Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Need help; conduit, dial, search engine errors, on IE and Chrome


  • Please log in to reply
15 replies to this topic

#1 Rputzbach

Rputzbach

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:08:15 AM

Posted 02 February 2014 - 03:24 PM

Please help remove these search engine viruses, dxdiag is attached. Thanks

Attached Files


Edited by hamluis, 02 February 2014 - 06:27 PM.
Moved from Win 7 to Am I Infected - Hamluis.


BC AdBot (Login to Remove)

 


m

#2 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,030 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:05:15 AM

Posted 02 February 2014 - 04:39 PM

Please download AdwCleaner and run it.
 
An image like the one below will open, click on Scan.
 
adwcleaner11_zps48314883.png
 
Once the search is complete a list of the pending items will be displayed.  If you see any which you do not want removed, remove the check mark next to it.  
 
Click on Clean to remove the selected items.  
 
You will receive a message telling you that all programs will be close so that the infections can be removed.  Click on Ok.
 
When cleaning process is complete a log of what was removed will be presented.  Please copy and the paste this log in your next post.
 
 
 

Please download Junkware Removal Tool.
 
Open your browser and go to Downloads, then click on the Junkware Removal Tool to install it.  
 
Click on Run to initiate the installation.
 
To avoid potential conflicts, temporarily disable your antivirus and firewall.  You will want to be offline when you do this.
 
Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select Run as Administrator.
 
The tool will open and start scanning your system.
 
Please be patient as this can take a while to complete depending on your system's specifications.
 
On completion, a log (JRT.txt) is saved to your desktop and will automatically open.  Copy and this and then post this in your topic.
 
 
 
Let us know if there is anything which still needs to be taken care of.

Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#3 Rputzbach

Rputzbach
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:08:15 AM

Posted 02 February 2014 - 05:44 PM

everything seems to be fine, thanks.

 

the log is attached

Attached Files

  • Attached File  JRT.txt   5.65KB   2 downloads


#4 Rputzbach

Rputzbach
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:08:15 AM

Posted 02 February 2014 - 05:47 PM

Upon opening google chrome again the "mysearchdial" virus webpage has reopened. Please help, thanks

 

IE seems to be fine now



#5 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,030 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:05:15 AM

Posted 02 February 2014 - 05:47 PM

Glad to help.  :thumbup2:


Edited by dc3, 02 February 2014 - 05:47 PM.

Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#6 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,030 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:05:15 AM

Posted 02 February 2014 - 06:05 PM

Please download Malwarebytes Anti-Malware.
 
1)  Double-click on mbam-setup.exe, then click on Run to install the application, follow the prompts through the installation.
 
2)  When the installation has finished, make sure you leave both of these checked:
 
    Update Malwarebytes' Anti-Malware
 
    Launch Malwarebytes' Anti-Malware
 
Then click on Finish.
 
3)  MBAM will automatically start and you will be asked to update the program before performing a scan. If an update is found, the program will automatically update itself. Press the OK button to close that box and continue. 
 
4)  Click on perform Quick Scan, then click on the Scan button.
 
If asked to select the drives to scan, leave all the drives selected and click on the Start Scan button.
 
5)  The scan will now begin, this may take some time to complete so please be patient.
 
6)  When the scan is finished click on Show Results to display all objects found.
 
7)  Click OK to close the message box and continue with the removal process.
 
8)  Back at the main Scanner screen, click on the Show Results button to see a list of any malware that was found.
 
Make sure that every item shown in the results has a check mark in the box next to it, then click on Remove Selected.
 
9)  When removal is completed, a log will open in Notepad.
 
This log is automatically saved and can be viewed by clicking the Logs tab in MBAM.Copy and paste the contents of the log in your next post, then exit MBAM.
 
Important:  If MBAM encounters a file that is difficult to remove, you may be asked to reboot your computer so it can proceed with the disinfection process. Reagardless if prompted to restart the computer or not, please do so immediately. Failure to reboot will prevent MBAM from removing all the malware.
 
Please copy the Malwarebytes log and paste it in your next post.
 
To locate this file right click on the Start orb and choose Open Windows Explorer, then click on C: drive.
 
