Sign in to follow this  
bpguerns

I seem to be infected by s.yimg

Recommended Posts

Hello Moderator,

 

I seem to be infected by s.yimg. I am using Mozilla Firefox, and I have the No Script add on installed in Mozilla.

 

At the bottom of my Yahoo email account, I get a "transferring to s.yimg" message, and Mozilla slows WAY down. Sometimes it locks up and I have to manually shut of the machine. Other programs don't seem to be affected. I am not getting pop-ups - at least not yet.

 

I ran a Semantec full scan (no problems reported); updated Windows, Firefox, Java and Adobe; and did a System Restore dated back to a month ago.

 

I followed your instructions and downloaded AdwCleaner. The log file is pasted below. Thanks in advance for your help!

 

 

# AdwCleaner v4.207 - Logfile created 22/06/2015 at 11:45:59
# Updated 21/06/2015 by Xplode
# Database : 2015-06-21.2 [server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Bruce - BRUISER62
# Running from : C:\Users\Bruce\Desktop\adwcleaner_4.207.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Found : C:\Program Files (x86)\Coupons
Folder Found : C:\Program Files (x86)\Coupons
Folder Found : C:\ProgramData\Ask
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Coupons
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Coupons
Folder Found : C:\ProgramData\Partner
Folder Found : C:\Users\Bruce\AppData\Local\PackageAware

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Data Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local
Key Found : HKCU\Software\APN PIP
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Key Found : HKCU\Software\PIP
Key Found : [x64] HKCU\Software\APN PIP
Key Found : [x64] HKCU\Software\PIP
Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Coupon Printer for Windows5.0.0.0
Key Found : HKLM\SOFTWARE\PIP

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17840


-\\ Mozilla Firefox v38.0.5 (x86 en-US)


*************************

AdwCleaner[R0].txt - [1727 bytes] - [22/06/2015 11:45:59]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [1786 bytes] ##########


Share this post


Link to post
Share on other sites

Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter.

Everyone else please begin a New Topic.

Thank You !

Share this post


Link to post
Share on other sites
Guest
This topic is now closed to further replies.
Sign in to follow this