Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

computer is slow and pop ups.....


  • This topic is locked This topic is locked
11 replies to this topic

#1 ter67

ter67

  • Members
  • 68 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:scotland
  • Local time:11:58 AM

Posted 17 April 2014 - 05:37 PM

Hi was wondering if some one could help me to see if i`m infected by malware or whatever as i`m not good with pc`s and usualy leave that side of computing to the professional in my street who is a friend but unfortunately works offshore on the rigs in aberdeen .

what it is thats happening to my cumputer is that when i click the mouse to go to a next page +site or whatever it takes about 1 min ` to actualy change and when it does change it comes back slowly with blank boxes and then the picture or  txt comes in slowley as i say about 1 min` to actually fully click on a site or story with txts in it and also pictures even when i`m typing this in this message ive noticed that when i tap the letter to print it takes about 2secs for the letter to come in next also tonight when i had just come online and clicked on the bbcnews i was sitting reading something and 3 pop-ups from ebay came up .

I have tried using my malwarebytes+i run the full scan on my avast free edition and also i run Ccleaner and all came back with no malware or there was no suspicious items found.

I have tried using my avast and doing a full can and it came back with "no suspcious items found"

also i rum malwarebytes (free) and that to came back with "no suspicious items found"

I also run "Ccleaner" .

I am running windows 7

I hope someone can help me here as it seems to be slowly getting worse every time i go online ,thanking you and much obliged.


Edited by ter67, 17 April 2014 - 05:45 PM.


BC AdBot (Login to Remove)

 


#2 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:08:58 PM

Posted 17 April 2014 - 07:07 PM

Hello -

Please try these one Add-On or Extension at a time -

This sounds more like adware (advertising popups) and takeovers by them.
Based on what you describe, the next thing I would have you do is to check and remove / disable browser extensions.

If you are still having issues after that, the next step is to try resetting browser settings to default.
How to reset your browser settings to default in Internet Explorer, Firefox, Google Chrome, Opera, Safari

 

 

 

Please download and run RKill by Grinler. A black DOS box will briefly flash and then disappear.
This is normal and indicates the tool ran successfully. At most the tool will run for about 2 minutes

Please Copy and Paste the log back here.

 

 

Important: Do not reboot your computer until you complete the next step.

 

 

* Please download AdwCleaner by Xplode and save to your Desktop.
* Double-click on AdwCleaner.exe to run the tool.
* Vista/Windows 7/8 users right-click and select Run As Administrator.
* Click on the Scan button (only once)
* AdwCleaner will begin...be patient as the scan may take some time to complete.
* After the scan has finished, click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.

Check if there are any programs listed that you do not want removed (unusual) -

NOW -
* Click on the Clean button (only once)
* Press OK when asked to close all programs and follow the onscreen prompts.
* Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
* After rebooting, a logfile report (AdwCleaner[S0].txt) will open automatically.
* Copy and paste the contents of that logfile in your next reply.
* A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.



#3 ter67

ter67
  • Topic Starter

  • Members
  • 68 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:scotland
  • Local time:11:58 AM

Posted 23 April 2014 - 09:52 PM

Hi thank you for helping me out here again things have been going a little crazy with my pc although i have a rough idea i think what is wrong or should i say where the trouble started . my pc started going a bit slow although not to bad and then after about a week of slow pc i got an update from java and it looked fine that was until i clicked on it to update it and it wasnt like the normal updates from java which just let you download java.

This update was telling me when i was going through the update it was saying that to update this you had to take all this garb` along with the update  like mobogene,and clean up your pc+registry cleaner+a media player+and something which began with "vo" cant remember exactly what it was also there was no "skip" button which i usualy use if this happens and eventualy it will just give me what i`m updateing or downloading instead of all this garbage aswell , So after i had updated the java i went into add and remove` to delete the garb` that i knew would be in amongst all my prog`s and at 1st there was about 5 i had to uninstal so i started to do the uninstaling and i had clicked on 1 i cant remember which one it was but a ladys voice started talking ,saying something like `i had a lot of things on my registry or programs and the voice said unless you use this anti virus program she was talking about then i wouldnt be able to clean them from my add and remove and my pc would get slower n slower till it was almost unbarable "words to that effect" then it said that you`l notice that your your programs have changed in add and remove .

So straight away i went into add and remove to see what like it was and almost every prog` on my add and remove page had been changed from there normal dates when they were downloaded, to 23.4.2014 which was the night i had got the java update .

But then i started to do what you told me to do like uninstall extensions in google chrome and individual plugins and then i run the RKILL prog` and then i run the adwcleaner and done the scan and after it was rebooted and everything done i went back into add and remove and to my surprise there was only 1 program left which was utorrent and i havent a clue what to do next or what could happen so i would be much obliged if you could explain what is going on here ,its realy confusing esspecialy when you dont know much about computers so thanks again  .ive sent the results from the RKILL and ADWCLEANER below.

 

Rkill 2.6.5 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2014 BleepingComputer.com
More Information about Rkill can be found at this link:
 http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 04/24/2014 02:43:34 AM in x86 mode.
Windows Version: Windows 7 Ultimate

Checking for Windows services to stop:

 * No malware services found to stop.

Checking for processes to terminate:

 * No malware processes found to kill.

Checking Registry for malware related settings:

 * No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

 * No issues found.

Checking Windows Service Integrity:

 * No issues found.

Searching for Missing Digital Signatures:

 * No issues found.

Checking HOSTS File:

 * No issues found.

Program finished at: 04/24/2014 02:44:11 AM
Execution time: 0 hours(s), 0 minute(s), and 37 seconds(s)

...................................................................................................................................................

# AdwCleaner v3.202 - Report created 24/04/2014 at 02:52:45
# Updated 23/04/2014 by Xplode
# Operating System : Windows 7 Ultimate  (32 bits)
# Username : Ter - TER-PC
# Running from : C:\Users\Ter\Desktop\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : Util Mega Browse

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Registry Helper
Folder Deleted : C:\ProgramData\webSaVE
Folder Deleted : C:\Program Files\003
Folder Deleted : C:\Program Files\BitLord 2
Folder Deleted : C:\Program Files\predm
Folder Deleted : C:\Program Files\Registry Dr
Folder Deleted : C:\Program Files\ViewPassword
Folder Deleted : C:\Program Files\webSaVE
Folder Deleted : C:\Windows\system32\AI_RecycleBin
Folder Deleted : C:\Windows\system32\SearchProtect
Folder Deleted : C:\Users\Ter\.android
Folder Deleted : C:\Users\Ter\AppData\Local\genienext
Folder Deleted : C:\Users\Ter\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Ter\AppData\Local\playnowradio
Folder Deleted : C:\Users\Ter\AppData\Local\RegistryDr
Folder Deleted : C:\Users\Ter\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\Ter\AppData\Local\torch
Folder Deleted : C:\Users\Ter\AppData\Local\Tuguu_SL
Folder Deleted : C:\Users\Ter\AppData\Roaming\Activeris
Folder Deleted : C:\Users\Ter\AppData\Roaming\BitLord
Folder Deleted : C:\Users\Ter\AppData\Roaming\DriverCure
Folder Deleted : C:\Users\Ter\AppData\Roaming\eCyber
Folder Deleted : C:\Users\Ter\AppData\Roaming\goforfiles
Folder Deleted : C:\Users\Ter\AppData\Roaming\iSafe
Folder Deleted : C:\Users\Ter\AppData\Roaming\PerformerSoft
Folder Deleted : C:\Users\Ter\AppData\Roaming\viddyhd
Folder Deleted : C:\Users\Ter\AppData\Roaming\xVidly
Folder Deleted : C:\Users\Ter\Documents\BitLord
File Deleted : C:\Users\Ter\daemonprocess.txt
File Deleted : C:\Users\Ter\AppData\Roaming\aps.uninstall.scan.results
File Deleted : C:\Windows\System32\Tasks\GoforFilesUpdate
File Deleted : C:\Windows\Tasks\MySearchDial.job
File Deleted : C:\Windows\System32\Tasks\MySearchDial
File Deleted : C:\Windows\Tasks\SaveSense.job
File Deleted : C:\Windows\System32\Tasks\SaveSense

