Spigot removal

I have spigot in my program files and malware antimalware bytes not finding. Cannot remove the spigot file from my program files–says access denied? How can I remove safely? Net running slow etc etc… Thank you!

Also, how would I have got the spigot in the first place? So I can avoid…

Eilah welcome to Avast! forum

Follow this guide: http://forum.avast.com/index.php?topic=53253.0

and attach ( Do not copy/paste ) logs for Malwarebytes’, OTL, and aswMBR.exe

Because of the time our malware removal experts must be in bed by now. You could check tomorrow for answers and new instructions. I will notify Essexboy.

I am not sure what those things are so that I can attach? I will try and figure out… thanks! BTW got to love being an Aussie when things like this happen!

You only have to download and run those programs. They will generate reports ( Log ) and you have to attach them to your next post in order to be analyzed by the expert.

Look to this post and see the logs attached:

http://forum.avast.com/index.php?topic=98472.msg785557#msg785557

You have to create your own

NOTE since you are down under and Essexboy in the UK may be you don’t have to wait too long since it is almost morning up there.

OK. Went to AVAST site in one of the top posts. It took me to ARO–which I ran. it then said it had fixed 100 issues but I had to buy something to fix the other (close to) 3000 issues?! Thinking I have possibly done something stupid. Again. Have a report, which I have now saved as txt, but it is 5.2 MB so cannot attach?

Still waiting on Malwarebytes Antmalware and Microsoft Security Essentials to complete. Been close to 3 hours. Trying to be patient…

malwarebytes anti-malware still going as on quick scan nothing found. have run OTL and reports attached. appreciaet any info on the ARO scan still… thanks

Have attached malware scan log – thanks

and here is the aswMBR… thanx

Logs are posted correct…

Essexboy and Jeffce are notified and will check your logs when they arrive…

it may take several hours before they are here

OK. Thanks for the update. Sorry again for any hassles

No problem…

we have all been first timers in here…even DavidR with 60 000 posts ;D

OK lets get rid of it… Also I would bin ARO as it is a waste of space

Warning This fix is only relevant for this system and no other, using on another computer may cause problems

Be advised that when the fix commences it will shut down all running processes and you may lose the desktop and icons, they will return on reboot

If you have Malwarebytes 1.6 or better installed please disable it for the duration of this run
To disable MBAM
Open the scanner and select the protection tab
Remove the tick from “Start with Windows”
Reboot and then run OTL

http://i1224.photobucket.com/albums/ee362/Essexboy3/mbamstop.jpg

Run OTL

[*]Under the Custom Scans/Fixes box at the bottom, paste in the following

:OTL SRV - [2012/05/16 18:16:50 | 000,785,344 | ---- | M] (Spigot, Inc.) [Auto | Running] -- C:\Program Files\Application Updater\ApplicationUpdater.exe -- (Application Updater) IE - HKU\S-1-5-21-436374069-1482476501-682003330-1005\..\URLSearchHook: {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\5.7\pdfforgeToolbarIE.dll (Spigot, Inc.) O2 - BHO: (pdfforge Toolbar) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\5.7\pdfforgeToolbarIE.dll (Spigot, Inc.) O3 - HKLM\..\Toolbar: (pdfforge Toolbar) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\5.7\pdfforgeToolbarIE.dll (Spigot, Inc.) O4 - HKLM..\Run: [SearchSettings] C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe (Spigot, Inc.) O4 - Startup: C:\Documents and Settings\pauls\Start Menu\Programs\Startup\prf19.tmp () [2012/05/19 07:29:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Spigot [2012/05/19 07:29:50 | 000,000,000 | ---D | C] -- C:\Program Files\pdfforge Toolbar [2010/12/21 18:52:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paul\Application Data\pdfforge

:Files
ipconfig /flushdns /c
C:\Program Files\Application Updater\ApplicationUpdater.exe
:Commands
[purity]
[resethosts]
[emptytemp]
[CREATERESTOREPOINT]
[Reboot]


[*]Then click the Run Fix button at the top
[*]Let the program run unhindered, reboot the PC when it is done
[*]Open OTL again and click the Quick Scan button. Post the log it produces in your next reply.

Hi Essexboy

Thanks. Think I have done as asked–very clear instructions appreciated.

Log attached.

Should I re-select Malware to start on opening again?
Also, OTL not on desktop, is this an issue for future?

Said I was basic…

Cheers

Yes reselect MBAM to start now

Did I get it all ;D

To check if all gone do I just check in program files?

Also how did I get in first place, to avoid again?

Should I change all passwords now? Safe to do?

THANK YOU :slight_smile:

That came down as a part of PDFForge toolbar

So only get the toolbars that you cannot live without - I only have one and that is Roboform

No need to change passwords or anything

Run OTL and hit the cleanup up button to remove OTL

cool–so bin pdfforge?

Thanks so much!