Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

I have a virus probably more than one


  • Please log in to reply
32 replies to this topic

#1 Viki Smith

Viki Smith

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:01:19 PM

Posted 17 May 2015 - 01:13 PM

My computer is very slow... crashes often...gazillion popups...can you help me??



BC AdBot (Login to Remove)

 


#2 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:19 PM

Posted 17 May 2015 - 01:36 PM

Download and run wipe  and system ninja,

 

https://privacyroot.com/software/www/en/wipe.php

https://singularlabs.com/software/system-ninja/

 

Then.....

 

Go ahead and install ccleaner Now that you have the program installed go ahead and run the cleaner function.

https://www.piriform.com/ccleaner/download
kwLN4uv.png


Now that you have cleaned out some temp files, lets go ahead and disable all of the items starting up with your machine except your antivirus. To do this you will need to click on tools then start up select each item then disable.

GjWwvEu.png

Now that you have disabled those un-needed start ups lets go into the settings, we will have Ccleaner run when your machine boots, so that you will never have to worry about cleaning temp files again.

To do this:

  • Hit options.
  • Settings.
  • Place a tick to run Ccleaner when the computer starts.


Lxioao1.png

Now go to the advanced tab, and select close program after cleaning, now run the cleaner again this will close Ccleaner.

SnqZ2JW.png

 

Reboot your machine and then follow the  instructions below.

 

Step 1: eScanAV.

 

Disable your antivirus prior to this scan.

http://www.bleepingcomputer.com/forums/t/114351/how-to-temporarily-disable-your-anti-virus-firewall-and-anti-malware-programs/

Download the eScanAV Anti-Virus Toolkit (MWAV)
http://www.escanav.com/english/content/products/downloadlink/downloadcounter.asp?pcode=MWAV&src=english_dwn&type=alter

 

Source

http://www.escanav.com/english/content/products/downloadlink/downloadproduct.asp?pcode=MWAV
Save the file to your desktop.
Right click run as administrator.
A new icon will appear on your desktop.
Right click run as administrator on new icon.
Click on the update tab.
ZCDJtZN.png
Once you have updated the program, make sure the settings are the same as the picture below.
7DUFn5c.png
Once you have made sure the settings match the picture, hit the Scan & Clean button.
Upon scan completion, click View Log.
ApSVXsQ.png
Copy and paste entire log into your next reply.
Note: Reboot if needed to remove infections.

 

Step 2: Zemana

 

Run a full scan with Zemana antimalware.

http://www.zemana.us/product/zemana-antimalware/default.aspx

Install and select deep scan.

jdmyscF.jpg

Remove any infections found.

Then click on the icon in the pic below.

DOLGyto.jpg

Double click on the scan log, copy and paste here in your reply.

 

 

Step 3: Junkware Removal Tool.
 
Please download Junkware Removal Tool and save it on your desktop.

Source

http://thisisudax.org/

  • Shut down your anti-virus, anti-spyware, and firewall software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista or Windows 7, right-click it and select Run as administrator.
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log is saved to your desktop and will automatically open.
  • Please post the JRT log.

Step 4: Adware Cleaner.
 
Please download AdwCleaner by Xplode onto your desktop.


  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on Scan button.
  • When the scan has finished click on Clean button.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.


#3 Viki Smith

Viki Smith
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:01:19 PM

Posted 17 May 2015 - 05:20 PM

17 May 2015 15:26:22 [0ee4] - **********************************************************
17 May 2015 15:26:22 [0ee4] - MWAV - eScanAV AntiVirus Toolkit.
17 May 2015 15:26:22 [0ee4] - Copyright © MicroWorld Technologies
17 May 2015 15:26:22 [0ee4] - **********************************************************
17 May 2015 15:26:22 [0ee4] - Source: C:\Users\Viki\Desktop\mwav.exe
17 May 2015 15:26:22 [0ee4] - Version 14.0.178 (C:\USERS\VIKI\APPDATA\LOCAL\TEMP\MEXE.COM)
17 May 2015 15:26:22 [0ee4] - Log File: C:\Users\Viki\AppData\Local\Temp\LOG\MWAV.LOG
17 May 2015 15:26:22 [0ee4] - MWAV Registered: TRUE
17 May 2015 15:26:22 [0ee4] - User Account: Viki (Administrator Mode)
17 May 2015 15:26:22 [0ee4] - OS Type: Windows Workstation [InstallType: Client]
17 May 2015 15:26:22 [0ee4] - OS: Windows 7 [OS Install Date: 17 Feb 2013 11:07:43]
17 May 2015 15:26:22 [0ee4] - Ver: Professional Build 7600
17 May 2015 15:26:22 [0ee4] - System Up Time: 40 Minutes, 53 Seconds
 
 
17 May 2015 15:26:22 [0ee4] - Parent Process Name : C:\Users\Viki\Desktop\mwav.exe
17 May 2015 15:26:22 [0ee4] - Windows Root  Folder: C:\Windows
17 May 2015 15:26:22 [0ee4] - Windows Sys32 Folder: C:\Windows\system32
17 May 2015 15:26:22 [0ee4] - DHCP NameServer: 192.168.0.1
17 May 2015 15:26:22 [0ee4] - Interface0 DHCPNameServer: 192.168.0.1
17 May 2015 15:26:22 [0ee4] - Local Fixed Drives: c:\
17 May 2015 15:26:22 [0ee4] - MWAV Mode(A): Scan and Clean files (for viruses, adware and spyware)
17 May 2015 15:26:22 [0ee4] - [CREATED ZIP FILE: C:\Users\Viki\AppData\Local\Temp\pinfect.zip]
17 May 2015 15:26:22 [0ee4] - Latest Date of files inside MWAV: Mon Mar  2 17:13:53 2015.
17 May 2015 15:26:22 [0ee4] - Loading/Creating FileScan Cache Database C:\ProgramData\MicroWorld\MWAV\ESCANDBY.MDB [Log: C:\Users\Viki\AppData\Local\Temp\LOG\ESCANDB.LOG]
17 May 2015 15:26:22 [0ee4] - Loaded/Created FileScan Cache Database...
17 May 2015 15:26:22 [0ee4] - Loading AV Library [DB]...
17 May 2015 15:26:26 [0ee4] - ArchiveScan: DISABLED
17 May 2015 15:26:27 [0ee4] - AV Library Loaded - MultiThreaded - 4 : [DB-DIRECT].
17 May 2015 15:26:27 [0ee4] - MWAV doing self scanning...
17 May 2015 15:26:27 [0ee4] - MWAV files are clean.
17 May 2015 15:26:28 [0ee4] - ArchiveScan: DISABLED
17 May 2015 15:26:28 [0ee4] - Virus Database Date: 02 Mar 2015
17 May 2015 15:26:28 [0ee4] - Virus Database Count: 6701505
17 May 2015 15:26:28 [0ee4] - Sign Version: 7.59505 [518257]
 
17 May 2015 15:29:02 [0ee4] - **********************************************************
17 May 2015 15:29:02 [0ee4] - MWAV - eScanAV AntiVirus Toolkit.
17 May 2015 15:29:02 [0ee4] - Copyright © MicroWorld Technologies
17 May 2015 15:29:02 [0ee4] - 
17 May 2015 15:29:02 [0ee4] - Support: support@escanav.com
17 May 2015 15:29:02 [0ee4] - Web: http://www.escanav.com
17 May 2015 15:29:02 [0ee4] - **********************************************************
17 May 2015 15:29:02 [0ee4] - Version 14.0.178[DB] (C:\USERS\VIKI\APPDATA\LOCAL\TEMP\MEXE.COM)
17 May 2015 15:29:02 [0ee4] - Log File: C:\Users\Viki\AppData\Local\Temp\LOG\MWAV.LOG
17 May 2015 15:29:02 [0ee4] - User Account: Viki (Administrator Mode)
17 May 2015 15:29:02 [0ee4] - Parent Process Name : C:\Users\Viki\Desktop\mwav.exe
17 May 2015 15:29:02 [0ee4] - Windows Root  Folder: C:\Windows
17 May 2015 15:29:02 [0ee4] - Windows Sys32 Folder: C:\Windows\system32
17 May 2015 15:29:02 [0ee4] - OS: Windows 7 [OS Install Date: 17 Feb 2013 11:07:43]
17 May 2015 15:29:02 [0ee4] - Ver: Professional Build 7600
17 May 2015 15:29:02 [0ee4] - Latest Date of files inside MWAV: Mon Mar  2 17:13:53 2015.
 
