Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Firefox keeps redirecting to clickcheck.ru and other sites.


  • Please log in to reply
1 reply to this topic

#1 OahuDave

OahuDave

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:06:15 AM

Posted 11 May 2009 - 02:33 PM

Aloha all. Recently I noticed that Firefox is redirecting me to clickcheck.ru and many other sites when I am trying to click on links and such. I have googled and done everything I can find out there, but it is still present. Hopefully someone here can help me figure this out.

Here is the dds.txt output:


DDS (Ver_09-03-16.01) - NTFSx86
Run by dweil at 9:24:06.65 on Mon 05/11/2009
Internet Explorer: 7.0.5730.13 BrowserJavaVersion: 1.6.0_07
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.2558.1706 [GMT -10:00]

AV: Kaspersky Internet Security *On-access scanning enabled* (Updated)
FW: Kaspersky Internet Security *disabled*

============== Running Processes ===============

C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\WINDOWS\system32\lxctcoms.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\svchost.exe -k HPZ12
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\TVersity\Media Server\MediaServer.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\UltraMon\UltraMon.exe
C:\Program Files\Lexmark 5400 Series\lxctmon.exe
C:\Program Files\Lexmark 5400 Series\ezprint.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\UltraMon\UltraMonTaskbar.exe
C:\Program Files\POP Peeper\POPPeeper.exe
C:\Program Files\PeerGuardian2\pg2.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TechSmith\SnagIt 9\SnagIt32.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\TechSmith\SnagIt 9\TSCHelp.exe
C:\Program Files\TechSmith\SnagIt 9\SnagPriv.exe
C:\Program Files\TechSmith\SnagIt 9\snagiteditor.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\dweil\Desktop\dds.scr

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.google.com/ig?hl=en
uSearch Page = hxxp://www.google.com
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uSearch Bar = hxxp://www.google.com/ie
uInternet Connection Wizard,ShellNext = hxxp://ite/
mSearchAssistant = hxxp://www.google.com/ie
uURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} -
BHO: SnagIt Toolbar Loader: {00c6482d-c502-44c8-8409-fce54ad9c208} - c:\program files\techsmith\snagit 9\SnagItBHO.dll
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll
BHO: IEVkbdBHO Class: {59273ab4-e7d3-40f9-a1a8-6fa9cca1862c} - c:\program files\kaspersky lab\kaspersky internet security 2009\ievkbd.dll
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
TB: SnagIt: {8ff5e183-abde-46eb-b09e-d2aab95cabe3} - c:\program files\techsmith\snagit 9\SnagItIEAddin.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} -
TB: {A057A204-BACC-4D26-9990-79A187E2698E} - No File
TB: {8FF5E180-ABDE-46EB-B09E-D2AAB95CABE3} - No File
TB: {A26503FE-B3B8-4910-A9DC-9CBD25C6B8D6} - No File
uRun: [POP Peeper] "c:\program files\pop peeper\POPPeeper.exe" -min
uRun: [PeerGuardian] c:\program files\peerguardian2\pg2.exe
uRun: [uTorrent] "c:\program files\utorrent\utorrent.exe"
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [UltraMon] "c:\program files\ultramon\UltraMon.exe" /auto
mRun: [lxctmon.exe] "c:\program files\lexmark 5400 series\lxctmon.exe"
mRun: [EzPrint] "c:\program files\lexmark 5400 series\ezprint.exe"
mRun: [SoundMAXPnP] c:\program files\analog devices\core\smax4pnp.exe
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [AVP] "c:\program files\kaspersky lab\kaspersky internet security 2009\avp.exe"
mRun: [LXCTCATS] rundll32 c:\windows\system32\spool\drivers\w32x86\3\LXCTtime.dll,_RunDLLEntry@16
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\snagit~1.lnk - c:\program files\techsmith\snagit 9\SnagIt32.exe
uPolicies-explorer: NoSMMyDocs = 1 (0x1)
uPolicies-explorer: NoSMHelp = 01000000
IE: Add to Banner Ad Blocker - c:\program files\kaspersky lab\kaspersky internet security 2009\ie_banner_deny.htm
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
IE: {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - {85E0B171-04FA-11D1-B7DA-00A0C90348D6} - c:\program files\kaspersky lab\kaspersky internet security 2009\SCIEPlgn.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} - hxxp://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} - hxxp://downloads.ewido.net/ewidoOnlineScan.cab
DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\Yinsthelper.dll
DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - hxxp://download.bitdefender.com/resources/scan8/oscan8.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1149020623296
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1179179085796
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {98C53984-8BF8-4D11-9B1C-C324FCA9CADE} - hxxp://192.168.200.6/qcbin/Spider90.ocx
DPF: {B2FC031D-8C74-46AE-8042-BCF4FC03C1EF} - hxxp://192.168.200.6/qcbin/Spider91.cab
DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} - hxxp://a532.g.akamai.net/f/532/6712/5m/virtools.download.akamai.com/6712/player/install/installer.exe
DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} - hxxps://frontporch.webex.com/client/T25L/webex/ieatgpc.cab
DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} - hxxps://secure.logmein.com/activex/ractrl.cab?lmi=100
TCP: {530A2130-7A82-42EF-AD53-965D5D1C65FA} = 192.168.13.1
TCP: {AD6B5174-DD32-484C-8C84-A28D36BC5199} = 192.168.200.2 192.168.200.3 192.168.200.2 192.168.200.3
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Notify: AtiExtEvent - Ati2evxx.dll
Notify: klogon - c:\windows\system32\klogon.dll
Notify: LMIinit - LMIinit.dll
AppInit_DLLs: c:\progra~1\kasper~2\kasper~1\mzvkbd.dll,c:\progra~1\kasper~2\kasper~1\mzvkbd3.dll,c:\progra~1\kasper~2\kasper~1\adialhk.dll,c:\progra~1\kasper~2\kasper~1\kloehk.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\dweil\applic~1\mozilla\firefox\profiles\uhuec6qz.default\
FF - prefs.js: browser.search.selectedEngine - IMDB
FF - prefs.js: browser.startup.homepage - hxxp://www.igoogle.com
FF - plugin: c:\program files\google\picasa3\npPicasa3.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npatgpc.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npRACtrl.dll
FF - plugin: c:\program files\mozilla firefox\plugins\NPTURNMED.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npyaxmpb.dll
FF - plugin: c:\program files\virtools\3d life player\nppl3260.dll
FF - plugin: c:\program files\virtools\3d life player\nprpjplug.dll
FF - plugin: c:\program files\virtools\3d life player\npvirtools.dll

