Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Bothersome start-up thing?


  • Please log in to reply
13 replies to this topic

#1 MsImAQuickStudy

MsImAQuickStudy

  • Members
  • 116 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:07:19 AM

Posted 13 May 2014 - 04:26 AM

I'm not sure if this is a virus/malware/etc. or if it's just something I've overlooked again, but something is worrying/frustrating me a bit.
 
Every time I start my laptop and get to my desktop, something seems to be trying to launch but it never visibly does (which is why it frustrates me). My laptop is loading something for a while and a small screen appears for about a tenth of a second (I can't see what it's supposed to be or take a screenshot, I've tried but it's there for such a short time I can't make anything of it). It slows down my start up a bit. 
 
I've run scans with Avast, SAS and RKill and none of them showed any sign of an infection, so I think I'm in the clear with that, but I can't figure out what it's supposed to be if it isn't malware/adware/etc. It began appearing a few weeks ago I think, and I don't remember changing any of the settings regarding programs that launch on start-up. I've disabled everything that I'm sure is safe to disable, but there's some stuff of which I'm not sure whether I should get rid of it.
 
Either way, I hope someone can help me figure out what it is and how I could get rid of it.


BC AdBot (Login to Remove)

 


#2 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:03:19 PM

Posted 13 May 2014 - 07:17 AM

Hello -

Lets see if we can offer some ideas -

 

Download Security Check by Screen317 from HERE or HERE
* Save it to your Desktop.
* Double-click SecurityCheck.exe
* Follow the onscreen instructions inside of the black box.
* A Notepad document should open automatically called checkup.txt; please post the contents of that document.
Note: If a security program requests permission to access the Internet, allow it to do so.

 

 

Download MiniToolBox, Save it to your desktop and run it.
Close any Firefox browsers you may have open
Checkmark the following boxes:
• Flush DNS
• Report IE Proxy Settings
• Reset IE Proxy Settings
• Report FF Proxy Settings
• Reset FF Proxy Settings
• List content of Hosts
• List last 10 Event Viewer log
• List Installed Programs
• List Users, Partitions and Memory size.
Click Go and copy / paste the result (Result.txt).

 

 

Malwarebytes Anti-Malware is a much better program than SUPERAntiSpyware at this time. (please use it)

 

Malwarebytes Anti-Malware Free version 1.75.0.1300 has now been upgraded to Version 2.0.1

Please follow Free version removal methods. (link is to Malwarebytes site) if required -

 

* Download Malwarebytes Anti-Malware Free and save it to your desktop
* Double click the desktop icon, click Run, then OK
* Click Next
* Select I accept the agreement then continue to click Next then finally click Install
** Uncheck Enable free trial of Malwarebytes Anti-Malware Premium if you do not want the free trial of the paid version, then click Finish
* If you are notified the Database is out of date click Update Now
* Click Scan Now >>
----------
** Note: If Malwarebytes will not launch please do the following to launch Malwarebytes Chameleon:
* Click Start (Start, Search, All files and folders for Windows XP) then type mbam
* Double click one of the four following files (if one does not work try the next one, and so on) - A black command window will open. Follow those instructions until the Malwarebytes program starts the scan

mbam-chameleon.scr
mbam-chameleon
mbam-chameleon.exe
mbam-chameleon.com
----------
** When completed click the down arrow on Export Log and select Text file (*.txt)
* Save the file to your desktop as MBAM
* Click Apply Actions then restart your computer if requested
* Copy and past the contents of MBAM.txt in your reply

 

 

You will have logs from RKill, and maybe Avast that you can post here also.

If not, please re-run RKill first again

Please download and run RKill by Grinler.
A black DOS box will briefly flash and then disappear.
This is normal and indicates the tool ran successfully.

Please post the small log back here

 

Important: Do not reboot your computer until you complete the next step.

 

Now:

Please download AdwCleaner by Xplode and save to your Desktop.
NOTE : Please close or save all work, as the computer will be Rebooted
Double-click on AdwCleaner.exe to run the tool.
Vista/Windows 7/8 users right-click and select Run As Administrator.
Click on the Scan button. (only once)
AdwCleaner will begin...be patient as the scan may take some time to complete.
After the scan has finished, click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review. 
If you see any which you do not want removed, untick the check mark next to it. 

If you are not sure, post the (AdwCleaner[R0].txt) log here first -

Next: Click on the Clean button (only once) to remove the selected items. 
You will receive a message telling you that all programs will be close so that the infections can be removed. 
Click on OK, and then OK again to confirm the reboot.
When cleaning process is complete a log (AdwCleaner[S0].txt ) of what was removed will be on your desktop. 
Please copy and the paste this log in your next post.

A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.

 

 

I would like you to use the ESET OnlineScanner -
This is best done with Internet Explorer, as it uses ActineX  with the scan

How-ever alternate directions are left for thise that will not use Internet Explorer
Please read and follow How To Temporarily Disable Your Anti-virus during the scan.

1 / Hold down Control (Ctrl) key and click on This Link to open ESET OnlineScan in a new window.
2 / Click the ESETOnliner Scanner button.
3 / For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
3.1 - / Click on This Link to download theExternal ESET Smart Installer.
3.2 - / Save it to your desktop.
4 / Double click on the  icon on your desktop.
5 / Check "YES, I accept the Terms of Use."
5 / Click the Start button.
6 / Accept any security warnings from your browser.
7 / Under scan settings, check "Scan Archives" and "Remove found threats"
8 / Click Advanced settings and select the following:
* Scan potentially unwanted applications
* Scan for potentially unsafe applications
* Enable Anti-Stealth technology
9 / ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this will take some time.
10 / When the scan completes, click List Threats
11 / Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
12 / Click the Back button.
13 / Click the Finish button.
NOTE:Sometimes if ESET finds no infections it will not create a log.


Edited by noknojon, 13 May 2014 - 07:20 AM.


#3 MsImAQuickStudy

MsImAQuickStudy
  • Topic Starter

  • Members
  • 116 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:07:19 AM

Posted 13 May 2014 - 12:52 PM

Thanks for the quick reply! (:

 

I forgot to save my reply when I had to restart, so the Security check was done afterwards. 

 

