Product Key?

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by linuxpowers, Jan 11, 2019.

  1. linuxpowers

    linuxpowers Specialist

    So, I went through AdwCleaner and got the log for that, then downloaded everything else to this desktop as prescribed.

    I installed and ran Malwarebytes and got the log for that but, when I tried to run RogueKiller, for which looked like a portable version in the instructions, it wanted to install. I went back to make sure I had the right one but they all said *setup.exe and it looked as though I might need to install it, so I went ahead and carefully started the install process when it asked for a product key!

    So, now I'm at a standstill with the cleaning process. What should I do now?

    This is an HP Pavilion g6-2106nr Notebook PC with Windows 10 OS.
     
  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    No one has ever mentioned that RogueKiller wants a product key. You downloaded it from MG's directly?

    If so, let's substitute a different scan:
    Please go here > At the very bottom of this page ==> https://www.zemana.com/Download
    ... second column from the left under AntiMalware > Features..... FREE AntiMalware

    It auto updates, and you click scan. After it's finished, click on the icon that looks like Cell phone strength bars. High-light the report (by date log was produced) and click on the "Open Report" icon. (looks like a folder). That notepad.txt can then be copied/pasted into another .txt doc and saved. Upload that, please.
     
    linuxpowers likes this.
  3. linuxpowers

    linuxpowers Specialist

    Alright, here's all the logs that were generated.
     

    Attached Files:

  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Please have ADWCleaner remove these items:
    ***** [ Tasks ] *****

    PUP.Adware.Heuristic C:\Windows\Tasks\1215TBUPDATEINFO.JOB
    PUP.Adware.Heuristic C:\Windows\Tasks\1214TBUPDATEINFO.JOB
    PUP.Adware.Heuristic C:\Windows\Tasks\0915TBUPDATEINFO.JOB
    PUP.Adware.Heuristic C:\Windows\Tasks\0215TBUPDATEINFO.JOB
    PUP.Adware.Heuristic C:\Windows\Tasks\0116TBUPDATEINFO.JOB
    PUP.Adware.Heuristic C:\Windows\System32\Tasks\1215TBUPDATEINFO
    PUP.Adware.Heuristic C:\Windows\System32\Tasks\1214TBUPDATEINFO
    PUP.Adware.Heuristic C:\Windows\System32\Tasks\0915TBUPDATEINFO
    PUP.Adware.Heuristic C:\Windows\System32\Tasks\0215TBUPDATEINFO
    PUP.Adware.Heuristic C:\Windows\System32\Tasks\0116TBUPDATEINFO

    ***** [ Registry ] *****

    PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D6DE2232-1890-46FD-BAAA-7DF9B85DB9CE}
    PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D6DE2232-1890-46FD-BAAA-7DF9B85DB9CE}
    PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\1215tbUpdateInfo
    PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EA793992-2528-473C-8699-E61399D72864}
    PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EA793992-2528-473C-8699-E61399D72864}
    PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\1214tbUpdateInfo
    PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0EF9E283-AA9C-4291-9891-DD8EC9A5313F}
    PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0EF9E283-AA9C-4291-9891-DD8EC9A5313F}
    PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\0915tbUpdateInfo
    PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E37163A4-BA9D-4AA2-940B-B93848896A3E}
    PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E37163A4-BA9D-4AA2-940B-B93848896A3E}
    PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\0215tbUpdateInfo
    PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9EB23FB4-3CBF-4BA1-8173-79BAFE53EAF5}
    PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9EB23FB4-3CBF-4BA1-8173-79BAFE53EAF5}
    PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\0116tbUpdateInfo

    Then rerun Hitman and have it remove everything it finds.

    Reboot and rescan with ADW and Hitman and attach the new logs.
     
    linuxpowers likes this.
  5. linuxpowers

    linuxpowers Specialist

    Alright, here's the latest!
     

    Attached Files:

  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I suggest you uninstall DigitalSites.

    How are things running now?
     
    linuxpowers likes this.
  7. linuxpowers

    linuxpowers Specialist

    Well Tim, first of all, I'm a desktop guy and this is a laptop. Took me 2 days just to figure out how to turn on the wifi, (f12?). I also found out the hard way that you can lock the cursor with the pad, that freaked me out.

    Secondly Tim, I've never played around with windows 10, I have windows 7 and I 'm used to it. Although, after finding the directory tree, I find it's not much different than windows 7, other than the format, how it is presented to the user. They seemed to draw things out like the user has no clue what to do.

    Anyway, I couldn't find any uninstall for DigitalSites, no listing in "Programs and Features", etc., so I figured if you knew it was on here then it must have been in one of the last logs so, I looked them over and found it in the AdwCleaner log. I just used AdwCleaner to remove and repair DSites.

    As far as how it's running, I'm not sure what to expect but it does seem quite slow, like its indexing everything I try to do. It even brings up menus of programs I already closed minutes ago! I did have an issue after one of the reboots whereas Windows Update popped up and started doing it's thing. Looked like updates haven't been made since 2016! During this process, things were so slow I opened Resource Monitor to see was going on. The HD was being hit 100% most of the time. Everything else seemed to be ok.

    But, like I said, this thing is out of my experience and I'm not sure what to expect. I'm certainly not getting any Malware Pop-Ups or anything like that. The thing is Tim, this Laptop belongs to a friend of mine at work. The problem he has is two college age daughters. He lets them play around on this and they want to install every cute little program, they even do it to his cell phone. I've helped him factory reset that just a week ago.

    BTW Tim, when you first responded to my new thread, I couldn't help but wonder about something. I'm not sure how long I've been coming to MG's for assistance/knowledge but I know it's been years and in all that time, I've seen you all over this site. What I wonder Tim is, don't you ever get tired of doing this? Doesn't it ever get old? Keep in mind, I appreciate everything MG's does but everyone gets burned out sometime!

    Anyway, thanks for your help and if you think there is something else I should look into with this laptop, just let me know.
     

    Attached Files:

  8. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    LOL....you know what they say about idle hands.

    The slowness could be a myriad of things, so I suggest you pursue that in the software forum ( and ask how to set up a "guest account" so the kids can't screw with the system.

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    3. If running Vista, Win 7 or Win 8, it is time to make sure you have re-enabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    4. Now go to the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 or 10 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    5. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    6. After doing the above, you should work thru the below link:
     
    linuxpowers likes this.

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds