[RESOLVED] not sure if I have a virus or not - Page 3
Page 3 of 5 FirstFirst 12345 LastLast
Results 31 to 45 of 71

Thread: [RESOLVED] not sure if I have a virus or not

  1. #31
    Join Date
    Dec 2007
    Location
    Daly City, CA
    Posts
    22,550
    Skip Java step.

  2. #32
    Join Date
    Sep 2007
    Location
    Maine
    Posts
    656
    I got java to finally work before I saw your message

    All processes killed
    ========== OTL ==========
    ========== COMMANDS ==========

    [EMPTYTEMP]

    User: All Users

    User: Beth
    ->Temp folder emptied: 2472810 bytes
    ->Temporary Internet Files folder emptied: 366011722 bytes
    ->Java cache emptied: 0 bytes
    ->FireFox cache emptied: 79403663 bytes
    ->Google Chrome cache emptied: 0 bytes
    ->Flash cache emptied: 1648 bytes

    User: Default
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: Default User
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: Public
    ->Temp folder emptied: 0 bytes

    User: UpdatusUser
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    %systemdrive% .tmp files removed: 0 bytes
    %systemroot% .tmp files removed: 0 bytes
    %systemroot%\System32 .tmp files removed: 180224 bytes
    %systemroot%\System32\drivers .tmp files removed: 0 bytes
    Windows Temp folder emptied: 6552 bytes
    RecycleBin emptied: 154835072 bytes

    Total Files Cleaned = 575.00 mb


    [EMPTYFLASH]

    User: All Users

    User: Beth
    ->Flash cache emptied: 0 bytes

    User: Default
    ->Flash cache emptied: 0 bytes

    User: Default User
    ->Flash cache emptied: 0 bytes

    User: Public

    User: UpdatusUser
    ->Flash cache emptied: 0 bytes

    Total Flash Files Cleaned = 0.00 mb


    [EMPTYJAVA]

    User: All Users

    User: Beth
    ->Java cache emptied: 0 bytes

    User: Default

    User: Default User

    User: Public

    User: UpdatusUser

    Total Java Files Cleaned = 0.00 mb

    Restore point Set: OTL Restore Point

    OTL by OldTimer - Version 3.2.69.0 log created on 01312014_171117

    Files\Folders moved on Reboot...

    PendingFileRenameOperations files...

    Registry entries deleted on Reboot...

  3. #33
    Join Date
    Sep 2007
    Location
    Maine
    Posts
    656
    Everything seems great but I still cant delete that recipetool bar in the control panel do you know why?

  4. #34
    Join Date
    Sep 2007
    Location
    Maine
    Posts
    656

    not sure I have a virus

    Thank you so much for all your help. I appreciate it more than you know.

  5. #35
    Join Date
    Dec 2007
    Location
    Daly City, CA
    Posts
    22,550
    I still cant delete that recipetool bar in the control panel do you know why?
    In "Programs & Features"?

  6. #36
    Join Date
    Sep 2007
    Location
    Maine
    Posts
    656

    not sure if i have a virus

    Yes I tried to delete it in programs

  7. #37
    Join Date
    Dec 2007
    Location
    Daly City, CA
    Posts
    22,550
    It's most likely just a registry leftover...

    Download UnInstall Cleaner
    Unzip downloaded file.
    Double click on UIClean.exe to run the tool.
    Click on leftover entry and click Delete button.

  8. #38
    Join Date
    Sep 2007
    Location
    Maine
    Posts
    656
    when I tried it said media player would not open it

  9. #39
    Join Date
    Dec 2007
    Location
    Daly City, CA
    Posts
    22,550
    What media player?

    You need to unzip downloaded file.
    Double click should do.
    If it doesn't get free 7-zip: http://www.7-zip.org/

  10. #40
    Join Date
    Sep 2007
    Location
    Maine
    Posts
    656
    I am in huge trouble but I dont know why. I tried to do the zip thing and it said slow pc and then it said media could not open zip file. What is going on? I used it before with no problems. I ran a quick scan with malwarebytes and it showed a pup and when I tried to restart it wouldn't it took about 5 tries before it would. After all you did I feel terrible this is happening. If you want to give up I dont blame you.

  11. #41
    Join Date
    Dec 2007
    Location
    Daly City, CA
    Posts
    22,550
    Can you post MBAM log?

  12. #42
    Join Date
    Sep 2007
    Location
    Maine
    Posts
    656
    Malwarebytes Anti-Malware (Trial) 1.75.0.1300
    www.malwarebytes.org

    Database version: v2014.02.01.01

    Windows 7 Service Pack 1 x86 NTFS
    Internet Explorer 11.0.9600.16476
    Beth :: BETH-PC [administrator]

    Protection: Enabled

    1/31/2014 10:43:42 PM
    mbam-log-2014-01-31 (22-43-42).txt

    Scan type: Quick scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | PUP | PUM
    Scan options disabled: Heuristics/Shuriken | P2P
    Objects scanned: 57821
    Time elapsed: 7 minute(s), 18 second(s)

    Memory Processes Detected: 1
    C:\Program Files\RightSurf\updateRightSurf.exe (PUP.Optional.RightSurf.A) -> 1920 -> Delete on reboot.

