Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Software
Software Troubleshooting
CMD Popping up every 1-3 min
Message
<blockquote data-quote="turki" data-source="post: 656709" data-attributes="member: 64699"><p>i wish i Could screenshoted it but i replied after i did the Clean</p><p>however i have the report from Zemana AntiMalware if that is enough</p><p></p><p>[spoiler=Zemana AntiMalware 2.74.2.76 (Portable)]</p><p></p><p>-------------------------------------------------------</p><p>Scan Result : Completed</p><p>Scan Date : 2017/7/29</p><p>Operating System : Windows 10 64-bit</p><p>Processor : 4X Intel(R) Core(TM) i5-4670K CPU @ 3.40GHz</p><p>BIOS Mode : UEFI</p><p>CUID : 127C6A2F012887B89CD553</p><p>Scan Type : System Scan</p><p>Duration : 7m 20s</p><p>Scanned Objects : 55334</p><p>Detected Objects : 8</p><p>Excluded Objects : 0</p><p>Read Level : Normal</p><p>Auto Upload : Enabled</p><p>Detect All Extensions : Disabled</p><p>Scan Documents : Disabled</p><p>Domain Info : WORKGROUP,0,2</p><p></p><p>Detected Objects</p><p>-------------------------------------------------------</p><p></p><p>Security Center Disabled</p><p>Status : Scanned</p><p>Object : HKLM\SYSTEM\CurrentControlSet\services\wscsvc\Start</p><p>MD5 : -</p><p>Publisher : -</p><p>Size : -</p><p>Version : -</p><p>Detection : Potentially Unwanted Modification</p><p>Cleaning Action : Repair</p><p>Related Objects :</p><p> Registry Entry - HKLM\SYSTEM\CurrentControlSet\services\wscsvc\Start = 4</p><p></p><p>Security Center Disabled</p><p>Status : Scanned</p><p>Object : HKLM\SYSTEM\CurrentControlSet\services\wscsvc\DelayedAutoStart</p><p>MD5 : -</p><p>Publisher : -</p><p>Size : -</p><p>Version : -</p><p>Detection : Potentially Unwanted Modification</p><p>Cleaning Action : Repair</p><p>Related Objects :</p><p> Registry Entry - HKLM\SYSTEM\CurrentControlSet\services\wscsvc\DelayedAutoStart = disabled</p><p></p><p>NlaSvc Manual Proxies</p><p>Status : Scanned</p><p>Object : HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies\@</p><p>MD5 : -</p><p>Publisher : -</p><p>Size : -</p><p>Version : -</p><p>Detection : Potentially Unwanted Modification</p><p>Cleaning Action : Delete</p><p>Related Objects :</p><p> Registry Entry - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies\@ = 1http=127.0.0.1:8080;https=127.0.0.1:8080</p><p></p><p>Proxy Enabled (User)</p><p>Status : Scanned</p><p>Object : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable</p><p>MD5 : -</p><p>Publisher : -</p><p>Size : -</p><p>Version : -</p><p>Detection : Potentially Unwanted Modification</p><p>Cleaning Action : Repair</p><p>Related Objects :</p><p> Registry Entry - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable = enabled</p><p></p><p>Proxy Server (User)</p><p>Status : Scanned</p><p>Object : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer</p><p>MD5 : -</p><p>Publisher : -</p><p>Size : -</p><p>Version : -</p><p>Detection : Potentially Unwanted Modification</p><p>Cleaning Action : Delete</p><p>Related Objects :</p><p> Registry Entry - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer = http=127.0.0.1:8080;https=127.0.0.1:8080</p><p></p><p>setup.exe</p><p>Status : Scanned</p><p>Object : %userprofile%\desktop\ds\setup.exe</p><p>MD5 : A9E0173A2B4DCD5F756C7F945D868BC2</p><p>Publisher : -</p><p>Size : 4658176</p><p>Version : 1.1.1.2</p><p>Detection : Adware:Win32/InstallMonster</p><p>Cleaning Action : Quarantine</p><p>Related Objects :</p><p> File - %userprofile%\desktop\ds\setup.exe</p><p></p><p>لم يتم تأكيده 561553.crdownload</p><p>Status : Scanned</p><p>Object : %userprofile%\downloads\لم يتم تأكيده 561553.crdownload</p><p>MD5 : A9E0173A2B4DCD5F756C7F945D868BC2</p><p>Publisher : -</p><p>Size : 4658176</p><p>Version : 1.1.1.2</p><p>Detection : Adware:Win32/InstallMonster</p><p>Cleaning Action : Quarantine</p><p>Related Objects :</p><p> File - %userprofile%\downloads\لم يتم تأكيده 561553.crdownload</p><p></p><p>sysnetwk.exe</p><p>Status : Scanned</p><p>Object : NE->c:\programdata\microsoft\network\dsq\network\sysnetwk.exe</p><p>MD5 : -</p><p>Publisher : -</p><p>Size : -</p><p>Version : -</p><p>Detection : Adware:Win32/ProxyChanger.A!Neng</p><p>Cleaning Action : Quarantine</p><p>Related Objects :</p><p> (null) - (null)</p><p></p><p></p><p>Cleaning Result</p><p>-------------------------------------------------------</p><p>Cleaned : 8</p><p>Reported as safe : 0</p><p>Failed : 0 [/spoiler]</p><p></p><p>also you Can see the setup program file got deleted too from my desktop</p><p></p><p>okay that's really wierd the cmd problem got back after i restarted my pc</p><p>the things i did before i restarted is</p><p>i enabled both the startup and services programs</p><p>im performing zemana scan again and</p><p>i'll update</p><p></p><p></p><p></p><p>Please perform a Emsisoft Scan too.</p></blockquote><p></p>
