Seems dodgy, but quite unsure.

Right, so not long ago my new ish Intel board fried, switched out to a lovely brand new ASUS Maximus V formula, as what came with the board you generally expected bloatware, which I avoided, but as of recently UAC has been throwing up multiple instances of Explorer.exe with an unknown publisher whenever I install program, not sure if it’s linked to me updating the drivers for the motherboard, but It could be, I’ve run all the scans currently apart from OTL, I’ll be attaching the logs soon on request, but all of them seem to be coming up short / Clean, also a note to add, inside the System32 there is a file specifically named “Explorer.exe.rogback” ROG meaning “Republic of Gamers”, related to the motherboard, I’d just like to see if someone would have a quick look.

inside the System32 there is a file specifically named "Explorer.exe.rogback"
upload suspicious file(s) to www.virustotal.com and test with 40+ malware scanners

removers are notified and will check your logs when they arrive

Hi,

Logs looks clean. explorer.exe.rogbak is related for ROG ( republick of gamers brand [ps:we have simular motherboard :slight_smile: ] )
We will just clean some junk files + run ESET online scanner as duble check.

Also, be free to down&run adwcleaner clicking on [delete] button…

Re-run OTL.exe.

[*]Copy and paste the following text written inside of the quote box into the Custom Scans/Fixes box.



:commands
[emptytemp]


[*]Then click the Run Fix button at the top.
[*]Let the program run unhindered; it will reboot the system when it is done and open notepad with logreport. Attach here that logreport.


ESET Online Scanner

Go here to run an online scannner from ESET. Windows Vista/Windows 7 users will need to right click on their Internet Explorer shortcut, and select Run as Administrator
[*]Note: For browsers other than Internet Explorer, you will be prompted to download and install esetsmartinstaller_enu.exe. Click on the link and save the file to a convenient location. Double click on it to install and a new window will open. Follow the prompts.[*] Turn off the real time scanner of any existing antivirus program while performing the online scan[*]Tick the box next to YES, I accept the Terms of Use.[*]Click Start[*]When asked, allow the activex control to install[*]Click Start[*]Make sure that the option Remove found threats is unticked and the Scan Archives option is ticked.[*]Click on Advanced Settings, ensure the options Scan for potentially unwanted applications, Scan for potentially unsafe applications, and Enable Anti-Stealth Technology are ticked.[*]Click Scan[]Wait for the scan to finish[]When the scan is done, if it shows a screen that says “Threats found!”, then click “List of found threats”, and then click “Export to text file…”[] Save that text file on your desktop. Copy and paste the contents of that log as a reply to this topic.[]Close the ESET online scan, and let me know how things are now.

Quick question Magna, inside your UAC, under parental controls do you have a user called “UpdatusUSER” ?
See attached.

Crap, well I done the scan, nothing came up as a threat, at all, but I forgot to export it.

Quick question Magna, inside your UAC, under parental controls do you have a user called "UpdatusUSER" ?
Yes. It's nVidia related ...
Crap, well I done the scan, nothing came up as a threat, at all, but I forgot to export it.

Well, as i said, this is just an duble checking. :slight_smile: Do you have any other issues?

No issues with UAC since I’ve deleted the Nvidia user, it was annoying me whenever I opened a program, etc. Everything seems back to normal now.

Then re-run OTL and click on CleanUp button to remove his created files/folders and other tools too.

:wink:

Everything seems fine now, hopefully atleast. I’ve done the clean up.