Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

I have Malware that keeps re-installing itself


  • This topic is locked This topic is locked
24 replies to this topic

#1 realkayla

realkayla

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:12:24 PM

Posted 21 August 2014 - 10:58 PM

whenever i remove it with malwarebytes it re-installs itself. i have tried doing it in safe mode as well which has not helped.

 

its says the vendor is PUP.Optional.My.Search.Dial.A

 

ive tried many different scans and it just keeps coming back.

 

please help



BC AdBot (Login to Remove)

 


m

#2 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:03:24 AM

Posted 22 August 2014 - 02:58 AM

Hello realkayla.

 

We may be able to help as Malwarebytes Anti-Malware can be a bit too heavy ....

 

First - This is a "basic clean-up" and we will go further depending on your answers.

Please download and run RKill by Grinler.
 A black DOS box will appear for a short time and then disappear.
 This is normal and indicates the tool ran successfully.
 At most the tool will usually run for less than 2 minutes
 Please Copy and Paste the small log back here.

 

Important: Do not reboot your computer until you complete the next step.


* NOW :

If you have AdwCleaner installed, please open it and hit the Uninstall button, if not please continue -

 Please download AdwCleaner by Xplode and save to your Desktop.
 * Double-click on AdwCleaner.exe to run the tool.
 * Vista/Windows 7/8 users right-click and select Run As Administrator.
 * Click on the Scan button only once to ensure a correct reading
 * AdwCleaner will begin...be patient as the scan may take some time to complete.
 * After the scan has finished, click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
* Check the removals and see if you are OK with the list.
* Now
 * Click on the Clean button only once to ensure a correct reading
 * Press OK when asked to close all programs and follow the onscreen prompts.
 * Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
 * After rebooting, a logfile report (AdwCleaner[S0].txt) will open automatically.
  Copy and Paste the contents of that logfile in your next reply.

* A copy of all logfiles are also saved in the C:\AdwCleaner folder which was created when running the tool.

 

 

After you post those logs, please run ESET Online Scanner.

  • For Internet Explorer users -
  • Hold down Control and click on This Link to open ESET OnlineScan in a new window.
  • Click the ESETonline button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
  • Click on esetsmartinstaller_enu. to download the ESET Smart Installer. Save it to your desktop.
  • Double click on the esetsmartinstaller_enu icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives and Renove Threats"
  • Click Advanced settings and select the following:
    Scan potentially unwanted applications
     Scan for potentially unsafe applications
     Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.

NOTE:Sometimes if ESET finds no infections it will not create a log.

 

 

Thank You -



#3 realkayla

realkayla
  • Topic Starter

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:12:24 PM

Posted 22 August 2014 - 05:14 PM

Hello

 

I have the first two logs

 

The RKill log:

Rkill 2.6.8 by Lawrence Abrams (Grinler)
Copyright 2008-2014 BleepingComputer.com
More Information about Rkill can be found at this link:
 
Program started at: 08/22/2014 04:51:05 PM in x64 mode.
Windows Version: Windows 7 Home Premium Service Pack 1
 
Checking for Windows services to stop:
 
 * No malware services found to stop.
 
Checking for processes to terminate:
 
 * No malware processes found to kill.
 
Checking Registry for malware related settings:
 
 * Advanced Explorer Setting Removed:  HideIcons [HKCU]
 
Backup Registry file created at:
 C:\Users\patty\Desktop\rkill\rkill-08-22-2014-04-51-10.reg
 
Resetting .EXE, .COM, & .BAT associations in the Windows Registry.
 
Performing miscellaneous checks:
 
 * Windows Defender Disabled
 
   [HKLM\SOFTWARE\Microsoft\Windows Defender]
   "DisableAntiSpyware" = dword:00000001
 
Checking Windows Service Integrity: 
 
 * Windows Defender (WinDefend) is not Running.
   Startup Type set to: Manual
 
Searching for Missing Digital Signatures: 
 
 * No issues found.
 
Checking HOSTS File: 
 
 * No issues found.
 
Program finished at: 08/22/2014 04:53:02 PM
Execution time: 0 hours(s), 1 minute(s), and 56 seconds(s)
 
And the log from the AdwCleaner:
# AdwCleaner v3.308 - Report created 22/08/2014 at 17:03:14
# Updated 20/08/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : patty - PATTY-PC
# Running from : C:\Users\patty\Downloads\AdwCleaner.exe
# Option : Clean
 
***** [ Services ] *****
 
 
***** [ Files / Folders ] *****
 
File Deleted : C:\Users\patty\AppData\Roaming\Mozilla\Firefox\Profiles\68i44gc3.default\searchplugins\bingp.xml
File Deleted : C:\Users\patty\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage
File Deleted : C:\Users\patty\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage-journal
 
***** [ Scheduled Tasks ] *****
 
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{74F475FA-6C75-43BD-AAB9-ECDA6184F600}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{065C1A21-97F8-45FB-A9F0-861B60FACEC8}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3204358F-5904-46A6-841F-D6B5BE3EF4E3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3AE67737-0E3E-44AA-AA5E-46A68BF017FF}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3EE5B726-044A-48D2-AA7B-049BD9A0F62A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{60FBBE03-57FF-49D8-B38E-053D3F489825}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6A5182F1-C0B8-42B8-96CC-7F329CD46913}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6C153418-8E4D-4FAF-AF27-5201E38463A7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A26A2F05-AC4D-4A1E-9531-9125F7309B78}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CC5D6240-7DF0-435D-9B9B-F8586A99DE86}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F343045E-E20A-46E1-82D8-9962C43EFC9E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FBB360DC-CB6C-4D6A-808A-2C773151BFFF}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FFD7DDAC-EC28-42A5-8D39-917B9078604B}
Key Deleted : HKCU\Software\AppDataLow\Software\adawarebp
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
 
***** [ Browsers ] *****
 
-\\ Internet Explorer v11.0.9600.17239
 
 
-\\ Mozilla Firefox v31.0 (x86 en-US)
 
[ File : C:\Users\patty\AppData\Roaming\Mozilla\Firefox\Profiles\68i44gc3.default\prefs.js ]
 
 
-\\ Google Chrome v36.0.1985.143
 
[ File : C:\Users\patty\AppData\Local\Google\Chrome\User Data\Default\preferences ]
 
Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
Deleted [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
Deleted [Search Provider] : hxxp://dts.search-results.com/sr?src=crb&gct=ds&appid=582&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=7557310053434385&q={searchTerms}
Deleted [Search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
Deleted [Startup_urls] : hxxp://www.searchnu.com/406
Deleted [Startup_urls] : hxxp://www.google.com/|hxxp://www.searchnu.com/406|hxxp://www.msn.com/?pc=UP21&ocid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&dt=041413|hxxp://mysearch.avg.com/?cid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&mid=3c7bb11334e447d3925e012ea3c8a16d-d66e37ffbba33186926fd32a8ca4c8ee2df76675&lang=en&ds=sf011&pr=sa&d=2013-08-11 18:30:23&v=17.1.3.1&pid=safeguard&sg=1&sap=hp|hxxp://mysearch.avg.com/?cid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&mid=3c7bb11334e447d3925e012ea3c8a16d-d66e37ffbba33186926fd32a8ca4c8ee2df76675&lang=en&ds=sf011&pr=sa&d=2013-08-26 22:23:02&v=15.6.1.2&pid=safeguard&sg=0&sap=hp
Deleted [Startup_urls] : hxxp://www.google.com/|hxxp://www.searchnu.com/406|hxxp://www.msn.com/?pc=UP21&ocid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&dt=041413|hxxp://mysearch.avg.com/?cid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&mid=3c7bb11334e447d3925e012ea3c8a16d-d66e37ffbba33186926fd32a8ca4c8ee2df76675&lang=en&ds=sf011&pr=sa&d=2013-08-11 18:30:23&v=17.1.3.1&pid=safeguard&sg=81&sap=hp|hxxp://mysearch.avg.com/?cid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&mid=3c7bb11334e447d3925e012ea3c8a16d-d66e37ffbba33186926fd32a8ca4c8ee2df76675&lang=en&ds=sf011&pr=sa&d=2013-08-26 22:23:02&v=15.6.1.2&pid=safeguard&sg=0&sap=hp|hxxp://www.google.com/|hxxp://www.searchnu.com/406|hxxp://www.msn.com/?pc=UP21&ocid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&dt=041413|hxxp://mysearch.avg.com/?cid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&mid=3c7bb11334e447d3925e012ea3c8a16d-d66e37ffbba33186926fd32a8ca4c8ee2df76675&lang=en&ds=sf011&pr=sa&d=2013-08-11 18:30:23&v=17.1.3.1&pid=safeguard&sg=1&sap=hp|hxxp://mysearch.avg.com/?cid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&mid=3c7bb11334e447d3925e012ea3c8a16d-d66e37ffbba33186926fd32a8ca4c8ee2df76675&lang=en&ds=sf011&pr=sa&d=2013-08-26 22:23:02&v=15.6.1.2&pid=safeguard&sg=0&sap=hp
Deleted [Startup_urls] : hxxp://www.google.com/|hxxp://www.searchnu.com/406|hxxp://www.msn.com/?pc=UP21&ocid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&dt=041413|hxxp://mysearch.avg.com/?cid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&mid=3c7bb11334e447d3925e012ea3c8a16d-d66e37ffbba33186926fd32a8ca4c8ee2df76675&lang=en&ds=sf011&pr=sa&d=2013-08-11 18:30:23&v=17.1.3.1&pid=safeguard&sg=0&sap=hp|hxxp://mysearch.avg.com/?cid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&mid=3c7bb11334e447d3925e012ea3c8a16d-d66e37ffbba33186926fd32a8ca4c8ee2df76675&lang=en&ds=sf011&pr=sa&d=2013-08-26 22:23:02&v=15.6.1.2&pid=safeguard&sg=0&sap=hp|hxxp://www.google.com/|hxxp://www.searchnu.com/406|hxxp://www.msn.com/?pc=UP21&ocid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&dt=041413|hxxp://mysearch.avg.com/?cid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&mid=3c7bb11334e447d3925e012ea3c8a16d-d66e37ffbba33186926fd32a8ca4c8ee2df76675&lang=en&ds=sf011&pr=sa&d=2013-08-11 18:30:23&v=17.1.3.1&pid=safeguard&sg=1&sap=hp|hxxp://mysearch.avg.com/?cid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&mid=3c7bb11334e447d3925e012ea3c8a16d-d66e37ffbba33186926fd32a8ca4c8ee2df76675&lang=en&ds=sf011&pr=sa&d=2013-08-26 22:23:02&v=15.6.1.2&pid=safeguard&sg=0&sap=hp|hxxp://www.google.com/|hxxp://www.searchnu.com/406|hxxp://www.msn.com/?pc=UP21&ocid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&dt=041413|hxxp://mysearch.avg.com/?cid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&mid=3c7bb11334e447d3925e012ea3c8a16d-d66e37ffbba33186926fd32a8ca4c8ee2df76675&lang=en&ds=sf011&pr=sa&d=2013-08-11 18:30:23&v=17.1.3.1&pid=safeguard&sg=81&sap=hp|hxxp://mysearch.avg.com/?cid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&mid=3c7bb11334e447d3925e012ea3c8a16d-d66e37ffbba33186926fd32a8ca4c8ee2df76675&lang=en&ds=sf011&pr=sa&d=2013-08-26 22:23:02&v=15.6.1.2&pid=safeguard&sg=0&sap=hp|hxxp://www.google.com/|hxxp://www.searchnu.com/406|hxxp://www.msn.com/?pc=UP21&ocid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&dt=041413|hxxp://mysearch.avg.com/?cid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&mid=3c7bb11334e447d3925e012ea3c8a16d-d66e37ffbba33186926fd32a8ca4c8ee2df76675&lang=en&ds=sf011&pr=sa&d=2013-08-11 18:30:23&v=17.1.3.1&pid=safeguard&sg=1&sap=hp|hxxp://mysearch.avg.com/?cid={65D841D2-CC4B-4E0A-818B-CCB10DB263AD}&mid=3c7bb11334e447d3925e012ea3c8a16d-d66e37ffbba33186926fd32a8ca4c8ee2df76675&lang=en&ds=sf011&pr=sa&d=2013-08-26 22:23:02&v=15.6.1.2&pid=safeguard&sg=0&sap=hp
Deleted [Startup_urls] : hxxp://start.mysearchdial.com/?f=1&a=ir_14_24_ch&cd=2XzuyEtN2Y1L1Qzu0DtDyCyB0EyDtB0CyEzzzy0Ezz0BtBtDtN0D0Tzu0SzzzytAtN1L2XzutBtFtBtCtFyEtFtCtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyEyE0DtA0F0A0EtCtGtBtCtBzytG0DtBzz0EtGyB0AtAyCtGyEyBtAtDtAyByEyByB0DyC0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyDzy0FyByB0CtCyCtG0FyDtC0AtG0CyB0BtDtG0EyEtD0DtGyByBtD0E0Bzy0A0CyEzz0EyD2Q&cr=1589474009&ir=
 
*************************
 
AdwCleaner[R1].txt - [7235 octets] - [22/08/2014 16:58:36]
AdwCleaner[S1].txt - [7594 octets] - [22/08/2014 17:03:14]
 
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [7654 octets] ##########
 
I still have yet to run ESET online scanner but I will get right on it.

Edited by realkayla, 22 August 2014 - 10:21 PM.


#4 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:03:24 AM

Posted 22 August 2014 - 07:01 PM

Thank you, realkayla for those logs.

 

Please use the More Reply Options tab or just Click into the open reply box.
It is not required for you to hit the Quote or Multi Quote tabs unless required.

 

Regards -



#5 realkayla

realkayla
  • Topic Starter

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:12:24 PM

Posted 22 August 2014 - 10:20 PM

Sorry about that noknojon!

 

I ran the scan and i have the results here

 

C:\Program Files (x86)\Dell DataSafe Local Backup\hstart.exe a variant of Win32/HiddenStart.A potentially unsafe application
 


#6 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:03:24 AM

Posted 22 August 2014 - 10:47 PM

There was no real problem, but often a reply box will only take so much data ........

 

Thank you for the last reply, now I will see if it exists in real-time and is known to cause problems.

 

Please post back after you visit a few "known good sites", and run another Malwarebytes Anti-Malware scan.

Then tell us how the computer is performing -

 

Thanks -



#7 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:03:24 AM

Posted 23 August 2014 - 01:27 AM

Dell DataSafe Local Backup 2.0 is a backup application installed on Dell Inspiron, Studio and XPS computers as of April 22, 2009. Unlike previous versions of Dell's system protection software, Dell DataSafe Local Backup 2.0 is able to restore a Dell computer to the original factory-installed configuration without erasing personal files and data.
 

There is a few times when these type of program will show up, but they are generally minor.

 

How is it at your end ??



#8 realkayla

realkayla
  • Topic Starter

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:12:24 PM

Posted 23 August 2014 - 01:38 AM

Unfortunately the malware had reinstalled itself. It shows up in the malwarebytes scan.

I ran the scan twice, one after another with out rebooting my computer and it was back instsantly.



#9 realkayla

realkayla
  • Topic Starter

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:12:24 PM

Posted 23 August 2014 - 01:42 AM

How do I use the Dell back up?



#10 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:03:24 AM

Posted 23 August 2014 - 01:52 AM

I ran the scan twice, one after another with out rebooting

I hate to lecture, but Reboot is the best thing.

 

Please download Temp File Cleaner by Old Timer
Usage Instructions:

1.Download TFC from the download link above and save the file on your desktop.
2.Close ALL running applications as TFC will terminate them before attempting to clean up the temporary files.
3.Double-click on the TFC icon.
4.When the program opens, click on the Start button.  TFC will terminate the Explorer process and all running applications and then begin the process of cleaning out all of your temp folders.
5.When done, press OK > Exit, and reboot your computer and finish the cleanup

 

How do I use the Dell back up?

