ad by pass now and fake download suggestioms

TwinHeadedEagle

Level 41
Verified
Mar 8, 2013
22,627
Hi,



Please download zoek.zip or zoek.rar by smeenk (
Zoek_icon.png
) from here or here and save it to your Desktop.
Unpack the archive...
  • Close any open browsers
  • Temporarily disable your AntiVirus program. (If necessary)
    If you are unsure how to do this please read this or this Instruction.
  • Double click on zoek.exe to run the tool .
    Please wait while the tool does not start...
  • Copy the text present inside the code box below and paste it into the large window in the zoek tool:

    Code:
    createsrpoint;
    gpt.ini;z 
    C:\Windows\System32\GroupPolicy;v
    C:\Windows\SysWOW64\GroupPolicy;v 
    StandardSearch; 
    emptyfolderscheck; 
    installer-list; 
    installedprogs; 
    uninstall-list;
  • Click on
    Run%20Script%20by%20zoek.png
    button.
    Please wait until a logreport will open (this can be after reboot)
  • Save notepad to your Desktop and attach here zoek-results.log
    Note: It will also create a log in the C:\ directory named "zoek-results.log"




Please download aswMBR and save it to your desktop.

Double click aswMBR.exe to start the tool.
  • Select Yes if prompted to download the Avast database.
  • Click Scan
  • Upon completion of the scan ( Scan finished successfully ) click Save log and save it to your desktop, and post that log in your next reply for review.
    Note: do NOT attempt any Fix yet.
 

talkinghead77

New Member
Thread author
Feb 19, 2014
2
Ok, thank you.
Here is the aswMBR

aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2014-02-19 18:42:51
-----------------------------
18:42:51.561 OS Version: Windows x64 6.2.9200
18:42:51.561 Number of processors: 2 586 0x200
18:42:51.564 ComputerName: EXAMPLE UserName:
18:42:52.143 Initialze error 1
18:48:09.184 AVAST engine defs: 14021900
18:49:09.553 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000028
18:49:09.569 Disk 0 Vendor: WDC_WD3200BPVT-60JJ5T0 01.01A01 Size: 305245MB BusType: 11
18:49:09.598 Disk 0 MBR read successfully
18:49:09.608 Disk 0 MBR scan
18:49:09.635 Disk 0 unknown MBR code
18:49:09.647 Disk 0 Partition 1 00 EE GPT 2097151 MB offset 1
18:49:09.678 Disk 0 scanning C:\WINDOWS\system32\drivers
18:49:09.694 Service scanning
18:49:10.468 Modules scanning
18:49:10.485 Disk 0 trace - called modules:
18:49:10.508 ntoskrnl.exe CLASSPNP.SYS disk.sys amdxata.sys storport.sys hal.dll amdsata.sys
18:49:10.527 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xffffe00001688060]
18:49:10.546 3 CLASSPNP.SYS[fffff800010a5abb] -> nt!IofCallDriver -> [0xffffe000002ea040]
18:49:10.936 5 amdxata.sys[fffff800007096b4] -> nt!IofCallDriver -> \Device\00000028[0xffffe00000fbf140]
18:49:10.959 AVAST engine scan C:\WINDOWS
18:49:10.981 AVAST engine scan C:\WINDOWS\system32
18:49:11.006 AVAST engine scan C:\WINDOWS\system32\drivers
18:49:11.028 AVAST engine scan C:\Users\aaaaaaaa
18:49:11.051 AVAST engine scan C:\ProgramData
18:49:11.072 Scan finished successfully
18:49:29.989 Disk 0 MBR has been saved successfully to "C:\Users\aaaaaaaa\Desktop\MBR.dat"
18:49:30.010 The log file has been saved successfully to "C:\Users\aaaaaaaa\Desktop\aswMBRlog.txt"
 

TwinHeadedEagle

Level 41
Verified
Mar 8, 2013
22,627
You're missing Zoek report.



Download TDSSKiller and save it to your desktop

Execute TDSSKiller.exe by doubleclicking on it.
Confirm "End user Licence Agreement" and "KSN Statement" dialog box by clicking on Accept button.
  • Press Start Scan
  • If Suspicious object is detected, the default action will be Skip, click on Continue.
  • If Malicious objects are found, select Cure.

Once complete, a log will be produced at the root drive which is typically C:\ ,for example, C:\TDSSKiller.<version_date_time>log.txt


Please post the contents of that log in your next reply.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top