Try this and follow up with MBAM
Start OTS. Copy/Paste the information in the quotebox below into the panel where it says
"Paste fix here" and then click the
Run Fix button.
[Unregister Dlls]
[Registry - Safe List]
< Run [HKEY_USERS\S-1-5-21-793450253-922362121-1077007685-1000\] > -> HKEY_USERS\S-1-5-21-793450253-922362121-1077007685-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
YY -> "Msuwe" -> C:\Users\greg\AppData\Local\ukegobabamisa.dll [rundll32.exe "C:\Users\greg\AppData\Local\ukegobabamisa.dll",Startup]
< Trusted Sites Domains [HKEY_USERS\S-1-5-21-793450253-922362121-1077007685-1000\] > -> HKEY_USERS\S-1-5-21-793450253-922362121-1077007685-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\
YN -> chat_adultfriendfinder.com [https] -> Trusted sites
[Files/Folders - Created Within 30 Days]
NY -> ukegobabamisa.dll -> C:\Users\greg\AppData\Local\ukegobabamisa.dll
[Files/Folders - Modified Within 30 Days]
NY -> Bnewika.bin -> C:\Users\greg\AppData\Local\Bnewika.bin
NY -> Ehaxebebaguwi.dat -> C:\Users\greg\AppData\Local\Ehaxebebaguwi.dat
[Files - No Company Name]
NY -> Ehaxebebaguwi.dat -> C:\Users\greg\AppData\Local\Ehaxebebaguwi.dat
NY -> Bnewika.bin -> C:\Users\greg\AppData\Local\Bnewika.bin
[Empty Temp Folders]
[EmptyFlash]
[CreateRestorePoint]
The fix should only take a very short time. When the fix is completed a message box will popup telling you that it is finished. Click the
Ok button and Notepad will open with a log of actions taken during the fix. Post that information back here
I will review the information when it comes back in.
Please download Malwarebytes' Anti-Malware from
Here.
Double Click mbam-setup.exe to install the application.
- Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
- If an update is found, it will download and install the latest version.
- Once the program has loaded, select "Perform Quick Scan", then click Scan.
- The scan may take some time to finish,so please be patient.
- When the scan is complete, click OK, then Show Results to view the results.
- Make sure that everything is checked, and click Remove Selected.
- When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
- The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
- Copy&Paste the entire report in your next reply.
Extra Note:
If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process. If asked to restart the computer, please do so immediately.