We’d like to remind Forumites to please avoid political debate on the Forum.
This is to keep it a safe and useful space for MoneySaving discussions. Threads that are – or become – political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!
The Forum now has a brand new text editor, adding a bunch of handy features to use when creating posts. Read more in our how-to guide
is this safe
carla40
Posts: 1,190 Forumite
in Techie Stuff
hi, ive had a new laptop for a couple of months now and still trying to get used to it, when i start it up a programme comes up asking me if i want to it to change the settings, ive no idea if its safe or not, this is what comes up,
tweak enhance repair and protect
verified publisher, xportsoft technologies
file origin, hard drive on this computer,
i'm just asking if this is safe to do and what it will change on my computer, thanks :beer:
tweak enhance repair and protect
verified publisher, xportsoft technologies
file origin, hard drive on this computer,
i'm just asking if this is safe to do and what it will change on my computer, thanks :beer:
wins so far:- absolutely nothing, not even an arguement:mad:
0
Comments
-
Doesn't look like something that you want on your computer.
Run a standard scan:
Download, install, update and run a Quick Scan with Malwarebytes' AntiMalware. When complete, choose 'Remove Selected' if there is anything to remove and Reboot your computer.
After restart, open the program again and go to 'Logs'. Double click on the log produced for today and post the contents here.
Next, download, install and run the HijackThis Version 2.0.4 installer and executable and use the Quick Start guide to enable you to produce a log for posting here too.0 -
todays logs
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Database version: 4672
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
22/09/2010 20:04:53
mbam-log-2010-09-22 (20-04-53).txt
Scan type: Quick scan
Objects scanned: 144887
Time elapsed: 6 minute(s), 24 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 12
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 2
Files Infected: 7
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CLASSES_ROOT\shopperreports.reporter (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shopperreports.reporter.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{0d82acd6-a652-4496-a298-2bde705f4227} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{7025e484-d4b0-441a-9f0b-69063bd679ce} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{8258b35c-05b8-4c0e-9525-9bccc70f8f2d} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{a89256ad-ec17-4a83-bef5-4b8bc4f39306} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1602f07d-8bf3-4c08-bdd6-dddb1c48aedc} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{a7cddcdc-beeb-4685-a062-978f5e07ceee} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\questdns (Adware.QuestDns) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\QuestDns (Adware.QuestDns) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\QuestDns Service (Adware.QuestDns) -> Quarantined and deleted successfully.
Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\srs_it_e8790577b076595333a995 (Malware.Trace) -> Quarantined and deleted successfully.
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
C:\ProgramData\QuestDns (Adware.QuestDns) -> Quarantined and deleted successfully.
C:\Program Files (x86)\QuestDns (Adware.QuestDns) -> Quarantined and deleted successfully.
Files Infected:
C:\Windows\Temp\QUE43F2.tmp\upgrade.exe (Adware.Dropper.Gen) -> Quarantined and deleted successfully.
C:\Windows\Temp\QUE57C0.tmp\upgrade.exe (Adware.Dropper.Gen) -> Quarantined and deleted successfully.
C:\Windows\Temp\QUE5FAC.tmp\upgrade.exe (Adware.Dropper.Gen) -> Quarantined and deleted successfully.
C:\Users\carla\ClickPotatoInstaller.exe (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\ProgramData\QuestDns\questdns117.exe (Adware.QuestDns) -> Quarantined and deleted successfully.
C:\Program Files (x86)\QuestDns\questdns.exe (Adware.QuestDns) -> Quarantined and deleted successfully.
C:\Program Files (x86)\QuestDns\uninstall.exe (Adware.QuestDns) -> Quarantined and deleted successfully.wins so far:- absolutely nothing, not even an arguement:mad:0 -
Run a Full Scan with Malwarebytes AntiMalware after you've posted the Hijack This log.0
-
ive downloaded the installer but the executable wont download, and the log on the installer wont let me copy it, sorry, im useless with this techy stuffwins so far:- absolutely nothing, not even an arguement:mad:0
This discussion has been closed.
Confirm your email address to Create Threads and Reply
Categories
- All Categories
- 353.5K Banking & Borrowing
- 254.1K Reduce Debt & Boost Income
- 455K Spending & Discounts
- 246.6K Work, Benefits & Business
- 602.9K Mortgages, Homes & Bills
- 178.1K Life & Family
- 260.6K Travel & Transport
- 1.5M Hobbies & Leisure
- 16K Discuss & Feedback
- 37.7K Read-Only Boards