[QUOTE="turki, post: 656709, member: 64699"] i wish i Could screenshoted it but i replied after i did the Clean however i have the report from Zemana AntiMalware if that is enough [spoiler=Zemana AntiMalware 2.74.2.76 (Portable)] ------------------------------------------------------- Scan Result : Completed Scan Date : 2017/7/29 Operating System : Windows 10 64-bit Processor : 4X Intel(R) Core(TM) i5-4670K CPU @ 3.40GHz BIOS Mode : UEFI CUID : 127C6A2F012887B89CD553 Scan Type : System Scan Duration : 7m 20s Scanned Objects : 55334 Detected Objects : 8 Excluded Objects : 0 Read Level : Normal Auto Upload : Enabled Detect All Extensions : Disabled Scan Documents : Disabled Domain Info : WORKGROUP,0,2 Detected Objects ------------------------------------------------------- Security Center Disabled Status : Scanned Object : HKLM\SYSTEM\CurrentControlSet\services\wscsvc\Start MD5 : - Publisher : - Size : - Version : - Detection : Potentially Unwanted Modification Cleaning Action : Repair Related Objects : Registry Entry - HKLM\SYSTEM\CurrentControlSet\services\wscsvc\Start = 4 Security Center Disabled Status : Scanned Object : HKLM\SYSTEM\CurrentControlSet\services\wscsvc\DelayedAutoStart MD5 : - Publisher : - Size : - Version : - Detection : Potentially Unwanted Modification Cleaning Action : Repair Related Objects : Registry Entry - HKLM\SYSTEM\CurrentControlSet\services\wscsvc\DelayedAutoStart = disabled NlaSvc Manual Proxies Status : Scanned Object : HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies\@ MD5 : - Publisher : - Size : - Version : - Detection : Potentially Unwanted Modification Cleaning Action : Delete Related Objects : Registry Entry - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies\@ = 1http=127.0.0.1:8080;https=127.0.0.1:8080 Proxy Enabled (User) Status : Scanned Object : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable MD5 : - Publisher : - Size : - Version : - Detection : Potentially Unwanted Modification Cleaning Action : Repair Related Objects : Registry Entry - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable = enabled Proxy Server (User) Status : Scanned Object : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer MD5 : - Publisher : - Size : - Version : - Detection : Potentially Unwanted Modification Cleaning Action : Delete Related Objects : Registry Entry - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer = http=127.0.0.1:8080;https=127.0.0.1:8080 setup.exe Status : Scanned Object : %userprofile%\desktop\ds\setup.exe MD5 : A9E0173A2B4DCD5F756C7F945D868BC2 Publisher : - Size : 4658176 Version : 1.1.1.2 Detection : Adware:Win32/InstallMonster Cleaning Action : Quarantine Related Objects : File - %userprofile%\desktop\ds\setup.exe لم يتم تأكيده 561553.crdownload Status : Scanned Object : %userprofile%\downloads\لم يتم تأكيده 561553.crdownload MD5 : A9E0173A2B4DCD5F756C7F945D868BC2 Publisher : - Size : 4658176 Version : 1.1.1.2 Detection : Adware:Win32/InstallMonster Cleaning Action : Quarantine Related Objects : File - %userprofile%\downloads\لم يتم تأكيده 561553.crdownload sysnetwk.exe Status : Scanned Object : NE->c:\programdata\microsoft\network\dsq\network\sysnetwk.exe MD5 : - Publisher : - Size : - Version : - Detection : Adware:Win32/ProxyChanger.A!Neng Cleaning Action : Quarantine Related Objects : (null) - (null) Cleaning Result ------------------------------------------------------- Cleaned : 8 Reported as safe : 0 Failed : 0 [/spoiler] also you Can see the setup program file got deleted too from my desktop okay that's really wierd the cmd problem got back after i restarted my pc the things i did before i restarted is i enabled both the startup and services programs im performing zemana scan again and i'll update Please perform a Emsisoft Scan too. [/QUOTE]
Insert quotes…
Verification
Post reply
Top