Quantcast
Channel: Tech Support Guy - Virus & Other Malware Removal
Viewing all articles
Browse latest Browse all 4746

googleads.g.doubleclick.net.page?

$
0
0
matt1369
You don't have to be concerned about sending me any infections.
These things are not transferable through the forum.
While we work, please don't install, Uninstall, or scan with anything unless I ask.

What I See right away:
You have too many programs starting automatically for the amount of RAM available
You don't have any Antivirus program.
-----------------------------------------------------------
Download the Microsoft Security Essentials Installer
The download is here: http://www.microsoft.com/security_essentials/
Choose "Save As" and Save it to your desktop.

Install Microsoft Security Essentials
Double Click the icon for the Microsoft Security Essentials installer.
Let it install, update itself, run a scan, and delete anything it finds.
----------------------------------------------
Perform a Custom Fix with OTL
Run OTL
  • In the Custom Scans/Fixes box at the bottom, paste in the following lines from the Code box (Do not include the word "Code"):
    Code:

    :Commands
    [CREATERESTOREPOINT]

    :processes
    killallprocesses

    :OTL
    [2012/04/23 15:57:28 | 000,000,000 | ---D | M] (Babylon) -- C:\Documents and Settings\Matt Stoker\Application Data\Mozilla\Firefox\Profiles\ub2ivyx6.default\extensions\ffxtlbr@babylon.c om
    O3 - HKU\S-1-5-21-427263981-696298939-1445967133-1006\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O3 - HKU\S-1-5-21-427263981-696298939-1445967133-1006\..\Toolbar\WebBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
    O3 - HKU\S-1-5-21-427263981-696298939-1445967133-1006\..\Toolbar\WebBrowser: (no name) - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - No CLSID value found.
    O3 - HKU\S-1-5-21-427263981-696298939-1445967133-1006\..\Toolbar\WebBrowser: (no name) - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No CLSID value found.
    O3 - HKU\S-1-5-21-427263981-696298939-1445967133-1006\..\Toolbar\WebBrowser: (no name) - {C4069E3A-68F1-403E-B40E-20066696354B} - No CLSID value found.
    O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\VProperty.lnk = C:\WINDOWS\VPro610.exe ()
    O4 - HKLM..\Run: [WatchDog] C:\Program Files\InterVideo\DVD Check\DVDCheck.exe (InterVideo Inc.)
    O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\DVD Check.lnk = C:\Program Files\InterVideo\DVD Check\DVDCheck.exe (InterVideo Inc.)
    O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O33 - MountPoints2\{5c7d817c-46c7-11dc-859f-806d6172696f}\Shell\AutoRun\command - "" = D:\setup.exe
    O33 - MountPoints2\{761a1b92-9b5a-11e3-87fd-001636126680}\Shell\AutoRun\command - "" = E:\PhotoViewer.exe
    O33 - MountPoints2\{a61e8494-7674-11df-874a-001636126680}\Shell\AutoRun\command - "" = E:\EMP_UDSe.exe /autorun
    O33 - MountPoints2\{c0331aec-a5ea-11dc-85fe-0014a56f971e}\Shell\AutoRun\command - "" = E:\Healthdrive.exe
    O33 - MountPoints2\{d74cb57a-309e-11db-9d45-001636126680}\Shell\AutoRun\command - "" = F:\setupSNK.exe
    [2014/01/25 08:58:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Matt Stoker\Application Data\DriverCure
    [2014/01/25 08:58:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Matt Stoker\Application Data\MyTurboPC.com
    [2014/01/25 08:58:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\MyTurboPC.com
    [2012/04/23 15:57:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Babylon
    [2012/04/23 15:57:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Matt Stoker\Application Data\Babylon
    [2014/01/25 08:58:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Matt Stoker\Application Data\DriverCure
    [2014/01/25 09:18:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MyTurboPC.com

    :Files
    ipconfig /flushdns /c

    :Commands
    [emptyjava]
    [emptyflash]
    [EMPTYTEMP]

  • Then click the Run Fix button at the top.
  • Let the program run unhindered, and click to allow the Reboot when it is done.
    When the computer Reboots, and you start your usual account, a Notepad text file will appear.
  • That is the FIX log. Copy the contents of that file and post it in your next reply.
If you lose track of it, it will also be available and named by timestamp here: C:\_OTL\Moved Files\mmddyyyy_hhmmss.log
----------------------------------------------
After you have done all of the above, and have posted the contents of the FIX log in a reply here, Please Rescan as follows:
Open OTL again and click the Quick Scan button. Post the new log it produces, OTL.txt, in a separate reply.
The new log will replace OTL.txt on your desktop with fresh contents.

askey127

Viewing all articles
Browse latest Browse all 4746

Trending Articles