No, I'm not getting any notifications about edits.
Make sure you follow forum's rules - all logs have to be pasted not attached.
Do this on the computer you are posting from:
Copy the text in the codebox below:
Code:
:OTL
DRV - File not found [Kernel | On_Demand] -- -- (SymIMMP)
DRV - File not found [Kernel | On_Demand] -- -- (SymIM)
IE - HKU\glo_ON_C\..\URLSearchHook: {472734EA-242A-422b-ADF8-83D1E48CC825} - Reg Error: Key error. File not found
IE - HKU\user_ON_C\..\URLSearchHook: {D3D233D5-9F6D-436C-B6C7-E63F77503B30} - Reg Error: Key error. File not found
O2 - BHO: (no name) - {99E00A4C-D35E-11DD-BA95-9B6A56D89593} - No CLSID value found.
O3 - HKU\user_ON_C\..\Toolbar\WebBrowser: (no name) - {30CEEEA2-3742-40E4-85DD-812BF1CBB83D} - No CLSID value found.
O3 - HKU\user_ON_C\..\Toolbar\WebBrowser: (no name) - {D7E97865-918F-41E4-9CD0-25AB1C574CE8} - No CLSID value found.
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [AveoKeySti] File not found
O4 - HKU\Guest_ON_C..\Run: [ooVoo] File not found
O4 - HKU\Guest_ON_C..\Run: [ooVoo.exe] File not found
O15 - HKU\user_ON_C\..Trusted Domains: 82movie.com ([www] http in Trusted sites)
O16 - DPF: GPplayerActiveXCAB http://music.godpeople.com/gpplayer/...ActiveXCAB.CAB (Reg Error: Key error.)
[2012/01/08 02:21:43 | 000,010,852 | -HS- | M] () -- C:\ProgramData\88msd11ueh3737qhmbx87xfcog7cn86jjr3g76u5c37xxe
[2012/01/08 02:21:42 | 000,010,852 | -HS- | M] () -- C:\Users\user\AppData\Local\88msd11ueh3737qhmbx87xfcog7cn86jjr3g76u5c37xxe
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:DFC5A2B2
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:8C35AEA7
:Services
:Reg
:Files
:Commands
[purity]
Open Notepad and paste it.
Save the document as Fix.txt on to a USB flash drive
On the infected computer the following...
Run OTLPE
- Insert USB stick and find the file Fix.txt. Drag the file Fix.txt and drop it under the Custom Scans/Fixes box at the bottom.
- (The content of Fix.txt should appear in the box)
- Then click the Run Fix button at the top
- Let the program run unhindered, reboot the PC when it is done
- Post the log produced (you'll need to transfer it with USB stick)
- Attempt to reboot normally into Windows.