Help: Rovnix & other infections possible cause of BSOD & loss of update service

OTL log attached now

That now looks good, all services running, zero access dead, adware consigned to history :slight_smile:

OK I believe one of the infections was via a USB drive so we will slap some protection on for that now

Download MCShield to your desktop and install
It will initially run a scan and show the result as a toaster by the system clock
Then in the control centre select scanner and tick unhide items on flash drives

https://dl.dropbox.com/u/73555776/mcshield%20unhide.JPG

Plug in the drive and McShield will start a scan

Then get the log which will be here :

Start > all programs > MCShield > logs > all scans

And post that

Are there any apparent problems outstanding ?

Its seems like everything has been fixed

Again,I really appreciate your help. Im gonna try to explain to her how to uncheck the boxes & read when she’s installing programs

Installed mcshield

OK you can use Avast to help here

Open Avast > Settings > Antivirus > Set hardened mode to aggressive

https://dl.dropboxusercontent.com/u/73555776/Hardened%20mode.JPG

Then any unknown or low prevalence programme will ask to run. If you are happy then select Add to Exclusions

https://dl.dropboxusercontent.com/u/73555776/Add%20to%20exclusions.JPG

Then set Avast to detect PUPs, click the cog next to file system shield

https://dl.dropboxusercontent.com/u/73555776/pups.JPG

Subject to no further problems :slight_smile:

I will remove my tools now and give some recommendations, but, I would like you to run for 24 hours or so and come back if you have any problems

Now the best part of the day ----- Your log now appears clean :thumbsup:

A good workman always cleans up after himself so…The following will implement some cleanup procedures as well as reset System Restore points:

Delete JRT from the desktop

Run AdwCleaner and select uninstall

Remove ComboFix
[*]Hold down the Windows key + R on your keyboard. This will display the Run dialogue box
[*]In the Run box, type in ComboFix /Uninstall
(Notice the space between the “x” and “/”)
then click OK

http://i1224.photobucket.com/albums/ee362/Essexboy3/Misc%20screen%20shots/CF_Uninstall-1.jpg

[]Follow the prompts on the screen
[
]A message should appear confirming that ComboFix was uninstalled

Run OTL and hit the cleanup button. It will remove all the programmes we have used plus itself.

Clear Restore Points

Go Start > All Programmes > Accessories > System tools
Right click Disc Cleanup and select run as administrator
When it pops up at the first prompt select OK after it has done some calculations the tabs will appear
Select More Options tab
Press Sytem Restore and Shadow Copies Cleanup button

Now that you are clean, to help protect your computer in the future I recommend that you get the following free programmes:

CryptoPrevent install this programme to lock down and prevent crypto ransome ware

https://dl.dropboxusercontent.com/u/73555776/CryptoPrevent.JPG

Malwarebytes.

Update and run weekly to keep your system clean

It is critical to have both a firewall and anti virus to protect your system and to keep them updated.

To learn more about how to protect yourself while on the internet read our little guide How did I get infected in the first place ?Keep safe :wave: