This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

http://www.searchqu.com- HELP

1 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

aswMBR version 0.9.5.247 Copyright© 2011 AVAST Software Run date: 2011-05-02 12:36:20 —————————– 12:36:20.363 OS Version: Windows 6.1.7600 12:36:20.363 Number of processors: 2 586 0xE08 12:36:20.365 ComputerName: PAUL-PC UserName: paul 12:36:21.733 Initialize success 12:36:59.366 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 12:36:59.372 Disk 0 Vendor: TOSHIBA_MK4034GSX AH401D Size: 38154MB BusType: 3 12:37:01.422 Disk 0 MBR read successfully 12:37:01.428 Disk 0 MBR scan 12:37:01.435 Disk 0 Windows 7 default MBR code 12:37:03.444 Disk 0 scanning sectors +78124095 12:37:03.485 Disk 0 scanning C:\Windows\system32\drivers 12:37:08.984 Service scanning 12:37:10.202 Disk 0 trace - called modules: 12:37:10.243 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll ataport.SYS intelide.sys PCIIDEX.SYS atapi.sys 12:37:10.255 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8561bac8] 12:37:10.265 3 CLASSPNP.SYS[88b8459e] -> nt!IofCallDriver -> [0x85177900] 12:37:10.276 5 ACPI.sys[886093b2] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x8489f610] 12:37:10.288 Scan finished successfully 12:37:40.423 Disk 0 MBR has been saved successfully to "C:\Users\paul\Desktop\MBR.dat" 12:37:40.432 The log file has been saved successfully to "C:\Users\paul\Desktop\aswMBR.txt" aswMBR version 0.9.5.247 Copyright© 2011 AVAST Software Run date: 2011-05-02 12:36:20 —————————– 12:36:20.363 OS Version: Windows 6.1.7600 12:36:20.363 Number of processors: 2 586 0xE08 12:36:20.365 ComputerName: PAUL-PC UserName: paul 12:36:21.733 Initialize success 12:36:59.366 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 12:36:59.372 Disk 0 Vendor: TOSHIBA_MK4034GSX AH401D Size: 38154MB BusType: 3 12:37:01.422 Disk 0 MBR read successfully 12:37:01.428 Disk 0 MBR scan 12:37:01.435 Disk 0 Windows 7 default MBR code 12:37:03.444 Disk 0 scanning sectors +78124095 12:37:03.485 Disk 0 scanning C:\Windows\system32\drivers 12:37:08.984 Service scanning 12:37:10.202 Disk 0 trace - called modules: 12:37:10.243 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll ataport.SYS intelide.sys PCIIDEX.SYS atapi.sys 12:37:10.255 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8561bac8] 12:37:10.265 3 CLASSPNP.SYS[88b8459e] -> nt!IofCallDriver -> [0x85177900] 12:37:10.276 5 ACPI.sys[886093b2] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x8489f610] 12:37:10.288 Scan finished successfully 12:37:40.423 Disk 0 MBR has been saved successfully to "C:\Users\paul\Desktop\MBR.dat" 12:37:40.432 The log file has been saved successfully to "C:\Users\paul\Desktop\aswMBR.txt" 12:48:18.018 Disk 0 MBR has been saved successfully to "C:\Users\paul\Desktop\MBR.dat" 12:48:18.027 The log file has been saved successfully to "C:\Users\paul\Desktop\aswMBR.txt" . DDS (Ver_11-03-05.01) - NTFSx86 Run by [removed] at 12:46:47.36 on Mon 05/02/2011 Internet Explorer: 9.0.8112.16421 Microsoft Windows 7 Professional 6.1.7600.0.1252.1.1033.18.2038.836 [GMT -5:00] . SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . ============== Running Processes =============== . C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Common Files\Motive\McciCMService.exe C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Windows\System32\svchost.exe -k secsvcs C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Windows\system32\Dwm.exe C:\Windows\system32\taskhost.exe C:\Windows\Explorer.EXE C:\Windows\System32\igfxtray.exe C:\Windows\System32\igfxpers.exe C:\Program Files\ACT\Act for Windows\Act.Outlook.Service.exe C:\Program Files\ATT-SST\McciTrayApp.exe C:\Users\paul\AppData\Local\Autobahn\mlb-nexdef-autobahn.exe C:\Windows\system32\igfxsrvc.exe C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\Skype\Plugin Manager\skypePM.exe C:\Windows\system32\svchost.exe -k SDRSVC C:\Windows\system32\SearchIndexer.exe C:\Program Files\iTunes\iTunes.exe C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe C:\Windows\system32\conhost.exe C:\Program Files\Common Files\Apple\Apple Application Support\distnoted.exe C:\Windows\system32\conhost.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\ACT\Act for Windows\ActSage.