Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Malware or virus need help [Solved]


  • This topic is locked This topic is locked

#16
Pat_54

Pat_54

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 212 posts

Hi Essexboy

 

Everything seems right on track. No freezing have turned on and off computer several times. Everything loads fine. May have cured the problem. I guess my next move is to do some cleanup. And I would like some advice if possible. If I go to device manager and look for all my drivers all I need do is right click properties see what drivers are installed, then go there and then can I just click driver and do copy and paste to usb drive. I need to do this before I can do a clean install of wins 7. I also read where I might have to upgrade some drivers as the old one won't work properly with wins7. I want to also thank you so very much for the help so I can get this next step done.  


Edited by Pat_54, 24 November 2014 - 02:57 PM.

  • 0

Advertisements


#17
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
There is no need to back up drivers as Windows 7 carries a full complement of drivers. Whenever I have moved from one variety of windows to another I always do a clean install, and to date (I started on windows 3.1 now on Windows 8.1.2 ) I have never experienced any problems

So what you need to do is install easytransfer on your XP system Link : http://go.microsoft..../?LinkID=164212
Run the programme and copy the files that you want to transfer to USB. There is a small video by MS here http://windows.micro...s-easy-transfer
Then when you have installed windows 7 use the easy transfer tool (built in ) to pull all your data from the USB to windows 7... Job done :)

If you wish I can tidy up the XP for you now and give some recommendations or wait until you have installed windows 7
  • 0

#18
Pat_54

Pat_54

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 212 posts
Hi Essexboy

Yes please can we proceed with the clean up. Also another question if I might ask. Yesterday I had a friend tell me he has a brand new hard drive never used, he bought it and then didn't need it, and its mine for free if I want it. He said, he hooked it up and he knows it works. I looked it up and it is definitely the right one for my computer and is much larger then mine. I would like to install it and I know how to do this but was wondering if I did and installed wins7 on it would I then need to install the drivers from the computer being that the hard drive has nothing on it. This has me a little scared. Sorry, I know your busy but I know my hard drive is old and may need replaced some day soon anyhow,what better time then now especially being a new operating system install. Thanks Pat
  • 0

#19
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Nope no need to get any drivers or anything else of that ilk :)

If you install the new hard drive and use it as the master (or the only one) a windows 7 installation will just go right in with no hassle

If the hard drive is not formatted then windows will offer to do that for you at start and even give you the choice of splitting the drive into two partitions. I have a 1TB drive split into two. There is a nice little description of how to do that here
http://www.sevenforu...-7-install.html

If you have any other questions then feel free to ask :)



Subject to no further problems :)

I will remove my tools now and give some recommendations, but, I would like you to run for 24 hours or so and come back if you have any problems

Now the best part of the day ----- Your log now appears clean :thumbsup:

A good workman always cleans up after himself so..The following will implement some cleanup procedures as well as reset System Restore points:

Remove tools

Download and run Delfix

delfix.JPG


: Keep Java Updated :

WARNING: Java is the #1 exploited program at this time. The Department of Homeland Security recommends that computer users disable Java
See this article

I would recommend that you completely uninstall Java unless you need it to run an important software.
In that instance I would recommend that you disable Java in your browsers until you need it for that software and then enable it. (See How to diasble Java in your web browser and How to unplug Java from the browser)

If you do need to keep Java then download JavaRa
Run the programme and select Remove Java Runtime. Uninstall all versions of Java present
Once done then run it again and select Update Java runtime > Download and install Latest version
javara.JPG


Now that you are clean, to help protect your computer in the future I recommend that you get the following free programmes:

CryptoPrevent install this programme to lock down and prevent crypto ransome ware

CryptoPrevent.JPG

Malwarebytes.

Update and run weekly to keep your system clean

Unchecky

Click on the link above to be taken to Unchecky.com
click the very large Download button.
click Save
Click Open folder
Right click on the Unchecky_setup and choose to Run as Administrator
Once open click the Install button.
Then click on Finish
Unchecky is now installed and will help you keep unwanted check boxes unchecked, this is a fire and forget programme ;)

It is critical to have both a firewall and anti virus to protect your system and to keep them updated.

To learn more about how to protect yourself while on the internet read this little guide Best security practices Keep safe :wave:
  • 0

#20
Pat_54

Pat_54

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 212 posts
Hi Essexboy
Everything really working good. Thank you so much. You are awesome. Btw I tried to click on the delfix that you provided but it says can't display page don't know if something wrong with link or page just down. I sure hope nothing wrong on my end here. Just doing some reading up on installing windows 7 great links you provided here. Thanks again Pat
  • 0

#21
Pat_54

Pat_54

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 212 posts

Hi Essexboy.
Not sure but may have spoke to soon. I downloaded the malwarebytes you provided and ran it. While it was running my avast came up and said avast file system shield has blocked a treat. no further action required. objesct:C:\...\adwcleaner.exe infection:win32:evo-gen[susp] action:moved to chest process:\programfiles\...\mbam.exe. The threat was detected and blocked just before the file was opened. Then after malwarebytes finished scan it had 1 object detected. pup.optional search protect.A type registry key-path hlkm\software\microsoft\internet explorer\search scopes\{014d85fa-eafb-4592-a95b-f44d3ee87fa9}quarantine. Geez whats causing this to happen. Also when I came to this site and signed in clicked ok a dialog box came up said internet explorer has encountered and error and needs to close. I chose not to send report and a tab appeared below the address bar that said internet explorer has recovered. 


Edited by Pat_54, 26 November 2014 - 12:21 AM.

  • 0

#22
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
OK Avast appears to have caught MBAM removing an infected file from the AdwCleaner quarantine , so it is not a problem. I
The MBAM find was just an orphaned registry key and is of no import.

Is the IE error regular or was it just that once

Here is a direct link for cryptoprevent http://www.foolishit...vent-installer/
  • 0

#23
Pat_54

Pat_54

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 212 posts

Hi Essexboy

 

Ok thats great to hear. Thank you so much thought I did something wrong again :smashcomp:  :D Computer still running good and yes that only happened that one time with IE. also it was the delfix program by xplode that I can't download it says internet explorer can not display webpage and still is doing it, might you have another link I can try. So can't remove our disinfect tools from desktop purge system restore create registry backup.  


  • 0

#24
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Try this one

https://toolslib.net...loads/finish/2/
  • 0

#25
Pat_54

Pat_54

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 212 posts

Hi Essexboy

 

That one don't work either get same thing IE can't display webpage


  • 0

Advertisements


#26
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Try this one it is a direct link to the copy on my system :)

https://dl.dropboxus...delfix_10.8.exe

Meanwhile I will try to figure out what is causing the problem
  • 0

#27
Pat_54

Pat_54

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 212 posts

Hi Essexboy

Its IE. I opened firefox clicked on your first link and no problem downloaded just like that. Now I did try your last link and it opened right up in IE.


  • 0

#28
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Hmm IE does not like the main page for some reason .. Wonder why... Testing it out now
  • 0

#29
Pat_54

Pat_54

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 212 posts

Hi Essexboy

 

Here is the log from delfix. Do you think I need to do a reset on IE 8

 

# DelFix v10.8 - Logfile created 26/11/2014 at 13:24:17
# Updated 29/07/2014 by Xplode
# Username : Administrator - GATEWAY
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)

~ Removing disinfection tools ...

Deleted : C:\FRST
Deleted : C:\AdwCleaner
Deleted : C:\Documents and Settings\Administrator\Desktop\Addition.txt
Deleted : C:\Documents and Settings\Administrator\Desktop\Extras.Txt
Deleted : C:\Documents and Settings\Administrator\Desktop\Fixlog.txt
Deleted : C:\Documents and Settings\Administrator\Desktop\FRST.txt
Deleted : C:\Documents and Settings\Administrator\Desktop\MiniToolBox.exe
Deleted : C:\Documents and Settings\Administrator\Desktop\OTL.Txt
Deleted : C:\Documents and Settings\Administrator\Desktop\OTL.exe
Deleted : C:\Documents and Settings\Administrator\Desktop\Result.txt
Deleted : HKLM\SOFTWARE\OldTimer Tools
Deleted : HKLM\SOFTWARE\AdwCleaner

~ Creating registry backup ... Error ! (1)

~ Cleaning system restore ...

