I have NO money in my account so call Ron !!!

AVAST warning of Virus [Solved]
Started by
simplee55
, May 18 2010 12:51 AM
#76
Posted 31 May 2010 - 04:03 PM

I have NO money in my account so call Ron !!!
#77
Posted 31 May 2010 - 09:24 PM

Essexboy:
I fixed the Taskbar. Had to do something dramatic, another Recovery, but it's okay.
I had to run Malwarebytes again because after I did that Recovery, I saw MyWebSearch again. I can not believe that this was actually downloaded with this Total Recovery .... WOW !!! I already put the Infections in Quarantine. What do you want me to do with them. Can they ALL be deleted ???
See the SNAPSHOT and the mbam Log:
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Database version: 4160
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
5/31/2010 6:04:27 PM
mbam-log-2010-05-31 (18-04-27).txt
Scan type: Quick scan
Objects scanned: 113627
Time elapsed: 5 minute(s), 51 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 4
Registry Values Infected: 0
Registry Data Items Infected: 2
Folders Infected: 0
Files Infected: 1
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CLASSES_ROOT\TypeLib\{df058c45-cd18-453e-8745-5a77f60722ab} (Adware.Gdown) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{b5a33c35-7298-4d15-8753-a2e851e2eab3} (Adware.Gdown) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{f0d2b812-752d-4af1-a2fb-968c4d8446db} (Adware.Gdown) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{e856b973-45fd-4559-8f82-eab539144667} (Adware.Gdown) -> Quarantined and deleted successfully.
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Folders Infected:
(No malicious items detected)
Files Infected:
C:\WINDOWS\system32\GTDownDE_87.ocx (Adware.Gdown) -> Quarantined and deleted successfully.
Thank U !!!
I fixed the Taskbar. Had to do something dramatic, another Recovery, but it's okay.
I had to run Malwarebytes again because after I did that Recovery, I saw MyWebSearch again. I can not believe that this was actually downloaded with this Total Recovery .... WOW !!! I already put the Infections in Quarantine. What do you want me to do with them. Can they ALL be deleted ???
See the SNAPSHOT and the mbam Log:
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Database version: 4160
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
5/31/2010 6:04:27 PM
mbam-log-2010-05-31 (18-04-27).txt
Scan type: Quick scan
Objects scanned: 113627
Time elapsed: 5 minute(s), 51 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 4
Registry Values Infected: 0
Registry Data Items Infected: 2
Folders Infected: 0
Files Infected: 1
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CLASSES_ROOT\TypeLib\{df058c45-cd18-453e-8745-5a77f60722ab} (Adware.Gdown) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{b5a33c35-7298-4d15-8753-a2e851e2eab3} (Adware.Gdown) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{f0d2b812-752d-4af1-a2fb-968c4d8446db} (Adware.Gdown) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{e856b973-45fd-4559-8f82-eab539144667} (Adware.Gdown) -> Quarantined and deleted successfully.
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Folders Infected:
(No malicious items detected)
Files Infected:
C:\WINDOWS\system32\GTDownDE_87.ocx (Adware.Gdown) -> Quarantined and deleted successfully.
Thank U !!!
#78
Posted 01 June 2010 - 12:25 PM

Yep kill 'em
Remember when you extend the quick launch don't go too far
OK what do we have outstanding now ?
Remember when you extend the quick launch don't go too far

OK what do we have outstanding now ?
#79
Posted 01 June 2010 - 12:58 PM

Yep kill 'em. Meaning delete 'em ..... right.
Remember when you extend the quick launch don't go too far
I never expended Quick Launch, don't have a need to. I was putting one or the ICONS on the Taskbar and my hand slipped and it doubled in size. After I got the Taskbar straight, I Locked it, shouldn't have any more problems with that, I hope.
One more thing, as far as AUTORUNS are concerned, I shouldn't delete any of the "FILES NOT FOUND". Because I was told that not deleting them slows the Performance of the System down.
OK what do we have outstanding now? As far as I can see, I'm good to go.
Remember when you extend the quick launch don't go too far

One more thing, as far as AUTORUNS are concerned, I shouldn't delete any of the "FILES NOT FOUND". Because I was told that not deleting them slows the Performance of the System down.
OK what do we have outstanding now? As far as I can see, I'm good to go.

#80
Posted 01 June 2010 - 01:01 PM

Yep delete the files not found entries - it will not make a deal of difference to your speed though, but it is tidy
Meaning delete 'em ..... right. Yup
OK behave yourself now and enjoy

Meaning delete 'em ..... right. Yup
OK behave yourself now and enjoy

#81
Posted 01 June 2010 - 04:25 PM

OK behave yourself now and enjoy
GOT NOTHING BUT LOVE 4 YA !!!



#82
Posted 02 June 2010 - 11:28 AM

Since this issue appears to be resolved ... this Topic has been closed. Glad we could help. 
If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.
Everyone else please begin a New Topic.

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.
Everyone else please begin a New Topic.
Similar Topics
2 user(s) are reading this topic
0 members, 2 guests, 0 anonymous users
As Featured On:






