[Last Call] Learn how to a build a cloud-first strategyRegister Now

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 672
  • Last Modified:

video file mismatch

Hi

I'm using corel studio
I have some video made with a Gopro
When I try editing I have the error message " file mismatch"
Any suggestions ?
0
speedtofly
Asked:
speedtofly
  • 12
  • 8
  • 2
1 Solution
 
MereteCommented:
Hi speedtofly at a guess the video file has name say for example Speed.avi yet it's true name is Speed.mpg
Does that ring any bells?
A misnamed extension would create that error in any of my video editing tools.
You can trouble shoot any video in Gspot codec analyser
Download and install from this part of the page
Download sites:
Visit developer's site      
Download GSpot 2.70a (direct link)      (400kB)
http://www.videohelp.com/tools/GSpot
It only takes a second to analyse, take particular note of the second frame where it states Container and then compare it to the name
http://community.avid.com/cfs-filesystemfile.ashx/__key/CommunityServer.Components.PostAttachments/00.00.64.22.74/Gspot-codec-identifier.jpg
0
 
speedtoflyAuthor Commented:
Ok great ,
I check and all the Gopro files are MP4.
Do you know any easy converter to make them MPEG?
0
 
MereteCommented:
MP4 not suitable? And that's why it says File mismatch, makes sense..
Sure do the excellent free freemake video converter makes brilliant dix avi, drop a video on then choose your format select the output that also gives you the size, I use for TV
It even does a DVD home videos straight from DVD to HDD now that's really handy.
There are a lot of extras that it offers, probably good tools but I just use the converter. Works brilliantly especially when converting mp4 to dix avi for USB and TV. I been converting video for the last two days to give to my brother for his USB drive and it uses little to none system resources. The quality is very good.
http://www.freemake.com/free_video_converter/
Freemake-1.jpg
Freemake-2.jpg
0
Vote for the Most Valuable Expert

It’s time to recognize experts that go above and beyond with helpful solutions and engagement on site. Choose from the top experts in the Hall of Fame or on the right rail of your favorite topic page. Look for the blue “Nominate” button on their profile to vote.

 
speedtoflyAuthor Commented:
it looks really good but it came with a lot of trojean virus

and now I have comercial videos popping on my screen

So I guess I will remove it

Any other options ?

Trojean
0
 
Paul SauvéCommented:
When you install Freemake, you should uncheck all the 'Extra' boxes as you go through the install process. I just helped a friend install it yesterday & only one extra app was installed.

Open Control Panel -> Programs -> Programs and Features then sort by Installed On.

Now you will see all the apps that were installed at the same time as Freemake. Simply uninstall them one by one, of course you can leave Freemake.
0
 
speedtoflyAuthor Commented:
Ok I will try again
0
 
speedtoflyAuthor Commented:
I'm not sure

Now I have all those ads popping out

How can I remove them ?
0
 
speedtoflyAuthor Commented:
here is a screen shot about the pop out commercial
0
 
speedtoflyAuthor Commented:
screen shot
commercial.jpg
0
 
speedtoflyAuthor Commented:
How can I remove those
0
 
Paul SauvéCommented:
Do you know HOW to uninstall an app from your PC?
0
 
MereteCommented:
Morning from Australia,
Did you install the video converter with the downloader toolbar?
Included the browser plugin?
http://www.freemake.com/
I do apologise for you as I should have asked you be aware of the toolbar offer.
 ..when I ran the installer I get a false positive from my AVG and ignored it as we are not installing the browser plugin downloader thingy..toolbar.
There was no virus warning just a spyware warning with search engine, toolbar these type of warnings can be ignored as they apply to the browser plugin which I unticked.
The browser plugin is where you would have got these popups from.
All those .dlls>
SmdmFHlpFF23.dll  is  not-a-virus: it is a  WebToolbar.Win64.SearchSuite.
Just uninstall it speedtofly, the browser plugin toolbar that should be listed there.
Go to your control panel>uninstall a program and look in your list for Freemake video converter and any browsers plugins tool bars for Freemake video converter
I just want say with free tools just uncheck the stuff offered..
 I use freemake Video Converter it is brilliant, and have not experienced any spyware or viruses or browser popups.
I have even contacted some of these sites stating I get a bad flag with the flash games I buy from Big Fish and they explained it and showed me the steps to add it to my exceptions.
You just need to untick the browser plugin..apparently that is a toolbar.

