Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Firefox start up page, can't access files, keyboard problems


  • Please log in to reply
7 replies to this topic

#1 butterchicken

butterchicken

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:06:42 AM

Posted 04 June 2015 - 09:58 AM

problem #1: when i start up firefox i get 'http://new.startnow.com/' as my homepage instead of google

 

problem #2: when i try to install a program i get an error saying 'Windows cannot access the specified device, path, or file. You may not have the appropriate permissions to access the item.' i have tried running the installer in administration but i still get the error.

 

problem #3: i don't know if this is a computer problem or if i need a new keyboard. when i am typing something out my keyboard will either stop working, or jam on one button. i've tried unistalling from the device manager a few times but i still get this problem. i had this issue about 7 or 8 months ago but it went away and now it's back. my keyboard is a logitech G110.

 

 

 

 

thanks guys!!


Edited by butterchicken, 04 June 2015 - 09:58 AM.


BC AdBot (Login to Remove)

 


m

#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,195 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:42 AM

Posted 04 June 2015 - 03:26 PM

Hello 1 & 2 appear to be malware.. Lets try running these.. Maybe it will also clear 3.

3Al62Pm.pngMiniToolBox
  • Please download MiniToolBox, save it to your desktop and run it.
  • Checkmark the following checkboxes:
    • Flush DNS
    • Report IE Proxy Settings
    • Reset IE Proxy Settings
    • Report FF Proxy Settings
    • Reset FF Proxy Settings
    • List content of Hosts
    • List IP configuration
    • List Winsock Entries
    • List last 10 Event Viewer log
    • List Installed Programs
    • List Users, Partitions and Memory size.
  • Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run. Note: When using "Reset FF Proxy Settings" option Firefox should be closed.
SXvL3ZF.pngTDSSKiller
  • Download TDSSKiller and save it to your desktop.
  • Extract (unzip) its contents to your desktop.
  • Open the TDSSKiller folder and doubleclick on TDSSKiller.exe to run the application, then on Start Scan.
  • If an infected file is detected, the default action will be Cure, click on Continue.
  • If a suspicious file is detected, the default action will be Skip, click on Continue.
  • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
  • If no reboot is required, click on Report. A log file should appear. Please copy and paste the contents of that file here.
  • If a reboot is required, the report can also be found in your root directory (usually C:\ folder) in the form of TDSSKiller_xxxx_log.txt. Please copy and paste the contents of that file here.
zcMPezJ.pngAdwCleaner
  • Please download AdwCleaner by Xplode and save to your Desktop.
  • Double click on AdwCleaner.exe to run the tool. Vista/Windows 7/8 users right-click and select Run As Administrator
  • Click on the Scan button.
  • AdwCleaner will begin...be patient as the scan may take some time to complete.
  • After the scan has finished, click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
  • The contents of the log file may be confusing. Unless you see a program name that you know should not be removed, don't worry about it. If you see an entry you want to keep, let me know about it.
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.
lv0mVRW.pngJunkware Removal Tool
  • Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
cvMlKv6.pngESET Online Scanner
  • Hold down Control and click on this link to open ESET Online Scanner in a new window.
  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
  • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
  • Double click on the esetsmartinstaller_enu.png icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.
  • NOTE: Sometimes if ESET finds no infections it will not create a log.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 butterchicken

butterchicken
  • Topic Starter

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:06:42 AM

Posted 04 June 2015 - 04:51 PM

MiniToolBox by Farbar  Version: 11-05-2015 01
Ran by Gary (administrator) on 04-06-2015 at 14:44:19
Running from "C:\Users\Gary\Downloads"
Microsoft Windows 7 Ultimate  Service Pack 1 (X64)
Model: System Product Name Manufacturer: System manufacturer
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================



========================= IP Configuration: ================================

Broadcom 802.11n Network Adapter = Wireless Network Connection (Connected)
Intel® 82579V Gigabit Network Connection = Local Area Connection (Media disconnected)
Intel® 82583V Gigabit Network Connection = Local Area Connection 2 (Media disconnected)
Broadcom Virtual Wireless Adapter = Local Area Connection 3 (Media disconnected)
Evolve Virtual Ethernet Adapter = Evolve Gaming Connection (Media disconnected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled
add route prefix=255.255.255.255/32 interface="Evolve Gaming Connection" nexthop=0.0.0.0 metric=1 publish=No
add route prefix=224.0.0.0/4 interface="Evolve Gaming Connection" nexthop=0.0.0.0 metric=1 publish=No
add address name="Evolve Gaming Connection" address=192.168.178.1 mask=255.255.255.0


popd
# End of IPv4 configuration



Windows IP Configuration

   Host Name . . . . . . . . . . . . : Gary-PC
   Primary Dns Suffix  . . . . . . . :
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No

