WiredWX Hobby Weather ToolsLog in

 


descriptionFLV Tube Player Help needed Logs included - Page 2 EmptyRe: FLV Tube Player Help needed Logs included

more_horiz
Ok I followed the instructions here is the log that was created:


========== OTL ==========
Registry value HKEY_USERS\S-1-5-21-2962178066-346337292-3159135640-1002\Software\Microsoft\Windows\CurrentVersion\Run\\hxZ2k.exe deleted successfully.
C:\Users\James\AppData\Local\Temp\hxZ2k.exe moved successfully.

OTL by OldTimer - Version 3.2.17.1 log created on 10252010_191607

descriptionFLV Tube Player Help needed Logs included - Page 2 EmptyRe: FLV Tube Player Help needed Logs included

more_horiz
Please download and run this tool.

Download Malwarebytes' Anti-Malware from Here

Double Click mbam-setup.exe to install the application.

  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
Note:
If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts.
Click OK to either and let MBAM proceed with the disinfection process.
If asked to restart the computer, please do so immediately.


Post the contents of the MBAM Log.

descriptionFLV Tube Player Help needed Logs included - Page 2 EmptyRe: FLV Tube Player Help needed Logs included

more_horiz
Here is the MBAM log:


Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Database version: 4948

Windows 6.1.7600 (Safe Mode)
Internet Explorer 8.0.7600.16385

10/25/2010 7:56:07 PM
mbam-log-2010-10-25 (19-56-07).txt

Scan type: Quick scan
Objects scanned: 150480
Time elapsed: 2 minute(s), 33 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 6

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
C:\Users\James\AppData\Local\Temp\update_205.exe (Adware.Dropper) -> Quarantined and deleted successfully.
C:\Users\James\AppData\Local\Temp\update_213.exe (Adware.Dropper) -> Quarantined and deleted successfully.
C:\Users\James\AppData\Local\Temp\update_285.exe (Adware.Dropper) -> Quarantined and deleted successfully.
C:\Users\James\AppData\Local\Temp\update_646.exe (Adware.Dropper) -> Quarantined and deleted successfully.
C:\Users\James\AppData\Local\Temp\update_849.exe (Adware.Dropper) -> Quarantined and deleted successfully.
C:\Users\James\AppData\Local\Temp\update_944.exe (Adware.Dropper) -> Quarantined and deleted successfully.

descriptionFLV Tube Player Help needed Logs included - Page 2 EmptyRe: FLV Tube Player Help needed Logs included

more_horiz
Ok so the issue still exists some one please help.

descriptionFLV Tube Player Help needed Logs included - Page 2 EmptyRe: FLV Tube Player Help needed Logs included

more_horiz
Hello.

  • Download combofix from here
    Link 1
1. If you are using Firefox, make sure that your download settings are as follows:

* Tools->Options->Main tab
* Set to "Always ask me where to Save the files".

2. During the download, rename Combofix to svchost as follows:

FLV Tube Player Help needed Logs included - Page 2 CF_download_FF

FLV Tube Player Help needed Logs included - Page 2 2aflf5z

3. It is important you rename Combofix during the download, but not after.
4. Please do not rename Combofix to other names, but only to the one indicated.
5. Close any open browsers.
6. We need to disable your local AV (Anti-virus) before running Combofix.

  • See HERE for how to disable your AV.
  • Double click on svchost.exe.
  • Follow the prompts. NOTE:
  • Allow combofix to run
  • Post C:\combofix.txt back here.

    Note:
    Do not mouse click combofix's window whilst it's running. That may cause it to stall.

descriptionFLV Tube Player Help needed Logs included - Page 2 EmptyRe: FLV Tube Player Help needed Logs included

more_horiz
privacy_tip Permissions in this forum:
You cannot reply to topics in this forum