2nd opinions of false positives from people who use FreeMake Video Converter
http://forums.majorgeeks.com/showthread.php?t=250613
http://forums.anandtech.com/archive/index.php/t-2227759.html
http://forum.videohelp.com/threads/352848-Is-Freemake-Video-Converter-safe-to-use

 I never ever post a suggetion program without using it first.
I have even started to post a screenshot of the download button to use as folks click on a bogus download offers somewhere else in the page,
I scan the .exe in my downloads when I install free stuff and my AVG found nothing.
I scan my system with hijackthis and it reported nothing.
http://sourceforge.net/projects/hjt/files/?source=navbar

As for other free video editing, I used to use S.U.P.E.R Simplified Universal Player Encoder & Renderer.
http://www.videohelp.com/tools/SUPER
brilliant tool, but I felt over the years it too started to get this spyware even without the browser plugin., then when I discovered Freemake Video Converter it was a win win and the best.
If you don't have to convert to mpeg you can use windows moviemaker to convert it to WMV HD
Or any good video editor.
Not free Xilisoft Video Converter Ultimate
http://www.xilisoft.com/video-converter.html
so for you benefit
This the steps attached, I reinstalled it for you to show you.
Regards Merete
Freemake.doc
0
 
speedtoflyAuthor Commented:
Great explanation

I will try to uninstall the toolbar and re install the software and keep you posted.

Don't worry about it Merete you solve a lot of my question in the past and I know you are a very trustful resource of info
0
 
MereteCommented:
Thank you speedtofly,
0
 
speedtoflyAuthor Commented:
ok I look for those but don't see anymore plugin

But my google page looks like a copy
At the bottom there is commercial, and at the very bottom when I click on "about"
it's not google it's :
(how can I get rid of those guys?)

About Aztec Media

Aztec Media develops software used by millions of Internet users worldwide. We believe the wonderful things on the Internet should be accessible to all users, regardless of their technical expertise level.

We develop downloadable PC applications, social services based on platforms such as Facebook, and mobile applications with the goal of providing users with fun, easy to use applications that help them get the best out of their online experience.

If you would like to contact us, send us email at info@aztec-media.com or send an old-fashioned snail mail to Aztec Media Inc., Attention: Privacy Policy Administrator, Post Office Box 51968, Limassol, Cyprus.
0
 
MereteCommented:
Can you post a screenshot, which browser do use?
I use Chrome and have set my homepage to none same with internet explorer.
So I cannot replicate what you have.
How did you get this as it was not with the installer for Freemake?
How to remove Aztec Media
http://botcrawl.com/remove-aztec-media-virus/
If there is any spyware or toolbars still there download hijackthis from my link above
here it is again click on the green download next to 18,000 downloads this week, it turns the page and you'll see your download will start in 5 secs, then look to the bottom of your browser. Open folder
http://sourceforge.net/projects/hjt/files/?source=navbar 
http://sourceforge.net/p/hjt/wiki/Home/ << also includes a guide there
http://www.whatthetech.com/hijackthis/
 it saves to your downloads in your downloads make a new folder and drop hijackthis in that, then rightclick it and install.
Then run it and do a system scan and save a log.
It only takes a few secs, then a text opens with the scan results
go to edit at the top select all, then edit again and copy post the log file back here.
Keep the text log open and
Alternatively there is a quick analyses page here at http://www.hijackthis.de/  paste your copy into the panel then click analyse at the bottom of the panel it turns to a page that show a green tick or a red x nasty/
note the address where the red x is or nasty is from your text log only,  don't worry yellow marks go back to your text log and put a tick in that and then at the bottom remove selected.
Otherwise I'll go through it
Cheers
0
 
speedtoflyAuthor Commented:
0
 
speedtoflyAuthor Commented:
That's what I got after the scan :
what should I do ? Should I put them all in quarantine?


Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 8/10/2014
Scan Time: 8:37:06 AM
Logfile:
Administrator: Yes

Version: 2.00.2.1012
Malware Database: v2014.08.10.03
Rootkit Database: v2014.08.04.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Benoit

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 304209
Time Elapsed: 24 min, 6 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 12
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll, , [77748143a0dbfa3c53588e411ae8fc04],

Registry Keys: 81
PUP.Optional.Linkey.A, HKU\S-1-5-21-2683918660-2563172357-3114175656-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, , [e902467e196281b5fbcd7decb54dd32d],
Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\bitguard.exe, , [a2497b496a1177bf6764f7e19072c33d],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\bitguard.exe, , [ab40665e82f992a4f77167d51ce8ff01],
Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\bprotect.exe, , [6586a420334857df5f6b0dcb49b9ad53],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\bprotect.exe, , [a942cff5c3b888ae0e5b68d45da7f50b],
Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\bpsvc.exe, , [49a2f8ccb1caac8a1baeb820e31f31cf],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\bpsvc.exe, , [40abd2f2d4a796a087e343f97d8739c7],
Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\browserdefender.exe, , [c625a0244f2ce74fdde012c645bdcf31],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\browserdefender.exe, , [be2d378dabd0c5712f3c320ad133d729],
Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\browserprotect.exe, , [806be0e4c7b41026922c4e8af80a3ec2],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\browserprotect.exe, , [935811b37cffcf674923f547d92b29d7],
Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\browsersafeguard.exe, , [16d5e5df186342f486396e6a5da50ef2],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\browsersafeguard.exe, , [0fdcc103d3a837ff8fde4fedcf35ad53],
Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\dprotectsvc.exe, , [ac3f11b38bf074c20cb568709171966a],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\dprotectsvc.exe, , [9358f8ccee8d62d4c2ac8ab256ae817f],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\jumpflip, , [b7348d370e6d9f97f37c102cb153c13f],
Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\protectedsearch.exe, , [707bb60e1d5e043217abd602be44a25e],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\protectedsearch.exe, , [18d3cbf94239e2542b45a29aa361f50b],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\searchinstaller.exe, , [866501c3abd042f4d89986b6db2923dd],
Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\searchprotection.exe, , [6784457f9dde87af299a7f59e121d729],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\searchprotection.exe, , [a744e7dd007b6dc988ea69d3f80c0ef2],
Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\searchprotector.exe, , [59926b597605bf77f8ccb4240ef4619f],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\searchprotector.exe, , [effcd6eee2990d29e390ac9041c3d22e],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\searchsettings.exe, , [b3386f554e2d181eb1c3a993b3519b65],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\searchsettings64.exe, , [52994183dc9fdc5a94e1ac9023e1a060],
Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\snapdo.exe, , [a04bf6ce3c3f2c0a1baa11c7e0224bb5],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\snapdo.exe, , [0ae1eada4c2f85b17402e953ef15e818],
Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\stinst32.exe, , [4d9e4b79a0db59dd0abc498f58aabc44],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\stinst32.exe, , [01eab90b25560333680fc973cb39f40c],
Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\stinst64.exe, , [8f5c754fed8e72c47a4d993f976b3ac6],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\stinst64.exe, , [6388764e0f6c59dd96e16bd125dfea16],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\umbrella.exe, , [a6451fa527543cfa2f4916267193649c],
Security.Hijack, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\utiljumpflip.exe, , [4d9e5a6ac4b73ff77b4d5286b2509070],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\utiljumpflip.exe, , [6b801fa55823eb4bbebb74c822e204fc],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\volaro, , [8d5e0eb65e1dfc3a91e98dafbe46be42],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\vonteera, , [c328b80c483392a4cab1d76555af0bf5],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\websteroids.exe, , [886374501665d4627408af8da65e54ac],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\websteroidsservice.exe, , [c328992b0774b1851f5ef64642c20bf5],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\SmdmF, , [d615398b2556fc3a442d5f77b052946c],
Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\bitguard.exe, , [1bd0ccf80576ca6c577434a438ca29d7],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\bitguard.exe, , [8c5fa1239ae172c4baae261619ebe719],
Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\bprotect.exe, , [9556dbe9d2a951e5478312c6c33f6997],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\bprotect.exe, , [42a9dee62b50e353fb6e0636fa0aec14],
Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\bpsvc.exe, , [ecff893bcab1c1750abf8355d032bd43],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\bpsvc.exe, , [d219fbc990eb72c4c3a798a4a163cf31],
Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\browserdefender.exe, , [e605c20242399e98863763751fe320e0],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\browserdefender.exe, , [fbf008bcd1aad95d214a5be18183837d],
Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\browserprotect.exe, , [fbf0cbf9f18ab383d1edaf2957ab27d9],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\browserprotect.exe, , [2ac11ea67605e35319532319ee1641bf],
Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\browsersafeguard.exe, , [09e2e1e38eed8ea8bd02cc0cac5625db],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\browsersafeguard.exe, , [a3483292037890a6d796102c46be37c9],
Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\dprotectsvc.exe, , [41aa5d676318b97ddae7f5e3847e9c64],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\dprotectsvc.exe, , [2fbcb50fc4b756e03737c17b54b047b9],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\jumpflip, , [ffec9d2798e3c076b6b9ae8e0cf8649c],
Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\protectedsearch.exe, , [f8f3ab1926559a9c467c25b3e919c937],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\protectedsearch.exe, , [3ead24a0b2c9f2445e124defa55f837d],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\searchinstaller.exe, , [19d211b3057646f0bcb5201c44c0c63a],
Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\searchprotection.exe, , [2fbc477d94e766d08d36954329d98f71],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\searchprotection.exe, , [9457d2f2d2a9c96ddc9639031fe5bb45],
Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\searchprotector.exe, , [5992893b1c5f2d09269efade867ce21e],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\searchprotector.exe, , [e4074c787efd2412541fc17b35cf728e],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\searchsettings.exe, , [32b95b69512a92a4e193d26af80cc33d],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\searchsettings64.exe, , [6e7d6b5981fabc7a6c09d5670400768a],
Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\snapdo.exe, , [9457b311bebd3006fbcad70109f930d0],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\snapdo.exe, , [fcef22a27803ec4a373f4af214f06c94],
Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\stinst32.exe, , [f5f6c4000b7043f34b7b469289792dd3],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\stinst32.exe, , [8e5d9331c6b5de581f58a498a2623dc3],
Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\stinst64.exe, , [2cbfd3f15a219f97f9ce47918f73b24e],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\stinst64.exe, , [faf161630c6f9e98df982517857f8b75],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\umbrella.exe, , [1bd0655f6a1114226117261653b1fe02],
Security.Hijack, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\utiljumpflip.exe, , [7675626298e38babf6d280587a8835cb],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\utiljumpflip.exe, , [ecffd4f0c0bb8fa7720797a58d77de22],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\volaro, , [13d8754ff28978be4139300cb05436ca],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\vonteera, , [c6256460f388af874734c07ce51fd42c],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\websteroids.exe, , [c625784cdc9fc076a6d6eb510cf8f30d],
PUP.Optional.IFEO.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\websteroidsservice.exe, , [04e751731d5e092db8c50636a3618779],
PUP.Optional.Mezza, HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\SAFEBOOT\NETWORK\MZA, , [8863e5dfe89322145ea51fb8936fa759],
PUP.Optional.SettingsManager.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SmdmFService, , [effc3c88601b4beb531c13c333cfe61a],
PUP.Optional.SettingsManager.A, HKU\S-1-5-21-2683918660-2563172357-3114175656-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SmdmF, , [77745272abd0ae88cca416c0ae54a957],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Settings Manager, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\F06DEFF2-5B9C-490D-910F-35D3A9119622, , [77748143a0dbfa3c53588e411ae8fc04],

