xBAD a variant of Win32/Toolbar.CrossRider.AX potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\Downloads\FileOpenerSetup.exe.xBAD a variant of Win32/InstallCore.NF potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\Downloads\Unconfirmed 108062.crdownload.xBAD a variant of Win32/AdGazelle.B potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\Downloads\Unconfirmed 31894.crdownload.xBAD a variant of Win32/DownloadAdmin.H potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\Downloads\Unconfirmed 321013.crdownload.xBAD a variant of Win32/DownloadAssistant.A potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\Downloads\Unconfirmed 553696.crdownload.xBAD a variant of Win32/AdGazelle.B potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\Downloads\Unconfirmed 676003.crdownload.xBAD a variant of Win32/SoftPulse.B potentially unwanted application
C:\FRST\Quarantine\C\Users\LarryandSharlene\Downloads\Unconfirmed 870750.crdownload.xBAD a variant of Win32/SoftPulse.B potentially unwanted application
C:\FRST\Quarantine\C\Windows\score.exe.xBAD a variant of Win32/Agent.WGA trojan
C:\FRST\Quarantine\C\Windows\SysWOW64\dsrvprn.exe.xBAD a variant of Win64/Toolbar.Perion.B potentially unwanted application
C:\Program Files (x86)\RPC\Reg Pro Cleaner\RegProCleaner.exe a variant of MSIL/RegProCleaner.A potentially unwanted application
C:\ProgramData\df3f9360-a3a2-443d-ba85-161336eea54e\maintainer.bak Win32/BrowseFox.V potentially unwanted application
C:\ProgramData\jmjjocfipibdegmchblcenfkhbbcfpfl\lsdb.js JS/Kryptik.ATB trojan
C:\ProgramData\jmjjocfipibdegmchblcenfkhbbcfpfl\Z.js JS/Kryptik.ATB trojan
C:\Users\All Users\df3f9360-a3a2-443d-ba85-161336eea54e\maintainer.bak Win32/BrowseFox.V potentially unwanted application
C:\Users\All Users\jmjjocfipibdegmchblcenfkhbbcfpfl\lsdb.js JS/Kryptik.ATB trojan
C:\Users\All Users\jmjjocfipibdegmchblcenfkhbbcfpfl\Z.js JS/Kryptik.ATB trojan
C:\Users\LarryandSharlene\AppData\Local\Google\Chrome\User Data\Default\Extensions\poahfhjpeiaonjhbljfgnlllpdbnilon\148\shPd6.js JS/Kryptik.ATB trojan
C:\Users\LarryandSharlene\AppData\Roaming\DNKRY JS/Toolbar.Crossrider.C potentially unwanted application
C:\Users\LarryandSharlene\Downloads\Adobe_Flash_Player.exe Win32/DownWare.Y potentially unwanted application
C:\Users\LarryandSharlene\Downloads\Adobe_Flash_Setup (1).exe a variant of Win32/InstallCore.RA potentially unwanted application
C:\Users\LarryandSharlene\Downloads\api_Downloader.exe a variant of Win32/BundleInstaller.D potentially unwanted application
C:\Users\LarryandSharlene\Downloads\Firefox (2).exe Win32/OutBrowse.V potentially unwanted application
C:\Users\LarryandSharlene\Downloads\installer_java_English.exe a variant of Win32/AirAdInstaller.D potentially unwanted application
C:\Users\LarryandSharlene\Downloads\Shockwave_Installer_Slim (1).exe Win32/Bundled.Toolbar.Google.D potentially unsafe application
C:\Users\LarryandSharlene\Downloads\Shockwave_Installer_Slim.exe Win32/Bundled.Toolbar.Google.D potentially unsafe application
C:\Users\LarryandSharlene\Downloads\Unconfirmed 433133.crdownload a variant of Win32/Verti.J potentially unwanted application
C:\Users\LarryandSharlene\Downloads\Unconfirmed 524867.crdownload a variant of Win32/Verti.J potentially unwanted application
C:\Users\LarryandSharlene\Downloads\Unconfirmed 536325.crdownload a variant of Win32/Verti.J potentially unwanted application
C:\Users\LarryandSharlene\Downloads\Unconfirmed 657150.crdownload a variant of Win32/AdGazelle.B potentially unwanted application
C:\Windows\Installer\MSI52C2.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSI52C2.tmp-\Smartbar.Resources.LanguageSettings.resources.dll a variant of MSIL/Toolbar.Linkury.E potentially unwanted application
C:\Windows\Installer\MSI52C2.tmp-\spbe.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSI52C2.tmp-\spbl.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI52C2.tmp-\sppsm.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI52C2.tmp-\spusm.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI52C2.tmp-\srbs.dll a variant of MSIL/Toolbar.Linkury.C potentially unwanted application
C:\Windows\Installer\MSI52C2.tmp-\srbu.dll a variant of MSIL/Toolbar.Linkury.F potentially unwanted application
C:\Windows\Installer\MSI52C2.tmp-\srptc.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI52C2.tmp-\srpu.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSI6117.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSI6117.tmp-\Smartbar.Resources.LanguageSettings.resources.dll a variant of MSIL/Toolbar.Linkury.E potentially unwanted application
C:\Windows\Installer\MSI6117.tmp-\spbe.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSI6117.tmp-\spbl.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI6117.tmp-\sppsm.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI6117.tmp-\spusm.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI6117.tmp-\srbs.dll a variant of MSIL/Toolbar.Linkury.C potentially unwanted application
C:\Windows\Installer\MSI6117.tmp-\srbu.dll a variant of MSIL/Toolbar.Linkury.F potentially unwanted application
C:\Windows\Installer\MSI6117.tmp-\srptc.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI6117.tmp-\srpu.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSI6A79.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSI6A79.tmp-\Smartbar.Resources.LanguageSettings.resources.dll a variant of MSIL/Toolbar.Linkury.E potentially unwanted application
C:\Windows\Installer\MSI6A79.tmp-\spbe.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSI6A79.tmp-\spbl.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI6A79.tmp-\sppsm.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI6A79.tmp-\spusm.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI6A79.tmp-\srbs.dll a variant of MSIL/Toolbar.Linkury.C potentially unwanted application
C:\Windows\Installer\MSI6A79.tmp-\srbu.dll a variant of MSIL/Toolbar.Linkury.F potentially unwanted application
C:\Windows\Installer\MSI6A79.tmp-\srptc.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI6A79.tmp-\srpu.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSI6CC7.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSI6CC7.tmp-\Smartbar.Resources.LanguageSettings.resources.dll a variant of MSIL/Toolbar.Linkury.E potentially unwanted application
C:\Windows\Installer\MSI6CC7.tmp-\spbe.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSI6CC7.tmp-\spbl.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI6CC7.tmp-\sppsm.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI6CC7.tmp-\spusm.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI6CC7.tmp-\srbs.dll a variant of MSIL/Toolbar.Linkury.C potentially unwanted application
C:\Windows\Installer\MSI6CC7.tmp-\srbu.dll a variant of MSIL/Toolbar.Linkury.F potentially unwanted application
C:\Windows\Installer\MSI6CC7.tmp-\srptc.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI6CC7.tmp-\srpu.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSI8AC9.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSI8AC9.tmp-\Smartbar.Resources.LanguageSettings.resources.dll a variant of MSIL/Toolbar.Linkury.E potentially unwanted application
C:\Windows\Installer\MSI8AC9.tmp-\spbe.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSI8AC9.tmp-\spbl.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI8AC9.tmp-\sppsm.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI8AC9.tmp-\spusm.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI8AC9.tmp-\srbs.dll a variant of MSIL/Toolbar.Linkury.C potentially unwanted application
C:\Windows\Installer\MSI8AC9.tmp-\srbu.dll a variant of MSIL/Toolbar.Linkury.F potentially unwanted application
C:\Windows\Installer\MSI8AC9.tmp-\srptc.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSI8AC9.tmp-\srpu.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSIEC2B.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSIEC2B.tmp-\Smartbar.Resources.LanguageSettings.resources.dll a variant of MSIL/Toolbar.Linkury.E potentially unwanted application
C:\Windows\Installer\MSIEC2B.tmp-\spbe.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
C:\Windows\Installer\MSIEC2B.tmp-\spbl.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSIEC2B.tmp-\sppsm.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSIEC2B.tmp-\spusm.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSIEC2B.tmp-\srbs.dll a variant of MSIL/Toolbar.Linkury.C potentially unwanted application
C:\Windows\Installer\MSIEC2B.tmp-\srbu.dll a variant of MSIL/Toolbar.Linkury.F potentially unwanted application
C:\Windows\Installer\MSIEC2B.tmp-\srptc.dll a variant of MSIL/Toolbar.Linkury.G potentially unwanted application
C:\Windows\Installer\MSIEC2B.tmp-\srpu.dll a variant of MSIL/Toolbar.Linkury.I potentially unwanted application
 


  • 0

#20
lmatuska

lmatuska

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts

I started out using Chrome but I've been using IE since running ESET Software

 

 

security check results I also ran it a second time with my essentials enabled that is the only security I run I have in the past run MacAfee but I thought I was wasting my money

 

Results of screen317's Security Check version 0.99.91 
 Windows 7 Service Pack 1 x64 (UAC is enabled) 
 Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````
 Windows Firewall Enabled! 
Microsoft Security Essentials  
  (On Access scanning disabled!)
 Error obtaining update status for antivirus! 
`````````Anti-malware/Other Utilities Check:`````````
 Malwarebytes Anti-Malware version 2.0.3.1025 
 AppCleaner    
 Adobe Flash Player 15.0.0.239 
 Adobe Reader XI 
 Google Chrome (39.0.2171.65)
 Google Chrome (39.0.2171.71)
````````Process Check: objlist.exe by Laurent```````` 
 Microsoft Security Essentials MSMpEng.exe
 Microsoft Security Essentials msseces.exe
 Malwarebytes Anti-Malware mbamservice.exe 
 Malwarebytes Anti-Malware mbam.exe 
 Malwarebytes Anti-Malware mbamscheduler.exe  
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C: 1%
````````````````````End of Log``````````````````````

 

second run

 

 Results of screen317's Security Check version 0.99.91 
 Windows 7 Service Pack 1 x64 (UAC is enabled) 
 Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````
 Windows Firewall Enabled! 
Microsoft Security Essentials  
 Antivirus up to date! 
`````````Anti-malware/Other Utilities Check:`````````
 Malwarebytes Anti-Malware version 2.0.3.1025 
 AppCleaner    
 Adobe Flash Player 15.0.0.239 
 Adobe Reader XI 
 Google Chrome (39.0.2171.65)
 Google Chrome (39.0.2171.71)
````````Process Check: objlist.exe by Laurent```````` 
 Microsoft Security Essentials MSMpEng.exe
 Microsoft Security Essentials msseces.exe
 Malwarebytes Anti-Malware mbamservice.exe 
 Malwarebytes Anti-Malware mbam.exe 
 Malwarebytes Anti-Malware mbamscheduler.exe  
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C: 1%
````````````````````End of Log``````````````````````

 


Edited by lmatuska, 01 December 2014 - 07:15 AM.

  • 0

#21
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,792 posts
Hello,

A few items to fix

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

Open notepad (Start =>All Programs => Accessories => Notepad).
Copy/Paste the contents of the code box below into Notepad.