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7A4D1285-547E-419B-B8FD-700BF3D9BDED}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7A4D1285-547E-419B-B8FD-700BF3D9BDED}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E13EF17A-EE51-46D5-96E5-F45DDC9C26D8}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E13EF17A-EE51-46D5-96E5-F45DDC9C26D8}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5CD56365-5D26-43AA-9D1B-8B9F3E885E67}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5CD56365-5D26-43AA-9D1B-8B9F3E885E67}
Key Deleted : HKCU\Software\Classes\iLivid.torrent
Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Deleted : HKLM\SOFTWARE\Classes\iLivid.torrent
Key Deleted : HKLM\SOFTWARE\Classes\iMesh.AudioCD
Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BatBrowse_Setup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BatBrowse_Setup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BatBrowseSetup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BatBrowseSetup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\GoforFiles_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\GoforFiles_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\IminentSetup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\IminentSetup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\IMinentToolbar_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\IMinentToolbar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MegaBrowse_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MegaBrowse_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optimizerpro_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optimizerpro_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchProtectINT_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchProtectINT_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\speedupmypc_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\speedupmypc_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updateBatBrowse_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updateBatBrowse_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updateMegaBrowse_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updateMegaBrowse_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updateSaltarSmart_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updateSaltarSmart_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updatewhilokii_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updatewhilokii_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\utilMegaBrowse_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\utilMegaBrowse_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_download_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_download_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YourFile_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YourFile_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YourFileUpdater_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YourFileUpdater_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00B11DA2-75ED-4364-ABA5-9A95B1F5E946}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3BF72F68-72D8-461D-A884-329D936C5581}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{78E9D883-93CD-4072-BEF3-38EE581E2839}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{83AC1413-FCE4-4A46-9DD5-4F31F306E71F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6DDA37BA-0553-499A-AE0D-BEBA67204548}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C4C4F1F4-3074-4CB6-9FB8-0A64273166F0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0ABE0FED-50E7-4E42-A125-57C0A11DBCDE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3614D305-2DBB-4991-9297-750DD60FFC73}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Key Deleted : HKCU\Software\AnyProtect
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\GoforFiles
Key Deleted : HKCU\Software\IM
Key Deleted : HKCU\Software\Pokki
Key Deleted : HKCU\Software\RegisteredApplicationsEx
Key Deleted : HKCU\Software\SmartBar
Key Deleted : HKCU\Software\smarttweak
Key Deleted : HKCU\Software\TutoTag
Key Deleted : HKCU\Software\AppDataLow\Software\DynConIE
Key Deleted : HKCU\Software\AppDataLow\Software\ViewPassword
Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\Software\ExpressFiles
Key Deleted : HKLM\Software\GoforFiles
Key Deleted : HKLM\Software\Registry Helper
Key Deleted : HKLM\Software\Tutorials
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3152E1F19977892449DC968802CE8964
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A71991503412AEB42838B02C5ED9F9CD
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7652513C62FF63448CFF05163719DB7

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.7600.16385


-\\ Mozilla Firefox v28.0 (en-US)

[ File : C:\Users\Ter\AppData\Roaming\Mozilla\Firefox\Profiles\zrih549y.default-1381668396698\prefs.js ]

Line Deleted : user_pref("extensions.gophotoit.srchPrvdr", "Search The Web (GoPhotoIt)");
Line Deleted : user_pref("extensions.helperbar.LastHiddenTime", 23303630);
Line Deleted : user_pref("extensions.helperbar.SmartbarDisabled", true);
Line Deleted : user_pref("extensions.iminent.admin", false);
Line Deleted : user_pref("extensions.iminent.aflt", "orgnl");
Line Deleted : user_pref("extensions.iminent.appId", "{0E4B2CAB-B859-4C57-B96E-63DDEC692BC4}");
Line Deleted : user_pref("extensions.iminent.autoRvrt", "false");
Line Deleted : user_pref("extensions.iminent.dfltLng", "");
Line Deleted : user_pref("extensions.iminent.excTlbr", false);
Line Deleted : user_pref("extensions.iminent.ffxUnstlRst", false);
Line Deleted : user_pref("extensions.iminent.id", "427937110000000000000013eff0d44c");
Line Deleted : user_pref("extensions.iminent.instlDay", "16110");
Line Deleted : user_pref("extensions.iminent.instlRef", "");
Line Deleted : user_pref("extensions.iminent.newTab", false);
Line Deleted : user_pref("extensions.iminent.prdct", "iminent");
Line Deleted : user_pref("extensions.iminent.prtnrId", "iminent");
Line Deleted : user_pref("extensions.iminent.rvrt", "false");
Line Deleted : user_pref("extensions.iminent.smplGrp", "none");
Line Deleted : user_pref("extensions.iminent.tlbrId", "YBCPCSTIPO");
Line Deleted : user_pref("extensions.iminent.tlbrSrchUrl", "hxxp://start.iminent.com/?ref=toolbarm#q=");
Line Deleted : user_pref("extensions.iminent.vrsn", "1.8.28.3");
Line Deleted : user_pref("extensions.iminent.vrsnTs", "1.8.28.320:04:16");
Line Deleted : user_pref("extensions.iminent.vrsni", "1.8.28.3");
Line Deleted : user_pref("iminent.LayoutId", "1");
Line Deleted : user_pref("iminent.enabledAds", "false");
Line Deleted : user_pref("iminent.version", "8.4.3.1");
Line Deleted : user_pref("valueApps.ct3319214./9B+7E+x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E,x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E-x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E.:2z527.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E.x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E/x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E06CG5EL8:", "6E6D686F737272767372");
Line Deleted : user_pref("valueApps.ct3319214./9B+7E06CG5EL8:.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E06CG5EL;8I:K", "247E2D2F226A74736E757978787C7978242F4B49474F42357D5D5C3D");
Line Deleted : user_pref("valueApps.ct3319214./9B+7E06CG5EL;8I:K.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E0x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E1x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E2x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E31;CJI8A K@C.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E3x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E4x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E5x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E6x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E7x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E8x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E9x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E:x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E;x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E<x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E=x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E>x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E?x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E@x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7EAx305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7EBE3G=;D9N9=D", "372C2D326975762E3A3C7B3A39434A494841434B265146492965504656496571734D334B57");
Line Deleted : user_pref("valueApps.ct3319214./9B+7EBE3G=;D9N9=D.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B+7EBx305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7ECx305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7EDx305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7Etx305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B-0?3G>D", "666B40403D706D717A467046482074797B7825237D234F2A5122212B575757282C2F2B2D");
Line Deleted : user_pref("valueApps.ct3319214./9B-0?3G>D.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B-0?3G@6:5;", "");
Line Deleted : user_pref("valueApps.ct3319214./9B-0?3G@6:5;.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B-0?3GFA7EF", "2B2E2C3D");
Line Deleted : user_pref("valueApps.ct3319214./9B-0?3GFA7EF.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B-3=3ECCJA=F>", "247E333D2C452F4135276F297B7E7D21202F26313E4249357D37382F3A494D5D513F283338435D6554695B65546D57695D5D686365533C70766C66755E");
Line Deleted : user_pref("valueApps.ct3319214./9B-3=3ECCJA=F>.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B/>01=9A6K6<IM;KRIE@PDAWM", "6A696B7273747576");
Line Deleted : user_pref("valueApps.ct3319214./9B/>01=9A6K6<IM;KRIE@PDAWM.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B3=>@44I48?", "372C2D3269757633423633414847203E3D474E4D4C45474F2A554A4D2D5858585E4B554E366352564F");
Line Deleted : user_pref("valueApps.ct3319214./9B3=>@44I48?.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B5BA==9CJAG", "6A3E6C716F7270417A6F75487B477779204C7B7D7A");
Line Deleted : user_pref("valueApps.ct3319214./9B5BA==9CJAG.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B6B11G4C56B>F;P;ANR@P", "6E6D686F73716F747272787779");
Line Deleted : user_pref("valueApps.ct3319214./9B6B11G4C56B>F;P;ANR@P.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B90E@.3C;7B=?OFB>>RHIQS", "393F352F3E");
Line Deleted : user_pref("valueApps.ct3319214./9B90E@.3C;7B=?OFB>>RHIQS.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B9643G3/9E", "6A");
Line Deleted : user_pref("valueApps.ct3319214./9B9643G3/9E.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B;45>:BI9I7IE", "2B2E2C3D");
Line Deleted : user_pref("valueApps.ct3319214./9B;45>:BI9I7IE.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B<:222H64<", "393F352F3E");
Line Deleted : user_pref("valueApps.ct3319214./9B<:222H64<.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B<:222H64<L8DAJ", "6D70706E7674737975772A787972787E757C7B");
Line Deleted : user_pref("valueApps.ct3319214./9B<:222H64<L8DAJ.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B=+03EH8H8J?:", "4443");
Line Deleted : user_pref("valueApps.ct3319214./9B=+03EH8H8J?:.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B?+E2A52D8", "372C2D326975762E3A3C7B3A39434A494841434B2651464929655046566470727951555E5E52");
Line Deleted : user_pref("valueApps.ct3319214./9B?+E2A52D8.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B?B0D:8AJ62<H", "6D");
Line Deleted : user_pref("valueApps.ct3319214./9B?B0D:8AJ62<H.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9BA@0<0BI6A7GN:6@L?", "6C");
Line Deleted : user_pref("valueApps.ct3319214./9BA@0<0BI6A7GN:6@L?.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.PG_ENABLE", "74727565");
Line Deleted : user_pref("valueApps.ct3319214.PG_ENABLE.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.SF_JUST_INSTALLED", "46414C5345");
Line Deleted : user_pref("valueApps.ct3319214.SF_JUST_INSTALLED.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.SF_STATUS", "454E41424C4544");
Line Deleted : user_pref("valueApps.ct3319214.SF_STATUS.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.SF_USER_ID", "6369645F32323232303134323330353332303431313433");
Line Deleted : user_pref("valueApps.ct3319214.SF_USER_ID.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214._key_cl_active", "30326130353332612D616363652D343638342D623235312D653338303162373261303636");
Line Deleted : user_pref("valueApps.ct3319214._key_cl_active.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.cbfirsttime", "5361742046656220323220323031342030323A33303A353520474D542B303030302028474D54205374616E646172642054696D6529");
Line Deleted : user_pref("valueApps.ct3319214.cbfirsttime.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_appStateReportTime", "31333933303336323531343635");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_appStateReportTime.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_appState_Clarity_Active", "6F6E");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_appState_Clarity_Active.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_appsConfig.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_appsDefaultEnabled", "6E756C6C");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_appsDefaultEnabled.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_calledSetupService", "31");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_calledSetupService.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_currentVersion", "312E31332E302E3137");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_currentVersion.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_first_time", "31");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_first_time.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_lastInstallationSessionGuid", "7B31633337646331622D363262622D343535352D393665382D6132313038343938366432657D");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_lastInstallationSessionGuid.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_lastLoginTime", "31333933303336323532343334");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_lastLoginTime.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_localization.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_mamEnabled", "74727565");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_mamEnabled.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_settings1.13.0.17.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_showWelcomeGadget", "66616C7365");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_showWelcomeGadget.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_stamp", "38375F30");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_stamp.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_userBornDate", "3230313430323232");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_userBornDate.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_userId", "61613538313437382D613131392D346365382D613961352D616131623539346432373939");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_userId.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_user_approval_interacted", "");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_user_approval_interacted.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.url_history0001", "687474703A2F2F7777772E6262632E636F2E756B2F6E6577732F73636F746C616E642F676C6173676F775F616E645F776573742F3A3A3A636C69636B68616E646C65723A3A3A3133393330[...]
Line Deleted : user_pref("valueApps.ct3319214.url_history0001.storedInFile", true);

