Hey, so I was trying to alter my Firewall settings, but Windows wouldn’t let me change anything. I later found out that it’s because I have that virus.
I guess other common problems created by it are Google redirects, but for some reason I’m not getting that.
Either essexboy or oldman will pick up the thread once you post the results of your scan. Please be patient, as this often is a game of catchup, as one or the other is online and/or in a different time zone. Both, however, are good at what they do.
Farbar Service Scanner Version: 10-02-2012
Ran by Rich (administrator) on 10-02-2012 at 15:38:41
Running from “C:\Users\Rich\Downloads”
Microsoft Windows 7 Professional (X64)
Boot Mode: Normal
Internet Services:
Connection Status:
Localhost is accessible.
LAN connected.
Attempt to access Google IP returned error: Google IP is offline
Attempt to access Yahoo IP returend error: Yahoo IP is offline
Windows Firewall:
mpsdrv Service is not running. Checking service configuration:
The start type of mpsdrv service is OK.
The ImagePath of mpsdrv service is OK.
MpsSvc Service is not running. Checking service configuration:
The start type of MpsSvc service is OK.
The ImagePath of MpsSvc service is OK.
The ServiceDll of MpsSvc service is OK.
C:\Windows\System32\bfe.dll => MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
[*]Then click the Run Fix button at the top
[*]Let the program run unhindered, reboot the PC when it is done
[*]Open OTL again and click the Quick Scan button. Post the log it produces in your next reply.
Go Start > All Programs > Accessories
Right click Command Prompt
Select Run as Administrator
In the black box that opens type the following commands pressing enter after each line
netsh winsock reset catalog
netsh int ip reset reset.log
Once done can you let me know what problems remain