hosts files
|
|
AfterDawn Addict
|
29. March 2013 @ 17:28 |
Link to this message
|
Quote: HI,2oldGeek, here is scan did not see your reply until this morning when got home last nite i received my new video card and installed it is a
(GALAXY GEFORCE 61 TGS4HX2LTX GEFORCE GT 610 GC).
The PSU on this PC is supposed to be boarder line only 305 watts but it appears to be running alright time will tell,but will need to replace PSU.
You do not know how lucky you are that i finally learned how to copy&paste,thanks
No, you just don?t know how lucky you are to be able to copy/past LOL.
You have gathered a lot of malware and I am going to make some suggestions?
Remember these are My Suggestions, it?s Your Computer so, you can do what you feel is best for you.
Ad-Aware and SpyBot S&D are old technology that we were using in the 90?s and early 2000. They have outlived their usefulness IMHO.
I suggest you uninstall both Ad-Aware and SpyBotS&D. then install Avast HERE.
It has 8 different real-time shields to protect you.
Now uninstall Java. Unless you have some serious need for Java I would suggest leaving it off your computer. It is mostly for business and very few web sites use it. If you must install it, make sure that it is at least Java 7 update 17, like you have now.
Java Script is a different animal and runs on Firefox. You will be protected from bad script by the script shield in Avast.
? Double click OTL.exe to launch the program.
? Copy/Paste the contents of the code box below into the Custom Scans/Fixes box.
:OTL
O4 - HKLM..\Run: [SearchProtection] C:\Documents and Settings\All Users\Application Data\Search Protection\_run.bat File not found
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (Google Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoBandCustomize = 0
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1008\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1008\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1008\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1008\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O15 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\..Trusted Domains: comcast.net ([%20www] https in Trusted sites)
O15 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\..Trusted Domains: genieo.com ([yahoo] http in Trusted sites)
O15 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\..Trusted Domains: microsoft.com ([www.update] https in Trusted sites)
O15 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\..Trusted Ranges: Range1 ([*] in Trusted sites)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/fl...t/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
:Files
pconfig /flushdns /c
C:\Documents and Settings\All Users\Application Data\Search Protection
:Commands
[emptytemp]
[PURITY]
[emptyjava]
[EMPTYFLASH]
[createrestorepoint]
[reboot]
? Click the Run Fix button.
? OTL will now process the instructions.
? When finished a box will open asking you to open the fix log, click OK.
? The fix log will open.
? Copy/Paste the log in your next reply please.
Note: If necessary, OTL may re-boot your computer, or request that you do so, if it does, re-boot your computer. A log will be produced upon re-boot.
Any questions? How are you running when you finish this fix?
2oG

There are three kinds of men: The ones that learn by reading; The few who learn by observation;
The rest of them have to pee on the electric fence and find out for themselves...
This message has been edited since posting. Last time this message was edited on 29. March 2013 @ 20:19
|
Advertisement
|
  |
|
whiskey99
Member
|
29. March 2013 @ 19:30 |
Link to this message
|
HI,I did as you suggested and removed the three items SB&D,AD-AWARE,JAVA 7.
and downloaded avast,now will run OTL.
|
whiskey99
Member
|
29. March 2013 @ 19:48 |
Link to this message
|
HI,2oldGEEK,I have tried to download OTL,but all i an right now is an error 404.
Went BLEEPINGCOMPUTERS.COM. and could not download there either the download that i did the other nite is gone from my downloads will elsewhere on PC for it.
|
AfterDawn Addict
|
29. March 2013 @ 19:52 |
Link to this message
|
bleepingcomputers is bad. hold on and ill find one - also need to fix the file i see it double spaced for some reason. so hold on.

There are three kinds of men: The ones that learn by reading; The few who learn by observation;
The rest of them have to pee on the electric fence and find out for themselves...
|
AfterDawn Addict
|
29. March 2013 @ 20:05 |
Link to this message
|
OK, I fixed the fix file.
try to download OTL from here:
Download OTL by Old Timer and save it to your Desktop.