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Windows\system32\Macromed\Flash\FlashUtil10p_ActiveX.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Users\paul\Desktop\aswMBR.exe C:\Windows\system32\notepad.exe C:\Windows\system32\notepad.exe C:\Windows\system32\wscript.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Windows\system32\DllHost.exe C:\Windows\system32\DllHost.exe C:\Windows\system32\DllHost.exe C:\Users\paul\Desktop\dds.scr C:\Windows\system32\conhost.exe C:\Windows\system32\wbem\wmiprvse.exe . ============== Pseudo HJT Report =============== . uStart Page = hxxp://www.google.com/ mStart Page = hxxp://www.att.net uInternet Settings,ProxyOverride = *.local BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll BHO: Skype Plug-In: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll BHO: Act.UI.InternetExplorer.Plugins.AttachFile.CAttachFile: {d5233fcd-d258-4903-89b8-fb1568e7413d} - mscoree.dll TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File uRun: [Google Update] "c:\users\paul\appdata\local\google\update\GoogleUpdate.exe" /c mRun: [AppleSyncNotifier] c:\program files\common files\apple\mobile device support\AppleSyncNotifier.exe mRun: [IgfxTray] c:\windows\system32\igfxtray.exe mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe mRun: [Persistence] c:\windows\system32\igfxpers.exe mRun: [Act.Outlook.Service] "c:\program files\act\act for windows\Act.Outlook.Service.exe" mRun: [Act! Preloader] "c:\program files\act\act for windows\ActSage.exe" -preload mRun: [ATT-SST_McciTrayApp] "c:\program files\att-sst\McciTrayApp.exe" mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe" mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 10.0\reader\Reader_sl.exe" mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe" mRunOnce: [Uninstall Adobe Download Manager] "c:\program files\nos\bin\getPlusUninst_Adobe.exe" /Get1noarp mRunOnce: [removeSearchqudatamngr] cmd.exe /c RD /S /Q "c:\program files\Windows iLivid Toolbar" mRunOnce: [removeSearchqutoolbar] cmd.exe /c RD /S /Q "c:\program files\windows ilivid toolbar\ToolBar" StartupFolder: c:\users\paul\appdata\roaming\micros~1\windows\startm~1\programs\startup\mlbtvn~1.lnk - c:\users\paul\appdata\local\autobahn\mlb-nexdef-autobahn.exe mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5) mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3) mPolicies-system: EnableUIADesktopToggle = 0 (0x0) IE: E&xport to Microsoft Excel - c:\progra~1\micros~1\office12\EXCEL.EXE/3000 IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~1\office12\ONBttnIE.dll IE: {6F431AC3-364A-478b-BBDB-89C7CE1B18F6} - {6F431AC3-364A-478b-BBDB-89C7CE1B18F6} - mscoree.dll IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~1\office12\REFIEBAR.DLL Trusted Zone: $talisma_url$ DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab DPF: {E0FEE963-BB53-4215-81AD-B28C77384644} - hxxps://pattcw.att.motive.com/wizlet/DSLActivation/static/installer/ATTInternetInstaller.cab DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL Notify: igfxcui - igfxdev.dll AppInit_DLLs: . ============= SERVICES / DRIVERS =============== . R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\drivers\vwififlt.sys [2009-7-13 48128] R2 MSSQL$ACT7;SQL Server (ACT7);c:\program files\microsoft sql server\mssql.1\mssql\binn\sqlservr.exe [2010-12-10 29293408] R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888] S2 ACT! Scheduler;ACT! Scheduler;c:\program files\act\act for windows\Act.Scheduler.exe [2009-8-24 81920] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384] S3 nosGetPlusHelper;getPlus® Helper 3004;c:\windows\system32\svchost.exe -k nosGetPlusHelper [2009-7-13 20992] S3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\drivers\VSTAZL3.SYS [2009-7-13 207360] S3 SrvHsfV92;SrvHsfV92;c:\windows\system32\drivers\VSTDPV3.SYS [2009-7-13 980992] S3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\drivers\VSTCNXT3.SYS [2009-7-13 661504] S3 StorSvc;Storage Service;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 20992] S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2010-6-16 1343400] . =============== Created Last 30 ================ . 