start
CloseProcesses:
C:\Program Files (x86)\RPC\Reg Pro Cleaner\RegProCleaner.exe 
C:\ProgramData\df3f9360-a3a2-443d-ba85-161336eea54e\maintainer.bak 
C:\ProgramData\jmjjocfipibdegmchblcenfkhbbcfpfl\lsdb.js 
C:\ProgramData\jmjjocfipibdegmchblcenfkhbbcfpfl\Z.js 
C:\Users\All Users\df3f9360-a3a2-443d-ba85-161336eea54e\maintainer.bak 
C:\Users\All Users\jmjjocfipibdegmchblcenfkhbbcfpfl\lsdb.js 
C:\Users\All Users\jmjjocfipibdegmchblcenfkhbbcfpfl\Z.js 
C:\Users\LarryandSharlene\AppData\Local\Google\Chrome\User Data\Default\Extensions\poahfhjpeiaonjhbljfgnlllpdbnilon\148\shPd6.js 
C:\Users\LarryandSharlene\AppData\Roaming\DNKRY JS/Toolbar.Crossrider.C potentially unwanted application
C:\Users\LarryandSharlene\Downloads\Unconfirmed 433133.crdownload 
C:\Users\LarryandSharlene\Downloads\Unconfirmed 524867.crdownload 
C:\Users\LarryandSharlene\Downloads\Unconfirmed 536325.crdownload 
C:\Users\LarryandSharlene\Downloads\Unconfirmed 657150.crdownload 
C:\Windows\Installer\MSI52C2.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll 
C:\Windows\Installer\MSI52C2.tmp-\Smartbar.Resources.LanguageSettings.resources.dll 
C:\Windows\Installer\MSI52C2.tmp-\spbe.dll 
C:\Windows\Installer\MSI52C2.tmp-\spbl.dll 
C:\Windows\Installer\MSI52C2.tmp-\sppsm.dll 
C:\Windows\Installer\MSI52C2.tmp-\spusm.dll 
C:\Windows\Installer\MSI52C2.tmp-\srbs.dll
C:\Windows\Installer\MSI52C2.tmp-\srbu.dll 
C:\Windows\Installer\MSI52C2.tmp-\srptc.dll 
C:\Windows\Installer\MSI52C2.tmp-\srpu.dll 
C:\Windows\Installer\MSI6117.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll 
C:\Windows\Installer\MSI6117.tmp-\Smartbar.Resources.LanguageSettings.resources.dll 
C:\Windows\Installer\MSI6117.tmp-\spbe.dll 
C:\Windows\Installer\MSI6117.tmp-\spbl.dll 
C:\Windows\Installer\MSI6117.tmp-\sppsm.dll 
C:\Windows\Installer\MSI6117.tmp-\spusm.dll 
C:\Windows\Installer\MSI6117.tmp-\srbs.dll 
C:\Windows\Installer\MSI6117.tmp-\srbu.dll 
C:\Windows\Installer\MSI6117.tmp-\srptc.dll 
C:\Windows\Installer\MSI6117.tmp-\srpu.dll 
C:\Windows\Installer\MSI6A79.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll 
C:\Windows\Installer\MSI6A79.tmp-\Smartbar.Resources.LanguageSettings.resources.dll 
C:\Windows\Installer\MSI6A79.tmp-\spbe.dll 
C:\Windows\Installer\MSI6A79.tmp-\spbl.dll 
C:\Windows\Installer\MSI6A79.tmp-\sppsm.dll 
C:\Windows\Installer\MSI6A79.tmp-\spusm.dll 
C:\Windows\Installer\MSI6A79.tmp-\srbs.dll 
C:\Windows\Installer\MSI6A79.tmp-\srbu.dll 
C:\Windows\Installer\MSI6A79.tmp-\srptc.dll 
C:\Windows\Installer\MSI6A79.tmp-\srpu.dll 
C:\Windows\Installer\MSI6CC7.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll 
C:\Windows\Installer\MSI6CC7.tmp-\Smartbar.Resources.LanguageSettings.resources.dll 
C:\Windows\Installer\MSI6CC7.tmp-\spbe.dll 
C:\Windows\Installer\MSI6CC7.tmp-\spbl.dll 
C:\Windows\Installer\MSI6CC7.tmp-\sppsm.dll 
C:\Windows\Installer\MSI6CC7.tmp-\spusm.dll 
C:\Windows\Installer\MSI6CC7.tmp-\srbs.dll 
C:\Windows\Installer\MSI6CC7.tmp-\srbu.dll 
C:\Windows\Installer\MSI6CC7.tmp-\srptc.dll 
C:\Windows\Installer\MSI6CC7.tmp-\srpu.dll
C:\Windows\Installer\MSI8AC9.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll 
C:\Windows\Installer\MSI8AC9.tmp-\Smartbar.Resources.LanguageSettings.resources.dll
C:\Windows\Installer\MSI8AC9.tmp-\spbe.dll 
C:\Windows\Installer\MSI8AC9.tmp-\spbl.dll 
C:\Windows\Installer\MSI8AC9.tmp-\sppsm.dll 
C:\Windows\Installer\MSI8AC9.tmp-\spusm.dll 
C:\Windows\Installer\MSI8AC9.tmp-\srbs.dll 
C:\Windows\Installer\MSI8AC9.tmp-\srbu.dll 
C:\Windows\Installer\MSI8AC9.tmp-\srptc.dll 
C:\Windows\Installer\MSI8AC9.tmp-\srpu.dll 
C:\Windows\Installer\MSIEC2B.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll 
C:\Windows\Installer\MSIEC2B.tmp-\Smartbar.Resources.LanguageSettings.resources.dll 
C:\Windows\Installer\MSIEC2B.tmp-\spbe.dll 
C:\Windows\Installer\MSIEC2B.tmp-\spbl.dll 
C:\Windows\Installer\MSIEC2B.tmp-\sppsm.dll 
C:\Windows\Installer\MSIEC2B.tmp-\spusm.dll 
C:\Windows\Installer\MSIEC2B.tmp-\srbs.dll 
C:\Windows\Installer\MSIEC2B.tmp-\srbu.dll 
C:\Windows\Installer\MSIEC2B.tmp-\srptc.dll 
C:\Windows\Installer\MSIEC2B.tmp-\srpu.dll 
 
Emptytemp:
reboot:
end
Click Format and ensure Wordwrap is unchecked.
Save as Fixlist.txt to your Desktop (Must be in this location)
Run FRST/FRST64 and press the Fix button just once and wait.
If the tool needed a restart please make sure you let the system to restart normally and let the tool completes its run after restart.
The tool will make a log on the Desktop (Fixlog.txt). Please post it to your reply.

