Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

win 7 64bit Boot loop BSOD 0x7b


  • This topic is locked This topic is locked
2 replies to this topic

#1 amshnock

amshnock

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:05:35 PM

Posted 08 November 2014 - 04:07 PM

Hello Im working on a PC that was not Booting at all.

I did a scan with frst an came up with 3 missing files

volsnap.sys,explorer.exe,bootcat.cache.

I replaced the files now It will boot to the win logo screen an the reboot. I stoped it from restarting on error an I got the BSOD 0x7b.

 

I cant boot in safe mode. I cant do system restore..

I Hoocked the drive up to my Pc an I seen all the files are there Im doing a disk check now.

Any one have a idea of a way to fix this?

 

Thanks

Bobby

 

 

Edit Here is the Frst log after the files where replaced.

 

 

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-11-2014 01
Ran by SYSTEM on MININT-8SE1V5F on 08-11-2014 15:01:15
Running from F:\
Platform: Windows 7 Home Premium (X64) OS Language: English (United States)
Internet Explorer Version 9
Boot Mode: Recovery

The current controlset is ControlSet001
ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2013-10-24] (Realtek Semiconductor)
HKLM-x32\...\Run: [PDVDDXSrv] => C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe [144616 2011-03-01] (CyberLink Corp.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-10-11] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\qttask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-10] (Oracle Corporation)
HKLM\...\RunOnce: [*Restore] => C:\Windows\System32\rstrui.exe [296960 2010-11-20] (Microsoft Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\Bill\...\Run: [Yahoo! Pager] => C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe [4617720 2006-07-26] (Yahoo! Inc.)
HKU\Bill\...\Run: [Browser Infrastructure Helper] => C:\Users\Bill\AppData\Local\Smartbar\Application\SnapDo.exe startup
HKU\Bill\...\Run: [ivijios] => rundll32 "C:\Users\Bill\AppData\Local\ivijios.dll",ivijios <===== ATTENTION
HKU\Bill\...\Run: [HejlUvala] => regsvr32.exe "C:\ProgramData\HejlUvala\HejlUvala.dat"
HKU\Bill\...\Run: [SaqiQuhv] => regsvr32.exe "C:\ProgramData\SaqiQuhv\SaqiQuhv.dat"
HKU\Bill\...\Run: [Svc2dll] => C:\Users\Bill\AppData\Local\svcxdcl32.exe
HKU\Bill\...\Run: [cmutprop] => C:\Users\Bill\AppData\Local\Temp\estext.exe <===== ATTENTION
Startup: C:\Users\Bill\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock.lnk
ShortcutTarget: Dell Dock.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
InternetURL: C:\Users\Bill\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\INSTALL_TOR.URL -> https://paytordmbdekmizq.torsona.com/16cU990
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk
ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk
ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 AntiSpywareService; C:\Program Files (x86)\comcasttb\ComcastSpywareScan\ComcastAntiSpyService.exe [616408 2009-06-17] ()
S2 CLKMSVC10_1628BCEA; C:\Program Files (x86)\CyberLink\PowerDVD DX\Kernel\BD\NavFilter\kmsvc.exe [240360 2011-03-01] (CyberLink)
S2 ITMRTSVC; C:\Program Files (x86)\CA\PPRT\bin\ITMRTSVC.exe [283912 2007-09-26] (CA, Inc.)
S2 LPTSystemUpdater; "C:\Program Files (x86)\LPT\srpts.exe" [X] <==== ATTENTION

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 athrusb6; C:\Windows\System32\DRIVERS\athrxu6.sys [1041920 2007-07-04] (Atheros Communications, Inc.)
S2 MCSTRM; No ImagePath
S3 VST64HWBS2; C:\Windows\System32\DRIVERS\VSTBS26.SYS [411136 2009-06-10] (Conexant Systems, Inc.)
S3 VST64_DPV; C:\Windows\System32\DRIVERS\VSTDPV6.SYS [1485312 2009-06-10] (Conexant Systems, Inc.)
S2 {1E444BE9-B8EC-4ce6-8C2B-6536FB7F4FB7}; C:\Program Files (x86)\CyberLink\PowerDVD DX\000.fcl [146928 2010-01-07] (CyberLink Corp.)
S1 AntiLog32; \??\C:\Windows\system32\drivers\AntiLog64.sys [X]
S3 aswArKrn; \??\C:\Users\Bill\AppData\Local\Temp\aswArKrn.sys [X]
S0 Disk; system32\DRIVERS\disk.sys [X]
S3 EraserUtilDrv11410; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11410.sys [X]
S3 HidUsb; system32\DRIVERS\hidusb.sys [X]
S3 kbdclass; system32\DRIVERS\kbdclass.sys [X]
S3 kbdhid; system32\DRIVERS\kbdhid.sys [X]
S3 keycrypt; system32\DRIVERS\KeyCrypt64.sys [X]
S3 monitor; system32\DRIVERS\monitor.sys [X]
S3 moufiltr; system32\DRIVERS\moufiltr.sys [X]
S3 TrueSight; \??\C:\Windows\System32\drivers\TrueSight.sys [X]
S3 usbccgp; system32\DRIVERS\usbccgp.sys [X]
S3 USBSTOR; system32\DRIVERS\USBSTOR.SYS [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-08 14:41 - 2011-08-26 15:09 - 00296320 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\volsnap.sys
2014-11-08 14:40 - 2011-08-26 15:11 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2014-11-05 08:52 - 2014-11-05 08:53 - 00276536 _____ () C:\Windows\Minidump\110514-22838-01.dmp
2014-11-05 08:52 - 2014-11-05 08:52 - 00000000 ____D () C:\Windows\Minidump
2014-11-05 08:37 - 2014-11-05 08:38 - 00003342 _____ () C:\Windows\System32\Tasks\WINZIPSS-WINZIPSSOneClickCare
2014-11-04 19:59 - 2014-11-04 19:59 - 00000000 _____ () C:\autoexec.bat
2014-11-04 17:30 - 2014-11-05 09:13 - 00000081 _____ () C:\Users\Bill\AppData\Local\svcxdcl32.dat
2014-11-04 17:29 - 2014-11-04 17:29 - 00000000 ____D () C:\ProgramData\SaqiQuhv
2014-11-04 17:29 - 2014-11-04 17:29 - 00000000 ____D () C:\ProgramData\HejlUvala
2014-11-04 17:11 - 2014-11-04 17:11 - 00000632 _____ () C:\Windows\wmsetup.log
2014-11-04 10:51 - 2014-11-04 10:51 - 00114392 _____ () C:\Users\Bill\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-04 10:46 - 2014-11-04 10:46 - 00003368 ____N () C:\bootsqm.dat
2014-11-04 10:43 - 2014-11-04 10:43 - 00000000 __SHD () C:\found.000
2014-11-04 06:25 - 2014-11-04 06:25 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\Malwarebytes
2014-11-04 06:25 - 2014-11-04 06:25 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-11-04 06:23 - 2014-11-04 06:28 - 00000000 ____D () C:\AdwCleaner
2014-11-04 05:48 - 2014-11-04 05:48 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-11-01 05:51 - 2014-11-01 05:51 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\DigitalSites
2014-10-31 19:37 - 2014-11-05 11:40 - 00000000 ____D () C:\Program Files (x86)\GUMEFF.tmp
2014-10-31 19:37 - 2014-10-31 19:37 - 06000640 _____ () C:\Program Files (x86)\GUTF00.tmp
2014-10-31 18:36 - 2014-10-31 18:36 - 00000000 ____D () C:\Program Files (x86)\AVG Antivirus Free and Options
2014-10-31 01:13 - 2014-10-31 01:13 - 00008564 _____ () C:\Users\Public\DECRYPT_INSTRUCTION.HTML
2014-10-31 01:13 - 2014-10-31 01:13 - 00004226 _____ () C:\Users\Public\DECRYPT_INSTRUCTION.TXT
2014-10-31 01:13 - 2014-10-31 01:13 - 00000278 _____ () C:\Users\Public\INSTALL_TOR.URL
2014-10-31 01:02 - 2014-10-31 01:02 - 00008564 _____ () C:\Users\Public\Downloads\DECRYPT_INSTRUCTION.HTML
2014-10-31 01:02 - 2014-10-31 01:02 - 00008564 _____ () C:\Users\Bill-Z\DECRYPT_INSTRUCTION.HTML
2014-10-31 01:02 - 2014-10-31 01:02 - 00008564 _____ () C:\Users\Bill-Z\AppData\Local\DECRYPT_INSTRUCTION.HTML
2014-10-31 01:02 - 2014-10-31 01:02 - 00008564 _____ () C:\Users\Bill-Z\AppData\DECRYPT_INSTRUCTION.HTML
2014-10-31 01:02 - 2014-10-31 01:02 - 00008564 _____ () C:\Users\Bill\DECRYPT_INSTRUCTION.HTML
2014-10-31 01:02 - 2014-10-31 01:02 - 00004226 _____ () C:\Users\Public\Downloads\DECRYPT_INSTRUCTION.TXT
2014-10-31 01:02 - 2014-10-31 01:02 - 00004226 _____ () C:\Users\Bill-Z\DECRYPT_INSTRUCTION.TXT
2014-10-31 01:02 - 2014-10-31 01:02 - 00004226 _____ () C:\Users\Bill-Z\AppData\Local\DECRYPT_INSTRUCTION.TXT
2014-10-31 01:02 - 2014-10-31 01:02 - 00004226 _____ () C:\Users\Bill-Z\AppData\DECRYPT_INSTRUCTION.TXT
2014-10-31 01:02 - 2014-10-31 01:02 - 00004226 _____ () C:\Users\Bill\DECRYPT_INSTRUCTION.TXT
2014-10-31 01:02 - 2014-10-31 01:02 - 00000278 _____ () C:\Users\Public\Downloads\INSTALL_TOR.URL
2014-10-31 01:02 - 2014-10-31 01:02 - 00000278 _____ () C:\Users\Bill-Z\INSTALL_TOR.URL
