VirusTotal File Scan
Please go to: VirusTotal
- Click the Choose File button and search for the following file: C:\ProgramData\kaevcwgh.slj
- Click Open
- Then click Send File

If it says already scanned -- click "reanalyze now"
- Please be patient while the file is scanned.
- Once the scan results appear, please click on the Compact button.
- A new window should appear with a bunch of tabs at the top. Please click on the BBCode tab.
- Copy and Paste the contents of the text in the BBCode into your next reply for me to review.
Please post the results in your next reply
NEXT:
OTL Fix
We need to run an OTL Fix
- Please reopen
on your desktop. - Copy and Paste the following code into the
textbox.
:Services :OTL O3 - HKLM\..\Toolbar: (no name) - - No CLSID value found. O37 - HKCU\...com [@ = ComFile] -- Reg Error: Key error. File not found [2011/06/05 18:30:55 | 000,589,632 | ---- | C] (AVAST Software) -- C:\Users\Chance\Desktop\aswMBR.exe [2011/06/06 21:43:46 | 000,879,092 | ---- | M] () -- C:\Users\Chance\Desktop\SecurityCheck.exe [2011/06/05 18:45:04 | 000,010,924 | -HS- | M] () -- C:\Users\Chance\AppData\Local\8f2gvu11wnj076224dw377dm [2011/06/05 18:45:04 | 000,010,924 | -HS- | M] () -- C:\ProgramData\8f2gvu11wnj076224dw377dm [2011/06/05 18:32:18 | 000,000,512 | ---- | M] () -- C:\Users\Chance\Desktop\MBR.dat [2011/06/05 18:30:55 | 000,589,632 | ---- | M] (AVAST Software) -- C:\Users\Chance\Desktop\aswMBR.exe [2011/06/05 17:28:00 | 001,301,452 | ---- | M] () -- C:\Users\Chance\Desktop\tdsskiller.zip [2011/05/30 19:05:15 | 000,293,977 | ---- | M] () -- C:\Users\Chance\Desktop\gmer.zip [2011/06/06 21:43:45 | 000,879,092 | ---- | C] () -- C:\Users\Chance\Desktop\SecurityCheck.exe [2011/06/05 18:33:03 | 000,010,924 | -HS- | C] () -- C:\Users\Chance\AppData\Local\8f2gvu11wnj076224dw377dm [2011/06/05 18:33:03 | 000,010,924 | -HS- | C] () -- C:\ProgramData\8f2gvu11wnj076224dw377dm [2011/06/05 18:32:18 | 000,000,512 | ---- | C] () -- C:\Users\Chance\Desktop\MBR.dat [2011/06/05 17:27:51 | 001,301,452 | ---- | C] () -- C:\Users\Chance\Desktop\tdsskiller.zip [2011/05/28 08:00:42 | 000,000,548 | ---- | C] () -- C:\Users\Chance\Desktop\unhide.exe - Shortcut.lnk [2010/10/24 17:57:12 | 000,000,000 | ---D | M] -- C:\Users\Chance\AppData\Roaming\AVG10 :Reg :Files ipconfig /flushdns /c :Commands [purity] [resethosts] [CreateRestorePoint] [emptytemp] [EMPTYFLASH]
- Push
- OTL may ask to reboot the machine. Please do so if asked.
- Click the OK button.
- A report will open. Copy and Paste that report in your next reply.
- If the machine reboots, the log will be located at C:\_OTL\MovedFiles\mmddyyyy_hhmmss.log, where mmddyyyy_hhmmss is the date of the tool run.

Help
This topic is locked




Back to top