When the C: drive opens click on the following:  ProgramData, Malwarebytes, Malwarebytes' Anti-Malware, Logs.  
 
If there is more than one log, choose the log with the date that you ran scan that I requested.
 
 
If there are a large number of items found you can go into Settings and click on Scanner Settings to change the setting in Action for potentially unwanted programs (PUP) to Show in results list and check for removal.
 
Malwarebytessettings_zpsb9b50638.png

Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#7 Rputzbach

Rputzbach
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:08:15 AM

Posted 02 February 2014 - 06:51 PM

Will do the above, but a new problem as occured:

 

 

the computer speakers do not produce sound, i am not sure why, there is a download that pops up int he beginning of starting the computer that has to do with an IDT download.

 

thanks



#8 Rputzbach

Rputzbach
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:08:15 AM

Posted 02 February 2014 - 08:32 PM

ill attach the mbam log in a second, but upon starting the computer there is a popup of how a file cannot be found/cannot start successfully (it has conduit in it). thanks

 

 

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
 
Database version: v2013.11.30.03
 
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16428
PutzbachLap :: PUTZBACHLAP-HP [administrator]
 
11/30/2013 10:13:16 AM
mbam-log-2013-11-30 (10-13-16).txt
 
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 206706
Time elapsed: 8 minute(s), 54 second(s)
 
Memory Processes Detected: 1
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\bin\cltmng.exe (PUP.Optional.Conduit.A) -> 4444 -> No action taken.
 
Memory Modules Detected: 3
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\bin\InternetExplorerModule.dll (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\bin\FirefoxModule.dll (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\bin\ChromeModule.dll (PUP.Optional.Conduit.A) -> No action taken.
 
Registry Keys Detected: 11
HKCR\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17} (PUP.Optional.Wajam.A) -> No action taken.
HKCR\CLSID\{D40753C7-8A59-4C1F-BE88-C300F4624D5B} (PUP.Optional.MySearchDial.A) -> No action taken.
HKCR\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0} (PUP.Optional.MySearchDial.A) -> No action taken.
HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc (PUP.Optional.SearchProtect.A) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect (PUP.Optional.SearchProtect.A) -> No action taken.
HKCU\Software\Conduit\FF (PUP.Optional.Conduit.A) -> No action taken.
HKCU\Software\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff (PUP.Optional.MySearchDial.A) -> No action taken.
HKCU\SOFTWARE\INSTALLCORE (PUP.Optional.InstallCore.A) -> No action taken.
HKCU\SOFTWARE\SEARCHPROTECT (PUP.Optional.SearchProtect.A) -> No action taken.
HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff (PUP.Optional.MySearchDial.A) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IECT3315827 (PUP.Optional.Conduit.A) -> No action taken.
 
Registry Values Detected: 5
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|SearchProtect (PUP.Optional.Conduit.A) -> Data: C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\bin\cltmng.exe -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|SearchProtectAll (PUP.Optional.Conduit.A) -> Data: C:\Program Files (x86)\SearchProtect\bin\cltmng.exe -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|BackgroundContainer (PUP.Optional.Conduit) -> Data: "C:\Windows\SysWOW64\Rundll32.exe" "C:\Users\PutzbachLap\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun -> No action taken.
HKCU\Software\InstallCore|tb (PUP.Optional.InstallCore.A) -> Data: 0A2O0R1R1H2Z1S1G0H1F -> No action taken.
HKCU\Software\SearchProtect|IELastInstalledTBHomepage (PUP.Optional.SearchProtect.A) -> Data: http://search.conduit.com?SearchSource=10&CUI=UN33087169922579722&UM=2&ctid=CT3315827 -> No action taken.
 
Registry Data Items Detected: 2
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (PUP.Optional.Conduit.A) -> Bad: (http://search.conduit.com/?ctid=CT3315827&octid=CT3315827&SearchSource=61&CUI=UN33087169922579722&UM=2&UP=SPE8077A5F-4A1E-4AFB-83B3-61924C211245) Good: (http://www.google.com) -> No action taken.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (PUP.Optional.MySearchDial.A) -> Bad: (http://start.mysearchdial.com/?f=1&a=irmsd1103&cd=2XzuyEtN2Y1L1QzutBtDtCtDyB0AyEyCtA0AyC0C0B0D0F0BtN0D0Tzu0CyCzyzytN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=797737352&ir=) Good: (http://www.google.com) -> No action taken.
 
Folders Detected: 33
C:\Program Files (x86)\SearchProtect\bin (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\lib (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spbd (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spbd\images (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spsd (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spsd\images (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\ffprotect (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\lib (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spbd (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spbd\images (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spsd (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spsd\images (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\lib (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spbd (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spbd\images (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spsd (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spsd\images (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\SProtectorRepository (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827 (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\plugins (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\xpi (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\xpi\defaults (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\xpi\defaults\preferences (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827 (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallDialog (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallDialog\css (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallDialog\images (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallDialog\js (PUP.Optional.Conduit.A) -> No action taken.
 
Files Detected: 133
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\bin\cltmng.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\bin\InternetExplorerModule.dll (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\bin\FirefoxModule.dll (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\bin\ChromeModule.dll (PUP.Optional.Conduit.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\bin\cltmng.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\bin\SPRunner.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\bin\SPTool64.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\air5C3E.exe (PUP.Optional.Linksicle) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\airE10D.exe (PUP.Optional.Wajam) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ICReinstall_Flash Installer.exe (PUP.Optional.Freemium.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\nsc6D85.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\nseE3CD.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\nsiDEB2.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\nsiEA84.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\nsj9717.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\nsjA2C8.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\nsn76C8.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\nssD829.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\nst87AD.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\nstF4EF.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\nsyE102.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\nsz85C6.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\SPStub.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\chLogic.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\ctbe.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\ffLogic.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\ieLogic.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\spch.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\spff.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\statisticsStub.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\stub.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\Downloads\Adobe Flash Player.exe (PUP.Optional.AirInstaller) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Conduit\CT3315827\InternetHelper3.6AutoUpdateHelper.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\Local Settings\Temporary Internet Files\Content.IE5\0JF55QIQ\statisticsstub[1].exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\Local Settings\Temporary Internet Files\Content.IE5\0JF55QIQ\stublogic[2].exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\Local Settings\Temporary Internet Files\Content.IE5\FGZW4HE1\checktbexist[1].exe (PUP.Optional.Conduit.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\bin\FirefoxModule.dll (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\bin\ChromeModule.dll (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\bin\CltMngSvc.exe (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\bin\InternetExplorerModule.dll (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\bin\rep.dat (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\bin\SPHook32.dll (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\bin\SPHook64.dll (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\bin\SPRunner.exe (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\bin\SPTool64.exe (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\bin\uninstall.exe (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\dialogsApi.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\lib\jquery.min.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\lib\json2.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spbd\bubble.css (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spbd\bubble.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spbd\main.html (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spbd\images\information.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spbd\images\x-default-LTR.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spbd\images\x-default-RTL.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spbd\images\x-mouseover-LTR.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spbd\images\x-mouseover-RTL.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spsd\main.html (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spsd\SearchProtector.css (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spsd\settings.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spsd\images\ok-button.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spsd\images\separation-line.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\Dialogs\spsd\images\warning.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\ffprotect\nsprotector.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\ffprotect\abstraction.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Program Files (x86)\SearchProtect\ffprotect\application.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\dialogsApi.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\lib\jquery.min.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\lib\json2.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spbd\bubble.css (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spbd\bubble.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spbd\main.html (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spbd\images\information.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spbd\images\x-default-LTR.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spbd\images\x-default-RTL.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spbd\images\x-mouseover-LTR.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spbd\images\x-mouseover-RTL.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spsd\main.html (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spsd\SearchProtector.css (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spsd\settings.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spsd\images\ok-button.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spsd\images\separation-line.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\Dialogs\spsd\images\warning.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\nsprotector.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\abstraction.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\application.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\popupTransparent.xul (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\dialogsApi.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\lib\jquery.min.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\lib\json2.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spbd\bubble.css (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spbd\bubble.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spbd\main.html (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spbd\images\information.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spbd\images\x-default-LTR.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spbd\images\x-default-RTL.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spbd\images\x-mouseover-LTR.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spbd\images\x-mouseover-RTL.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spsd\main.html (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spsd\SearchProtector.css (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spsd\settings.js (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spsd\images\ok-button.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spsd\images\separation-line.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\Dialogs\spsd\images\warning.png (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\SProtectorRepository\EN (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Roaming\SearchProtect\ffprotect\SProtectorRepository\searchProtectorData (PUP.Optional.SearchProtect.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pflphaooapbgpeakohlggbpidpppgdff_0.localstorage (PUP.Optional.FunMoods.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\chromeid.txt (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\conduit.xml (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\CT3315827.txt (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\CT3315827.xpi (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\initdata.json (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\manifest.json (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\setup.ini.txt (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\version.txt (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\plugins\TBVerifier.dll (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\xpi\install.rdf (PUP.Optional.Conduit.A) -> No action taken.
C:\Users\PutzbachLap\AppData\Local\Temp\ct3315827\xpi\defaults\preferences\defaults.js (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\configutaion.json (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\SetupIcon.ico (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallerUI.exe (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallDialog\UninstallDialog.html (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallDialog\css\UninstallDialog.css (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallDialog\images\2.0--spec--kicker.png (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallDialog\images\content-pattern.png (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallDialog\images\content-sep.png (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallDialog\images\OK-Button-Default.gif (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallDialog\images\OK-Button-MouseOver.gif (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallDialog\images\OK-Button-OnClick.gif (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallDialog\images\x.gif (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallDialog\js\jquery.min.js (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallDialog\js\nsUI.js (PUP.Optional.Conduit.A) -> No action taken.
C:\ProgramData\Conduit\IE\CT3315827\UninstallDialog\js\UninstallDialogLogic.js (PUP.Optional.Conduit.A) -> No action taken.
 
