massive ADWARE infestation Shoppers Report Click Potato

it keeps popping up - but if just housecleaning that is OK with me

shall I try to set up Firefox again and see?

also

when I UNinstalled it - I meant to RE-install and left the personal profile alone
per their advice

as you know Firefox got infested - shall I remove all the Firefox profile stuff
and do a total new install? or is it safe to install with old profile data?

I would always recommend a full uninstall as there are many little hiddy holes where some malicious code could be stored… But, look on the bright side, all your addons will be the latest version ;D

When you are happy I will give you a quick tidy up and remove my tools

OK appreciate your awesome help

hang in a bit while I try to clean install

but first must find that profile data to UNinstall

Do you want me to remove them ?

oh good

just got back from programs to uninstall

cannot find mozilla listed

but I know I left the profile intact

YES please remove if you can?

Your wish is my command

Start OTS. Copy/Paste the information in the quotebox below into the panel where it says “Paste fix here” and then click the Run Fix button.

[Unregister Dlls]
[Registry - Safe List]
< FireFox Settings [Prefs.js] > -> C:\Users\staples\AppData\Roaming\Mozilla\FireFox\Profiles\t675kg47.default\prefs.js
YN -> browser.search.defaultenginename -> "Google"
YN -> browser.search.defaulturl -> "http://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q="
YN -> browser.search.selectedEngine -> "DAEMON Search"
YN -> browser.search.suggest.enabled -> false
YN -> browser.search.useDBForOrder -> true
YN -> extensions.enabledItems -> {21b88860-5e00-44dd-bdac-fca1f791837e}:0.2.0.7
YN -> extensions.enabledItems -> {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
YN -> extensions.enabledItems -> {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
YN -> extensions.enabledItems -> {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
< FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla
YN -> HKLM\software\mozilla\Firefox\Extensions -> 
YY -> HKLM\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b} -> C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video [C:\PROGRAM FILES\DIVX\DIVX PLUS WEB PLAYER\FIREFOX\HTML5VIDEO]
YY -> HKLM\software\mozilla\Firefox\Extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085} -> C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa [C:\PROGRAM FILES\DIVX\DIVX PLUS WEB PLAYER\FIREFOX\WPA]
< FireFox Extensions [User Folders] > -> 
YY -> ~EmptyValue -> C:\Users\staples\AppData\Roaming\Mozilla\Extensions
YY -> ~EmptyValue -> C:\Users\staples\AppData\Roaming\Mozilla\Firefox\Profiles\t675kg47.default\extensions
YY -> Microsoft .NET Framework Assistant   -> C:\Users\staples\AppData\Roaming\Mozilla\Firefox\Profiles\t675kg47.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
YY -> Kaboodle   -> C:\Users\staples\AppData\Roaming\Mozilla\Firefox\Profiles\t675kg47.default\extensions\{21b88860-5e00-44dd-bdac-fca1f791837e}
[Custom Items]
:Files
C:\Users\staples\AppData\Roaming\Mozilla
C:\Program Files\Mozilla
:end
[Empty Temp Folders]
[EmptyFlash]
  

The fix should only take a very short time. When the fix is completed a message box will popup telling you that it is finished. Click the Ok button and Notepad will open with a log of actions taken during the fix. Post that information back here

I will review the information when it comes back in.

cool

will do

after we need to be certain I can even use SET UP again

(one of my problems)

OTS Firefox fix

cannot use SETUP install still
see message I get attchd

When you try to install are you right clicking and selecting run as administrator ?

i thought so - i used RUN

but will try again

run as Administr worked to install

thanks never used that before!

but
cannot make a profile - see attached

Looking at the red border - did you do this in the sandbox ?

yes I live in the sandbox!

It will not install in the sandbox - you will need to do that outside the sandbox. Once installed then it will be OK to go back to the sandbox ;D

it installed fine

but the file path for the profile is an issue

did our earlier remove of profile affect?

i just UNinstalled the firefox

then got messages that explorer has stopped responding

then all the IE windows stayed open but logged me out of this forum
user name and passw not the actual forum

anyhow - I am trying to fgure out how to turn off the sandbox and reinstall
if that is the issue thogh (see my previous about the file path)

i found this

attachd - do I END PROCESS ?

and then how do I get it back to sandbox?

this is not urgent for tonight but continue tomorrow maybe?

I messed up I think

ok now I ENDED THAT PROCESS virtualized see previous image the extension had firefox set up exe (so I thought the exe was in sandbox)

I managed to right clck on the installed firefox icon and clicked RUN OUTSIDE

I got some prompts to import all my settings over from IExplorer faves and stuff
and home page - it did

but now when I try to open the firefox icon it goes back to the cannot until I make a profile

so what on earth??

I think something is messed up

my final for tonight

firefox runs ok OUTSIDE sandbox

when turn ON sandbox - asks for profile and will not save the profile
something about not writable - thus no firefox without profile
in sandbox