Virus preventing all executable​s HELP!

Didn't know where else to post so I thought I'd post in here.  As I mentioned in the subject line I recently picked up a virus/scam that's preventing me from opening any executable.  I've noticed that programs will open but the malicious exe shuts them down instantly.  The virus's aim seems to be directing the user towards a "Virus Protection software" website that reeks of bullsh*t.  The executable itself is labeled oflfnodlajb.exe but I can't find it anywhere in my system files or a reference to it online.
I've found that if I can get the task manager open before the exe kicks in I can force it closed and all the symptoms go away.  I ran a scan with AVG and I plan on running another but I'm not hopeful.
If there's anyone out there with information that could help me I'd be eternally grateful.

Please DO NOT disable system restore!
Please note that Combofix should NEVER be run unless requested by a security expert trained by the owner/developer of the tool. ComboFix is constantly being updated and changed. If you are not working with a helper who has a way of communicating with the developer, you will have no way to report the issue and recover if there is a problem. In addition ComboFix leaves files on the system that need to be cleaned up in a prescribed manner.
As you run ComboFix the Disclaimer is displayed. It states that Combofix should not be run in an unsupervised environment. That means that someone trained in its use needs to be working with you. Please see this information regarding running ComboFix on your own:​.html
If you still need help removing this malware, please post back here or on one of these security forums:
Additional forums that offer analysis can be found at the links in the recommended sites section on this page:​ex.php
ThinkPad: T530 / X1 Gen 2 / Helix - Yoga: Tablet 2 Pro (Win) / Yoga 3 Pro
If you find a post helpful and it answers your question, please click the "Accept As Solution" button.
Lenovo Advocate ~ I am not employed by Lenovo or Microsoft. I am a volunteer.
Microsoft MVP - Consumer Security

Similar Messages

  • Trojan virus suspected...please help

    I've been reading about PINTSIZED  i have found a file in my launch daemons similar to the files stated that are associated with this virus    the files that are shown are as follows...
    cupsd(Mach-O binary)
    now it said to search my library launch agents and daemons and the system library launch agents and daemons.   so i did and i found this file   org.cups.cups.plist  in my system library launch daemons....can anyone please tell me if this is an infected file??

    All of those are OS X system files. Why do you think you have a virus? What version of OS X do you have, and what is the exact model of your computer? Please describe in detail what is happening to make you think you have a virus.
    See the following:
    Helpful Links Regarding Malware Problems
    If you are having an immediate problem with ads popping up see The Safe Mac » Adware Removal Guide and AdwareMedic.
    Open Safari, select Preferences from the Safari menu. Click on Extensions icon in the toolbar. Disable all Extensions. If this stops your problem, then re-enable them one by one until the problem returns. Now remove that extension as it is causing the problem.
    The following comes from user stevejobsfan0123. I have made minor changes to adapt to this presentation.
    Fix Some Browser Pop-ups That Take Over Safari.
    Common pop-ups include a message saying the government has seized your computer and you must pay to have it released (often called "Moneypak"), or a phony message saying that your computer has been infected, and you need to call a tech support number (sometimes claiming to be Apple) to get it resolved. First, understand that these pop-ups are not caused by a virus and your computer has not been affected. This "hijack" is limited to your web browser. Also understand that these messages are scams, so do not pay any money, call the listed number, or provide any personal information. This article will outline the solution to dismiss the pop-up.
    Quit Safari
    Usually, these pop-ups will not go away by either clicking "OK" or "Cancel." Furthermore, several menus in the menu bar may become disabled and show in gray, including the option to quit Safari. You will likely have to force quit Safari. To do this, press Command + option + esc, select Safari, and press Force Quit.
    Relaunch Safari
    If you relaunch Safari, the page will reopen. To prevent this from happening, hold down the 'Shift' key while opening Safari. This will prevent windows from the last time Safari was running from reopening.
    This will not work in all cases. The shift key must be held at the right time, and in some cases, even if done correctly, the window reappears. In these circumstances, after force quitting Safari, turn off Wi-Fi or disconnect Ethernet, depending on how you connect to the Internet. Then relaunch Safari normally. It will try to reload the malicious webpage, but without a connection, it won't be able to. Navigate away from that page by entering a different URL, i.e., and trying to load it. Now you can reconnect to the Internet, and the page you entered will appear rather than the malicious one.
    An excellent link to read is Tom Reed's Mac Malware Guide.
    Also, visit The XLab FAQs and read Detecting and avoiding malware and spyware.
    See these Apple articles:
      Mac OS X Snow Leopard and malware detection
      OS X Lion- Protect your Mac from malware
      OS X Mountain Lion- Protect your Mac from malware
      OS X Mavericks- Protect your Mac from malware
      About file quarantine in OS X
    If you require anti-virus protection Thomas Reed recommends using ClamXAV. (Thank you to Thomas Reed for this recommendation.)
    From user Joe Bailey comes this equally useful advice:
    The facts are:
    1. There is no anti-malware software that can detect 100% of the malware out there.
    2. There is no anti-malware that can detect everything targeting the Mac.
    3. The very best way to prevent the most attacks is for you as the user to be aware that
         the most successful malware attacks rely on very sophisticated social engineering
         techniques preying on human avarice, ****, and fear.
    4. Internet popups saying the FBI, NSA, Microsoft, your ISP has detected malware on
        your computer is intended to entice you to install their malware thinking it is a
        protection against malware.
    5. Some of the anti-malware products on the market are worse than the malware
        from which they purport to protect you.
    6. Be cautious where you go on the internet.
    7. Only download anything from sites you know are safe.
    8. Avoid links you receive in email, always be suspicious even if you get something
        you think is from a friend, but you were not expecting.
    9. If there is any question in your mind, then assume it is malware.

  • Not all executables will start from spawned batch (Is this a WinNT bug?).

    I'm building a tool wherewith I can spawn a make process from my Visual Age for Java IDE.
    This I have working now. However not all executables seem to get started from the batch.
    Here are some of the from within the batch file started examples that work and won't work:
    echo MakeBridge V1.00
    echo Ensure that
    echo %1%2
    echo is a (sub) directory of
    echo %JAVA_DEV_ROOT%
    REM Usage: makeBridge <drive_letter> <working_directory> <make_command>
    REM Change drive
    %1 WORKS
    REM Change directory
    chdir %2 WORKS
    REM Execute make command
    echo ####%3#### WORKS
    clearmake -C gnu %3 %4 %5 %6 %7 %8 %9 WON'T WORK
    echo path=%PATH% WORKS
    pwd WORKS
    dir WORKS
    java -version WON'T WORK
    rem C:\APPL\_off97uk.32\Office\EXCEL.EXE WORKS
    echo Marcel Zeeuw WORKS
    The actual coding for the spawning is below:
    Process p = Runtime.getRuntime().exec(batch);
    // Pick up output stream from spawned process
    BufferedReader br = new BufferedReader(
    new InputStreamReader(p.getInputStream()));
    String line;
    while ((line = br.readLine()) != null)
    Help would be appreciated
    Kind regards,
    Marcel Zeeuw.

    Explicit naming of a path in front of a non-starting application doesn't help - as expected.
    My conclusion is, that a process that is spawned by an application inherit some sort of limiting environment space. THis is because when I start my not working batch file from a command prompt, the batch file works as expected.
    I have no solution for this problem for now...

  • How can I prevent all workbooks from opening automatically when Excel starts?

    I am using Office 2011 (14.2.1) service pack 2 on Mac os X 10.7.3. Whenever I open Excel, all my workbooks open.  How can I prevent all workbooks from opening automatically when Excel starts?
    Please Help, Thanks

    You can look at: Stop Autoplay:

  • Have a 27 imac desktop with mac osx 10.5.8, finally got out of grey and black screens etc. is there anything I can do to prevent all this from happening again when I shut down?

    Have a 27 imac desktop with mac osx 10.5.8, finally got out of grey and black screens etc. is there anything I can do to prevent all this from happening again when I shut down? Or before I shutdown? TIA.

    Basic Backup
    For some people Time Machine will be more than adequate. Time Machine is part of OS X. There are two components:
    1. A Time Machine preferences panel as part of System Preferences;
    2. A Time Machine application located in the Applications folder. It is
         used to manage backups and to restore backups. Time Machine
         requires a backup drive that is at least twice the capacity of the
         drive being backed up.
    Alternatively, get an external drive at least equal in size to the internal hard drive and make (and maintain) a bootable clone/backup. You can make a bootable clone using the Restore option of Disk Utility. You can also make and maintain clones with good backup software. My personal recommendations are (order is not significant):
      1. Carbon Copy Cloner
      2. Get Backup
      3. Deja Vu
      4. SuperDuper!
      5. Synk Pro
      6. Tri-Backup
    Visit The XLab FAQs and read the FAQ on backup and restore.  Also read How to Back Up and Restore Your Files. For help with using Time Machine visit Pondini's Time Machine FAQ for help with all things Time Machine.
    Although you can buy a complete external drive system, you can also put one together if you are so inclined.  It's relatively easy and only requires a Phillips head screwdriver (typically.)  You can purchase hard drives separately.  This gives you an opportunity to shop for the best prices on a hard drive of your choice.  Reliable brands include Seagate, Hitachi, Western Digital, Toshiba, and Fujitsu.  You can find reviews and benchmarks on many drives at Storage Review.
    Enclosures for FireWire and USB are readily available.  You can find only FireWire enclosures, only USB enclosures, and enclosures that feature multiple ports.  I would stress getting enclosures that use the Oxford chipsets especially for Firewire drives (911, 921, 922, for example.)  You can find enclosures at places such as;
      1. Cool Drives
      2. OWC
      3. WiebeTech
      4. Firewire Direct
      5. California Drives
      6. NewEgg
    All you need do is remove a case cover, mount the hard drive in the enclosure and connect the cables, then re-attach the case cover.  Usually the only tool required is a small or medium Phillips screwdriver.

  • Touch volume freezing and preventing all other keystroke commands from working

    I have an HP pavilion DV4-1514 laptop running windows 7 64 bit. The touch volume control gets stuck all the way at zero and continues to display on the screen. The main problem is when this is displayed it prevents all other computer functions from working. You cant click on any other windows or start any programs because the touch screen keeps displaying front and center. How do i disable the touch volume

    Welcome to the forum, Cliff -
    You could try reloading your Audio driver (6.10.6225.0 A):​1.exe
    Now, if that doesn't kick that driver, there are ways to force it a bit.  You can get to it from the Device Manager.
    For reference - your HP sorftware and driver webpage:​y?os=4063&lc=en&cc=us&dlc=en&sw_lang=&product=4072​...
    I hope this helps!
    Click The Kudos for Thanks!       
    Click Accept as Solution if it's Fixed!
    Kudos are Earned!
    Kind Regards,

  • Syncing iphone and can't seem to transfer audiobooks that i have put in a playlist.  Sync menu doesn't show all playlists.  Help

    syncing iphone and can't seem to transfer audiobooks that i have put in a playlist.  Sync menu doesn't show all playlists.  Help

    I have the same problem with podcast playlists.  When I go to the music window in my iPhone devices section, the playlists I have created on my macbook pro in iTunes do not appear as an option to sync with the iPhone.  I know some web radios streams, like the BBC, won't transfer because of compatibility issues, but the playlists of podcasts that I have created consist entirely of podcasts downloaded from the podcasts section on the iTunes Music Store.  They used to show up and sync properly before I upgraded to OS 5.1.1, but now they don't.
    Does anyone have a fix and am I right in surmising that the cause is a glitch in OS 5.1.1?

  • My App Store won't allow me to download any apps. It says such and such app is unable to download try again later  every time. I have enough storage all my devices are up to date on all updates  please help

    My App Store won't allow me to download any apps. It says such and such app is unable to download try again later  every time. I have enough storage all my devices are up to date on all updates  please help

    I am a librarian at a 1:1 iPad school and we are having this problem with all ~3000 student iPads as well at ~300 teacher iPads.  This is extremely frustrating.  I have tried suggested fixes found on other discussion boards but none have worked.

  • My Blu-Ray player has a USB input but it doesn't have an HDMI input. Can I connect my Apple TV to the Blu-Ray using an HDMI/ USB adapter? It would allow me to run the audio through my stereo. Thanks to all for your help.

    My Blu-Ray player has a USB input but it doesn't have an HDMI input. Can I connect my Apple TV to the Blu-Ray using an HDMI/ USB adapter? It would allow me to run the audio through my stereo. Thanks to all for your help.

    Can I connect my Apple TV to the Blu-Ray using an HDMI/ USB adapter?
    If you can find such a thing.  I really doubt that exists since USB is a data connector not a video connector.
    would allow me to run the audio through my stereo.     
    That would depend on this adapter.

  • My wifi is greyed out my bluetooth n hotspot is not working and its showing problem in resetting all setting plez help.. :(

    my wifi is greyed out bluetooth n hotspot is not working and its showing problem in resetting all setting plez help..

    Hello Prakharfromindia,
    Thank you for using Apple Support Communities.
    For more information, take a look at:
    iOS: Wi-Fi settings grayed out or dim
    iOS: Troubleshooting Bluetooth connections
    Use iTunes to restore your iOS device to factory settings
    Have a nice day,

  • I have updated my iphone 4 with IOS 7 and for some reason there is no sound coming in my iphone anymore. I'm not quite sure if its a glitch or something. But if you all could just help me out that would be wonderful. How should i fix my sound in iphone 4?

    Please help me out!! I actually need the sound going on ASAP because I have to do some of my work on my iphone. It would be nice if you could all help me.

    Hi, thanks for the suggestion. I have tried as you suggested, and when opening the "purchased" apps some have the icloud logo next to them, but I only have "OPEN" against "Find My iPhone". When opening it up, it goes through the same routine; needs to be updated before proceeding, and wouldn't update because I don't have IOS8.
    Anything else I could try, or am I doomed!
    All of your help is much appreciated, thanks

  • Hi all, can someone help me in getting last login date of a user in CQ5 please?

    Hi all, can someone help me in getting last login date of a user in CQ5 please?

    CQ is REST based and does not have the concept of session. So there is no feature to track login or logout details.  Most of our customers use some kind of central authentication Ex- SSO hence no need arises to have such functionality built in.  However if needed you have the ability to implement such at a project level solution. Ex:- custom login modules or auth-handler by taking project specific constraints and requirements into account

  • After my iphone4S update to 7.0.6, it have a problem that keep searching network then no service show on display. Can't call. I have try check sim card, reset network settings, and restore my iphone. Still not working at all. Need help please.

    After my iphone4S update to 7.0.6, it have a problem that keep searching network then no service show on display. Can't call. I have try check sim card, reset network settings, and restore my iphone. Still not working at all. Need help please.Urgent.TQ

    Izit software or hardware? Confuse:(
    Only can use wifi now.
    Any way thanks guys for ur suggestion:) amishcake and simes

  • When I was updating my ipod touch 4g 8g 4.3.3 the USB came out and now it just shows connect to itunes and when i try to update it comes with error 6. I do all of the help things and nothing

    When I was updating my ipod touch 4g 8g 4.3.3 the USB came out and now it just shows connect to itunes and when i try to update it comes with error 6. I do all of the help things and nothing happoned

    First see if placing the iPod in Recovery Mode will allow a restore.
    Next try DFU mode and restore.
    How to put iPod touch / iPhone into DFU mode « Karthik's scribblings
    If not successful then time for an appointment at the Genius Bar of an Apple store. You are not alone with this problem.

  • Firefox crashed suddenly and now it won't open at all. Please help

    Firefox crashed suddenly and now it wont open at all. When I click the icon all I get is the spinning pinwheel and have to force quit the program. I've tried rebooting the computer, uninstalling and reinstalling firefox, it won't open in safe wont do anything at all. Please help.

    Create a new profile as a test to check if your current profile is causing the problems.
    See "Basic Troubleshooting: Make a new profile":
    There may be extensions and plugins installed by default in a new profile, so check that in "Tools > Add-ons > Extensions & Plugins" in case there are still problems.
    If that new profile works then you can transfer some files from the old profile to that new profile, but be careful not to copy corrupted files.
    If you have submitted Breakpad crash reports then post the IDs of one or more Breakpad crash reports (bp-xxxxxxxx-xxxxxxxxx-xxxx-xxxxxxxxxxxx). You can find the IDs of the submitted crash reports on the about:crashes page. You can open the about:crashes page via the location bar, like you open a website.
    * (Mozilla Crash Reporter)

Maybe you are looking for

  • Sales order line with status calcelled picked by auto invoice program

    I cancelled  one line in Sales Order and Shipped remaining lines after Ship Confirm process ,I ran workflow background process. I am getting cancelled line information to AR interface tables when I run Auto invoice amount is sitting in Unearned accou

  • Working with Multi-column text in Illustrator CS6 - highly irritating! How do I do the following ...

    Hi ... I'm finding working with multi column\row text box ("table") in Illustrator CS6 really irritating and non-intuitive. Maybe just my ignorance but I can't find simple ways to do the following: 1. Click in a different cell of the "table" to the o

  • How to type third character

    Several T500 keys have three characters on them. I know how to do the default character and the uppercase character but cant figure out how to enter the character located on the bottom left of the key. Sounds like a dumb question! Thanks. Solved! Go

  • Trying to configure base station with an iBook G4

    Hi there, I've purchased an Airport Extreme Base station to provide wireless internet access to my iBook G4. I can connect to the internet just fine, and have no problem loading web pages/email/etc. However, if I try to configure the base station whe

  • First backup messed up?

    I set up my TC pretty quickly. Went to TM, chose to exclude a downloads file and users/myname/library/FileSync (because this holds the sparsebundle that is my local iDisk copy), clicked to change disks from my old TM backup HD. During the backup ther