Good news, i made
Jump to content
Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.Create Account How it Works
Good news ! I made a new full scan with AVG and there was nothing reported any longer, so the system now appears to be clean.
I believe we can close this issue now.
Many thanks for the help and guidance !!
I have uninstalled the tools (i already did for some before seeing your reply). I will post the DelFix log below here.
I also installed Filehippo update checker, Unchecky and Cryptoprevent( btw, i also installed those 3 on my desktop which is running W10 now, for sure these tools look a "must" to me to protect as much as possible your PC.)
Malwarebytes Pro is running on the infected laptop (and btw on all my PC's).
tx again for your assistance, my issue is solved and i learned a lot as well! :-)
# DelFix v1.013 - Logfile created 30/07/2016 at 11:54:40
# Updated 17/04/2016 by Xplode
# Username : BE76601 - T400
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
~ Removing disinfection tools ...
Deleted : C:\Qoobox
Deleted : C:\Combofix
Deleted : C:\FRST
Deleted : C:\TDSSKiller_Quarantine
Deleted : C:\AdwCleaner
Deleted : C:\Log.txt
Deleted : C:\TDSSKiller.22.214.171.124_11.07.2016_16.29.28_log.txt
Deleted : C:\WINDOWS\grep.exe
Deleted : C:\WINDOWS\PEV.exe
Deleted : C:\WINDOWS\NIRCMD.exe
Deleted : C:\WINDOWS\MBR.exe
Deleted : C:\WINDOWS\SED.exe
Deleted : C:\WINDOWS\SWREG.exe
Deleted : C:\WINDOWS\SWSC.exe
Deleted : C:\WINDOWS\SWXCACLS.exe
Deleted : C:\WINDOWS\Zip.exe
Deleted : HKCU\console_combofixbackup
Deleted : HKLM\SOFTWARE\Swearware
Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\combofix.exe
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys
~ Creating registry backup ... OK
~ Cleaning system restore ...
Deleted : RP #1280 [System Checkpoint | 07/01/2016 18:04:58]
Deleted : RP #1281 [Removed Lotus Notes 8.5.3. | 07/03/2016 14:58:07]
Deleted : RP #1282 [Removed Samsung Kies | 07/03/2016 15:12:45]
Deleted : RP #1283 [Verwijderd: Skypeâ„¢ 6.3 | 07/03/2016 15:20:05]
Deleted : RP #1284 [IBM Lotus Sametime Connect 8.5.1 verwijderd. | 07/03/2016 15:22:08]
Deleted : RP #1285 [Removed e-config | 07/03/2016 15:26:41]
Deleted : RP #1286 [Removed CompanionLink. | 07/07/2016 15:36:52]
Deleted : RP #1287 [Removed LotusLive Meetings for IBM | 07/07/2016 15:40:59]
Deleted : RP #1288 [Removed IBM Tivoli Storage Manager Client | 07/07/2016 15:41:46]
Deleted : RP #1289 [Verwijderd: IBM Personal Communications | 07/07/2016 15:43:14]
Deleted : RP #1290 [Removed IBM Tivoli Remote Control AyÃºdame Premium Edition - Target. | 07/07/2016 15:44:00]
Deleted : RP #1291 [Removed Apple Application Support | 07/07/2016 15:47:21]
Deleted : RP #1292 [Verwijderd: Apple Software Update | 07/07/2016 15:48:48]
Deleted : RP #1293 [Removed Vodafone Mobile Connect Lite. | 07/07/2016 16:07:08]
Deleted : RP #1294 [Removed Tivoli Endpoint Manager Client. | 07/07/2016 16:10:07]
Deleted : RP #1295 [Removed Stickies | 07/07/2016 16:11:08]
Deleted : RP #1296 [Removed e-config Data Migration tool | 07/07/2016 16:13:17]
Deleted : RP #1297 [Removed GBS Solutions and Assets | 07/07/2016 16:13:56]
Deleted : RP #1298 [Removed Mobility Client | 07/07/2016 16:15:00]
Deleted : RP #1299 [Installed AVG 2016 | 07/07/2016 16:30:29]
Deleted : RP #1300 [Installed AVG | 07/07/2016 16:30:54]
Deleted : RP #1301 [System Checkpoint | 07/11/2016 15:07:20]
Deleted : RP #1302 [ComboFix created restore point | 07/17/2016 16:09:09]
Deleted : RP #1303 [System Checkpoint | 07/20/2016 13:48:54]
Deleted : RP #1304 [Removed Symantec Endpoint Protection. | 07/21/2016 19:49:48]
Deleted : RP #1305 [Removed Symantec Endpoint Protection. | 07/21/2016 19:50:51]
Deleted : RP #1306 [Restore Point Created by FRST | 07/21/2016 20:40:22]
Deleted : RP #1307 [System Checkpoint | 07/23/2016 17:08:00]
Deleted : RP #1308 [Restore Point Created by FRST | 07/25/2016 06:50:28]
Deleted : RP #1309 [Removed Foxit Reader | 07/25/2016 20:51:23]
Deleted : RP #1310 [Google Earth is verwijderd. | 07/25/2016 20:51:59]
Deleted : RP #1311 [Verwijderd: QuickTime | 07/25/2016 20:58:40]
Deleted : RP #1312 [Removed SourceGear DiffMerge | 07/25/2016 20:59:17]
Deleted : RP #1313 [IBM Lotus Symphony verwijderd. | 07/25/2016 21:02:19]
Deleted : RP #1314 [Removed Cookienator | 07/25/2016 21:08:55]
Deleted : RP #1315 [System Checkpoint | 07/27/2016 17:22:39]
Deleted : RP #1316 [System Checkpoint | 07/28/2016 18:52:12]
New restore point created !
~ Resetting system settings ... OK
########## - EOF - ##########
Since this issue appears to be resolved ... this Topic has been closed. Glad we could help.
If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.
Everyone else please begin a New Topic.
0 members, 0 guests, 0 anonymous users
Community Forum Software by IP.Board
Licensed to: Geeks to Go, Inc.