Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

multiple [Eight Random Letters].exe running, making everything run slowly


  • This topic is locked This topic is locked
8 replies to this topic

#1 RG Golf

RG Golf

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:05:45 AM

Posted 21 October 2014 - 12:38 AM

Just recently I've noticed that my computer would run slowly while playing games. When I looked up the processes in task manager I noticed several processes running as an eight random letter .exe with the description of Google Chrome. I don't have Chrome installed on my computer. I'm able to find out where the file is located at and it's alway in one of the folders in my AppData\LocalLow files. I've found that if I stop all the processes it always starts up more. If I'm fast enough I can stop all the processes and then quickly delete the exe file in the folder and usually stops the processes from restarting. But I have to do that everytime I power up my computer. I have Norton but when I scan the exe file it tells me it's safe....... Please any help with this would be greatly appreciated.

 

 

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-11-2013 (ATTENTION: ====> FRST version is 330 days old and could be outdated)
Ran by Munoz (administrator) on MUNOZ-PC on 20-10-2014 19:34:25
Running from C:\Users\Munoz\Desktop
Windows 7 Ultimate Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\21.6.0.32\n360.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\21.6.0.32\n360.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
(Microsoft Corporation) C:\Windows\System32\regsvr32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\SysWOW64\regsvr32.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\DW\DWTRIG20.EXE
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [] - [x]
HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2463552 2014-10-03] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [XboxStat] - C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe [825184 2009-09-30] (Microsoft Corporation)
HKCU\...\Run: [AdobeBridge] - [x]
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-27] (Disc Soft Ltd)
HKCU\...\Run: [yxqahng] - regsvr32.exe /s "C:\Users\Munoz\AppData\Local\Blizzard Entertainment\yxqahng.dll" <===== ATTENTION
MountPoints2: {087f80c5-77da-11e3-aff4-f2c0b0f25feb} - G:\VZW_Software_upgrade_assistant.exe
MountPoints2: {baee2cd3-75ee-11e3-8c5d-aabb8a55019e} - E:\setup.exe
HKLM-x32\...\Run: [AprvRemoveLegacyExcelKeys] - "C:\Program Files (x86)\ApproveIt\Support\Tools\AprvClean.exe" -k HKCU SOFTWARE\Microsoft\Office\Excel\Addins\OfficeAddIn.OfficeAddIn
HKLM-x32\...\Run: [AprvRemoveLegacyWordKeys] - "C:\Program Files (x86)\ApproveIt\Support\Tools\AprvClean.exe" -k HKCU SOFTWARE\Microsoft\Office\Word\Addins\OfficeAddIn.OfficeAddIn
HKLM-x32\...\Run: [ApproveItForOfficeSetup] - "C:\Program Files (x86)\ApproveIt\Support\Tools\ApproveItForOfficeSetup.exe " /1 /p "C:\Program Files (x86)\ApproveIt\"
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe [54840 2007-05-08] (Hewlett-Packard)
HKLM-x32\...\Run: [hpqSRMon] - C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe [150528 2008-07-22] (Hewlett-Packard)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-09-11] (Adobe Systems Incorporated)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x96E145257A0ACF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine64\21.6.0.32\coieplg.dll (Symantec Corporation)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: IBM Forms Viewer Helper - {0941C58F-E461-4E03-BD7D-44C27392ADE1} - C:\Program Files (x86)\IBM\Forms Viewer\4.0\PEhelper.dll (IBM Corporation)
BHO-x32: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\21.6.0.32\coieplg.dll (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\21.6.0.32\ips\ipsbho.dll (Symantec Corporation)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine64\21.6.0.32\coieplg.dll (Symantec Corporation)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\21.6.0.32\coieplg.dll (Symantec Corporation)
DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Munoz\AppData\Roaming\Mozilla\Firefox\Profiles\o99vylff.default
FF user.js: detected! => C:\Users\Munoz\AppData\Roaming\Mozilla\Firefox\Profiles\o99vylff.default\user.js
FF Homepage: https://www.google.com/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_189.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_189.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.0.1.3\coFFPlgn\
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.0.1.3\coFFPlgn\
FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3

==================== Services (Whitelisted) =================

S4 ac.sharedstore; C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe [277032 2009-06-03] (ActivIdentity)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1149760 2014-10-03] (NVIDIA Corporation)
R2 N360; C:\Program Files (x86)\Norton 360\Engine\21.6.0.32\N360.exe [265040 2014-09-21] (Symantec Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1796928 2014-10-03] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19440960 2014-10-03] (NVIDIA Corporation)

