WiredWX Christian Hobby Weather Tools
Would you like to react to this message? Create an account in a few clicks or log in to continue.

WiredWX Christian Hobby Weather ToolsLog in

 


descriptionGreen dot Moneypack please help - Page 1 EmptyRe: Green dot Moneypack please help

more_horiz
i must not have let it finish completely. I'll redo it now

descriptionGreen dot Moneypack please help - Page 1 EmptyRe: Green dot Moneypack please help

more_horiz
aswMBR version 0.9.9.1707 Copyright(c) 2011 AVAST Software
Run date: 2013-01-26 21:46:06
-----------------------------
21:46:06.917 OS Version: Windows x64 6.1.7600
21:46:06.917 Number of processors: 2 586 0x170A
21:46:06.919 ComputerName: JOELO-PC UserName: Joelo
21:46:07.775 Initialize success
21:46:08.134 AVAST engine defs: 13012601
21:46:10.761 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
21:46:10.763 Disk 0 Vendor: SAMSUNG_ 2AJ1 Size: 305245MB BusType: 3
21:46:10.830 Disk 0 MBR read successfully
21:46:10.834 Disk 0 MBR scan
21:46:10.838 Disk 0 Windows 7 default MBR code
21:46:10.858 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 15360 MB offset 2048
21:46:10.883 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 31459328
21:46:10.897 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 102400 MB offset 31664128
21:46:10.924 Disk 0 Partition 4 00 07 HPFS/NTFS NTFS 187382 MB offset 241379328
21:46:10.997 Disk 0 scanning C:\Windows\system32\drivers
21:46:30.920 Service scanning
21:46:47.372 Modules scanning
21:46:47.387 Disk 0 trace - called modules:
21:46:47.759 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys hal.dll
21:46:47.769 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80047ba060]
21:46:47.779 3 CLASSPNP.SYS[fffff8800103b43f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8004717050]
21:46:48.280 AVAST engine scan C:\Windows
21:47:00.500 AVAST engine scan C:\Windows\system32
21:54:23.628 AVAST engine scan C:\Windows\system32\drivers
21:54:37.217 AVAST engine scan C:\Users\Joelo
22:05:03.064 File: C:\Users\Joelo\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\29\1d30e79d-5f7c565a **INFECTED** Win32:LockScreen-QE [Trj]
22:10:57.013 AVAST engine scan C:\ProgramData
22:11:39.596 Scan finished successfully
22:11:49.013 Verifying
22:11:59.047 Disk 0 Windows 601 MBR fixed successfully
22:25:04.480 Verifying
22:25:14.522 Disk 0 Windows 601 MBR fixed successfully
22:25:27.425 Disk 0 MBR has been saved successfully to "C:\Users\Joelo\Desktop\MBR.dat"
22:25:27.432 The log file has been saved successfully to "C:\Users\Joelo\Desktop\aswMBR.txt"

descriptionGreen dot Moneypack please help - Page 1 EmptyRe: Green dot Moneypack please help

more_horiz
hopefully this worked this time, but I'm not sure. you can see at the bottom of the log scan finished @ 22:11:39.596 then i hit fixmbr and @22:11:59.047 (20mins later) it says .... fixed successfully. I let it sit for almost 15mins and hit fixmbr again just to make sure. It ran then i saved the log. Also, just so you're aware the second time I ran the program i just double clicked and hit scan. I forgot to run it as admin. a little time went buy and I got a blue screen that said some stuff and shutdown the computer. after the restart i ran it as admin and it worked which produced this last log.

descriptionGreen dot Moneypack please help - Page 1 EmptyRe: Green dot Moneypack please help

more_horiz
hopefully this worked this time, but I'm not sure. you can see at the bottom of the log scan finished @ 22:11:39.596 then i hit fixmbr and @22:11:59.047 (20mins later) it says .... fixed successfully. I let it sit for almost 15mins and hit fixmbr again just to make sure. It ran then i saved the log. Also, just so you're aware the second time I ran the program i just double clicked and hit scan. I forgot to run it as admin. a little time went buy and I got a blue screen that said some stuff and shutdown the computer. after the restart i ran it as admin and it worked which produced this last log.

descriptionGreen dot Moneypack please help - Page 1 EmptyRe: Green dot Moneypack please help

more_horiz
sorry.... also, for the first time since the beginning of working with you, my computer is acting a little funny this morning. If that means anythin at all? thanks

descriptionGreen dot Moneypack please help - Page 1 EmptyRe: Green dot Moneypack please help

more_horiz
my computer is acting a little funny this morning.

Please explain.

I'd like to scan your machine with ESET OnlineScan

•Hold down Control and click on the following link to open ESET OnlineScan in a new window.
ESET OnlineScan

•Click the Green dot Moneypack please help - Page 1 EsetOnline button.
•For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)

  • Click on Green dot Moneypack please help - Page 1 EsetSmartInstall to download the ESET Smart Installer. Save it to your desktop.
  • Double click on the Green dot Moneypack please help - Page 1 EsetSmartInstallDesktopIcon-1 icon on your desktop.

