Stiggy09

Q: Deal top adware and internet problems...

Hello,

 

When I started up my macbook yesterday I discovered that my mac was (again) infected with an adware. When I opened up google chrome I was greeted with 'Trovi' as my browser and adds everywhere. The problem with the browser is not so hard to solve, just delve into the settings. But the adds are way more difficult to remove.

 

The problems are the following:

- adds everywhere from 'Deal top'

- some randome words in internet pages are highlighted and are adds too, if you hover over them you get adds like mackeeper and other useless things

- when I was looking on the web for a solution I discovered something strange, something that makes my case different from the rest i guess. Some pages are blocked. Chrome tells me that 'The site can't be reached' and '(example) refused to connect'. Images won't load either. Another example, if i want to update via the app store is says that 'the server can't be reached'.

 

This internet problem started since I discovered the add virus so I think they are related.

 

I tried restarting several times, cleared all the data in chrome and used BitDefender to scan my whole mac on viruses. None of this worked, I still got it...

I'm on OSX Yosemite 10.10.5 by the way.

 

Please help me out, I hate this.

 

Kind regards,

Stig W.

 

<Personal Information Edited by Host>

Posted on Jun 10, 2016 11:51 AM

Close

Q: Deal top adware and internet problems...

  • All replies
  • Helpful answers

  • by Esquared,

    Esquared Esquared Jun 10, 2016 11:55 AM in response to Stiggy09
    Level 6 (8,410 points)
    Mac OS X
    Jun 10, 2016 11:55 AM in response to Stiggy09

    BitDefender is useless, you can uninstall it.

     

    For Deal Top: Re: Malware "Deal Top"

  • by Eric Root,Helpful

    Eric Root Eric Root Jun 12, 2016 3:12 PM in response to Stiggy09
    Level 9 (70,250 points)
    iTunes
    Jun 12, 2016 3:12 PM in response to Stiggy09

    Bitdefender uninstall


    Download this program which was written by Thomas Reed, a long time poster. The program will do the work for you which makes it easy.

     

    Malwarebytes Anti-Malware for Mac      10.8 and later

     

    What should I do if Malwarebytes Anti-Malware for Mac didn't solve my problem?

  • by Stiggy09,

    Stiggy09 Stiggy09 Jun 12, 2016 3:16 PM in response to Eric Root
    Level 1 (17 points)
    Desktops
    Jun 12, 2016 3:16 PM in response to Eric Root

    Okay, so I've run that program and it dit detect some files. I removed them and had to restert my computer. When I logged in again and opened my browser I noticed that the ads were reduced but not gone. So I run the application again and it detects two files, again I remove them. But how many times I do this, there are still some adds left...

     

    Edit: I'm running on the latest os now.

  • by Eric Root,

    Eric Root Eric Root Jun 12, 2016 4:58 PM in response to Stiggy09
    Level 9 (70,250 points)
    iTunes
    Jun 12, 2016 4:58 PM in response to Stiggy09

    Try running this program and then copy and paste the output in a reply. The program was created by Etresoft, a frequent contributor.  Please use copy and paste as screen shots can be hard to read. Click “Share Report” button in the toolbar, select “Copy to Clipboard” and then paste into a reply. This will show what is running on your computer. No personal information is shown.
      

    Etrecheck – System Information

  • by Stiggy09,

    Stiggy09 Stiggy09 Jun 13, 2016 3:05 PM in response to Eric Root
    Level 1 (17 points)
    Desktops
    Jun 13, 2016 3:05 PM in response to Eric Root

    EtreCheck version: 2.9.12 (265)

    Report generated 2016-06-14 00:03:11

    Download EtreCheck from https://etrecheck.com

    Runtime 1:42

    Performance: Excellent

     

    Click the [Support] links for help with non-Apple products.

    Click the [Details] links for more information about that line.

    Click the [Remove] links to remove adware.

    Click the [Check files] link for help with unknown files.

     

    Problem: Other problem

    Description:

    maleware

     

    Hardware Information:

        MacBook Pro (15-inch, Late 2011)

        [Technical Specifications] - [User Guide] - [Warranty & Service]

        MacBook Pro - model: MacBookPro8,2

        1 2,4 GHz Intel Core i7 CPU: 4-core

        8 GB RAM Upgradeable - [Instructions]

            BANK 0/DIMM0

                4 GB DDR3 1333 MHz ok

            BANK 1/DIMM0

                4 GB DDR3 1333 MHz ok

        Bluetooth: Old - Handoff/Airdrop2 not supported

        Wireless:  en1: 802.11 a/b/g/n

        Battery: Health = Normal - Cycle count = 852

     

    Video Information:

