TechSpot

\\system 32\\00006fd7 virus or malware?

Solved
By Sariika
Feb 6, 2012
  1. Sariika

    Sariika TS Rookie Topic Starter Posts: 23

    All processes killed
    ========== OTL ==========
    ========== COMMANDS ==========

    [EMPTYTEMP]

    User: Administrator
    ->Temp folder emptied: 592970 bytes
    ->Temporary Internet Files folder emptied: 44672977 bytes
    ->Java cache emptied: 0 bytes
    ->Flash cache emptied: 675 bytes

    User: All Users

    User: Default
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: Default User
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: Janine
    ->Temp folder emptied: 112029 bytes
    ->Temporary Internet Files folder emptied: 33170 bytes
    ->Java cache emptied: 0 bytes
    ->Google Chrome cache emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: postgres
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: Public
    ->Temp folder emptied: 0 bytes

    %systemdrive% .tmp files removed: 0 bytes
    %systemroot% .tmp files removed: 0 bytes
    %systemroot%\System32 .tmp files removed: 0 bytes
    %systemroot%\System32\drivers .tmp files removed: 0 bytes
    Windows Temp folder emptied: 33393 bytes
    RecycleBin emptied: 0 bytes

    Total Files Cleaned = 43.00 mb


    [EMPTYFLASH]

    User: Administrator
    ->Flash cache emptied: 0 bytes

    User: All Users

    User: Default
    ->Flash cache emptied: 0 bytes

    User: Default User
    ->Flash cache emptied: 0 bytes

    User: Janine
    ->Flash cache emptied: 0 bytes

    User: postgres
    ->Flash cache emptied: 0 bytes

    User: Public

    Total Flash Files Cleaned = 0.00 mb


    [EMPTYJAVA]

    User: Administrator
    ->Java cache emptied: 0 bytes

    User: All Users

    User: Default

    User: Default User

    User: Janine
    ->Java cache emptied: 0 bytes

    User: postgres

    User: Public

    Total Java Files Cleaned = 0.00 mb



    OTL by OldTimer - Version 3.2.31.0 log created on 02082012_110406

    Files\Folders moved on Reboot...
    C:\Users\Administrator\AppData\Local\Temp\~DF509A.tmp moved successfully.
    File\Folder C:\Users\Administrator\AppData\Local\Temp\~DFD839.tmp not found!
    File\Folder C:\Users\Administrator\AppData\Local\Temp\~DFD83F.tmp not found!
    File\Folder C:\Users\Administrator\AppData\Local\Temp\~DFD886.tmp not found!
    File\Folder C:\Users\Administrator\AppData\Local\Temp\~DFD88B.tmp not found!
    File\Folder C:\Users\Administrator\AppData\Local\Temp\~DFD8B4.tmp not found!
    File\Folder C:\Users\Administrator\AppData\Local\Temp\~DFD8B9.tmp not found!
    C:\Users\Administrator\AppData\Local\Temp\~DFD9D1.tmp moved successfully.
    C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L82E99IO\12[1].htm moved successfully.
    C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L82E99IO\ads[1].htm moved successfully.
    C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L82E99IO\facebook_com[1].htm moved successfully.
    C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L82E99IO\fastbutton[1].htm moved successfully.
    C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GDQFO4PD\likebox[3].htm moved successfully.
    C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GDQFO4PD\topic177197-2[2].html moved successfully.
    C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G6ZSYVZX\ads[2].htm moved successfully.
    C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6CHRSC3Z\ai[6].htm moved successfully.

    Registry entries deleted on Reboot...
  2. Sariika

    Sariika TS Rookie Topic Starter Posts: 23

    Everything seems to being looking good, thanks again so much for your awesome help :)
  3. Broni

    Broni Malware Annihilator Posts: 46,748   +254

    Way to go!! [​IMG]
    Good luck and stay safe :)
  4. Sariika

    Sariika TS Rookie Topic Starter Posts: 23

    Actually, just so you know, I still have GMER, aswMBR, AppRemover, unhide, FSS. TFC and SecurityCheck on my desktop, is there anything else to do to remove these?
  5. Broni

    Broni Malware Annihilator Posts: 46,748   +254

    You can simply delete those.
    They don't install.
  6. Sariika

    Sariika TS Rookie Topic Starter Posts: 23

    Ok :) You are absolutely awesome, and I commend the pro bono work you do! I will be sending a donation your way tho! Take care!
  7. Broni

    Broni Malware Annihilator Posts: 46,748   +254

    You're very welcome [​IMG]
  8. Sariika

    Sariika TS Rookie Topic Starter Posts: 23

    Hey Broni, Sorry to bug you again, but for some reason I'm having problems with my Adobe Flash. A few sites say that I don't have it. I've uninstalled and reinstalled twice now, but still the same thing...just wondering if you'd know what that would be? Thanks!
  9. Broni

    Broni Malware Annihilator Posts: 46,748   +254

    Create new topic in Windows forum.


Add New Comment

TechSpot Members
Login or sign up for free,
it takes about 30 seconds.
You may also...


Get complete access to the TechSpot community. Join thousands of technology enthusiasts that contribute and share knowledge in our forum. Get a private inbox, upload your own photo gallery and more.