Deleted : RP #1 [System Checkpoint | 10/24/2014 05:35:51]
Deleted : RP #2 [System Checkpoint | 10/25/2014 19:14:41]
Deleted : RP #3 [Installed Windows XP Service Pack 3. | 10/25/2014 22:18:39]
Deleted : RP #4 [Software Distribution Service 3.0 | 10/25/2014 22:47:16]
Deleted : RP #5 [Software Distribution Service 3.0 | 10/25/2014 22:52:06]
Deleted : RP #6 [Software Distribution Service 3.0 | 10/25/2014 23:33:15]
Deleted : RP #7 [Software Distribution Service 3.0 | 10/26/2014 00:14:55]
Deleted : RP #8 [Software Distribution Service 3.0 | 10/26/2014 01:08:22]
Deleted : RP #9 [Revo Uninstaller's restore point - McAfee Uninstall Wizard | 10/26/2014 04:59:08]
Deleted : RP #10 [avast! antivirus system restore point | 10/26/2014 05:04:41]
Deleted : RP #11 [Revo Uninstaller's restore point - gtw_logo | 10/26/2014 06:02:45]
Deleted : RP #12 [Revo Uninstaller's restore point - America Online (Choose which version to remove) | 10/26/2014 06:09:06]
Deleted : RP #13 [Revo Uninstaller's restore point - Uninstall Tool | 10/26/2014 06:58:54]
Deleted : RP #14 [Software Distribution Service 3.0 | 10/26/2014 07:00:15]
Deleted : RP #15 [Revo Uninstaller's restore point - QuickTime | 10/26/2014 08:02:59]
Deleted : RP #16 [Revo Uninstaller's restore point - MSN | 10/26/2014 08:08:08]
Deleted : RP #17 [Revo Uninstaller's restore point - Netscape Internet Service | 10/26/2014 08:10:04]
Deleted : RP #18 [Revo Uninstaller's restore point - AOL You've Got Pictures Screensaver | 10/26/2014 08:15:06]
Deleted : RP #19 [Installed Windows XP KB942288-v3. | 10/27/2014 05:23:46]
Deleted : RP #20 [Installed DirectX | 10/27/2014 05:24:17]
Deleted : RP #21 [Installed DirectX | 10/27/2014 05:24:25]
Deleted : RP #22 [Installed DirectX | 10/27/2014 05:24:32]
Deleted : RP #23 [Installed DirectX | 10/27/2014 05:24:39]
Deleted : RP #24 [Installed DirectX | 10/27/2014 05:24:44]
Deleted : RP #25 [Installed nero12kwikburnexpressess. | 10/27/2014 05:34:17]
Deleted : RP #26 [Software Distribution Service 3.0 | 10/28/2014 21:18:46]
Deleted : RP #27 [Installed Macrium Reflect Standard Edition | 10/29/2014 04:01:24]
Deleted : RP #28 [Revo Uninstaller's restore point - GWCares | 10/29/2014 04:07:59]
Deleted : RP #29 [Revo Uninstaller's restore point - GWCares | 10/29/2014 04:09:47]
Deleted : RP #30 [Revo Uninstaller's restore point - Google Desktop | 10/29/2014 04:21:36]
Deleted : RP #31 [System Checkpoint | 10/31/2014 21:48:25]
Deleted : RP #32 [Revo Uninstaller's restore point - ContentExplorer | 11/01/2014 05:30:01]
Deleted : RP #33 [Revo Uninstaller's restore point - FinanceAlert | 11/01/2014 05:31:30]
Deleted : RP #34 [Revo Uninstaller's restore point - Norton Security Scan | 11/01/2014 05:33:25]
Deleted : RP #35 [Revo Uninstaller's restore point - Java 2 Runtime Environment, SE v1.4.2 | 11/01/2014 05:50:43]
Deleted : RP #36 [Installed Ralink Wireless LAN | 11/04/2014 15:24:49]
Deleted : RP #37 [System Checkpoint | 11/06/2014 01:35:08]
Deleted : RP #38 [Revo Uninstaller's restore point - Fast Browser | 11/06/2014 22:55:56]
Deleted : RP #39 [Revo Uninstaller's restore point - Fast Browser | 11/06/2014 22:57:08]
Deleted : RP #40 [Revo Uninstaller's restore point - Fast Browser | 11/06/2014 22:58:15]
Deleted : RP #41 [Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 | 11/07/2014 23:59:45]
Deleted : RP #42 [System Checkpoint | 11/10/2014 22:57:08]
Deleted : RP #43 [Removed Java 7 Update 67 | 11/11/2014 22:44:37]
Deleted : RP #44 [Software Distribution Service 3.0 | 11/11/2014 22:48:40]
Deleted : RP #45 [System Checkpoint | 11/13/2014 05:32:49]
Deleted : RP #46 [System Checkpoint | 11/17/2014 19:10:39]
Deleted : RP #47 [System Checkpoint | 11/19/2014 04:17:49]
Deleted : RP #48 [System Checkpoint | 11/20/2014 05:35:53]
Deleted : RP #49 [Revo Uninstaller's restore point - CouponARific | 11/21/2014 00:43:38]
Deleted : RP #50 [Revo Uninstaller's restore point - Search Protect | 11/21/2014 00:48:37]
Deleted : RP #51 [Revo Uninstaller's restore point - Search Protect | 11/21/2014 00:50:35]
Deleted : RP #52 [Revo Uninstaller's restore point - Spybot - Search & Destroy | 11/21/2014 00:52:23]
Deleted : RP #53 [Revo Uninstaller's restore point - Spybot - Search & Destroy | 11/21/2014 00:53:52]
Deleted : RP #54 [Installed Windows 7 Upgrade Advisor | 11/21/2014 20:26:52]
Deleted : RP #55 [Intel® Driver Update Utility | 11/21/2014 22:05:41]
Deleted : RP #56 [System Checkpoint | 11/23/2014 00:17:15]
Deleted : RP #57 [avast! antivirus system restore point | 11/24/2014 16:55:29]
Deleted : RP #58 [Software Distribution Service 3.0 | 11/26/2014 00:44:41]
Deleted : RP #59 [Installed Windows Windows Easy Transfer for Windows 7. | 11/26/2014 17:34:51]

New restore point created !

~ Resetting system settings ... OK

########## - EOF - ##########


  • 0

#30
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Yes but be aware you may loose your bookmarks
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP