Author Topic: Need Help Removing Some PUP's  (Read 10750 times)

0 Members and 1 Guest are viewing this topic.

RevolutionSphere

  • Guest
Re: Need Help Removing Some PUP's
« Reply #15 on: April 15, 2014, 12:07:29 PM »
Just re-ran a Hitman Pro scan, seems that the files are still here and its found something new, that apparently needs to be repaired

Screenshot and Log has been attached
« Last Edit: April 15, 2014, 02:40:58 PM by RevolutionSphere »

Offline Michael (alan1998)

  • Massive Poster
  • ****
  • Posts: 2768
  • Volunteer
Re: Need Help Removing Some PUP's
« Reply #16 on: April 15, 2014, 12:12:00 PM »
What Hitman Pro found was 2 dead Reg Keys and Drivers/etc. Which could be anything (Has no extension) so I presume it's a file folder. HitmanPro can be a bit dangerous and I'd personally consider them FP's.

Code: [Select]
HitmanPro 3.7.9.216
www.hitmanpro.com

   Computer name . . . . : JOESCOMPUTER
   Windows . . . . . . . : 5.1.3.2600.X86/2
   User name . . . . . . : JOESCOMPUTER\user
   License . . . . . . . : Free

   Scan date . . . . . . : 2014-04-15 10:52:30
   Scan mode . . . . . . : Normal
   Scan duration . . . . : 12m 49s
   Disk access mode  . . : Direct disk access (SRB)
   Cloud . . . . . . . . : Internet
   Reboot  . . . . . . . : No

   Threats . . . . . . . : 0
   Traces  . . . . . . . : 3

   Objects scanned . . . : 491,240
   Files scanned . . . . : 8,340
   Remnants scanned  . . : 153,592 files / 329,308 keys

Potential Unwanted Programs _________________________________________________

   HKU\.DEFAULT\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}\ (FLV Player)
   HKU\S-1-5-18\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}\ (FLV Player)

Repairs _____________________________________________________________________

   hosts
   C:\WINDOWS\system32\drivers\etc\



That is the log file from HMP.

Something else to add....

Essex made the Hosts files reset. ([resethosts]). Just another reason for a FP.
« Last Edit: April 15, 2014, 12:13:33 PM by Michael (alan1998) »
VOLUNTEER

Senior Security Analyst; Sys Admin (Linux); Forensics/Incident Response.

Security is a mindset, not an application. Think BEFORE you click.

RevolutionSphere

  • Guest
Re: Need Help Removing Some PUP's
« Reply #17 on: April 15, 2014, 12:48:29 PM »
Ok, thanks for the input.  I personally find Hitman Pro very helpful at times

Offline Michael (alan1998)

  • Massive Poster
  • ****
  • Posts: 2768
  • Volunteer
Re: Need Help Removing Some PUP's
« Reply #18 on: April 15, 2014, 01:33:13 PM »
I would personally think they are FP's. Wait for Essex to have last word. But that'd be my guess.
VOLUNTEER

Senior Security Analyst; Sys Admin (Linux); Forensics/Incident Response.

Security is a mindset, not an application. Think BEFORE you click.

RevolutionSphere

  • Guest
Re: Need Help Removing Some PUP's
« Reply #19 on: April 15, 2014, 02:39:26 PM »
I'll see what Essex wants me to do.

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Need Help Removing Some PUP's
« Reply #20 on: April 15, 2014, 03:31:16 PM »
I believe that error with delfix has now been repaired, so download and run a fresh copy.  Without any files to run those registry keys are doing nothing and going nowhere.  All they do is point to where the programme was originally installed. They will in no way affect the performance of your computer

RevolutionSphere

  • Guest
Re: Need Help Removing Some PUP's
« Reply #21 on: April 15, 2014, 03:43:42 PM »
I believe that error with delfix has now been repaired, so download and run a fresh copy.  Without any files to run those registry keys are doing nothing and going nowhere.  All they do is point to where the programme was originally installed. They will in no way affect the performance of your computer
Still getting the same error.

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Need Help Removing Some PUP's
« Reply #22 on: April 15, 2014, 03:46:15 PM »
OK delete delfix and then run OTL and press the cleanup button.  It will achieve the same aim 

RevolutionSphere

  • Guest
Re: Need Help Removing Some PUP's
« Reply #23 on: April 15, 2014, 04:50:57 PM »
Will do

RevolutionSphere

  • Guest
Re: Need Help Removing Some PUP's
« Reply #24 on: April 15, 2014, 05:35:23 PM »
OK delete delfix and then run OTL and press the cleanup button.  It will achieve the same aim
Cleanup is all done, thanks for the help essexboy  :)

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Need Help Removing Some PUP's
« Reply #25 on: April 15, 2014, 07:02:16 PM »
My pleasure, be careful with hitmanpro though

RevolutionSphere

  • Guest
Re: Need Help Removing Some PUP's
« Reply #26 on: April 15, 2014, 07:20:31 PM »
My pleasure, be careful with hitmanpro though
I will do but what should I be careful about?

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Need Help Removing Some PUP's
« Reply #27 on: April 15, 2014, 07:27:29 PM »
Always triple check before you allow it to delete anything, as I have had to repair a few machines where it was overzealous 

Offline Michael (alan1998)

  • Massive Poster
  • ****
  • Posts: 2768
  • Volunteer
Re: Need Help Removing Some PUP's
« Reply #28 on: April 15, 2014, 07:35:38 PM »
HitmanPro can delete system files. That is the issue with HMP sadly. Although a great tool, has some cons to it.
VOLUNTEER

Senior Security Analyst; Sys Admin (Linux); Forensics/Incident Response.

Security is a mindset, not an application. Think BEFORE you click.

RevolutionSphere

  • Guest
Re: Need Help Removing Some PUP's
« Reply #29 on: April 15, 2014, 08:01:37 PM »
Makes sense, I will be careful when using it.

Thanks guys for the help