Author Topic: Spy Hunter 4 / remove all malware and Spyware  (Read 5634 times)

0 Members and 1 Guest are viewing this topic.

REDACTED

  • Guest
Spy Hunter 4 / remove all malware and Spyware
« on: June 11, 2015, 04:21:10 PM »
Hello ,

my computrer was infected and with help from some friends was able to remove most viruses.
But keep getting messages from Spy Hunter 4 and computer is really slow.
Can you help me clean it once and for all

Thanks in advance

MJ

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Spy Hunter 4 / remove all malware and Spyware
« Reply #1 on: June 11, 2015, 04:21:59 PM »
What was the infection ?

Please download Farbar Recovery Scan Tool and save it to your Desktop.
 
Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
 
  • Right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer.
  • Select  additions at the bottom
  • Press Scan button.

  • It will produce a log called FRST.txt in the same directory the tool is run from. 
  • Please attach both logs generated.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37630
  • Not a avast user
Re: Spy Hunter 4 / remove all malware and Spyware
« Reply #2 on: June 11, 2015, 04:38:37 PM »
Quote
But keep getting messages from Spy Hunter 4 and computer is really slow.
SpyHunter's free scanner is for malware detection. You have the choice of buying SpyHunter for malware removal.



when essexboy is finish cleaning your comp, i recomend replacing SpyHUnter with Malwarebytes .... it will remove malware wthout buying   ;)

Malwarebytes  https://www.malwarebytes.org
User guide  http://www.malwarebytes.org/support/guides/




REDACTED

  • Guest
Re: Spy Hunter 4 / remove all malware and Spyware
« Reply #3 on: June 11, 2015, 04:58:16 PM »
Here are the files ...
As for Spy Hunter I can't even find it on my programs ??

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37630
  • Not a avast user
Re: Spy Hunter 4 / remove all malware and Spyware
« Reply #4 on: June 11, 2015, 05:13:23 PM »
Quote
As for Spy Hunter I can't even find it on my programs ??
Maybe a popup from a fake / Rouge program .... you may attach a screenshot of the popup
If so, essexboy will remove it when back online

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Spy Hunter 4 / remove all malware and Spyware
« Reply #5 on: June 11, 2015, 06:48:34 PM »
Could you let me know what problems remain after this

CAUTION :  This fix is only valid for this specific machine, using it on another may break your computer

Open notepad and copy/paste the text in the quotebox below into it:
 
Quote
CreateRestorePoint:
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKU\S-1-5-21-1359477746-3472223832-3348934169-1001\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1359477746-3472223832-3348934169-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
S2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [1025920 2014-11-29] (Enigma Software Group USA, LLC.)
S3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [15920 2014-11-29] (Enigma Software Group USA, LLC.)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2014-11-29] ()
2015-05-31 13:10 - 2015-05-31 13:10 - 00000000 __SHD C:\Users\Chloé\AppData\Local\EmieBrowserModeList
Task: {024D2AD9-F643-4F29-A8B6-21918E486D50} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe [2014-11-29] (Enigma Software Group USA, LLC.)
C:\Program Files\Enigma Software Group
C:\Windows\System32\DRIVERS\EsgScanner.sys
Reg: reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f
Reg: reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f
RemoveProxy:
EmptyTemp:
CMD: bitsadmin /reset /allusers

 
Save this as fixlist.txt, in the same location as FRST.exe

Run FRST and press Fix
On completion a log will be generated please post that

THEN

Please download AdwCleaner by Xplode onto your desktop.
  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click on Scan.
  • After the scan is complete click on "Clean"
  • Confirm each time with Ok.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the content of that logfile with your next answer.
  • You can find the logfile at C:\AdwCleaner[S0].txt as well.

REDACTED

  • Guest
Re: Spy Hunter 4 / remove all malware and Spyware
« Reply #6 on: June 12, 2015, 02:08:00 AM »
Here's the log...

I will reboot and see if goes faster..

REDACTED

  • Guest
Re: Spy Hunter 4 / remove all malware and Spyware
« Reply #7 on: June 12, 2015, 02:21:14 AM »
Ac tually going faster thank you ..
Here's the ADW files

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Spy Hunter 4 / remove all malware and Spyware
« Reply #8 on: June 12, 2015, 02:38:54 PM »
Looks good, any further problems ?