Hi, I am having big problems with my laptop and am typing this in safe mode!
When I try to startup Windows I just get a black screen and Windows won’t start at all. I started the machine in safe mode and ran Malwarebytes’ Anti-Malware, which found 15 infections. I restarted my machine as instructed, and Windows still wouldn’t start.
I’ve since been back into safe mode, and ran Malwarebytes again, Avast and AG and none of them can find any infections at all. But my machine won’t start.
Here is the log from Malwarebytes when it detected numerous infections (which it doesn’t detect any more):
Malwarebytes Anti-Malware (Trial) 1.60.1.1000 www.malwarebytes.orgDatabase version: v2012.04.06.07
Windows 7 Service Pack 1 x86 NTFS (Safe Mode/Networking)
Internet Explorer 9.0.8112.16421Protection: Disabled
06/04/2012 20:21:14
mbam-log-2012-04-06 (20-21-14).txtScan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 190628
Time elapsed: 7 minute(s), 20 second(s)Memory Processes Detected: 0
(No malicious items detected)Memory Modules Detected: 0
(No malicious items detected)Registry Keys Detected: 10
HKCR\CLSID{78F3A323-798E-4AEA-9A57-88F4B05FD5DD} (PUP.VShareRedir) → Quarantined and deleted successfully.
HKCR\TypeLib{BB7256DD-EBA9-480B-8441-A00388C2BEC3} (PUP.VShareRedir) → Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects{78F3A323-798E-4AEA-9A57-88F4B05FD5DD} (PUP.VShareRedir) → Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings{78F3A323-798E-4AEA-9A57-88F4B05FD5DD} (PUP.VShareRedir) → Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats{78F3A323-798E-4AEA-9A57-88F4B05FD5DD} (PUP.VShareRedir) → Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved{78F3A323-798E-4AEA-9A57-88F4B05FD5DD} (PUP.VShareRedir) → Quarantined and deleted successfully.
HKCR\CLSID{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.VShareRedir) → Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.VShareRedir) → Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.VShareRedir) → Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.VShareRedir) → Quarantined and deleted successfully.Registry Values Detected: 4
HKCU\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser|{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.VShareRedir) → Data: ;áÃzÊ;XA³0öm»Áµ → Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.VShareRedir) → Data: VShareTB → Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.VShareRedir) → Data: → Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.VShareRedir) → Data: → Quarantined and deleted successfully.Registry Data Items Detected: 2
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (Hijack.StartPage) → Bad: (http://startsear.ch/?aff=1&cf=4257cea3-1916-11e1-a653-a4badbb27d38) Good: (http://www.google.com) → Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (Hijack.StartPage) → Bad: (http://startsear.ch/?aff=1&cf=4257cea3-1916-11e1-a653-a4badbb27d38) Good: (http://www.google.com) → Quarantined and repaired successfully.Folders Detected: 0
(No malicious items detected)Files Detected: 3
C:\Program Files\vShare.tv plugin\BarLcher.dll (PUP.VShareRedir) → Quarantined and deleted successfully.
C:\Users\Chris\Downloads\Retrogamer(2).exe (PUP.FunWebProducts) → Quarantined and deleted successfully.
C:\Users\Chris\Downloads\Retrogamer.exe (PUP.FunWebProducts) → Quarantined and deleted successfully.(end)
I tried to run the OTL programme that is suggested in this thread:
http://forum.avast.com/index.php?topic=53253.0
But it won’t run at all seemingly. Does anyone have any suggestions, as I’m about ready to do a factory reset!