Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Yahoo Spigot Virus/Malware


  • This topic is locked This topic is locked
16 replies to this topic

#1 andyso7193

andyso7193

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:05:33 PM

Posted 05 April 2014 - 12:56 AM

Hi, I noticed when i start my chrome browser it opens up with a site looking like yahoo search with the ur; http://search.yahoo.com/?type=599486&fr=spigot-yhp-ch  as well as my normal startup page. I ran malwarebytes which caught some things but the yahoo page keeps appearing. I noticed on other pages that people said that was their only symptom but i feel like my computer is running slower as well, and my laptop is only a couple of weeks old...

 

Any help would be great. Also, I have the homegroup icon on my desktop (Windows 8) i googled it and many people said that this was not a virus but it just randomly appeared... Around the same time as the yahoo page... maybe its just coincidence?

 

Any help would be great. Thanks!



BC AdBot (Login to Remove)

 


#2 andyso7193

andyso7193
  • Topic Starter

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:05:33 PM

Posted 05 April 2014 - 03:58 PM

bump please help



#3 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:33 PM

Posted 05 April 2014 - 08:52 PM

Hello andy, also run these.

Please download MiniToolBox, save it to your desktop and run it.
Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Users, Partitions and Memory size.
  • Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.
    Note: When using "Reset FF Proxy Settings" option Firefox should be closed.



    Download TDSSKiller and save it to your desktop.
  • Extract (unzip) its contents to your desktop.
  • Open the TDSSKiller folder and doubleclick on TDSSKiller.exe to run the application, then on Start Scan.
  • If an infected file is detected, the default action will be Cure, click on Continue.
  • If a suspicious file is detected, the default action will be Skip, click on Continue.
  • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
  • If no reboot is require, click on Report. A log file should appear. Please copy and paste the contents of that file here.
  • If a reboot is required, the report can also be found in your root directory (usually C:\ folder) in the form of TDSSKiller_xxxx_log.txt. Please copy and paste the contents of that file here.
  • .
    .
    .
    ADW Cleaner

    Please download AdwCleaner by Xplode and save to your Desktop.
  • Double-click on AdwCleaner.exe to run the tool.
    Vista/Windows 7/8 users right-click and select Run As Administrator.
  • Click on the Scan button.
  • AdwCleaner will begin...be patient as the scan may take some time to complete.
  • After the scan has finished, click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
  • After reviewing the log, click on the Clean button.
  • Press OK when asked to close all programs and follow the onscreen prompts.
  • Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
  • After rebooting, a logfile report (AdwCleaner[S0].txt) will open automatically.
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.
  • -- Note: The contents of the AdwCleaner log file may be confusing. Unless you see a program name that you recognize and know should not be removed, don't worry about it. If you see an entry you want to keep, return to AdwCleaner before cleaning...all detected items will be listed (and checked) in each tab. Click on each one and uncheck any items you want to keep (except you cannot uncheck Chrome and Firefox preferences lines).


    .

    thisisujrt.gif Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
  • .
    .
    .
    .
  • Last run ESET.
  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
  • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
  • Double click on the esetsmartinstaller_enu.png icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
  • Scan potentially unwanted applications
  • Scan for potentially unsafe applications
  • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.
  • NOTE:Sometimes if ESET finds no infections it will not create a log.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#4 andyso7193

andyso7193
  • Topic Starter

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:05:33 PM

Posted 07 April 2014 - 07:41 PM

MiniToolBox by Farbar  Version: 23-01-2014
Ran by Andy (administrator) on 05-04-2014 at 20:19:11
Running from "C:\Users\Andy\Desktop"
Microsoft Windows 8.1  (X64)
Boot Mode: Normal
***************************************************************************
 
========================= Flush DNS: ===================================
 
Windows IP Configuration
 
Successfully flushed the DNS Resolver Cache.
 
========================= IE Proxy Settings: ============================== 
 
Proxy is not enabled.
No Proxy Server is set.
 
"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================
 
 
 
========================= IP Configuration: ================================
 
Intel® Wireless-N 7260 = Wi-Fi (Connected)
Qualcomm Atheros AR8171/8175 PCI-E Gigabit Ethernet Controller (NDIS 6.30) = Ethernet (Media disconnected)
Bluetooth Device (Personal Area Network) = Bluetooth Network Connection (Media disconnected)
 
 
# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4
 
reset
set global icmpredirects=enabled
set interface interface="Local Area Connection* 1" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Ethernet" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Wi-Fi" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Local Area Connection* 2" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Bluetooth Network Connection" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
 
 
popd
# End of IPv4 configuration
 
 
 
Windows IP Configuration
 
   Host Name . . . . . . . . . . . . : Lenovo-PC
   Primary Dns Suffix  . . . . . . . : 
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : home.network
 
Ethernet adapter Bluetooth Network Connection:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Bluetooth Device (Personal Area Network)
   Physical Address. . . . . . . . . : FC-F8-AE-51-2E-07
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
 
Wireless LAN adapter Local Area Connection* 2:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft Wi-Fi Direct Virtual Adapter
   Physical Address. . . . . . . . . : FC-F8-AE-51-2E-04
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
 
Wireless LAN adapter Wi-Fi:
 
   Connection-specific DNS Suffix  . : home.network
   Description . . . . . . . . . . . : Intel® Wireless-N 7260
   Physical Address. . . . . . . . . : FC-F8-AE-51-2E-03
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::5c41:6ce7:a6a0:3484%4(Preferred) 
   IPv4 Address. . . . . . . . . . . : 10.0.0.15(Preferred) 
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Saturday, April 5, 2014 1:32:28 PM
   Lease Expires . . . . . . . . . . : Saturday, April 12, 2014 4:26:53 PM
   Default Gateway . . . . . . . . . : 10.0.0.1
   DHCP Server . . . . . . . . . . . : 10.0.0.1
   DHCPv6 IAID . . . . . . . . . . . : 83687598
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-1A-50-BD-53-28-D2-44-4A-7A-DC
   DNS Servers . . . . . . . . . . . : 75.75.75.75
                                       75.75.76.76
   NetBIOS over Tcpip. . . . . . . . : Enabled
 
Ethernet adapter Ethernet:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : spu.edu
   Description . . . . . . . . . . . : Qualcomm Atheros AR8171/8175 PCI-E Gigabit Ethernet Controller (NDIS 6.30)
   Physical Address. . . . . . . . . : 28-D2-44-4A-7A-DC
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter isatap.home.network:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : home.network
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Teredo Tunneling Pseudo-Interface:
 
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2001:0:9d38:6abd:2036:26ac:b83a:132f(Preferred) 
   Link-local IPv6 Address . . . . . : fe80::2036:26ac:b83a:132f%10(Preferred) 
   Default Gateway . . . . . . . . . : ::
   DHCPv6 IAID . . . . . . . . . . . : 369098752
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-1A-50-BD-53-28-D2-44-4A-7A-DC
   NetBIOS over Tcpip. . . . . . . . : Disabled
Server:  cdns01.comcast.net
Address:  75.75.75.75
 
Name:    google.com
Addresses:  2607:f8b0:400a:803::1003
 173.194.33.135
 173.194.33.136
 173.194.33.137
 173.194.33.128
 173.194.33.131
 173.194.33.130
 173.194.33.129
 173.194.33.134
 173.194.33.132
 173.194.33.133
 173.194.33.142
 
 
Pinging google.com [173.194.33.168] with 32 bytes of data:
Reply from 173.194.33.168: bytes=32 time=11ms TTL=55
Reply from 173.194.33.168: bytes=32 time=22ms TTL=55
 
Ping statistics for 173.194.33.168:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 11ms, Maximum = 22ms, Average = 16ms
Server:  cdns01.comcast.net
Address:  75.75.75.75
 
Name:    yahoo.com
Addresses:  206.190.36.45
 98.138.253.109
 98.139.183.24
 
 
Pinging yahoo.com [98.139.183.24] with 32 bytes of data:
Reply from 98.139.183.24: bytes=32 time=91ms TTL=49
Reply from 98.139.183.24: bytes=32 time=90ms TTL=47
 
Ping statistics for 98.139.183.24:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 90ms, Maximum = 91ms, Average = 90ms
 
Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
 
Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
  7...fc f8 ae 51 2e 07 ......Bluetooth Device (Personal Area Network)
  5...fc f8 ae 51 2e 04 ......Microsoft Wi-Fi Direct Virtual Adapter
  4...fc f8 ae 51 2e 03 ......Intel® Wireless-N 7260
  3...28 d2 44 4a 7a dc ......Qualcomm Atheros AR8171/8175 PCI-E Gigabit Ethernet Controller (NDIS 6.30)
  1...........................Software Loopback Interface 1
  8...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
 10...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
===========================================================================
 
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0         10.0.0.1        10.0.0.15     25
         10.0.0.0    255.255.255.0         On-link         10.0.0.15    281
        10.0.0.15  255.255.255.255         On-link         10.0.0.15    281
       10.0.0.255  255.255.255.255         On-link         10.0.0.15    281
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link         10.0.0.15    281
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link         10.0.0.15    281
===========================================================================
Persistent Routes:
  None
 
IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
 10    306 ::/0                     On-link
  1    306 ::1/128                  On-link
 10    306 2001::/32                On-link
 10    306 2001:0:9d38:6abd:2036:26ac:b83a:132f/128
                                    On-link
  4    281 fe80::/64                On-link
 10    306 fe80::/64                On-link
 10    306 fe80::2036:26ac:b83a:132f/128
                                    On-link
  4    281 fe80::5c41:6ce7:a6a0:3484/128
                                    On-link
  1    306 ff00::/8                 On-link
  4    281 ff00::/8                 On-link
 10    306 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================
 
Catalog5 01 C:\windows\SysWOW64\napinsp.dll [53760] (Microsoft Corporation)
Catalog5 02 C:\windows\SysWOW64\pnrpnsp.dll [68096] (Microsoft Corporation)
Catalog5 03 C:\windows\SysWOW64\pnrpnsp.dll [68096] (Microsoft Corporation)
Catalog5 04 C:\windows\SysWOW64\NLAapi.dll [64000] (Microsoft Corporation)
Catalog5 05 C:\windows\SysWOW64\mswsock.dll [270848] (Microsoft Corporation)
Catalog5 06 C:\windows\SysWOW64\winrnr.dll [21504] (Microsoft Corporation)
Catalog5 07 C:\windows\SysWOW64\wshbth.dll [51200] (Microsoft Corporation)
Catalog9 01 C:\windows\SysWOW64\mswsock.dll [270848] (Microsoft Corporation)
Catalog9 02 C:\windows\SysWOW64\mswsock.dll [270848] (Microsoft Corporation)
Catalog9 03 C:\windows\SysWOW64\mswsock.dll [270848] (Microsoft Corporation)
Catalog9 04 C:\windows\SysWOW64\mswsock.dll [270848] (Microsoft Corporation)
Catalog9 05 C:\windows\SysWOW64\mswsock.dll [270848] (Microsoft Corporation)
Catalog9 06 C:\windows\SysWOW64\mswsock.dll [270848] (Microsoft Corporation)
Catalog9 07 C:\windows\SysWOW64\mswsock.dll [270848] (Microsoft Corporation)
Catalog9 08 C:\windows\SysWOW64\mswsock.dll [270848] (Microsoft Corporation)
Catalog9 09 C:\windows\SysWOW64\mswsock.dll [270848] (Microsoft Corporation)
Catalog9 10 C:\windows\SysWOW64\mswsock.dll [270848] (Microsoft Corporation)
Catalog9 11 C:\windows\SysWOW64\mswsock.dll [270848] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\napinsp.dll [67584] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\pnrpnsp.dll [87040] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [87040] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\NLAapi.dll [84480] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\winrnr.dll [30208] (Microsoft Corporation)
x64-Catalog5 07 C:\Windows\System32\wshbth.dll [63488] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation)
x64-Catalog9 11 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation)
 
========================= Event log errors: ===============================
 
Application errors:
==================
Error: (04/05/2014 06:06:52 PM) (Source: BugSplat) (User: )
Description: lol_beta_riotgames_comLOL_Public-1
 
Error: (04/04/2014 10:01:04 PM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) (User: )
Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008]
 
Error: (04/04/2014 06:10:13 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "*" of attribute "language" in element "assemblyIdentity" is invalid.
 
Error: (04/04/2014 06:06:27 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "*" of attribute "language" in element "assemblyIdentity" is invalid.
 
Error: (04/02/2014 11:37:55 AM) (Source: Microsoft-Windows-Immersive-Shell) (User: LENOVO-PC)
Description: Activation of app microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 failed with error: -2147023174 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (04/02/2014 11:37:55 AM) (Source: Microsoft-Windows-Immersive-Shell) (User: LENOVO-PC)
Description: Activation of app microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 failed with error: -2147023174 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (03/31/2014 09:55:51 PM) (Source: Application Error) (User: )
Description: Faulting application name: League of Legends.exe, version: 4.4.0.1858, time stamp: 0x53214f63
Faulting module name: League of Legends.exe, version: 4.4.0.1858, time stamp: 0x53214f63
Exception code: 0xc0000005
Fault offset: 0x003e871f
Faulting process id: 0x1d44
Faulting application start time: 0xLeague of Legends.exe0
Faulting application path: League of Legends.exe1
Faulting module path: League of Legends.exe2
Report Id: League of Legends.exe3
Faulting package full name: League of Legends.exe4
Faulting package-relative application ID: League of Legends.exe5
 