(end)

Edited by Rputzbach, 02 February 2014 - 08:34 PM.


#9 Rputzbach

Rputzbach
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:08:15 AM

Posted 03 February 2014 - 08:05 AM

In addition to still having the mysearchdial virus in chrome, there is also more lag than usual(such as when playing a card game, and upon starting the computer there is a message coming up saying a download is needed for IDT. Not sure why this has gotten like this, thanks a lot.



#10 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,030 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:05:15 AM

Posted 03 February 2014 - 11:35 AM

Please download Hitman Pro
 
Click on HitmanPro.exe (for 32-bit versions of Windows) or HitmanPro_x64.exe (for 64-bit versions of Windows).  Toward the bottom of the window you will be asked to agree with the terms of the use of Hitman Pro, click on I agree, then click on Next to install Hitman Pro.
 
HM1_zpsde93e28a.png 
 
You will be asked "Would you like to store a copy of Hitman Pro program file on this computer"?  Click on No, then click on Next.  
 
hm2_zps372cdca5.png
 
Hitman Pro will now start to scan your computer.  Click on Next when the scan is finished. 
 
hm3_zps9689b301.png
 
When it is finished you will see a list of the malware found.  At the bottom of the page you will see Save Log, then click on Next to remove the malware.  If you have a window opens which states "No threats found" click on Close.
 
hm4_zpsaf0c967c.png
 
If the window below opens click on Activate free license, this will allow access the the Next button needed to close the program. 
 
hmlast_zpsa9c68c49.png

Edited by dc3, 03 February 2014 - 03:47 PM.

Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#11 Rputzbach

Rputzbach
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:08:15 AM

Posted 05 February 2014 - 07:54 PM

one more problem is that the following message appears on the screen upon startup:

 

 

http://i.imgur.com/n2qBxBj.png



#12 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,030 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:05:15 AM

Posted 06 February 2014 - 10:10 AM

Did you run Hitman Pro?


Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#13 Rputzbach

Rputzbach
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:08:15 AM

Posted 06 February 2014 - 02:19 PM

Yea



#14 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,030 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:05:15 AM

Posted 06 February 2014 - 02:58 PM

And????


Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#15 Rputzbach

Rputzbach
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:08:15 AM

Posted 06 February 2014 - 03:46 PM

Oh, I'm sorry. The imgur link i posted was the result after everything else in thread has been done, browsers are looking good, thats the only thing that looks out of order. Thanks a lot






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users