We're aware that some users are experiencing technical issues which the team are working to resolve. See the Community Noticeboard for more info. Thank you for your patience.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

McAfee says Ii'm not protected ....

Options
145791012

Comments

  • aliEnRIK wrote: »
    Your computers definitely infected, which is why nothing is connecting.

    Create a boot disc ~
    http://www.free-av.de/en/tools/12/avira_antivir_rescue_system.html

    hi,

    How come I can use Mozzilla?

    It seems to be only IE thats affected.

    boot disc - that sounds really serious!!

    Jen
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    If you cant create a boot disc, then run an online scan ~

    Please go to Eset Onlinescan (NOD32)
    (You need to use InternetExplorer or enable IEView in Firefox)
    • You will then see the Terms of Use, tick the check-box infront of YES, I accept the Terms of Use
    • Now click Start
    • Should you face a Security Warning that asks if you want to install and run a file called "OnlineScanner.cab", click Yes
    • Click Start (the Onlinescanner will now prepare itself for running on your pc)
    • To do a full-scan, tick: "Remove found threats" and "Scan potentially unwanted applications"
    • Press Scan
      The Onlinescan will now start and scan your pc (please let it run to completion)
    • When the scan has finished, it will show a screen with two tabs "overview" and "details" and the option to get information or buy software, just close the window
    • Click Start >> Run... >> type: C:\Program Files\EsetOnlineScanner\log.txt
      The Scan results will now open in Notepad
    • Click into the text area, right-click and chose "select all"
    • Right-click again and chose "copy"
    • Close Notepad
    :idea:
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    top_drawer wrote: »
    hi,

    How come I can use Mozzilla?

    It seems to be only IE thats affected.

    boot disc - that sounds really serious!!

    Jen

    pass :p

    I was round at my mates today with the exact (ish) same problem.
    Difference being SUPERANTISPYWARE did run, so we managed to remove it using that.
    :idea:
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    another option (if possible) is to download the latest definition file of MALWAREBYTES from here ~
    http://www.gt500.org/malwarebytes/database.jsp
    :idea:
  • aliEnRIK wrote: »
    theyre there ~ look near the bottom of the C drive stuff
    C:\Users\Jenny\AppData\Local\Temp\RarSFX0\basic\se tup.exe
    C:\Users\Jenny\AppData\Local\Temp\RarSFX0\basic\fa ct.exe
    C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    I've looked and looked and what I see on the scan is not an exact replica of what the log is IYSWIM. Those processes are not available for me to fix

    Jen
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    jen ~ heres the first part of the log you LAST posted (The files are at the bottom)

    Running processes:
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Windows\System32\WLTRAY.EXE
    C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
    C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
    C:\Program Files\ATI Technologies\ATI.ACE\CLI.EXE
    C:\Program Files\Kontiki\KHost.exe
    C:\Program Files\Dell Support Center\bin\sprtcmd.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\NetRatingsNetSight\NetSight\NielsenOnline.ex e
    C:\Windows\ehome\ehtray.exe
    C:\Program Files\NetRatingsNetSight\NetSight\NielsenOnline.ex e
    C:\Windows\System32\spool\drivers\w32x86\3\E_FATIC CE.EXE
    C:\Windows\ehome\ehmsas.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
    C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
    C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FAMTC CE.EXE
    C:\Users\Jenny\Desktop\antivir_workstation_winu_en _h.exe
    C:\Users\Jenny\AppData\Local\Temp\RarSFX0\basic\se tup.exe
    C:\Users\Jenny\AppData\Local\Temp\RarSFX0\basic\fa ct.exe
    :idea:
  • DCFC79
    DCFC79 Posts: 40,641 Forumite
    Part of the Furniture 10,000 Posts Name Dropper
    top_drawer wrote: »
    a proxy .... possibly when I go to the (uni) library it is .... at home we are on Broadband.

    Jen

    alienrik means do you connect to the internet via a proxy, you can do it if your using broadband
  • aliEnRIK wrote: »
    jen ~ heres the first part of the log you LAST posted (The files are at the bottom)

    Running processes:
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Windows\System32\WLTRAY.EXE
    C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
    C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
    C:\Program Files\ATI Technologies\ATI.ACE\CLI.EXE
    C:\Program Files\Kontiki\KHost.exe
    C:\Program Files\Dell Support Center\bin\sprtcmd.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\NetRatingsNetSight\NetSight\NielsenOnline.ex e
    C:\Windows\ehome\ehtray.exe
    C:\Program Files\NetRatingsNetSight\NetSight\NielsenOnline.ex e
    C:\Windows\System32\spool\drivers\w32x86\3\E_FATIC CE.EXE
    C:\Windows\ehome\ehmsas.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
    C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
    C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FAMTC CE.EXE
    C:\Users\Jenny\Desktop\antivir_workstation_winu_en _h.exe
    C:\Users\Jenny\AppData\Local\Temp\RarSFX0\basic\se tup.exe
    C:\Users\Jenny\AppData\Local\Temp\RarSFX0\basic\fa ct.exe

    but the list I get to choose which ones to fix doesnt have them on the list ....
  • aliEnRIK wrote: »
    another option (if possible) is to download the latest definition file of MALWAREBYTES from here ~
    http://www.gt500.org/malwarebytes/database.jsp

    I've done this and I have run it .... nothing seems to be happening though so Ive re-run it several times .....

    Jen
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    jen. Running THAT file will auto update malwarebytes
    So open Malwarebytes and goto UPDATE ~ the definition file there SHOULD now say ~ 1778
    If it DOES, then run another FULL scan
    :idea:
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 351K Banking & Borrowing
  • 253.1K Reduce Debt & Boost Income
  • 453.6K Spending & Discounts
  • 244K Work, Benefits & Business
  • 598.9K Mortgages, Homes & Bills
  • 176.9K Life & Family
  • 257.3K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.