Unknow Startup Items

eddie57

Member
There are two startup items that I do not know what they are for. The names listed are wkomdej and wxiwykd. Does anyone know what these items are for and are they necessary? Thanks
 

johnb35

Administrator
Staff member
Definitely malware. Read the sticky thread in the security section, download and run the programs and post the logs back here.
 

_Pete_

Active Member
Just for the info of Calin. An anti-virus program will not pick up malware in spite of what most of them say. You need to use a dedicated anti-malware program such as Malwarebytes. Even those are not 100% effective just like anti-virus programs, in spite of what some (all) claim.
 

johnb35

Administrator
Staff member
Now that I'm home I can post specific instructions.

1.

Please download AdwCleaner onto your Desktop.



•Please close all open programs and internet browsers.
•Double click on adwcleaner.exe to run the tool. Please click on yes to allow Adwcleaner to run on your system.
•Click on Scan.



•After the scan, the clean button will be replaced by the clean button which you will need to click on to delete the adware.
•Your computer will be rebooted automatically. A text file will open after the restart.
•Please post the content of that logfile in your reply.
•You can find the logfile at C:\AdwCleaner[Sn].txt as well - n is the order number.

2.

Please download Junkware Removal Tool to your desktop.

•Shutdown your antivirus to avoid any conflicts.
•Very important that you run the tool in this manner:
Right-mouse click JRT.exe and select Run as administrator
Do NOT just double-click it. Again, please press ok to let the program run on your system.
•The tool will open, you will need to press a key for the program to start scanning.



•Please be patient as this can take a while to complete.
•On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
•Post the contents of JRT.txt in your next message.

3.

Please download Malwarebytes' Anti-Malware and save it to your desktop.
  • Double-click mbam-setup.exe and follow the prompts to install the program.
  • Launch Malwarebytes' Anti-Malware.



[*]Click on the scan now button and let it start scanning your system.
[*]When the scan is complete, please make sure all entries are checked and click on quarantine.
[*]A log will be saved automatically which you can access by clicking on the the reports tab on the left and then click on scan report. You can open that report and copy and paste the contents in your reply.
[/LIST]

If for some reason Malwarebytes will not install or run please download and run Rkill.scr, Rkill.exe, or Rkill.com. If you are still having issues running rkill then try downloading these renamed versions of the same program.

EXPLORER.EXE
IEXPLORE.EXE
USERINIT.EXE
WINLOGON.EXE

But DO NOT reboot the system and then try installing or running Malwarebytes. If Rkill (which is a black box) appears and then disappears right away or you get a message saying rkill is infected, keep trying to run rkill until it over powers the infection and temporarily kills it. Once a log appears on the screen, you can try running malwarebytes or downloading other programs.



4.

Download OTL to your Desktop




•Double click on the icon to run it. Again click on yes to allow it to run. Make sure all other windows are closed and to let it run uninterrupted.
•Click on Minimal Output at the top
•Click the Quick Scan button. Do not change any settings unless otherwise told to do so. The scan may take a few minutes.
◦When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL. Just post the OTL.txt file in your reply.

Then post the logs from the following 4 programs.

1. Adwcleaner
2. Junkware removal tool
3. Malwarebytes
4. OTL
 
Top