==================== Drivers (Whitelisted) ====================

R1 BHDrvx64; C:\Program Files (x86)\Norton 360\NortonData\21.0.1.3\Definitions\BASHDefs\20141016.001\BHDrvx64.sys [1587416 2014-10-03] (Symantec Corporation)
R1 ccSet_N360; C:\Windows\system32\drivers\N360x64\1506000.020\ccSetx64.sys [162392 2014-02-20] (Symantec Corporation)
R3 cmudaxp; C:\Windows\System32\drivers\cmudaxp.sys [2725376 2011-03-09] (C-Media Inc)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-01-05] (Disc Soft Ltd)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [487216 2014-10-19] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [142640 2014-10-19] (Symantec Corporation)
R1 IDSVia64; C:\Program Files (x86)\Norton 360\NortonData\21.0.1.3\Definitions\IPSDefs\20141020.001\IDSvia64.sys [633560 2014-10-17] (Symantec Corporation)
R3 Linksys_adapter_H; C:\Windows\System32\DRIVERS\AE1200w764.sys [1254464 2011-03-30] (Broadcom Corporation)
R3 NAVENG; C:\Program Files (x86)\Norton 360\NortonData\21.0.1.3\Definitions\VirusDefs\20141020.003\ENG64.SYS [129752 2014-10-19] (Symantec Corporation)
R3 NAVEX15; C:\Program Files (x86)\Norton 360\NortonData\21.0.1.3\Definitions\VirusDefs\20141020.003\EX64.SYS [2137304 2014-10-19] (Symantec Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20288 2014-10-03] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38048 2014-09-04] (NVIDIA Corporation)
S3 RTCore64; C:\Program Files (x86)\EVGA Precision X\RTCore64.sys [15176 2013-07-17] ()
R3 ScpVBus; C:\Windows\System32\DRIVERS\ScpVBus.sys [39168 2013-05-05] (Scarlet.Crush Productions)
R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-13] (Brother Industries Ltd.)
R3 SRTSP; C:\Windows\System32\Drivers\N360x64\1506000.020\SRTSP64.SYS [876248 2014-08-25] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\N360x64\1506000.020\SRTSPX64.SYS [37592 2014-08-25] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\drivers\N360x64\1506000.020\SYMDS64.SYS [493656 2013-07-31] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\N360x64\1506000.020\SYMEFA64.SYS [1148120 2014-08-25] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2014-10-19] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\N360x64\1506000.020\Ironx64.SYS [266968 2014-08-06] (Symantec Corporation)
R1 SymNetS; C:\Windows\System32\Drivers\N360x64\1506000.020\SYMNETS.SYS [593112 2014-08-25] (Symantec Corporation)
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [x]
S3 tsusbhub; system32\drivers\tsusbhub.sys [x]
S3 VGPU; System32\drivers\rdvgkmd.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-10-20 19:34 - 2014-10-20 19:34 - 00015161 _____ C:\Users\Munoz\Desktop\FRST.txt
2014-10-20 06:41 - 2014-10-20 06:41 - 00000000 ____D C:\FRST
2014-10-20 06:41 - 2014-10-20 06:38 - 01958440 _____ (Farbar) C:\Users\Munoz\Desktop\FRST64.exe
2014-10-20 06:38 - 2014-10-20 06:38 - 01958440 _____ (Farbar) C:\Users\Munoz\Downloads\FRST64.exe
2014-10-20 06:31 - 2014-10-20 06:31 - 00000871 _____ C:\Users\Munoz\Downloads\fixlist.txt
2014-10-19 12:09 - 2014-10-19 12:09 - 00000000 ____D C:\Users\Munoz\AppData\Local\CrashDumps
2014-10-19 12:06 - 2014-10-19 12:06 - 00002019 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk
2014-10-19 12:01 - 2014-10-19 12:01 - 00000000 ____D C:\Windows\System32\Tasks\Norton 360
2014-10-19 07:09 - 2014-10-19 07:09 - 00000000 ____D C:\Users\Munoz\Documents\Symantec
2014-10-19 07:08 - 2014-10-19 11:56 - 00003206 _____ C:\Windows\System32\Tasks\Norton WSC Integration
2014-10-19 07:08 - 2014-10-19 07:08 - 00177752 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
2014-10-19 07:08 - 2014-10-19 07:08 - 00008222 _____ C:\Windows\system32\Drivers\SYMEVENT64x86.CAT
2014-10-19 07:08 - 2014-10-19 07:08 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared
2014-10-19 07:07 - 2014-10-19 11:56 - 00002319 _____ C:\Users\Public\Desktop\Norton 360.lnk
2014-10-19 07:06 - 2014-10-19 11:56 - 00000000 ____D C:\Windows\system32\Drivers\N360x64
2014-10-19 07:06 - 2014-10-19 07:08 - 00000000 ____D C:\ProgramData\Norton
2014-10-19 07:06 - 2014-10-19 07:06 - 00000000 ____D C:\Program Files (x86)\Norton 360
2014-10-19 07:04 - 2014-10-19 07:06 - 00000000 ____D C:\Users\Munoz\Desktop\Norton 360 2014 - 1 User - 3 Licenses (Download)
2014-10-19 06:32 - 2014-10-19 06:32 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_xusb21_01009.Wdf
2014-10-19 06:28 - 2014-10-19 06:30 - 00000000 ____D C:\Users\Munoz\Desktop\DS4Tool
2014-10-19 06:24 - 2014-10-19 06:24 - 00000000 ____D C:\Program Files\Microsoft Xbox 360 Accessories
2014-10-18 18:33 - 2014-10-18 18:33 - 00001783 _____ C:\Users\Public\Desktop\iTunes.lnk
2014-10-18 18:33 - 2014-10-18 18:33 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2014-10-18 18:33 - 2014-10-18 18:33 - 00000000 ____D C:\Program Files\iTunes
2014-10-18 18:33 - 2014-10-18 18:33 - 00000000 ____D C:\Program Files\iPod
2014-10-18 18:33 - 2014-10-18 18:33 - 00000000 ____D C:\Program Files (x86)\iTunes
2014-10-17 06:59 - 2014-10-17 06:59 - 00000000 ____D C:\Users\Munoz\AppData\Roaming\Steam
2014-10-11 23:22 - 2014-10-12 00:27 - 00000000 ____D C:\Users\Munoz\Desktop\for the missus
2014-10-11 22:55 - 2014-10-11 22:55 - 00000000 ____D C:\Users\Munoz\AppData\Roaming\Apple Computer
2014-10-11 22:55 - 2014-10-11 22:55 - 00000000 ____D C:\Users\Munoz\AppData\Local\Apple Computer
2014-10-11 22:55 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2014-10-11 22:54 - 2014-10-18 18:33 - 00000000 ____D C:\Program Files\Common Files\Apple
2014-10-11 22:54 - 2014-10-18 18:32 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-10-11 22:54 - 2014-10-11 22:54 - 00000000 ____D C:\Windows\System32\Tasks\Apple
2014-10-11 22:54 - 2014-10-11 22:54 - 00000000 ____D C:\Users\Munoz\AppData\Local\Apple
2014-10-11 22:54 - 2014-10-11 22:54 - 00000000 ____D C:\ProgramData\Apple Computer
2014-10-11 22:54 - 2014-10-11 22:54 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2014-10-11 22:53 - 2014-10-11 22:54 - 00000000 ____D C:\ProgramData\Apple
2014-10-11 22:53 - 2014-10-11 22:53 - 00000000 ____D C:\Program Files\Bonjour
2014-10-11 22:53 - 2014-10-11 22:53 - 00000000 ____D C:\Program Files (x86)\Bonjour

==================== One Month Modified Files and Folders =======

2014-10-20 19:35 - 2014-10-20 19:34 - 00015161 _____ C:\Users\Munoz\Desktop\FRST.txt
2014-10-20 19:04 - 2009-07-13 18:51 - 00127867 _____ C:\Windows\setupact.log
2014-10-20 19:03 - 2014-01-04 23:38 - 00000000 ____D C:\ProgramData\NVIDIA
2014-10-20 19:03 - 2009-07-13 19:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-10-20 07:07 - 2014-01-04 21:03 - 01581498 _____ C:\Windows\WindowsUpdate.log
2014-10-20 06:48 - 2014-01-05 14:58 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-10-20 06:41 - 2014-10-20 06:41 - 00000000 ____D C:\FRST
2014-10-20 06:38 - 2014-10-20 06:41 - 01958440 _____ (Farbar) C:\Users\Munoz\Desktop\FRST64.exe
2014-10-20 06:38 - 2014-10-20 06:38 - 01958440 _____ (Farbar) C:\Users\Munoz\Downloads\FRST64.exe
2014-10-20 06:31 - 2014-10-20 06:31 - 00000871 _____ C:\Users\Munoz\Downloads\fixlist.txt
2014-10-20 06:20 - 2014-01-05 13:33 - 00198620 _____ C:\Windows\PFRO.log
2014-10-19 22:54 - 2014-01-08 21:58 - 00000000 ____D C:\Program Files (x86)\Steam
2014-10-19 19:58 - 2014-01-05 18:06 - 00000000 ____D C:\Users\Munoz\Documents\My Cheat Tables
2014-10-19 12:09 - 2014-10-19 12:09 - 00000000 ____D C:\Users\Munoz\AppData\Local\CrashDumps
2014-10-19 12:07 - 2014-09-07 11:56 - 00000000 ____D C:\Users\Munoz\AppData\Local\Adobe
2014-10-19 12:06 - 2014-10-19 12:06 - 00002019 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk
2014-10-19 12:06 - 2014-01-05 14:54 - 00000000 ____D C:\ProgramData\Adobe
2014-10-19 12:06 - 2014-01-05 14:54 - 00000000 ____D C:\Program Files (x86)\Adobe
2014-10-19 12:01 - 2014-10-19 12:01 - 00000000 ____D C:\Windows\System32\Tasks\Norton 360
2014-10-19 11:56 - 2014-10-19 07:08 - 00003206 _____ C:\Windows\System32\Tasks\Norton WSC Integration
2014-10-19 11:56 - 2014-10-19 07:07 - 00002319 _____ C:\Users\Public\Desktop\Norton 360.lnk
2014-10-19 11:56 - 2014-10-19 07:06 - 00000000 ____D C:\Windows\system32\Drivers\N360x64
2014-10-19 09:36 - 2009-07-13 17:20 - 00000000 __RHD C:\Users\Public\Libraries
2014-10-19 07:45 - 2014-03-15 09:45 - 00000000 ____D C:\Program Files (x86)\Southpark Stick of Truth
2014-10-19 07:44 - 2013-12-14 19:04 - 00000000 ____D C:\Program Files (x86)\Assassins Creed IV Black Flag
2014-10-19 07:09 - 2014-10-19 07:09 - 00000000 ____D C:\Users\Munoz\Documents\Symantec
2014-10-19 07:08 - 2014-10-19 07:08 - 00177752 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
2014-10-19 07:08 - 2014-10-19 07:08 - 00008222 _____ C:\Windows\system32\Drivers\SYMEVENT64x86.CAT
2014-10-19 07:08 - 2014-10-19 07:08 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared
2014-10-19 07:08 - 2014-10-19 07:06 - 00000000 ____D C:\ProgramData\Norton
2014-10-19 07:06 - 2014-10-19 07:06 - 00000000 ____D C:\Program Files (x86)\Norton 360
2014-10-19 07:06 - 2014-10-19 07:04 - 00000000 ____D C:\Users\Munoz\Desktop\Norton 360 2014 - 1 User - 3 Licenses (Download)
2014-10-19 06:32 - 2014-10-19 06:32 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_xusb21_01009.Wdf