---- FIREFOX POLICIES ----
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: content.max.tokenizing.time - 200000
FF - user.js: content.notify.interval - 100000
FF - user.js: content.switch.threshold - 650000
FF - user.js: nglayout.initialpaint.delay - 300

============= SERVICES / DRIVERS ===============

R0 kl1;Kl1;c:\windows\system32\drivers\kl1.sys [2008-7-21 121872]
R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [2008-1-29 33808]
R1 KLIF;Kaspersky Lab Driver;c:\windows\system32\drivers\klif.sys [2009-5-1 226832]
R2 AVP;Kaspersky Internet Security;c:\program files\kaspersky lab\kaspersky internet security 2009\avp.exe [2008-11-11 206088]
R2 LMIInfo;LogMeIn Kernel Information Provider;c:\program files\logmein\x86\rainfo.sys [2008-7-24 12856]
R2 UltraMonUtility;UltraMon Utility Driver;c:\program files\common files\realtime soft\ultramonmirrordrv\x32\UltraMonUtility.sys [2005-6-2 10496]
R3 KLFLTDEV;Kaspersky Lab KLFltDev;c:\windows\system32\drivers\klfltdev.sys [2008-3-13 26640]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [2008-4-30 24592]
R3 UltraMonMirror;UltraMonMirror;c:\windows\system32\drivers\UltraMonMirror.sys [2005-5-14 3328]
S3 Dcrviwnopd;Dcrviwnopd; [x]
S3 FP Server;FP Server;c:\program files\front porch inc\fp server\FP Server.exe [2008-11-1 49152]
S3 libusb0;LibUsb-Win32 - Kernel Driver, Version 0.1.12.1;c:\windows\system32\drivers\libusb0.sys [2009-4-29 28672]
S3 m4301a;Linksys Wireless-B USB Network Adapter v4.0 Driver;c:\windows\system32\drivers\m4301A.sys [2004-12-21 141990]
S3 max128k;max128k;c:\windows\system32\drivers\max128k.sys [2008-11-5 3840]
S3 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2007-11-6 34064]
S3 tap0801;TAP-Win32 Adapter V8;c:\windows\system32\drivers\tap0801.sys [2006-10-1 26624]
S3 Transport;Transport;c:\program files\front porch inc\transport\Transport.exe [2008-8-21 176128]
S3 XRayDrvServer;XRAY_SERVER;c:\windows\system32\drivers\xraydrvserver.sys --> c:\windows\system32\drivers\xraydrvserver.sys [?]
S4 WebTool;WebTool;c:\progra~1\mi4f93~1\webtool.exe [2008-12-9 705024]