Registry Values: 2
PUP.Optional.SettingsManager, HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\SESSION MANAGER\APPCERTDLLS|x86, C:\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll, , [97546e569ae137ff2ee026b457ab827e]
PUP.Optional.SettingsManager, HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\SESSION MANAGER\APPCERTDLLS|x64, C:\Program Files (x86)\Settings Manager\smdmf\x64\sysapcrt.dll, , [de0de6de77043204aa648d4d61a1a957]

Registry Data: 1
PUP.Optional.DefaultSearch.A, HKU\S-1-5-21-2683918660-2563172357-3114175656-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://www.default-search.net?sid=503&aid=100&itype=n&ver=13486&tm=432&src=hmp, Good: (www.google.com), Bad: (http://www.default-search.net?sid=503&aid=100&itype=n&ver=13486&tm=432&src=hmp),,[bb30ac180774340264307b43ef155aa6]

Folders: 12
PUP.Optional.OpenCandy, C:\Users\Benoit\AppData\Roaming\OpenCandy, , [4ba003c1f18ad85e78b1595a4fb30ef2],
PUP.Optional.OpenCandy, C:\Users\Benoit\AppData\Roaming\OpenCandy\185587FDA7A443978172ABAC342FAEB7, , [4ba003c1f18ad85e78b1595a4fb30ef2],
PUP.Optional.OpenCandy, C:\Users\Benoit\AppData\Roaming\OpenCandy\4009C27C48A349C5B31BCE27EB09948C, , [4ba003c1f18ad85e78b1595a4fb30ef2],
PUP.Optional.CrossRider.A, C:\Users\Benoit\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgacjdfplhakjfljpbbagagjcbccpmnl, , [806b576d671411256527803a1ee413ed],
PUP.Optional.CrossRider.A, C:\Users\Benoit\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgacjdfplhakjfljpbbagagjcbccpmnl\0.1_0, , [806b576d671411256527803a1ee413ed],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\x64, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\ProgramData\smdmf, , [2ac1368e1962d363e080ece920e2c040],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf\components, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf\content, , [f0fbf1d37efd0f27fd64d203d42e14ec],

Files: 35
PUP.Optional.Linkey.A, C:\Users\Benoit\AppData\Roaming\OpenCandy\185587FDA7A443978172ABAC342FAEB7\SettingsManagerSetup.exe, , [dc0f3a8abac1af874807fa97f30e29d7],
PUP.Optional.Mezza, C:\Users\Benoit\AppData\Roaming\OpenCandy\4009C27C48A349C5B31BCE27EB09948C\MZAAppSetupx30001.exe, , [b338d4f03348a294bd5daff90cf56f91],
PUP.Optional.DefaultSearch.A, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\default-search.xml, , [6487a420285339fd354d3dbaa75b5aa6],
PUP.Optional.CrossRider.A, C:\Users\Benoit\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgacjdfplhakjfljpbbagagjcbccpmnl\0.1_0\background.js, , [806b576d671411256527803a1ee413ed],
PUP.Optional.CrossRider.A, C:\Users\Benoit\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgacjdfplhakjfljpbbagagjcbccpmnl\0.1_0\icon-128.png, , [806b576d671411256527803a1ee413ed],
PUP.Optional.CrossRider.A, C:\Users\Benoit\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgacjdfplhakjfljpbbagagjcbccpmnl\0.1_0\icon-16.png, , [806b576d671411256527803a1ee413ed],
PUP.Optional.CrossRider.A, C:\Users\Benoit\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgacjdfplhakjfljpbbagagjcbccpmnl\0.1_0\icon-48.png, , [806b576d671411256527803a1ee413ed],
PUP.Optional.CrossRider.A, C:\Users\Benoit\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgacjdfplhakjfljpbbagagjcbccpmnl\0.1_0\manifest.json, , [806b576d671411256527803a1ee413ed],
PUP.Optional.CrossRider.A, C:\Users\Benoit\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgacjdfplhakjfljpbbagagjcbccpmnl\0.1_0\script.js, , [806b576d671411256527803a1ee413ed],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\favicon.ico, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\Helper.dll, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\smdmf.dll, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\smdmfmgrc2.cfg, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\Uninstall.exe, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\Program Files (x86)\Settings Manager\smdmf\x64\smdmfmgrc2.cfg, , [77748143a0dbfa3c53588e411ae8fc04],
PUP.Optional.SettingsManager.A, C:\ProgramData\smdmf\coordinator.cfg, , [2ac1368e1962d363e080ece920e2c040],
PUP.Optional.SettingsManager.A, C:\ProgramData\smdmf\general.cfg, , [2ac1368e1962d363e080ece920e2c040],
PUP.Optional.SettingsManager.A, C:\ProgramData\smdmf\S-1-5-21-2683918660-2563172357-3114175656-1000.cfg, , [2ac1368e1962d363e080ece920e2c040],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf\chrome.manifest, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf\install.rdf, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf\components\SmdmFHlpFF.xpt, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf\content\DnsBHO.js, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf\content\Error404BHO.js, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf\content\MainBHO.js, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf\content\NativeHelper.js, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf\content\NewTabBHO.js, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf\content\overlay.js, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf\content\overlay.xul, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf\content\RelatedSearch.js, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf\content\RequestPreserver.js, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf\content\SearchBHO.js, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.SettingsManager.A, C:\Users\Benoit\AppData\Roaming\FirefoxToolbar\Settings Manager\smdmf\content\SettingManager.js, , [f0fbf1d37efd0f27fd64d203d42e14ec],
PUP.Optional.DefaultSearch.A, C:\Users\Benoit\AppData\Roaming\Mozilla\Firefox\Profiles\ddfo11x7.default\prefs.js, Good: (), Bad: (user_pref("browser.startup.homepage", "http://www.default-search.net?sid=503&aid=100&itype=n&ver=13486&tm=432&src=hmp");), ,[07e40aba4833e353e7beeb0e51b35ea2]
PUP.Optional.DefaultSearch.A, C:\Users\Benoit\AppData\Roaming\Mozilla\Firefox\Profiles\ddfo11x7.default\prefs.js, Good: (), Bad: (user_pref("keyword.URL", "http://www.default-search.net/search?sid=503&aid=100&itype=n&ver=13486&tm=432&src=ds&p=");), ,[0ddea2223e3d7bbba006cc2d07fd9e62]