2014-10-19 06:30 - 2014-10-19 06:28 - 00000000 ____D C:\Users\Munoz\Desktop\DS4Tool
2014-10-19 06:24 - 2014-10-19 06:24 - 00000000 ____D C:\Program Files\Microsoft Xbox 360 Accessories
2014-10-19 06:24 - 2014-01-05 00:00 - 00162493 _____ C:\Windows\DirectX.log
2014-10-19 06:17 - 2014-01-05 14:58 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-10-19 06:17 - 2014-01-04 23:40 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-10-19 06:17 - 2014-01-04 23:40 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-10-18 20:02 - 2009-07-13 19:13 - 00780868 _____ C:\Windows\system32\PerfStringBackup.INI
2014-10-18 19:59 - 2014-02-08 14:35 - 00000000 ____D C:\ProgramData\Origin
2014-10-18 19:59 - 2014-01-05 19:53 - 00000000 ____D C:\Users\Munoz\AppData\Roaming\uTorrent
2014-10-18 18:33 - 2014-10-18 18:33 - 00001783 _____ C:\Users\Public\Desktop\iTunes.lnk
2014-10-18 18:33 - 2014-10-18 18:33 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2014-10-18 18:33 - 2014-10-18 18:33 - 00000000 ____D C:\Program Files\iTunes
2014-10-18 18:33 - 2014-10-18 18:33 - 00000000 ____D C:\Program Files\iPod
2014-10-18 18:33 - 2014-10-18 18:33 - 00000000 ____D C:\Program Files (x86)\iTunes
2014-10-18 18:33 - 2014-10-11 22:54 - 00000000 ____D C:\Program Files\Common Files\Apple
2014-10-18 18:32 - 2014-10-11 22:54 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-10-18 18:28 - 2014-02-08 14:35 - 00000000 ____D C:\Program Files (x86)\Origin
2014-10-17 16:17 - 2014-08-20 19:59 - 00000000 ____D C:\Users\Munoz\AppData\Local\Blizzard Entertainment
2014-10-17 06:59 - 2014-10-17 06:59 - 00000000 ____D C:\Users\Munoz\AppData\Roaming\Steam
2014-10-12 00:27 - 2014-10-11 23:22 - 00000000 ____D C:\Users\Munoz\Desktop\for the missus
2014-10-11 22:55 - 2014-10-11 22:55 - 00000000 ____D C:\Users\Munoz\AppData\Roaming\Apple Computer
2014-10-11 22:55 - 2014-10-11 22:55 - 00000000 ____D C:\Users\Munoz\AppData\Local\Apple Computer
2014-10-11 22:54 - 2014-10-11 22:54 - 00000000 ____D C:\Windows\System32\Tasks\Apple
2014-10-11 22:54 - 2014-10-11 22:54 - 00000000 ____D C:\Users\Munoz\AppData\Local\Apple
2014-10-11 22:54 - 2014-10-11 22:54 - 00000000 ____D C:\ProgramData\Apple Computer
2014-10-11 22:54 - 2014-10-11 22:54 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2014-10-11 22:54 - 2014-10-11 22:53 - 00000000 ____D C:\ProgramData\Apple
2014-10-11 22:53 - 2014-10-11 22:53 - 00000000 ____D C:\Program Files\Bonjour
2014-10-11 22:53 - 2014-10-11 22:53 - 00000000 ____D C:\Program Files (x86)\Bonjour
2014-10-03 20:42 - 2014-07-29 09:21 - 01291280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2014-10-03 20:42 - 2014-04-01 22:32 - 02197680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2014-10-03 20:41 - 2014-07-29 09:21 - 01715224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2014-10-03 20:41 - 2014-04-01 22:32 - 02800296 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2014-09-26 12:36 - 2014-01-04 23:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-26 06:15 - 2014-03-19 20:32 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox

Some content of TEMP:
====================
C:\Users\Munoz\AppData\Local\Temp\ose00000.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-10-16 21:13

==================== End Of Log ============================



BC AdBot (Login to Remove)

 


#2 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:11:45 AM

Posted 21 October 2014 - 01:07 PM


Hello RG Golf

I would like to welcome you to the Malware Removal section of the forum.

Around here they call me Gringo and I will be glad to help you with your malware problems.


Very Important --> Please read this post completely, I have spent my time to put together somethings for you to keep in mind while I am helping you to make things go easier, faster and smoother for both of us!

  • Please do not run any tools unless instructed to do so.
    • We ask you to run different tools in a specific order to ensure the malware is completely removed from your machine, and running any additional tools may detect false positives, interfere with our tools, or cause unforeseen damage or system instability.
  • Please do not attach logs or use code boxes, just copy and paste the text.
    • Due to the high volume of logs we receive it helps to receive everything in the same format, and code boxes make the logs very difficult to read. Also, attachments require us to download and open the reports when it is easier to just read the reports in your post.
  • Please read every post completely before doing anything.
    • Pay special attention to the NOTE: lines, these entries identify an individual issue or important step in the cleanup process.
  • Please provide feedback about your experience as we go.
    • A short statement describing how the computer is working helps us understand where to go next, for example: I am still getting redirected, the computer is running normally, etc. Please do not describe the computer as "the same", this requires the extra step of looking back at your previous post.
NOTE: At the top of your post, click on the "Follow This Topic" Button, make sure that the "Receive notification" box is checked and that it is set to "Instantly" - This will send you an e-mail as soon as I reply to your topic, allowing us to resolve the issue faster.

NOTE: Backup any files that cannot be replaced. Removing malware can be unpredictable and this step can save a lot of heartaches if things don't go as planed. You can put them on a CD/DVD, external drive or a pen drive, anywhere except on the computer.

NOTE: It is good practice to copy and paste the instructions into notepad and print them in case it is necessary for you to go offline during the cleanup process. To open notepad, navigate to Start Menu > All Programs > Accessories > Notepad. Please remember to copy the entire post so you do not miss any instructions.