=============== Created Last 30 ================

2009-05-11 09:04 <DIR> --d----- c:\program files\Trend Micro
2009-05-09 10:24 54,156 a---h--- c:\windows\QTFont.qfn
2009-05-09 10:24 1,409 a------- c:\windows\QTFont.for
2009-05-08 07:53 53,976 a------- C:\fb-kayak.jpg
2009-05-06 12:54 25 a------- c:\windows\OverlayXP.ini
2009-05-06 12:53 <DIR> --d----- c:\docume~1\alluse~1\applic~1\webcamXP5
2009-05-06 12:52 <DIR> --d----- c:\program files\WebCamXPPRO
2009-05-06 12:51 <DIR> --d----- c:\docume~1\dweil\applic~1\Webcammax
2009-05-06 12:50 1,051,136 a------- c:\windows\system32\drivers\CAMTHWDM.sys
2009-05-06 12:44 446,464 a------- c:\windows\system32\wmvdmoe.dll
2009-05-06 12:44 <DIR> --d----- c:\docume~1\alluse~1\applic~1\PY_Software
2009-05-04 11:58 <DIR> --d----- C:\temp
2009-05-04 11:57 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Media Center Programs
2009-05-01 08:45 101,287 a------- c:\windows\system32\drivers\klin.dat
2009-05-01 08:45 89,601 a------- c:\windows\system32\drivers\klick.dat
2009-05-01 08:41 10,809,376 a--sh--- c:\windows\system32\drivers\fidbox.dat
2009-05-01 08:41 876,576 a--sh--- c:\windows\system32\drivers\fidbox2.dat
2009-05-01 08:41 87,624 a--sh--- c:\windows\system32\drivers\fidbox.idx
2009-05-01 08:41 5,124 a--sh--- c:\windows\system32\drivers\fidbox2.idx
2009-05-01 08:41 <DIR> --d----- c:\program files\Kaspersky Lab
2009-05-01 08:41 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Kaspersky Lab
2009-04-30 20:42 <DIR> --d----- c:\program files\Kaspersky Internet Security 2009
2009-04-30 19:02 142 a------- C:\kill.bat
2009-04-30 18:53 161,792 a------- c:\windows\SWREG.exe
2009-04-30 18:53 98,816 a------- c:\windows\sed.exe
2009-04-29 12:17 43,520 a------- c:\windows\system32\libusb0.dll
2009-04-29 12:17 28,672 a------- c:\windows\system32\drivers\libusb0.sys
2009-04-29 11:12 <DIR> --d----- c:\docume~1\dweil\applic~1\Stardock
2009-04-29 11:11 <DIR> --d----- c:\program files\Stardock
2009-04-29 11:11 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Stardock
2009-04-29 09:26 <DIR> --d----- c:\docume~1\dweil\applic~1\pidle
2009-04-29 08:47 <DIR> --d----- c:\docume~1\dweil\applic~1\Braid
2009-04-27 17:55 <DIR> --d----- c:\docume~1\dweil\applic~1\Individual Software
2009-04-27 17:47 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Individual Software
2009-04-27 17:45 <DIR> --d----- c:\program files\common files\Individual Software
2009-04-27 17:45 200,704 a------- c:\windows\system32\THREED32.OCX
2009-04-27 17:45 142,848 a------- c:\windows\system32\PICCLP32.OCX
2009-04-27 17:45 <DIR> --d----- c:\program files\Individual Software