2014-10-31 01:02 - 2014-10-31 01:02 - 00000278 _____ () C:\Users\Bill-Z\AppData\Local\INSTALL_TOR.URL
2014-10-31 01:02 - 2014-10-31 01:02 - 00000278 _____ () C:\Users\Bill-Z\AppData\INSTALL_TOR.URL
2014-10-31 01:02 - 2014-10-31 01:02 - 00000278 _____ () C:\Users\Bill\INSTALL_TOR.URL
2014-10-31 00:41 - 2014-10-31 00:41 - 00008564 _____ () C:\Users\Bill\Downloads\DECRYPT_INSTRUCTION.HTML
2014-10-31 00:41 - 2014-10-31 00:41 - 00004226 _____ () C:\Users\Bill\Downloads\DECRYPT_INSTRUCTION.TXT
2014-10-31 00:41 - 2014-10-31 00:41 - 00000278 _____ () C:\Users\Bill\Downloads\INSTALL_TOR.URL
2014-10-31 00:37 - 2014-10-31 00:37 - 00000278 _____ () C:\Users\Bill\Documents\INSTALL_TOR.URL
2014-10-30 17:37 - 2014-10-30 17:37 - 00008562 _____ () C:\Users\Bill\AppData\Roaming\DECRYPT_INSTRUCTION.HTML
2014-10-30 17:37 - 2014-10-30 17:37 - 00008562 _____ () C:\Users\Bill\AppData\DECRYPT_INSTRUCTION.HTML
2014-10-30 17:37 - 2014-10-30 17:37 - 00004224 _____ () C:\Users\Bill\AppData\Roaming\DECRYPT_INSTRUCTION.TXT
2014-10-30 17:37 - 2014-10-30 17:37 - 00004224 _____ () C:\Users\Bill\AppData\DECRYPT_INSTRUCTION.TXT
2014-10-30 17:37 - 2014-10-30 17:37 - 00000276 _____ () C:\Users\Bill\AppData\Roaming\INSTALL_TOR.URL
2014-10-30 17:37 - 2014-10-30 17:37 - 00000276 _____ () C:\Users\Bill\AppData\INSTALL_TOR.URL
2014-10-30 17:35 - 2014-10-30 17:35 - 00008562 _____ () C:\Users\Bill\AppData\Local\DECRYPT_INSTRUCTION.HTML
2014-10-30 17:35 - 2014-10-30 17:35 - 00004224 _____ () C:\Users\Bill\AppData\Local\DECRYPT_INSTRUCTION.TXT
2014-10-30 17:35 - 2014-10-30 17:35 - 00000276 _____ () C:\Users\Bill\AppData\Local\INSTALL_TOR.URL
2014-10-30 16:57 - 2014-10-30 16:57 - 00008562 _____ () C:\ProgramData\DECRYPT_INSTRUCTION.HTML
2014-10-30 16:57 - 2014-10-30 16:57 - 00004224 _____ () C:\ProgramData\DECRYPT_INSTRUCTION.TXT
2014-10-30 16:57 - 2014-10-30 16:57 - 00000276 _____ () C:\ProgramData\INSTALL_TOR.URL
2014-10-30 16:54 - 2014-10-31 20:15 - 00000160 ____H () C:\ProgramData\@system3.att
2014-10-30 16:54 - 2014-10-31 20:14 - 00000424 _____ () C:\ProgramData\@system.temp
2014-10-30 16:53 - 2014-11-05 11:40 - 00000000 ___HD () C:\7ded685
2014-10-30 16:53 - 2014-10-31 20:31 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\FrameworkUpdate7
2014-10-30 16:53 - 2014-10-30 16:53 - 00000448 ____H () C:\Users\Bill\AppData\Roaming\麽鎒駓覜
2014-10-29 06:30 - 2014-10-29 06:30 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\TeamViewer
2014-10-28 08:20 - 2014-10-28 08:21 - 00000000 ____D () C:\Program Files (x86)\xfin_portal
2014-10-27 19:04 - 2014-10-27 19:04 - 00000000 ____D () C:\Users\Bill\AppData\Local\VS Revo Group
2014-10-27 19:03 - 2014-10-27 19:03 - 00000000 ____D () C:\Program Files\VS Revo Group
2014-10-26 19:37 - 2014-11-05 11:40 - 00000000 ____D () C:\Program Files (x86)\LPT
2014-10-26 19:30 - 2014-10-26 19:33 - 00000000 ____D () C:\Program Files (x86)\PC Health Kit
2014-10-26 19:29 - 2014-11-05 11:40 - 00000000 ____D () C:\Users\Bill\AppData\Local\LPT
2014-10-26 19:29 - 2014-10-30 17:35 - 00000000 ____D () C:\Users\Bill\AppData\Local\Smartbar
2014-10-26 19:22 - 2014-10-26 19:22 - 00000000 ____D () C:\Users\Bill\AppData\Local\Avg2014
2014-10-26 18:40 - 2014-10-31 18:43 - 00000000 ____D () C:\ProgramData\MFAData
2014-10-26 18:40 - 2014-10-26 18:40 - 00000000 ____D () C:\Users\Bill\AppData\Local\MFAData
2014-10-26 18:40 - 2014-10-26 18:40 - 00000000 ____D () C:\Users\Bill\AppData\Local\Avg2015
2014-10-26 14:46 - 2014-10-30 16:51 - 00000000 ____D () C:\ProgramData\Windows Genuine Advantage
2014-10-25 13:19 - 2014-11-04 14:38 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\AVAST Software
2014-10-25 12:58 - 2014-10-25 12:58 - 06000640 _____ () C:\Program Files (x86)\GUT72D4.tmp
2014-10-25 12:56 - 2014-11-04 05:36 - 00000000 ____D () C:\Program Files\Google
2014-10-25 12:14 - 2014-11-04 14:38 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-10-24 19:23 - 2014-10-24 19:24 - 40034920 ____T () C:\Windows\SysWOW64\00027225.tmp
2014-10-16 19:03 - 2014-10-16 19:02 - 20416592 _____ () C:\Users\Bill\Documents\Big Country Bluegrass (Special guest David Nance) - You Are My Pretty Fraulein.mp4
2014-10-16 18:53 - 2014-10-16 18:50 - 773444976 _____ () C:\Users\Bill\Documents\Big Country Bluegrass.mp4
2014-10-16 18:35 - 2014-10-16 18:34 - 20098224 _____ () C:\Users\Bill\Documents\Jimmy Martin - Theme Time.mp4
2014-10-09 09:29 - 2014-10-16 08:49 - 00000000 ____D () C:\Program Files\Bonjour
2014-10-09 09:29 - 2014-10-16 08:47 - 00000000 ____D () C:\Program Files (x86)\Bonjour
2014-10-09 09:25 - 2014-10-16 08:47 - 00000000 ____D () C:\HP_ePrint