17 May 2015 15:29:03 [0874] - Options Selected by User:
17 May 2015 15:29:03 [0874] - Memory Check: Enabled
17 May 2015 15:29:03 [0874] - Registry Check: Enabled
17 May 2015 15:29:03 [0874] - StartUp Folder Check: Enabled
17 May 2015 15:29:03 [0874] - System Folder Check: Enabled
17 May 2015 15:29:03 [0874] - Services Check: Enabled
17 May 2015 15:29:03 [0874] - Scan Spyware: Enabled
17 May 2015 15:29:03 [0874] - Scan Archives: Disabled
17 May 2015 15:29:03 [0874] - Drive Check: Enabled
17 May 2015 15:29:03 [0874] - All Drive Check :Disabled
17 May 2015 15:29:03 [0874] - Drive Selected = C:\
17 May 2015 15:29:03 [0874] - Folder Check: Disabled
17 May 2015 15:29:03 [0874] - SCAN: All_Files [ANSI]
17 May 2015 15:29:03 [0874] - MWAV Mode(B): Scan and Clean files (for viruses, adware and spyware)
 
17 May 2015 15:29:03 [0874] - Scanning DNS Records...
17 May 2015 15:29:03 [0874] - Scanning Master Boot Record (Kernel)...
17 May 2015 15:29:03 [0874] - Scanning Logical Boot Records...
17 May 2015 15:29:04 [0874] - ***** Scanning For Hidden Rootkit Processes *****
17 May 2015 15:29:05 [0874] - ***** Scanning For Hidden Rootkit Services *****
 
17 May 2015 15:29:09 [0874] - ***** Scanning Memory Files *****
 
17 May 2015 15:29:41 [0874] - ***** Scanning Registry Files *****
 
17 May 2015 15:29:44 [0874] - ***** Scanning StartUp Folders *****
17 May 2015 15:29:50 [078c] - ScanFile (C:\Users\Viki\Desktop\mwav.exe) took 5921 ms
17 May 2015 15:29:50 [095c] - Scanning File C:\Users\Viki\AppData\Roaming\ContentExplorer\ContentExplorer.exe
17 May 2015 15:29:50 [095c] - File C:\Users\Viki\AppData\Roaming\ContentExplorer\ContentExplorer.exe infected by "Adware.ContentExplorer.B (DB)" Virus! Action Taken: File Deleted.
 
17 May 2015 15:29:56 [095c] - C:\ProgramData\AVG2013\IDS\quarantine\73eaefaa-3f13-47d3-9b95-d15c83f94976.zip not Scanned. Possibly password protected...
17 May 2015 15:29:59 [0b18] - Scanning File C:\ProgramData\Browser\prompt.exe
17 May 2015 15:29:59 [0b18] - File C:\ProgramData\Browser\prompt.exe infected by "Gen:Variant.Adware.Kazy.133002 (DB)" Virus! Action Taken: File Deleted.
 
17 May 2015 15:30:30 [078c] - ScanFile (C:\ProgramData\Microsoft\Windows Defender\LocalCopy\{C5AA252E-51CE-4129-95BE-5FCA0F0778F6}-PCOptimizerProSetup (1).exe) took 5297 ms
 
17 May 2015 15:30:33 [0874] - ***** Scanning Service Files *****
17 May 2015 15:31:27 [0874] - Giving rights(a) to [HKLM\SYSTEM\CurrentControlSet\Services\TrkWks].
 
17 May 2015 15:31:40 [0874] - ***** Scanning Registry and File system for Adware/Spyware *****
17 May 2015 15:31:42 [0874] - Loading Spyware Signatures from new External Database [Name: C:\Users\Viki\AppData\Local\Temp\spydb.avs, Size: 464717]...
17 May 2015 15:31:42 [0874] - Indexed Spyware Databases Successfully Created...
 
17 May 2015 15:31:45 [0874] - Offending file found: C:\Users\Viki\AppData\Local\MapsGalaxy_39\705d46d8b2604edccc9306042209718003e77462\1.0.3\Player.html
17 May 2015 15:31:45 [0874] - System found infected with ClipGenie Spyware/Adware (Player.html)! Action taken: File Deleted.
17 May 2015 15:31:45 [0874] - Object "ClipGenie Spyware/Adware" found in File System! Action Taken: File Deleted.
 
17 May 2015 15:31:58 [0874] - Offending Registry Entry found: HKCU\Software\PC Optimizer Pro
17 May 2015 15:31:58 [0874] - System found infected with PC Optimizer Pro Spyware/Adware (HKCU\Software\PC Optimizer Pro)! Action taken: Entries Removed.
17 May 2015 15:31:58 [0874] - Object "PC Optimizer Pro Spyware/Adware" found in File System! Action Taken: Entries Removed.
 
 
17 May 2015 15:31:58 [0874] - ***** Scanning Registry Files *****
17 May 2015 15:31:59 [0874] - ** Value in HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\main/Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
17 May 2015 15:31:59 [0874] - ** Value in HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\main/Start Page = https://mysearch.avg.com?cid={A4FCFD65-0067-4CCF-95FA-A70C9D3473B4}&mid=5f46f8dcaf7c47d3bf9fd15c83f94976-244c2969d849c1403e1212e7a2e4ffc5bb768655&lang=en&ds=AVG&coid=avgtbavg&cmpid=1114tb&pr=sa&d=2014-08-26 11:18:18&v=18.5.0.909&pid=safeguard&sg=&sap=hp
 
17 May 2015 15:31:59 [0874] - ***** Scanning System32 Folders *****
 
 
17 May 2015 15:34:16 [0874] - ***** Scanning Drive C:\ *****
17 May 2015 15:34:29 [095c] - ScanFile (C:\Program Files\Adobe\Reader 11.0\Reader\AcroExt\libcef.dll) took 6219 ms
17 May 2015 15:34:43 [0894] - ScanFile (C:\dell\drivers\R217043\PCTuneUp2_FRN.exe) took 5032 ms
17 May 2015 15:38:41 [095c] - ScanFile (C:\Program Files\Nova Development\Scrapbook Factory Deluxe\scrapbk.pdf) took 5937 ms
17 May 2015 15:38:51 [0b18] - ScanFile (C:\Program Files\Nova Development\Scrapbook Factory Deluxe\enures.dll) took 7953 ms
17 May 2015 15:40:15 [078c] - ScanFile (C:\Program Files\TurboTax\Deluxe 2013\32bit\ttax.dll) took 6938 ms
17 May 2015 15:41:21 [0894] - ScanFile (C:\Program Files\TurboTax\Deluxe 2014\Forms\1040_14\ial\offline-content.js) took 5266 ms
17 May 2015 15:41:21 [095c] - ScanFile (C:\Program Files\TurboTax\Deluxe 2014\Forms\1040_14\interview\bundle.js) took 5937 ms
17 May 2015 15:42:34 [078c] - Scanning File C:\System Volume Information\{61489a27-fa4d-11e4-b084-0015c51da085}{3808876b-c176-4e48-b7ae-04046e6cc752}
17 May 2015 15:42:34 [0894] - Scanning File C:\System Volume Information\{62ac0e2a-f420-11e4-acce-0015c51da085}{3808876b-c176-4e48-b7ae-04046e6cc752}
17 May 2015 15:42:34 [0b18] - Scanning File C:\System Volume Information\{a4f6ace1-ec10-11e4-a1ed-0015c51da085}{3808876b-c176-4e48-b7ae-04046e6cc752}
17 May 2015 15:42:34 [095c] - Scanning File C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
17 May 2015 15:44:29 [0874] - INVALID ATTRIBUTES FOR FOLDER [C:\Users\Viki\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\Viki\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\9JA2YRDD\p.jwpcdn.com\[[IMPORT]]\players.edgesuite.net\flash\plugins\jw\v3.3\AkamaiAdvancedJWStreamProvider.swf]: LastErr: 3. IGNORING.
17 May 2015 15:45:11 [0894] - Scanning File C:\Users\Viki\AppData\Local\StormAlerts\StormAlerts.exe
17 May 2015 15:45:11 [0894] - File C:\Users\Viki\AppData\Local\StormAlerts\StormAlerts.exe infected by "Adware.StormAlerts.B (DB)" Virus! Action Taken: File Renamed.
 
17 May 2015 15:45:12 [078c] - Scanning File C:\Users\Viki\AppData\Local\StormAlerts\StormAlertsBrowser.exe
17 May 2015 15:45:12 [095c] - Scanning File C:\Users\Viki\AppData\Local\StormAlerts\StormAlertsApp.exe
17 May 2015 15:45:12 [095c] - File C:\Users\Viki\AppData\Local\StormAlerts\StormAlertsApp.exe infected by "Adware.StormAlerts.A (DB)" Virus! Action Taken: File Renamed.
 
17 May 2015 15:45:12 [078c] - File C:\Users\Viki\AppData\Local\StormAlerts\StormAlertsBrowser.exe infected by "Adware.StormAlerts.B (DB)" Virus! Action Taken: File Renamed.
 