There are three kinds of men: The ones that learn by reading; The few who learn by observation;
The rest of them have to pee on the electric fence and find out for themselves...
|
whiskey99
Member
|
29. March 2013 @ 20:10 |
Link to this message
|
Well i got it to download,but unclear about your instructions should i be able to just click the RUNFIX button and it will run a scan or what should i be looking for,maybe what you may have done from your end made it work as have ready to go,thanks
|
whiskey99
Member
|
29. March 2013 @ 20:16 |
Link to this message
|
OK, I have tried to run the RUN FIX button but it is telling me there is no file to run.
Should i run a scan first.
|
AfterDawn Addict
|
29. March 2013 @ 20:21 |
Link to this message
|
first copy the fix in the CODE box then paste it into the custom scan/fixes box on OTL.
? Double click OTL.exe to launch the program.
? Copy/Paste the contents of the code box below into the Custom Scans/Fixes box.
:OTL
O4 - HKLM..\Run: [SearchProtection] C:\Documents and Settings\All Users\Application Data\Search Protection\_run.bat File not found
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (Google Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoBandCustomize = 0
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1008\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1008\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1008\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKU\S-1-5-21-682003330-1592454029-839522115-1008\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O15 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\..Trusted Domains: comcast.net ([%20www] https in Trusted sites)
O15 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\..Trusted Domains: genieo.com ([yahoo] http in Trusted sites)
O15 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\..Trusted Domains: microsoft.com ([www.update] https in Trusted sites)
O15 - HKU\S-1-5-21-682003330-1592454029-839522115-1003\..Trusted Ranges: Range1 ([*] in Trusted sites)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/fl...t/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
:Files
pconfig /flushdns /c
C:\Documents and Settings\All Users\Application Data\Search Protection
:Commands
[emptytemp]
[PURITY]
[emptyjava]
[EMPTYFLASH]
[createrestorepoint]
[reboot]
? Click the Run Fix button.
? OTL will now process the instructions.
? When finished a box will open asking you to open the fix log, click OK.
? The fix log will open.
? Copy/Paste the log in your next reply please.
Note: If necessary, OTL may re-boot your computer, or request that you do so, if it does, re-boot your computer. A log will be produced upon re-boot.

There are three kinds of men: The ones that learn by reading; The few who learn by observation;
The rest of them have to pee on the electric fence and find out for themselves...
This message has been edited since posting. Last time this message was edited on 30. March 2013 @ 10:19
|
AfterDawn Addict
|
29. March 2013 @ 20:24 |
Link to this message
|

There are three kinds of men: The ones that learn by reading; The few who learn by observation;
The rest of them have to pee on the electric fence and find out for themselves...
|
AfterDawn Addict
|
29. March 2013 @ 20:26 |
Link to this message
|
did you get it and understand?
|
whiskey99
Member
|
29. March 2013 @ 20:32 |
Link to this message
|
HI,I am missing something here sent reply but looks like it take heres another one.
should i run a scan before clicking runfix button as it is telling there is no file to fix.
|
AfterDawn Addict
|
29. March 2013 @ 20:34 |
Link to this message
|
Just reboot - clear it up and try again

There are three kinds of men: The ones that learn by reading; The few who learn by observation;
The rest of them have to pee on the electric fence and find out for themselves...
|
AfterDawn Addict
|
29. March 2013 @ 20:58 |
Link to this message
|
did you figure it out???
|
whiskey99
Member
|
29. March 2013 @ 21:58 |
Link to this message
|
Sorry it is still telling me that it can not do it because there is no file to run,i have OTL in my lower task and can pull it up click on RUNFIX nothing happens is there a step that is missing in process and this is after reboot.
|
whiskey99
Member
|
30. March 2013 @ 04:19 |
Link to this message
|
Here is what it says word for word.
No fix has been provided.
Click OK to load it from a file or CANCEL.
This is all i get when i try to run OTL.
|
AfterDawn Addict
|
30. March 2013 @ 10:16 |
Link to this message
|
whiskey99,
When you open OTL there is a box at the bottom for you to paste in -Custom Scans/Fixes-
The following is the fix that I want you to copy and paste into that box. after you paste it in, then click the Run Fix Button.. Do Not click any Scan Buttons.... It will run the Fix you paste in and produce a Log that I will need to see...
Go back here to get the Fix in the code box:
http://forums.afterdawn.com/thread_jump.cfm/957756/5847231
2oG

There are three kinds of men: The ones that learn by reading; The few who learn by observation;
The rest of them have to pee on the electric fence and find out for themselves...
This message has been edited since posting. Last time this message was edited on 30. March 2013 @ 10:30
|
AfterDawn Addict
|
30. March 2013 @ 10:36 |
Link to this message
|
Originally posted by whiskey99: Here is what it says word for word.
No fix has been provided.
Click OK to load it from a file or CANCEL.
This is all i get when i try to run OTL.
Before OTL will run a fix you must paste one in. You must copy the fix from the code box I have sent and then paste it into the box in OTL and then click the Run Fix Button.
2oG

There are three kinds of men: The ones that learn by reading; The few who learn by observation;
The rest of them have to pee on the electric fence and find out for themselves...
|
AfterDawn Addict
|
30. March 2013 @ 15:31 |
Link to this message
|
whiskey99,
did you figure out how to run the fix in OTL???
you really need to run it to fix some bad spots in your computer.
2oG