Note: If the tool warns you about the version you're using being an outdated version please download and run the updated version.
  • 0

#22
lmatuska

lmatuska

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 01-12-2014
Ran by LarryandSharlene at 2014-12-01 17:05:16 Run:2
Running from C:\Users\LarryandSharlene\Desktop
Loaded Profile: LarryandSharlene (Available profiles: LarryandSharlene)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
start
CloseProcesses:
C:\Program Files (x86)\RPC\Reg Pro Cleaner\RegProCleaner.exe
C:\ProgramData\df3f9360-a3a2-443d-ba85-161336eea54e\maintainer.bak
C:\ProgramData\jmjjocfipibdegmchblcenfkhbbcfpfl\lsdb.js
C:\ProgramData\jmjjocfipibdegmchblcenfkhbbcfpfl\Z.js
C:\Users\All Users\df3f9360-a3a2-443d-ba85-161336eea54e\maintainer.bak
C:\Users\All Users\jmjjocfipibdegmchblcenfkhbbcfpfl\lsdb.js
C:\Users\All Users\jmjjocfipibdegmchblcenfkhbbcfpfl\Z.js
C:\Users\LarryandSharlene\AppData\Local\Google\Chrome\User Data\Default\Extensions\poahfhjpeiaonjhbljfgnlllpdbnilon\148\shPd6.js
C:\Users\LarryandSharlene\AppData\Roaming\DNKRY JS/Toolbar.Crossrider.C potentially unwanted application
C:\Users\LarryandSharlene\Downloads\Unconfirmed 433133.crdownload
C:\Users\LarryandSharlene\Downloads\Unconfirmed 524867.crdownload
C:\Users\LarryandSharlene\Downloads\Unconfirmed 536325.crdownload
C:\Users\LarryandSharlene\Downloads\Unconfirmed 657150.crdownload
C:\Windows\Installer\MSI52C2.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll
C:\Windows\Installer\MSI52C2.tmp-\Smartbar.Resources.LanguageSettings.resources.dll
C:\Windows\Installer\MSI52C2.tmp-\spbe.dll
C:\Windows\Installer\MSI52C2.tmp-\spbl.dll
C:\Windows\Installer\MSI52C2.tmp-\sppsm.dll
C:\Windows\Installer\MSI52C2.tmp-\spusm.dll
C:\Windows\Installer\MSI52C2.tmp-\srbs.dll
C:\Windows\Installer\MSI52C2.tmp-\srbu.dll
C:\Windows\Installer\MSI52C2.tmp-\srptc.dll
C:\Windows\Installer\MSI52C2.tmp-\srpu.dll
C:\Windows\Installer\MSI6117.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll
C:\Windows\Installer\MSI6117.tmp-\Smartbar.Resources.LanguageSettings.resources.dll
C:\Windows\Installer\MSI6117.tmp-\spbe.dll
C:\Windows\Installer\MSI6117.tmp-\spbl.dll
C:\Windows\Installer\MSI6117.tmp-\sppsm.dll
C:\Windows\Installer\MSI6117.tmp-\spusm.dll
C:\Windows\Installer\MSI6117.tmp-\srbs.dll
C:\Windows\Installer\MSI6117.tmp-\srbu.dll
C:\Windows\Installer\MSI6117.tmp-\srptc.dll
C:\Windows\Installer\MSI6117.tmp-\srpu.dll
C:\Windows\Installer\MSI6A79.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll
C:\Windows\Installer\MSI6A79.tmp-\Smartbar.Resources.LanguageSettings.resources.dll
C:\Windows\Installer\MSI6A79.tmp-\spbe.dll
C:\Windows\Installer\MSI6A79.tmp-\spbl.dll
C:\Windows\Installer\MSI6A79.tmp-\sppsm.dll
C:\Windows\Installer\MSI6A79.tmp-\spusm.dll
C:\Windows\Installer\MSI6A79.tmp-\srbs.dll
C:\Windows\Installer\MSI6A79.tmp-\srbu.dll
C:\Windows\Installer\MSI6A79.tmp-\srptc.dll
C:\Windows\Installer\MSI6A79.tmp-\srpu.dll
C:\Windows\Installer\MSI6CC7.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll
C:\Windows\Installer\MSI6CC7.tmp-\Smartbar.Resources.LanguageSettings.resources.dll
C:\Windows\Installer\MSI6CC7.tmp-\spbe.dll
C:\Windows\Installer\MSI6CC7.tmp-\spbl.dll
C:\Windows\Installer\MSI6CC7.tmp-\sppsm.dll
C:\Windows\Installer\MSI6CC7.tmp-\spusm.dll
C:\Windows\Installer\MSI6CC7.tmp-\srbs.dll
C:\Windows\Installer\MSI6CC7.tmp-\srbu.dll
C:\Windows\Installer\MSI6CC7.tmp-\srptc.dll
C:\Windows\Installer\MSI6CC7.tmp-\srpu.dll
C:\Windows\Installer\MSI8AC9.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll
C:\Windows\Installer\MSI8AC9.tmp-\Smartbar.Resources.LanguageSettings.resources.dll
C:\Windows\Installer\MSI8AC9.tmp-\spbe.dll
C:\Windows\Installer\MSI8AC9.tmp-\spbl.dll
C:\Windows\Installer\MSI8AC9.tmp-\sppsm.dll
C:\Windows\Installer\MSI8AC9.tmp-\spusm.dll
C:\Windows\Installer\MSI8AC9.tmp-\srbs.dll
C:\Windows\Installer\MSI8AC9.tmp-\srbu.dll
C:\Windows\Installer\MSI8AC9.tmp-\srptc.dll
C:\Windows\Installer\MSI8AC9.tmp-\srpu.dll
C:\Windows\Installer\MSIEC2B.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll
C:\Windows\Installer\MSIEC2B.tmp-\Smartbar.Resources.LanguageSettings.resources.dll
C:\Windows\Installer\MSIEC2B.tmp-\spbe.dll
C:\Windows\Installer\MSIEC2B.tmp-\spbl.dll
C:\Windows\Installer\MSIEC2B.tmp-\sppsm.dll
C:\Windows\Installer\MSIEC2B.tmp-\spusm.dll
C:\Windows\Installer\MSIEC2B.tmp-\srbs.dll
C:\Windows\Installer\MSIEC2B.tmp-\srbu.dll
C:\Windows\Installer\MSIEC2B.tmp-\srptc.dll
C:\Windows\Installer\MSIEC2B.tmp-\srpu.dll
 