 Results of screen317's Security Check version 0.99.83  
   x64 (UAC is enabled)  
 Internet Explorer 11  
``````````````Antivirus/Firewall Check:`````````````` 
 Windows Firewall Enabled!  
Windows Defender   
avast! Antivirus   
 Antivirus up to date!   
`````````Anti-malware/Other Utilities Check:````````` 
 Java 7 Update 51  
 Java version out of Date! 
 Adobe Flash Player 13.0.0.206  
 Adobe Reader XI  
 Mozilla Firefox (28.0) 
 Google Chrome 34.0.1847.116  
 Google Chrome 34.0.1847.131  
````````Process Check: objlist.exe by Laurent````````  
 Malwarebytes Anti-Exploit mbae-svc.exe   
 Malwarebytes Anti-Exploit mbae.exe   
 AVAST Software Avast AvastSvc.exe  
 AVAST Software Avast AvastUI.exe  
`````````````````System Health check````````````````` 
 Total Fragmentation on Drive C:  % 
````````````````````End of Log`````````````````````` 
 
 
 

 

MiniToolBox by Farbar  Version: 23-01-2014
Ran by laptop (administrator) on 13-05-2014 at 14:43:55
Running from "C:\Users\laptop\Downloads"
Microsoft Windows 8.1  (X64)
Boot Mode: Normal
***************************************************************************
 
========================= Flush DNS: ===================================
 
Windows IP Configuration
 
Successfully flushed the DNS Resolver Cache.
 
========================= IE Proxy Settings: ============================== 
 
Proxy is not enabled.
No Proxy Server is set.
 
"Reset IE Proxy Settings": IE Proxy Settings were reset.
 
========================= FF Proxy Settings: ============================== 
 
 
"Reset FF Proxy Settings": Firefox Proxy settings were reset.
 
========================= Hosts content: =================================
 
 
 
 
========================= Event log errors: ===============================
 
Application errors:
==================
Error: (05/13/2014 00:15:35 PM) (Source: Application Error) (User: )
Description: Faulting application name: TS3W.exe, version: 0.2.0.209, time stamp: 0x52d872da
Faulting module name: d3d9.dll, version: 6.3.9600.16404, time stamp: 0x52343c95
Exception code: 0xc0000005
Fault offset: 0x00036057
Faulting process ID: 0xe98
Faulting application start time: 0xTS3W.exe0
Faulting application path: TS3W.exe1
Faulting module path: TS3W.exe2
Report ID: TS3W.exe3
Faulting package full name: TS3W.exe4
Faulting package-relative application ID: TS3W.exe5
 
Error: (05/13/2014 01:58:18 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 9860
 
Error: (05/13/2014 01:58:18 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 9860
 
Error: (05/13/2014 01:58:18 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
 
Error: (05/12/2014 09:45:04 PM) (Source: Application Error) (User: )
Description: Faulting application name: TS3W.exe, version: 0.2.0.209, time stamp: 0x52d872da
Faulting module name: d3d9.dll, version: 6.3.9600.16404, time stamp: 0x52343c95
Exception code: 0xc0000005
Fault offset: 0x00036057
Faulting process ID: 0x18d8
Faulting application start time: 0xTS3W.exe0
Faulting application path: TS3W.exe1
Faulting module path: TS3W.exe2
Report ID: TS3W.exe3
Faulting package full name: TS3W.exe4
Faulting package-relative application ID: TS3W.exe5
 
Error: (05/12/2014 09:33:03 PM) (Source: Application Hang) (User: )
Description: The program TS3W.exe version 0.2.0.209 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
 
Process ID: 4e4
 
Start Time: 01cf6e18cd1a0e11
 
Termination Time: 4294967295
 
Application Path: C:\Program Files (x86)\Electronic Arts\The Sims 3\Game\Bin\TS3W.exe
 
Report Id: 39c2dcf6-da0c-11e3-bec4-6c71d921c8b6
 
Faulting package full name: 
 
Faulting package-relative application ID:
 
Error: (05/12/2014 09:10:39 PM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) (User: )
Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008]
 
Error: (05/12/2014 07:58:27 PM) (Source: Application Error) (User: )
Description: Faulting application name: TS3W.exe, version: 0.2.0.209, time stamp: 0x52d872da
Faulting module name: d3d9.dll, version: 6.3.9600.16404, time stamp: 0x52343c95
Exception code: 0xc0000005
Fault offset: 0x00036057
Faulting process ID: 0x158c
Faulting application start time: 0xTS3W.exe0
Faulting application path: TS3W.exe1
Faulting module path: TS3W.exe2
Report ID: TS3W.exe3
Faulting package full name: TS3W.exe4
Faulting package-relative application ID: TS3W.exe5
 
