TechSpot

\\system 32\\00006fd7 virus or malware?

By Sariika
Feb 6, 2012
  1. Sariika

    Sariika TS Rookie Topic Starter Posts: 23

    All processes killed
    ========== OTL ==========
    ========== COMMANDS ==========

    [EMPTYTEMP]

    User: Administrator
    ->Temp folder emptied: 592970 bytes
    ->Temporary Internet Files folder emptied: 44672977 bytes
    ->Java cache emptied: 0 bytes
    ->Flash cache emptied: 675 bytes

    User: All Users

    User: Default
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: Default User
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: Janine
    ->Temp folder emptied: 112029 bytes
    ->Temporary Internet Files folder emptied: 33170 bytes
    ->Java cache emptied: 0 bytes
    ->Google Chrome cache emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: postgres
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: Public
    ->Temp folder emptied: 0 bytes

    %systemdrive% .tmp files removed: 0 bytes
    %systemroot% .tmp files removed: 0 bytes
    %systemroot%\System32 .tmp files removed: 0 bytes
    %systemroot%\System32\drivers .tmp files removed: 0 bytes
    Windows Temp folder emptied: 33393 bytes
    RecycleBin emptied: 0 bytes

    Total Files Cleaned = 43.00 mb


    [EMPTYFLASH]

    User: Administrator
    ->Flash cache emptied: 0 bytes

    User: All Users

    User: Default
    ->Flash cache emptied: 0 bytes

    User: Default User
    ->Flash cache emptied: 0 bytes

    User: Janine
    ->Flash cache emptied: 0 bytes

    User: postgres
    ->Flash cache emptied: 0 bytes

    User: Public

    Total Flash Files Cleaned = 0.00 mb


    [EMPTYJAVA]

    User: Administrator
    ->Java cache emptied: 0 bytes

    User: All Users

    User: Default

    User: Default User

    User: Janine
    ->Java cache emptied: 0 bytes

    User: postgres

    User: Public

    Total Java Files Cleaned = 0.00 mb



    OTL by OldTimer - Version 3.2.31.0 log created on 02082012_110406

    Files\Folders moved on Reboot...
    C:\Users\Administrator\AppData\Local\Temp\~DF509A.tmp moved successfully.
    File\Folder C:\Users\Administrator\AppData\Local\Temp\~DFD839.tmp not found!
    File\Folder C:\Users\Administrator\AppData\Local\Temp\~DFD83F.tmp not found!
    File\Folder C:\Users\Administrator\AppData\Local\Temp\~DFD886.tmp not found!
    File\Folder C:\Users\Administrator\AppData\Local\Temp\~DFD88B.tmp not found!
    File\Folder C:\Users\Administrator\AppData\Local\Temp\~DFD8B4.tmp not found!
    File\Folder C:\Users\Administrator\AppData\Local\Temp\~DFD8B9.tmp not found!
    C:\Users\Administrator\AppData\Local\Temp\~DFD9D1.tmp moved successfully.
    C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L82E99IO\12[1].htm moved successfully.
    C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L82E99IO\ads[1].htm moved successfully.
    C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L82E99IO\facebook_com[1].htm moved successfully.
    C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L82E99IO\fastbutton[1].htm moved successfully.
    C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GDQFO4PD\likebox[3].htm moved successfully.
    C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GDQFO4PD\topic177197-2[2].html moved successfully.
    C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G6ZSYVZX\ads[2].htm moved successfully.
    C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6CHRSC3Z\ai[6].htm moved successfully.

    Registry entries deleted on Reboot...
     
  2. Sariika

    Sariika TS Rookie Topic Starter Posts: 23

    Everything seems to being looking good, thanks again so much for your awesome help :)
     
  3. Broni

    Broni Malware Annihilator Posts: 52,892   +344

    Way to go!! [​IMG]
    Good luck and stay safe :)
     
  4. Sariika

    Sariika TS Rookie Topic Starter Posts: 23

    Actually, just so you know, I still have GMER, aswMBR, AppRemover, unhide, FSS. TFC and SecurityCheck on my desktop, is there anything else to do to remove these?
     
  5. Broni

    Broni Malware Annihilator Posts: 52,892   +344

    You can simply delete those.
    They don't install.
     
  6. Sariika

    Sariika TS Rookie Topic Starter Posts: 23

    Ok :) You are absolutely awesome, and I commend the pro bono work you do! I will be sending a donation your way tho! Take care!
     
  7. Broni

    Broni Malware Annihilator Posts: 52,892   +344

    You're very welcome [​IMG]
     
  8. Sariika

    Sariika TS Rookie Topic Starter Posts: 23

    Hey Broni, Sorry to bug you again, but for some reason I'm having problems with my Adobe Flash. A few sites say that I don't have it. I've uninstalled and reinstalled twice now, but still the same thing...just wondering if you'd know what that would be? Thanks!
     
  9. Broni

    Broni Malware Annihilator Posts: 52,892   +344

    Create new topic in Windows forum.
     

Similar Topics

Add New Comment

You need to be a member to leave a comment. Join thousands of tech enthusiasts and participate.
TechSpot Account You may also...