17 May 2015 15:49:01 [0894] - ScanFile (C:\Users\Viki\Downloads\EIE11_EN-US_MCM_WIN7.EXE) took 14219 ms
 
17 May 2015 16:14:54 [0874] - ***** Checking for specific ITW Viruses *****
 
17 May 2015 16:14:54 [0874] - ***** Scanning complete. *****
 
17 May 2015 16:14:54 [0874] - Total Objects Scanned: 152302
17 May 2015 16:14:54 [0874] - Total Critical Objects: 7
17 May 2015 16:14:54 [0874] - Total Disinfected Objects: 0
17 May 2015 16:14:54 [0874] - Total Objects Renamed: 3
17 May 2015 16:14:54 [0874] - Total Deleted Objects: 4
17 May 2015 16:14:54 [0874] - Total Errors: 0
17 May 2015 16:14:54 [0874] - Time Elapsed: 00:45:51
17 May 2015 16:14:54 [0874] - Virus Database Date: 02 Mar 2015
17 May 2015 16:14:54 [0874] - Virus Database Count: 6701505
17 May 2015 16:14:54 [0874] - Sign Version: 7.59505 [518257]
 
17 May 2015 16:14:54 [0874] - Scan Completed.


#4 Viki Smith

Viki Smith
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:01:19 PM

Posted 17 May 2015 - 06:15 PM

Zemana AntiMalware 2.11.2.514 (Installed)
-------------------------------------------------------
Scan Result           : Completed
Scan Date             : 2015/5/17
Operating System      : Windows 7 32-bit
Processor             : 2X Genuine Intel® CPU   T2050 @ 1.60GHz
BIOS Mode             : Legacy
CUID                  : 00A19E3349D947444EE8D2
Scan Type             : Deep Scan
Duration              : 33m 56s
Scanned Objects       : 38687
Detected Objects      : 37
Excluded Objects      : 0
Read Level            : SCSI
Auto Upload           : Yes
Show All Extensions   : No
Scan Documents        : Yes
Domain Info           : WORKGROUP,1,2
 
 
Detected Objects
-------------------------------------------------------
CE_UmbrellaCert
   Status             : Scanned
   Object             : HKLM\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\469B6247DDA3E6044ABAB5B1E4E032E1BF365983\Blob
   MD5                : -
   Publisher          : -
   Size               : -
   Version            : -
   Detection          : Suspicious Root CA
   Cleaning Action    : Delete
   Traces             :
                Registry - HKLM\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\469B6247DDA3E6044ABAB5B1E4E032E1BF365983\Blob
 
Internet Explorer Search
   Status             : Scanned
   Object             : Ask Web Search - http://search.tb.ask.com
   MD5                : -
   Publisher          : -
   Size               : -
   Version            : -
   Detection          : Suspicious Browser Setting
   Cleaning Action    : Repair
   Traces             :
                Browser Setting - Internet Explorer Search
 
Internet Explorer Search
   Status             : Scanned
   Object             : Ask Web Search - http://search.tb.ask.com
   MD5                : -
   Publisher          : -
   Size               : -
   Version            : -
   Detection          : Suspicious Browser Setting
   Cleaning Action    : Repair
   Traces             :
                Browser Setting - Internet Explorer Search
 
Internet Explorer Search
   Status             : Scanned
   Object             : AVG Secure Search - http://mysearch.avg.com
   MD5                : -
   Publisher          : -
   Size               : -
   Version            : -
   Detection          : Suspicious Browser Setting
   Cleaning Action    : Repair
   Traces             :
                Browser Setting - Internet Explorer Search
 
Internet Explorer Search
   Status             : Scanned
   Object             : Search - http://search.conduit.com
   MD5                : -
   Publisher          : -
   Size               : -
   Version            : -
   Detection          : Suspicious Browser Setting
   Cleaning Action    : Repair
   Traces             :
                Browser Setting - Internet Explorer Search
 
Internet Explorer Search
   Status             : Scanned
   Object             : WhiteSmoke New Customized Web Search - http://search.conduit.com
   MD5                : -
   Publisher          : -
   Size               : -
   Version            : -
   Detection          : Suspicious Browser Setting
   Cleaning Action    : Repair
   Traces             :
                Browser Setting - Internet Explorer Search
 
Internet Explorer Homepage
   Status             : Scanned
   Object             : https://mysearch.avg.com?cid={A4FCFD65-0067-4CCF-95FA-A70C9D3473B4}&mid=5f46f8dcaf7c47d3bf9fd15c83f94976-244c2969d849c1403e1212e7a2e4ffc5bb768655&lang=en&ds=AVG&coid=avgtbavg&cmpid=1114tb&pr=sa&d=2014-08-26 11:18:18&v=18.5.0.909&pid=safeguard&sg=&sap=hp
   MD5                : -
   Publisher          : -
   Size               : -
   Version            : -
   Detection          : Suspicious Browser Setting
   Cleaning Action    : Repair
   Traces             :
                Browser Setting - Internet Explorer Homepage
 
Chrome Search
   Status             : Scanned
   Object             : AVG Secure Search - http://mysearch.avg.com
   MD5                : -
   Publisher          : -
   Size               : -
   Version            : -
   Detection          : Suspicious Browser Setting
   Cleaning Action    : Repair
   Traces             :
                Browser Setting - Chrome Search
 
Chrome Startup Url
   Status             : Scanned
   Object             : http://mysearch.avg.com?cid={166E3F88-7740-48A0-AE8C-DBF0D5CC6705}&mid=5f46f8dcaf7c47d3bf9fd15c83f94976-244c2969d849c1403e1212e7a2e4ffc5bb768655&lang=en&ds=AVG&coid=avgtbavg&cmpid=&pr=pr&d=2014-07-24 09:24:29&v=18.1.9.799&pid=safeguard&sg=&sap=hp
   MD5                : -
   Publisher          : -
   Size               : -
   Version            : -
   Detection          : Suspicious Browser Setting
   Cleaning Action    : Repair
   Traces             :
                Browser Setting - Chrome Startup Url
 
Chrome Homepage
   Status             : Scanned
   Object             : http://mysearch.avg.com?cid={166E3F88-7740-48A0-AE8C-DBF0D5CC6705}&mid=5f46f8dcaf7c47d3bf9fd15c83f94976-244c2969d849c1403e1212e7a2e4ffc5bb768655&lang=en&ds=AVG&coid=avgtbavg&cmpid=&pr=pr&d=2014-07-24 09:24:29&v=18.1.9.799&pid=safeguard&sg=&sap=hp
   MD5                : -
   Publisher          : -
   Size               : -
   Version            : -
   Detection          : Suspicious Browser Setting
   Cleaning Action    : Repair
   Traces             :
                Browser Setting - Chrome Homepage
 
AVG SafeGuard toolbar
   Status             : Scanned
   Object             : %localappdata%\google\chrome\user data\default\extensions\ndibdjnfmopecpmkdieinmbadjfpblof
   MD5                : -
   Publisher          : -
   Size               : -
   Version            : -
   Detection          : PUA.ChromeExt!Gr
   Cleaning Action    : Repair
   Traces             :
                Extension - AVG SafeGuard toolbar
 
klibnahbojhkanfgaglnlalfkgpcppfi
   Status             : Scanned
   Object             : %localappdata%\cre\klibnahbojhkanfgaglnlalfkgpcppfi.crx
   MD5                : D7BD5C79B6459195E5B88A6276446CE2
   Publisher          : -
   Size               : 2923504
   Version            : -
   Detection          : Adware:Windows/Generic!Arer
   Cleaning Action    : Repair
   Traces             :
                File - %localappdata%\cre\klibnahbojhkanfgaglnlalfkgpcppfi.crx
                Extension - klibnahbojhkanfgaglnlalfkgpcppfi
 
T8TICKER.DLL
   Status             : Scanned
   Object             : %programfiles%\mapsgalaxy_39\bar\1.bin\t8ticker.dll
   MD5                : 888774EC0B5329E16B1D525C2A855801
   Publisher          : Mindspark Interactive Network
   Size               : 168008
   Version            : 2.0.1.4
   Detection          : Adware:Win32/Mindspark!Ep
   Cleaning Action    : Quarantine
   Traces             :
                File - %programfiles%\mapsgalaxy_39\bar\1.bin\t8ticker.dll
 
CrExtP39.exe
   Status             : Scanned
   Object             : %programfiles%\mapsgalaxy_39\bar\1.bin\crextp39.exe
   MD5                : C9FECBC3EC683B4B60CF45EBAE9ABFCD
   Publisher          : Mindspark Interactive Network
   Size               : 1386056
   Version            : 1.0.7.183
   Detection          : Adware:Win32/Mindspark!Ep
   Cleaning Action    : Quarantine
   Traces             :
                File - %programfiles%\mapsgalaxy_39\bar\1.bin\crextp39.exe
 
APPINTEGRATORSTUB.DLL
   Status             : Scanned
   Object             : %programfiles%\mapsgalaxy_39\bar\1.bin\appintegratorstub.dll
   MD5                : D5D454CA320D6F9128C1E8231D8118C1
   Publisher          : Mindspark Interactive Network
   Size               : 250440
   Version            : 1.0.7.183
   Detection          : Adware:Win32/Mindspark!Ep
   Cleaning Action    : Quarantine
   Traces             :
                File - %programfiles%\mapsgalaxy_39\bar\1.bin\appintegratorstub.dll
 
39SrcAs.dll
   Status             : Scanned
   Object             : %programfiles%\mapsgalaxy_39\bar\1.bin\39srcas.dll
   MD5                : 31F0FD888F41C6E4B05A8A26A6257BBB
   Publisher          : Mindspark Interactive Network
   Size               : 139336
   Version            : 1.2.4.0
   Detection          : Adware:Win32/Mindspark!Ep
   Cleaning Action    : Quarantine
   Traces             :
                File - %programfiles%\mapsgalaxy_39\bar\1.bin\39srcas.dll
 
