Link to home
Create AccountLog in
Avatar of Mags
MagsFlag for United States of America

asked on

PUP infection

A client was having issues with PUPs...slow computer and sometimes stalling.
Ran scans, see below.

What do you think?  No Trojans or viruses picked up...just stuff from PUPs.  Do you see any vulnerabilities.

Ran SAS scan but he closed it without removing the cookies.  also ran AwdCleaner...but didn't have the report transfered to my computer...I can send it later if necessary.

Thanks,
Mags
Rkill--1.txt
Rkill--2.txt
RKreport-1--S-05092013-02d1006.txt
RKreport-2--D-05092013-02d1007.txt
RKreport-3--H-05092013-02d1009.txt
mbam-log-2013-05-09--10-30-05-.txt
HitmanPro-20130509-1320.log
RKreport-1--S-05092013-02d1433.txt
JRT.txt
SUPERAntiSpyware-Scan-Log---05-0.log
ASKER CERTIFIED SOLUTION
Avatar of Thomas Zucker-Scharff
Thomas Zucker-Scharff
Flag of United States of America image

Link to home
membership
Create an account to see this answer
Signing up is free. No credit card required.
Create Account
Avatar of Mags

ASKER

Tzucker...I forgot to mention this....after roguekiller ran plus some other scans the system needed to run a repair...did a system restore.  Was this possibly due to what roguekiller removed?  Seemed to correct the issue.

I used revo to uninstall some programs but is there a way to use it to clean up leftovers if a program has been uninstalled with windows uninstaller?

Thanks for your assistance!  It is greatly appreciated.
SOLUTION
Link to home
membership
Create an account to see this answer
Signing up is free. No credit card required.
Create Account
Uninstallers that are portable applications (can run from a USB stick):

MyUninstaller
RevoUninstaller
UninstallTool

Also an important tool to use is Autoruns.
Avatar of Mags

ASKER

Thanks...I will check to see which other programs may have been undone by the System Restore.

I will double check Revo for removing other leftovers and run Autoruns.

tzucker How do I know if RogueKiller is wanting to remove or replace something it shouldn't?  I don't have the experience using it or all registry items that may be necessary not to screw something up...guidelines?  Thanks

I will do this tomorrow and get back with you.  Thanks to you both!
Mags
it's a  hard call.   you have to be very careful.   generally you don't want to delete anything you don't know how it works.
Avatar of Mags

ASKER

Okay I had Revo do a clean up then ran CCleaner.  It would stop for a while on the Windows\system32\wbem\Logs\WMITracing.log.  I've never seen that before.  Any worries?
Avatar of Mags

ASKER

CCleaner has been resolved.
Glad to hear.  I don't have any insight into the log problem.  If you run CCleaner again does it still get stuck (or are you too hesitant to try)?
Avatar of Mags

ASKER

Tom I ran CCleaner again after doing the above and it no longer lingers at the Windows\system32\wbem\Logs\WMITracing.log.  I think we got it...I will check with my client in a few days and see how everything is running.
Avatar of Mags

ASKER

I'm as sure as I can be at this time that the machine is clean.  I will post again if still having issues.