Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Possible Virus/Malware, Sound Disabled!


  • Please log in to reply
24 replies to this topic

#1 RShankar

RShankar

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:11:07 AM

Posted 14 May 2015 - 08:14 AM

Hi,

 

My problem is as follows.

 

1) My AVG free version disclosed their was a threat, at the same time my sound card failed with the error message - the audio service is not running.

 

2) Soon afterwards, the computer crashed and restarted but was quite slow from then onward. Audio, remained not working

 

3)I ran AVG, again, but at the same time tried to download Bitdefender, which asked for removal of AVG. Removed AVG, but Bitdefender never downloaded. Deleted Mcafee as well in the process.

 

4) Downloaded Panda, whose scan came out clean. Although, I strongly suspect their is a malware in my computer due to the fact that my audio is not working, and the computer remains slow.

 

I use Windows 8.1 with anti virus options Windows Defender and Panda.

 

Please do advise.

 

Thanks!



BC AdBot (Login to Remove)

 


#2 Sintharius

Sintharius

    Bleepin' Sniper


  • Members
  • 5,639 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:The Netherlands
  • Local time:06:37 AM

Posted 14 May 2015 - 08:20 AM

Hi there,

Let's take a look.

MiniToolbox by Farbar

Please download MiniToolBox, save it to your desktop and run it.
Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Devices
  • List Users, Partitions and Memory size.
  • List Minidump Files
  • List Restore Points
Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.

===

Security Check by screen317
  • Download Security Check by screen317 from here or here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
A Notepad document should open automatically called checkup.txt. Please copy and paste the contents of the log in your next reply.

Regards,
Alex

#3 RShankar

RShankar
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:11:07 AM

Posted 14 May 2015 - 09:33 AM

Hi,

 

I  downloaded both of them.But, unable to open them. It says I don't have access. It ends up getting removed.

 

Plus, the Panda cloud came back with two threats, which it said it cannot disinfect. 


Edited by RShankar, 14 May 2015 - 09:47 AM.


#4 Sintharius

Sintharius

    Bleepin' Sniper


  • Members
  • 5,639 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:The Netherlands
  • Local time:06:37 AM

Posted 14 May 2015 - 11:23 AM

Hi there,

Do you have another clean machine and a flash drive?

Alex

#5 RShankar

RShankar
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:11:07 AM

Posted 14 May 2015 - 11:41 AM

It might take some time to get another clean comp. Is there a quicker solution? I think it is spreading! 



#6 Sintharius

Sintharius

    Bleepin' Sniper


  • Members
  • 5,639 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:The Netherlands
  • Local time:06:37 AM

Posted 14 May 2015 - 11:49 AM

Hi there,

Please do this.

Rkill by Grinler

Please download Rkill by Grinler and save it to your desktop.
Link 1
Link 2
  • Double-click on the Rkill desktop icon to run the tool.
  • Vista/7/8 users right-click on it and choose Run As Administrator.
  • A black DOS box will briefly flash and then disappear. This is normal and indicates the tool ran successfully.
  • If not, delete the file, then download and use the one provided in Link 2.
  • If it does not work, repeat the process and attempt to use one of the remaining links until the tool runs.
  • If the tool does not run from any of the links provided, please let me know.
  • Do not reboot the computer, you will need to run the application again.
After that run this.

Emsisoft Emergency Kit

Please download Emsisoft Emergency Kit and save it to your desktop. Double click on the EmsisoftEmergencyKit file you downloaded to extract its contents and create a shortcut on the desktop. Leave all settings as they are and click the Extract button at the bottom. A folder named EEK will be created in the root of the drive (usually c:\).
  • After extraction please double-click on the new Start Emsisoft Emergency Kit icon on your desktop.
  • The first time you launch it, Emsisoft Emergency Kit will recommend that you allow it to download updates. Please click Yes so that it downloads the latest database updates.
  • When the update process is complete, a new button will appear in the lower-left corner that says Back. Click on this button to return to the Overview screen.
  • Click on Scan to be taken to the scan options. If you are asked if you want the scanner to scan for Potentially Unwanted Programs, then click Yes.
  • Click on the Full Scan button to start the scan.
  • When the scan is completed click the Quarantine selected objects button. Note, this option is only available if malicious objects were detected during the scan.
  • When the threats have been quarantined, click the View report button in the lower-right corner, and the scan log will be opened in Notepad.
  • Please save the log in Notepad on your desktop, and attach it to your next reply.
  • When you close Emsisoft Emergency Kit, it will give you an option to sign up for a newsletter. This is optional, and is not necessary for the malware removal process.
If it does not work, let me know.

Regards,
Alex

#7 RShankar

RShankar
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:11:07 AM

Posted 14 May 2015 - 01:50 PM

Hi,

 

I ran the Rkill, came back with this report:

 

kill 2.7.0 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2015 BleepingComputer.com
More Information about Rkill can be found at this link:
 http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 05/15/2015 12:10:13 AM in x64 mode.
Windows Version: Windows 8.1

Checking for Windows services to stop:

 * No malware services found to stop.

Checking for processes to terminate:

 * No malware processes found to kill.

Checking Registry for malware related settings:

 * No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

 * Windows Defender Disabled

   [HKLM\SOFTWARE\Microsoft\Windows Defender]
   "DisableAntiSpyware" = dword:00000001

Checking Windows Service Integrity:

 * AudioEndpointBuilder => %SystemRoot%\System32\Audiosrv.dll [Incorrect ServiceDLL]
 * netprofm => %SystemRoot%\System32\netprofm.dll [Incorrect ServiceDLL]
 * WinHttpAutoProxySvc => winhttp.dll [Incorrect ServiceDLL]

Searching for Missing Digital Signatures:

 * No issues found.

Checking HOSTS File:

 * No issues found.

Program finished at: 05/15/2015 12:13:29 AM
Execution time: 0 hours(s), 3 minute(s), and 16 seconds(s)

 

Now running the other one..


Edited by RShankar, 14 May 2015 - 01:50 PM.


#8 RShankar

RShankar
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:11:07 AM

Posted 14 May 2015 - 04:09 PM

Hi,

 

Ran the second scan, the results:

 

Emsisoft Emergency Kit - Version 9.0
Last update: 15/05/2015 00:33:05
User account: Dell\Rajeev

Scan settings:

Scan type: Full Scan
Objects: Rootkits, Memory, Traces, C:\, X:\, Y:\

Detect PUPs: On
Scan archives: On
ADS Scan: On
File extension filter: Off
Advanced caching: On
Direct disk access: Off

Scan start: 15/05/2015 00:35:12
Key: HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}  detected: Application.AdReg (A)
Key: HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{058F0E48-61CA-4964-9FBA-1978A1BB060D}  detected: Application.AdReg (A)
Key: HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{18F33C35-8EF2-40D7-8BA4-932B0121B472}  detected: Application.AdReg (A)
Key: HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}  detected: Application.AdReg (A)
Key: HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\YT.YTNAVASSISTPLUGIN  detected: Application.AdReg (A)
Key: HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\YT.YTNAVASSISTPLUGIN.1  detected: Application.AdReg (A)

Scanned 320845
Found 6

Scan end: 15/05/2015 02:26:40
Scan time: 1:51:28

Quarantined 0



#9 Sintharius

Sintharius

    Bleepin' Sniper


  • Members
  • 5,639 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:The Netherlands
  • Local time:06:37 AM

Posted 14 May 2015 - 04:20 PM

Hi there,

Please re-run EEK and choose Quarantine selected for all detections.

Can you try running MiniToolbox and SecurityCheck again?

Regards,
Alex

#10 RShankar

RShankar
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:11:07 AM

Posted 14 May 2015 - 04:35 PM

Hi,

 

I am scanning again. Although, I do remember quarantining them - but it did not happen. I tried running the Mini and SC, but it seems as if Panda is blocking them (calling them a virus). Shall I unblock?



#11 Sintharius

Sintharius

    Bleepin' Sniper


  • Members
  • 5,639 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:The Netherlands
  • Local time:06:37 AM

Posted 14 May 2015 - 04:36 PM

Hi there,

It's a false positive. You can temporary disable Panda or place both files into its whitelist.

Regards,
Alex

#12 RShankar

RShankar
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:11:07 AM

Posted 14 May 2015 - 05:02 PM

Hi,

 

Did the Mini and SC, Results:

 

 

Mini

 

MiniToolBox by Farbar  Version: 11-05-2015 01
Ran by Rajeev (administrator) on 15-05-2015 at 03:13:59
Running from "C:\Users\Rajeev\Desktop"
Microsoft Windows 8.1  (X64)
Model: Inspiron 3542 Manufacturer: Dell Inc.
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================

 

========================= IP Configuration: ================================

Realtek PCIe FE Family Controller = Ethernet (Media disconnected)
Dell Wireless 1705 802.11b/g/n (2.4GHZ) = Wi-Fi (Media disconnected)
Bluetooth Device (Personal Area Network) = Bluetooth Network Connection (Media disconnected)
ZTE Wireless Ethernet Adapter = Local Area Connection (Media disconnected)

# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled
set interface interface="Local Area Connection* 1" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Ethernet" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Wi-Fi" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Local Area Connection* 3" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Bluetooth Network Connection" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="other_1" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Mobile broadband 2" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Mobile broadband" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled

popd
# End of IPv4 configuration

 

Windows IP Configuration

   Host Name . . . . . . . . . . . . : Dell
   Primary Dns Suffix  . . . . . . . :
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No

PPP adapter Mobitel:

   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Mobitel
   Physical Address. . . . . . . . . :
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv4 Address. . . . . . . . . . . : 10.225.122.228(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.255
   Default Gateway . . . . . . . . . : 0.0.0.0
   DNS Servers . . . . . . . . . . . : 172.19.70.210
                                       172.19.70.211
   Primary WINS Server . . . . . . . : 10.11.12.13
   Secondary WINS Server . . . . . . : 10.11.12.14
   NetBIOS over Tcpip. . . . . . . . : Enabled

Ethernet adapter Local Area Connection:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : ZTE Wireless Ethernet Adapter
   Physical Address. . . . . . . . . : 00-A0-C6-00-00-00
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Ethernet adapter Bluetooth Network Connection:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Bluetooth Device (Personal Area Network)
   Physical Address. . . . . . . . . : 64-5A-04-8B-17-9D
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Wireless LAN adapter Local Area Connection* 3:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft Wi-Fi Direct Virtual Adapter
   Physical Address. . . . . . . . . : 16-5A-04-8B-17-9C
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Wireless LAN adapter Wi-Fi:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Dell Wireless 1705 802.11b/g/n (2.4GHZ)
   Physical Address. . . . . . . . . : 64-5A-04-8B-17-9C
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Ethernet adapter Ethernet:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Realtek PCIe FE Family Controller
   Physical Address. . . . . . . . . : B8-2A-72-B9-7D-1C
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
Server:  ns3.mobitel.lk
Address:  172.19.70.210

Name:    google.com
Addresses:  2404:6800:4007:806::200e
   222.165.163.57
   222.165.163.46
   222.165.163.53
   222.165.163.48
   222.165.163.42
   222.165.163.27
   222.165.163.24
   222.165.163.20
   222.165.163.31
   222.165.163.16
   222.165.163.38
   222.165.163.26
   222.165.163.37
   222.165.163.49
   222.165.163.35
   222.165.163.59

Pinging google.com [222.165.163.37] with 32 bytes of data:
Reply from 222.165.163.37: bytes=32 time=42ms TTL=57
Reply from 222.165.163.37: bytes=32 time=30ms TTL=57

Ping statistics for 222.165.163.37:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 30ms, Maximum = 42ms, Average = 36ms
Server:  ns3.mobitel.lk
Address:  172.19.70.210

Name:    yahoo.com
Addresses:  206.190.36.45
   98.139.183.24
   98.138.253.109

Pinging yahoo.com [98.138.253.109] with 32 bytes of data:
Reply from 98.138.253.109: bytes=32 time=286ms TTL=49
Reply from 98.138.253.109: bytes=32 time=295ms TTL=49

Ping statistics for 98.138.253.109:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 286ms, Maximum = 295ms, Average = 290ms

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
 50...........................Mobitel
 21...00 a0 c6 00 00 00 ......ZTE Wireless Ethernet Adapter
  9...64 5a 04 8b 17 9d ......Bluetooth Device (Personal Area Network)
  5...16 5a 04 8b 17 9c ......Microsoft Wi-Fi Direct Virtual Adapter
  4...64 5a 04 8b 17 9c ......Dell Wireless 1705 802.11b/g/n (2.4GHZ)
  3...b8 2a 72 b9 7d 1c ......Realtek PCIe FE Family Controller
  1...........................Software Loopback Interface 1
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0         On-link    10.225.122.228     26
   10.225.122.228  255.255.255.255         On-link    10.225.122.228    281
        127.0.0.0        255.0.0.0         On-link         127.0.0.1   4531
        127.0.0.1  255.255.255.255         On-link         127.0.0.1   4531
  127.255.255.255  255.255.255.255         On-link         127.0.0.1   4531
        224.0.0.0        240.0.0.0         On-link         127.0.0.1   4531
        224.0.0.0        240.0.0.0         On-link    10.225.122.228     26
  255.255.255.255  255.255.255.255         On-link         127.0.0.1   4531
  255.255.255.255  255.255.255.255         On-link    10.225.122.228    281
===========================================================================
Persistent Routes:
  None

IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
  1    306 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\napinsp.dll [55296] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\pnrpnsp.dll [70144] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [70144] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\NLAapi.dll [65536] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [286208] (Microsoft Corporation)
Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [23040] (Microsoft Corporation)
Catalog5 07 C:\Windows\SysWOW64\wshbth.dll [50688] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [286208] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [286208] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [286208] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [286208] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [286208] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [286208] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [286208] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [286208] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [286208] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [286208] (Microsoft Corporation)
Catalog9 11 C:\Windows\SysWOW64\mswsock.dll [286208] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\napinsp.dll [69120] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\pnrpnsp.dll [88576] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [88576] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\NLAapi.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\mswsock.dll [339456] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\winrnr.dll [30720] (Microsoft Corporation)
x64-Catalog5 07 C:\Windows\System32\wshbth.dll [63488] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [339456] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [339456] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [339456] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [339456] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [339456] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [339456] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [339456] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [339456] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [339456] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [339456] (Microsoft Corporation)
x64-Catalog9 11 C:\Windows\System32\mswsock.dll [339456] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (05/15/2015 02:39:08 AM) (Source: Application Error) (User: )
Description: Faulting application name: FATrayAlert.exe, version: 4.1.201.1, time stamp: 0x53b33d8d
Faulting module name: ntdll.dll, version: 6.3.9600.17736, time stamp: 0x550f42c2
Exception code: 0xc00000fd
Fault offset: 0x00043432
Faulting process id: 0x18b4
Faulting application start time: 0xFATrayAlert.exe0
Faulting application path: FATrayAlert.exe1
Faulting module path: FATrayAlert.exe2
Report Id: FATrayAlert.exe3
Faulting package full name: FATrayAlert.exe4
Faulting package-relative application ID: FATrayAlert.exe5

Error: (05/15/2015 00:33:38 AM) (Source: Application Error) (User: )
Description: Faulting application name: FATrayAlert.exe, version: 4.1.201.1, time stamp: 0x53b33d8d
Faulting module name: ntdll.dll, version: 6.3.9600.17736, time stamp: 0x550f42c2
Exception code: 0xc00000fd
Fault offset: 0x00041032
Faulting process id: 0x1134
Faulting application start time: 0xFATrayAlert.exe0
Faulting application path: FATrayAlert.exe1
Faulting module path: FATrayAlert.exe2
Report Id: FATrayAlert.exe3
Faulting package full name: FATrayAlert.exe4
Faulting package-relative application ID: FATrayAlert.exe5

Error: (05/15/2015 00:06:52 AM) (Source: Application Error) (User: )
Description: Faulting application name: delegate_execute.exe, version: 42.0.2311.152, time stamp: 0x55480aac
Faulting module name: delegate_execute.exe, version: 42.0.2311.152, time stamp: 0x55480aac
Exception code: 0xc0000005
Fault offset: 0x0002c3c4
Faulting process id: 0xd5c
Faulting application start time: 0xdelegate_execute.exe0
Faulting application path: delegate_execute.exe1
Faulting module path: delegate_execute.exe2
Report Id: delegate_execute.exe3
Faulting package full name: delegate_execute.exe4
Faulting package-relative application ID: delegate_execute.exe5

Error: (05/14/2015 07:44:57 PM) (Source: DellUpdate) (User: )
Description: Failed in handling the PowerEvent. The error that occurred was: System.NullReferenceException: Object reference not set to an instance of an object.
   at DellUpdate.WindowsService.Controller.ResetWcfConnections()
   at DellUpdate.WindowsService.UpdateService.OnPowerEvent(PowerBroadcastStatus powerStatus)
   at System.ServiceProcess.ServiceBase.DeferredPowerEvent(Int32 eventType, IntPtr eventData).

Error: (05/14/2015 05:56:32 PM) (Source: Application Error) (User: )
Description: Faulting application name: Explorer.EXE, version: 6.3.9600.17667, time stamp: 0x54c6f7c2
Faulting module name: ntdll.dll, version: 6.3.9600.17736, time stamp: 0x550f4336
Exception code: 0xc0000409
Fault offset: 0x0000000000082158
Faulting process id: 0x9a0
Faulting application start time: 0xExplorer.EXE0
Faulting application path: Explorer.EXE1
Faulting module path: Explorer.EXE2
Report Id: Explorer.EXE3
Faulting package full name: Explorer.EXE4
Faulting package-relative application ID: Explorer.EXE5

Error: (05/14/2015 05:05:08 PM) (Source: RasClient) (User: )
Description: CoId={E8F7EB74-7D85-4A0F-9F81-2903499C368D}: The user Dell\Rajeev dialed a connection named Etisalat Internet which has failed. The error code returned on failure is 0.

Error: (05/14/2015 05:04:29 PM) (Source: RasClient) (User: )
Description: CoId={19D360D0-700B-4CBA-8281-DC0980B1FCA5}: The user Dell\Rajeev dialed a connection named Etisalat Internet which has failed. The error code returned on failure is 692.

Error: (05/14/2015 05:04:15 PM) (Source: RasClient) (User: )
Description: CoId={F81D346F-AFC3-4594-98D0-0FB9ECF0D13D}: The user Dell\Rajeev dialed a connection named Etisalat Internet which has failed. The error code returned on failure is 0.

Error: (05/14/2015 05:02:38 PM) (Source: RasClient) (User: )
Description: CoId={ECA7D40F-3962-4313-9C99-F239A871A919}: The user Dell\Rajeev dialed a connection named Etisalat Internet which has failed. The error code returned on failure is 692.

Error: (05/14/2015 05:02:24 PM) (Source: RasClient) (User: )
Description: CoId={CFF1BC09-4E6C-489C-8A7C-DE90878138F0}: The user Dell\Rajeev dialed a connection named Etisalat Internet which has failed. The error code returned on failure is 0.

System errors:
=============
Error: (05/15/2015 03:14:45 AM) (Source: Service Control Manager) (User: )
Description: The Network List Service service terminated with the following error:
%%127

Error: (05/15/2015 03:14:45 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: {A47979D2-C419-11D9-A5B4-001185AD2B89}

Error: (05/15/2015 03:12:45 AM) (Source: Service Control Manager) (User: )
Description: The Network List Service service terminated with the following error:
%%127

Error: (05/15/2015 03:12:45 AM) (Source: DCOM) (User: Dell)
Description: {A47979D2-C419-11D9-A5B4-001185AD2B89}

Error: (05/15/2015 03:10:45 AM) (Source: Service Control Manager) (User: )
Description: The Network List Service service terminated with the following error:
%%127

Error: (05/15/2015 03:10:45 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: {A47979D2-C419-11D9-A5B4-001185AD2B89}

Error: (05/15/2015 03:08:45 AM) (Source: Service Control Manager) (User: )
Description: The Network List Service service terminated with the following error:
%%127

Error: (05/15/2015 03:08:45 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: {A47979D2-C419-11D9-A5B4-001185AD2B89}

Error: (05/15/2015 03:06:45 AM) (Source: Service Control Manager) (User: )
Description: The Network List Service service terminated with the following error:
%%127

Error: (05/15/2015 03:06:45 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: {A47979D2-C419-11D9-A5B4-001185AD2B89}

Microsoft Office Sessions:
=========================
Error: (05/15/2015 02:39:08 AM) (Source: Application Error)(User: )
Description: FATrayAlert.exe4.1.201.153b33d8dntdll.dll6.3.9600.17736550f42c2c00000fd0004343218b401d08e8a358e3597C:\Program Files (x86)\Sensible Vision\Fast Access\FATrayAlert.exeC:\Windows\SYSTEM32\ntdll.dll752f65b7-fa7d-11e4-8305-645a048b179d

Error: (05/15/2015 00:33:38 AM) (Source: Application Error)(User: )
Description: FATrayAlert.exe4.1.201.153b33d8dntdll.dll6.3.9600.17736550f42c2c00000fd00041032113401d08e78a9e9c848C:\Program Files (x86)\Sensible Vision\Fast Access\FATrayAlert.exeC:\Windows\SYSTEM32\ntdll.dlled4ea91a-fa6b-11e4-8305-645a048b179d

Error: (05/15/2015 00:06:52 AM) (Source: Application Error)(User: )
Description: delegate_execute.exe42.0.2311.15255480aacdelegate_execute.exe42.0.2311.15255480aacc00000050002c3c4d5c01d08e74ea431244C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.152\delegate_execute.exeC:\Program Files (x86)\Google\Chrome\Application\42.0.2311.152\delegate_execute.exe2fb55aec-fa68-11e4-8305-645a048b179d

Error: (05/14/2015 07:44:57 PM) (Source: DellUpdate)(User: )
Description: Failed in handling the PowerEvent. The error that occurred was: System.NullReferenceException: Object reference not set to an instance of an object.
   at DellUpdate.WindowsService.Controller.ResetWcfConnections()
   at DellUpdate.WindowsService.UpdateService.OnPowerEvent(PowerBroadcastStatus powerStatus)
   at System.ServiceProcess.ServiceBase.DeferredPowerEvent(Int32 eventType, IntPtr eventData).

Error: (05/14/2015 05:56:32 PM) (Source: Application Error)(User: )
Description: Explorer.EXE6.3.9600.1766754c6f7c2ntdll.dll6.3.9600.17736550f4336c000040900000000000821589a001d08e38fc69b1efC:\Windows\Explorer.EXEC:\Windows\SYSTEM32\ntdll.dll7403f2a3-fa34-11e4-8302-645a048b179d

Error: (05/14/2015 05:05:08 PM) (Source: RasClient)(User: )
Description: {E8F7EB74-7D85-4A0F-9F81-2903499C368D}Dell\RajeevEtisalat Internet0

Error: (05/14/2015 05:04:29 PM) (Source: RasClient)(User: )
Description: {19D360D0-700B-4CBA-8281-DC0980B1FCA5}Dell\RajeevEtisalat Internet692

Error: (05/14/2015 05:04:15 PM) (Source: RasClient)(User: )
Description: {F81D346F-AFC3-4594-98D0-0FB9ECF0D13D}Dell\RajeevEtisalat Internet0

Error: (05/14/2015 05:02:38 PM) (Source: RasClient)(User: )
Description: {ECA7D40F-3962-4313-9C99-F239A871A919}Dell\RajeevEtisalat Internet692

Error: (05/14/2015 05:02:24 PM) (Source: RasClient)(User: )
Description: {CFF1BC09-4E6C-489C-8A7C-DE90878138F0}Dell\RajeevEtisalat Internet0

=========================== Installed Programs ============================

Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 17.0.0.144 - Adobe Systems Incorporated)
Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.9 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.11) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated)
Amazon 1Button App (HKLM-x32\...\{0A7D6F3C-F2AB-48ED-BE23-99791BFF87D6}) (Version: 1.0.0.4 - Amazon)
CyberLink Media Suite Essentials (HKLM-x32\...\InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}) (Version: 10.0 - CyberLink Corp.)
Dell Backup and Recovery (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 1.7.5.63 - Dell Inc.)
Dell Data Vault (HKLM\...\{2E55EEFD-2162-4A7D-9158-EDB0305603A6}) (Version: 4.2.2.0 - Dell Inc.) Hidden
Dell Digital Delivery (HKLM-x32\...\{BC8233D8-59BA-4D40-92B9-4FDE7452AA8B}) (Version: 3.0.3999.0 - Dell Products, LP)
Dell Product Registration (HKLM-x32\...\{24F2AD94-CC1B-4294-B184-D4D31A3186A7}) (Version: 2.42.0012 - Aviata Inc.)
Dell SupportAssist (HKLM\...\PC-Doctor for Windows) (Version: 1.0.6584.81 - Dell)
Dell SupportAssistAgent (HKLM-x32\...\{287348C8-8B47-4C36-AF28-441A3B7D8722}) (Version: 1.0.3.60494 - Dell)
Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 18.0.7.1 - Synaptics Incorporated)
Dell Update (HKLM-x32\...\{D9E0A33F-19D6-45A7-83BB-535C7B5F699B}) (Version: 1.5.3000.0 - Dell Inc.)
Dell WLAN and Bluetooth Client Installation (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Dell Inc.)
E-Buddy (HKLM-x32\...\{9173259B-3AD2-406F-9AD3-9DEA8D1791D6}) (Version: 1.0.0 - Etisalat Sri Lanka)
Etisalat Connect (HKLM-x32\...\Etisalat Connect) (Version: 23.009.09.01.847 - Huawei Technologies Co.,Ltd)
Face Recognition (HKLM\...\{AE8001CB-8ED9-46FD-838F-837C3CEC9AFD}) (Version: 4.1.201.1 - Sensible Vision)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 42.0.2311.152 - Google Inc.)
Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.26.9 - Google Inc.) Hidden
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.23.1766 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3412 - Intel Corporation)
Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 15.0.4711.1003 - Microsoft Corporation)
Microsoft OneDrive (HKCU\...\OneDriveSetup.exe) (Version: 17.3.5849.0427 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Mobitel Internet (HKLM-x32\...\{F8095282-913A-4B4B-A201-1A1FC50FB545}) (Version: 1.0.0.1 - )
My Dell Client Framework (HKLM-x32\...\{05F1B866-2372-4E82-9AA8-C64FB11CEF8B}) (Version: 1.0.0.3 - Dell) Hidden
My Dell Client Framework (HKLM-x32\...\InstallShield_{05F1B866-2372-4E82-9AA8-C64FB11CEF8B}) (Version: 1.0.0.3 - Dell)
Office 15 Click-to-Run Extensibility Component (HKLM-x32\...\{90150000-008C-0000-0000-0000000FF1CE}) (Version: 15.0.4711.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (HKLM\...\{90150000-008F-0000-1000-0000000FF1CE}) (Version: 15.0.4711.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (HKLM-x32\...\{90150000-008C-0409-0000-0000000FF1CE}) (Version: 15.0.4711.1003 - Microsoft Corporation) Hidden
Panda Cloud Cleaner (HKLM-x32\...\{92B2B132-C7F0-43DC-921A-4493C04F78A4}_is1) (Version: 1.0.107 - Panda Security)
Panda Devices Agent (HKLM-x32\...\{949F1EA1-D3E2-472E-BC7C-CB72374C0E55}) (Version: 1.05.00 - Panda Security) Hidden
Panda Devices Agent (HKLM-x32\...\Panda Devices Agent) (Version: 1.03.04 - Panda Security)
Panda Free Antivirus (HKLM\...\{3EFFD82C-5F18-4494-A4B8-FBB045DA68A3}) (Version: 7.82.00.0000 - Panda Security) Hidden
Panda Free Antivirus (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 15.01.00.0004 - Panda Security)
Panda Security Toolbar (HKLM-x32\...\pandasecuritytb) (Version: 4.2.3.1 - Panda Security)
Panda Security URL Filtering (HKLM-x32\...\Panda Security URL Filtering) (Version: 2.0.2.0 - Panda Security)
Pdf995 (HKLM-x32\...\Pdf995) (Version:  - )
PhotoEdit995 (HKLM-x32\...\PhotoEdit995) (Version:  - )
PocketCloud (HKLM-x32\...\{D9752C7D-A595-4687-A0D5-362E9C311C55}) (Version: 2.7.14 - Wyse Technology)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.314 - Qualcomm Atheros Communications)
Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 11.1.18 - Dell Inc.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9600.39054 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7161 - Realtek Semiconductor Corp.)
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation)
Skype™ 7.4 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.4.102 - Skype Technologies S.A.)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Yahoo! Messenger (HKLM-x32\...\Yahoo! Messenger) (Version:  - Yahoo! Inc.)
Yahoo! Software Update (HKLM-x32\...\Yahoo! Software Update) (Version:  - )
Yahoo! Toolbar (HKLM-x32\...\Yahoo! Companion) (Version:  - Yahoo! Inc.)
ZDServer (HKLM-x32\...\{C8197F5F-E0DC-44f1-8AF2-1AA5A84F695D}) (Version: 1.0.1.2 - ZTE Corporation)
ZTE Mobile Broadband Device Drivers 1.0.0.16 (HKLM-x32\...\{9194B665-5134-4B6B-AD73-A5292CB072D3}_is1) (Version:  - ZTE)

========================= Devices: ================================

Name: facap, FastAccess Video Capture
Description: facap, FastAccess Video Capture
Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Manufacturer: Sensible Vision
Service: facap
Device ID: ROOT\IMAGE\0000
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

========================= Memory info: ===================================

Percentage of memory in use: 73%
Total physical RAM: 4000.18 MB
Available physical RAM: 1042.69 MB
Total Pagefile: 8096.18 MB
Available Pagefile: 3323.2 MB
Total Virtual: 4095.88 MB
Available Virtual: 3976.8 MB

========================= Partitions: =====================================

1 Drive c: (OS) (Fixed) (Total:921.9 GB) (Free:776.12 GB) NTFS
2 Drive d: (My DVD) (CDROM) (Total:2.95 GB) (Free:0 GB) UDF
3 Drive g: (Mobitel Internet) (CDROM) (Total:0.07 GB) (Free:0 GB) CDFS
5 Drive x: (WINRETOOLS) (Fixed) (Total:0.73 GB) (Free:0.45 GB) NTFS
6 Drive y: (PBR Image) (Fixed) (Total:8.23 GB) (Free:0.72 GB) NTFS

========================= Users: ========================================

User accounts for \\DELL

Administrator            Guest                    Rajeev                  

========================= Minidump Files ==================================

No minidump file found

========================= Restore Points ==================================

20-04-2015 16:21:05 Removed Mobitel Internet
29-04-2015 14:52:13 Scheduled Checkpoint
07-05-2015 23:04:14 Scheduled Checkpoint
13-05-2015 06:56:00 Windows Update
14-05-2015 10:47:08 Removed AVG 2015

**** End of log ****

 

 

 

 

 

 

SC

 

Results of screen317's Security Check version 1.001 
   x64 (UAC is enabled) 
 Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````
 Windows Firewall Enabled! 
Panda Free Antivirus  
Windows Defender      
 WMI entry may not exist for antivirus; attempting automatic update.
`````````Anti-malware/Other Utilities Check:`````````
 Panda Cloud Cleaner  
 Adobe Reader XI 
 Google Chrome (42.0.2311.135)
 Google Chrome (42.0.2311.152)
````````Process Check: objlist.exe by Laurent```````` 
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C:  %
````````````````````End of Log``````````````````````
 



#13 Sintharius

Sintharius

    Bleepin' Sniper


  • Members
  • 5,639 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:The Netherlands
  • Local time:06:37 AM

Posted 14 May 2015 - 05:08 PM

Hi there,

Please uninstall the following software from Programs and Features:

Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 17.0.0.144 - Adobe Systems Incorporated)
Panda Security Toolbar (HKLM-x32\...\pandasecuritytb) (Version: 4.2.3.1 - Panda Security)

If you run into any issues, let me know.

Do you use this?

Amazon 1Button App (HKLM-x32\...\{0A7D6F3C-F2AB-48ED-BE23-99791BFF87D6}) (Version: 1.0.0.4 - Amazon)


Please run this next.

Emsisoft Emergency Kit

Please download Emsisoft Emergency Kit and save it to your desktop. Double click on the EmsisoftEmergencyKit file you downloaded to extract its contents and create a shortcut on the desktop. Leave all settings as they are and click the Extract button at the bottom. A folder named EEK will be created in the root of the drive (usually c:\).
  • After extraction please double-click on the new Start Emsisoft Emergency Kit icon on your desktop.
  • The first time you launch it, Emsisoft Emergency Kit will recommend that you allow it to download updates. Please click Yes so that it downloads the latest database updates.
  • When the update process is complete, a new button will appear in the lower-left corner that says Back. Click on this button to return to the Overview screen.
  • Click on Scan to be taken to the scan options. If you are asked if you want the scanner to scan for Potentially Unwanted Programs, then click Yes.
  • Click on the Full Scan button to start the scan.
  • When the scan is completed click the Quarantine selected objects button. Note, this option is only available if malicious objects were detected during the scan.
  • When the threats have been quarantined, click the View report button in the lower-right corner, and the scan log will be opened in Notepad.
  • Please save the log in Notepad on your desktop, and attach it to your next reply.
  • When you close Emsisoft Emergency Kit, it will give you an option to sign up for a newsletter. This is optional, and is not necessary for the malware removal process.
Regards,
Alex

#14 RShankar

RShankar
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:11:07 AM

Posted 14 May 2015 - 05:25 PM

Uninstalled Adobe Air and Panda. Do you want me to uninstall Amazon app as well?



#15 Sintharius

Sintharius

    Bleepin' Sniper


  • Members
  • 5,639 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:The Netherlands
  • Local time:06:37 AM

Posted 14 May 2015 - 05:28 PM

Hi there,

If you don't use it then you can uninstall it.

After that please proceed with instructions for EEK :)

Regards,
Alex




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users