Emptytemp:
reboot:
end
*****************

Processes closed successfully.
C:\Program Files (x86)\RPC\Reg Pro Cleaner\RegProCleaner.exe => Moved successfully.
C:\ProgramData\df3f9360-a3a2-443d-ba85-161336eea54e\maintainer.bak => Moved successfully.
C:\ProgramData\jmjjocfipibdegmchblcenfkhbbcfpfl\lsdb.js => Moved successfully.
C:\ProgramData\jmjjocfipibdegmchblcenfkhbbcfpfl\Z.js => Moved successfully.
"C:\Users\All Users\df3f9360-a3a2-443d-ba85-161336eea54e\maintainer.bak" => File/Directory not found.
"C:\Users\All Users\jmjjocfipibdegmchblcenfkhbbcfpfl\lsdb.js" => File/Directory not found.
"C:\Users\All Users\jmjjocfipibdegmchblcenfkhbbcfpfl\Z.js" => File/Directory not found.
C:\Users\LarryandSharlene\AppData\Local\Google\Chrome\User Data\Default\Extensions\poahfhjpeiaonjhbljfgnlllpdbnilon\148\shPd6.js => Moved successfully.
"C:\Users\LarryandSharlene\AppData\Roaming\DNKRY JS/Toolbar.Crossrider.C potentially unwanted application" => File/Directory not found.
C:\Users\LarryandSharlene\Downloads\Unconfirmed 433133.crdownload => Moved successfully.
C:\Users\LarryandSharlene\Downloads\Unconfirmed 524867.crdownload => Moved successfully.
C:\Users\LarryandSharlene\Downloads\Unconfirmed 536325.crdownload => Moved successfully.
C:\Users\LarryandSharlene\Downloads\Unconfirmed 657150.crdownload => Moved successfully.
C:\Windows\Installer\MSI52C2.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll => Moved successfully.
C:\Windows\Installer\MSI52C2.tmp-\Smartbar.Resources.LanguageSettings.resources.dll => Moved successfully.
C:\Windows\Installer\MSI52C2.tmp-\spbe.dll => Moved successfully.
C:\Windows\Installer\MSI52C2.tmp-\spbl.dll => Moved successfully.
C:\Windows\Installer\MSI52C2.tmp-\sppsm.dll => Moved successfully.
C:\Windows\Installer\MSI52C2.tmp-\spusm.dll => Moved successfully.
C:\Windows\Installer\MSI52C2.tmp-\srbs.dll => Moved successfully.
C:\Windows\Installer\MSI52C2.tmp-\srbu.dll => Moved successfully.
C:\Windows\Installer\MSI52C2.tmp-\srptc.dll => Moved successfully.
C:\Windows\Installer\MSI52C2.tmp-\srpu.dll => Moved successfully.
C:\Windows\Installer\MSI6117.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll => Moved successfully.
C:\Windows\Installer\MSI6117.tmp-\Smartbar.Resources.LanguageSettings.resources.dll => Moved successfully.
C:\Windows\Installer\MSI6117.tmp-\spbe.dll => Moved successfully.
C:\Windows\Installer\MSI6117.tmp-\spbl.dll => Moved successfully.
C:\Windows\Installer\MSI6117.tmp-\sppsm.dll => Moved successfully.
C:\Windows\Installer\MSI6117.tmp-\spusm.dll => Moved successfully.
C:\Windows\Installer\MSI6117.tmp-\srbs.dll => Moved successfully.
C:\Windows\Installer\MSI6117.tmp-\srbu.dll => Moved successfully.
C:\Windows\Installer\MSI6117.tmp-\srptc.dll => Moved successfully.
C:\Windows\Installer\MSI6117.tmp-\srpu.dll => Moved successfully.
C:\Windows\Installer\MSI6A79.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll => Moved successfully.