*************************

# AdwCleaner v3.202 - Report created 24/04/2014 at 02:52:45
# Updated 23/04/2014 by Xplode
# Operating System : Windows 7 Ultimate  (32 bits)
# Username : Ter - TER-PC
# Running from : C:\Users\Ter\Desktop\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : Util Mega Browse

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Registry Helper
Folder Deleted : C:\ProgramData\webSaVE
Folder Deleted : C:\Program Files\003
Folder Deleted : C:\Program Files\BitLord 2
Folder Deleted : C:\Program Files\predm
Folder Deleted : C:\Program Files\Registry Dr
Folder Deleted : C:\Program Files\ViewPassword
Folder Deleted : C:\Program Files\webSaVE
Folder Deleted : C:\Windows\system32\AI_RecycleBin
Folder Deleted : C:\Windows\system32\SearchProtect
Folder Deleted : C:\Users\Ter\.android
Folder Deleted : C:\Users\Ter\AppData\Local\genienext
Folder Deleted : C:\Users\Ter\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Ter\AppData\Local\playnowradio
Folder Deleted : C:\Users\Ter\AppData\Local\RegistryDr
Folder Deleted : C:\Users\Ter\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\Ter\AppData\Local\torch
Folder Deleted : C:\Users\Ter\AppData\Local\Tuguu_SL
Folder Deleted : C:\Users\Ter\AppData\Roaming\Activeris
Folder Deleted : C:\Users\Ter\AppData\Roaming\BitLord
Folder Deleted : C:\Users\Ter\AppData\Roaming\DriverCure
Folder Deleted : C:\Users\Ter\AppData\Roaming\eCyber
Folder Deleted : C:\Users\Ter\AppData\Roaming\goforfiles
Folder Deleted : C:\Users\Ter\AppData\Roaming\iSafe
Folder Deleted : C:\Users\Ter\AppData\Roaming\PerformerSoft
Folder Deleted : C:\Users\Ter\AppData\Roaming\viddyhd
Folder Deleted : C:\Users\Ter\AppData\Roaming\xVidly
Folder Deleted : C:\Users\Ter\Documents\BitLord
File Deleted : C:\Users\Ter\daemonprocess.txt
File Deleted : C:\Users\Ter\AppData\Roaming\aps.uninstall.scan.results
File Deleted : C:\Windows\System32\Tasks\GoforFilesUpdate
File Deleted : C:\Windows\Tasks\MySearchDial.job
File Deleted : C:\Windows\System32\Tasks\MySearchDial
File Deleted : C:\Windows\Tasks\SaveSense.job
File Deleted : C:\Windows\System32\Tasks\SaveSense

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7A4D1285-547E-419B-B8FD-700BF3D9BDED}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7A4D1285-547E-419B-B8FD-700BF3D9BDED}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E13EF17A-EE51-46D5-96E5-F45DDC9C26D8}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E13EF17A-EE51-46D5-96E5-F45DDC9C26D8}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5CD56365-5D26-43AA-9D1B-8B9F3E885E67}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5CD56365-5D26-43AA-9D1B-8B9F3E885E67}
Key Deleted : HKCU\Software\Classes\iLivid.torrent
Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Deleted : HKLM\SOFTWARE\Classes\iLivid.torrent
Key Deleted : HKLM\SOFTWARE\Classes\iMesh.AudioCD
Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BatBrowse_Setup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BatBrowse_Setup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BatBrowseSetup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BatBrowseSetup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\GoforFiles_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\GoforFiles_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\IminentSetup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\IminentSetup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\IMinentToolbar_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\IMinentToolbar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MegaBrowse_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MegaBrowse_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optimizerpro_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optimizerpro_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchProtectINT_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchProtectINT_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\speedupmypc_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\speedupmypc_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updateBatBrowse_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updateBatBrowse_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updateMegaBrowse_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updateMegaBrowse_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updateSaltarSmart_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updateSaltarSmart_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updatewhilokii_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updatewhilokii_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\utilMegaBrowse_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\utilMegaBrowse_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_download_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_download_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YourFile_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YourFile_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YourFileUpdater_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\YourFileUpdater_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00B11DA2-75ED-4364-ABA5-9A95B1F5E946}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3BF72F68-72D8-461D-A884-329D936C5581}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{78E9D883-93CD-4072-BEF3-38EE581E2839}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{83AC1413-FCE4-4A46-9DD5-4F31F306E71F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6DDA37BA-0553-499A-AE0D-BEBA67204548}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C4C4F1F4-3074-4CB6-9FB8-0A64273166F0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0ABE0FED-50E7-4E42-A125-57C0A11DBCDE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3614D305-2DBB-4991-9297-750DD60FFC73}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Key Deleted : HKCU\Software\AnyProtect
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\GoforFiles
Key Deleted : HKCU\Software\IM
Key Deleted : HKCU\Software\Pokki
Key Deleted : HKCU\Software\RegisteredApplicationsEx
Key Deleted : HKCU\Software\SmartBar
Key Deleted : HKCU\Software\smarttweak
Key Deleted : HKCU\Software\TutoTag
Key Deleted : HKCU\Software\AppDataLow\Software\DynConIE
Key Deleted : HKCU\Software\AppDataLow\Software\ViewPassword
Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\Software\ExpressFiles
Key Deleted : HKLM\Software\GoforFiles
Key Deleted : HKLM\Software\Registry Helper
Key Deleted : HKLM\Software\Tutorials
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3152E1F19977892449DC968802CE8964
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A71991503412AEB42838B02C5ED9F9CD
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7652513C62FF63448CFF05163719DB7

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.7600.16385


-\\ Mozilla Firefox v28.0 (en-US)

[ File : C:\Users\Ter\AppData\Roaming\Mozilla\Firefox\Profiles\zrih549y.default-1381668396698\prefs.js ]

Line Deleted : user_pref("extensions.gophotoit.srchPrvdr", "Search The Web (GoPhotoIt)");
Line Deleted : user_pref("extensions.helperbar.LastHiddenTime", 23303630);
Line Deleted : user_pref("extensions.helperbar.SmartbarDisabled", true);
Line Deleted : user_pref("extensions.iminent.admin", false);
Line Deleted : user_pref("extensions.iminent.aflt", "orgnl");
Line Deleted : user_pref("extensions.iminent.appId", "{0E4B2CAB-B859-4C57-B96E-63DDEC692BC4}");
Line Deleted : user_pref("extensions.iminent.autoRvrt", "false");
Line Deleted : user_pref("extensions.iminent.dfltLng", "");
Line Deleted : user_pref("extensions.iminent.excTlbr", false);
Line Deleted : user_pref("extensions.iminent.ffxUnstlRst", false);
Line Deleted : user_pref("extensions.iminent.id", "427937110000000000000013eff0d44c");
Line Deleted : user_pref("extensions.iminent.instlDay", "16110");
Line Deleted : user_pref("extensions.iminent.instlRef", "");
Line Deleted : user_pref("extensions.iminent.newTab", false);
Line Deleted : user_pref("extensions.iminent.prdct", "iminent");
Line Deleted : user_pref("extensions.iminent.prtnrId", "iminent");
Line Deleted : user_pref("extensions.iminent.rvrt", "false");
Line Deleted : user_pref("extensions.iminent.smplGrp", "none");
Line Deleted : user_pref("extensions.iminent.tlbrId", "YBCPCSTIPO");
Line Deleted : user_pref("extensions.iminent.tlbrSrchUrl", "hxxp://start.iminent.com/?ref=toolbarm#q=");
Line Deleted : user_pref("extensions.iminent.vrsn", "1.8.28.3");
Line Deleted : user_pref("extensions.iminent.vrsnTs", "1.8.28.320:04:16");
Line Deleted : user_pref("extensions.iminent.vrsni", "1.8.28.3");
Line Deleted : user_pref("iminent.LayoutId", "1");
Line Deleted : user_pref("iminent.enabledAds", "false");
Line Deleted : user_pref("iminent.version", "8.4.3.1");
Line Deleted : user_pref("valueApps.ct3319214./9B+7E+x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E,x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E-x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E.:2z527.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E.x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E/x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E06CG5EL8:", "6E6D686F737272767372");
Line Deleted : user_pref("valueApps.ct3319214./9B+7E06CG5EL8:.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E06CG5EL;8I:K", "247E2D2F226A74736E757978787C7978242F4B49474F42357D5D5C3D");
Line Deleted : user_pref("valueApps.ct3319214./9B+7E06CG5EL;8I:K.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E0x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E1x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E2x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E31;CJI8A K@C.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E3x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E4x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E5x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E6x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E7x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E8x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E9x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E:x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E;x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E<x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E=x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E>x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E?x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7E@x305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7EAx305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7EBE3G=;D9N9=D", "372C2D326975762E3A3C7B3A39434A494841434B265146492965504656496571734D334B57");
Line Deleted : user_pref("valueApps.ct3319214./9B+7EBE3G=;D9N9=D.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B+7EBx305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7ECx305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7EDx305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B+7Etx305.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214./9B-0?3G>D", "666B40403D706D717A467046482074797B7825237D234F2A5122212B575757282C2F2B2D");
Line Deleted : user_pref("valueApps.ct3319214./9B-0?3G>D.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B-0?3G@6:5;", "");
Line Deleted : user_pref("valueApps.ct3319214./9B-0?3G@6:5;.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B-0?3GFA7EF", "2B2E2C3D");
Line Deleted : user_pref("valueApps.ct3319214./9B-0?3GFA7EF.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B-3=3ECCJA=F>", "247E333D2C452F4135276F297B7E7D21202F26313E4249357D37382F3A494D5D513F283338435D6554695B65546D57695D5D686365533C70766C66755E");
Line Deleted : user_pref("valueApps.ct3319214./9B-3=3ECCJA=F>.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B/>01=9A6K6<IM;KRIE@PDAWM", "6A696B7273747576");
Line Deleted : user_pref("valueApps.ct3319214./9B/>01=9A6K6<IM;KRIE@PDAWM.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B3=>@44I48?", "372C2D3269757633423633414847203E3D474E4D4C45474F2A554A4D2D5858585E4B554E366352564F");
Line Deleted : user_pref("valueApps.ct3319214./9B3=>@44I48?.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B5BA==9CJAG", "6A3E6C716F7270417A6F75487B477779204C7B7D7A");
Line Deleted : user_pref("valueApps.ct3319214./9B5BA==9CJAG.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B6B11G4C56B>F;P;ANR@P", "6E6D686F73716F747272787779");
Line Deleted : user_pref("valueApps.ct3319214./9B6B11G4C56B>F;P;ANR@P.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B90E@.3C;7B=?OFB>>RHIQS", "393F352F3E");
Line Deleted : user_pref("valueApps.ct3319214./9B90E@.3C;7B=?OFB>>RHIQS.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B9643G3/9E", "6A");
Line Deleted : user_pref("valueApps.ct3319214./9B9643G3/9E.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B;45>:BI9I7IE", "2B2E2C3D");
Line Deleted : user_pref("valueApps.ct3319214./9B;45>:BI9I7IE.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B<:222H64<", "393F352F3E");
Line Deleted : user_pref("valueApps.ct3319214./9B<:222H64<.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B<:222H64<L8DAJ", "6D70706E7674737975772A787972787E757C7B");
Line Deleted : user_pref("valueApps.ct3319214./9B<:222H64<L8DAJ.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B=+03EH8H8J?:", "4443");
Line Deleted : user_pref("valueApps.ct3319214./9B=+03EH8H8J?:.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B?+E2A52D8", "372C2D326975762E3A3C7B3A39434A494841434B2651464929655046566470727951555E5E52");
Line Deleted : user_pref("valueApps.ct3319214./9B?+E2A52D8.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9B?B0D:8AJ62<H", "6D");
Line Deleted : user_pref("valueApps.ct3319214./9B?B0D:8AJ62<H.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214./9BA@0<0BI6A7GN:6@L?", "6C");
Line Deleted : user_pref("valueApps.ct3319214./9BA@0<0BI6A7GN:6@L?.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.PG_ENABLE", "74727565");
Line Deleted : user_pref("valueApps.ct3319214.PG_ENABLE.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.SF_JUST_INSTALLED", "46414C5345");
Line Deleted : user_pref("valueApps.ct3319214.SF_JUST_INSTALLED.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.SF_STATUS", "454E41424C4544");
Line Deleted : user_pref("valueApps.ct3319214.SF_STATUS.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.SF_USER_ID", "6369645F32323232303134323330353332303431313433");
Line Deleted : user_pref("valueApps.ct3319214.SF_USER_ID.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214._key_cl_active", "30326130353332612D616363652D343638342D623235312D653338303162373261303636");
Line Deleted : user_pref("valueApps.ct3319214._key_cl_active.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.cbfirsttime", "5361742046656220323220323031342030323A33303A353520474D542B303030302028474D54205374616E646172642054696D6529");
Line Deleted : user_pref("valueApps.ct3319214.cbfirsttime.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_appStateReportTime", "31333933303336323531343635");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_appStateReportTime.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_appState_Clarity_Active", "6F6E");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_appState_Clarity_Active.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_appsConfig.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_appsDefaultEnabled", "6E756C6C");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_appsDefaultEnabled.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_calledSetupService", "31");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_calledSetupService.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_currentVersion", "312E31332E302E3137");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_currentVersion.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_first_time", "31");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_first_time.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_lastInstallationSessionGuid", "7B31633337646331622D363262622D343535352D393665382D6132313038343938366432657D");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_lastInstallationSessionGuid.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_lastLoginTime", "31333933303336323532343334");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_lastLoginTime.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_localization.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_mamEnabled", "74727565");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_mamEnabled.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_settings1.13.0.17.storedInFile", true);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_showWelcomeGadget", "66616C7365");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_showWelcomeGadget.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_stamp", "38375F30");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_stamp.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_userBornDate", "3230313430323232");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_userBornDate.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_userId", "61613538313437382D613131392D346365382D613961352D616131623539346432373939");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_userId.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_user_approval_interacted", "");
Line Deleted : user_pref("valueApps.ct3319214.mam_gk_user_approval_interacted.storedInFile", false);
Line Deleted : user_pref("valueApps.ct3319214.url_history0001", "687474703A2F2F7777772E6262632E636F2E756B2F6E6577732F73636F746C616E642F676C6173676F775F616E645F776573742F3A3A3A636C69636B68616E646C65723A3A3A3133393330[...]
Line Deleted : user_pref("valueApps.ct3319214.url_history0001.storedInFile", true);

*************************

AdwCleaner[R0].txt - [21823 octets] - [24/04/2014 02:47:32]
AdwCleaner[S0].txt - [22456 octets] - [24/04/2014 02:52:45]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [22517 octets] ##########


 



#4 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:08:58 PM

Posted 24 April 2014 - 01:43 AM

Hi -

I read most of what you left (above) and it seems like a fake download site, there are a few around.

We will look deeper then -

 

Download Security Check from HERE or HERE and save it to your Desktop.
* Double-click SecurityCheck.exe
* Follow the onscreen instructions inside of the black box.
* A Notepad document should open automatically called checkup.txt; please post the contents of that document.
Note:: If any security program requests permission to access the Internet, allow it to do so.

 

 

Next -

We can search for mobogene,and clean up your pc+registry cleaner+a media player+and something which began with "vo" ETC.

 

Please download MiniToolBox to desktop and run it.
Checkmark the following boxes:

* List content of Hosts
* Flush DNS
* Report IE Proxy Settings
* Reset IE Proxy Settings
* Report FF Proxy Settings
* Reset FF Proxy Settings
* List last 10 Event Viewer log
** List Installed Programs
* List Users, Partitions and Memory size
Note: When using "Reset FF Proxy Settings" option Firefox should be closed.
Click Go and Copy / Paste the result. (result.txt)

 

 

 

If you can, please run this program, but it will take quite a while to run.

 

Scan with ESET Online Scan
1. Please go to Here to run the online scannner from ESET.
2. Be sure to Temporarily Disable Your Anti-virus while performing the online scan
3. Tick the box next to YES, I accept the Terms of Use.
4. Click Start
5. When asked, allow the ActiveX control to install
6. Click Start
7. Under scan settings, check "Scan Archives" and "Remove found threats"
8. Click on Advanced Settings and ensure these options are ticked:
Scan for potentially unwanted applications
Scan for potentially unsafe applications
Enable Anti-Stealth Technology

9, Click Scan
10. Wait for the scan to finish. This can take quite a while to download the program and then updates for a first scan.
11. If any threats were found, click the 'List of found threats' , then click Export to text file....
12. Save it to your desktop, then please copy and paste that log as a reply to this topic.

If nothing is found, just tell us.



#5 ter67

ter67
  • Topic Starter

  • Members
  • 68 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:scotland
  • Local time:11:58 AM

Posted 24 April 2014 - 03:08 PM

Hi A/A just to update you on whats been happening bud below is the security check reults and below that is the" minitoolbox"results i also run the ESET scanner and it came back saying "no threats found" ....

 Results of screen317's Security Check version 0.99.82  
 Windows 7  x86 (UAC is enabled)  
 Out of date service pack!!
``````````````Antivirus/Firewall Check:``````````````
 Windows Firewall Enabled!  
avast! Antivirus   
 Antivirus up to date!   
`````````Anti-malware/Other Utilities Check:`````````
  Adobe Flash Player     12.0.0.77 Flash Player out of Date!  
````````Process Check: objlist.exe by Laurent````````  
 AVAST Software Avast AvastSvc.exe  
 AVAST Software Avast AvastUI.exe  
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C: 31% Defragment your hard drive soon! (Do NOT defrag if SSD!)
````````````````````End of Log``````````````````````

++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++==

MiniToolBox by Farbar  Version: 23-01-2014
Ran by Ter (administrator) on 24-04-2014 at 19:35:33
Running from "C:\Users\Ter\Desktop"
Microsoft Windows 7 Ultimate   (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
ProxyServer:

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================




========================= Event log errors: ===============================

Application errors:
==================
Error: (04/24/2014 00:37:17 AM) (Source: RasClient) (User: )
Description: CoId={68094EF2-9A07-4598-926B-2016794DB004}: The user Ter-PC\Ter dialed a connection named Broadband Connection 2 which has failed. The error code returned on failure is 651.

Error: (04/24/2014 00:35:56 AM) (Source: RasClient) (User: )
Description: CoId={1E51B521-5982-4C6C-AC82-82825078C2DD}: The user Ter-PC\Ter dialed a connection named Broadband Connection 2 which has failed. The error code returned on failure is 651.

Error: (04/24/2014 00:34:50 AM) (Source: RasClient) (User: )
Description: CoId={65824053-8F1D-496C-A246-06F229A244F3}: The user Ter-PC\Ter dialed a connection named Broadband Connection 2 which has failed. The error code returned on failure is 651.

Error: (04/24/2014 00:33:14 AM) (Source: RasClient) (User: )
Description: CoId={E248D6E8-647D-4A21-9907-2F093A39F158}: The user Ter-PC\Ter dialed a connection named Broadband Connection which has failed. The error code returned on failure is 651.

Error: (04/23/2014 06:54:59 PM) (Source: Microsoft-Windows-RestartManager) (User: Ter-PC)
Description: Application or service 'linmsl' could not be shut down.

Error: (04/23/2014 02:44:19 AM) (Source: Registry Helper Service) (User: )
Description: Error: Service started

Error: (04/23/2014 02:41:09 AM) (Source: Application Hang) (User: )
Description: The program Au_.exe version 1.34.4.10 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 4f4

Start Time: 01cf5e9455621657

Termination Time: 8

Application Path: C:\Users\Ter\AppData\Local\Temp\~nsu.tmp\Au_.exe

Report Id:

Error: (04/23/2014 02:33:46 AM) (Source: VSS) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface.  hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.


Operation:
   Gathering Writer Data

Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {8ee2a311-5c2b-4e63-86f4-22b0b46a62a3}

Error: (04/21/2014 10:02:44 PM) (Source: Wininit) (User: )
Description: A critical system process, C:\Windows\system32\lsm.exe, failed with status code 255.  The machine must now be restarted.

Error: (04/21/2014 10:02:44 PM) (Source: Application Error) (User: )
Description: Faulting application name: lsm.exe, version: 6.1.7600.16385, time stamp: 0x4a5bcb22
Faulting module name: ntdll.dll, version: 6.1.7600.16385, time stamp: 0x4a5bdadb
Exception code: 0xc0000005
Fault offset: 0x0002d5f7
Faulting process id: 0x260
Faulting application start time: 0xlsm.exe0
Faulting application path: lsm.exe1
Faulting module path: lsm.exe2
Report Id: lsm.exe3


System errors:
=============
Error: (04/24/2014 00:41:12 AM) (Source: Service Control Manager) (User: )
Description: The Util Mega Browse service failed to start due to the following error:
%%2

Error: (04/23/2014 08:00:55 PM) (Source: Service Control Manager) (User: )
Description: The Util Mega Browse service failed to start due to the following error:
%%2

Error: (04/23/2014 07:07:45 PM) (Source: Service Control Manager) (User: )
Description: The Foxit Cloud Safe Update Service service is marked as an interactive service.  However, the system is configured to not allow interactive services.  This service may not function properly.

Error: (04/23/2014 06:51:02 PM) (Source: Service Control Manager) (User: )
Description: The Util Mega Browse service failed to start due to the following error:
%%2

Error: (04/23/2014 06:41:28 PM) (Source: Service Control Manager) (User: )
Description: The LiveUpdate service terminated unexpectedly.  It has done this 1 time(s).

Error: (04/23/2014 06:40:01 PM) (Source: Service Control Manager) (User: )
Description: The Util Mega Browse service failed to start due to the following error:
%%2

Error: (04/23/2014 00:03:08 AM) (Source: Service Control Manager) (User: )
Description: The LiveUpdate service terminated unexpectedly.  It has done this 1 time(s).

Error: (04/22/2014 11:55:38 PM) (Source: Service Control Manager) (User: )
Description: The Util Mega Browse service failed to start due to the following error:
%%2

Error: (04/21/2014 10:05:39 PM) (Source: Service Control Manager) (User: )
Description: The LiveUpdate service terminated unexpectedly.  It has done this 1 time(s).

Error: (04/21/2014 10:04:39 PM) (Source: Service Control Manager) (User: )
Description: The Util Mega Browse service failed to start due to the following error:
%%2


Microsoft Office Sessions:
=========================
Error: (04/24/2014 00:37:17 AM) (Source: RasClient)(User: )
Description: {68094EF2-9A07-4598-926B-2016794DB004}Ter-PC\TerBroadband Connection 2651

Error: (04/24/2014 00:35:56 AM) (Source: RasClient)(User: )
Description: {1E51B521-5982-4C6C-AC82-82825078C2DD}Ter-PC\TerBroadband Connection 2651

Error: (04/24/2014 00:34:50 AM) (Source: RasClient)(User: )
Description: {65824053-8F1D-496C-A246-06F229A244F3}Ter-PC\TerBroadband Connection 2651

Error: (04/24/2014 00:33:14 AM) (Source: RasClient)(User: )
Description: {E248D6E8-647D-4A21-9907-2F093A39F158}Ter-PC\TerBroadband Connection651

Error: (04/23/2014 06:54:59 PM) (Source: Microsoft-Windows-RestartManager)(User: Ter-PC)
Description: 1C:\Program Files\LPT\linmsl.exelinmsl0511736400

Error: (04/23/2014 02:44:19 AM) (Source: Registry Helper Service)(User: )
Description: Service started

Error: (04/23/2014 02:41:09 AM) (Source: Application Hang)(User: )
Description: Au_.exe1.34.4.104f401cf5e94556216578C:\Users\Ter\AppData\Local\Temp\~nsu.tmp\Au_.exe

Error: (04/23/2014 02:33:46 AM) (Source: VSS)(User: )
Description: 0x80070005, Access is denied.


Operation:
   Gathering Writer Data

Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {8ee2a311-5c2b-4e63-86f4-22b0b46a62a3}

Error: (04/21/2014 10:02:44 PM) (Source: Wininit)(User: )
Description: C:\Windows\system32\lsm.exe255

Error: (04/21/2014 10:02:44 PM) (Source: Application Error)(User: )
Description: lsm.exe6.1.7600.163854a5bcb22ntdll.dll6.1.7600.163854a5bdadbc00000050002d5f726001cf5da20d98100fC:\Windows\system32\lsm.exeC:\Windows\SYSTEM32\ntdll.dll481bfe94-c998-11e3-beda-0013eff0d44c


=========================== Installed Programs ============================

µTorrent (Version: 3.4.1.30888)
ConvertHelper 2.2

========================= Memory info: ===================================

Percentage of memory in use: 32%
Total physical RAM: 2037.18 MB
Available physical RAM: 1372.38 MB
Total Pagefile: 4074.36 MB
Available Pagefile: 3323.05 MB
Total Virtual: 2047.88 MB
Available Virtual: 1948.39 MB

========================= Partitions: =====================================

1 Drive c: (Windows 7) (Fixed) (Total:128.91 GB) (Free:90.11 GB) NTFS
2 Drive d: (BACKUP) (Fixed) (Total:20.04 GB) (Free:11.12 GB) NTFS

========================= Users: ========================================

User accounts for \\TER-PC

Administrator            Guest                    Ter                      


**** End of log ****

                                 +++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

 

HOPE THIS WAS OF SOME HELP TO YOU BUD ...................................

 

 



#6 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:08:58 PM

Posted 24 April 2014 - 05:42 PM

Hello -

 

I find it hard to believe the result when it says =>

 

Installed Programs

µTorrent (Version: 3.4.1.30888)  <= You should delete this as it is a major area for infections
ConvertHelper 2.2

 

Then =>

Memory info

Percentage of memory in use: 32%

 

Those 2 programs will not use 32% of 2G RAM

 

 

Please download a New Copy of MiniToolBox to desktop and run it. (Right click, Delete the old version)
Checkmark ONLY the following box:

** List Installed Programs

Copy and paste the small log back here

 

 

 

Windows 7  x86 (UAC is enabled)  
 Out of date service pack!!

You need to update to Windows 7 SP1 (The red line is a link to your update area)

 

When was the last time you installed Windows Updates ??

 

 

 

Please post a snapshot with Speccy for more system details -
How to Publish a snapshot with Speccy <<-- Full Directions (Only post the link)



#7 ter67

ter67
  • Topic Starter

  • Members
  • 68 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:scotland
  • Local time:11:58 AM

Posted 24 April 2014 - 10:09 PM

Hi sorry about the >

Installed Programs

µTorrent (Version: 3.4.1.30888)  <= You should delete this as it is a major area for infections
ConvertHelper 2.2 I have uninstalled utorrent and also converthelper ive downloaded BITLORD to download a movie for my grandson but i`m gonna delete it after i get this film and yeh i guess i`m going into to many dodgey areas so from now on i`ll take your advice and stay out of these type of programs so thanks for advising me i should have learned the last time but its now taken onboard thank you .

Also i havent run my windows updates for a long time as the chap who fixes my computer always tells me not to download updates that he would sort it out for me but since he aint here i havent a clue wether i can download service pack 1,could you please explain why he tells me not to uopate through windows? thank you again my friend i`ll put the result of the mini tool box below ..........

                        ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

MiniToolBox by Farbar  Version: 23-01-2014
Ran by Ter (administrator) on 25-04-2014 at 03:18:47
Running from "C:\Users\Ter\Desktop"
Microsoft Windows 7 Ultimate   (X86)
Boot Mode: Normal
***************************************************************************

=========================== Installed Programs ============================

BitLord 2.3 (Version: 2.3.2-254)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022

**** End of log ****

 

///////.........................................................................................................................................................................

SPECCY LINK >>>>>>>>>>>>>>>http://speccy.piriform.com/results/obZQOptG7noZBgE2PGiKV1r

 

Hope this is correct what i have sent you .........



#8 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:08:58 PM

Posted 25 April 2014 - 01:18 AM

=========================== Installed Programs ============================
BitLord 2.3 (Version: 2.3.2-254)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
**** End of log ****

This is totally wrong. You have "programs" installed on your computer ??

What you have listed are not Programs, they are 2 of the 30 or so items that you have installed .........

 

>> ive downloaded BITLORD to download a movie for my grandson << So you illegally download movies ??

 

Please read the following items, and if you are not trying to play a silly game, what are you doing -

 

Installation Date: 16/06/2011 <= This is the date that Windows was installed on this computer

Windows Update
AutoUpdate: Disabled
..... WHY ??? You need Windows Updates every month.

 

Your only installed Windows Update is
Hotfixes: 03/12/2013 Definition Update for Windows Defender

 

Antivirus
Antivirus: Enabled
Display Name: avast! Antivirus <= This should show as an installed program

 

Internet Explorer
Version: 8.0.7600.16385 <= Your current Internet Explorer version should be 11 not 8.

 

Go Start Orb > Control Panel > Windows Update > See how many Important Updates are available, and install them.



#9 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:08:58 PM

Posted 25 April 2014 - 03:41 AM

Please read below and you will see a typical list of Installed Programs -

It is followed by a typical Memory Info log that is similar to yours -

 

This is what I expect to see from the request I have made............

 

 

=========================== Installed Programs ============================

 Update for Microsoft Office 2007 (KB2508958)
2007 Microsoft Office system (Version: 12.0.6612.1000)
500 From Special K
Acrobat.com (Version: 1.6.65)
Adobe Flash Player 13 ActiveX (Version: 13.0.0.182)
Adobe Flash Player 13 Plugin (Version: 13.0.0.182)
Adobe Reader XI (11.0.06) (Version: 11.0.06)
Adobe Shockwave Player 12.0 (Version: 12.0.3.133)
Adobe Shockwave Player 12.1 (Version: 12.1.0.150)
ATI Catalyst Install Manager (Version: 3.0.741.0)
Auslogics Disk Defrag (Version: version 3.2)
Bejeweled 2 Deluxe 1.0
Blueline 1.1.1
BurnAware Free 5.1
Business Contact Manager for Outlook 2007 SP2 (Version: 3.0.8619.1)
Catalyst Control Center - Branding (Version: 1.00.0000)
Catalyst Control Center Core Implementation (Version: 2009.0908.2225.38429)
Catalyst Control Center Graphics Full Existing (Version: 2009.0908.2225.38429)
Catalyst Control Center Graphics Full New (Version: 2009.0908.2225.38429)
Catalyst Control Center Graphics Light (Version: 2009.0908.2225.38429)
Catalyst Control Center Graphics Previews Common (Version: 2009.0908.2225.38429)
Catalyst Control Center Graphics Previews Vista (Version: 2009.0908.2225.38429)
Catalyst Control Center InstallProxy (Version: 2009.0908.2225.38429)
Catalyst Control Center Localization All (Version: 2009.0908.2225.38429)
CCC Help Chinese Standard (Version: 2009.0908.2224.38429)
CCC Help Chinese Traditional (Version: 2009.0908.2224.38429)
CCC Help Czech (Version: 2009.0908.2224.38429)
CCC Help Danish (Version: 2009.0908.2224.38429)
CCC Help Dutch (Version: 2009.0908.2224.38429)
CCC Help English (Version: 2009.0908.2224.38429)
CCC Help Finnish (Version: 2009.0908.2224.38429)
CCC Help French (Version: 2009.0908.2224.38429)
CCC Help German (Version: 2009.0908.2224.38429)
CCC Help Greek (Version: 2009.0908.2224.38429)
CCC Help Hungarian (Version: 2009.0908.2224.38429)
CCC Help Italian (Version: 2009.0908.2224.38429)
CCC Help Japanese (Version: 2009.0908.2224.38429)
CCC Help Korean (Version: 2009.0908.2224.38429)
CCC Help Norwegian (Version: 2009.0908.2224.38429)
CCC Help Polish (Version: 2009.0908.2224.38429)
CCC Help Portuguese (Version: 2009.0908.2224.38429)
CCC Help Russian (Version: 2009.0908.2224.38429)
CCC Help Spanish (Version: 2009.0908.2224.38429)
CCC Help Swedish (Version: 2009.0908.2224.38429)
CCC Help Thai (Version: 2009.0908.2224.38429)
CCC Help Turkish (Version: 2009.0908.2224.38429)
ccc-core-static (Version: 2009.0908.2225.38429)
ccc-utility (Version: 2009.0908.2225.38429)
CCleaner (Version: 3.14)
Direct DiscRecorder (Version: 1.00.0000)
DVD MovieFactory for TOSHIBA (Version: 7.0.0)
ESET Online Scanner v3
e-tax 2013 (Version: 0.8.509)
Google Earth (Version: 7.1.2.2041)
Google Toolbar for Internet Explorer (Version: 1.0.0)
Google Toolbar for Internet Explorer (Version: 7.5.5111.1712)
Google Update Helper (Version: 1.3.23.9)
ImgBurn (Version: 2.5.6.0)
Intel® Control Center (Version: 1.2.0.1006)
Intel® Management Engine Components (Version: 6.0.0.1179)
Intel® Rapid Storage Technology (Version: 9.5.0.1037)
Java 7 Update 55 (Version: 7.0.550)
Java Auto Updater (Version: 2.1.9.8)
JavaFX 2.1.1 (Version: 2.1.1)
Junk Mail filter update (Version: 14.0.8089.726)
LSI V92 MOH Application
Malwarebytes Anti-Malware version 2.0.1.1004 (Version: 2.0.1.1004)
Masque Casino Game Pak II
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Choice Guard (Version: 2.0.48.0)
Microsoft Mouse and Keyboard Center (Version: 2.2.173.0)
Microsoft Office 2003 Web Components (Version: 11.0.8173.0)
Microsoft Office 2007 Primary Interop Assemblies (Version: 12.0.4518.1014)
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Access Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Excel MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003)
Microsoft Office Outlook MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Professional Hybrid 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (Spanish) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proofing (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Small Business Connectivity Components (Version: 2.0.7024.0)
Microsoft Office Suite Activation Assistant (Version: 2.9)
Microsoft Office Word MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Security Client (Version: 4.5.0216.0)
Microsoft Security Essentials (Version: 4.5.216.0)
Microsoft Silverlight (Version: 5.1.30214.0)
Microsoft SQL Server 2005
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft SQL Server 2005 Express Edition (MSSMLBIZ) (Version: 9.4.5000.00)
Microsoft SQL Server 2005 Express Edition (SQLEXPRESS) (Version: 9.4.5000.00)
Microsoft SQL Server 2005 Tools Express Edition (Version: 9.4.5000.00)
Microsoft SQL Server Native Client (Version: 9.00.5000.00)
Microsoft SQL Server Setup Support Files (English) (Version: 9.00.5000.00)
Microsoft SQL Server VSS Writer (Version: 9.00.5000.00)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (Version: 11.0.60610.1)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (Version: 11.0.60610)
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (Version: 11.0.60610)
MSVCRT (Version: 14.0.1468.721)
NVIDIA PhysX (Version: 9.10.0129)
Online Games Manager v1.30 (Version: 1.30.14)
Optus Wireless Broadband (Version: 11.300.05.12.74)
Orca Browser
Peggle Deluxe 1.01
Peggle Nights (Version: 2.2.0.97)
PlayReady PC Runtime x86 (Version: 1.3.0)
PokerTH (Version: 0.6.4)
Realtek Ethernet Controller Driver For Windows Vista and Later (Version: 1.00.0011)
Realtek High Definition Audio Driver (Version: 6.0.1.5964)
Realtek USB 2.0 Card Reader (Version: 6.1.7600.30105)
Realtek WLAN Driver (Version: 2.00.0006)
Recuva (Version: 1.46)
Secunia PSI (2.0.0.4003) (Version: 2.0.0.4003)
Speccy (Version: 1.25)
Spelling Dictionaries Support For Adobe Reader 9 (Version: 9.0.0)
SUPERAntiSpyware (Version: 5.6.1014)
swMSM (Version: 12.0.0.1)
Synaptics Pointing Device Driver (Version: 14.0.11.0)
System Requirements Lab for Intel (Version: 4.5.15.0)
TOSHIBA Assist (Version: 2.01.12)
TOSHIBA Bulletin Board (Version: 1.5.05.32)
TOSHIBA ConfigFree (Version: 8.0.25)
TOSHIBA Disc Creator (Version: 2.1.0.2)
TOSHIBA DVD PLAYER (Version: 3.01.1.04-A)
TOSHIBA eco Utility (Version: 1.1.12.0)
TOSHIBA Extended Tiles for Windows Mobility Center (Version: 1.01.00)
TOSHIBA Face Recognition (Version: 3.1.3.32)
TOSHIBA Flash Cards Support Utility (Version: 1.63.0.4C)
TOSHIBA Hardware Setup (Version: 1.63.0.16C)
TOSHIBA HDD/SSD Alert (Version: 3.1.0.4)
TOSHIBA Internal Modem Region Select Utility (Version: 2.3.0.01)
TOSHIBA PC Health Monitor (Version: 1.5.0.0)
TOSHIBA Recovery Media Creator (Version: 2.1.0.4)
TOSHIBA ReelTime (Version: 1.5.07.32)
TOSHIBA Service Station (Version: 2.1.40)
TOSHIBA Supervisor Password (Version: 1.63.0.7C)
TOSHIBA Value Added Package (Version: 1.2.32)
TOSHIBA Web Camera Application (Version: 1.1.1.9)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition
Update for Microsoft Office Access 2007 Help (KB963663)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition
Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition
Update for Microsoft Office Outlook 2007 Help (KB963677)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2878297) 32-Bit Edition
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Publisher 2007 Help (KB963667)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Update Installer for WildTangent Games App
Utility Common Driver (Version: 1.0.50.27C)
Windows Live Call (Version: 14.0.8064.0206)
Windows Live Communications Platform (Version: 14.0.8064.206)
Windows Live Essentials (Version: 14.0.8089.0726)
Windows Live Essentials (Version: 14.0.8089.726)
Windows Live Photo Gallery (Version: 14.0.8081.709)
Windows Live Sign-in Assistant (Version: 5.000.818.5)
Windows Live Sync (Version: 14.0.8089.726)
Windows Live Upload Tool (Version: 14.0.8014.1029)
Windows Live Writer (Version: 14.0.8089.0726)
WOT for Internet Explorer (Version: 12.8.2.0)

 

========================= Memory info: ===================================

Percentage of memory in use: 34%
Total physical RAM: 3061.83 MB
Available physical RAM: 2018.61 MB
Total Pagefile: 6121.95 MB
Available Pagefile: 4987.49 MB
Total Virtual: 2047.88 MB
Available Virtual: 1928.55 MB

 

**** End of log ****



#10 ter67

ter67
  • Topic Starter

  • Members
  • 68 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:scotland
  • Local time:11:58 AM

Posted 25 April 2014 - 11:11 AM

Here as i`ve let it be known to you way back from the last time you helped me sort out my computer` i dont know much about computers and only go with what ppl tell me and very "greatfull" i was and still am very greatfull for you helping me out here but dont try to talk down to me as if i`m stupid altogether !!!!! i come into BC to get help not be be spoken to like a criminal or something on the bottom of your feet my friend .Also no i am not playing silly games i`m a 54 yr old man not some young clown trying to waste your time i`m actually asking for some help as i said not to be made to look like a criminal all because i said i downloaded a video for my grandson ,and btw i dont know where i can download films from and were i cant download films from so dont try to make me out like some computer scammer because you couldnt be far more from the truth let me tell you just aswell we learn something knew everyday eh.

and about the programs not being there in my add and remove section ,what is it do you think ive some how taken them out just to boggle your mind or what ? i wouldnt even know how to do it if i wanted to and i told you i had no programs in add and remove >>>>>>>((((the voice said unless you use this anti virus program she was talking about then i wouldnt be able to clean them from my add and remove and my pc would get slower n slower till it was almost unbarable "words to that effect" then it said that you`l notice that your your programs have changed in add and remove .

So straight away i went into add and remove to see what like it was and almost every prog` on my add and remove page had been changed from there normal dates when they were downloaded, to 23.4.2014 which was the night i had got the java update .

But then i started to do what you told me to do like uninstall extensions in google chrome and individual plugins and then i run the RKILL prog` and then i run the adwcleaner and done the scan and after it was rebooted and everything done i went back into add and remove and to my surprise there was only 1 program left which was utorrent))) so i told you that there was no programs in my add and remove.>>>>>((((

This is totally wrong. You have "programs" installed on your computer ??

What you have listed are not Programs, they are 2 of the 30 or so items that you have installed ........also i dont get what your on about here i`m telling you i "DONT" have anything in my add and remove section apart from what you mentioned so if this is wrong ,which i guess it is` then i`m sorry but its nothing i have done apart from what you said to do .

Please read below and you will see a typical list of Installed Programs -

It is followed by a typical Memory Info log that is similar to yours -

 

This is what I expect to see from the request I have made..........  <<<<<<Also what is this meant to mean ???? You`l see what is on my add and remove section which is what ive already said is on it "NOTHING" !!!! SO WETHER this is right or WRONG theres nothing on it and also as i said i wouldnt know how to "play silly games" as you put it even if i wanted to so dont even go there ,and just one other thing since you think that i`m playing "silly games" haaaaaaaa  well you wont need to help me as as from now i dont want anymore help from you` also i dont know who you think you are talking to ppl the way you are doing in this case but one thing is for sure you arent speaking to me like some idiot just because we havent all got the brainssssssss that you have about fixing computers ,so thanks for the help you gave me up until you thought you could speak to ppl like dirt on your shoe byeeeeeeeee



#11 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:08:58 PM

Posted 25 April 2014 - 04:55 PM

Sorry that you have taken it so personal, but I have had other people ask for help, and then "fudge" the logs.

 

I can only go on what you post, and the above responses has not been posted earlier.

 

This is what has confused me and the entire post that you made.

So straight away i went into add and remove to see what like it was and almost every prog` on my add and remove page had been changed from there normal dates when they were downloaded, to 23.4.2014 which was the night i had got the java update .

Again I am sorry that I may have said it the wrong way, but I only see what is here.

 

Please ignore my ignorant responses to you, and post to the Experts area, as this seems very serious.

Tell them what you have posted above, so that they will understand it better.

 

Please Fully read and follow the instructions in the Preparation Guide starting at Step 6.

If you cannot complete a step, then skip it and continue with the next.

NOTE  - In Step 6 there are instructions for downloading and running DDS which will create two logs. (Windows 8.1 Users will not be able run DDS and create a log) Copy and paste both logs if you can.

When you have done that, post your logs in the Virus, Trojan, Spyware, and Malware Removal Logs forum, NOT here, for assistance by the Malware Response Team.

 

If you cannot produce any of the required logs, then still start the new topic and explain that you followed the Prep. Guide, were unable to create the logs, and describe what happened when you tried to create them.

 

A member of the Malware Removal Team will walk you through, step by step, on how to clean your computer.

 

After doing this, please reply back in this thread with a link to the new topic so we can close this one.


Edited by noknojon, 26 April 2014 - 05:39 AM.


#12 Queen-Evie

Queen-Evie

    Official Bleepin' G.R.I.T.S. (and proud of it)


  • Members
  • 16,485 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:My own little corner of the universe (somewhere in Alabama). It's OK, they know me here
  • Local time:05:58 AM

Posted 07 May 2014 - 05:22 PM

Since you have posted in Malware Removal Logs, this topic is closed.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users