Quantcast
Channel: Tech Support Guy - Virus & Other Malware Removal
Viewing all 4746 articles
Browse latest View live

Zym.tollbahsuburan.com

$
0
0
Zym.tollbahsuburan.com
How can I get rid of this on my neice laptop pc. Superantispyware & Malwarebytes do not get rid of it.
thank you for your help

Request for Assistance Dealing with "Trojan Gen.2" (Windows 7 Pro 64 Bit)

$
0
0
Hello:


Having continuing issues with what Norton Internet Security is reporting to be "Trojan Gen.2". Norton appeared to have made an initial run at removing it, but every 6-12 hours I'm getting a Norton pop-up warning in lower right of screen: "autoprotect is processing security risk Trojan.gen.2". Additionally, had a first BSOD overnight that may be related to this virus. A Norton quick scan also did not locate or remedy the problem. Computer seems to be running at normal speed and capability with exception of Norton pop-ups?


I am running Windows 7 via Bootcamp on a Mac Pro, and SysInfo cut and paste follows. Would greatly appreciate assistance in this regard.


Thanks in advance...


----------------------------------------------------------------------


Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows 7 Professional, Service Pack 1, 64 bit
Processor: Intel(R) Xeon(R) CPU X5570 @ 2.93GHz, Intel64 Family 6 Model 26 Stepping 5
Processor Count: 16
RAM: 8180 Mb
Graphics Card: ATI Radeon HD 4800 Series, 512 Mb
Hard Drives: C: Total - 1907527 MB, Free - 421114 MB; E: Total - 609660 MB, Free - 141687 MB; F: Total - 3815245 MB, Free - 527047 MB; H: Total - 3815431 MB, Free - 2633593 MB; J: Total - 4769299 MB, Free - 1632306 MB; K: Total - 1907599 MB, Free - 20637 MB; M: Total - 3815439 MB, Free - 957668 MB; N: Total - 3815431 MB, Free - 982838 MB; O: Total - 3815431 MB, Free - 1014699 MB; Q: Total - 4769299 MB, Free - 892902 MB; R: Total - 3815431 MB, Free - 967855 MB; S: Total - 3815431 MB, Free - 218422 MB; T: Total - 3815431 MB, Free - 156489 MB; U: Total - 4769299 MB, Free - 24181 MB; V: Total - 3815439 MB, Free - 45846 MB; W: Total - 4769299 MB, Free - 299503 MB; Y: Total - 4769299 MB, Free - 935804 MB; Z: Total - 2861554 MB, Free - 880516 MB;
Motherboard: Apple Inc., Mac-F221BEC8
Antivirus: Norton Internet Security, Updated and Enabled

Problem Loading Wikipedia and other websites

$
0
0
Approximately one week ago, I noticed that no Wikipedia articles would not load under any circumstances. More suspiciously, yesterday when I tried to search this problem, the Google search links would not load (time out) that were related to this problem. I have tried different web browsers (Internet Explorer, Chrome), anti viral software (Malewarebytes, TDkiller, AVG, combo killer, CCleaner, Rootkit scan, SpybotS&D) and shutting down my firewall. I have also tried starting computer in save mode and running Malwarebytes, and SpybotS&D. After these solutions did not work, I did a windows restore to Sept. 30th with the problem persisting. Although these programs found some malware, I believe that my computer is still infected. Wikipedia will still not load, it times out, and even if I do a Google search for a specific article it continues to time out. Just now, I was just trying to download Hijack This from sourceforge.net (first google link) and it suspiciously timed out. I had to download from a mirror site.

Here is my basic computer information

Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft® Windows Vista™ Home Basic, Service Pack 2, 32 bit
Processor: Pentium(R) Dual-Core CPU E5200 @ 2.50GHz, x64 Family 6 Model 23 Stepping 6
Processor Count: 2
RAM: 3060 Mb
Graphics Card: Intel(R) G33/G31 Express Chipset Family, 320 Mb
Hard Drives: C: Total - 290204 MB, Free - 206485 MB; D: Total - 14999 MB, Free - 14058 MB;
Motherboard: Dell Inc., 0T656F
Antivirus: Microsoft Security Essentials, Disabled


Also, I have provided a Hijack this log for analysis.


Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 3:17:43 PM, on 10/4/2014
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16575)


Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files\HP\HP UT LEDM\bin\hppusg.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Real\RealPlayer\Update\realsched.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\MozyHome\mozystat.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\Allan\Dropbox\Downloads\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: MSN Toolbar - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - C:\Program Files\MSN\Toolbar\3.0.1203.0\msneshellx.dll
O4 - HKLM\..\Run: [PDVDDXSrv] "C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
O4 - HKLM\..\Run: [HPUsageTrackingLEDM] "C:\Program Files\HP\HP UT LEDM\bin\hppusg.exe" "C:\Program Files\HP\HP UT LEDM\"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [TkBellExe] "c:\program files\real\realplayer\Update\realsched.exe" -osboot
O4 - HKLM\..\Run: [Nero MediaHome 4] "C:\Program Files\Nero\Nero MediaHome 4\NeroMediaHome.exe" /AUTORUN
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [SDTray] "C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [PxDotNetLoader] "C:\Program Files\Fidelity Investments\Fidelity Active Trader\System\ATPStartupAssistant.exe"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\thinkorswim\superantispyware2\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [Spybot-S&D Cleaning] "C:\Program Files\Spybot - Search & Destroy 2\SDCleaner.exe" /autoclean
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_4E6D16C6E981389D04E2F9DFD680F0A9] "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: MozyHome Status.lnk = C:\Program Files\MozyHome\mozystat.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy 2\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy 2\SDHelper.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: www.dailygraphs.com
O15 - Trusted Zone: *.dell.com
O15 - Trusted Zone: http://www.investors.com
O15 - Trusted Zone: http://dell.msn.com
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/ge...sh/swflash.cab
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\thinkorswim\superantispyware2\SASCORE.EXE
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: HP SI Service (HPSIService) - HP - C:\Windows\system32\HPSIsvc.exe
O23 - Service: MozyHome Backup Service (mozybackup) - Mozy, Inc. - C:\Program Files\MozyHome\mozybackup.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe

--
End of file - 7303 bytes




Thanks for looking and any suggestions,
Allan

Veteran needs help with About.Blank hijack and more....Thanks in advance

$
0
0
I'm trying to resolve some issues with my college age daughter's laptop while she is in town. She is currently seeing About.Blank when she tries to log into IE. Bitdefender has also quarantined ZOEK.exe. I think she also had a lot of adware (desktemp monitor). It was experiencing Proxy server Not Responding this morning. I think I have cleared that and now About.Blank issues. I have run adware, Malware Bytes and spybot.

Here is the sysinfo....

Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows 7 Home Premium, Service Pack 1, 64 bit
Processor: AMD A6-3400M APU with Radeon(tm) HD Graphics, AMD64 Family 18 Model 1 Stepping 0
Processor Count: 4
RAM: 3562 Mb
Graphics Card: AMD Radeon(TM) HD 6520G, 512 Mb
Hard Drives: C: Total - 457944 MB, Free - 405780 MB; D: Total - 14730 MB, Free - 1605 MB; E: Total - 4055 MB, Free - 1126 MB;
Motherboard: Hewlett-Packard, 169B
Antivirus: Bitdefender Antivirus Free Edition, Updated and Enabled

Fighting viruses and malware is getting to be harder then fighting the cold war.

Thank you in advance for the assistance!

Prcman

cannot remove fix hosts file

$
0
0
¤¤¤ HOSTS File : 2 ¤¤¤
[C:\windows\System32\drivers\etc\hosts] 127.0.0.1 localhost
[C:\windows\System32\drivers\etc\hosts] ::1 localhost

rogue killer cannot fix them/an error occurred??

Fctb

$
0
0
Hi There and Good Early Sunday Morning to you i've had this app/data/roaming/FCTB crap coming up in malware daily so i ran some other stuff at this moment i've went in and removed it by reading your files however as soon as i load mozilla it may come back i went into Mozilla and removed the folder already at this point i'd like to not blow up my newest pc :/ thoughts ??? btw jrt isn't something i can get downloaded in it's current version which is what i was told to use :D aka an old pc junkie/not to dumb net person ;);)

my pc is newer few months hp pav slim line windows 8.1 sadly
Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows 8.1, 64 bit
Processor: AMD A4-5000 APU with Radeon(TM) HD Graphics, AMD64 Family 22 Model 0 Stepping 1
Processor Count: 4
RAM: 5581 Mb
Graphics Card: AMD Radeon HD 8330, 512 Mb
Hard Drives: C: Total - 936331 MB, Free - 843952 MB; D: Total - 16019 MB, Free - 1991 MB; F: Total - 476937 MB, Free - 424544 MB;
Motherboard: Hewlett-Packard, 2B18
Antivirus: Windows Defender, Disabled

Similar Items Shopper

Proxy refusal probs after installing AVG or....

$
0
0
Seems like AVG 'may' have started this.
Using Firefox; many sites (eg banking..) returns message 'Proxy server refuses...'
Other sites e.,g. TechSupportGuy hook up fine.
Thought I'd reinstall Firefox but no go.
I think I had this same problem when using McAfee.

Any suggestions?
Thanks, Ken J.

Hijackthis Log

WIFI signals and connection hardships, combined with crash/ freezing issues

$
0
0
Hi wbg,
Sorry for the delay ...got really busy.
Will try to do the scan (which usually takes around an hour) this week, to conclude this.

cheers

high cpu usage by process svchost.exe (netsvcs)

$
0
0
Recently I have upgraded my laptop from windows 8 to windows 8.1. After upgrading i found that the process svchost.exe (netsvcs) consume about 60% of CPU usage. This makes my laptop overheated within 30 minutes. When I suspend this process, the cpu usage drops to just 5%. I have tried many solution available online to solve this issue, but unfortunately none of them worked. Plzzz help me to solve this problem...!!!