Error: (03/31/2014 06:31:43 PM) (Source: Application Error) (User: )
Description: Faulting application name: League of Legends.exe, version: 4.4.0.1858, time stamp: 0x53214f63
Faulting module name: League of Legends.exe, version: 4.4.0.1858, time stamp: 0x53214f63
Exception code: 0xc0000005
Fault offset: 0x003e871f
Faulting process id: 0x1be4
Faulting application start time: 0xLeague of Legends.exe0
Faulting application path: League of Legends.exe1
Faulting module path: League of Legends.exe2
Report Id: League of Legends.exe3
Faulting package full name: League of Legends.exe4
Faulting package-relative application ID: League of Legends.exe5
 
Error: (03/31/2014 05:43:19 PM) (Source: Application Error) (User: )
Description: Faulting application name: League of Legends.exe, version: 4.4.0.1858, time stamp: 0x53214f63
Faulting module name: League of Legends.exe, version: 4.4.0.1858, time stamp: 0x53214f63
Exception code: 0xc0000005
Fault offset: 0x003e871f
Faulting process id: 0x324
Faulting application start time: 0xLeague of Legends.exe0
Faulting application path: League of Legends.exe1
Faulting module path: League of Legends.exe2
Report Id: League of Legends.exe3
Faulting package full name: League of Legends.exe4
Faulting package-relative application ID: League of Legends.exe5
 
Error: (03/29/2014 05:28:59 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "*" of attribute "language" in element "assemblyIdentity" is invalid.
 
 
System errors:
=============
Error: (04/05/2014 01:51:33 AM) (Source: DCOM) (User: LENOVO-PC)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
 
Error: (04/05/2014 01:51:33 AM) (Source: DCOM) (User: LENOVO-PC)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
 
Error: (04/04/2014 10:01:01 PM) (Source: DCOM) (User: LENOVO-PC)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
 
Error: (04/04/2014 10:01:01 PM) (Source: DCOM) (User: LENOVO-PC)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
 
Error: (04/03/2014 08:58:53 PM) (Source: DCOM) (User: LENOVO-PC)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
 
Error: (04/03/2014 08:58:53 PM) (Source: DCOM) (User: LENOVO-PC)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
 
Error: (04/03/2014 06:16:21 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x80070643: Definition Update for Windows Defender - KB2267602 (Definition 1.169.1692.0).
 
Error: (03/21/2014 04:32:37 PM) (Source: Service Control Manager) (User: )
Description: The Superfetch service terminated with the following error: 
%%1062
 
Error: (03/20/2014 08:07:45 PM) (Source: DCOM) (User: LENOVO-PC)
Description: application-specificLocalActivation{9E175B6D-F52A-11D8-B9A5-505054503030}{9E175B9C-F52A-11D8-B9A5-505054503030}Lenovo-PCAndyS-1-5-21-2334946735-2197681681-3319960473-1002LocalHost (Using LRPC)UnavailableS-1-15-2-166133766-364329674-1363815341-3526801394-550363254-846503155-2797947153
 
Error: (03/20/2014 08:05:13 PM) (Source: DCOM) (User: LENOVO-PC)
Description: application-specificLocalActivation{9E175B6D-F52A-11D8-B9A5-505054503030}{9E175B9C-F52A-11D8-B9A5-505054503030}Lenovo-PCAndyS-1-5-21-2334946735-2197681681-3319960473-1002LocalHost (Using LRPC)UnavailableS-1-15-2-166133766-364329674-1363815341-3526801394-550363254-846503155-2797947153
 
 
Microsoft Office Sessions:
=========================
Error: (04/05/2014 06:06:52 PM) (Source: BugSplat)(User: )
Description: lol_beta_riotgames_comLOL_Public-1
 
Error: (04/04/2014 10:01:04 PM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe)(User: )
Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008]
 
Error: (04/04/2014 06:10:13 PM) (Source: SideBySide)(User: )
Description: assemblyIdentitylanguage*C:\Program Files (x86)\Spybot - Search & Destroy\DelZip179.dllC:\Program Files (x86)\Spybot - Search & Destroy\DelZip179.dll8
 
Error: (04/04/2014 06:06:27 PM) (Source: SideBySide)(User: )
Description: assemblyIdentitylanguage*C:\Program Files (x86)\Spybot - Search & Destroy\DelZip179.dllC:\Program Files (x86)\Spybot - Search & Destroy\DelZip179.dll8
 
Error: (04/02/2014 11:37:55 AM) (Source: Microsoft-Windows-Immersive-Shell)(User: LENOVO-PC)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2147023174
 
Error: (04/02/2014 11:37:55 AM) (Source: Microsoft-Windows-Immersive-Shell)(User: LENOVO-PC)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2147023174
 
Error: (03/31/2014 09:55:51 PM) (Source: Application Error)(User: )
Description: League of Legends.exe4.4.0.185853214f63League of Legends.exe4.4.0.185853214f63c0000005003e871f1d4401cf4d5fef770010C:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.14\deploy\League of Legends.exeC:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.14\deploy\League of Legends.exee58d42f3-b959-11e3-826d-fcf8ae512e07
 
Error: (03/31/2014 06:31:43 PM) (Source: Application Error)(User: )
Description: League of Legends.exe4.4.0.185853214f63League of Legends.exe4.4.0.185853214f63c0000005003e871f1be401cf4d44a5ff9baaC:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.14\deploy\League of Legends.exeC:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.14\deploy\League of Legends.exe6145fad7-b93d-11e3-826d-fcf8ae512e07
 
Error: (03/31/2014 05:43:19 PM) (Source: Application Error)(User: )
Description: League of Legends.exe4.4.0.185853214f63League of Legends.exe4.4.0.185853214f63c0000005003e871f32401cf4d3f09afc2baC:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.14\deploy\League of Legends.exeC:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.14\deploy\League of Legends.exe9e054904-b936-11e3-826d-fcf8ae512e07
 
Error: (03/29/2014 05:28:59 PM) (Source: SideBySide)(User: )
Description: assemblyIdentitylanguage*C:\Program Files (x86)\Spybot - Search & Destroy\DelZip179.dllC:\Program Files (x86)\Spybot - Search & Destroy\DelZip179.dll8
 
 
CodeIntegrity Errors:
===================================
  Date: 2014-03-18 17:50:51.123
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-03-14 19:48:57.271
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-03-13 21:42:32.740
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-03-13 21:34:39.605
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-03-13 21:22:20.895
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
 
 
=========================== Installed Programs ============================
 
µTorrent (Version: 3.4.1.30768)
avast! Free Antivirus (Version: 9.0.2016)
Battle.net
CCleaner (Version: 4.11)
Definition Update for Microsoft Office 2013 (KB2760587) 32-Bit Edition
Diablo III
Energy Management (Version: 8.0.2.14)
GeForce Experience NvStream Client Components (Version: 1.6.28)
Genesys USB Mass Storage Device (Version: 4.3.0.7)
Google Chrome (Version: 33.0.1750.154)
Google Update Helper (Version: 1.3.23.9)
Hearthstone
Intel® Manageability Engine Firmware Recovery Agent (Version: 1.1.0.36960)
Intel® Management Engine Components (Version: 9.0.20.1447)
Intel® PRO/Wireless Driver (Version: 16.05.1000.0574)
Intel® PROSet/Wireless Software for Bluetooth® Technology(patch version 3.0.1337.1) (Version: 3.1.1307.0362)
Intel® Rapid Storage Technology (Version: 12.8.0.1016)
Intel® PROSet/Wireless Software (Version: 16.5.1)
Intel® PROSet/Wireless WiFi Software (Version: 16.05.1000.0264)
Intel® Trusted Connect Service Client (Version: 1.28.487.1)
Java 7 Update 51 (Version: 7.0.510)
Java Auto Updater (Version: 2.1.9.8)
League of Legends (Version: 3.0.0)
Lenovo EasyCamera (Version: 6.2.9200.10240)
Lenovo OneKey Recovery (Version: 8.0.0.2105)
Lenovo pointing device (Version: 11.4.26.1)
Malwarebytes Anti-Malware version 2.00.0.1000 (Version: 2.00.0.1000)
Microsoft Access MUI (English) 2013 (Version: 15.0.4569.1506)
Microsoft Access Setup Metadata MUI (English) 2013 (Version: 15.0.4569.1506)
Microsoft DCF MUI (English) 2013 (Version: 15.0.4420.1017)
Microsoft Excel MUI (English) 2013 (Version: 15.0.4569.1506)
Microsoft Groove MUI (English) 2013 (Version: 15.0.4569.1506)
Microsoft InfoPath MUI (English) 2013 (Version: 15.0.4569.1506)
Microsoft Lync MUI (English) 2013 (Version: 15.0.4420.1017)
Microsoft Office 64-bit Components 2013 (Version: 15.0.4569.1506)
Microsoft Office OSM MUI (English) 2013 (Version: 15.0.4420.1017)
Microsoft Office OSM UX MUI (English) 2013 (Version: 15.0.4420.1017)
Microsoft Office Professional Plus 2013 (Version: 15.0.4420.1017)
Microsoft Office Proofing (English) 2013 (Version: 15.0.4569.1506)
Microsoft Office Proofing Tools 2013 - English (Version: 15.0.4569.1506)
Microsoft Office Proofing Tools 2013 - Español (Version: 15.0.4569.1506)
Microsoft Office Shared 64-bit MUI (English) 2013 (Version: 15.0.4569.1506)
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2013 (Version: 15.0.4569.1506)
Microsoft Office Shared MUI (English) 2013 (Version: 15.0.4569.1506)
Microsoft Office Shared Setup Metadata MUI (English) 2013 (Version: 15.0.4569.1506)
Microsoft OneNote MUI (English) 2013 (Version: 15.0.4420.1017)
Microsoft Outlook MUI (English) 2013 (Version: 15.0.4420.1017)
Microsoft PowerPoint MUI (English) 2013 (Version: 15.0.4420.1017)
Microsoft Publisher MUI (English) 2013 (Version: 15.0.4420.1017)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Word MUI (English) 2013 (Version: 15.0.4420.1017)
Notepad++ (Version: 6.5.5)
NVIDIA 3D Vision Driver 335.23 (Version: 335.23)
NVIDIA Control Panel 335.23 (Version: 335.23)
NVIDIA GeForce Experience 1.8.2 (Version: 1.8.2)
NVIDIA Graphics Driver 335.23 (Version: 335.23)
NVIDIA HD Audio Driver 1.3.30.1 (Version: 1.3.30.1)
NVIDIA Install Application (Version: 2.1002.147.1067)
NVIDIA LED Visualizer 1.0 (Version: 1.0)
NVIDIA Network Service (Version: 1.0)
NVIDIA PhysX (Version: 9.13.1220)
NVIDIA PhysX System Software 9.13.1220 (Version: 9.13.1220)
NVIDIA ShadowPlay 11.10.11 (Version: 11.10.11)
NVIDIA Stereoscopic 3D Driver (Version: 7.17.13.3523)
NVIDIA Update 11.10.11 (Version: 11.10.11)
NVIDIA Update Core (Version: 11.10.11)
NVIDIA Virtual Audio 1.2.20 (Version: 1.2.20)
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506)
Pando Media Booster (Version: 2.6.0.7)
Qualcomm Atheros Inc.® AR81Family Gigabit/Fast Ethernet Driver (Version: 2.1.0.21)
Realtek High Definition Audio Driver (Version: 6.0.1.7030)
Search Protection (Version: 8.9.0.1)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition
SHIELD Streaming (Version: 1.7.306)
Skype™ 6.14 (Version: 6.14.104)
Spybot - Search & Destroy (Version: 1.6.2)
Start Menu (Version: 0.269.2.430)
System Requirements Lab CYRI (Version: 6.0.8.0)
Update for Microsoft Access 2013 (KB2827233) 32-Bit Edition
Update for Microsoft InfoPath 2013 (KB2837648) 32-Bit Edition
Update for Microsoft Lync 2013 (KB2817678) 32-Bit Edition
Update for Microsoft Lync 2013 (KB2863908) 32-Bit Edition
Update for Microsoft Office 2013 (KB2726954) 32-Bit Edition
Update for Microsoft Office 2013 (KB2726996) 32-Bit Edition
Update for Microsoft Office 2013 (KB2738038) 32-Bit Edition
Update for Microsoft Office 2013 (KB2760224) 32-Bit Edition
Update for Microsoft Office 2013 (KB2760242) 32-Bit Edition
Update for Microsoft Office 2013 (KB2760267) 32-Bit Edition
Update for Microsoft Office 2013 (KB2760539) 32-Bit Edition
Update for Microsoft Office 2013 (KB2760553) 32-Bit Edition
Update for Microsoft Office 2013 (KB2760610) 32-Bit Edition
Update for Microsoft Office 2013 (KB2767845) 32-Bit Edition
Update for Microsoft Office 2013 (KB2817314) 32-Bit Edition
Update for Microsoft Office 2013 (KB2817316) 32-Bit Edition
Update for Microsoft Office 2013 (KB2817490) 32-Bit Edition
Update for Microsoft Office 2013 (KB2817626) 32-Bit Edition
Update for Microsoft Office 2013 (KB2826004) 32-Bit Edition
Update for Microsoft Office 2013 (KB2827225) 32-Bit Edition
Update for Microsoft Office 2013 (KB2827230) 32-Bit Edition
Update for Microsoft Office 2013 (KB2827239) 32-Bit Edition
Update for Microsoft Office 2013 (KB2837626) 32-Bit Edition
Update for Microsoft Office 2013 (KB2837637) 32-Bit Edition
Update for Microsoft Office 2013 (KB2837638) 32-Bit Edition
Update for Microsoft Office 2013 (KB2837655) 32-Bit Edition
Update for Microsoft Office 2013 (KB2850066) 32-Bit Edition
Update for Microsoft OneNote 2013 (KB2850063) 32-Bit Edition
Update for Microsoft Outlook 2013 (KB2863911) 32-Bit Edition
Update for Microsoft PowerPoint 2013 (KB2767850) 32-Bit Edition
Update for Microsoft Publisher 2013 (KB2837635) 32-Bit Edition
Update for Microsoft SkyDrive Pro (KB2817495) 32-Bit Edition
Update for Microsoft Visio 2013 (KB2817306) 32-Bit Edition
Update for Microsoft Visio Viewer 2013 (KB2768338) 32-Bit Edition
Update for Microsoft Word 2013 (KB2837647) 32-Bit Edition
Windows Driver Package - Lenovo (ACPIVPC) System  (02/17/2013 9.52.0.776) (Version: 02/17/2013 9.52.0.776)
Windows Driver Package - Lenovo (WUDFRd) LenovoVhid  (07/25/2013 10.30.0.288) (Version: 07/25/2013 10.30.0.288)
 
========================= Memory info: ===================================
 
Percentage of memory in use: 29%
Total physical RAM: 8138.27 MB
Available physical RAM: 5713.46 MB
Total Pagefile: 9418.27 MB
Available Pagefile: 6242.63 MB
Total Virtual: 4095.88 MB
Available Virtual: 3974.35 MB
 
========================= Partitions: =====================================
 
1 Drive c: (Windows8_OS) (Fixed) (Total:891.7 GB) (Free:834.02 GB) NTFS
2 Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:21.69 GB) NTFS
 
========================= Users: ========================================
 
User accounts for \\LENOVO-PC
 
Administrator            Andy                     Guest                    
 
 
**** End of log ****
# AdwCleaner v3.023 - Report created 05/04/2014 at 20:24:58
# Updated 01/04/2014 by Xplode
# Operating System : Windows 8.1  (64 bits)
# Username : Andy - LENOVO-PC
# Running from : C:\Users\Andy\Desktop\AdwCleaner.exe
# Option : Clean
 
***** [ Services ] *****
 
 
***** [ Files / Folders ] *****
 
Folder Deleted : C:\windows\SysWOW64\AI_RecycleBin
Folder Deleted : C:\Users\Andy\AppData\Local\Pokki
Folder Deleted : C:\Users\Andy\AppData\Roaming\Search Protection
File Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Key Deleted : HKCU\Software\Classes\AllFileSystemObjects\shell\pokki
Key Deleted : HKCU\Software\Classes\Directory\shell\pokki
Key Deleted : HKCU\Software\Classes\Drive\shell\pokki
Key Deleted : HKCU\Software\Classes\lnkfile\shell\pokki
Key Deleted : HKCU\Software\Classes\pokki
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Pokki]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A75BE48D-BF58-4A8B-B96C-F9A09DFB9844}
Key Deleted : HKCU\Software\Pokki
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki
 
***** [ Browsers ] *****
 
-\\ Internet Explorer v11.0.9600.16518
 
 
-\\ Google Chrome v33.0.1750.154
 
[ File : C:\Users\Andy\AppData\Local\Google\Chrome\User Data\Default\preferences ]
 
 
*************************
 
AdwCleaner[R0].txt - [1554 octets] - [05/04/2014 20:22:42]
AdwCleaner[S0].txt - [1464 octets] - [05/04/2014 20:24:58]
 
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1524 octets] ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.3 (03.23.2014:1)
OS: Windows 8.1 x64
Ran by Andy on Sat 04/05/2014 at 20:32:40.55
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
 
 
~~~ Registry Values
 
 
 
~~~ Registry Keys
 
 
 
~~~ Files
 
 
 
~~~ Folders
 
 
 
~~~ Chrome
 
Successfully deleted: [Folder] C:\Users\Andy\appdata\local\Google\Chrome\User Data\Default\Extensions\aoiidodopnnhiflaflbfeblnojefhigh
 
 
 
~~~ Event Viewer Logs were cleared
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sat 04/05/2014 at 20:49:58.09
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
C:\Users\Andy\Downloads\ccsetup411 (1).exe Win32/Bundled.Toolbar.Google.D potentially unsafe application deleted - quarantined
C:\Users\Andy\Downloads\ccsetup411.exe Win32/Bundled.Toolbar.Google.D potentially unsafe application deleted - quarantined
 


#5 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:33 PM

Posted 07 April 2014 - 09:33 PM

Look in your Plugins and see if there is any Spigot there to Disable

Disabling Plugins in Google Chrome

 

Removing a Spigot toolbar

 

re run Malwarebytes

 

how is it now?


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#6 andyso7193

andyso7193
  • Topic Starter

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:05:33 PM

Posted 09 April 2014 - 06:25 PM

ran malwarebytes, it said no threat detected, but im still getting the yahoo spigot page opening



#7 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:33 PM

Posted 09 April 2014 - 07:28 PM

Nothing in plugins? Then we should get a deeper look to find it. Please follow this Preparation Guide, do steps 6,7 and 8 and post in a new topic.
Let me know if all went well.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#8 andyso7193

andyso7193
  • Topic Starter

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:05:33 PM

Posted 10 April 2014 - 04:30 PM

Hi I'm running windows 8.1 and DDS wont run it gives me a message saying "DDS is not meant to run on compatibility Mode, the program will now exit"

 

What should I do?



#9 andyso7193

andyso7193
  • Topic Starter

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:05:33 PM

Posted 10 April 2014 - 04:43 PM

Also, I did not find anything in plugins



#10 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:33 PM

Posted 10 April 2014 - 04:52 PM

Ok, my bad. DDS and 8.1 won't work. Start he new Spigot topic.

State you have 8.1 and add this link back here

http://www.bleepingcomputer.com/forums/t/530010/yahoo-spigot-virusmalware/#entry3339527
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#11 andyso7193

andyso7193
  • Topic Starter

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:05:33 PM

Posted 10 April 2014 - 05:46 PM

Will do



#12 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:10:33 AM

Posted 10 April 2014 - 06:18 PM

Please follow this Preparation Guide, Read steps 6,7 and 8

 

Do not try to post a DDS log, as your helper will get you to create a Farbar Service Scan log (or similar)

 

Re-post to Virus, Trojan, Spyware, and Malware Removal Logs forum, NOT here, for assistance by the Malware Response Team Experts.

Just describe the problem and let the Helpers decide on the next steps to take.

 

I think there was a mix up in the way the information was written, as you posted back to where you were

 

Good luck with your new topic -



#13 andyso7193

andyso7193
  • Topic Starter

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:05:33 PM

Posted 10 April 2014 - 07:05 PM

But DDS doesnt work on windows 8.1... so I cant do steps 6-8...



#14 Agouti

Agouti

  • Members
  • 1,548 posts
  • OFFLINE
  •  
  • Local time:08:33 PM

Posted 10 April 2014 - 07:35 PM

Maybe I can't help you with the Spigot issue, but the HomeGroup icon that suddenly and inexplicably appears is a known problem.  Please have a look at this Microsoft thread.

 

I suggest you try the other solutions in the thread but skip the one to delete the registry key.  In my own experience, the deleting of the registry key mentioned in the thread appeared to work at first.  However, I had to restore the key later when I discovered that without it I couldn't change my user account picture.



#15 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:10:33 AM

Posted 10 April 2014 - 09:10 PM

Hi -

The reply was to Read steps 6,7 and 8 as I am aware that you have Windows 8.1.

 

I then followed in my post to : Do not try to post a DDS log, as your helper will get you to create a Farbar Service Scan log (or similar)

 

NOW -

Re-post to Virus, Trojan, Spyware, and Malware Removal Logs forum, NOT here, for assistance by the Malware Response Team Experts.

Just describe the problem and let the Helpers decide on the next steps to take.

 

We are not allowed to ask for the needed logs in This section of the forum, so you must Re-post to the linked area.






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users