Physical Sectors: 0
(No malicious items detected)


(end)
0
 
speedtoflyAuthor Commented:
or did you mean that ?Scan logScan logScan logScan logScan log
0
 
MereteCommented:
Hi speedtofly I meant use hijackthis
however since you used Malware bytes states>
(No malicious items detected).
There is nothing to quarantine.
Potential is not necessarily a threat.
Quick guide
http://www.combofix.org/the-novices-malwarebytes-guide-to-easy-virus-removal.php
http://malwaretips.com/blogs/how-to-scan-with-malwarebytes-anti-malware-2-0/
Did you see any reports malware found? or objects deleted?
It usually shows you a message once the scan is done what it deletes like the old reg keys when you open that it gives you the options to either quarantine/add exclusions or ignore.
It finds things that I know are good like my ac3filter I choose add exclusions same with youtube downloader pro I bought
Look on the left side you'll see file or reg key or in your downloads folders.
I add exclusions to the known profiles for my browsers. Downloads
A lot of them can be just search history it deems may threaten your privacy security.
Also please disable the run at start unless you need it.
Memory: Enabled
Startup: Enabled<< disable this scan
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled<< enable rootkits scan
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
When I installed MB I unticked to use the free trial see attached screenshot.
I have the free version of Malwarebytes not the trial since I already have AVG as my default security I do not need it to give me real time protection.
If you have an AV already use the free version of MB without real time protection as they can conflict.
With anything that looks bogus and is not listed as a threat
I'd simply Uninstall Google Toolbar for IE
uninstall Chrome from the same place uninstall FF.
In control panel uninstall a program select Google Toolbar. and select Chrome and FF.
Then reboot.
Then install FF again
https://www.mozilla.org/en-GB/firefox/new/
Chrome
https://www.google.com/intl/en-AU/chrome/browser/
Google Toolbar
http://www.google.com/toolbar/ie/index.html
Do not have a home page in any browsers just the start page.
Hope this helps
BTW how did you go converting your mp4?
Regards Merete
enable-free-trial-of-MB-Premium.JPG
potential-threats-change-how-to-treat-th
0
 
MereteCommented:
BTW how did you go converting your mp4?
You'll need to close this or update soon.
0
 
MereteCommented:
Thank you speedtofly, is everything all good again?
Hope all is working for you now.
Regards Merete
0

Featured Post

How to Use the Help Bell

Need to boost the visibility of your question for solutions? Use the Experts Exchange Help Bell to confirm priority levels and contact subject-matter experts for question attention.  Check out this how-to article for more information.

  • 12
  • 8
  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now