Exploit.drop.gs attacked me

Solved
By PegJM
Jan 8, 2013
Topic Status:
Not open for further replies.
  1. PegJM

    PegJM Newcomer, in training Topic Starter Posts: 26

  2. Jay Pfoutz

    Jay Pfoutz Malware Helper Posts: 4,286   +49

    Hitman Pro

    Please download Hitman Pro

    • After the download completes please double click the program to run it.
    • Accept the terms of the license agreement and click Next
    • Let the scan run. It will not take long
    • When the scan finishes, and all the files have been uploaded to the Scan Cloud, click Next
    • Click Next again. At the bottom left you will see Export Scan Results To XML File. Click that and save it in a convenient location
    • Upload log.xml here for review please
  3. PegJM

    PegJM Newcomer, in training Topic Starter Posts: 26

    I am on it. Gimme a few minutes.
  4. PegJM

    PegJM Newcomer, in training Topic Starter Posts: 26

    It did not quite do what you said it should do. There is no Export Scan Results To XML File option, so I hit Save Log (see attached screenshot), clicked on the .xml file type and put it on the desktop. But when I tried to upload it, I got an error msg saying it is not an allowed file type. So next, I will try to copy & paste it in. ALSO, please look at the screen shot and tell me if you want to click NEXT or CLOSE. I have it sitting open for now. Capture.JPG
  5. PegJM

    PegJM Newcomer, in training Topic Starter Posts: 26

    And is the content of the .xml it generated.

    <Log computer="PEG-PC" windows="6.1.1.7601.X64/2" scan="Normal" version="3.7.0.185" date="2013-01-13T15:06:23" timeSpentInSecs="1031" filesProcessed="378795"><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:a1.interclick.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:ad.yieldmanager.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:adbrite.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:ads.blogtalkradio.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:ads.cnn.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:ads.pubmatic.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:ads.shorttail.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:ads.undertone.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:adserving.autotrader.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:advertising.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:apmebf.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:atdmt.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:bs.serving-sys.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:casalemedia.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:collective-media.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:doubleclick.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:fastclick.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:googleads.g.doubleclick.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:interclick.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:invitemedia.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:media6degrees.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:network.realmedia.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:eek:verture.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:pointroll.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:questionmarket.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:realmedia.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:revsci.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:ru4.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:segment-pixel.invitemedia.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:serving-sys.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:statse.webtrendslive.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:t3.trackalyzer.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:trackalyzer.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:tribalfusion.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:www.googleadservices.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:yieldmanager.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\jzev5kcp.default\cookies.sqlite:zedo.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:247realmedia.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:ad.360yield.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:ad.yieldmanager.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:adbrite.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:advertising.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:apmebf.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:ar.atwola.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:at.atwola.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:atwola.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:burstnet.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:casalemedia.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:collective-media.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:doubleclick.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:emjcd.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:eset.122.2o7.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:interclick.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:invitemedia.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:mediaplex.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:eek:asc05134.247realmedia.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:ru4.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:serving-sys.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:tacoda.at.atwola.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:tacoda.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:track.prd.inpwrd.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Local\Google\Chrome\User Data\Default\Cookies:tribalfusion.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:a1.interclick.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:ad.360yield.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:ad.wsod.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:adinterax.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:ads.fatvine.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:ads.ogdenpubs.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:ads.pubmatic.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:ads.undertone.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:atdmt.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:c.atdmt.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:collective-media.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:doubleclick.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:googleads.g.doubleclick.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:in.getclicky.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:interclick.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:invitemedia.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:media6degrees.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:mm.chitika.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:pointroll.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default\cookies.sqlite:www.googleadservices.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:a1.interclick.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:ad.360yield.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:adinterax.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:ads.cleveland.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:ads.fatvine.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:ads.masslive.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:ads.mlive.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:ads.nj.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:ads.nola.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:ads.ogdenpubs.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:ads.oregonlive.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:ads.pubmatic.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:ads.shorttail.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:ads.undertone.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:advertising.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:atdmt.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:c.atdmt.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:cn.clickable.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:collective-media.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:doubleclick.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:in.getclicky.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:interclick.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:invitemedia.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:media6degrees.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:mm.chitika.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:pointroll.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:ru4.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:statcounter.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:survey.g.doubleclick.net" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:t.pointroll.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:tribalfusion.com" /></Item><Item type="Cookie" score="0.0" status="None"><File path="C:\Users\Peg\AppData\Roaming\Mozilla\Firefox\Profiles\m7m5fcma.default_novl\cookies.sqlite:www.googleadservices.com" /></Item><Item score="0.0" status="None"><File path="HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\LivingPlay\" /></Item></Log>
  6. PegJM

    PegJM Newcomer, in training Topic Starter Posts: 26

    Hi Jay, at the risk of sounding impatient (I don't mean to, I know you are doing this for free and I appreciate that more than you know) is there any way possible to speed this up a bit? I would even be willing to drive to Dayton and pay you to fix it. I am getting desperate because this is the third week now that I have not been able to work and it is costing me a small fortune every day that this machine is down. I am reluctant to move/do anything without you telling me to because it is in the agreement not to but honestly, I may be forced to just reformat and reinstall everything so I can get back to business ... But I have done things like that before and ended up somehow getting reinfected anyway. I dont want to shoot myself in the foot here and alientate you in process. That would be stupid of me. A special kind of stupid. If I brought it to you, could you fix it, how long would it take, and what would charge me? Do you know yet what the problem is? Is there anyone you know in Columbus who could it today? I need my computer and is getting seriously expensive not to have it. Thanks so much and I am truly sorry if I sound impatient, I don't mean to. It is not your fault, it is just the situation.
  7. PegJM

    PegJM Newcomer, in training Topic Starter Posts: 26

    PS ... I went ahead and activated hitman pro to get things moving again, and let it delete all those infections it found. Went to run PCTools anti virus and it froze again. Will have to do another hard boot. So now we can add PCTOOLS to the list of apps that crash it.
  8. Jay Pfoutz

    Jay Pfoutz Malware Helper Posts: 4,286   +49

    A reformat and reinstall would manage the process a lot faster. I'm sure that the computer is overall clean, however, if it seems significantly problematic, then I would suggest to "start over" for the computer. Overall, there may be quite a bit of damage to the OS as a result of the virus attack. I don't want you to have to wait longer. It didn't seem clear to me you were waiting for so long to get back to business.

    If you need help with the format & reinstall, let me know. I can point you to tutorials that would simplify the process significantly. :)
  9. PegJM

    PegJM Newcomer, in training Topic Starter Posts: 26

    That would be awesome! Thank you. Problem is I can't find (not sure I ever had) the OS on disk. All I have is the repair disk it had me make when I first got it. So I was going to resort to my little Inspiron set guide and do a factory image restore. Is there a better way?
  10. Jay Pfoutz

    Jay Pfoutz Malware Helper Posts: 4,286   +49

    Time to step it up, then, if you have no way of reformat...

    CCleaner Temporary Files Cleaning

    NOTE: If you already have this installed, you don't have to reinstall it.

    Please download CCleaner Slim and save it to your Desktop - Alternate download link

    When the file has been saved, go to your Desktop and double-click on ccsetupxxx_slim.exe
    Follow the prompts to install the program.

    • Double-click the CCleaner shortcut on the desktop to start the program.
    • A prompt will ask you if you want CCleaner to do a check to see what cookies it needs to keep. Allow that operation.
    • On the Cleaner tab, click on Run Cleaner on the bottom-right to run the program.
    • Important: Make sure that ALL browser windows are closed before selecting Run Cleaner, or it will ask if you want the program to close them for you (when you do this, all unsaved data may be lost in the browser).

    Caution: Only use the Registry feature if you are very familiar with the registry.
    Always back up your registry before making any changes. Exit CCleaner after it has completed it's process.


    Windows Signature Verification Scan

    1. Click Start, click Run, type sigverif, and then click OK.

    2. Click Advanced, click Look for other files that are not digitally signed, navigate to the Winnt\System32\Drivers folder, and then click OK.

    3. Click Start.

    4. After it has finished running, navigate to C:\Windows\Sigverify.txt, open it and post the contents of the log here.


    MySystemSearch

    Please download MySystem-Search from HERE

    • Save the file to your Desktop.
    • Double-click on mss.exe
    • Allow it to run, and follow the prompts.
    • Once done, it will launch a log.
    • Post it in your next reply.
    Note: the logs are long. Please use more than one post, if necessary.


    SpiderKill Rootkit Scanner

    Please download SpiderKill by DragonMaster Jay and save it to your Desktop.
    • Right-click on SpiderKill.zip and click Extract All. Follow the prompts and read carefully, to save it to your Desktop.
    • Double-click on the SpiderKill folder, and then double-click on SpiderKill.bat and follow all the prompts in the program.
    • Within a minute, it will save its log titled SpiderKill.txt. Please post that in your next reply. You may have to use two or three posts to be able to fit the information in.
  11. Jay Pfoutz

    Jay Pfoutz Malware Helper Posts: 4,286   +49

    How's this working so far?
  12. PegJM

    PegJM Newcomer, in training Topic Starter Posts: 26

    Sorry, Jay. I have not been able to log in for a couple days. This darn thing rendered my PC completely unusable. The only thing we could do was install Linux (ubuntu) and honestly, I LOVE it. It has been stable ever since. (So Windows can officially kiss my ....) I doubt I will ever go back to Windows. This is slick. Anyway, sorry for all the trouble, thanks for trying but it was hopeless, I think, before we even started. So I think we can close this now. Have a great day. And thanks again.
  13. Jay Pfoutz

    Jay Pfoutz Malware Helper Posts: 4,286   +49

    Good work! I almost suggested to do that....no kidding. The only thing stopping me from recommending you just go with Ubuntu was if your work required certain programs that only run on Windows (I could've asked).

    I completely love Ubuntu. I wish I had time for it. When my hard drive went kapoowi this past Fall, I had to wait for it to be shipped. While waiting, the only thing I could use was Ubuntu LiveCD. I ran Ubuntu from CD, which was actually cool, because I could put it to sleep for a couple days in a row without trouble. But, whenever you'd shut the computer down from Ubuntu LiveCD, it erased your current progress on your RAM.

    I had serious thoughts about installing Ubuntu on my computer, since getting my new hard drive. I installed Windows 7 Ultimate, and never did anything else yet. But, yeah, it was crazy.

    Well I appreciate your patience, and hope I didn't make you too impatient. Any other questions before I mark this resolved?
     
  14. PegJM

    PegJM Newcomer, in training Topic Starter Posts: 26

    Actually, I AM going to miss photoshop/bridge (I am a part time photographer) & Word & Excel. But if my OS is going actually be stable and I don't have to worry so much about a virus or trojan, so be it. I am already over it. Besides, my brother in law has a gently use two yr old laptop for sale for $200 and I can run photoshop on that. I will use ubuntu for everything else. So yes, MS can take it and put it someplace, if you know what I mean. Why can't Windows work this cleanly and this stable???? I didn't even have to configure my wireless adapter or printer. It just ... WORKED. Now, no other questions but if I run into something, I know where to find you. Thanks again for everything! Peg
  15. Jay Pfoutz

    Jay Pfoutz Malware Helper Posts: 4,286   +49

    That's cool. I know, Ubuntu is constantly being developed to work perfectly, versus Windows (they're always patching something in Windows).

    Look in the Application center for OpenOffice or LibreOffice. They are the competitors to Microsoft Office. They should work with almost any document.

    Anyway, you're welcome. If you need anything else, start a new topic or PM me.

    Marked as solved. :)
Topic Status:
Not open for further replies.


Add New Comment

TechSpot Members
Login or sign up for free,
it takes about 30 seconds.
You may also...


Get complete access to the TechSpot community. Join thousands of technology enthusiasts that contribute and share knowledge in our forum. Get a private inbox, upload your own photo gallery and more.