C:\Windows\Installer\MSI6A79.tmp-\Smartbar.Resources.LanguageSettings.resources.dll => Moved successfully.
C:\Windows\Installer\MSI6A79.tmp-\spbe.dll => Moved successfully.
C:\Windows\Installer\MSI6A79.tmp-\spbl.dll => Moved successfully.
C:\Windows\Installer\MSI6A79.tmp-\sppsm.dll => Moved successfully.
C:\Windows\Installer\MSI6A79.tmp-\spusm.dll => Moved successfully.
C:\Windows\Installer\MSI6A79.tmp-\srbs.dll => Moved successfully.
C:\Windows\Installer\MSI6A79.tmp-\srbu.dll => Moved successfully.
C:\Windows\Installer\MSI6A79.tmp-\srptc.dll => Moved successfully.
C:\Windows\Installer\MSI6A79.tmp-\srpu.dll => Moved successfully.
C:\Windows\Installer\MSI6CC7.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll => Moved successfully.
C:\Windows\Installer\MSI6CC7.tmp-\Smartbar.Resources.LanguageSettings.resources.dll => Moved successfully.
C:\Windows\Installer\MSI6CC7.tmp-\spbe.dll => Moved successfully.
C:\Windows\Installer\MSI6CC7.tmp-\spbl.dll => Moved successfully.
C:\Windows\Installer\MSI6CC7.tmp-\sppsm.dll => Moved successfully.
C:\Windows\Installer\MSI6CC7.tmp-\spusm.dll => Moved successfully.
C:\Windows\Installer\MSI6CC7.tmp-\srbs.dll => Moved successfully.
C:\Windows\Installer\MSI6CC7.tmp-\srbu.dll => Moved successfully.
C:\Windows\Installer\MSI6CC7.tmp-\srptc.dll => Moved successfully.
C:\Windows\Installer\MSI6CC7.tmp-\srpu.dll => Moved successfully.
C:\Windows\Installer\MSI8AC9.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll => Moved successfully.
C:\Windows\Installer\MSI8AC9.tmp-\Smartbar.Resources.LanguageSettings.resources.dll => Moved successfully.
C:\Windows\Installer\MSI8AC9.tmp-\spbe.dll => Moved successfully.
C:\Windows\Installer\MSI8AC9.tmp-\spbl.dll => Moved successfully.
C:\Windows\Installer\MSI8AC9.tmp-\sppsm.dll => Moved successfully.
C:\Windows\Installer\MSI8AC9.tmp-\spusm.dll => Moved successfully.
C:\Windows\Installer\MSI8AC9.tmp-\srbs.dll => Moved successfully.
C:\Windows\Installer\MSI8AC9.tmp-\srbu.dll => Moved successfully.
C:\Windows\Installer\MSI8AC9.tmp-\srptc.dll => Moved successfully.
C:\Windows\Installer\MSI8AC9.tmp-\srpu.dll => Moved successfully.
C:\Windows\Installer\MSIEC2B.tmp-\Smartbar.Resources.HistoryAndStatsWrapper.dll => Moved successfully.
C:\Windows\Installer\MSIEC2B.tmp-\Smartbar.Resources.LanguageSettings.resources.dll => Moved successfully.
C:\Windows\Installer\MSIEC2B.tmp-\spbe.dll => Moved successfully.
C:\Windows\Installer\MSIEC2B.tmp-\spbl.dll => Moved successfully.
C:\Windows\Installer\MSIEC2B.tmp-\sppsm.dll => Moved successfully.
C:\Windows\Installer\MSIEC2B.tmp-\spusm.dll => Moved successfully.
C:\Windows\Installer\MSIEC2B.tmp-\srbs.dll => Moved successfully.
C:\Windows\Installer\MSIEC2B.tmp-\srbu.dll => Moved successfully.
C:\Windows\Installer\MSIEC2B.tmp-\srptc.dll => Moved successfully.
C:\Windows\Installer\MSIEC2B.tmp-\srpu.dll => Moved successfully.
EmptyTemp: => Removed 581.5 MB temporary data.