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-08 15:01 - 2013-12-28 13:13 - 00000000 ____D () C:\FRST
2014-11-05 11:40 - 2012-02-12 11:09 - 00000000 ____D () C:\Program Files (x86)\Conduit
2014-11-05 11:40 - 2011-02-14 07:02 - 00000000 ____D () C:\ProgramData\Norton
2014-11-05 11:34 - 2009-11-04 10:03 - 00000000 ____D () C:\users\Bill
2014-11-05 09:02 - 2009-11-04 10:02 - 00011424 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-05 09:02 - 2009-11-04 10:02 - 00011424 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-04 19:36 - 2011-05-19 14:16 - 00000000 ____D () C:\Users\Bill\AppData\Local\CrashDumps
2014-11-04 16:58 - 2014-09-04 08:27 - 00870128 _____ () C:\Users\Bill\AppData\Roaming\mcs.rma
2014-11-04 16:58 - 2009-09-24 11:59 - 00000004 _____ () C:\Users\Bill\AppData\Roaming\C68EEC
2014-11-04 09:05 - 2009-11-04 12:58 - 00000000 ____D () C:\Windows\Panther
2014-11-04 09:05 - 2009-09-24 06:13 - 00000000 ____D () C:\Users\Bill\Tracing
2014-11-04 06:08 - 2014-09-30 16:20 - 00000000 ____D () C:\Windows\System32\Tasks\Norton Security Suite
2014-11-04 05:36 - 2009-09-26 12:52 - 00000000 ____D () C:\Program Files (x86)\Google
2014-11-01 05:41 - 2010-08-05 12:31 - 00000000 ____D () C:\ProgramData\Google
2014-11-01 05:41 - 2010-08-04 13:25 - 00000000 ____D () C:\Users\Bill\AppData\Local\Google
2014-11-01 05:34 - 2012-07-05 11:54 - 00000000 ____D () C:\Users\Bill\Documents\alex campbell & ola belle-travel on
2014-11-01 05:30 - 2012-03-25 10:31 - 00000000 ____D () C:\Users\Bill\Documents\Webco WLPS 0113 - Al Jones & Frank Necessary & The Spruce Mountain Boys - (1985) - Traditional Bluegrass At Its Best
2014-11-01 05:27 - 2012-02-15 13:49 - 00000000 ____D () C:\Users\Bill\Documents\V. A.  - Country Blue Grass Jamboree Vol 2
2014-10-31 08:33 - 2011-08-16 05:30 - 00000162 _____ () C:\YServer.txt
2014-10-31 06:07 - 2012-05-08 18:59 - 00000000 ____D () C:\Users\Bill\Documents\ZAP 105a - Suwannee Valley Gang - Down To Earth
2014-10-31 01:02 - 2011-02-14 07:02 - 00000000 ____D () C:\Users\Public\Downloads\Norton
2014-10-31 01:02 - 2010-09-25 10:30 - 00000000 ____D () C:\users\Bill-Z
2014-10-31 00:41 - 2014-08-19 09:34 - 00000000 ___RD () C:\Users\Bill\Dropbox
2014-10-31 00:39 - 2012-03-02 20:26 - 00000000 ____D () C:\Users\Bill\Downloads\Jalyn JLP 119 - Reno Don & Bill Harrell - (1968) - The Most requested Songs
2014-10-31 00:36 - 2012-03-25 10:33 - 00000000 ____D () C:\Users\Bill\Documents\Webco WLPS 0117 - Busby Brothers, The - (1986) - Louisiana Grass
2014-10-31 00:34 - 2012-05-09 19:08 - 00000000 ____D () C:\Users\Bill\Documents\Wayne Lewis - (1980) - Lonesome And Blue
2014-10-31 00:32 - 2012-02-15 13:45 - 00000000 ____D () C:\Users\Bill\Documents\V. A.  - Country Blue Grass Jamboree Vol 1
2014-10-31 00:28 - 2014-01-05 09:20 - 00000000 ____D () C:\Users\Bill\Documents\The_Morris_Brothers
2014-10-31 00:07 - 2014-07-19 19:02 - 00000000 ____D () C:\Users\Bill\Documents\taylor_earl_folk_songs_blue_grass
2014-10-31 00:06 - 2012-04-20 06:36 - 00000000 ____D () C:\Users\Bill\Documents\Tasty Licks - (1978) - Anchored To The Shore
2014-10-31 00:04 - 2013-11-29 15:16 - 00000000 ____D () C:\Users\Bill\Documents\Symantec
2014-10-31 00:03 - 2012-03-22 13:52 - 00000000 ____D () C:\Users\Bill\Documents\Stanley Alpine & The Sweet Mountain Boys - (1964) - Bluegrass With 5-String Banjo
2014-10-31 00:02 - 2012-04-21 13:42 - 00000000 ____D () C:\Users\Bill\Documents\Spirits Of Bluegrass, The - (1981) - Somebody New - Fulton Lee SB 101
2014-10-31 00:02 - 2012-04-21 13:41 - 00000000 ____D () C:\Users\Bill\Documents\Spirits Of Bluegrass, The - (1983) - Gettin' In The Spirit - Lark LRLP 5021
2014-10-31 00:01 - 2012-04-20 06:35 - 00000000 ____D () C:\Users\Bill\Documents\Spirits Of Bluegrass, The - (1978) - Gospel Bluegrass - Major LRLP 3000
2014-10-30 23:59 - 2012-04-20 06:35 - 00000000 ____D () C:\Users\Bill\Documents\Spirits Of Bluegrass, The - (1976) - Bluegrass And You - Carpenter 200013
2014-10-30 23:57 - 2012-05-01 19:23 - 00000000 ____D () C:\Users\Bill\Documents\Southern Ramblers, The - (1969) - Bluegrass - Philips 6856018, Philips SBL 7875 (UK)
2014-10-30 23:52 - 2012-04-23 05:54 - 00000000 ____D () C:\Users\Bill\Documents\Smoketown Strut - (1978) - Roustabout
2014-10-30 23:49 - 2012-04-18 10:26 - 00000000 ____D () C:\Users\Bill\Documents\Sloas Brothers, The - (1967) - I'm Going Home Again
2014-10-30 23:46 - 2012-04-13 13:08 - 00000000 ____D () C:\Users\Bill\Documents\Shadetree Express - () - Settlin Down - Central Records CRS 84-109
2014-10-30 23:43 - 2012-03-30 19:06 - 00000000 ____D () C:\Users\Bill\Documents\scans
2014-10-30 23:41 - 2012-07-26 11:00 - 00000000 ____D () C:\Users\Bill\Documents\roy_acuff_tgbt
2014-10-30 23:40 - 2012-07-26 10:57 - 00000000 ____D () C:\Users\Bill\Documents\roy_acuff_gsb
2014-10-30 23:38 - 2012-07-26 11:01 - 00000000 ____D () C:\Users\Bill\Documents\Roy_Acuff_1951
2014-10-30 23:34 - 2012-04-02 14:08 - 00000000 ____D () C:\Users\Bill\Documents\Rone County Boys, The - (1983) - The Rone County Boys - White Dove WDR 1032
2014-10-30 23:33 - 2012-04-20 19:35 - 00000000 ____D () C:\Users\Bill\Documents\romaniuk_family
2014-10-30 23:32 - 2012-04-13 13:17 - 00000000 ____D () C:\Users\Bill\Documents\Roma Jackson & the Tennessee Pals - (1976) - The Old Home Town - Heritage 603