==================== Find3M ====================

2009-05-01 08:54 33,808 a------- c:\windows\system32\drivers\klbg.sys
2009-03-20 08:50 3,358,720 a------- c:\windows\system32\GPhotos.scr
2009-03-08 17:27 3,752 a------- C:\sync.bat
2009-03-06 04:44 283,648 a------- c:\windows\system32\pdh.dll
2009-03-02 14:18 826,368 a------- c:\windows\system32\wininet.dll
2009-02-25 19:49 22,328 a------- c:\docume~1\dweil\applic~1\PnkBstrK.sys
2009-02-25 19:49 107,832 a------- c:\windows\system32\PnkBstrB.exe
2009-02-25 19:49 66,872 a------- c:\windows\system32\PnkBstrA.exe
2009-02-25 19:49 2,246,144 a------- c:\windows\system32\pbsvc.exe
2009-02-20 08:09 78,336 a------- c:\windows\system32\ieencode.dll
2009-02-18 12:11 726,008 a------- c:\documents and settings\dweil\gotomypc_438.exe
2009-02-16 20:47 444,952 a------- c:\windows\system32\wrap_oal.dll
2009-02-16 20:47 109,080 a------- c:\windows\system32\OpenAL32.dll
2009-01-06 10:47 47,360 a------- c:\docume~1\dweil\applic~1\pcouffin.sys
2008-11-14 09:01 60,744 a------- c:\documents and settings\dweil\g2mdlhlpx.exe
2008-06-24 13:42 81,920 a------- c:\docume~1\dweil\applic~1\ezpinst.exe
2007-12-17 10:25 118 a------- c:\program files\system.txt
2002-11-06 20:42 237,568 a------- c:\program files\VobEdit.exe

============= FINISH: 9:25:08.90 ===============

Attached Files



BC AdBot (Login to Remove)

 


#2 SifuMike

SifuMike

    malware expert


  • Staff Emeritus
  • 15,385 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Vancouver (not BC) WA (Not DC) USA
  • Local time:09:15 AM

Posted 19 May 2009 - 01:25 PM

Hi OahuDave,

Your Java is out of date. Older versions have vulnerabilities that malware can use to infect your system. Please follow these steps to remove older version Java components and update.

Updating Java:
  • Download the latest version of Java SE Runtime Environment (JRE) 6 Update 13.
  • Click the "Download" button to the right.
  • At the Select Platform and Language for your download drop down box
    Select Windows and Mult-Language
  • Check the box that says: "Accept License Agreement" then press Continue ( Selecting Windows will give you the 32 bit version. )
  • The page will refresh.
  • Click on the link to download Windows Offline Installation, Multi-language jre-6u13-windows-i586-p.exe and save to your desktop.
  • Close any programs you may have running - especially your web browser.
  • Go to Start > Control Panel double-click on Add/Remove programs and remove all older versions of Java.
    Examples of older versions in Add or Remove Programs:
    J2SE Runtime Environment 5.0 Update 6
    Java™ 6 Update 7
    Java™ SE Runtime Environment 6
  • Check any item with Java Runtime Environment (JRE or J2SE) in the name.
  • Click the Remove or Change/Remove button.
  • Repeat as many times as necessary to remove each Java versions.
  • Reboot your computer once all Java components are removed.
  • Then from your desktop double-click on jre-6u13-windows-i586-p.exe to install the newest version.
*****************

Download Security Check by screen317 from here or here.
Save it to your Desktop.
Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
A Notepad document should open automatically called checkup.txt.
Please post the contents of that document.

*****************

Please download GooredFix and save it to your Desktop.
Double-click Goored.exe to run it. Select 1.
Find Goored (no fix)
by typing 1 and pressing Enter.
A log will open, please post the contents of that log in your next reply (it can also be found on your desktop, called GooredLog.txt).
Note: Do not run Option #2 yet.

*****************

Please download Malwarebytes' Anti-Malware from one of these places:
http://download.cnet.com/Malwarebytes-Anti...&tag=button
http://www.majorgeeks.com/Malwarebytes_Ant...ware_d5756.html
http://www.besttechie.net/mbam/mbam-setup.exe

Double Click mbam-setup.exe to install the application.

* Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
* If an update is found, it will download and install the latest version.
* Once the program has loaded, select "Perform Quick Scan", then click Scan.
* The scan may take some time to finish,so please be patient.
* When the scan is complete, click OK, then Show Results to view the results.
* Make sure that everything is checked, and click Remove Selected.
* When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
* The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
* Copy&Paste the entire MBAM report (even if it does not find anything) in your next reply

Extra Note:
If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediately.

Edited by SifuMike, 19 May 2009 - 01:28 PM.
typo

If I've saved you time & money,
please make a donation so I can keep helping people just like you! You can donate using a credit card and PayPal. Thank you!



Posted Image

Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users