The system needed a reboot.

==== End of Fixlog ====


  • 0

#23
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,792 posts
If there are no issues we can clean up. Are there any issues left ?
  • 0

#24
lmatuska

lmatuska

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts
There is no issues left, I would like to thank you for all the help and expert work you did for me

thanks again
  • 0

#25
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,792 posts
Download DelFix by Xplode and save it to your desktop.
  • Run the tool by right click on the 51a5ce45263de-delfix.png icon and Run as administrator option.
  • Make sure that these ones are checked:
    • Remove disinfection tools
    • Purge system restore
    • Reset system settings
  • Push Run.
  • The program will run for a few seconds and display a notepad report.
    Paste it for my review.

  • 0

Advertisements


#26
lmatuska

lmatuska

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts

# DelFix v10.8 - Logfile created 03/12/2014 at 06:53:12
# Updated 29/07/2014 by Xplode
# Username : LarryandSharlene - LARRYANDSHARLEN
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)

~ Removing disinfection tools ...

Deleted : C:\FRST
Deleted : C:\AdwCleaner
Deleted : C:\Users\LarryandSharlene\Desktop\FRST-OlderVersion
Deleted : C:\Users\LarryandSharlene\Desktop\adwcleaner_4.102 (2).exe
Deleted : C:\Users\LarryandSharlene\Desktop\Fixlog.txt
Deleted : C:\Users\LarryandSharlene\Desktop\FRST64.exe
Deleted : C:\Users\LarryandSharlene\Desktop\JRT.exe
Deleted : C:\Users\LarryandSharlene\Desktop\JRT.txt
Deleted : C:\Users\LarryandSharlene\Desktop\SecurityCheck.exe
Deleted : C:\Users\LarryandSharlene\Downloads\Addition.txt
Deleted : HKLM\SOFTWARE\AdwCleaner

~ Cleaning system restore ...

Deleted : RP #241 [Windows Update | 11/23/2014 16:10:51]
Deleted : RP #242 [Windows Update | 11/26/2014 21:58:35]
Deleted : RP #243 [Windows Update | 11/30/2014 12:33:26]

New restore point created !

~ Resetting system settings ... OK

########## - EOF - ##########


  • 0

#27
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,792 posts
Hello,

Some tips for you:


You usually get infected because your security settings are too low.

Here are a number of recommendations that will help tighten them, and which will contribute to making you a less likely victim:

Safe Computing Practices please read Here

Thanks
Joe :)
  • 0

#28
lmatuska

lmatuska

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts

thank you Joe


  • 0

#29
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,792 posts
You're welcome,

Since this issue appears to be resolved ... this Topic has been closed. Glad we could help.

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP