Avast WEBforum

Other => Viruses and worms => Topic started by: REDACTED on May 05, 2015, 02:31:33 PM

Title: reduled.info, blackled.info and reddie.net viruses etc pop ups
Post by: REDACTED on May 05, 2015, 02:31:33 PM
Hi,
I have recently removed an abundance of malware,virues etc from a lenovo win7 64bit laptop.
However I still keep getting the pop up windows as soon as I connect to the internet.
I have run Malwarebytes,adwcleaner_4.203 and avast free virus.
After reading the forums about FRST64.exe I am hoping you guys/gals can help with the log files that were generated.
Many thanks in advance
Paul
Title: Re: reduled.info, blackled.info and reddie.net viruses etc pop ups
Post by: REDACTED on May 05, 2015, 02:38:24 PM
Here are the aswMBR scan log and adwcleaner.txt as well

P
Title: Re: reduled.info, blackled.info and reddie.net viruses etc pop ups
Post by: REDACTED on May 05, 2015, 03:26:43 PM
Helllo,

My name is Argus and and I will be helping you with your computer problems.

Before we begin, please note the following:




Always have one (and no more than one!) AntiVirus program! In this case having more of them will not provide you with better protection - instead they may cause slowness, lock-ups and even mark another ones as harmful, leading to leave your system unstable and even damaged. Please choose only one from the listed below to stay with and uninstall the others:

Uninstallation procedure:
This should be done until any other steps will be taken.


Download and run Norton Uninstaller
http://redirectingat.com/?id=1402X558040&url=http%3A%2F%2Fca.huji.ac.il%2Fbf%2Fmcafee%2FNoNav.exe&sref=http%3A%2F%2Fwww.tomshardware.co.uk%2Fforum%2F165553-37-symantec-here



Step 2



(https://sites.google.com/site/cannedfixes/farbar-recovery-scan-tool/FRST.gif) Fix with Farbar Recovery Scan Tool

(https://sites.google.com/site/cannedfixes/home/hosted-images-formatting/icon_exclaim.gif) This fix was created for this user for use on that particular machine. (https://sites.google.com/site/cannedfixes/home/hosted-images-formatting/icon_exclaim.gif)
(https://sites.google.com/site/cannedfixes/home/hosted-images-formatting/icon_exclaim.gif) Running it on another one may cause damage and render the system unstable. (https://sites.google.com/site/cannedfixes/home/hosted-images-formatting/icon_exclaim.gif)
Download attached fixlist.txt file and save it to the Desktop:

Both files, FRST and fixlist.txt have to be in the same location or the fix will not work!

Please attach it to your reply.
Title: Re: reduled.info, blackled.info and reddie.net viruses etc pop ups
Post by: REDACTED on May 05, 2015, 04:35:37 PM
Hi Argus,
Thanks for your time and efforts. :)
Here's the fixlog.txt
When running the NoNav it did run into some errors.
I have attached two images. one is of a error message stating an error in installation there were a few of these.
Then the lenovo onekey recovery window popped up with a compatilbitly issue.

I'm unsure whether these had any effect to the process but thought i would mention them.

Regards
Paul
Title: Re: reduled.info, blackled.info and reddie.net viruses etc pop ups
Post by: REDACTED on May 05, 2015, 04:45:06 PM
Okay,


(https://sites.google.com/site/cannedfixes/farbar-recovery-scan-tool/FRST.gif) Scan with Farbar Recovery Scan Tool

Please re-run Farbar Recovery Scan Tool to give me a fresh look at your system.
Please include their content into your next reply.


Step 2.



(https://sites.google.com/site/cannedfixes/home/hosted-images-tools/51a612a8b27e2-Zoek.png) Scan with ZOEK

Please download ZOEK (http://hijackthis.nl/smeenk) by Smeenk and save it to your desktop (preferred version is the *.exe one)
Temporary disable your AntiVirus and AntiSpyware protection - instructions here (http://www.bleepingcomputer.com/forums/topic114351.html).

Code: [Select]
createsrpoint;
autoclean;
emptyalltemp;
ipconfig /flushdns;b

Post its content into your next reply.
Title: Re: reduled.info, blackled.info and reddie.net viruses etc pop ups
Post by: REDACTED on May 05, 2015, 07:04:08 PM
Zoek took quite a long time to complete.
Here are the logs
Regards
Paul
Title: Re: reduled.info, blackled.info and reddie.net viruses etc pop ups
Post by: REDACTED on May 05, 2015, 07:11:26 PM
Quote
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION


Chrome installation is altered by malware. Reinstall is needed.

Close all Chrome windows and tabs.
Go to the Start menu > Control Panel.
Click Programs and Features.
Double-click Google Chrome.
Click Uninstall from the confirmation dialog. Delete your user profile information, like your browser preferences, bookmarks, and history, select the "Also delete your browsing data" checkbox.


Download Chrome
https://www.google.com/intl/en/chrome/browser/desktop/
Title: Re: reduled.info, blackled.info and reddie.net viruses etc pop ups
Post by: REDACTED on May 05, 2015, 07:50:19 PM
I have unistalled chrome. I have now installed firefox.
Any thing I should do? Or should i just monitor?
Regards
Paul
Title: Re: reduled.info, blackled.info and reddie.net viruses etc pop ups
Post by: REDACTED on May 05, 2015, 07:54:02 PM
How is your PC now?
Title: Re: reduled.info, blackled.info and reddie.net viruses etc pop ups
Post by: REDACTED on May 05, 2015, 08:07:41 PM
Hi
PC is good. I have restarted a few times, disconnected from network and reconnected to network and avast has not reported any issues.
Thanks for your help.

Best Regards
Paul
Title: Re: reduled.info, blackled.info and reddie.net viruses etc pop ups
Post by: REDACTED on May 05, 2015, 08:10:37 PM
Download DelFix (http://general-changelog-team.fr/fr/downloads/finish/20-outils-de-xplode/9-delfix) by Xplode and save it to your desktop.
The tool will also record healthy state of registry and make a backup using ERUNT program in %windir%\ERUNT\DelFix
Tool deletes old system restore points and create a fresh system restore point after cleaning.
Title: Re: reduled.info, blackled.info and reddie.net viruses etc pop ups
Post by: REDACTED on May 05, 2015, 08:24:33 PM
Hi
All done thanks.
I appreciate you volunteer for free and am grateful for your assistance.
Donation just paid in to your paypal,  :)
BR
Paul
Title: Re: reduled.info, blackled.info and reddie.net viruses etc pop ups
Post by: REDACTED on May 05, 2015, 08:26:51 PM
Thanks Paul  :)