I would need to go back to your manual as it is usually 1 or 2 keys to hold down. (often a combination of F Keys or similar)

 

 

Run TFC from above just to see if it is a Temp File that is stuck .

 

Give me 10 minutes to look around -



#11 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:03:24 AM

Posted 23 August 2014 - 01:57 AM

A quick idea, you have not mentioned, but has your Home Page been changed from normal ??

 

Next, is Google Chrome your normal browser ??



#12 realkayla

realkayla
  • Topic Starter

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:12:24 PM

Posted 23 August 2014 - 02:24 AM

I ran TFC and the malware still seems to be here. Sorry to be such a pain but this malware is such a pain.

 

Google Chrome is my normal browser. Once the malware made it into my computer my home screen was changed to My Search Dial which I had uninstalled and removed from the google chrome extensions and reset it to my normal home page.



#13 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:03:24 AM

Posted 23 August 2014 - 02:40 AM

Yes it is a pain in many ways .

Can you first check any other browser you have for this also -

 

Now -

Please download Junkware Removal Tool to your desktop.
* Temporarily Disable your Antivirus now to avoid potential conflicts.
* Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
* The tool will open and start scanning your system.
* Please be patient as this can take a while to complete depending on your system's specifications.
* On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
* Post the contents of JRT.txt into your next message.

 

 

 

Note: You are using a trial version only , even though it is called Pro (see step 5)

It is a cood Genuine program that we do use often -

1 / You can download HitmanPro from the below link:
HITMANPRO DOWNLOAD LINK (This link will open a web page from where you can download HitmanPro)
2 / Double-click on the file named HitmanPro.exe (for 32-bit versions of Windows) or HitmanPro_x64.exe (for 64-bit versions of Windows).
Click on the Next button at the bottom, to install HitmanPro on your computer.
3 / HitmanPro will now begin to scan your computer for PUP.Optional.MySearchDial.A files.
4 / When it has finished it will display a list of all the malware that the program found as shown in the image below. Click on the Next button, to remove PUP.Optional.MySearchDial.A adware.
5 / Click on the Activate free license button to begin the free 30 days trial, and remove all the malicious files from your computer.
 

Something must work. I only have 1 or 2 options left.



#14 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:03:24 AM

Posted 23 August 2014 - 03:21 AM

These are "mainly" reading and you may find help there. Do not download any advertising, or ask me first.

 

1. Go to Add/Remove Programs in Control Panel or Programs and Features if using Vista/Windows 7/8.

From within Add/Remove Programs look for anything related, and select Remove.

2. Open your browser(s) and disable (uncheck) all extensions. Make a list, then one by one, re-enable each extension to see if the pop-ups start appearing again with that particular extension. Once you identify the responsible extension...permanently remove it but let me know which one it was so I can update the our list. (we have about 20+ already)
* How to Disable Extensions in Google Chrome - How to Uninstall Extensions in Google Chrome
* How To Disable Individual Plug-ins in Google Chrome <- try only if the above does not work
* How to Disable Extensions and Plugins in Firefox - How to Remove Extensions/Uninstall Plugins in Firefox
* How to Disable Extensions in Internet Explorer
* How to Disable Add-ons/Extensions in Internet Explorer, Firefox and Google Chrome
* How to Disable all add-ons in Firefox, Internet Explorer

3. If the above did not resolve the problem, then create a new browser user profile.
* How to Create a new browser user profile in Google Chrome
* How to Create a new browser user profile in Firefox
* How to Create a new browser user profile in Opera, Internet Explorer, Firefox, Chrome

 

This has worked many times, but it is a slower, manual method of removal.



#15 realkayla

realkayla
  • Topic Starter

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:12:24 PM

Posted 23 August 2014 - 04:53 AM

Well Iv'e tried everything up until the last on because I couldn't find any folders or files with the names they said to search.






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users