2014-10-30 23:31 - 2012-04-11 18:57 - 00000000 ____D () C:\Users\Bill\Documents\Rocky Mountain Boys, The - (1977) - MAG RSR 293 - Burning Bluegrass
2014-10-30 23:31 - 2012-04-06 13:19 - 00000000 ____D () C:\Users\Bill\Documents\Rocky Mountain Boys, The - (1979) - MAG RSR 1002 - I've Got A Mule To Ride
2014-10-30 23:30 - 2012-05-06 11:03 - 00000000 ____D () C:\Users\Bill\Documents\Revonah 931 - Red Rector - (1978) - Red Rector & Friends
2014-10-30 23:30 - 2012-04-11 19:04 - 00000000 ____D () C:\Users\Bill\Documents\RFD Boys, The - (1974) - PBR 737 - RFD 2
2014-10-30 23:29 - 2012-03-31 07:23 - 00000000 ____D () C:\Users\Bill\Documents\Red Allen - (1973) - & The Allen Brothers - My Old Kentucky Home
2014-10-30 23:29 - 2012-03-31 07:18 - 00000000 ____D () C:\Users\Bill\Documents\Red Allen & The Kentuckians - (1966-03-xx) - Bluegrass Special, Red Allen Live
2014-10-30 23:28 - 2012-03-26 06:53 - 00000000 ____D () C:\Users\Bill\Documents\Red Allen & The Kentuckians - (1954-1969) - Classic Recordings
2014-10-30 23:27 - 2014-03-27 07:59 - 00000000 ____D () C:\Users\Bill\Documents\Raven Hill-V
2014-10-30 23:20 - 2014-04-01 13:01 - 00000000 ____D () C:\Users\Bill\Documents\Raven Hill-P
2014-10-30 23:19 - 2014-03-26 19:13 - 00000000 ____D () C:\Users\Bill\Documents\Raven Hill-A
2014-10-30 23:17 - 2014-06-30 11:48 - 00000000 ____D () C:\Users\Bill\Documents\Oswald and Rachel
2014-10-30 23:04 - 2012-04-13 13:24 - 00000000 ____D () C:\Users\Bill\Documents\Old Sound Of Bluegrass, The - (1977) - The Old Sound - DH7-1008
2014-10-30 23:03 - 2012-03-28 08:41 - 00000000 ____D () C:\Users\Bill\Documents\New Day Country Band, The - The New Day Country Band - WES RSR 866
2014-10-30 23:02 - 2012-10-31 14:29 - 00000000 ____D () C:\Users\Bill\Documents\My Music ©
2014-10-30 22:51 - 2014-03-29 07:43 - 00000000 ____D () C:\Users\Bill\Documents\Morgans, The - (1978) - Music From Morgan Springs (Davis Unlimited DU 33035)
2014-10-30 22:50 - 2014-06-19 12:00 - 00000000 ____D () C:\Users\Bill\Documents\monroe_bill_live_recordings
2014-10-30 22:50 - 2012-04-20 06:45 - 00000000 ____D () C:\Users\Bill\Documents\Monroe,_Wiseman,_Reno_1960
2014-10-30 22:49 - 2012-11-19 07:27 - 00000000 ____D () C:\Users\Bill\Documents\molly_oday_cumberland
2014-10-30 22:47 - 2011-12-14 10:41 - 00000000 ____D () C:\Users\Bill\Documents\MAGIX_Video_Sound_Cleaning_Lab_DLV
2014-10-30 22:25 - 2011-12-14 11:37 - 00000000 ___RD () C:\Users\Bill\Documents\MAGIX
2014-10-30 18:26 - 2012-06-05 19:50 - 00000000 ____D () C:\Users\Bill\Documents\Mac Wiseman - (1958) -  'Tis Sweet To Be Remembered (Dot DLP 3084)
2014-10-30 18:22 - 2012-05-06 12:51 - 00000000 ____D () C:\Users\Bill\Documents\Lilly Brothers, The - (1964) - Bluegrass Breakdown
2014-10-30 18:21 - 2012-04-20 19:34 - 00000000 ____D () C:\Users\Bill\Documents\Lambeth David - (1975) - KB 535 - Tribute To The Stanley Brothers
2014-10-30 18:20 - 2012-11-13 07:13 - 00000000 ____D () C:\Users\Bill\Documents\Kenny Price-Live
2014-10-30 18:20 - 2012-03-31 07:17 - 00000000 ____D () C:\Users\Bill\Documents\Kentuckians, The - (1965) - The Solid Bluegrass Sound Of The Kentuckians
2014-10-30 18:17 - 2012-04-23 05:51 - 00000000 ____D () C:\Users\Bill\Documents\Jim Eanes & Smoketown Strut - (1981) - Ridin' The Roads
2014-10-30 18:14 - 2012-06-02 10:53 - 00000000 ____D () C:\Users\Bill\Documents\Jessup MB 121 - Goins Brothers, The - (1972) - In The Head Of The Holler
2014-10-30 18:13 - 2012-04-19 07:23 - 00000000 ____D () C:\Users\Bill\Documents\J. D. Crowe - (1973) - & The New South - Bluegrass Evolution
2014-10-30 18:13 - 2012-04-19 07:22 - 00000000 ____D () C:\Users\Bill\Documents\J. D. Crowe - (1971) - & The Kentucky Mountain Boys - Ramblin' Boy
2014-10-30 18:13 - 2012-04-19 07:20 - 00000000 ____D () C:\Users\Bill\Documents\J. D. Crowe & The New South - (1979-04-18) - Kosei Nenkin Sho Hall, Tokyo, Japan
2014-10-30 18:12 - 2012-04-19 07:20 - 00000000 ____D () C:\Users\Bill\Documents\J. D. Crowe & The New South - (1975-08-30) - New South Live, Kubo Hall, Tokyo (Trio 6236)
2014-10-30 18:11 - 2012-02-15 13:53 - 00000000 ____D () C:\Users\Bill\Documents\Home Folks
2014-10-30 18:08 - 2014-08-18 19:37 - 00000000 ____D () C:\Users\Bill\Documents\Fwd Album
2014-10-30 18:03 - 2012-06-23 12:24 - 00000000 ____D () C:\Users\Bill\Documents\Dian & The Greenbriar Boys - (1963) - Dian & The Greenbriar Boys
2014-10-30 17:50 - 2012-04-20 19:33 - 00000000 ____D () C:\Users\Bill\Documents\Crouch Dub & Norman Ford - (1975) - KB 536 - Down To Earth Bluegrass
2014-10-30 17:49 - 2012-03-31 07:15 - 00000000 ____D () C:\Users\Bill\Documents\Carroll County Ramblers, The - (1974) - More Of... The Carroll County Ramblers
2014-10-30 17:49 - 2012-03-31 07:14 - 00000000 ____D () C:\Users\Bill\Documents\Carroll County Ramblers, The - (1973) - Down To The Nitty Gritty
2014-10-30 17:49 - 2012-03-28 08:52 - 00000000 ____D () C:\Users\Bill\Documents\Charlie Monroe - (1944) - & His Kentucky Pardners - On The Noonday Jamboree
2014-10-30 17:48 - 2012-08-30 08:58 - 00000000 ____D () C:\Users\Bill\Documents\Carlton Haney BGF - (1965-09-xx) - Carlton Haney's Farm, Roanoke, VA
2014-10-30 17:47 - 2012-03-25 19:17 - 00000000 ____D () C:\Users\Bill\Documents\Buzz Busby & Leon Morris - (1974) - Honkytonk Bluegrass
2014-10-30 17:47 - 2012-03-25 10:24 - 00000000 ____D () C:\Users\Bill\Documents\Buzz Busby - (1981) - A Pioneer Of Traditional Bluegrass
2014-10-30 17:47 - 2012-03-25 10:08 - 00000000 ____D () C:\Users\Bill\Documents\Buzz Busby - The Bluegrass Sounds of Buzz Busby, Yesterday and Today
2014-10-30 17:44 - 2012-04-02 06:56 - 00000000 ____D () C:\Users\Bill\Documents\Bill Monroe - (1946-1947) - The Original Bluegrass Band
2014-10-30 17:37 - 2012-11-11 06:35 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\Philips-Songbird
2014-10-30 17:37 - 2012-06-13 09:49 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\Paltalk
2014-10-30 17:37 - 2011-05-21 06:27 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\xfin_portal
2014-10-30 17:37 - 2009-11-03 11:28 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\Roxio
2014-10-30 17:37 - 2009-09-24 11:58 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\Real
2014-10-30 17:36 - 2014-08-19 09:30 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\Dropbox
2014-10-30 17:36 - 2014-02-21 08:31 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\DVDVideoSoft
2014-10-30 17:36 - 2013-02-12 10:17 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\FreeFLVConverter
2014-10-30 17:36 - 2013-02-08 12:54 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\MusicOasis
2014-10-30 17:36 - 2013-01-27 15:11 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\FixCleaner
2014-10-30 17:36 - 2012-01-18 09:23 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\Babylon
2014-10-30 17:36 - 2011-04-28 13:19 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\ID Vault
2014-10-30 17:36 - 2010-10-15 06:41 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\comcasttb
2014-10-30 17:36 - 2010-02-13 12:20 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\DriverCure
2014-10-30 17:36 - 2009-09-23 17:04 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\CallingID
2014-10-30 17:36 - 2009-09-23 16:50 - 00000000 ____D () C:\Users\Bill\AppData\Roaming\Adobe
2014-10-30 17:35 - 2012-11-11 06:35 - 00000000 ____D () C:\Users\Bill\AppData\Local\Philips-Songbird
2014-10-30 17:35 - 2012-09-25 13:14 - 00000000 ____D () C:\Users\Bill\AppData\Local\Symantec
2014-10-30 17:35 - 2012-08-02 07:02 - 00000000 ____D () C:\Users\Bill\AppData\Local\Xilisoft
2014-10-30 17:35 - 2012-01-18 09:03 - 00000000 ____D () C:\Users\Bill\AppData\Local\SlimWare Utilities Inc
2014-10-30 17:35 - 2009-09-24 20:32 - 00000000 ____D () C:\Users\Bill\AppData\Local\Microsoft Games
2014-10-30 17:35 - 2009-09-23 16:45 - 00000000 ____D () C:\Users\Bill\AppData\Local\PowerDVD DX
2014-10-30 17:35 - 2009-09-23 16:44 - 00000000 ____D () C:\Users\Bill\AppData\Local\SupportSoft
2014-10-30 16:58 - 2014-01-22 20:32 - 00000000 ____D () C:\Users\Bill\AppData\Local\Evernote
2014-10-30 16:58 - 2013-09-04 10:44 - 00000000 ____D () C:\Users\Bill\AppData\Local\DefineExt
2014-10-30 16:58 - 2013-06-11 09:03 - 00000000 ____D () C:\Users\Bill\AppData\Local\HP
2014-10-30 16:58 - 2012-06-18 13:17 - 00000000 ____D () C:\Users\Bill\AppData\Local\BVRP Software
2014-10-30 16:58 - 2011-04-28 13:20 - 00000000 ____D () C:\Users\Bill\AppData\Local\ID Vault
2014-10-30 16:58 - 2010-10-16 06:21 - 00000000 ____D () C:\Users\Bill\AppData\Local\BearShare
2014-10-30 16:57 - 2011-04-28 13:18 - 00000000 ____D () C:\ProgramData\White Sky, Inc
2014-10-30 16:57 - 2009-12-03 07:55 - 00000000 ____D () C:\Users\Bill\AppData\Local\Apple Computer
2014-10-30 16:57 - 2009-09-24 09:12 - 00000000 ____D () C:\ProgramData\MAGIX
2014-10-30 16:54 - 2010-10-16 06:21 - 00000000 ____D () C:\ProgramData\2857
2014-10-30 16:54 - 2009-11-23 08:12 - 00000000 ____D () C:\ProgramData\FreeRIP
2014-10-30 16:54 - 2009-07-23 19:32 - 00000000 ____D () C:\ProgramData\Dell
2014-10-28 07:56 - 2011-02-14 07:04 - 00000000 ____D () C:\Program Files (x86)\Norton Security Suite
2014-10-28 07:50 - 2013-04-10 12:39 - 00000000 ____D () C:\Program Files\Common Files\Symantec Shared
2014-10-27 22:09 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\System32\NDF
2014-10-27 22:09 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\AppCompat
2014-10-27 19:32 - 2013-04-10 12:38 - 00000000 ____D () C:\Windows\System32\Drivers\N360x64
2014-10-27 19:32 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\registration
2014-10-24 14:52 - 2012-12-20 14:06 - 00000000 ____D () C:\Program Files\Zune
2014-10-24 14:52 - 2009-07-23 19:24 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-10-24 13:21 - 2009-07-23 19:24 - 00000000 ____D () C:\ProgramData\Adobe
2014-10-23 10:40 - 2010-01-22 14:11 - 00007296 _____ () C:\Users\Bill\AppData\Roaming\wklnhst.dat
2014-10-23 10:40 - 2009-07-13 21:32 - 00000000 ____D () C:\Windows\System32\FxsTmp
2014-10-18 22:50 - 2010-02-13 12:40 - 00000366 _____ () C:\Windows\Tasks\Driver Fetch.job
2014-10-16 08:47 - 2014-10-06 11:32 - 00000000 ____D () C:\Program Files (x86)\Windows Phone
2014-10-16 08:47 - 2014-10-06 11:30 - 00000000 ____D () C:\ProgramData\Applications
2014-10-16 08:47 - 2012-09-04 07:49 - 00000000 ____D () C:\Users\Bill\AppData\Local\{9B67F1B8-0D23-448B-87E7-1422D50145C8}
2014-10-16 08:47 - 2011-01-14 07:38 - 00000000 ____D () C:\Program Files (x86)\GamePlayLabs
2014-10-09 09:28 - 2013-06-11 09:07 - 00000000 ____D () C:\Program Files (x86)\HP