Error: (05/12/2014 02:06:41 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 10750
 
Error: (05/12/2014 02:06:41 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 10750
 
 
System errors:
=============
Error: (05/13/2014 02:38:11 PM) (Source: Service Control Manager) (User: )
Description: The avast! HardwareID service failed to start due to the following error: 
%%127
 
Error: (05/13/2014 11:24:03 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: standaard voor deze computerLokaalActiveren{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (via LRPC)Niet beschikbaarNiet beschikbaar
 
Error: (05/13/2014 01:15:11 AM) (Source: Service Control Manager) (User: )
Description: The avast! HardwareID service failed to start due to the following error: 
%%127
 
Error: (05/12/2014 09:13:01 PM) (Source: Service Control Manager) (User: )
Description: The avast! HardwareID service failed to start due to the following error: 
%%127
 
Error: (05/12/2014 09:12:45 PM) (Source: Service Control Manager) (User: )
Description: The Microsoft Office ClickToRun Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 0 milliseconds: Service opnieuw starten.
 
Error: (05/12/2014 09:12:38 PM) (Source: Service Control Manager) (User: )
Description: The avast! HardwareID service failed to start due to the following error: 
%%127
 
Error: (05/12/2014 09:12:34 PM) (Source: Service Control Manager) (User: )
Description: The Bluetooth Support Service service failed to start due to the following error: 
%%1079
 
Error: (05/12/2014 09:12:17 PM) (Source: Service Control Manager) (User: )
Description: The Bluetooth Support Service service failed to start due to the following error: 
%%1079
 
Error: (05/12/2014 09:12:17 PM) (Source: Service Control Manager) (User: )
Description: The avast! HardwareID service failed to start due to the following error: 
%%127
 
Error: (05/12/2014 09:11:17 PM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the NvNetworkService service.
 
 
Microsoft Office Sessions:
=========================
Error: (05/13/2014 00:15:35 PM) (Source: Application Error)(User: )
Description: TS3W.exe0.2.0.20952d872dad3d9.dll6.3.9600.1640452343c95c000000500036057e9801cf6e90031a290bC:\Program Files (x86)\Electronic Arts\The Sims 3\Game\Bin\TS3W.exeC:\WINDOWS\SYSTEM32\d3d9.dll857b5416-da87-11e3-bec4-6c71d921c8b6
 
Error: (05/13/2014 01:58:18 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 9860
 
Error: (05/13/2014 01:58:18 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 9860
 
Error: (05/13/2014 01:58:18 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
 
Error: (05/12/2014 09:45:04 PM) (Source: Application Error)(User: )
Description: TS3W.exe0.2.0.20952d872dad3d9.dll6.3.9600.1640452343c95c00000050003605718d801cf6e193a9ba111C:\Program Files (x86)\Electronic Arts\The Sims 3\Game\Bin\TS3W.exeC:\WINDOWS\SYSTEM32\d3d9.dlle9252166-da0d-11e3-bec4-6c71d921c8b6
 
Error: (05/12/2014 09:33:03 PM) (Source: Application Hang)(User: )
Description: TS3W.exe0.2.0.2094e401cf6e18cd1a0e114294967295C:\Program Files (x86)\Electronic Arts\The Sims 3\Game\Bin\TS3W.exe39c2dcf6-da0c-11e3-bec4-6c71d921c8b6
 
Error: (05/12/2014 09:10:39 PM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe)(User: )
Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008]
 
Error: (05/12/2014 07:58:27 PM) (Source: Application Error)(User: )
Description: TS3W.exe0.2.0.20952d872dad3d9.dll6.3.9600.1640452343c95c000000500036057158c01cf6dfbed0b637bC:\Program Files (x86)\Electronic Arts\The Sims 3\Game\Bin\TS3W.exeC:\WINDOWS\SYSTEM32\d3d9.dll049e9017-d9ff-11e3-bec3-6c71d921c8b6
 
Error: (05/12/2014 02:06:41 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 10750
 
Error: (05/12/2014 02:06:41 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 10750
 
 
=========================== Installed Programs ============================
 
Adobe AIR (Version: 4.0.0.1390)
Adobe Community Help (Version: 3.0.0)
Adobe Community Help (Version: 3.0.0.400)
Adobe Creative Cloud (Version: 2.2.1.260)
Adobe Flash Player 13 Plugin (Version: 13.0.0.206)
Adobe Flash Professional CC (Version: 13.0)
Adobe Photoshop CS5 (Version: 12.0)
Adobe Reader XI (11.0.06) (Version: 11.0.06)
Alcor Micro USB Card Reader (Version: 3.9.142.62248)
Apple Application Support (Version: 3.0.1)
Apple Mobile Device Support (Version: 7.1.1.3)
Apple Software Update (Version: 2.1.3.127)
ASUS Instant Connect (Version: 1.2.8)
ASUS Instant Key (Version: 1.0.5)
ASUS InstantOn (Version: 3.0.4)
ASUS LifeFrame3 (Version: 3.1.9)
ASUS Live Update (Version: 3.1.9)
ASUS N Series Demo (Version: 1.0.0002)
ASUS Power4Gear Hybrid (Version: 2.0.4)
ASUS Product Demo Movie  (Version: 1.0.3)
ASUS Smart Gesture (Version: 1.0.35)
ASUS Splendid Video Enhancement Technology (Version: 1.03.0004)
ASUS Tutor (Version: 1.0.7)
ASUS USB Charger Plus (Version: 2.1.5)
ASUS Video Magic (Version: 6.0.4712)
ASUS WebStorage Sync Agent (Version: 1.1.9.120)
ASUSDVD (Version: 10.0.4126.52)
Atheros Communications Inc.® AR81Family Gigabit/Fast Ethernet Driver (Version: 2.1.0.7)
ATK Package (Version: 1.0.0023)
Auslogics DiskDefrag (Version: 4.4.1.0)
avast! Free Antivirus (Version: 9.0.2018)
Bamboo Dock (Version: 4.1)
Bamboo Dock (Version: 4.1.0)
Bonjour (Version: 3.0.0.10)
CCleaner (Version: 4.09)
CyberLink MediaEspresso 6.5 (Version: 6.5.3019_44673)
CyberLink PowerDirector (Version: 8.0.4905d)
De Sims™ 3 Ambities (Version: 4.10.1)
De Sims™ 3 Beestenbende (Version: 10.0.96)
De Sims™ 3 Bovennatuurlijk (Version: 15.0.135)
De Sims™ 3 Diesel Accessoires (Version: 14.0.48)
De Sims™ 3 Jaargetijden (Version: 16.0.136)
De Sims™ 3 Levensweg (Version: 8.0.152)
De Sims™ 3 Luxe Accessoires (Version: 3.0.38)
De Sims™ 3 Na Middernacht (Version: 6.5.1)
De Sims™ 3 Wereldavonturen (Version: 2.17.2)
Dropbox (Version: 2.6.2)
Fraps
GeForce Experience NvStream Client Components (Version: 1.6.28)
Google Chrome (Version: 34.0.1847.131)
Google Update Helper (Version: 1.3.24.7)
Imagine Champion Rider (Version: 1.00.0000)
Intel® Management Engine Components (Version: 8.1.0.1252)
Intel® Processor Graphics (Version: 10.18.10.3308)
Intel® SDK for OpenCL - CPU Only Runtime Package (Version: 2.0.0.37149)
Intel® Trusted Connect Service Client (Version: 1.24.388.1)
iTunes (Version: 11.1.5.5)
Java 7 Update 51 (64-bit) (Version: 7.0.510)
Java 7 Update 51 (Version: 7.0.510)
Java Auto Updater (Version: 2.1.9.8)
join.me (Version: 1.13.0.130)
LogMeIn Hamachi (Version: 2.2.0.188)
Malwarebytes Anti-Exploit version 0.10.0.1000 (Version: 0.10.0.1000)
Microsoft Office 365 - nl-nl (Version: 15.0.4605.1003)
Microsoft SkyDrive (Version: 17.0.2003.1112)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft WSE 3.0 Runtime (Version: 3.0.5305.0)
Microsoft_VC80_ATL_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_ATL_x86_x64 (Version: 8.0.50727.4053)
Microsoft_VC80_CRT_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053)
Microsoft_VC80_MFC_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053)
Microsoft_VC80_MFCLOC_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053)
Microsoft_VC90_ATL_x86 (Version: 1.00.0000)
Microsoft_VC90_ATL_x86_x64 (Version: 1.00.0000)
Microsoft_VC90_CRT_x86 (Version: 1.00.0000)
Microsoft_VC90_CRT_x86_x64 (Version: 1.00.0000)
Microsoft_VC90_MFC_x86 (Version: 1.00.0000)
Microsoft_VC90_MFC_x86_x64 (Version: 1.00.0000)
Mozilla Firefox 28.0 (x86 en-US) (Version: 28.0)
Mozilla Maintenance Service (Version: 28.0)
NVIDIA 3D Vision Driver 337.50 (Version: 337.50)
NVIDIA Control Panel 337.50 (Version: 337.50)
NVIDIA GeForce Experience 1.8.2.1 (Version: 1.8.2.1)
NVIDIA Graphics Driver 337.50 (Version: 337.50)
NVIDIA HD Audio Driver 1.3.30.1 (Version: 1.3.30.1)
NVIDIA Install Application (Version: 2.1002.151.1095)
NVIDIA LED Visualizer 1.0 (Version: 1.0)
NVIDIA Network Service (Version: 1.0)
NVIDIA Optimus Update 11.10.13 (Version: 11.10.13)
NVIDIA PhysX (Version: 9.13.1220)
NVIDIA PhysX System Software 9.13.1220 (Version: 9.13.1220)
NVIDIA ShadowPlay 11.10.13 (Version: 11.10.13)
NVIDIA Stereoscopic 3D Driver (Version: 7.17.12.6514)
NVIDIA Update 11.10.13 (Version: 11.10.13)
NVIDIA Update Core (Version: 11.10.13)
NVIDIA Virtual Audio 1.2.20 (Version: 1.2.20)
Office 15 Click-to-Run Extensibility Component (Version: 15.0.4605.1003)
Office 15 Click-to-Run Licensing Component (Version: 15.0.4605.1003)
Office 15 Click-to-Run Localization Component (Version: 15.0.4605.1003)
Origin (Version: 9.2.1.4399)
PDF Settings CS5 (Version: 10.0)
Pippa Funnell Ranch Rescue (Version: 1.00.0000)
Qualcomm Atheros Bluetooth Suite (64) (Version: 8.0.1.316)
Qualcomm Atheros Client Installation Program (Version: 10.0)
QuickTime 7 (Version: 7.75.80.95)
Realtek High Definition Audio Driver (Version: 6.0.1.6710)
Shared C Run-time for x64 (Version: 10.0.0)
SHIELD Streaming (Version: 1.7.321)
Sony Ericsson Update Engine (Version: 2.13.10.201308300830)
Sony PC Companion 2.10.174 (Version: 2.10.174)
Spotify (Version: 0.9.8.296.g91f68827)
SUPERAntiSpyware (Version: 5.7.1018)
The Sims™ 3 (Version: 1.67.2)
Visual Studio 2012 x64 Redistributables (Version: 14.0.0.1)
Visual Studio 2012 x86 Redistributables (Version: 14.0.0.1)
Vuze (Version: 5.2.0.0)
Wacom (Version: 5.3.2-1)
WebTablet FB Plugin 32 bit (Version: 2.1.0.2)
WebTablet FB Plugin 64 bit (Version: 2.1.0.2)
WebTablet IE Plugin (Version: 1.1.0.12)
WebTablet Netscape Plugin (Version: 1.1.0.10)
Windows Driver Package - ASUS (ATP) Mouse  (10/29/2012 1.0.0.148) (Version: 10/29/2012 1.0.0.148)
WinFlash (Version: 2.41.1)
WinRAR 5.01 (64-bit) (Version: 5.01.0)
 
========================= Memory info: ===================================
 
Percentage of memory in use: 58%
Total physical RAM: 3981.5 MB
Available physical RAM: 1658.19 MB
Total Pagefile: 5536.89 MB
Available Pagefile: 2590.53 MB
Total Virtual: 4095.88 MB
Available Virtual: 3966.14 MB
 
========================= Partitions: =====================================
 
1 Drive c: (OS) (Fixed) (Total:185.96 GB) (Free:51.73 GB) NTFS
2 Drive d: (Data) (Fixed) (Total:258.15 GB) (Free:257.63 GB) NTFS
3 Drive e: (Sims3EP08) (CDROM) (Total:3.9 GB) (Free:0 GB) UDF
 
========================= Users: ========================================
 
User accounts for \\ASUS
 
Administrator            Gast                     laptop                   
 
 
**** End of log ****
 
 
 

Malwarebytes Anti-Malware
www.malwarebytes.org
 
Scan Date: 13/05/2014
Scan Time: 15:10:41
Logfile: mbam.txt
Administrator: Yes
 
Version: 2.00.1.1004
Malware Database: v2014.05.13.07
Rootkit Database: v2014.03.27.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Chameleon: Disabled
 
OS: Windows 8.1
CPU: x64
File System: NTFS
User: laptop
 
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 270370
Time Elapsed: 21 min, 16 sec
 
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Enabled
PUM: Enabled
 
Processes: 0
(No malicious items detected)
 
Modules: 0
(No malicious items detected)
 
Registry Keys: 0
(No malicious items detected)
 
Registry Values: 0
(No malicious items detected)
 
Registry Data: 0
(No malicious items detected)
 
Folders: 0
(No malicious items detected)
 
Files: 1
PUP.Optional.MySearchDial.A, C:\Users\laptop\AppData\Local\Google\Chrome\User Data\Default\Preferences, Good: (), Bad: (      "startup_urls": [ "http://search.zonealarm.com/?src=hp&tbid=HFA5&Lan=en&gu=034b55ec38a741278de5f5da40efbea9&tu=10G9y00Bh2C01u0&sku=&tstsId=&ver=&", "http://start.mysearchdial.com/?f=1&a=irmsd0202ch&cd=2XzuyEtN2Y1L1QzuyC0CyBtC0DzytBtC0Czz0ByB0A0EyCyDtN0D0Tzu0SyBzzyBtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=1700488380&ir=" ],), ,[737887c9176471c5a67fa2d1e3217789]
 
Physical Sectors: 0
(No malicious items detected)
 
 
(end)
 
 
 
 

Rkill 2.6.5 by Lawrence Abrams (Grinler)
Copyright 2008-2014 BleepingComputer.com
More Information about Rkill can be found at this link:
 
Program started at: 05/13/2014 03:11:56 PM in x64 mode.
Windows Version: Windows 8.1 
 
Checking for Windows services to stop:
 
 * No malware services found to stop.
 
Checking for processes to terminate:
 
 * C:\Windows\SysWOW64\ACEngSvr.exe (PID: 3720) [WD-HEUR]
 * C:\Users\laptop\Downloads\SecurityCheck.exe (PID: 5844) [UP-HEUR]
 
2 proccesses terminated!
 
Checking Registry for malware related settings:
 
 * No issues found in the Registry.
 
Resetting .EXE, .COM, & .BAT associations in the Windows Registry.
 
Performing miscellaneous checks:
 
 * Windows Defender Disabled
 
   [HKLM\SOFTWARE\Microsoft\Windows Defender]
   "DisableAntiSpyware" = dword:00000001
 
Checking Windows Service Integrity: 
 
 * MsKeyboardFilter [Missing Service]
 * CSC [Missing Service]
 * E1G60 [Missing Service]
 * HdAudAddService [Missing Service]
 * kbldfltr [Missing Service]
 * storvsp [Missing Service]
 * Vid [Missing Service]
 * vmbusr [Missing Service]
 * vpcivsp [Missing Service]
 
Searching for Missing Digital Signatures: 
 
 * No issues found.
 
Checking HOSTS File: 
 
 * No issues found.
 
Program finished at: 05/13/2014 03:14:13 PM
Execution time: 0 hours(s), 2 minute(s), and 16 seconds(s)
 
 
 
# AdwCleaner v3.208 - Rapport aangemaakt 13/05/2014 op 16:25:25
# Laatste Update 11/05/2014 door Xplode
# Besturingssysteem : Windows 8.1  (64 bits)
# Gebruikersnaam : laptop - ASUS
# Gestart vanuit : C:\Users\laptop\Desktop\Anti-virus\AdwCleaner.exe
# Optie : Verwijderen
 
***** [ Services ] *****
 
 
***** [ Bestanden / Mappen ] *****
 
 
***** [ Snelkoppelingen ] *****
 
 
***** [ Register ] *****
 
 
***** [ Browsers ] *****
 
-\\ Internet Explorer v11.0.9600.16518
 
 
-\\ Mozilla Firefox v28.0 (en-US)
 
[ Bestand : C:\Users\laptop\AppData\Roaming\Mozilla\Firefox\Profiles\v3u69cd3.default\prefs.js ]
 
 
-\\ Google Chrome v34.0.1847.131
 
[ Bestand : C:\Users\laptop\AppData\Local\Google\Chrome\User Data\Default\preferences ]
 
Verwijderd [Startup_urls] : hxxp://start.mysearchdial.com/?f=1&a=irmsd0202ch&cd=2XzuyEtN2Y1L1QzuyC0CyBtC0DzytBtC0Czz0ByB0A0EyCyDtN0D0Tzu0SyBzzyBtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=1700488380&ir=
 
*************************
 
AdwCleaner[R0].txt - [873 octets] - [31/03/2014 21:25:42]
AdwCleaner[R1].txt - [1253 octets] - [13/05/2014 15:26:54]
AdwCleaner[S0].txt - [933 octets] - [31/03/2014 21:28:19]
AdwCleaner[S1].txt - [1179 octets] - [13/05/2014 16:25:25]
 
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1239 octets] ##########
 
 
ESET scan files:
 

C:\Users\laptop\Downloads\ccsetup409.exe Win32/Bundled.Toolbar.Google.D potentially unsafe application deleted - quarantined
C:\Users\laptop\Downloads\disk-defrag-setup (1).exe a variant of Win32/OpenCandy.A potentially unsafe application deleted - quarantined
C:\Users\laptop\Downloads\disk-defrag-setup.exe Win32/InstallMonetizer.AQ potentially unwanted application deleted - quarantined
C:\Users\laptop\Downloads\zafwSetupWeb_120_118_000.exe Win32/Toolbar.Conduit potentially unwanted application deleted - quarantined
C:\Users\laptop\Downloads\zafwSetupWeb_120_121_000.exe Win32/Toolbar.Conduit potentially unwanted application deleted - quarantined
 


#4 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:03:19 PM

Posted 13 May 2014 - 06:06 PM

Since avast! Antivirus is the Free version, please uninstall it and use Defender alone (several errors are showing)

 

MySearchDial is one of the Redirecting / Flashing type programs removed so you should find things better.

 

The 5 detections from ESET are all chances to include Redirecting / flashing programs, but have been removed.

 

Please post a general report on your computer -



#5 MsImAQuickStudy

MsImAQuickStudy
  • Topic Starter

  • Members
  • 116 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:07:19 AM

Posted 14 May 2014 - 05:31 AM

The mysearchdial thing I recognized, it was something I had dealt with (or I thought so) a few months ago. 

I'm not entirely sure what you mean by 'general report', but I can say that the weird window at startup hasn't stopped yet. Good thing those programs are removed though!



#6 MsImAQuickStudy

MsImAQuickStudy
  • Topic Starter

  • Members
  • 116 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:07:19 AM

Posted 14 May 2014 - 05:53 AM

Oh, I just scanned with MBAM once more, and the MySearchDial PUP pops up again.. 

 

Edit: I also noticed that, at startup, a 'Homegroup' icon appeared on my desktop that I didn't put there myself. A minute or so later, my desktop seemed to refresh itself and the icon disappeared again. I'm not sure if it's related, but it's strange.. This doesn't usually happen, to my knowledge.


Edited by MsImAQuickStudy, 14 May 2014 - 06:23 AM.


#7 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:03:19 PM

Posted 14 May 2014 - 06:48 AM

From what I can read, your version of The Sims3 is a "crack version" and this is the odd thing you are seeing.

 

This what is in your errors and also what the Crack Forum says.

TS3.exe is the original executable, Sims3Launcher.exe brings up the Launcher where you can upload stuff, download/install stuff from the Store and Exchange.

TS3W.exe is what the Sims 3 Launcher starts up regardless of whether you have expansions/stuff packs or not after you click the Play button. It might be the same thing with the Sims3LauncherW.exe file.
 

The 2 highlighted exe files are the ones concerned. It will not hurt anything.

To prevent it, Unstall it and start again -


Edited by noknojon, 14 May 2014 - 06:54 AM.


#8 MsImAQuickStudy

MsImAQuickStudy
  • Topic Starter

  • Members
  • 116 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:07:19 AM

Posted 14 May 2014 - 07:01 AM

That is incredibly strange, because my Sims 3 is perfectly legit and store bought, we've used it for multiple computers at home and haven't ever used a crack to play it! I just use the CD. I've played it for about a year without any trouble, but I do have to say it's been acting strange for the past week. I did have to find one serial number on the internet because I lost mine for one of the games, maybe that causes the error? But everything installed is from legit store bought Sims 3 CD's?

 

But it may explain why it's acting strange.  

 

Yeah, I started using the TS3W.exe file to start Sims 3 because I'm having some problems with it randomly crashing (Sims 3 has stopped working message), and the Launcher was displaying a script error caused by EA, so I was hoping it would make a difference but it didn't, sadly. For that reason I think I'm going to reinstall it somewhere soon anyway.

 

Quick question though: why exactly has this caused an error? Maybe I can avoid it in the future ;) 


Edited by MsImAQuickStudy, 14 May 2014 - 12:41 PM.


#9 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:03:19 PM

Posted 14 May 2014 - 05:21 PM

why exactly has this caused an error?
I did have to find one serial number on the internet because I lost mine for one of the games

I posted my answer late last night, so I knew you would have questions in the morning.

 

This may be the reason for the problem. Not a fully Crack game, but serial numbers may not match your game.

I am not a Sims player, and I found this via research only.

 

Often a result will show in a crack forum area that matches your problem, so I usually throw it to you.

 

My Bejeweled Deluxe legal installed CD will often show in some programs as illegal, but I paid top $ at a shop.

 

These are often unknown reasons, but only certain scanners will detect this.

All I can offer at this time is it "seems" to be your problem, and as I posted Uninstall / Reinstall if you have serial numbers.

 

Sorry that I can not offer a more defined answer, but it just looks like your problem (do you agree) .........



#10 MsImAQuickStudy

MsImAQuickStudy
  • Topic Starter

  • Members
  • 116 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:07:19 AM

Posted 15 May 2014 - 06:39 AM

Alright! Well, I can try reinstalling (since it's been frustrating me anyway), but if I still don't have that serial number the problems may persist? Well, as long as it doesn't harm anything I'm fine with it, it's not that big of a problem. I was just getting suspicious.



#11 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:03:19 PM

Posted 15 May 2014 - 10:16 PM

I have no idea if it will help or harm the program at this stage ............

 

Is there any way that you can find the "missing key numbers" ??



#12 MsImAQuickStudy

MsImAQuickStudy
  • Topic Starter

  • Members
  • 116 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:07:19 AM

Posted 31 May 2014 - 07:47 AM

I'm not sure, but I'm going to try to reinstall everything somewhere soon anyway! Hopefully that'll fix Sims and the pop-up. I also found out that, if I disable all start-up programs, the window doesn't happen. So maybe there's some conflict with start-up programs?



#13 MsImAQuickStudy

MsImAQuickStudy
  • Topic Starter

  • Members
  • 116 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:07:19 AM

Posted 31 May 2014 - 04:52 PM

I've noticed I'm unable to open some settings as well (Bluetooth settings doesn't open for instance), I don't think that should be caused by any problem with the sims, so maybe there's something interfering after all?

Edit: I have MalwareBytes Anti-Exploit installed and that doesn't open either (though this has happened before and I wasn't sure why exactly).


Edited by MsImAQuickStudy, 31 May 2014 - 04:54 PM.


#14 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:03:19 PM

Posted 31 May 2014 - 06:39 PM

Sorry but if you wish for more help please post to Virus, Trojan, Spyware, and Malware Removal Logs area

 

First follow the instructions in this Preparation Guide starting at Step #6.

 

NOTE - If you cannot complete a step, skip it and continue.

 

 Once the proper DDS logs are created, then make a NEW TOPIC and post it to the linked area above.

They may be able to find a problem with more detailed logs and tools.






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users