2011-04-29 13:28:41 7071056 —-a-w- c:\progra~2\microsoft\windows defender\definition updates\{9d8d0dc9-eda1-4c6d-94f4-3f72e35a3f53}\mpengine.dll 2011-04-28 18:55:28 ——– d–h–w- c:\windows\AxInstSV 2011-04-27 17:54:00 ——– d—–w- c:\users\paul\appdata\local\Ilivid Player 2011-04-27 17:50:22 ——– dc-h–w- c:\progra~2\~0 2011-04-27 17:49:06 ——– d—–w- c:\users\paul\appdata\local\PackageAware 2011-04-27 13:44:02 31232 —-a-w- c:\windows\system32\prevhost.exe 2011-04-27 13:43:59 143744 —-a-w- c:\windows\system32\drivers\nvstor.sys 2011-04-27 13:43:58 80256 —-a-w- c:\windows\system32\drivers\amdsata.sys 2011-04-27 13:43:58 332160 —-a-w- c:\windows\system32\drivers\iaStorV.sys 2011-04-27 13:43:58 1686016 —-a-w- c:\windows\system32\esent.dll 2011-04-27 13:43:58 146304 —-a-w- c:\windows\system32\drivers\storport.sys 2011-04-27 13:43:58 1210240 —-a-w- c:\windows\system32\drivers\ntfs.sys 2011-04-27 13:43:58 117120 —-a-w- c:\windows\system32\drivers\nvraid.sys 2011-04-27 13:43:57 74240 —-a-w- c:\windows\system32\fsutil.exe 2011-04-27 13:43:57 22400 —-a-w- c:\windows\system32\drivers\amdxata.sys 2011-04-27 13:43:53 442880 —-a-w- c:\windows\system32\XpsPrint.dll 2011-04-27 13:43:52 2614784 —-a-w- c:\windows\explorer.exe 2011-04-19 02:38:02 ——– d—–w- c:\program files\iPod 2011-04-19 02:35:37 ——– d—–w- c:\program files\Bonjour 2011-04-15 18:33:02 311296 —-a-w- c:\windows\system32\drivers\srv.sys 2011-04-15 18:33:02 309760 —-a-w- c:\windows\system32\drivers\srv2.sys 2011-04-15 18:33:02 113664 —-a-w- c:\windows\system32\drivers\srvnet.sys 2011-04-07 18:22:32 ——– d—–w- c:\users\paul\.autobahn 2011-04-07 18:22:18 ——– d—–w- c:\users\paul\appdata\local\Autobahn 2011-04-06 21:20:16 91424 —-a-w- c:\windows\system32\dnssd.dll 2011-04-06 21:20:16 107808 —-a-w- c:\windows\system32\dns-sd.exe . ==================== Find3M ==================== . 2011-05-02 15:13:10 1890 –sha-w- c:\progra~2\KGyGaAvL.sys 2011-03-11 05:40:24 1164288 —-a-w- c:\windows\system32\mfc42u.dll 2011-03-11 05:40:24 1137664 —-a-w- c:\windows\system32\mfc42.dll 2011-03-08 05:38:13 740864 —-a-w- c:\windows\system32\inetcomm.dll 2011-03-03 05:29:23 132608 —-a-w- c:\windows\system32\dnsrslvr.dll 2011-03-03 05:27:30 28672 —-a-w- c:\windows\system32\dnscacheugc.exe 2011-03-03 03:31:32 2331136 —-a-w- c:\windows\system32\win32k.sys 2011-02-24 05:32:52 288256 —-a-w- c:\windows\system32\XpsGdiConverter.dll 2011-02-19 05:56:52 805376 —-a-w- c:\windows\system32\FntCache.dll 2011-02-19 05:56:27 1076736 —-a-w- c:\windows\system32\DWrite.dll 2011-02-19 05:56:14 739840 —-a-w- c:\windows\system32\d2d1.dll 2011-02-19 05:32:08 34304 —-a-w- c:\windows\system32\atmlib.dll 2011-02-19 03:37:02 294912 —-a-w- c:\windows\system32\atmfd.dll 2011-02-18 22:36:58 4184352 —-a-w- c:\windows\system32\usbaaplrc.dll 2011-02-12 05:30:49 191488 —-a-w- c:\windows\system32\FXSCOVER.exe 2011-02-02 23:11:20 222080 ——w- c:\windows\system32\MpSigStub.exe . ============= FINISH: 12:47:07.47 =============== ==== Installed Programs ====================== . Update for Microsoft Office 2007 (KB2508958) ACT! by Sage Premium 2010 Adobe AIR Adobe Download Manager Adobe Flash Player 10 ActiveX Adobe Flash Player 10 Plugin Adobe Reader X (10.0.1) Apple Application Support Apple Mobile Device Support Apple Software Update AT&T Service & Support Tool AT&T Yahoo! Browser Configuration att.net Internet Mail Bonjour calibre Conexant HDA D110 MDC V.92 Modem CutePDF Writer 2.8 Feedback Tool Google Chrome Intel® Graphics Media Accelerator Driver iTunes Malwarebytes' Anti-Malware Microsoft .NET Framework 4 Client Profile Microsoft Office 2007 Service Pack 2 (SP2) Microsoft Office Access MUI (English) 2007 Microsoft Office Access Setup Metadata MUI (English) 2007 Microsoft Office Enterprise 2007 Microsoft Office Excel MUI (English) 2007 Microsoft Office Groove MUI (English) 2007 Microsoft Office Groove Setup Metadata MUI (English) 2007 Microsoft Office InfoPath MUI (English) 2007 Microsoft Office OneNote MUI (English) 2007 Microsoft Office Outlook MUI (English) 2007 Microsoft Office PowerPoint MUI (English) 2007 Microsoft Office Proof (English) 2007 Microsoft Office Proof (French) 2007 Microsoft Office Proof (Spanish) 2007 Microsoft Office Proofing (English) 2007 Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) Microsoft Office Publisher MUI (English) 2007 Microsoft Office Shared MUI (English) 2007 Microsoft Office Shared Setup Metadata MUI (English) 2007 Microsoft Office Word MUI (English) 2007 Microsoft Silverlight Microsoft SQL Server 2005 Microsoft SQL Server 2005 Express Edition (ACT7) Microsoft SQL Server Native Client Microsoft SQL Server Setup Support Files (English) Microsoft SQL Server VSS Writer Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 MobileMe Control Panel OGA Notifier 2.0.0048.0 QuickTime Safari Security Update for 2007 Microsoft Office System (KB2288621) Security Update for 2007 Microsoft Office System (KB2288931) Security Update for 2007 Microsoft Office System (KB2345043) Security Update for 2007 Microsoft Office System (KB2466156) Security Update for 2007 Microsoft Office System (KB2509488) Security Update for 2007 Microsoft Office System (KB969559) Security Update for 2007 Microsoft Office System (KB976321) Security Update for CAPICOM (KB931906) Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) Security Update for Microsoft Office Access 2007 (KB979440) Security Update for Microsoft Office Excel 2007 (KB2464583) Security Update for Microsoft Office Groove 2007 (KB2494047) Security Update for Microsoft Office InfoPath 2007 (KB979441) Security Update for Microsoft Office PowerPoint 2007 (KB2464594) Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623) Security Update for Microsoft Office Publisher 2007 (KB2284697) Security Update for Microsoft Office system 2007 (972581) Security Update for Microsoft Office system 2007 (KB974234) Security Update for Microsoft Office Visio Viewer 2007 (KB973709) Security Update for Microsoft Office Word 2007 (KB2344993) Skype Toolbars Skype™ 5.1 Update for 2007 Microsoft Office System (KB967642) Update for Microsoft Office 2007 Help for Common Features (KB963673) Update for Microsoft Office Access 2007 Help (KB963663) Update for Microsoft Office Excel 2007 Help (KB963678) Update for Microsoft Office Infopath 2007 Help (KB963662) Update for Microsoft Office OneNote 2007 (KB980729) Update for Microsoft Office OneNote 2007 Help (KB963670) Update for Microsoft Office Outlook 2007 (KB2412171) Update for Microsoft Office Outlook 2007 Help (KB963677) Update for Microsoft Office Powerpoint 2007 Help (KB963669) Update for Microsoft Office Publisher 2007 Help (KB963667) Update for Microsoft Office Script Editor Help (KB963671) Update for Microsoft Office Word 2007 Help (KB963665) Update for Outlook 2007 Junk Email Filter (KB2522999) . ==== Event Viewer Messages From Past Week ======== . 5/2/2011 7:50:06 AM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service. 5/1/2011 8:28:47 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Netman service. 5/1/2011 12:01:31 PM, Error: NetBT [4321] - The name "WORKGROUP :1d" could not be registered on the interface with IP address 192.168.1.69. The computer with the IP address 192.168.1.70 did not allow the name to be claimed by this computer. 4/28/2011 10:19:24 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the CryptSvc service. 4/28/2011 1:54:16 PM, Error: volsnap [36] - The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. 4/26/2011 12:05:18 AM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Appinfo service. 4/25/2011 10:02:09 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800f020b: Western Digital Technologies - Other hardware - WD SES Device. . ==== End Of File =========================== Please help me get rid of this…. Thx, Paul
Hi, welcome to the WTT Forums. My username is Raktor, and I would be glad to help you with your malware issues. I'd be grateful if you would note the following:

  • Absence of symptoms does not always mean the computer is clean
  • Please do not run any scans or fixes without my direction.
  • Finally, stay with this topic until I give you the final 'All clear' post.

In Google Chrome:
1. Click the wrench icon
2. Go to Options
3. Go to the Basics tab
4. Set "Default Search" to Google
5. Click close

Also change the homepage back to http://www.google.com/

Then…

Download Combofix from any of the links below and save it to your desktop.

Link 1
Link 2


==================================

Double click on ComboFix.exe & follow the prompts.
  • When finished, it will produce a report for you.
  • Please post the C:\ComboFix.txt so we can continue cleaning the system.

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI