Bobbye
Posts: 16,313 +36
jusched.exe is the auto-updater for Java. I have no use for auto-updates so I prevent mine as follows:
Open the Control Panel> Java> Advanced tab> click on + sign to left of 'JRE Auto-update'> Check 'Never auto-download'> Click on Apply> OK
Have a look at the Startup menu and make sure jusched.exe isn't checked.
Almost everyone has the auto-updater checked. Problem is, they get the new update, but Java doesn't overwrite and users forget to uninstall old version. This way, user can keep in mind to uninstall old version when getting new version.
============================================
About the flash drive: Just know that the more I know, the more I can help you. For instance, if I had known about the flash drive sharing, I would have had you disinfect it earlier and cautioned you about not using it until it was clean.
=============================================
About the Recycler: you can try doing a double click on the SID to see if it will 'open'. If it does, go to Edit> Select All> Delete. This has to be your account to remove those files. If they won't go, they aren't active in the system and eventually they will be overwritten.
=============================================
About MsiExec.exe: MsiExec.exe is the executable for the windows installer. This should only be running while you are running an installer. If this is still running after the installer has completed it should be safe to end this process. Did you abort any setups you had downloaded after the double click to install but before the install was complete?
=============================================
If you still have Combofix, I can try to remove the old Java from Firefox:
Please run this Custom CFScript:
Save this as CFScript.txt, in the same location as ComboFix.exe
Referring to the picture above, drag CFScript into ComboFix.exe
When finished, it will produce a log for you at C:\ComboFix.txt . You do not need to leave the log.
====================
The system is clean. Let me know if there are any more problems.
Open the Control Panel> Java> Advanced tab> click on + sign to left of 'JRE Auto-update'> Check 'Never auto-download'> Click on Apply> OK
Have a look at the Startup menu and make sure jusched.exe isn't checked.
Almost everyone has the auto-updater checked. Problem is, they get the new update, but Java doesn't overwrite and users forget to uninstall old version. This way, user can keep in mind to uninstall old version when getting new version.
============================================
About the flash drive: Just know that the more I know, the more I can help you. For instance, if I had known about the flash drive sharing, I would have had you disinfect it earlier and cautioned you about not using it until it was clean.
=============================================
About the Recycler: you can try doing a double click on the SID to see if it will 'open'. If it does, go to Edit> Select All> Delete. This has to be your account to remove those files. If they won't go, they aren't active in the system and eventually they will be overwritten.
=============================================
About MsiExec.exe: MsiExec.exe is the executable for the windows installer. This should only be running while you are running an installer. If this is still running after the installer has completed it should be safe to end this process. Did you abort any setups you had downloaded after the double click to install but before the install was complete?
=============================================
If you still have Combofix, I can try to remove the old Java from Firefox:
Please run this Custom CFScript:
[1]. Close any open browsers.
[2]. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
[3]. Open notepad> click on Format> Uncheck 'Word Wrap> and copy/paste the text in the code below into it:
Code:
Extra::
File::
c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}
c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}
c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}
c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
Firefox::
Firefox-:- Profile- c:\documents and settings\Richard\Application Data\Mozilla\Firefox\Profiles\qjolvo62.default\

Referring to the picture above, drag CFScript into ComboFix.exe
When finished, it will produce a log for you at C:\ComboFix.txt . You do not need to leave the log.
====================
The system is clean. Let me know if there are any more problems.