        Intel HD Graphics 3000

        AMD Radeon HD 6770M - VRAM: 1024 MB

            Color LCD 1680 x 1050

            SyncMaster 1920 x 1080 @ 60 Hz

     

    System Software:

        OS X El Capitan 10.11.5 (15F34) - Time since boot: less than an hour

     

    Disk Information:

        ST2000LM003 HN-M201RAD disk1 : (2 TB) (Rotational)

            EFI (disk1s1) <not mounted> : 210 MB

            2TB Hard Drive (disk1s2) /Volumes/2TB Hard Drive : 2.00 TB (886.74 GB free)

     

        Samsung SSD 850 EVO 250GB disk0 : (250,06 GB) (Solid State - TRIM: No)

            EFI (disk0s1) <not mounted> : 210 MB

            Recovery HD (disk0s3) <not mounted>  [Recovery]: 650 MB

            Macintosh HD (disk2) / : 248.83 GB (43.85 GB free)

                Core Storage: disk0s2 249.20 GB Online

     

    USB Information:

        Apple Inc. FaceTime HD Camera (Built-in)

        Apple Inc. Apple Internal Keyboard / Trackpad

        Apple Inc. BRCM2070 Hub

            Apple Inc. Bluetooth USB Host Controller

        Nektar IMPACT LX49

        M-Audio M-Track

        Native Instruments Maschine Controller

        Logitech USB-PS/2 Optical Mouse

        Apple Computer, Inc. IR Receiver

     

    Thunderbolt Information:

        Apple Inc. thunderbolt_bus

     

    Gatekeeper:

        Mac App Store and identified developers

     

    Adware:

        /Library/LaunchDaemons/com.BrooklyniteUpd.plist

        /Library/LaunchDaemons/com.mistakablyUpd.plist

        2 adware files found. [Remove]

     

    Unknown Files:

        /Library/LaunchDaemons/com.malwarebytes.HelperTool.plist

            /Library/PrivilegedHelperTools/com.malwarebytes.HelperTool /Library/PrivilegedHelperTools/com.malwarebytes.HelperTool

        One unknown file found. [Check files]

     

    Kernel Extensions:

            /Library/Extensions

        [loaded]    com.bongiovi.DPSReflector (1.0.6 - SDK 10.9 - 2016-06-10) [Support]

        [loaded]    com.caiaq.driver.NIUSBMaschineControllerDriver (2.8.0 (R36) - SDK 10.9 - 2016-06-10) [Support]

     

            /System/Library/Extensions

        [not loaded]    com.focusrite.driver.usb.audio (2.9 - SDK 10.9 - 2016-06-10) [Support]

        [not loaded]    com.novationmusic.driver.usb.audio (2.7 - SDK 10.9 - 2016-06-10) [Support]

     

    System Launch Agents:

        [not loaded]    7 Apple tasks

        [loaded]    156 Apple tasks

        [running]    75 Apple tasks

     

    System Launch Daemons:

        [not loaded]    45 Apple tasks

        [loaded]    157 Apple tasks

        [running]    89 Apple tasks

     

    Launch Agents:

        [not loaded]    com.adobe.AAM.Updater-1.0.plist (2016-04-17) [Support]

        [failed]    com.adobe.ARMDCHelper.cc24aef4a1b90ed56a...plist (2016-05-11) [Support]

        [running]    com.adobe.AdobeCreativeCloud.plist (2016-02-14) [Support]

     

    Launch Daemons:

        [not loaded]    com.BrooklyniteUpd.plist (2016-06-10) Adware!  [Remove]

        [loaded]    com.adobe.ARMDC.Communicator.plist (2016-05-11) [Support]

        [loaded]    com.adobe.ARMDC.SMJobBlessHelper.plist (2016-05-11) [Support]

        [loaded]    com.adobe.SwitchBoard.plist (2016-03-13) [Support]

        [running]    com.adobe.adobeupdatedaemon.plist (2016-04-17) [Support]

        [loaded]    com.adobe.agsservice.plist (2016-04-17) [Support]

        [loaded]    com.cyberghostsrl.CyberghostPrivilegedHelper.plist (2015-11-30) [Support]

        [loaded]    com.malwarebytes.HelperTool.plist (2016-06-13) [Support]

        [not loaded]    com.mistakablyUpd.plist (2016-04-22) Adware!  [Remove]

        [not loaded]    com.torrents-time.helper.plist (2016-02-18) [Support]

     

    User Launch Agents:

        [loaded]    com.adobe.AAM.Updater-1.0.plist (2015-10-17) [Support]

        [failed]    com.apple.CSConfigDotMacCert-[...]@me.com-SharedServices.Agent.plist

        [loaded]    com.bittorrent.uTorrent.plist (2015-10-21) [Support]

        [loaded]    com.google.keystone.agent.plist (2016-03-03) [Support]

     

    User Login Items:

        iTunesHelper    Application  (/Applications/iTunes.app/Contents/MacOS/iTunesHelper.app)

        SpeechSynthesisServer    Application  (/System/Library/Frameworks/ApplicationServices.framework/Versions/A/Frameworks /SpeechSynthesis.framework/Versions/A/SpeechSynthesisServer.app)

        NIHardwareAgent    Application Hidden (/Library/Application Support/Native Instruments/Hardware/NIHardwareAgent.app)

     

    Other Apps:

        [loaded]    BrooklyniteUpd.plist

        [failed]    com.5e275556e95e3ba9.config

        [running]    com.adobe.CCXProcess.67872

        [running]    com.adobe.acc.AdobeDesktopService.106272.023E45B9-DAEC-44E1-A0C2-F66223DA278C

        [running]    com.adobe.accmac.68192

        [running]    com.native-instruments.NIHardwareService.105312

        [running]    com.torrents-time.helper

        [loaded]    397 Apple tasks

        [running]    190 Apple tasks

     

    Internet Plug-ins:

        AdobeExManDetect: AdobeExManDetect 1.1.0.0 - SDK 10.7 (2015-10-13) [Support]

        AdobeAAMDetect: 3.0.0.0 - SDK 10.9 (2016-04-17) [Support]

        QuickTime Plugin: 7.7.3 (2016-05-05)

        AdobePDFViewerNPAPI: 15.009.20069 - SDK 10.8 (2015-09-30) [Support]

        AdobePDFViewer: 15.009.20069 - SDK 10.8 (2015-09-30) [Support]

        Default Browser: 601 - SDK 10.11 (2016-05-05)

        JavaAppletPlugin: 15.0.1 - SDK 10.11 (2015-10-13) Check version

     

    3rd Party Preference Panes:

        Native Instruments USB Audio (2015-09-18) [Support]

        YAMAHA-USBMIDIPatch (2012-07-10) [Support]

     

    Time Machine:

        Skip System Files: NO

        Auto backup: YES

        Volumes being backed up:

            Macintosh HD: Disk size: 248.83 GB Disk used: 204.98 GB

        Destinations:

            Backupschijf 4 Tb [Network]

            Total size: 4.00 TB

            Total number of backups: 31

            Oldest backup: 16/05/16 02:20

            Last backup: 09/06/16 23:00

            Size of backup disk: Excellent

                Backup size 4.00 TB > (Disk size 248.83 GB X 3)

     

    Top Processes by CPU:

            12%    kernel_task

             4%    WindowServer

             2%    fontd

             2%    NIHardwareAgent

             1%    hidd

     

    Top Processes by Memory:

        991 MB    Google Chrome Helper(4)

        751 MB    kernel_task

        221 MB    Google Chrome

        197 MB    mds_stores

        180 MB    iTunes

     

    Virtual Memory Information:

        2.64 GB    Free RAM

        5.36 GB    Used RAM (1.79 GB Cached)

        0 B    Swap Used

     

    Diagnostics Information:

        Jun 13, 2016, 11:10:34 PM    Self test - passed

        Jun 13, 2016, 12:13:48 AM    /Library/Logs/DiagnosticReports/com.torrents-time.helper_2016-06-13-001348_[red acted].crash

            /Library/PrivilegedHelperTools/com.torrents-time.helper

        Jun 12, 2016, 02:50:33 PM    /Library/Logs/DiagnosticReports/mds_2016-06-12-145033_[redacted].crash

            /System/Library/Frameworks/CoreServices.framework/Versions/A/Frameworks/Metadat a.framework/Versions/A/Support/mds

        Jun 11, 2016, 05:25:03 PM    /Library/Logs/DiagnosticReports/Google Chrome_2016-06-11-172503_[redacted].hang

            /Applications/Google Chrome.app/Contents/MacOS/Google Chrome

     

  • by Eric Root,

    Eric Root Eric Root Jun 14, 2016 10:01 AM in response to Stiggy09
    Level 9 (70,250 points)
    iTunes
    Jun 14, 2016 10:01 AM in response to Stiggy09

     

      /Library/LaunchDaemons/com.BrooklyniteUpd.plist

        /Library/LaunchDaemons/com.mistakablyUpd.plist

        2 adware files found. [Remove]


        [not loaded]    com.mistakablyUpd.plist (2016-04-22) Adware!  [Remove]

     

    Go to your hard drive level Library/LaunchDaemons and remove the above files.