Hacked? weird activity

$
0
0
hi i went from facebook to a website through a link....to look at something anyway i copyed the web link to send to my brother through facebook message and when i pressed send instead of the link being sent it sent a copy of facebook along with a picture of someone i was talking too at the time on skype so i knew it was a picture of my desktop. This is the second time this has happened to me. I am on a new hp laptop only a few weeks old with windows 8. I am scratching my head to how a link copy turned into a picture of my desktop showing my open facebook page along with a photo box of someone i was talking too on skype? Oh i was using google chrome as a browser at the time if that helps and i have norton as security....If anyone has any ideas please let me know...thanks ..glory:)

Can't Uninstall Search Protect

$
0
0
Hello SavannahJack and welcome to TSG,

I'm kevinf80 and I will be helping with any malware issues you may have with your system.
  • Please be aware that some of the logs I may ask for can be very complex and can take a long time to decipher. I am a volunteer here with a job and family so I ask that you be patient when waiting for replies.
  • Please DO NOT run any scans/tools/fixes on your own as this will conflict with the tools we are going to use.
  • Either print or Save to Notepad all instructions and please follow them carefully, if there's something you don't understand or that will not work please let me know and we will go through it together.
  • Malware is often buggy and can be very unstable, with that in mind it is advisable to backup any important data before we begin. Go Here and follow the instructions specific for your operating system. Or for Windows 8 go Here

Please proceed as follows :-

Download AdwCleaner by Xplode onto your Desktop.
  • Double click on Adwcleaner.exe to run the tool.
  • Click on Scan
  • Once the scan is done, click on the Clean button.
  • You will get a prompt asking to close all programs. Click OK.
  • Click OK again to reboot your computer.
  • A text file will open after the restart. Please post the content of that logfile in your reply.
  • You can also find the logfile at C:\AdwCleaner[Sn].txt. Where n in the scan reference number

Next,

Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts. (re-enable when done)
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.

Next,

Download Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatible with your system (32 bit or 64 bit). If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
  • Double-click to run it. When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
  • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.

Let me see those logs in your next reply..

Kevin...

Remove Ads by Volaro Malware

$
0
0
Heya,


How do I remove Ads by Volaro Malware.


Tnx


Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows 8.1 Single Language, 64 bit
Processor: Intel(R) Core(TM) i7-3635QM CPU @ 2.40GHz, Intel64 Family 6 Model 58 Stepping 9
Processor Count: 8
RAM: 8078 Mb
Graphics Card: AMD Radeon HD 8800M Series, -2048 Mb
Hard Drives: C: Total - 928839 MB, Free - 775644 MB;
Motherboard: SAMSUNG ELECTRONICS CO., LTD., NP870Z5E-X01ZA
Antivirus: Kaspersky Internet Security, Updated and Enabled

Laptop VERY slow

$
0
0
I posted for help in another forum, and they recommended I post here. http://forums.techguy.org/windows-7/...very-slow.html

Anyways, my laptop is very slow, constantly locking up, ect. Malwarebytes never finds anything though.

Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows 7 Home Premium, 64 bit
Processor: Intel(R) Pentium(R) CPU P6200 @ 2.13GHz, Intel64 Family 6 Model 37 Stepping 5
Processor Count: 2
RAM: 3764 Mb
Graphics Card: Intel(R) HD Graphics, 1754 Mb
Hard Drives: C: Total - 290143 MB, Free - 206811 MB;
Motherboard: Acer, JE70_CP
Antivirus: Avira Desktop, Updated and Enabled

Cheap Kitchen Cabinets

Is this a virus ?

$
0
0
Please do not start more than one thread for the same issue.

Closing duplicate.

same virus over and over

$
0
0
heelp i keep getting the same virus over and over!! its called MalSign.Generic.7EE
it keeps appearing even tho i keep deleting it!!
its not going away ):
i think its cloning like super speed
but it keeps reappearing!!
its in YahooGO.exe
yeah i know delete it but i cant find the location
it tells me where it is but i cant find the app data file
and then blah blah blah >>>
so please help
ever since i have deleted the yahoo smartbar my google if free from yahoo prison!!
BUT
then viruses went marching away on my computer
please help
i think its why my speakers go BZZZZZ something like that but yeh
heeelp :confused::confused::confused::confused::(

Adware-Malware?

$
0
0
Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows 8.1, 64 bit
Processor: Intel(R) Core(TM) i7-3770S CPU @ 3.10GHz, Intel64 Family 6 Model 58 Stepping 9
Processor Count: 8
RAM: 8078 Mb
Graphics Card: Intel(R) HD Graphics 4000, -1984 Mb
Hard Drives: C: Total - 1892813 MB, Free - 1820493 MB; F: Total - 2861580 MB, Free - 2851302 MB;
Motherboard: Dell Inc., 03VTJ7
Antivirus: McAfee Anti-Virus and Anti-Spyware, Updated and Enabled




Computer IE access taking longer than normal.....anything suspicious running in the background?

Why does Hard Drive Fill up on it's own?

$
0
0
it maybe a virus on the PC - probably worth moving to the virus forum, for a guru to have a look
this may take 48 hours to get a response as a very busy forum

I have moved for you
Viewing all 4746 articles
Browse latest View live




Latest Images