HKCR\Updater.AmiUpd.1 (PUP.Software.Updater) -> Quarantined and deleted successfully. SUBMIT CANCEL Applies To: Antivirus+ Security - 2015;Antivirus+ Security - 2016;Antivirus+ Security - 2017;Internet Security - 2015;Internet Security - 2016;Internet Security - 2017;Maximum Security - 2015;Maximum Security - 2016;Maximum Security - Partition starts at LBA: 128520 Numsec = 302616405 Partition file system is NTFS Partition is bootable Partition 2 type is Other (0xdb) Partition is NOT ACTIVE. Click on the Cleanup button to remove any threats and reboot if prompted to do so. his comment is here

uStart Page = about:blank uDefault_Page_URL = hxxp://www.dell.co.uk/myway uURLSearchHooks: Freecorder Toolbar: {1392b8d2-5c05-419f-a8f6-b9f15a596612} - c:\program files\freecorder\prxtbFre2.dll BHO: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - c:\program files\hp\digital imaging\smart web printing\hpswp_printenhancer.dll BHO: Freecorder Toolbar: {1392b8d2-5c05-419f-a8f6-b9f15a596612} - c:\program If not please perform the following steps below so we can have a look at the current condition of your machine. Are you having any difficulties?

If you're stuck, or you're not sure about certain step, always ask before doing anything else. No input is needed, the scan is running.Notepad will open with the results.Follow the instructions that pop up for posting the results.Close the program window, and delete the program from your Similar Threads

Do NOT run it yet. Removing c:\documents and settings\all users\application data\malwarebytes' anti-malware (portable)\mbr_0_r.mbam... Please re-enable javascript to access full functionality. HKCR\Interface\{B5A33C35-7298-4D15-8753-A2E851E2EAB3} (Adware.Gdown) -> Quarantined and deleted successfully.

Finished : << RKreport[0]_D_06222013_113020.txt >> RKreport[0]_S_06222013_112841.txt Malwarebytes Anti-Rootkit BETA www.malwarebytes.org Database version: v2013.06.22.02 Windows XP Service Pack 3 x86 NTFS Internet Explorer 8.0.6001.18702 Mike :: HAWAII [administrator] 22/06/2013 11:36:32 mbar-log-2013-06-22

Go to Tools > Folder Options.

Close all the running programs Windows Vista/7 users: right click on RogueKiller.exe, click Run as Administrator Otherwise just double-click on RogueKiller.exe Pre-scan will start. If there is no internet connection after running Combofix, then restart your computer to restore back your connection.

Physical Sector Size: 512 Drive: 1, DevicePointer: 0xffffffff8b31c500, DeviceName: \Device\Harddisk1\DR4\, DriverName: \Driver\Disk\ --------- Disk Stack ------ DevicePointer: 0xffffffff8afa64c0, DeviceName: Unknown, DriverName: \Driver\PartMgr\ DevicePointer: 0xffffffff8b31c500, DeviceName: \Device\Harddisk1\DR4\, DriverName: \Driver\Disk\ DevicePointer: 0xffffffff8afc3508, DeviceName: This is because AVG/CA Internet Security "falsely" detects ComboFix (or its embedded files) as a threat and may remove them resulting in the tool not working correctly which in turn can

There are 2 different versions. Let it finish. Error reading LL2 MBR! +++++ PhysicalDrive2: ST3160828AS +++++ --- User --- [MBR] c757fd57305874fdfa547d25c7992812 [BSP] d4880c49068212ac31b91fb275648d7c : Windows XP MBR Code Partition table: 0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63

If one of them won't run then download and try to run the other one. Once the computer is totally clean, I'll certainly let you know. Make sure you do this for all three of the top tabs (Internet Explorer, Restricted Sites, and (if you use it) Mozilla Firefox.

No, create an account now. Close any open browsers. C:\WINDOWS\system32\GTDownDE_87.ocx (Adware.Gdown) -> Quarantined and deleted successfully. Motherboard: Dell Inc. | | 0WG261 Processor: Intel(R) Pentium(R) 4 CPU 3.00GHz | Microprocessor | 2992/800mhz . ==== Disk Partitions ========================= .

Partition starts at LBA: 302760990 Numsec = 9735390 Partition 3 type is Empty (0x0) Partition is NOT ACTIVE. HijackThis log included. Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan.

Removing c:\documents and settings\all users\application data\malwarebytes' anti-malware (portable)\mbr_2_r.mbam... Also uncheck "Hide protected operating system files" and "Hide extensions for known file types" . Did you install SpywareBlaster? Are you looking for the solution to your computer problem?

They are in your trusted zone in IE, so that tells your computer to allow these sites to execute ActiveX controls and Java scripts on your computer (basically telling your computer Very Important! DDS (Ver_2012-11-20.01) .

Leave them if you want to, and fix the other ones. Fix all the other entries I told you to fix in HijackThis and delete the following files in Safe Mode: C:\Program Files\MSN Apps\ST\01.02.3000.1002\en-xu\stmain.dll C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll c:\winnt\tour.reg Empty your temp,