39brstub.dll
   Status             : Scanned
   Object             : %programfiles%\mapsgalaxy_39\bar\1.bin\39brstub.dll
   MD5                : E46963EC2BC3D0ED27A61F0697544196
   Publisher          : Mindspark Interactive Network
   Size               : 63560
   Version            : 1.0.2.0
   Detection          : Adware:Win32/Mindspark!Ep
   Cleaning Action    : Quarantine
   Traces             :
                File - %programfiles%\mapsgalaxy_39\bar\1.bin\39brstub.dll
 
39feedmg.dll
   Status             : Scanned
   Object             : %programfiles%\mapsgalaxy_39\bar\1.bin\39feedmg.dll
   MD5                : A738286620BE77BEC9CA13B389864D96
   Publisher          : Mindspark Interactive Network
   Size               : 139848
   Version            : 1.0.1.0
   Detection          : Adware:Win32/Mindspark!Ep
   Cleaning Action    : Quarantine
   Traces             :
                File - %programfiles%\mapsgalaxy_39\bar\1.bin\39feedmg.dll
 
39dlghk64.dll
   Status             : Scanned
   Object             : %programfiles%\mapsgalaxy_39\bar\1.bin\39dlghk64.dll
   MD5                : B8EFB8D32DC96ED0D473DCD3A5E58ED8
   Publisher          : Mindspark Interactive Network
   Size               : 119880
   Version            : 1.0.2.0
   Detection          : Adware:Win32/Mindspark!Ep
   Cleaning Action    : Quarantine
   Traces             :
                File - %programfiles%\mapsgalaxy_39\bar\1.bin\39dlghk64.dll
 
Alert.dll
   Status             : Scanned
   Object             : %programfiles%\conduit\community alerts\alert.dll
   MD5                : 6796F6E449F90A543DC3345538ACC46F
   Publisher          : Conduit Ltd.
   Size               : 638560
   Version            : 1.1.4.1
   Detection          : Adware:Win32/Conduit!Ep
   Cleaning Action    : Quarantine
   Traces             :
                File - %programfiles%\conduit\community alerts\alert.dll
                Registry - HKLM\SOFTWARE\Classes\CLSID\{3c471948-f874-49f5-b338-4f214a2ee0b1}\InprocServer32\@
 
ninja-setup-3.0.6.exe
   Status             : Scanned
   Object             : %userprofile%\downloads\ninja-setup-3.0.6.exe
   MD5                : 24FE0BB7A85A866B487D15C0EB6E3A74
   Publisher          : -
   Size               : 2507200
   Version            : 0.0.0.0
   Detection          : Adware:Win32/OpenCandy
   Cleaning Action    : Quarantine
   Traces             :
                File - %userprofile%\downloads\ninja-setup-3.0.6.exe
 
Uninstall.exe
   Status             : Scanned
   Object             : %appdata%\settings manager\uninstall.exe
   MD5                : 98539C7F3A8A5E5F0F04BDEE98FB3CFC
   Publisher          : -
   Size               : 415164
   Version            : -
   Detection          : Adware:Win32/BrowserHijack.Gen
   Cleaning Action    : Quarantine
   Traces             :
                File - %appdata%\settings manager\uninstall.exe
 
SettingsManager.exe
   Status             : Scanned
   Object             : %appdata%\settings manager\settingsmanager.exe
   MD5                : C203B160B49844FF11EA9D339FA28537
   Publisher          : Spigot, Inc.
   Size               : 922608
   Version            : 21.0.0.2
   Detection          : Adware:Win32/Spigot!Ep
   Cleaning Action    : Quarantine
   Traces             :
                File - %appdata%\settings manager\settingsmanager.exe
 
Coupons.dll
   Status             : Scanned
   Object             : %appdata%\browserextensions\coupons.dll
   MD5                : 49B3426A3DD468CFCFEFB858930A79BB
   Publisher          : Spigot, Inc.
   Size               : 248816
   Version            : 1.8.0.1
   Detection          : Adware:Win32/Spigot!Ep
   Cleaning Action    : Quarantine
   Traces             :
                File - %appdata%\browserextensions\coupons.dll
                Registry - HKLM\SOFTWARE\Classes\CLSID\{34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5}\InprocServer32\@
                Registry - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5}\@
 
ButtonWrap64.dll
   Status             : Scanned
   Object             : %appdata%\browserextensions\buttonwrap64.dll
   MD5                : 04372C9FEC7B50530217AEA279A675C4
   Publisher          : Spigot, Inc.
   Size               : 86512
   Version            : 1.8.0.1
   Detection          : Adware:Win32/Spigot!Ep
   Cleaning Action    : Quarantine
   Traces             :
                File - %appdata%\browserextensions\buttonwrap64.dll
 
ButtonWrap.dll
   Status             : Scanned
   Object             : %appdata%\browserextensions\buttonwrap.dll
   MD5                : 4E7EF802CD4FE1F26C3BD671C8189CCA
   Publisher          : Spigot, Inc.
   Size               : 79344
   Version            : 1.8.0.1
   Detection          : Adware:Win32/Spigot!Ep
   Cleaning Action    : Quarantine
   Traces             :
                File - %appdata%\browserextensions\buttonwrap.dll
 
Button64.exe
   Status             : Scanned
   Object             : %appdata%\browserextensions\button64.exe
   MD5                : BC4AAF432651D946AC5B18BA5999EA26
   Publisher          : Spigot, Inc.
   Size               : 28656
   Version            : 1.8.0.1
   Detection          : Adware:Win32/Spigot!Ep
   Cleaning Action    : Quarantine
   Traces             :
                File - %appdata%\browserextensions\button64.exe
 
Uninstall.exe
   Status             : Scanned
   Object             : %appdata%\browserextensions\uninstall.exe
   MD5                : 1618A54FF043AA0E40F3AB08A14C660B
   Publisher          : -
   Size               : 578055
   Version            : 2.8.5.1
   Detection          : Adware:Win32/BrowserHijack.Gen
   Cleaning Action    : Quarantine
   Traces             :
                File - %appdata%\browserextensions\uninstall.exe
 
Coupons64.dll
   Status             : Scanned
   Object             : %appdata%\browserextensions\coupons64.dll
   MD5                : 2811BA97199AA7EA97022DD04E6DD72A
   Publisher          : Spigot, Inc.
   Size               : 272368
   Version            : 1.8.0.1
   Detection          : Adware:Win32/Spigot!Ep
   Cleaning Action    : Quarantine
   Traces             :
                File - %appdata%\browserextensions\coupons64.dll
 
Button.exe
   Status             : Scanned
   Object             : %appdata%\browserextensions\button.exe
   MD5                : F0F36A98F8726F140DA59AA0E17F6527
   Publisher          : Spigot, Inc.
   Size               : 29168
   Version            : 1.8.0.1
   Detection          : Adware:Win32/Spigot!Ep
   Cleaning Action    : Quarantine
   Traces             :
                File - %appdata%\browserextensions\button.exe
 
BEHelper.exe
   Status             : Scanned
   Object             : %appdata%\browserextensions\behelper.exe
   MD5                : 175FF41CA3EF01F1E566372B652F914F
   Publisher          : Spigot, Inc.
   Size               : 540656
   Version            : 2.8.5.1
   Detection          : Adware:Win32/Spigot!Ep
   Cleaning Action    : Quarantine
   Traces             :
                File - %appdata%\browserextensions\behelper.exe
 
StormAlerts.exe.mwt
   Status             : Scanned
   Object             : %localappdata%\stormalerts\stormalerts.exe.mwt
   MD5                : 7DCADA47DB261CCD331554E12DCCFD89
   Publisher          : Weather Warnings LLC
   Size               : 170160
   Version            : 1.6.0.0
   Detection          : Malware:Win32/Quarand!Ekea
   Cleaning Action    : Quarantine
   Traces             :
                File - %localappdata%\stormalerts\stormalerts.exe.mwt
 
StormAlertsApp.exe.mwt
   Status             : Scanned
   Object             : %localappdata%\stormalerts\stormalertsapp.exe.mwt
   MD5                : DB5E2B530BAF2F0FC2B6F5AF2324C0D0
   Publisher          : Weather Warnings LLC
   Size               : 612464
   Version            : 1.0.14.0
   Detection          : Malware:Win32/Zelion!Ekea
   Cleaning Action    : Quarantine
   Traces             :
                File - %localappdata%\stormalerts\stormalertsapp.exe.mwt
 
Arcadeparlor.dll
   Status             : Scanned
   Object             : %localappdata%\arcadeparlor\arcadeparlor.dll
   MD5                : 0521E4E87505CFFCE7147A36226F7901
   Publisher          : EpicPlay LLC
   Size               : 188024
   Version            : -
   Detection          : Adware:Win32/Quarand!Klii
   Cleaning Action    : Quarantine
   Traces             :
                File - %localappdata%\arcadeparlor\arcadeparlor.dll
                Registry - HKLM\SOFTWARE\Classes\CLSID\{632D51D4-67C3-40CA-8A7E-D1E93E80B005}\InprocServer32\@
                Registry - HKLM\SOFTWARE\Classes\CLSID\{39AD0726-986D-40F9-972B-E3BFA24B7745}\InprocServer32\@
                Registry - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{39AD0726-986D-40F9-972B-E3BFA24B7745}\@
                Registry - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{632D51D4-67C3-40CA-8A7E-D1E93E80B005}\@
 