Some content of TEMP:
====================
C:\Users\Bill\AppData\Local\Temp\701hoel-.dll
C:\Users\Bill\AppData\Local\Temp\ag1higzn.dll
C:\Users\Bill\AppData\Local\Temp\bvkyejaj.dll
C:\Users\Bill\AppData\Local\Temp\culee66g.dll
C:\Users\Bill\AppData\Local\Temp\daqwnoei.dll
C:\Users\Bill\AppData\Local\Temp\espbajbr.dll
C:\Users\Bill\AppData\Local\Temp\h3dv98-1.dll
C:\Users\Bill\AppData\Local\Temp\jxnapp1c.dll
C:\Users\Bill\AppData\Local\Temp\lurqp6cb.dll
C:\Users\Bill\AppData\Local\Temp\lvmenuxl.dll
C:\Users\Bill\AppData\Local\Temp\m0p2dduo.dll
C:\Users\Bill\AppData\Local\Temp\patogd3s.dll
C:\Users\Bill\AppData\Local\Temp\pv1m-ukc.dll
C:\Users\Bill\AppData\Local\Temp\q80g-zny.dll
C:\Users\Bill\AppData\Local\Temp\Quarantine.exe
C:\Users\Bill\AppData\Local\Temp\rnaeuxtj.dll
C:\Users\Bill\AppData\Local\Temp\u-u9t2l3.dll


==================== Known DLLs (Whitelisted) ================


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== Restore Points  =========================

Restore point made on: 2014-10-30 21:32:09
Restore point made on: 2014-10-31 02:35:15
Restore point made on: 2014-10-31 07:38:01
Restore point made on: 2014-10-31 08:50:14
Restore point made on: 2014-10-31 08:56:11
Restore point made on: 2014-10-31 17:42:30
Restore point made on: 2014-10-31 18:45:25
Restore point made on: 2014-10-31 18:46:45
Restore point made on: 2014-11-01 05:22:08
Restore point made on: 2014-11-04 10:58:43

==================== Memory info ===========================

Percentage of memory in use: 36%
Total physical RAM: 2013.05 MB
Available physical RAM: 1279.46 MB
Total Pagefile: 2013.05 MB
Available Pagefile: 1375.16 MB
Total Virtual: 8192 MB
Available Virtual: 8191.9 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:283.4 GB) (Free:74.42 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (RECOVERY) (Fixed) (Total:14.65 GB) (Free:8.04 GB) NTFS
Drive f: () (Removable) (Total:0.93 GB) (Free:0.73 GB) FAT
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 860D70AB)
Partition 1: (Not Active) - (Size=39 MB) - (Type=DE)
Partition 2: (Not Active) - (Size=14.6 GB) - (Type=07 NTFS)
Partition 3: (Active) - (Size=283.4 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 953.9 MB) (Disk ID: 00156897)
Partition 1: (Active) - (Size=954 MB) - (Type=06)


LastRegBack: 2014-10-28 01:34

==================== End Of Log ============================


Edited by hamluis, 15 November 2014 - 06:44 PM.
Moved from Win 7 to Malware Removal Logs - Hamluis.


BC AdBot (Login to Remove)

 


#2 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,762 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:06:35 PM

Posted 15 November 2014 - 06:45 PM

Hello and welcome to Bleeping Computer!

I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

To help Bleeping Computer better assist you please perform the following steps:

***************************************************

step1.gif In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.

CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/555295 <<< CLICK THIS LINK



If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.

***************************************************

step2.gifIf you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of this page). In that reply, please include the following information:

  • If you have not done so already, include a clear description of the problems you're having, along with any steps you may have performed so far.
  • A new DDS log. For your convenience, you will find the instructions for generating these logs repeated at the bottom of this post.
    • Please do this even if you have previously posted logs for us.
    • If you were unable to produce the logs originally please try once more.
    • If you are unable to create a log please provide detailed information about your installed Windows Operating System including the Version, Edition and if it is a 32bit or a 64bit system.
    • If you are unsure about any of these characteristics just post what you can and we will guide you.
  • Please tell us if you have your original Windows CD/DVD available.
  • Upon completing the above steps and posting a reply, another staff member will review your topic and do their best to resolve your issues.

Thank you for your patience, and again sorry for the delay.

***************************************************

We need to see some information about what is happening in your machine. Please perform the following scan again:

  • Download DDS by sUBs from the following link if you no longer have it available and save it to your destop.

    DDS.com Download Link
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explanation about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control can be found HERE.

As I am just a silly little program running on the BleepingComputer.com servers, please do not send me private messages as I do not know how to read and reply to them! Thanks!

#3 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,762 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:06:35 PM

Posted 20 November 2014 - 06:50 PM

Hello again!

I haven't heard from you in 5 days. Therefore, I am going to assume that you no longer need our help, and close this topic.

If you do still need help, please send a Private Message to any Moderator within the next five days. Be sure to include a link to your topic in your Private Message.

Thank you for using Bleeping Computer, and have a great day!




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users