New
#11
Well I just restarted again ... Same results ... Sigh ...
Well I just restarted again ... Same results ... Sigh ...
Hi,
OK. Lets try another approach, in this order:
1. Download and run RKILL (do NOT reboot your PC until step 2 below is finished)
2. Immediately, download, install, update and run a QUICK scan with FREE Malwarebytes
Post the log here when its done.
Regards,
Golden
RKILL LOG
Code:This log file is located at C:\rkill.log. Please post this only if requested to by the person helping you. Otherwise you can close this log when you wish. Rkill was run on 02/01/2012 at 13:46:58. Operating System: Windows 7 Home Premium Processes terminated by Rkill or while it was running: C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe C:\Windows\SysWOW64\rundll32.exe C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe Rkill completed on 02/01/2012 at 13:47:05.
Malware bytes log
Code:Malwarebytes Anti-Malware (Trial) 1.60.0.1800 www.malwarebytes.org Database version: v2012.01.02.01 Windows 7 x64 NTFS Internet Explorer 8.0.7600.16385 user :: USER-PC [administrator] Protection: Enabled 02/01/2012 13:49:05 mbam-log-2012-01-02 (13-54-15).txt Scan type: Quick scan Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 196132 Time elapsed: 3 minute(s), 5 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run|38445 (Trojan.Agent) -> Data: C:\PROGRA~3\LOCALS~1\Temp\abhtjzaep.pif -> No action taken. Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 4 C:\Users\user\AppData\Local\Temp\msimg32.dll (Trojan.Agent) -> No action taken. C:\Windows\System32\drivers\str.sys (Rootkit.Agent) -> No action taken. C:\Windows\SysWOW64\drivers\str.sys (Rootkit.Agent) -> No action taken. C:\ProgramData\Local Settings\Temp\abhtjzaep.pif (Trojan.Agent) -> No action taken. (end)
Should I click and remove those virus first ?
Yes. Restart, then check to see if you can turn Windows Firewall on again.
A quick question : what antivirus software do you use? Have you ever used a different firewall software solution before on this PC?
regards,
Golden
Not Really ?
Code:Here's the scan log Malwarebytes Anti-Malware (Trial) 1.60.0.1800 www.malwarebytes.org Database version: v2012.01.02.01 Windows 7 x64 NTFS Internet Explorer 8.0.7600.16385 user :: USER-PC [administrator] Protection: Enabled 02/01/2012 14:28:18 mbam-log-2012-01-02 (14-31-29).txt Scan type: Quick scan Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 195824 Time elapsed: 2 minute(s), 48 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run|38445 (Trojan.Agent) -> Data: C:\PROGRA~3\LOCALS~1\Temp\abhtjzaep.pif -> No action taken. Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) (end)