GeekPolice Tech TutorialsLog in

 

Share

descriptionRe: Malware detected... How to Clean up further.

more_horiz
Following is the ESET scan:

C:\AdwCleaner\Quarantine\C\Program Files\DefaultTab\DefaultTab.crx.vir a variant of Win32/Toolbar.DefaultTab.C potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\New User\AppData\Local\CRE\cmgpfphnpiiccdfhhcdalfgackcikmgh.crx.vir a variant of Win32/Toolbar.Conduit.AH potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Windows\system32\jmdp\SweetNT.crx.vir Win32/SweetIM.J potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Windows\system32\WNLT\Installation\NTSetup.exe.vir Win32/SweetIM.J potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Windows\system32\WNLT\Installation\SKSetup.exe.vir Win32/SweetIM.J potentially unwanted application deleted - quarantined
C:\Users\New User\Downloads\Player-Chrome (2).exe a variant of Win32/AdWare.iBryte.AA application cleaned by deleting - quarantined
C:\Users\New User\Downloads\Player-Chrome (3).exe a variant of Win32/AdWare.iBryte.AA application cleaned by deleting - quarantined
C:\Users\New User\Downloads\Player-Chrome (4).exe a variant of Win32/AdWare.iBryte.AA application cleaned by deleting - quarantined
C:\Users\New User\Downloads\Player-Chrome (5).exe a variant of Win32/AdWare.iBryte.AS application cleaned by deleting - quarantined
C:\Users\New User\Downloads\Player-Chrome (6).exe a variant of Win32/AdWare.Agent.NNN application cleaned by deleting - quarantined
C:\Users\New User\Downloads\Player-Chrome.exe a variant of Win32/AdWare.iBryte.AI application cleaned by deleting - quarantined
C:\Users\New User\Downloads\RealNWTSNG.zip.exe Win32/InstalleRex.K potentially unwanted application deleted - quarantined
C:\Users\New User\Downloads\Rick.exe a variant of Win32/InstalleRex.P potentially unwanted application deleted - quarantined
C:\Users\New User\Downloads\setup (1).exe a variant of Win32/Bundlore.B potentially unwanted application deleted - quarantined
C:\Users\New User\Downloads\setup (2).exe a variant of Win32/Bundlore.B potentially unwanted application deleted - quarantined
C:\Users\New User\Downloads\setup.exe a variant of Win32/Bundlore.B potentially unwanted application deleted - quarantined
C:\Users\New User\Downloads\Setup_V.171613690c.exe Win32/DomaIQ.L potentially unwanted application deleted - quarantined
C:\Users\New User\Downloads\SharebeastDownload (1).exe Win32/InstalleRex.J potentially unwanted application deleted - quarantined
C:\Users\New User\Downloads\T I - 24's.exe a variant of Win32/4Shared.C potentially unwanted application deleted - quarantined
C:\Users\New User\Downloads\Trap_Lord-atrilli.net.zip.exe Win32/InstalleRex.J potentially unwanted application deleted - quarantined
C:\Users\New User\Downloads\Trey Songz - Fades Away.exe a variant of Win32/4Shared.P potentially unwanted application deleted - quarantined
C:\Users\New User\Downloads\trzC12F.tmp Win32/InstalleRex.I potentially unwanted application deleted - quarantined
C:\Users\New User\Downloads\Unconfirmed 702045.crdownload a variant of Win32/AirAdInstaller.A potentially unwanted application deleted - quarantined
C:\Users\New User\Downloads\Unconfirmed 830230.crdownload a variant of Win32/AirAdInstaller.A potentially unwanted application deleted - quarantined
C:\Users\New User\Downloads\Update (1).exe a variant of Win32/Adware.iBryte.G application cleaned by deleting - quarantined
C:\Users\New User\Downloads\update (2).exe a variant of Win32/AdWare.iBryte.AA application cleaned by deleting - quarantined
C:\Users\New User\Downloads\Update.exe a variant of Win32/Adware.iBryte.G application cleaned by deleting - quarantined
C:\Users\New User\Downloads\{filedata}.exe a variant of Win32/AdWare.iBryte.Q application cleaned by deleting - quarantined
C:\Users\New User\Music\iTunes\iTunes Media\Automatically Add to iTunes\Not Added\2013-05-11 20.53.05\trz9746.tmp Win32/InstalleRex.I potentially unwanted application deleted - quarantined
C:\Users\New User\Music\iTunes\iTunes Media\Automatically Add to iTunes\Not Added\2013-05-15 18.41.49\09 kevin little - turn me on.exe Win32/Toolbar.Conduit.S potentially unwanted application deleted - quarantined
C:\Users\New User\Music\iTunes\iTunes Media\Automatically Add to iTunes\Not Added\2013-05-15 18.41.49\t-pain - i'm sprung.exe Win32/Toolbar.Conduit.S potentially unwanted application deleted - quarantined
C:\Windows\Installer\1af60197.msi a variant of Win32/SweetIM.L potentially unwanted application deleted - quarantined
C:\Windows\Installer\3ac372.msi a variant of Win32/Toolbar.Babylon.Q potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.27_0\plugins\npDefaultTabSearch.dll a variant of Win32/Toolbar.DefaultTab.C potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc\1.1.29_0\plugins\npDefaultTabSearch.dll a variant of Win32/Toolbar.DefaultTab.C potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\DefaultTabBHO.dll a variant of Win32/Toolbar.DefaultTab.B potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\DefaultTabStart.exe a variant of Win32/Toolbar.DefaultTab.B potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\DefaultTabStart64.exe Win64/Toolbar.DefaultTab.B potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\DefaultTabUninstaller.exe Win32/Toolbar.DefaultTab.E potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\DefaultTabWrap.dll a variant of Win32/Toolbar.DefaultTab.B potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\DefaultTabWrap64.dll Win64/Toolbar.DefaultTab.B potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\trz146.tmp Win32/Toolbar.DefaultTab.E potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\trz5A31.tmp Win32/Toolbar.DefaultTab.E potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\trz7C60.tmp Win32/Toolbar.DefaultTab.E potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\trz88D8.tmp Win32/Toolbar.DefaultTab.E potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\trz9950.tmp Win32/Toolbar.DefaultTab.E potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\trzB2BC.tmp Win32/Toolbar.DefaultTab.E potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\trzB301.tmp Win32/Toolbar.DefaultTab.E potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\trzBD97.tmp Win32/Toolbar.DefaultTab.E potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\trzE8C6.tmp Win32/Toolbar.DefaultTab.E potentially unwanted application deleted - quarantined
C:\Windows\System32\config\systemprofile\AppData\Roaming\defaulttab\defaulttab\uninstalldt.exe Win32/Toolbar.DefaultTab.E potentially unwanted application deleted - quarantined
C:\Windows\System32\mjcm\SweetNT.crx Win32/SweetIM.J potentially unwanted application deleted - quarantined

descriptionRe: Malware detected... How to Clean up further.

more_horiz
Good, how's your computer running now? Any other issues?

descriptionRe: Malware detected... How to Clean up further.

more_horiz
It seems to be running fine now. Thank you so much for all your help! Thank You!

descriptionRe: Malware detected... How to Clean up further.

more_horiz
Ok, let's do some clean up and we'll be done.

This step will remove all cleaning tools we used, it'll reset restore points (so you won't get reinfected by accidentally using some older restore point) and it'll make some other minor adjustments...
This is a very crucial step so make sure you don't skip it.
Download DelFix by Xplode to your desktop. Delfix will delete all the used tools and logfiles.

Double-click Delfix.exe to start the tool.
Make sure the following items are checked:

  • Activate UAC (optional; some users prefer to keep it off)
  • Remove disinfection tools
  • Create Registry backup
  • Purge System Restore Points
  • Re-set system settings

Now click "Run" and wait patiently.
Once finished a logfile will be created. You don't have to attach it to your next reply.
******************************************
Click Start> Computer> right click the C Drive and choose Properties> enter
Click Disk Cleanup from there.



Click OK on the Disk Cleanup Screen.
Click Yes on the Confirmation screen.



This runs the Disk Cleanup utility along with other selections if you have chosen any. (if you had a lot System Restore points, you will see a significant change in the free space in C drive)
****************************************
I suggest using WOT - Web of Trust . WOT is a free Internet security addon for your browser. It will keep you safe from online scams, identity theft, spyware, spam, viruses and unreliable shopping sites. WOT warns you before you interact with a risky website. It's easy and it's free.

Check out Keeping Yourself Safe On The Web for tips and free tools to help keep you safe in the future.

Also see Slow Computer? It may not be Malware for free cleaning/maintenance tools to help keep your computer running smoothly.
Safe Surfing!
Permissions in this forum:
You cannot reply to topics in this forum