These are the programs I would like you to run next, if you have any problems with one of these just skip it and move on to the next one.

-AdwCleaner-

Please download AdwCleaner by Xplode onto your desktop.
  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click on Scan.
  • After the scan is complete click on "Clean"
  • Confirm each time with Ok.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the content of that logfile with your next answer.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.
-Junkware-Removal-Tool-

Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
When they are complete let me have the two reports and let me know how things are running.

Gringo
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University

#3 RG Golf

RG Golf
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:05:45 AM

Posted 21 October 2014 - 07:55 PM

Both reports are below. The processes are still running with the description of Google Chrome. And as I was typing this now I'm getting pop ups titled "Failed To Create Data Directory" and inside the window it has "Google Chrome cannot read and write to its data directory: C:Users\Munoz\AppData\Local\Google\Chrome\User Data" and again I don't have Google Chrome installed on my computer. The pop ups haven't come up before.

 

# AdwCleaner v4.001 - Report created 21/10/2014 at 14:38:43
# DB v2014-10-21.1
# Updated 20/10/2014 by Xplode
# Operating System : Windows 7 Ultimate Service Pack 1 (64 bits)
# Username : Munoz - MUNOZ-PC
# Running from : C:\Users\Munoz\Desktop\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

File Deleted : C:\Users\Munoz\AppData\Roaming\Mozilla\Firefox\Profiles\o99vylff.default\user.js

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk
Key Deleted : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_download_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_download_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_rasmancs
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536

***** [ Browsers ] *****

-\\ Internet Explorer v9.0.8112.16526


-\\ Mozilla Firefox v32.0.3 (x86 en-US)


*************************

AdwCleaner[R0].txt - [1727 octets] - [21/10/2014 14:37:01]
AdwCleaner[S0].txt - [1651 octets] - [21/10/2014 14:38:43]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1711 octets] ##########

 

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.3.3 (10.21.2014:1)
OS: Windows 7 Ultimate x64
Ran by Munoz on Tue 10/21/2014 at 14:45:24.07
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ FireFox

Emptied folder: C:\Users\Munoz\AppData\Roaming\mozilla\firefox\profiles\o99vylff.default\minidumps [100 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Tue 10/21/2014 at 14:47:27.59
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 



#4 RG Golf

RG Golf
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:05:45 AM

Posted 21 October 2014 - 08:13 PM

Update: Had to restart my computer and after 10 mins being on the processes haven't popped up again. I'm hoping it's gone for good now. Is there anything I should do to ensure it's good now?


Edited by RG Golf, 21 October 2014 - 08:13 PM.


#5 RG Golf

RG Golf
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:05:45 AM

Posted 22 October 2014 - 10:41 AM

Wanted to give another update. As of this morning it still hasn't popped back up in the processes.



#6 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:11:45 AM

Posted 26 October 2014 - 12:43 PM


Hello RG Golf

Very sorry for the delay

I Would like you to do the following.

Please print out or make a copy in notepad of any instructions given, as sometimes it is necessary to go offline and you will lose access to them.

Run Combofix:

You may be asked to install or update the Recovery Console (Win XP Only) if this happens please allow it to do so (you will need to be connected to the internet for this)

Before you run Combofix I will need you to turn off any security software you have running, If you do not know how to do this you can find out >here< or >here<

Combofix may need to reboot your computer more than once to do its job this is normal.

You can download Combofix from one of these links. I want you to save it to the desktop and run it from there.1. Close any open browsers or any other programs that are open.
2. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

Double click on combofix.exe & follow the prompts.
When finished, it will produce a report for you.

Note 1: Do not mouseclick combofix's window while it's running. That may cause it to stall

Note 2: If you receive an error "Illegal operation attempted on a registry key that has been marked for deletion." Please restart the computer

"information and logs"
  • In your next post I need the following
  • Log from Combofix
  • let me know of any problems you may have had
  • How is the computer doing now?
Gringo
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University

#7 RG Golf

RG Golf
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:05:45 AM

Posted 30 October 2014 - 03:04 AM

Sorry have been really busy. I will run this tomorrow and post the information you need.



#8 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:11:45 AM

Posted 31 October 2014 - 02:05 PM

No problem and I will look for you then


gringo
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University

#9 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:11:45 AM

Posted 21 November 2014 - 05:39 PM

Due to the lack of feedback, this topic is now closed.

In the event you still have problems, please send me or any Moderator a Private Message and ask them to reopen this topic within the next 5 days.

Please include a link to your topic in the Private Message. Thank you.
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users