•Check Green dot Moneypack please help - Page 1 EsetAcceptTerms
•Click the Green dot Moneypack please help - Page 1 EsetStart button.
•Accept any security warnings from your browser.
•Check Green dot Moneypack please help - Page 1 EsetScanArchives
•Push the Start button.
•ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
•When the scan completes, push Green dot Moneypack please help - Page 1 EsetListThreats
•Push Green dot Moneypack please help - Page 1 EsetExport, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
•Push the Green dot Moneypack please help - Page 1 EsetBack button.
•Push Green dot Moneypack please help - Page 1 EsetFinish
A log file will be saved here: C:\Program Files\ESET\ESET Online Scanner\log.txt

descriptionGreen dot Moneypack please help - Page 1 EmptyRe: Green dot Moneypack please help

more_horiz
its been working fine all day except for this morning when it was going a little slow. ill run the scan now and post it tonight or tomorrow morning depending on how long it takes. thanks

descriptionGreen dot Moneypack please help - Page 1 EmptyRe: Green dot Moneypack please help

more_horiz
C:\Qoobox\Quarantine\C\Users\Joelo\amapogvjszacqvefibnqvohco.exe.vir a variant of Win32/Kryptik.ASHG trojan cleaned by deleting - quarantined
C:\Users\Joelo\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\29\1d30e79d-5f7c565a a variant of Win32/Kryptik.ASVC trojan cleaned by deleting - quarantined
C:\Users\Joelo\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\51\30da5fb3-6bf8484c Java/Exploit.CVE-2012-1723.GE trojan deleted - quarantined

ESETSmartInstaller@High as CAB hook log:
OnlineScanner64.ocx - registred OK
OnlineScanner.ocx - registred OK

descriptionGreen dot Moneypack please help - Page 1 EmptyRe: Green dot Moneypack please help

more_horiz
Please tell me how your computer is working before we do some cleanup.

descriptionGreen dot Moneypack please help - Page 1 EmptyRe: Green dot Moneypack please help

more_horiz
computer is working well. moving right along... everything seems fine

descriptionGreen dot Moneypack please help - Page 1 EmptyRe: Green dot Moneypack please help

more_horiz
Ok. Don't forget to defrag your harddrive.

To uninstall ComboFix


  • Click the Start button. Click Run. For Vista: type in Run in the Start search, and click on Run in the results pane.
  • In the field, type in ComboFix /uninstall


Green dot Moneypack please help - Page 1 Combofix_uninstall_image

(Note: Make sure there's a space between the word ComboFix and the forward-slash.)


  • Then, press Enter, or click OK.
  • This will uninstall ComboFix, delete its folders and files, hides System files and folders, and resets System Restore.

**************************************************
Click Start> Computer> right click the C Drive and choose Properties> enter
Click Disk Cleanup from there.

Green dot Moneypack please help - Page 1 Diskcleanup2

Click OK on the Disk Cleanup Screen.
Click Yes on the Confirmation screen.

Green dot Moneypack please help - Page 1 Diskcleanup

This runs the Disk Cleanup utility along with other selections if you have chosen any. (if you had a lot System Restore points, you will see a significant change in the free space in C drive)
***************************************************
Go to Microsoft Windows Update and get all critical updates.

----------

I suggest using WOT - Web of Trust. WOT is a free Internet security addon for your browser. It will keep you safe from online scams, identity theft, spyware, spam, viruses and unreliable shopping sites. WOT warns you before you interact with a risky website. It's easy and it's free.

SpywareBlaster- Secure your Internet Explorer to make it harder for ActiveX programs to run on your computer. Also stop certain cookies from being added to your computer when running Mozilla based browsers like Firefox.
* Using SpywareBlaster to protect your computer from Spyware and Malware
* If you don't know what ActiveX controls are, see here

Protect yourself against spyware using the Immunize feature in Spybot - Search & Destroy. Guide: Use Spybot's Immunize Feature to prevent spyware infection in real-time. Note: To ensure you have the latest Immunizations always update Spybot - Search & Destroy before Immunizing. Spybot - Search & Destroy FAQ

Check out Keeping Yourself Safe On The Web for tips and free tools to help keep you safe in the future.

Also see Slow Computer? It may not be Malware for free cleaning/maintenance tools to help keep your computer running smoothly.
Safe Surfing!

descriptionGreen dot Moneypack please help - Page 1 EmptyRe: Green dot Moneypack please help

more_horiz
all set and running smooth. Thank you for all the help

descriptionGreen dot Moneypack please help - Page 1 EmptyRe: Green dot Moneypack please help

more_horiz
You're welcome. I will lock this thread. If you need it re-opened, please send me a pm.

descriptionGreen dot Moneypack please help - Page 1 EmptyRe: Green dot Moneypack please help

more_horiz
privacy_tip Permissions in this forum:
You cannot reply to topics in this forum