FreeFileViewerDMSetup.exe
   Status             : Scanned
   Object             : %userprofile%\downloads\freefileviewerdmsetup.exe
   MD5                : 60B2B7B3015D998B3A4081664BAF788F
   Publisher          : Bitberry Software ApS
   Size               : 792448
   Version            : 0.0.0.0
   Detection          : Adware:Win32/InstallCore.Variant!Sig
   Cleaning Action    : Quarantine
   Traces             :
                File - %userprofile%\downloads\freefileviewerdmsetup.exe
 
uninstall.exe
   Status             : Scanned
   Object             : %appdata%\contentexplorer\uninstall.exe
   MD5                : BD955C967D198C570F3FC6E1B8E56349
   Publisher          : Lake Ventures LLC
   Size               : 130800
   Version            : 1.0.0.0
   Detection          : Adware:Win32/iBryte!Sig
   Cleaning Action    : Quarantine
   Traces             :
                File - %appdata%\contentexplorer\uninstall.exe
 
FreeFileViewerDMSetup (1).exe
   Status             : Scanned
   Object             : %userprofile%\downloads\freefileviewerdmsetup (1).exe
   MD5                : 60B2B7B3015D998B3A4081664BAF788F
   Publisher          : Bitberry Software ApS
   Size               : 792448
   Version            : 0.0.0.0
   Detection          : Adware:Win32/InstallCore.Variant!Sig
   Cleaning Action    : Quarantine
   Traces             :
                File - %userprofile%\downloads\freefileviewerdmsetup (1).exe
 
 
Cleaning Result
-------------------------------------------------------
Cleaned               : 37
Reported as safe      : 0
Failed                : 0
 


#5 Viki Smith

Viki Smith
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:01:19 PM

Posted 17 May 2015 - 07:20 PM

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.7.2 (05.15.2015:1)
OS: Windows 7 Ultimate x86
Ran by Viki on Sun 05/17/2015 at 18:14:24.47
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
 
 
~~~ Tasks
 
 
 
~~~ Registry Values
 
 
 
~~~ Registry Keys
 
 
 
~~~ Files
 
 
 
~~~ Folders
 
Successfully deleted: [Folder] C:\Users\Viki\local settings\application data\speed browser


#6 Viki Smith

Viki Smith
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:01:19 PM

Posted 17 May 2015 - 07:52 PM

# AdwCleaner v4.204 - Logfile created 17/05/2015 at 18:37:29
# Updated 12/05/2015 by Xplode
# Database : 2015-05-12.2 [Server]
# Operating system : Windows 7 Ultimate  (x86)
# Username : Viki - VIKI-PC
# Running from : C:\Users\Viki\Downloads\adwcleaner_4.204.exe
# Option : Cleaning
 
***** [ Services ] *****
 
[#] Service Deleted : vToolbarUpdater18.5.0
 
***** [ Files / Folders ] *****
 
Folder Deleted : C:\ProgramData\AVG SafeGuard toolbar
Folder Deleted : C:\ProgramData\AVG Secure Search
Folder Deleted : C:\Program Files\AVG SafeGuard toolbar
Folder Deleted : C:\Program Files\AVG Security Toolbar
Folder Deleted : C:\Program Files\centurytoolbar
Folder Deleted : C:\Program Files\Yula
Folder Deleted : C:\Program Files\Common Files\AVG Secure Search
Folder Deleted : C:\Windows\system32\config\systemprofile\AppData\Local\speed browser
Folder Deleted : C:\Users\Viki\AppData\Local\AVG SafeGuard toolbar
Folder Deleted : C:\Users\Viki\AppData\LocalLow\AVG SafeGuard toolbar
Folder Deleted : C:\Users\Viki\AppData\LocalLow\centurytoolbar
Folder Deleted : C:\Users\Viki\AppData\Roaming\Settings Manager
Folder Deleted : C:\Users\Viki\AppData\Roaming\BrowserExtensions
[!] Folder Deleted : C:\Users\Viki\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
 
***** [ Scheduled tasks ] *****
 
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.BrowserWndAPI
Key Deleted : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.BrowserWndAPI.1
Key Deleted : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.PugiObj
Key Deleted : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.PugiObj.1
Key Deleted : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol
Key Deleted : HKLM\SOFTWARE\Classes\S
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Deleted : HKLM\SOFTWARE\microsoft\shared tools\msconfig\startupreg\Browser Extensions
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{72D89EBF-0C5D-4190-91FD-398E45F1D007}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{058F0E48-61CA-4964-9FBA-1978A1BB060D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{18F33C35-8EF2-40D7-8BA4-932B0121B472}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{83453B9B-B889-4659-9144-20F081542BDC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A2DF06F9-A21A-44A8-8A99-8B9C84F29160}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83453B9B-B889-4659-9144-20F081542BDC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD79F359-E577-46DB-AA74-D6E6B8B45BA8}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{83453B9B-B889-4659-9144-20F081542BDC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{FD79F359-E577-46DB-AA74-D6E6B8B45BA8}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83453B9B-B889-4659-9144-20F081542BDC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{b723e5aa-0f63-47df-971c-ae8ea0f8393a}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f2c44a6f-749e-41bd-8da3-8c80fe5697c9}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Key Deleted : HKCU\Software\AVG SafeGuard toolbar
Key Deleted : HKCU\Software\AVG Security Toolbar
Key Deleted : HKCU\Software\ContentExplorer
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\Settings Manager
Key Deleted : HKCU\Software\AppDataLow\Software\Browser Extensions
Key Deleted : HKLM\SOFTWARE\AVG SafeGuard toolbar
Key Deleted : HKLM\SOFTWARE\AVG Security Toolbar
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\InstallIQ
Key Deleted : HKLM\SOFTWARE\SpeedBrowser
Key Deleted : HKLM\SOFTWARE\{F2E9660B-98AF-42c0-8258-9CDDF07BF95D}
Key Deleted : HKU\.DEFAULT\Software\AVG SafeGuard toolbar
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{3A787631-66A2-4634-B928-A37E73B58FB6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Settings Manager
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B74443DB-5A88-4583-860A-F0D06EF399E3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG SafeGuard toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\speed browser
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ContentExplorer
Data Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <-loopback>
 
***** [ Web browsers ] *****
 
-\\ Internet Explorer v9.0.8112.16464
 
 
-\\ Google Chrome v42.0.2311.152
 
[C:\Users\Viki\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
[C:\Users\Viki\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
[C:\Users\Viki\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Deleted [Extension] : klibnahbojhkanfgaglnlalfkgpcppfi
 
*************************
 
AdwCleaner[R0].txt - [8267 bytes] - [17/05/2015 18:27:45]
AdwCleaner[S0].txt - [8386 bytes] - [17/05/2015 18:37:29]
 
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8445  bytes] ##########


#7 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:19 PM

Posted 18 May 2015 - 01:25 AM

Adware Removal Tool.
 
Download Adware removal tool to your desktop, right click the icon and select Run as Administrator.

Source: http://www.techsupportall.com/adware-removal-tool/

LOr0Gd7.png

Hit Ok.

sYFsqHx.png

Hit next make sure to leave all items checked, for removal.

8NcZjGc.png


The Program will close all open programs to complete the removal, so save any work and hit OK. Then hit OK after the removal process is complete,  then OK again to finish up. Post log generated by tool.

 

Step 2: ZHP Cleaner.

 

Download and save ZHP Cleaner to your desktop.

http://www.nicolascoolman.fr/download/zhpcleaner-2/

Right Click and run as administrator.

Click on the Repair button.

At the end of the process you will be asked to reboot your machine.

After you reboot a report will open on your desktop.

Copy and paste the report here in your next reply.

 

Step 3: Security Check.

 

Download Security Check from here or here and save it to your Desktop.

  • Double-click SecurityCheck.exe
  • Follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document

 

 

 

Step 4: Minitoolbox.

 

Please download [b]MINITOOLBOX and run it.



Checkmark following boxes:


Flush DNS
Reset FF proxy Settings
Reset Ie Proxy Settings
Report IE Proxy Settings
Report FF Proxy Settings
List content of Hosts
List IP configuration
List Winsock Entries
List last 10 Event Viewer log
List Installed Programs
List Users, Partitions and Memory size
List Devices (problems only)



Click Go and post the result.

 

Eset Scan

http://www.eset.com/us/online-scanner/
 

Disable your antivirus prior to this scan.

http://www.bleepingcomputer.com/forums/t/114351/how-to-temporarily-disable-your-anti-virus-firewall-and-anti-malware-programs/

 
 
 esetonlinebtn.png
 

  • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
  • Double click on the esetsmartinstaller_enu.png icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
  • Scan potentially unwanted applications
  • Scan for potentially unsafe applications
  • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.
  • NOTE:Sometimes if ESET finds no infections it will not create a log.


#8 Viki Smith

Viki Smith
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:01:19 PM

Posted 18 May 2015 - 04:04 PM

Adware Removal Tool Process 3

X Unhandled exception has occured in your application.  If you click Continue the application will ignore this error and attempt to continue.  If you click Quit the application will close immediately.

Application not found.

Under Details.....

See the end of this message for details on invoking 
just-in-time (JIT) debugging instead of this dialog box.
 
************** Exception Text **************
System.ComponentModel.Win32Exception: Application not found
   at System.Diagnostics.Process.StartWithShellExecuteEx(ProcessStartInfo startInfo)
   at System.Diagnostics.Process.Start()
   at System.Diagnostics.Process.Start(ProcessStartInfo startInfo)
   at System.Diagnostics.Process.Start(String fileName)
   at ARTP3.Form1.Button1_Click(Object sender, EventArgs e)
   at System.Windows.Forms.Control.OnClick(EventArgs e)
   at System.Windows.Forms.Button.OnClick(EventArgs e)
   at System.Windows.Forms.Button.OnMouseUp(MouseEventArgs mevent)
   at System.Windows.Forms.Control.WmMouseUp(Message& m, MouseButtons button, Int32 clicks)
   at System.Windows.Forms.Control.WndProc(Message& m)
   at System.Windows.Forms.ButtonBase.WndProc(Message& m)
   at System.Windows.Forms.Button.WndProc(Message& m)
   at System.Windows.Forms.Control.ControlNativeWindow.OnMessage(Message& m)
   at System.Windows.Forms.Control.ControlNativeWindow.WndProc(Message& m)
   at System.Windows.Forms.NativeWindow.Callback(IntPtr hWnd, Int32 msg, IntPtr wparam, IntPtr lparam)
 
 
************** Loaded Assemblies **************
mscorlib
    Assembly Version: 2.0.0.0
    Win32 Version: 2.0.50727.4927 (NetFXspW7.050727-4900)
    CodeBase: file:///C:/Windows/Microsoft.NET/Framework/v2.0.50727/mscorlib.dll
----------------------------------------
ARTP3
    Assembly Version: 3.8.0.0
    Win32 Version: 3.8.0.0
    CodeBase: file:///C:/Program%20Files/Adware-Removal-Tool/ARTP3.exe
----------------------------------------
Microsoft.VisualBasic
    Assembly Version: 8.0.0.0
    Win32 Version: 8.0.50727.4927 (NetFXspW7.050727-4900)
    CodeBase: file:///C:/Windows/assembly/GAC_MSIL/Microsoft.VisualBasic/8.0.0.0__b03f5f7f11d50a3a/Microsoft.VisualBasic.dll
----------------------------------------
System
    Assembly Version: 2.0.0.0
    Win32 Version: 2.0.50727.4927 (NetFXspW7.050727-4900)
    CodeBase: file:///C:/Windows/assembly/GAC_MSIL/System/2.0.0.0__b77a5c561934e089/System.dll
----------------------------------------
System.Windows.Forms
    Assembly Version: 2.0.0.0
    Win32 Version: 2.0.50727.4927 (NetFXspW7.050727-4900)
    CodeBase: file:///C:/Windows/assembly/GAC_MSIL/System.Windows.Forms/2.0.0.0__b77a5c561934e089/System.Windows.Forms.dll
----------------------------------------
System.Drawing
    Assembly Version: 2.0.0.0
    Win32 Version: 2.0.50727.4927 (NetFXspW7.050727-4900)
    CodeBase: file:///C:/Windows/assembly/GAC_MSIL/System.Drawing/2.0.0.0__b03f5f7f11d50a3a/System.Drawing.dll
----------------------------------------
System.Runtime.Remoting
    Assembly Version: 2.0.0.0
    Win32 Version: 2.0.50727.4927 (NetFXspW7.050727-4900)
    CodeBase: file:///C:/Windows/assembly/GAC_MSIL/System.Runtime.Remoting/2.0.0.0__b77a5c561934e089/System.Runtime.Remoting.dll
----------------------------------------
 
************** JIT Debugging **************
To enable just-in-time (JIT) debugging, the .config file for this
application or computer (machine.config) must have the
jitDebugging value set in the system.windows.forms section.
The application must also be compiled with debugging
enabled.
 
For example:
 
<configuration>
    <system.windows.forms jitDebugging="true" />
</configuration>
 
When JIT debugging is enabled, any unhandled exception
will be sent to the JIT debugger registered on the computer
rather than be handled by this dialog box.


#9 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:19 PM

Posted 18 May 2015 - 04:47 PM

Just delete the copy of adware removal tool you have and run a new one, if you have the same issue then skip it, and move to the next.



#10 Viki Smith

Viki Smith
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:01:19 PM

Posted 18 May 2015 - 08:48 PM

I chose to Continue... this is the report ran before it said there was an error

 

* * * * * * * * * * * * * * * * * * * * * * * * * * * * * * 
 
Adware Removal Tool v3.9
Time: 2015_05_18_14_43_39
OS: Windows 7 - 32 Bit
Account Name: Viki
U0L0S43
 
\\\\\\\\\\\\\\\\\\\\\\\ Repair Logs \\\\\\\\\\\\\\\\\\\\\\
 
Deleted - File - C:\program files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
Deleted - File - C:\program files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.ini
Deleted - File - C:\program files\PrintMaster 5.0 Platinum\Smilebox Trial\PC\Install Smilebox.exe
Deleted - File - C:\program files\PrintMaster 5.0 Platinum\Smilebox Trial\PC\Smilebox.ico
Deleted - File - C:\program files\Wondershare\DVD Slideshow Builder Deluxe\Wondershare Helper Compact.exe
Deleted - File - C:\Users\Viki\desktop\Wondershare DVD Slideshow Builder Deluxe.lnk
Deleted - File - C:\Users\Viki\Appdata\Roaming\Smilebox\SmileboxBrowserEngine.dll
Deleted - File - C:\Users\Viki\Appdata\Roaming\Smilebox\SmileboxStarter.exe
Deleted - Folder - C:\program files\Wondershare
Deleted - Folder - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
Deleted - Folder - C:\ProgramData\Wondershare
Deleted - Folder - C:\Users\Viki\Appdata\Local\Wondershare
Deleted - Folder - C:\Users\Viki\Appdata\Local\Wondershare\WSHelper
Deleted - Folder - C:\Users\Viki\Appdata\Roaming\Smilebox
Deleted - RegistryValueData - HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{2A0F3D1B-0909-4FF4-B272-609CCE6054E7}:dllname
Deleted - RegistryValueData - HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{2A0F3D1B-0909-4FF4-B272-609CCE6054E7}:masterclsid
Deleted - RegistryValueData - HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{2EECD738-5844-4A99-B4B6-146BF802613B}:dllname
Deleted - RegistryValueData - HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{472734EA-242A-422B-ADF8-83D1E48CC825}:dllname
Deleted - RegistryValueData - HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}:dllname
Deleted - RegistryValueData - HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{98889811-442D-49DD-99D7-DC866BE87DBC}:dllname
Deleted - RegistryValueData - HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\5e563f35_0:
Deleted - RegistryValueData - HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\5ee632ee_0:
Deleted - RegistryValueData - HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\bf398113_0:
Deleted - RegistryValueData - HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\cb206514_0:
Deleted - RegistryValueData - HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows\Currentversion\Uninstall\Wondershare DVD Slideshow Builder Deluxe_is1:inno setup: app path
Deleted - RegistryValueData - HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows\Currentversion\Uninstall\Wondershare DVD Slideshow Builder Deluxe_is1:installlocation
Deleted - RegistryValueData - HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows\Currentversion\Uninstall\Wondershare DVD Slideshow Builder Deluxe_is1:inno setup: icon group
Deleted - RegistryValueData - HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows\Currentversion\Uninstall\Wondershare DVD Slideshow Builder Deluxe_is1:displayname
Deleted - RegistryValueData - HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows\Currentversion\Uninstall\Wondershare DVD Slideshow Builder Deluxe_is1:displayicon
Deleted - RegistryValueData - HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows\Currentversion\Uninstall\Wondershare DVD Slideshow Builder Deluxe_is1:uninstallstring
Deleted - RegistryValueData - HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows\Currentversion\Uninstall\Wondershare DVD Slideshow Builder Deluxe_is1:quietuninstallstring
Deleted - RegistryValueData - HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows\Currentversion\Uninstall\Wondershare DVD Slideshow Builder Deluxe_is1:publisher
Deleted - RegistryValueData - HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows\Currentversion\Uninstall\Wondershare DVD Slideshow Builder Deluxe_is1:urlinfoabout
Deleted - RegistryKey - HKEY_LOCAL_MACHINE\SOFTWARE:Wondershare
Deleted - RegistryKey - HKEY_CURRENT_USER\SOFTWARE:SmileboxInstall
Deleted - RegistryKey - HKEY_CURRENT_USER\SOFTWARE\AppDataLow\Software:Smartbar
Deleted - RegistryKey - HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility:{2A0F3D1B-0909-4FF4-B272-609CCE6054E7}
Deleted - RegistryKey - HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility:{2EECD738-5844-4A99-B4B6-146BF802613B}
Deleted - RegistryKey - HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility:{472734EA-242A-422B-ADF8-83D1E48CC825}
Deleted - RegistryKey - HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility:{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}
Deleted - RegistryKey - HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility:{98889811-442D-49DD-99D7-DC866BE87DBC}
Deleted - RegistryKey - HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2998536645-34718595-830279115-1001\SOFTWARE:WhiteSmoke_New
Deleted - RegistryKey - HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows\Currentversion\Uninstall:Wondershare DVD Slideshow Builder Deluxe_is1
 
\\ Finished


#11 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:19 PM

Posted 18 May 2015 - 08:54 PM

Ok, continue with the other scans please. :)



#12 Viki Smith

Viki Smith
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:01:19 PM

Posted 18 May 2015 - 09:55 PM

ZHP cleaner.exe 

failed insufficient permissions

 

I'm going to reboot and try it again.



#13 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:19 PM

Posted 18 May 2015 - 10:05 PM

Just make sure and run as administrator. If you have issue then skip it as with anything, just let me know.



#14 Viki Smith

Viki Smith
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:01:19 PM

Posted 18 May 2015 - 10:59 PM

 Results of screen317's Security Check version 1.002  
 Windows 7  x86 (UAC is enabled)  
 Internet Explorer 11  
``````````````Antivirus/Firewall Check:`````````````` 
 Windows Firewall Enabled!  
AVG AntiVirus Free Edition 2015   
 Antivirus up to date!   
`````````Anti-malware/Other Utilities Check:````````` 
 Zemana AntiMalware    
 CCleaner     
 Adobe Flash Player 17.0.0.169  
 Adobe Reader XI  
 Google Chrome (42.0.2311.152) 
 Google Chrome (Plugins...) 
````````Process Check: objlist.exe by Laurent````````  
 AVG avgwdsvc.exe 
 AVG avgrsx.exe 
 AVG avgnsx.exe 
 AVG avgemc.exe 
 Zemana AntiMalware ZAM.exe   
`````````````````System Health check````````````````` 
 Total Fragmentation on Drive C: 3% 
````````````````````End of Log`````````````````````` 


#15 Viki Smith

Viki Smith
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:01:19 PM

Posted 18 May 2015 - 11:06 PM

MiniToolBox by Farbar  Version: 11-05-2015 01
Ran by Viki (administrator) on 18-05-2015 at 22:04:28
Running from "C:\Users\Viki\Downloads"
Microsoft Windows 7 Ultimate   (X86)
Model: MM061 Manufacturer: Dell Inc.
Boot Mode: Normal
***************************************************************************
 
========================= Flush DNS: ===================================
 
Windows IP Configuration
 
Successfully flushed the DNS Resolver Cache.
 
========================= IE Proxy Settings: ============================== 
 
Proxy is not enabled.
No Proxy Server is set.
 
"Reset IE Proxy Settings": IE Proxy Settings were reset.
Hosts file not detected in the default directory
========================= IP Configuration: ================================
 
Intel® PRO/Wireless 3945ABG Network Connection = Wireless Network Connection (Connected)
Broadcom 440x 10/100 Integrated Controller = Local Area Connection (Media disconnected)
 
 
# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4
 
reset
set global icmpredirects=enabled
 
 
popd
# End of IPv4 configuration
 
 
 
Windows IP Configuration
 
   Host Name . . . . . . . . . . . . : Viki-PC
   Primary Dns Suffix  . . . . . . . : 
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
 
Wireless LAN adapter Wireless Network Connection:
 
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Intel® PRO/Wireless 3945ABG Network Connection
   Physical Address. . . . . . . . . : 00-13-02-AA-8F-60
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::b167:b18d:e06b:30df%12(Preferred) 
   IPv4 Address. . . . . . . . . . . : 192.168.0.82(Preferred) 
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Monday, May 18, 2015 9:29:34 PM
   Lease Expires . . . . . . . . . . : Tuesday, May 19, 2015 9:29:34 PM
   Default Gateway . . . . . . . . . : 192.168.0.1
   DHCP Server . . . . . . . . . . . : 192.168.0.1
   DHCPv6 IAID . . . . . . . . . . . : 218108674
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-18-B2-C6-6A-00-15-C5-1D-A0-85
   DNS Servers . . . . . . . . . . . : 192.168.0.1
   NetBIOS over Tcpip. . . . . . . . : Enabled
 
Ethernet adapter Local Area Connection:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Broadcom 440x 10/100 Integrated Controller
   Physical Address. . . . . . . . . : 00-15-C5-1D-A0-85
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter isatap.{B9119932-AE5A-4D8D-BEF1-08278D63921D}:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Teredo Tunneling Pseudo-Interface:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter isatap.{51A9BDCA-B21D-4E3E-A28D-64CA35AB3F2F}:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
DNS request timed out.
    timeout was 2 seconds.
Server:  UnKnown
Address:  192.168.0.1
 
Name:    google.com
Addresses:  2607:f8b0:400f:802::200e
 216.58.217.14
 
 
Pinging google.com [216.58.217.14] with 32 bytes of data:
Reply from 216.58.217.14: bytes=32 time=50ms TTL=57
Reply from 216.58.217.14: bytes=32 time=47ms TTL=57
 
Ping statistics for 216.58.217.14:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 47ms, Maximum = 50ms, Average = 48ms
DNS request timed out.
    timeout was 2 seconds.
Server:  UnKnown
Address:  192.168.0.1
 
Name:    yahoo.com
Addresses:  98.138.253.109
 98.139.183.24
 206.190.36.45
 
 
Pinging yahoo.com [98.139.183.24] with 32 bytes of data:
Reply from 98.139.183.24: bytes=32 time=99ms TTL=52
Reply from 98.139.183.24: bytes=32 time=101ms TTL=52
 
Ping statistics for 98.139.183.24:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 99ms, Maximum = 101ms, Average = 100ms
 
Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
 
Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
 12...00 13 02 aa 8f 60 ......Intel® PRO/Wireless 3945ABG Network Connection
 11...00 15 c5 1d a0 85 ......Broadcom 440x 10/100 Integrated Controller
  1...........................Software Loopback Interface 1
 15...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
 13...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
 14...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2
===========================================================================
 
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.0.1     192.168.0.82     25
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
      192.168.0.0    255.255.255.0         On-link      192.168.0.82    281
     192.168.0.82  255.255.255.255         On-link      192.168.0.82    281
    192.168.0.255  255.255.255.255         On-link      192.168.0.82    281
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link      192.168.0.82    281
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link      192.168.0.82    281
===========================================================================
Persistent Routes:
  None
 
IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
 12    281 fe80::/64                On-link
 12    281 fe80::b167:b18d:e06b:30df/128
                                    On-link
  1    306 ff00::/8                 On-link
 12    281 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================
 
Catalog5 01 C:\Windows\system32\NLAapi.dll [51712] (Microsoft Corporation)
Catalog5 02 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 03 C:\Windows\system32\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 04 C:\Windows\system32\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 05 C:\Windows\system32\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 06 C:\Windows\system32\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog9 01 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 14 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 15 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 16 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 17 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 18 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 19 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 20 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 21 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 22 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 23 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 24 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
 
========================= Event log errors: ===============================
 
Application errors:
==================
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service) (User: )
Description: The index cannot be initialized.
 
 
Details:
The content index database is corrupt.  (HRESULT : 0xc0041800) (0xc0041800)
 
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service) (User: )
Description: The application cannot be initialized.
 
Context: Windows Application
 
 
Details:
The content index database is corrupt.  (HRESULT : 0xc0041800) (0xc0041800)
 
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service) (User: )
Description: The gatherer object cannot be initialized.
 
Context: Windows Application, SystemIndex Catalog
 
 
Details:
The content index database is corrupt.  (HRESULT : 0xc0041800) (0xc0041800)
 
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service) (User: )
Description: The plug-in in <Search.TripoliIndexer> cannot be initialized.
 
Context: Windows Application, SystemIndex Catalog
 
 
Details:
Element not found.  (HRESULT : 0x80070490) (0x80070490)
 
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service) (User: )
Description: The plug-in in <Search.JetPropStore> cannot be initialized.
 
Context: Windows Application, SystemIndex Catalog
 
 
Details:
The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)
 
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service) (User: )
Description: The Windows Search Service cannot load the property store information.
 
Context: Windows Application, SystemIndex Catalog
 
 
Details:
The content index database is corrupt.  (HRESULT : 0xc0041800) (0xc0041800)
 
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service) (User: )
Description: The Windows Search Service is being stopped because there is a problem with the indexer: The catalog is corrupt.
 
 
Details:
The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)
 
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service) (User: )
Description: The search service has detected corrupted data files in the index {id=4700}. The service will attempt to automatically correct this problem by rebuilding the index.
 
 
Details:
The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)
 
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service) (User: )
Description: The Windows Search Service cannot open the Jet property store.
 
 
Details:
0x%08x (0xc0041800 - The content index database is corrupt.  (HRESULT : 0xc0041800))
 
Error: (05/17/2015 02:36:17 PM) (Source: ESENT) (User: )
Description: Windows (3024) Windows: Error -1811 occurred while opening logfile C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS00716.log.
 
 
System errors:
=============
Error: (05/18/2015 09:30:09 PM) (Source: Microsoft-Windows-DNS-Client) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
Error: (05/18/2015 09:30:04 PM) (Source: Microsoft-Windows-DNS-Client) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
Error: (05/18/2015 09:29:41 PM) (Source: Microsoft-Windows-DNS-Client) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
Error: (05/18/2015 09:29:34 PM) (Source: Microsoft-Windows-DNS-Client) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
Error: (05/18/2015 09:29:33 PM) (Source: Microsoft-Windows-DNS-Client) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
Error: (05/18/2015 09:26:40 PM) (Source: Microsoft-Windows-DNS-Client) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
Error: (05/18/2015 09:26:33 PM) (Source: Service Control Manager) (User: )
Description: The AVGIDSAgent service did not shut down properly after receiving a preshutdown control.
 
Error: (05/18/2015 08:58:52 PM) (Source: Microsoft-Windows-DNS-Client) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
Error: (05/18/2015 08:58:47 PM) (Source: Microsoft-Windows-DNS-Client) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
Error: (05/18/2015 08:58:33 PM) (Source: Microsoft-Windows-DNS-Client) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
 
Microsoft Office Sessions:
=========================
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service)(User: )
Description: 
Details:
The content index database is corrupt.  (HRESULT : 0xc0041800) (0xc0041800)
 
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service)(User: )
Description: Context: Windows Application
 
 
Details:
The content index database is corrupt.  (HRESULT : 0xc0041800) (0xc0041800)
 
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service)(User: )
Description: Context: Windows Application, SystemIndex Catalog
 
 
Details:
The content index database is corrupt.  (HRESULT : 0xc0041800) (0xc0041800)
 
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service)(User: )
Description: Context: Windows Application, SystemIndex Catalog
 
 
Details:
Element not found.  (HRESULT : 0x80070490) (0x80070490)
Search.TripoliIndexer
 
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service)(User: )
Description: Context: Windows Application, SystemIndex Catalog
 
 
Details:
The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)
Search.JetPropStore
 
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service)(User: )
Description: Context: Windows Application, SystemIndex Catalog
 
 
Details:
The content index database is corrupt.  (HRESULT : 0xc0041800) (0xc0041800)
 
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service)(User: )
Description: 
Details:
The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)
The catalog is corrupt
 
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service)(User: )
Description: 
Details:
The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)
4700
 
Error: (05/17/2015 02:36:17 PM) (Source: Windows Search Service)(User: )
Description: 
Details:
0x%08x (0xc0041800 - The content index database is corrupt.  (HRESULT : 0xc0041800))
 
Error: (05/17/2015 02:36:17 PM) (Source: ESENT)(User: )
Description: Windows3024Windows: C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS00716.log-1811
 
 
=========================== Installed Programs ============================
 
µTorrent (HKCU\...\uTorrent) (Version: 3.3.2.30446 - BitTorrent Inc.)
Adobe Flash Player 17 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.11) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated)
American Greetings CreataCard Platinum 6 (HKLM\...\{9770A25C-45A7-478E-AF50-4FDE53EED270}) (Version:  - )
AVG 2015 (HKLM\...\{1894024D-500C-4FBE-9F77-5BE07D30E4B5}) (Version: 15.0.5941 - AVG Technologies) Hidden
AVG 2015 (HKLM\...\{F681821A-708F-450B-A9F3-6E400ACCF1FA}) (Version: 15.0.4342 - AVG Technologies) Hidden
AVG 2015 (HKLM\...\AVG) (Version: 2015.0.5941 - AVG Technologies)
Bejeweled 2 Deluxe 1.1 (HKLM\...\Bejeweled 2 Deluxe 1.1) (Version:  - )
CCleaner (HKLM\...\CCleaner) (Version: 5.05 - Piriform)
CenturyLink Toolbar (HKLM\...\centurytoolbar) (Version:  - CenturyLink)
Chuzzle Deluxe 1.01 (HKLM\...\Chuzzle Deluxe 1.01) (Version:  - )
Conexant HDA D110 MDC V.92 Modem (HKLM\...\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_14F100C3) (Version:  - )
Google Chrome (HKLM\...\Google Chrome) (Version: 42.0.2311.152 - Google Inc.)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.27.5 - Google Inc.) Hidden
Google Update Helper (HKLM\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden
HP FWUpdateEDO2 (HKLM\...\{415FA9AD-DA10-4ABE-97B6-5051D4795C90}) (Version: 1.2.0.0 - Hewlett-Packard)
HP Photo Creations (HKLM\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Photosmart 5520 series Basic Device Software (HKLM\...\{E8ED5ADB-3EB5-4890-85F6-0FEA13A47EEE}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Photosmart 5520 series Help (HKLM\...\{7137E26A-10F7-4B1C-9980-0893579E92DA}) (Version: 27.0.0 - Hewlett Packard)
HP Photosmart 5520 series Product Improvement Study (HKLM\...\{B58FBD4F-C69A-41C1-94AC-1A47AD946C91}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Update (HKLM\...\{97486FBE-A3FC-4783-8D55-EA37E9D171CC}) (Version: 5.005.000.002 - Hewlett-Packard)
HPDiagnosticAlert (HKLM\...\{846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE}) (Version: 1.00.0000 - Microsoft) Hidden
Intel® Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Web Publishing Wizard 1.52 (HKLM\...\WebPost) (Version:  - )
MyCenturyLink Toolbar (HKLM\...\qwesttoolbar) (Version:  - CenturyLink)
PrintMaster 5.0 Platinum (HKLM\...\0832-3492-6567-1002) (Version: 5.0.0.15 - Encore Software Inc.)
Scrapbook Factory Deluxe (HKLM\...\{225DA7CB-C773-4F68-8068-184C4082C2F1}) (Version: 2.02.0002 - Nova Development)
System Ninja version 3.0.6 (HKLM\...\{6E67710E-206D-43AB-BF21-E7CD63056C55}_is1) (Version: 3.0.6 - SingularLabs)
TurboTax 2013 (HKLM\...\TurboTax 2013) (Version: 2013.0 - Intuit, Inc)
TurboTax 2013 wcoiper (HKLM\...\{85497447-A527-4D77-82D4-EF5699775F53}) (Version: 013.000.0927 - Intuit Inc.) Hidden
TurboTax 2013 WinPerFedFormset (HKLM\...\{0A7DD94B-B746-4FB0-8688-8598C22793A0}) (Version: 013.000.1548 - Intuit Inc.) Hidden
TurboTax 2013 WinPerReleaseEngine (HKLM\...\{2A4EEB5C-3BA6-4299-A87F-783861B567D9}) (Version: 013.000.0437 - Intuit Inc.) Hidden
TurboTax 2013 WinPerTaxSupport (HKLM\...\{358C44FD-6943-4CDD-B947-7F7C4ADC8A8F}) (Version: 013.000.0162 - Intuit Inc.) Hidden
TurboTax 2013 wrapper (HKLM\...\{606EB5EB-AADF-4E21-B715-1CAD291181D6}) (Version: 013.000.0135 - Intuit Inc.) Hidden
TurboTax 2014 (HKLM\...\TurboTax 2014) (Version: 2014.0 - Intuit, Inc)
TurboTax 2014 wcoiper (HKLM\...\{2B4474F1-2CF3-4009-93FB-5F67E8620733}) (Version: 014.000.1305 - Intuit Inc.) Hidden
TurboTax 2014 WinPerFedFormset (HKLM\...\{35EEDA1E-9D45-4580-8554-734F45D48A73}) (Version: 014.000.1881 - Intuit Inc.) Hidden
TurboTax 2014 WinPerReleaseEngine (HKLM\...\{F2283AA1-869C-4497-8F18-09E36C67A014}) (Version: 014.000.0477 - Intuit Inc.) Hidden
TurboTax 2014 WinPerTaxSupport (HKLM\...\{5FB042CB-B08A-481E-B076-DC6D0FEB0595}) (Version: 014.000.0212 - Intuit Inc.) Hidden
TurboTax 2014 wrapper (HKLM\...\{F5890CC6-26B7-481E-A90E-ACE938AD294F}) (Version: 014.000.0109 - Intuit Inc.) Hidden
Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Widevine Media Optimizer Chrome 6.0.0 (HKCU\...\optimizer_chrome) (Version: 6.0.0.12757 - Widevine Technologies)
Widevine Media Optimizer Chrome 6.0.0 (HKLM\...\optimizer_chrome) (Version: 6.0.0.12757 - Widevine Technologies)
Wipe (HKLM\...\wipe) (Version: 2015.04 - PrivacyRoot.com)
Zemana AntiMalware (HKLM\...\{8F0CD7D1-42F3-4195-95CD-833578D45057}_is1) (Version: 2.14.667 - Zemana Ltd.)
 
========================= Devices: ================================
 
 
========================= Memory info: ===================================
 
Percentage of memory in use: 54%
Total physical RAM: 2038.44 MB
Available physical RAM: 921.34 MB
Total Pagefile: 4076.88 MB
Available Pagefile: 2769.52 MB
Total Virtual: 2047.88 MB
Available Virtual: 1941.66 MB
 
========================= Partitions: =====================================
 
1 Drive c: () (Fixed) (Total:111.69 GB) (Free:8.97 GB) NTFS
2 Drive d: (cac6pla) (CDROM) (Total:0.51 GB) (Free:0 GB) CDFS
 
========================= Users: ========================================
 
User accounts for \\VIKI-PC
 
Administrator            Guest                    Viki                     
 
 
**** End of log ****
 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users