Hi Jr0X,
Good news, i made
Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!
Hi Jr0X,
Good news, i made
Hi Jr0X,
Good news ! I made a new full scan with AVG and there was nothing reported any longer, so the system now appears to be clean.
I believe we can close this issue now.
Many thanks for the help and guidance !!
Cheers, Paul
Hi Jr0X,
I have uninstalled the tools (i already did for some before seeing your reply). I will post the DelFix log below here.
I also installed Filehippo update checker, Unchecky and Cryptoprevent( btw, i also installed those 3 on my desktop which is running W10 now, for sure these tools look a "must" to me to protect as much as possible your PC.)
Malwarebytes Pro is running on the infected laptop (and btw on all my PC's).
tx again for your assistance, my issue is solved and i learned a lot as well! :-)
Cheers, Paul
# DelFix v1.013 - Logfile created 30/07/2016 at 11:54:40
# Updated 17/04/2016 by Xplode
# Username : BE76601 - T400
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
~ Removing disinfection tools ...
Deleted : C:\Qoobox
Deleted : C:\Combofix
Deleted : C:\FRST
Deleted : C:\TDSSKiller_Quarantine
Deleted : C:\AdwCleaner
Deleted : C:\Log.txt
Deleted : C:\TDSSKiller.3.1.0.9_11.07.2016_16.29.28_log.txt
Deleted : C:\WINDOWS\grep.exe
Deleted : C:\WINDOWS\PEV.exe
Deleted : C:\WINDOWS\NIRCMD.exe
Deleted : C:\WINDOWS\MBR.exe
Deleted : C:\WINDOWS\SED.exe
Deleted : C:\WINDOWS\SWREG.exe
Deleted : C:\WINDOWS\SWSC.exe
Deleted : C:\WINDOWS\SWXCACLS.exe
Deleted : C:\WINDOWS\Zip.exe
Deleted : HKCU\console_combofixbackup
Deleted : HKLM\SOFTWARE\Swearware
Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\combofix.exe
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys
~ Creating registry backup ... OK
~ Cleaning system restore ...
Deleted : RP #1280 [System Checkpoint | 07/01/2016 18:04:58]
Deleted : RP #1281 [Removed Lotus Notes 8.5.3. | 07/03/2016 14:58:07]
Deleted : RP #1282 [Removed Samsung Kies | 07/03/2016 15:12:45]
Deleted : RP #1283 [Verwijderd: Skypeâ„¢ 6.3 | 07/03/2016 15:20:05]
Deleted : RP #1284 [IBM Lotus Sametime Connect 8.5.1 verwijderd. | 07/03/2016 15:22:08]
Deleted : RP #1285 [Removed e-config | 07/03/2016 15:26:41]
Deleted : RP #1286 [Removed CompanionLink. | 07/07/2016 15:36:52]
Deleted : RP #1287 [Removed LotusLive Meetings for IBM | 07/07/2016 15:40:59]
Deleted : RP #1288 [Removed IBM Tivoli Storage Manager Client | 07/07/2016 15:41:46]
Deleted : RP #1289 [Verwijderd: IBM Personal Communications | 07/07/2016 15:43:14]
Deleted : RP #1290 [Removed IBM Tivoli Remote Control Ayúdame Premium Edition - Target. | 07/07/2016 15:44:00]
Deleted : RP #1291 [Removed Apple Application Support | 07/07/2016 15:47:21]
Deleted : RP #1292 [Verwijderd: Apple Software Update | 07/07/2016 15:48:48]
Deleted : RP #1293 [Removed Vodafone Mobile Connect Lite. | 07/07/2016 16:07:08]
Deleted : RP #1294 [Removed Tivoli Endpoint Manager Client. | 07/07/2016 16:10:07]
Deleted : RP #1295 [Removed Stickies | 07/07/2016 16:11:08]
Deleted : RP #1296 [Removed e-config Data Migration tool | 07/07/2016 16:13:17]
Deleted : RP #1297 [Removed GBS Solutions and Assets | 07/07/2016 16:13:56]
Deleted : RP #1298 [Removed Mobility Client | 07/07/2016 16:15:00]
Deleted : RP #1299 [Installed AVG 2016 | 07/07/2016 16:30:29]
Deleted : RP #1300 [Installed AVG | 07/07/2016 16:30:54]
Deleted : RP #1301 [System Checkpoint | 07/11/2016 15:07:20]
Deleted : RP #1302 [ComboFix created restore point | 07/17/2016 16:09:09]
Deleted : RP #1303 [System Checkpoint | 07/20/2016 13:48:54]
Deleted : RP #1304 [Removed Symantec Endpoint Protection. | 07/21/2016 19:49:48]
Deleted : RP #1305 [Removed Symantec Endpoint Protection. | 07/21/2016 19:50:51]
Deleted : RP #1306 [Restore Point Created by FRST | 07/21/2016 20:40:22]
Deleted : RP #1307 [System Checkpoint | 07/23/2016 17:08:00]
Deleted : RP #1308 [Restore Point Created by FRST | 07/25/2016 06:50:28]
Deleted : RP #1309 [Removed Foxit Reader | 07/25/2016 20:51:23]
Deleted : RP #1310 [Google Earth is verwijderd. | 07/25/2016 20:51:59]
Deleted : RP #1311 [Verwijderd: QuickTime | 07/25/2016 20:58:40]
Deleted : RP #1312 [Removed SourceGear DiffMerge | 07/25/2016 20:59:17]
Deleted : RP #1313 [IBM Lotus Symphony verwijderd. | 07/25/2016 21:02:19]
Deleted : RP #1314 [Removed Cookienator | 07/25/2016 21:08:55]
Deleted : RP #1315 [System Checkpoint | 07/27/2016 17:22:39]
Deleted : RP #1316 [System Checkpoint | 07/28/2016 18:52:12]
New restore point created !
~ Resetting system settings ... OK
########## - EOF - ##########
Glad that I'm able to assist you.
Take care and stay safe.
Since this issue appears to be resolved ... this Topic has been closed. Glad we could help.
If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.
Everyone else please begin a New Topic.
0 members, 0 guests, 0 anonymous users
Community Forum Software by IP.Board
Licensed to: Geeks to Go, Inc.