There are three kinds of men: The ones that learn by reading; The few who learn by observation;
The rest of them have to pee on the electric fence and find out for themselves...
|
whiskey99
Member
|
30. March 2013 @ 15:55 |
Link to this message
|
HI,2oldGeek,I do not know why but when i right click all i was getting was a complete list of what you can do including "select all" which is not what i want,i finally got it to bring up the "copy" part then i think what happened for some reason i was logged out.
I have logged back in and will try to get the copy to work,but i thought that once you had
something copied it stayed copied until you used it.
When i got the copy to come up i went OTL and tried to paste it in but it did not work and i think that is where i got logged out.
|
whiskey99
Member
|
30. March 2013 @ 16:07 |
Link to this message
|
HI,I think it worked this time.
|
whiskey99
Member
|
30. March 2013 @ 16:08 |
Link to this message
|
All processes killed
========== OTL ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SearchProtection not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}\ deleted successfully.
C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll moved successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDrives not found.
Registry key HKEY_USERS\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.
Registry key HKEY_USERS\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Infodelivery\ not found.
Registry key HKEY_USERS\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
Registry value HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveAutoRun deleted successfully.
Registry key HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Infodelivery\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Restrictions\ not found.
Registry value HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun not found.
Registry value HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveAutoRun not found.
Registry key HKEY_USERS\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.
Registry key HKEY_USERS\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Infodelivery\ not found.
Registry key HKEY_USERS\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Restrictions\ not found.
Registry value HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry key HKEY_USERS\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.
Registry key HKEY_USERS\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Infodelivery\ not found.
Registry key HKEY_USERS\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Restrictions\ not found.
Registry value HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry key HKEY_USERS\S-1-5-21-682003330-1592454029-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-682003330-1592454029-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Infodelivery\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-682003330-1592454029-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-682003330-1592454029-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_USERS\S-1-5-21-682003330-1592454029-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoBandCustomize deleted successfully.
Registry value HKEY_USERS\S-1-5-21-682003330-1592454029-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveAutoRun deleted successfully.
Registry value HKEY_USERS\S-1-5-21-682003330-1592454029-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDrives not found.
Registry key HKEY_USERS\S-1-5-21-682003330-1592454029-839522115-1008\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.
Registry key HKEY_USERS\S-1-5-21-682003330-1592454029-839522115-1008\Software\Policies\Microsoft\Internet Explorer\Infodelivery\ not found.
Registry key HKEY_USERS\S-1-5-21-682003330-1592454029-839522115-1008\Software\Policies\Microsoft\Internet Explorer\Restrictions\ not found.
Registry value HKEY_USERS\S-1-5-21-682003330-1592454029-839522115-1008\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry key HKEY_USERS\S-1-5-21-682003330-1592454029-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\comcast.net\%20www\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-682003330-1592454029-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\genieo.com\yahoo\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-682003330-1592454029-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\microsoft.com\www.update\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-682003330-1592454029-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\Range1\\* deleted successfully.
Invalid CLSID key: *
Starting removal of ActiveX control {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
C:\WINDOWS\Downloaded Program Files\erma.inf moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found.
Starting removal of ActiveX control {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
C:\WINDOWS\Downloaded Program Files\gp.inf not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
File ptytemp] not found.
File RITY] not found.
File ptyjava] not found.
File PTYFLASH] not found.
File eaterestorepoint] not found.
File boot] not found.
OTL by OldTimer - Version 3.2.69.0 log created on 03302013_125927
Files\Folders moved on Reboot...
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
|
AfterDawn Addict
|
30. March 2013 @ 17:41 |
Link to this message
|
well, I think you got it.. There are some mistakes that I was having trouble getting the fix to go in right but, I think we are OK.
I will look the Log over and maybe fix some little stuff.. So, don't do anything until I get back with you.
In the meantime, let me know how it's running......
2oG

There are three kinds of men: The ones that learn by reading; The few who learn by observation;
The rest of them have to pee on the electric fence and find out for themselves...
|
AfterDawn Addict
|
30. March 2013 @ 18:06 |
Link to this message
|
whiskey99,
This will probably be the final scan to clean up a few missed Bad Guys.
* Go here to run an online scanner from ESET.
? Note: You will need to use Internet explorer for this scan
? Tick the box next to YES, I accept the Terms of Use.
? Click Start
? When asked, allow the activex control to install
? Click Start
? Make sure that the option Remove found threats is UNchecked and the option Scan unwanted applications is checkmarked.
? Click Scan
? Wait for the scan to finish
? Copy and paste results (if any items was found) here.
And let me know how your computer is running? You only have 2GB Ram so you really don?t need all of the 20 programs that are starting and running in memory.
Run a HijackThis Log and post it for me and we will stop some of those programs that don?t need to be running all the time. That will help speed you up a little?
2oG

There are three kinds of men: The ones that learn by reading; The few who learn by observation;
The rest of them have to pee on the electric fence and find out for themselves...
|
whiskey99
Member
|
31. March 2013 @ 02:07 |
Link to this message
|
HI,I finally got the ESET scan done but i only have two choices clip board or .txt file
for the life of me i can not get it to copy so i can paste in reply probably something
silly&stupid at least i have not deleted them by accident,nothing worked the way i thought it would.
I thought i could drag cursor across what was found and copy but its not working.
|
Advertisement
|
  |
|
whiskey99
Member
|
31. March 2013 @ 02:47 |
Link to this message
|
There was 4 items in the last scan from ESET that i noticed was COMODO that i have trying to get rid of for a while but never could find it,i lost the scan can i just run another scan and delete the 5 items and then go on to HIJACKTHIS scan and copy&paste to you.
|