Jump to content


Photo
- - - - -

Need help with Computer issues after SMART HDD virus infection


  • This topic is locked This topic is locked
30 replies to this topic

#21 dwwann

dwwann

    New Member

  • Members
  • Pip
  • 18 posts
  • Gender:Female
  • Location:california
  • Interests:Our Spiritual Earth, Cats, Turtles, and Water Gardens.

Posted 26 April 2012 - 01:11 PM

WOW...that was something.


All processes killed
========== OTL ==========
C:\ProgramData\-clPXONau6xQcAxr moved successfully.
C:\ProgramData\-clPXONau6xQcAx moved successfully.
C:\ProgramData\clPXONau6xQcAx moved successfully.
C:\Windows\Tasks\RegistryBooster.job moved successfully.
File HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{F53C93F1-07D5-430c-86D4-C9531B27DFAF}: C:\Program Files (x86)\AVG\AVG2012\Firefox\DoNotTrack\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31332EEF-CB9F-458F-AFEB-D30E9A66B6BA}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31332EEF-CB9F-458F-AFEB-D30E9A66B6BA}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31332EEF-CB9F-458F-AFEB-D30E9A66B6BA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31332EEF-CB9F-458F-AFEB-D30E9A66B6BA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{DA58ACA7-18A6-403A-93DA-6E4172D43709}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DA58ACA7-18A6-403A-93DA-6E4172D43709}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{DA58ACA7-18A6-403A-93DA-6E4172D43709}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DA58ACA7-18A6-403A-93DA-6E4172D43709}\ not found.
C:\Users\The Wand\AppData\Roaming\AVG2012\cfgall folder moved successfully.
C:\Users\The Wand\AppData\Roaming\AVG2012 folder moved successfully.
C:\ProgramData\AVG2012\log folder moved successfully.
C:\ProgramData\AVG2012\fet folder moved successfully.
C:\ProgramData\AVG2012 folder moved successfully.
C:\$AVG\$VAULT folder moved successfully.
C:\$AVG\$CHJW folder moved successfully.
C:\$AVG folder moved successfully.
C:\Program Files (x86)\AVG\AVG2012\html\reportcard folder moved successfully.
C:\Program Files (x86)\AVG\AVG2012\html folder moved successfully.
C:\Program Files (x86)\AVG\AVG2012\Firefox\DoNotTrack\defaults\preferences folder moved successfully.
C:\Program Files (x86)\AVG\AVG2012\Firefox\DoNotTrack\defaults folder moved successfully.
C:\Program Files (x86)\AVG\AVG2012\Firefox\DoNotTrack\Chrome folder moved successfully.
C:\Program Files (x86)\AVG\AVG2012\Firefox\DoNotTrack folder moved successfully.
C:\Program Files (x86)\AVG\AVG2012\Firefox folder moved successfully.
C:\Program Files (x86)\AVG\AVG2012 folder moved successfully.
C:\Program Files (x86)\AVG folder moved successfully.
C:\Users\bell\AppData\Roaming\AVG2012\cfgall folder moved successfully.
C:\Users\bell\AppData\Roaming\AVG2012 folder moved successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\\Uniblue RegistryBooster not found.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: bell
->Temp folder emptied: 238892051 bytes
->Temporary Internet Files folder emptied: 574569893 bytes
->Java cache emptied: 3120627 bytes
->Google Chrome cache emptied: 201501437 bytes
->Flash cache emptied: 174833 bytes

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56468 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Public

User: susan
->Temp folder emptied: 3631 bytes
->Temporary Internet Files folder emptied: 2711781 bytes
->Flash cache emptied: 3494 bytes

User: The Wand
->Temp folder emptied: 222872433 bytes
->Temporary Internet Files folder emptied: 62169313 bytes
->Java cache emptied: 15891 bytes
->Flash cache emptied: 62959 bytes

User: Tinker
->Temp folder emptied: 6813721 bytes
->Temporary Internet Files folder emptied: 68307527 bytes
->Java cache emptied: 0 bytes
->Flash cache emptied: 52581 bytes

User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 41620 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 480868815 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 36079993 bytes
RecycleBin emptied: 2844 bytes

Total Files Cleaned = 1,810.00 mb

Restore point Set: OTL Restore Point

OTL by OldTimer - Version 3.2.42.0 log created on 04262012_105257

#22 Maniac

Maniac

    Forum Deity

  • Experts
  • PipPipPipPipPipPip
  • 21,424 posts
  • Gender:Male
  • Location:Bulgaria, EU

Posted 26 April 2012 - 04:02 PM

Any progress?
My help is free, however, if you wish to make a small donation to show appreciation and to help me continue the fight against Malware, then click here paypal.gif

#23 dwwann

dwwann

    New Member

  • Members
  • Pip
  • 18 posts
  • Gender:Female
  • Location:california
  • Interests:Our Spiritual Earth, Cats, Turtles, and Water Gardens.

Posted 27 April 2012 - 04:09 AM

Absolutely! Maniac, you are like Gold! It's like no more speed bumps...except for that Stubborn Uniblue just doesn't want to give up.
I clicked on it's properties from the start menu and it says size is 2.82 kb and then it says size on disk is 8.00 kb, 2files, 1 folder.

Dwwann

#24 Maniac

Maniac

    Forum Deity

  • Experts
  • PipPipPipPipPipPip
  • 21,424 posts
  • Gender:Male
  • Location:Bulgaria, EU

Posted 27 April 2012 - 04:16 AM

Don't give up!

Please download SystemLook from one of the links below and save it to your Desktop.
Download Mirror #1
Download Mirror #2

  • Double-click SystemLook.exe to run it.
  • Copy the content of the following codebox into the main textfield:
    :filefind
    *RegistryBooster*
    
    :folderfind
    *uniblue*
    
    :regfind
    uniblue
    registrybooster
    

  • Click the Look button to start the scan.
  • When finished, a notepad window will open with the results of the scan. Please post this log in your next reply.
Note: The log can also be found on your Desktop entitled SystemLook.txt
My help is free, however, if you wish to make a small donation to show appreciation and to help me continue the fight against Malware, then click here paypal.gif

#25 dwwann

dwwann

    New Member

  • Members
  • Pip
  • 18 posts
  • Gender:Female
  • Location:california
  • Interests:Our Spiritual Earth, Cats, Turtles, and Water Gardens.

Posted 28 April 2012 - 10:03 AM

Give up? I may be just getting started...jus kidding.
BUT, I do have this other program "updatechecker.exe" that is part of the ASUS motherboard I have. I have read mixed reviews about it so I never use it, but did use it one time. I will not use it in the future either and since it pops up every time I log in it's probably doing more harm than good...even if that's just because it butts in on my space. What do you think, do I need to use it, or something like it? It's suppose to check for drver updates, but I read some versions are a security risk. And, well you know how we feel about those...

Dwwann

SystemLook 30.07.11 by jpshortstuff
Log created at 07:29 on 28/04/2012 by The Wand
Administrator - Elevation successful
WARNING: SystemLook running under WOW64. Use SystemLook_x64 for accurate results.
========== filefind ==========
Searching for "*RegistryBooster*"
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue\RegistryBooster\RegistryBooster.lnk --a---- 1824 bytes [11:28 24/11/2011] [11:28 24/11/2011] F239E51575F80B267CF0FE3B4E1DEFD8
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue\RegistryBooster\Uninstall RegistryBooster.lnk --a---- 1064 bytes [11:28 24/11/2011] [11:28 24/11/2011] 78B0CD93725D5C43D1BCDAA2FDE12A16
C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Uniblue\RegistryBooster\RegistryBooster.lnk --a---- 1824 bytes [11:28 24/11/2011] [11:28 24/11/2011] F239E51575F80B267CF0FE3B4E1DEFD8
C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Uniblue\RegistryBooster\Uninstall RegistryBooster.lnk --a---- 1064 bytes [11:28 24/11/2011] [11:28 24/11/2011] 78B0CD93725D5C43D1BCDAA2FDE12A16
C:\_OTL\MovedFiles\04262012_105257\C_Windows\Tasks\RegistryBooster.job --a---- 350 bytes [11:28 24/11/2011] [17:43 26/04/2012] D3D61B27663526091D8624C73A08B30A
========== folderfind ==========
Searching for "*uniblue*"
C:\Program Files (x86)\Uniblue d------ [11:28 24/11/2011]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue d------ [11:28 24/11/2011]
C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Uniblue d------ [11:28 24/11/2011]
========== regfind ==========
Searching for "uniblue"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
"DisplayName"="Uniblue RegistryBooster"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
"Publisher"="Uniblue Systems Ltd"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
"Contact"="Uniblue Systems Ltd"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
"HelpLink"="http://support.uniblue.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
"URLUpdateInfo"="http://www.uniblue.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
"Comments"="Copyright © Uniblue Systems Limited 2009"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
"InstallLocation"="C:\Program Files (x86)\Uniblue\RegistryBooster"
[HKEY_LOCAL_MACHINE\SOFTWARE\Uniblue]
[HKEY_LOCAL_MACHINE\SOFTWARE\Uniblue\Registry Booster2]
"InstalledLocation"="C:\Program Files (x86)\\Uniblue\RegistryBooster\Launcher.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Uniblue\Registry Booster2]
"LatestDownloadUrl"="http://download.unib...strybooster.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Uniblue\Registry Booster2]
"CampaignDownloadUrl"="http://download.unib...strybooster.exe"
Searching for "registrybooster"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\registrybooster_RASAPI32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\registrybooster_RASMANCS]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
"DisplayName"="Uniblue RegistryBooster"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
"InstallLocation"="C:\Program Files (x86)\Uniblue\RegistryBooster"
[HKEY_LOCAL_MACHINE\SOFTWARE\Uniblue\Registry Booster2]
"InstalledLocation"="C:\Program Files (x86)\\Uniblue\RegistryBooster\Launcher.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Uniblue\Registry Booster2]
"LatestDownloadUrl"="http://download.unib...strybooster.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Uniblue\Registry Booster2]
"CampaignDownloadUrl"="http://download.unib...strybooster.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\registrybooster[1].exe]
-= EOF =-

#26 Maniac

Maniac

    Forum Deity

  • Experts
  • PipPipPipPipPipPip
  • 21,424 posts
  • Gender:Male
  • Location:Bulgaria, EU

Posted 29 April 2012 - 05:22 AM

Oops, it seems we need 64 bit version:
http://jpshortstuff....temLook_x64.exe

Please try again.

BUT, I do have this other program "updatechecker.exe" that is part of the ASUS motherboard I have. I have read mixed reviews about it so I never use it, but did use it one time. I will not use it in the future either and since it pops up every time I log in it's probably doing more harm than good...even if that's just because it butts in on my space. What do you think, do I need to use it, or something like it? It's suppose to check for drver updates, but I read some versions are a security risk. And, well you know how we feel about those...


Presents a risk because there are cases in which malicious software can use it for their own purposes. This does not mean that it is generally unsafe.
My help is free, however, if you wish to make a small donation to show appreciation and to help me continue the fight against Malware, then click here paypal.gif

#27 dwwann

dwwann

    New Member

  • Members
  • Pip
  • 18 posts
  • Gender:Female
  • Location:california
  • Interests:Our Spiritual Earth, Cats, Turtles, and Water Gardens.

Posted 30 April 2012 - 04:29 AM

Ok about the "updatechecker.exe," since I never use it, is there a way to stop it from popping up every time I log in? That happens to be on ANY account I choose to log in on, it still appears requesting to do 'what ever it is' that it is requesting to do. In the meantime, here is the correct log, for 64 bit...

Thank you, again

Dwwann


SystemLook 30.07.11 by jpshortstuff
Log created at 02:15 on 30/04/2012 by The Wand
Administrator - Elevation successful
========== filefind ==========
Searching for "*RegistryBooster* "
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue\RegistryBooster\RegistryBooster.lnk --a---- 1824 bytes [11:28 24/11/2011] [11:28 24/11/2011] F239E51575F80B267CF0FE3B4E1DEFD8
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue\RegistryBooster\Uninstall RegistryBooster.lnk --a---- 1064 bytes [11:28 24/11/2011] [11:28 24/11/2011] 78B0CD93725D5C43D1BCDAA2FDE12A16
C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Uniblue\RegistryBooster\RegistryBooster.lnk --a---- 1824 bytes [11:28 24/11/2011] [11:28 24/11/2011] F239E51575F80B267CF0FE3B4E1DEFD8
C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Uniblue\RegistryBooster\Uninstall RegistryBooster.lnk --a---- 1064 bytes [11:28 24/11/2011] [11:28 24/11/2011] 78B0CD93725D5C43D1BCDAA2FDE12A16
C:\Windows\System32\Tasks\RegistryBooster --a---- 2524 bytes [11:28 24/11/2011] [11:28 24/11/2011] 28A2EB42B3B247ACD56B52FEEE289035
C:\_OTL\MovedFiles\04262012_105257\C_Windows\Tasks\RegistryBooster.job --a---- 350 bytes [11:28 24/11/2011] [17:43 26/04/2012] D3D61B27663526091D8624C73A08B30A
Searching for " "
No files found.
========== folderfind ==========
Searching for "*uniblue* "
C:\Program Files (x86)\Uniblue d------ [11:28 24/11/2011]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue d------ [11:28 24/11/2011]
C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Uniblue d------ [11:28 24/11/2011]
Searching for " "
No folders found.
========== regfind ==========
Searching for "uniblue "
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
"DisplayName"="Uniblue RegistryBooster"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
"Publisher"="Uniblue Systems Ltd"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
"Contact"="Uniblue Systems Ltd"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
"Comments"="Copyright © Uniblue Systems Limited 2009"
Searching for "registrybooster"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\registrybooster[1].exe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3EF9D18C-DADC-4CD4-97E8-44365380A8D5}]
"Path"="\RegistryBooster"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RegistryBooster]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\registrybooster_RASAPI32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\registrybooster_RASMANCS]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
"DisplayName"="Uniblue RegistryBooster"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
"InstallLocation"="C:\Program Files (x86)\Uniblue\RegistryBooster"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Uniblue\Registry Booster2]
"InstalledLocation"="C:\Program Files (x86)\\Uniblue\RegistryBooster\Launcher.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Uniblue\Registry Booster2]
"LatestDownloadUrl"="http://download.unib...strybooster.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Uniblue\Registry Booster2]
"CampaignDownloadUrl"="http://download.unib...strybooster.exe"
-= EOF =-

#28 Maniac

Maniac

    Forum Deity

  • Experts
  • PipPipPipPipPipPip
  • 21,424 posts
  • Gender:Male
  • Location:Bulgaria, EU

Posted 30 April 2012 - 05:07 AM

Folow the instructions here to stop it:
http://www.netsquirr...onfig_win7.html

Now, locate to:
C:\Program Files (x86)\Uniblue
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue
C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Uniblue

Then manually delete them.

Next:

Open notepad and copy and paste next in it: (don't forget to copy and paste REGEDIT4)

REGEDIT4

[-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\registrybooster[1].exe]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3EF9D18C-DADC-4CD4-97E8-44365380A8D5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RegistryBooster]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\registrybooster_RASAPI32]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\registrybooster_RASMANCS]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Uniblue RegistryBooster]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Uniblue]

Save this as fixicon.reg Choose to save as *all files and place it on your desktop.
It should look like this: Posted Image

Doubleclick on it and when it asks you if you want to merge the contents to the registry, click yes/ok.

Then log off or reboot your computer to apply the changes.


Let me know.
My help is free, however, if you wish to make a small donation to show appreciation and to help me continue the fight against Malware, then click here paypal.gif

#29 dwwann

dwwann

    New Member

  • Members
  • Pip
  • 18 posts
  • Gender:Female
  • Location:california
  • Interests:Our Spiritual Earth, Cats, Turtles, and Water Gardens.

Posted 01 May 2012 - 01:43 AM

YES...Success!!

#30 Maniac

Maniac

    Forum Deity

  • Experts
  • PipPipPipPipPipPip
  • 21,424 posts
  • Gender:Male
  • Location:Bulgaria, EU

Posted 01 May 2012 - 04:58 AM

Glad I could help! :)

Please run OTL and click on CleanUp button. Next, uninstall ESET Online Scanner.

Some malware prevention tips:
http://forums.malwar...=0


Safe surfing! :)
My help is free, however, if you wish to make a small donation to show appreciation and to help me continue the fight against Malware, then click here paypal.gif

#31 Maurice Naggar

Maurice Naggar

    Staff

  • Moderators
  • PipPipPipPipPipPip
  • 14,550 posts
  • Gender:Male
  • Location:USA
  • Interests:Security, Windows, Windows Update, malware prevention

Posted 01 May 2012 - 10:30 AM

Glad we could help. :)

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!
Maurice Naggar
Product Support

staff.png

Follow us: Twitter, Become a fan: Facebook

I close my threads if there is 5 days without a response.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users