Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

my new laptop a bit slow


  • Please log in to reply
13 replies to this topic

#1 snouk

snouk

  • Members
  • 58 posts
  • OFFLINE
  •  
  • Local time:04:25 PM

Posted 07 October 2014 - 09:32 AM

Hello my laptop is hanging and have some pop ups. I think there is something in there. Malwearbytes found something. Have a look please:

 

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 10/6/2014
Scan Time: 12:29:13 PM
Logfile: mbamlog.txt
Administrator: Yes

Version: 2.00.2.1012
Malware Database: v2014.10.06.06
Rootkit Database: v2014.09.19.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Bobby

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 427350
Time Elapsed: 28 min, 2 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 2
PUP.Optional.GetPrivateVPN, C:\Users\Bobby\AppData\Roaming\GetPrivate, Quarantined, [334b5cb5a4d8da5cd09d35d8a1620ef2],
PUP.Optional.GetPrivateVPN, C:\Program Files (x86)\GetPrivate, Quarantined, [a9d54bc64933171f4d218f7eef1458a8],

Files: 6
PUP.Optional.GetPrivateVPN, C:\Users\Bobby\AppData\Roaming\GetPrivate\tasks.dll, Quarantined, [334b5cb5a4d8da5cd09d35d8a1620ef2],
PUP.Optional.GetPrivateVPN, C:\Users\Bobby\AppData\Roaming\GetPrivate\gp_upd.exe, Quarantined, [334b5cb5a4d8da5cd09d35d8a1620ef2],
PUP.Optional.GetPrivateVPN, C:\Program Files (x86)\GetPrivate\tasks.dll, Quarantined, [a9d54bc64933171f4d218f7eef1458a8],
PUP.Optional.GetPrivateVPN, C:\Program Files (x86)\GetPrivate\gpup.exe, Quarantined, [a9d54bc64933171f4d218f7eef1458a8],
PUP.Optional.MyStart.A, C:\Users\Bobby\AppData\Local\Temp\mystart-manifest.xml, Quarantined, [5529957cb5c7d85ea8ef020c1fe4916f],
PUP.Optional.MyStart.A, C:\Users\Bobby\AppData\Local\Temp\mystart-toolbar.xml, Quarantined, [84fa34dd5d1fc96d3c5cb757c73c9f61],

Physical Sectors: 0
(No malicious items detected)


(end)



BC AdBot (Login to Remove)

 


m

#2 buddy215

buddy215

  • BC Advisor
  • 12,608 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:02:25 PM

Posted 07 October 2014 - 09:41 AM

If you haven't allowed MBAM to quarantine or remove what it found....do that.

 

You should run the scans below to find and remove more adware/ malware.

 

download AdwCleaner by Xplode onto your desktop.
Close all open programs and internet browsers.
Double click on adwcleaner.exe to run the tool.
Click on Delete.
Confirm each time with Ok.
You will be prompted to restart your computer. A text file will open after the restart.
Please post the contents of that logfile with your next reply.
You can find the logfile at C:\AdwCleaner[S1].txt as well.

 

  • download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message
  • Run the ESET Online Scanner.
  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
  • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
  • Double click on the esetsmartinstaller_enu.png icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.
  • NOTE:Sometimes if ESET finds no infections it will not create a log.

Use CCleaner to cleanup the caches, temporary files, cookies, etc. Pay attention while installing and UNcheck offers of toolbars...especially Yahoo.

No need to use the Registry Cleaning Tool and it has the potential to cause a problem if used.

CCleaner - PC Optimization and Cleaning - Free Download


“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss

A 1792 U.S. penny, designed in part by Thomas Jefferson and George Washington, reads “Liberty Parent of Science & Industry.”


#3 snouk

snouk
  • Topic Starter

  • Members
  • 58 posts
  • OFFLINE
  •  
  • Local time:04:25 PM

Posted 07 October 2014 - 10:30 AM

I have download AdwCleaner, its on my desktop but it will not run or open when i click it, or right click open.

 

 

Eset will not download the component, it's hanging ill make a screenshot.

 

n1oztf.jpg


Edited by snouk, 07 October 2014 - 10:55 AM.


#4 buddy215

buddy215

  • BC Advisor
  • 12,608 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:02:25 PM

Posted 07 October 2014 - 11:37 AM

Hmmmm....malware can block security programs from downloading, installing and scanning...but I haven't known of

one that would allow MBAM and yet block those two....especially AdwCleaner.

 

So, try using RKill to kill any processes that may be blocking the scanning tools.

Once you have downloaded and run RKill do not reboot. Instead try downloading the Eset online scanner again.

The same with AdwCleaner. At the Rkill download page you will see several aliases/ file names for Rkill. If one

doesn't work, try another.

RKill Download


“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss

A 1792 U.S. penny, designed in part by Thomas Jefferson and George Washington, reads “Liberty Parent of Science & Industry.”


#5 snouk

snouk
  • Topic Starter

  • Members
  • 58 posts
  • OFFLINE
  •  
  • Local time:04:25 PM

Posted 07 October 2014 - 12:40 PM

same thing after running rkill:

 

Rkill 2.6.8 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2014 BleepingComputer.com
More Information about Rkill can be found at this link:
 http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 10/07/2014 01:27:35 PM in x64 mode.
Windows Version: Windows 7 Home Premium Service Pack 1

Checking for Windows services to stop:

 * No malware services found to stop.

Checking for processes to terminate:

 * C:\Users\Bobby\Desktop\AdwCleaner.exe (PID: 2144) [UP-HEUR]
 * C:\Users\Bobby\Desktop\AdwCleaner.exe (PID: 3688) [UP-HEUR]
 * C:\Users\Bobby\Desktop\AdwCleaner.exe (PID: 4900) [UP-HEUR]

3 proccesses terminated!

Checking Registry for malware related settings:

 * No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

 * No issues found.

Checking Windows Service Integrity:

 * No issues found.

Searching for Missing Digital Signatures:

 * No issues found.

Checking HOSTS File:

 * No issues found.

Program finished at: 10/07/2014 01:30:16 PM
Execution time: 0 hours(s), 2 minute(s), and 41 seconds(s)
 


i have JRT

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.3.1 (10.06.2014:1)
OS: Windows 7 Home Premium x64
Ran by Bobby on Tue 10/07/2014 at 11:31:57.96
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services

Successfully stopped: [Service] hshld
Successfully deleted: [Service] hshld
Successfully stopped: [Service] hsstrayservice
Successfully deleted: [Service] hsstrayservice
Failed to stop: [Service] hsswd



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\ApnStub_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\ApnStub_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker-1_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker-1_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskPartnerCobrandingTool_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskPartnerCobrandingTool_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskSLib_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskSLib_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\TaskScheduler_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\TaskScheduler_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\DynamicPricerInstaller_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\DynamicPricerInstaller_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\DynamicPricer_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\DynamicPricer_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\ApnStub_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\ApnStub_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker-1_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker-1_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskSLib_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskSLib_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\TaskScheduler_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\TaskScheduler_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\DynamicPricerInstaller_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\DynamicPricerInstaller_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\DynamicPricer_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\DynamicPricer_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{E6656290-1D27-4C79-A76B-68F90C84EBD8}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C9C42510-9B41-42c1-9DCD-7282A2D07C61}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{C9C42510-9B41-42c1-9DCD-7282A2D07C61}
Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}
Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C9C42510-9B41-42c1-9DCD-7282A2D07C61}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{C9C42510-9B41-42c1-9DCD-7282A2D07C61}
Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}
Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C9C42510-9B41-42c1-9DCD-7282A2D07C61}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{C9C42510-9B41-42c1-9DCD-7282A2D07C61}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\hotspot shield"
Successfully deleted: [Folder] "C:\ProgramData\partner"
Successfully deleted: [Folder] "C:\Users\Bobby\AppData\Roaming\hotspot shield"
Successfully deleted: [Folder] "C:\Users\Bobby\appdata\locallow\inbox toolbar"
Successfully deleted: [Folder] "C:\Program Files (x86)\hotspot shield"
Successfully deleted: [Folder] "C:\windows\syswow64\ai_recyclebin"
Successfully deleted: [Folder] "C:\ProgramData\ask"



~~~ FireFox

Successfully deleted: [File] C:\Users\Bobby\AppData\Roaming\mozilla\firefox\profiles\lazm2wk2.default-1405682470072\user.js
Successfully deleted the following from C:\Users\Bobby\AppData\Roaming\mozilla\firefox\profiles\lazm2wk2.default-1405682470072\prefs.js

user_pref("fbsidebardisabler.au_script_cache", "{\"data\":\"/*\\n * SocialReviver - AutoUpdate JS code\\n * Copyright © 2013 VittGam.net. All rights reserved.\\n *\\n * This
user_pref("fbsidebardisabler.langlastdata", "{\"lang\":\"en\",\"updid\":\"0fd4354118bbb898675ecef8ce64d69f\",\"data\":{\"need_translation\":0,\"options_updatelist\":\"Manually
Emptied folder: C:\Users\Bobby\AppData\Roaming\mozilla\firefox\profiles\lazm2wk2.default-1405682470072\minidumps [52 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Tue 10/07/2014 at 11:36:17.34
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 



#6 buddy215

buddy215

  • BC Advisor
  • 12,608 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:02:25 PM

Posted 07 October 2014 - 01:12 PM

Uninstall AdwCleaner...you may have more than one instance. Open AdwCleaner and click on the Uninstall tab.

 

 

Update and Rerun MBAM and post the new scan log.


“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss

A 1792 U.S. penny, designed in part by Thomas Jefferson and George Washington, reads “Liberty Parent of Science & Industry.”


#7 buddy215

buddy215

  • BC Advisor
  • 12,608 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:02:25 PM

Posted 07 October 2014 - 01:18 PM

Check in the lists of programs installed on your computer (Add/ Remove) for Hotspot Shield. If there, attempt to uninstall.


“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss

A 1792 U.S. penny, designed in part by Thomas Jefferson and George Washington, reads “Liberty Parent of Science & Industry.”


#8 snouk

snouk
  • Topic Starter

  • Members
  • 58 posts
  • OFFLINE
  •  
  • Local time:04:25 PM

Posted 07 October 2014 - 01:19 PM

AdwCleaner wont even open at all to allow an install.



#9 buddy215

buddy215

  • BC Advisor
  • 12,608 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:02:25 PM

Posted 07 October 2014 - 01:38 PM

Have you rebooted the computer? RKill stopped AdwCleaner processes from running. Try rebooting then

opening and uninstalling AdwCleaner.

 

If that doesn't work then try Revo Free Uninstaller to remove it.

Download Revo Uninstaller Freeware - Free and Full Download - Uninstall software, remove programs, solve uninstall problems


“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss

A 1792 U.S. penny, designed in part by Thomas Jefferson and George Washington, reads “Liberty Parent of Science & Industry.”


#10 snouk

snouk
  • Topic Starter

  • Members
  • 58 posts
  • OFFLINE
  •  
  • Local time:04:25 PM

Posted 07 October 2014 - 01:56 PM

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 10/7/2014
Scan Time: 2:20:35 PM
Logfile:
Administrator: Yes

Version: 2.00.2.1012
Malware Database: v2014.10.07.11
Rootkit Database: v2014.09.19.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Bobby

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 427890
Time Elapsed: 12 min, 32 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)


You are not understanding, AdwCleaner was never installed, I will not open.



#11 snouk

snouk
  • Topic Starter

  • Members
  • 58 posts
  • OFFLINE
  •  
  • Local time:04:25 PM

Posted 07 October 2014 - 01:57 PM

you are not understanding, AdwCleaner will never open. I never got it to install. How it can be uninstall if never was install? ...

 

I know what hotspotshield is and i use it I dont want to uninstall it.


Edited by snouk, 07 October 2014 - 01:58 PM.


#12 buddy215

buddy215

  • BC Advisor
  • 12,608 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:02:25 PM

Posted 07 October 2014 - 02:40 PM

Then try a file search for AdwCleaner.

 

Hotspot Shield is seen as adware by Junkware Removal Tool. That is why it removed files related to Hotspot Shield.

It does have a paid version...Elite...the paid Elite tier comes at an affordable price, with cross-platform support.

As one site stated:

Cons

Ad disruptive: Hotspot Shield Free occasionally shows up as a pop-up or header on the top of your browser. While this window may be closed, it does become rather tedious to have to close it every time.

Limited connection: The free version does not allow you to connect from other locations or regions.

 

The bottom line...if you won't to have Hotspot Shield Free then find and uninstall then reinstall as it is either gone or broken.


“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss

A 1792 U.S. penny, designed in part by Thomas Jefferson and George Washington, reads “Liberty Parent of Science & Industry.”


#13 snouk

snouk
  • Topic Starter

  • Members
  • 58 posts
  • OFFLINE
  •  
  • Local time:04:25 PM

Posted 07 October 2014 - 04:13 PM

Ok, i fixd hotspotshield.



#14 buddy215

buddy215

  • BC Advisor
  • 12,608 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:02:25 PM

Posted 08 October 2014 - 07:58 AM

Yesterday, RKill stopped three AdwCleaner processes....C:\Users\Bobby\Desktop\AdwCleaner.exe

Have you done a file search for AdwCleaner and removed those files?

Have you used Revo Free Uninstaller to find and remove those files?

 

Something on your computer is preventing AdwCleaner and the Eset online scanner from working.

It may be an active security program such as an antivirus program. Stop/ exit any security program from running

and attempt another Eset scan.

It could be that your Firefox or a Firefox add-on is interfering with Eset. Open IE browser and use it for running the Eset scan

after you have stopped your security programs from running in real time. 

 

To eliminate the possibility that Hotspot Shield is the problem, be sure that you are not using it and that it is disabled for now.


“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss

A 1792 U.S. penny, designed in part by Thomas Jefferson and George Washington, reads “Liberty Parent of Science & Industry.”





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users