Not what you were looking for? Ask our experts!
Reply
Contributor
severfrustrated
Posts: 20
Registered: ‎06-05-2013

[FIXED] toparcadehits virus

[ Edited ]

I keep getting pop ups that have toparcadehits in the address. Also everytime I open my browser a toparcadehits page opens up at the same time that  my homepage does. It happens no matter which browser I use: firefox,IE, or chrome. I did a full norton scan and also tried the power eraser but ithey didn't  find anything. My operating system is XP with the latest service pack.

Bot Obliterator
Quads
Posts: 16,451
Registered: ‎07-21-2008

Re: toparcadehits virus

[Instructions are for the thread starters system only, Not another users system]

 

Please Read  http://community.norton.com/t5/Malware-Discussion/Malware-Discussion-Board-Guidelines/td-p/961409

 

This is to make sure the user has seen the Guidelines before starting.  

 

Quads

Contributor
severfrustrated
Posts: 20
Registered: ‎06-05-2013

Re: toparcadehits virus

Hi, I read the guidelines.

Bot Obliterator
Quads
Posts: 16,451
Registered: ‎07-21-2008

Re: toparcadehits virus

Download OTL http://www.bleepingcomputer.com/download/otl/   On to the Desktop

 

Disable Norton / Symantec for say 30mins 

 

Start OTL,  (Right click and from the menu choose "Run as Administrator")

Click the Scan All Users checkbox.

Change file age to 60 days

 

 

Press the 

 

 

An OTL.txt  and extras.txt will be created. To attach back in a post

 

Quads

Contributor
severfrustrated
Posts: 20
Registered: ‎06-05-2013

Re: toparcadehits virus

[ Edited ]

The OTL will not download. It starts to say downloading then switches to a blank page that says "problem downloading page.

(I tried several times)

 

It finally downloaded.

Bot Obliterator
Quads
Posts: 16,451
Registered: ‎07-21-2008

Re: toparcadehits virus

Looks like we will NOT  be able use the Delete function with adwcleaner but  we can still just use the Serach function only to create a log I can use along with the OTL.txt log to script with later.

 

Read carefully

 

Download Adwcleaner http://general-changelog-team.fr/fr/downloads/view.download/2   The Green Arrow  on to your desktop like OTLand run a scan (Search Button).  It will create a log after.

 

attach the log back here.

 

We also have another problem to sort out

 

Quads

Contributor
severfrustrated
Posts: 20
Registered: ‎06-05-2013

Re: toparcadehits virus

I attached the adware txt.

Bot Obliterator
Quads
Posts: 16,451
Registered: ‎07-21-2008

Re: toparcadehits virus

What of AVG did you or have you got on the system as It looks like only part of??

 

You also have McAfee

 

Quads

Contributor
severfrustrated
Posts: 20
Registered: ‎06-05-2013

Re: toparcadehits virus

I had AVG for a short time years ago and Mcafee for a couple of years but I uninstalled both of them a long time ago.

Bot Obliterator
Quads
Posts: 16,451
Registered: ‎07-21-2008

Re: toparcadehits virus

Not properly done look

 

DRV - [2009/09/16 10:22:48 | 000,214,664 | ---- | M] (McAfee, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\mfehidk.sys -- (mfehidk)
DRV - [2009/09/16 10:22:48 | 000,079,816 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mfeavfk.sys -- (mfeavfk)
DRV - [2009/09/16 10:22:48 | 000,040,552 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mfesmfk.sys -- (mfesmfk)
DRV - [2009/09/16 10:22:48 | 000,035,272 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mfebopk.sys -- (mfebopk)
DRV - [2009/09/16 10:22:14 | 000,034,248 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mferkdk.sys -- (mferkdk)

 

 

DRV - [2007/01/31 09:33:46 | 000,005,632 | ---- | M] (GRISOFT, s.r.o.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\avgarkt.sys -- (AVG Anti-Rootkit)
DRV - [2007/01/18 08:00:28 | 000,003,968 | ---- | M] (GRISOFT, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AvgArCln.sys -- (AvgArCln)

 

 

So we have to deal with them first.

 

Quads