The Joker was working on this until I arrived in India and since then, havent been able to connect to the forum
http://www.spywareinfoforum.com/topic/135371-trojan-generic/
Since starting the above thread over a week ago my internet wifi connections have been continually getting cut off...
so without any outside help I uninstalled firefox, installed chrome, uninstalled all the mystart files, uninstalled manycam and ran a few adw and jrt scans.
I will try to post them in order.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Starter x86
Ran by Bob on 18/12/2013 at 18:44:28.49
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ FireFox
Emptied folder: C:\Users\Bob\AppData\Roaming\mozilla\firefox\profiles\r45tt2hc.default\minidumps [3 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 18/12/2013 at 18:50:15.37
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
# AdwCleaner v3.015 - Report created 18/12/2013 at 18:53:21
# Updated 10/12/2013 by Xplode
# Operating System : Windows 7 Starter (32 bits)
# Username : Bob - BOB-PC
# Running from : C:\Users\Bob\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.7600.16385
-\\ Mozilla Firefox v23.0.1 (en-US)
[ File : C:\Users\Bob\AppData\Roaming\Mozilla\Firefox\Profiles\r45tt2hc.default\prefs.js ]
*************************
AdwCleaner[R0].txt - [2606 octets] - [16/12/2013 12:01:58]
AdwCleaner[R1].txt - [865 octets] - [18/12/2013 18:51:46]
AdwCleaner[S0].txt - [2703 octets] - [16/12/2013 12:06:47]
AdwCleaner[S1].txt - [787 octets] - [18/12/2013 18:53:21]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [846 octets] ##########
# AdwCleaner v3.015 - Report created 19/12/2013 at 00:05:29
# Updated 10/12/2013 by Xplode
# Operating System : Windows 7 Starter (32 bits)
# Username : Bob - BOB-PC
# Running from : C:\Users\Bob\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7854F00C-DC77-477E-A10E-603F48442D3B}
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.7600.16385
*************************
AdwCleaner[R0].txt - [2606 octets] - [16/12/2013 12:01:58]
AdwCleaner[R1].txt - [865 octets] - [18/12/2013 18:51:46]
AdwCleaner[R2].txt - [957 octets] - [19/12/2013 00:03:43]
AdwCleaner[S0].txt - [2703 octets] - [16/12/2013 12:06:47]
AdwCleaner[S1].txt - [925 octets] - [18/12/2013 18:53:21]
AdwCleaner[S2].txt - [881 octets] - [19/12/2013 00:05:29]
########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [940 octets] ##########
# AdwCleaner v3.015 - Report created 22/12/2013 at 09:53:25
# Updated 10/12/2013 by Xplode
# Operating System : Windows 7 Starter (32 bits)
# Username : Bob - BOB-PC
# Running from : C:\Users\Bob\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7854F00C-DC77-477E-A10E-603F48442D3B}
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.7600.16385
-\\ Google Chrome v31.0.1650.63
[ File : C:\Users\Bob\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [2606 octets] - [16/12/2013 12:01:58]
AdwCleaner[R1].txt - [865 octets] - [18/12/2013 18:51:46]
AdwCleaner[R2].txt - [957 octets] - [19/12/2013 00:03:43]
AdwCleaner[R3].txt - [1199 octets] - [22/12/2013 09:51:03]
AdwCleaner[S0].txt - [2703 octets] - [16/12/2013 12:06:47]
AdwCleaner[S1].txt - [925 octets] - [18/12/2013 18:53:21]
AdwCleaner[S2].txt - [1019 octets] - [19/12/2013 00:05:29]
AdwCleaner[S3].txt - [1123 octets] - [22/12/2013 09:53:25]
########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [1183 octets] ##########
I ran ADW an hour ago so didnt think it was worth following this step again
No extras txt was created
and I ran MBM an hour ago too. here is the log
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Database version: v2013.12.14.06
Windows 7 x86 NTFS
Internet Explorer 8.0.7600.16385
Bob :: BOB-PC [administrator]
22/12/2013 09:56:40
mbam-log-2013-12-22 (09-56-40).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 195494
Time elapsed: 15 minute(s), 52 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
(end)
Results of screen317's Security Check version 0.99.77
Windows 7 x86 [color=red](UAC is disabled!)[/color]
[color=red]Out of date service pack!![/color]
[u]``````````````Antivirus/Firewall Check:``````````````[/u]
Windows Firewall Enabled!
Microsoft Security Essentials
Antivirus up to date!
[u]`````````Anti-malware/Other Utilities Check:`````````[/u]
Malwarebytes Anti-Malware version 1.75.0.1300
CCleaner
Java 7 Update 15
[color=red]Java version out of Date![/color]
Adobe Flash Player 11.9.900.170
Adobe Reader XI
Google Chrome 31.0.1650.63
[u]````````Process Check: objlist.exe by Laurent````````[/u]
Microsoft Security Essentials msseces.exe
Windows Defender MSMpEng.exe
Microsoft Security Client Antimalware MsMpEng.exe
[u]`````````````````System Health check`````````````````[/u]
Total Fragmentation on Drive C: 6%
[u]````````````````````End of Log``````````````````````[/u]
I've tried 4 times to run Eset online scan but either the battery dies or the connection des before I get past 30%
The only problems it did find last week are below.
C:\Program Files\Adobe-Flash-Player.exe a variant of Win32/InstallCore.BH application
C:\Program Files\BitLordInstall.exe a variant of Win32/InstallCore.CU application
C:\Program Files\CamStudio 2.7\BunndleOfferManager.exe a variant of Win32/Bunndle application
↧