Okay, looking good. Mbam show clean.
1. Have SAS remove the Tracking cookies. Click on image on lower left here to enlarge the screen shot. It shows where to check to have SAS remove them:
http://superantispyware.en.softonic.com/images
2.
Reset Cookies:
Internet Explorer: Internet Options (through Tools or Control Panel) Privacy tab> Advanced button> CHECK 'override automatic Cookie handling'> CHECK 'accept first party Cookies'> CHECK 'Block third party Cookies'> CHECK 'allow per session Cookies'> Apply> OK.
3.
Update Adobe:
Your Adobe Reader is out of date. Vulnerabilities can be exploited. Click here to download the latest version v9:
https://www.techspot.com/downloads/2083-adobe-reader-dc.html
OR
Install the FoxIt Reader: this does the same thing as Adobe, but doesn’t have the bloat:
http://www.foxitsoftware.com/pdf/rd_intro.php
4.
Remove site from Trusted Zone:
Internet options> Security tab> Trusted Sites> Sites> remove:
*.hotmail.com
*.live.com
*.msn.com
*.passport.com
You don't need ANY site in the Trusted Zone. Putting a site there removes some of the browser security and using the * wild card means anything with the domain name is trusted. Not safe.
5. Now for taskmagr.exe.
This is a very subtle spelling difference from the 'real' taskmanager executable. It's a very new addition to the SAS database- Database Version 3663 - 12-04-2008. Browser Hijacker.ForDream/TM
Boot into Safe Mode:
Right click on Start> Explore> Windows System 32> Find and delete:
C:\WINDOWS\system32\taskmagr.exe
Look carefully for this spelling.
While still in Safe Mode:
6. Start> Run> services.msc> right click on LexBce Server (LexBceS) > set Startup Type to Manual
Check the Dependency tab. Make sure that any of the Services in the top box are set to at least Manual.
7.
Start> Run> msconfig> Selective Startup> Startup menu> UNCHECK the following:
Windows Media Player\WMPNSCFG.exe
Office\Office10OUTLOOK.EXE
Office\Office10\WINWORD.EXE
ActiveSync rapimgr.exe
Windows Desktop Search\WindowsSearch.exe
MailWasher Pro\MailWasher.exe
Internet Explorer\iexplore.exe
8. Control Panel> Add/Remove Programs> UNINSTALL the following if present:
Adobe v7
Any Java other than v6u10
Reboot the computer into Normal Mode. NOTE: You will get a nag message that you can ignore after checking 'don't show this message again.' Stay in Selective Startup.
When finished, let me know how you're running. If okay, we'll remove the cleaning tools.
(Note: any of the programs and processes in #7 can be started as needed. They don't need to start on boot)