    Memory Modules Detected: 0
    (No malicious items detected)

    Registry Keys Detected: 9
    HKLM\SYSTEM\CurrentControlSet\Services\Update RightSurf (PUP.Optional.RightSurf.A) -> Quarantined and deleted successfully.
    HKCR\CLSID\{88be1aa9-6740-461c-9e3e-f35eb8fa741c} (PUP.Optional.RightSurf.A) -> Quarantined and deleted successfully.
    HKCR\TypeLib\{a4f32137-598e-41b6-b601-9965084c8f08} (PUP.Optional.RightSurf.A) -> Quarantined and deleted successfully.
    HKCR\Interface\{C64BA349-1F34-4BFC-8D23-A317279D0CB9} (PUP.Optional.RightSurf.A) -> Quarantined and deleted successfully.
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{88BE1AA9-6740-461C-9E3E-F35EB8FA741C} (PUP.Optional.RightSurf.A) -> Quarantined and deleted successfully.
    HKCR\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} (PUP.Optional.BrowseFox.A) -> Quarantined and deleted successfully.
    HKCR\CLSID\{D40753C7-8A59-4C1F-BE88-C300F4624D5B} (PUP.Optional.MySearchDial.A) -> Quarantined and deleted successfully.
    HKCR\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0} (PUP.Optional.MySearchDial.A) -> Quarantined and deleted successfully.
    HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Digital Sites (PUP.Optional.Updater) -> Quarantined and deleted successfully.

    Registry Values Detected: 0
    (No malicious items detected)

    Registry Data Items Detected: 0
    (No malicious items detected)

    Folders Detected: 1
    C:\Users\Beth\AppData\Roaming\DigitalSites\UpdateProc (PUP.Optional.Updater) -> Quarantined and deleted successfully.

    Files Detected: 12
    C:\Program Files\RightSurf\updateRightSurf.exe (PUP.Optional.RightSurf.A) -> Delete on reboot.
    C:\Program Files\RightSurf\RightSurfBHO.dll (PUP.Optional.RightSurf.A) -> Quarantined and deleted successfully.
    C:\Users\Beth\AppData\Local\temp\is1590112554\1901026_stp\Mysearchdial.exe (PUP.Optional.MySpeedDial.A) -> Quarantined and deleted successfully.
    C:\Users\Beth\AppData\Local\temp\is1590112554\1901206_stp\RightSurfSetup.exe (PUP.Optional.RightSurf.A) -> Quarantined and deleted successfully.
    C:\Users\Beth\Downloads\ZipExtractorSetup.exe (PUP.Optional.JumpyApps.A) -> Quarantined and deleted successfully.
    C:\Users\Beth\Local Settings\Temporary Internet Files\Content.IE5\FS4K5SY4\Setup[1].exe (PUP.Optional.RightSurf.A) -> Quarantined and deleted successfully.
    C:\Users\Beth\AppData\Roaming\DigitalSites\UpdateProc\UpdateTask.exe (PUP.Optional.Updater) -> Quarantined and deleted successfully.
    C:\Users\Beth\AppData\Roaming\DigitalSites\UpdateProc\config.dat (PUP.Optional.Updater) -> Quarantined and deleted successfully.
    C:\Users\Beth\AppData\Roaming\DigitalSites\UpdateProc\prod.dat (PUP.Optional.Updater) -> Quarantined and deleted successfully.
    C:\Users\Beth\AppData\Roaming\DigitalSites\UpdateProc\STTL.DAT (PUP.Optional.Updater) -> Quarantined and deleted successfully.
    C:\Users\Beth\AppData\Roaming\DigitalSites\UpdateProc\TTL.DAT (PUP.Optional.Updater) -> Quarantined and deleted successfully.
    C:\Users\Beth\AppData\Local\mysearchdial-speeddial.crx (PUP.Optional.MySearchDial.A) -> Quarantined and deleted successfully.

    (end)

  13. #43
    Join Date
    Sep 2007
    Location
    Maine
    Posts
    656
    When I opened the last thing you asked I got all these shortcuts on desktop like games, search dial etc. I deleted them

  14. #44
    Join Date
    Sep 2007
    Location
    Maine
    Posts
    656
    I uninstalled them I meant.

  15. #45
    Join Date
    Dec 2007
    Location
    Daly City, CA
    Posts
    22,550
    When I opened the last thing you asked
    Which would be?

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •