OTL log attached now
That now looks good, all services running, zero access dead, adware consigned to history
OK I believe one of the infections was via a USB drive so we will slap some protection on for that now
Download MCShield to your desktop and install
It will initially run a scan and show the result as a toaster by the system clock
Then in the control centre select scanner and tick unhide items on flash drives
https://dl.dropbox.com/u/73555776/mcshield%20unhide.JPG
Plug in the drive and McShield will start a scan
Then get the log which will be here :
Start > all programs > MCShield > logs > all scans
And post that
Are there any apparent problems outstanding ?
Its seems like everything has been fixed
Again,I really appreciate your help. Im gonna try to explain to her how to uncheck the boxes & read when she’s installing programs
Installed mcshield
OK you can use Avast to help here
Open Avast > Settings > Antivirus > Set hardened mode to aggressive
https://dl.dropboxusercontent.com/u/73555776/Hardened%20mode.JPG
Then any unknown or low prevalence programme will ask to run. If you are happy then select Add to Exclusions
https://dl.dropboxusercontent.com/u/73555776/Add%20to%20exclusions.JPG
Then set Avast to detect PUPs, click the cog next to file system shield
https://dl.dropboxusercontent.com/u/73555776/pups.JPG
Subject to no further problems
I will remove my tools now and give some recommendations, but, I would like you to run for 24 hours or so and come back if you have any problems
Now the best part of the day ----- Your log now appears clean
A good workman always cleans up after himself so…The following will implement some cleanup procedures as well as reset System Restore points:
Delete JRT from the desktop
Run AdwCleaner and select uninstall
Remove ComboFix
[*]Hold down the Windows key + R on your keyboard. This will display the Run dialogue box
[*]In the Run box, type in ComboFix /Uninstall
(Notice the space between the “x” and “/”)
then click OK
http://i1224.photobucket.com/albums/ee362/Essexboy3/Misc%20screen%20shots/CF_Uninstall-1.jpg
[]Follow the prompts on the screen
[]A message should appear confirming that ComboFix was uninstalled
Run OTL and hit the cleanup button. It will remove all the programmes we have used plus itself.
Clear Restore Points
Go Start > All Programmes > Accessories > System tools
Right click Disc Cleanup and select run as administrator
When it pops up at the first prompt select OK after it has done some calculations the tabs will appear
Select More Options tab
Press Sytem Restore and Shadow Copies Cleanup button
Now that you are clean, to help protect your computer in the future I recommend that you get the following free programmes:
CryptoPrevent install this programme to lock down and prevent crypto ransome ware
https://dl.dropboxusercontent.com/u/73555776/CryptoPrevent.JPG
Update and run weekly to keep your system clean
It is critical to have both a firewall and anti virus to protect your system and to keep them updated.
To learn more about how to protect yourself while on the internet read our little guide How did I get infected in the first place ?Keep safe