Author Topic: Cant remove Driver Toolkit  (Read 10098 times)

0 Members and 1 Guest are viewing this topic.

REDACTED

  • Guest
Cant remove Driver Toolkit
« on: February 09, 2016, 12:13:11 AM »
Hello.  I mentioned this in another forum and it was suggested I post it here.

In attempting to find a certain driver I downloaded a commercial product (misleading link!).   Once installed it wanted payment.  I also got a malicous warning from Avast and found the .exe for this program in the virus chest in quarantine.  I also find the software on my program list in the software manager and an icon in my system tray.  If I open the icon, it encourages me to buy the product.  I cannot uninstall Driver Toolkit using Apps and Features.  Windows can't find it when it tries to uninstall.

I have deleted the exe from the virus chest.

Scanning now finds no threats.   I am not sure if Avast hid any part of the software, if it was a false positive or how to get rid of this thing at this point.

I have Windows 10, on an Intel Pentium HP laptop. 

Here's the Malware Bytes scan log. 

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37527
  • Not a avast user
Re: Cant remove Driver Toolkit
« Reply #1 on: February 09, 2016, 12:39:41 AM »
Quote
   I am not sure if Avast hid any part of the software, if it was a false positive or how to get rid of this thing at this point.
Antivirus does not hide anything, if malicious it is quarantined or deleted


Quote
If I open the icon, it encourages me to buy the product.  I cannot uninstall Driver Toolkit using Apps and Features.  Windows can't find it when it tries to uninstall.
See here   https://forum.avast.com/index.php?topic=53253.0   scroll down to second picture, follow instructions and attach the two FRST diagnostic logs


REDACTED

  • Guest
Re: Cant remove Driver Toolkit
« Reply #2 on: February 09, 2016, 04:43:07 PM »
OK here are the logs.

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Cant remove Driver Toolkit
« Reply #3 on: February 09, 2016, 07:17:35 PM »
Let me know if it dies after this :)

CAUTION :  This fix is only valid for this specific machine, using it on another may break your computer

Open notepad and copy/paste the text in the quotebox below into it:
 
Quote
CreateRestorePoint:
(Megaify Software Co., Ltd.) C:\Program Files (x86)\DriverToolkit\DriverToolkit.exe
2016-02-08 13:10 - 2016-02-08 13:10 - 00002818 _____ C:\WINDOWS\System32\Tasks\DriverToolkit Autorun
2016-02-08 12:43 - 2016-02-08 12:57 - 00000000 ____D C:\Program Files (x86)\DriverToolkit
2016-02-08 12:43 - 2016-02-08 12:43 - 00000000 ____D C:\Users\barri\AppData\Local\DriverToolkit
2016-02-08 12:43 - 2016-02-08 12:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverToolkit
2016-02-08 12:37 - 2016-02-08 12:37 - 02449376 _____ (Megaify Software ) C:\Users\barri\Downloads\DriverToolkitInstaller.exe
Task: {BDF6879A-561A-4559-B739-DE5EA83F437A} - System32\Tasks\DriverToolkit Autorun => C:\Program Files (x86)\DriverToolkit\DriverToolkit.exe [2015-07-01] (Megaify Software Co., Ltd.)
Task: C:\WINDOWS\Tasks\DriverToolkit Autorun.job => C:\Program Files (x86)\DriverToolkit\DriverToolkit.exe
Reg: reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f
Reg: reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f
RemoveProxy:
EmptyTemp:
CMD: bitsadmin /reset /allusers

 
Save this as fixlist.txt, in the same location as FRST.exe

Run FRST and press Fix
On completion a log will be generated please post that

THEN

Please download AdwCleaner by Xplode onto your desktop.
  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click on Scan.
  • After the scan is complete click on "Clean"
  • Confirm each time with Ok.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the content of that logfile with your next answer.
  • You can find the logfile at C:\AdwCleaner[S0].txt as well.

REDACTED

  • Guest
Re: Cant remove Driver Toolkit
« Reply #4 on: February 10, 2016, 12:22:31 AM »
Hi Essexboy.   I believe your fix worked!  I can't find evidence of the dreaded Driver Tool Kit anymore.  Ive attached the fix log, and I did run adware cleaner which looks like it removed some registry keys.  Thank you for your help!  (PS I inadvertenly created another Avast account hence the modified user name).

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Cant remove Driver Toolkit
« Reply #5 on: February 10, 2016, 03:44:00 PM »
Any further problems ?