Ethernet adapter Evolve Gaming Connection:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Evolve Virtual Ethernet Adapter
   Physical Address. . . . . . . . . : 00-00-DB-EB-78-29
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Ethernet adapter Local Area Connection 3:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Broadcom Virtual Wireless Adapter
   Physical Address. . . . . . . . . : 96-DB-C9-9F-DE-D0
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Ethernet adapter Local Area Connection 2:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Intel® 82583V Gigabit Network Connection
   Physical Address. . . . . . . . . : C8-60-00-CB-F3-22
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Ethernet adapter Local Area Connection:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Intel® 82579V Gigabit Network Connection
   Physical Address. . . . . . . . . : C8-60-00-CB-EF-38
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Wireless LAN adapter Wireless Network Connection:

   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Broadcom 802.11n Network Adapter
   Physical Address. . . . . . . . . : 94-DB-C9-9F-5E-D0
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::b959:f274:61a:2f68%11(Preferred)
   IPv4 Address. . . . . . . . . . . : 192.168.0.5(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Thursday, June 04, 2015 7:31:04 AM
   Lease Expires . . . . . . . . . . : Thursday, June 04, 2015 3:31:32 PM
   Default Gateway . . . . . . . . . : 192.168.0.1
   DHCP Server . . . . . . . . . . . : 192.168.0.1
   DHCPv6 IAID . . . . . . . . . . . : 244636617
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-1A-DD-18-43-94-DB-C9-9F-5E-D0
   DNS Servers . . . . . . . . . . . : 64.59.144.18
                                       64.59.150.134
   NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter isatap.{026F3C0B-0A81-4FEE-BC21-27217032C0A4}:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{0B6F1D53-FB92-4292-82B1-3C21B4A05C26}:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Teredo Tunneling Pseudo-Interface:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{0AEB9D1C-B216-4311-8F43-01677E4B2048}:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #3
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Server:  pd1nsc3.st.vc.shawcable.net
Address:  64.59.144.18

Name:    google.com
Addresses:  2607:f8b0:400a:807::200e
      216.58.216.174


Pinging google.com [216.58.216.174] with 32 bytes of data:
Reply from 216.58.216.174: bytes=32 time=25ms TTL=57
Reply from 216.58.216.174: bytes=32 time=18ms TTL=57

Ping statistics for 216.58.216.174:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 18ms, Maximum = 25ms, Average = 21ms
Server:  pd1nsc3.st.vc.shawcable.net
Address:  64.59.144.18

Name:    yahoo.com
Addresses:  206.190.36.45
      98.139.183.24
      98.138.253.109


Pinging yahoo.com [206.190.36.45] with 32 bytes of data:
Reply from 206.190.36.45: bytes=32 time=21ms TTL=53
Reply from 206.190.36.45: bytes=32 time=20ms TTL=53

Ping statistics for 206.190.36.45:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 20ms, Maximum = 21ms, Average = 20ms

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
 17...00 00 db eb 78 29 ......Evolve Virtual Ethernet Adapter
 14...96 db c9 9f de d0 ......Broadcom Virtual Wireless Adapter
 13...c8 60 00 cb f3 22 ......Intel® 82583V Gigabit Network Connection
 12...c8 60 00 cb ef 38 ......Intel® 82579V Gigabit Network Connection
 11...94 db c9 9f 5e d0 ......Broadcom 802.11n Network Adapter
  1...........................Software Loopback Interface 1
 18...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
 20...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2
 15...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
 19...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #3
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.0.1      192.168.0.5     20
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
      192.168.0.0    255.255.255.0         On-link       192.168.0.5    276
      192.168.0.5  255.255.255.255         On-link       192.168.0.5    276
    192.168.0.255  255.255.255.255         On-link       192.168.0.5    276
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link       192.168.0.5    276
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link       192.168.0.5    276
===========================================================================
Persistent Routes:
  Network Address          Netmask  Gateway Address  Metric
  255.255.255.255  255.255.255.255         On-link        1
        224.0.0.0        240.0.0.0         On-link        1
===========================================================================

IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
 11    276 fe80::/64                On-link
 11    276 fe80::b959:f274:61a:2f68/128
                                    On-link
  1    306 ff00::/8                 On-link
 11    276 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 07 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog5 08 C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [26512] (National Instruments Corporation)
Catalog5 09 pcapwsp.dll [] (Proxy Labs)
Catalog9 01 pcapwsp.dll [File not found] (Proxy Labs)
Catalog9 02 pcapwsp.dll [File not found] (Proxy Labs)
Catalog9 03 pcapwsp.dll [File not found] (Proxy Labs)
Catalog9 04 pcapwsp.dll [File not found] (Proxy Labs)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 11 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 12 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 13 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 14 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 15 pcapwsp.dll [File not found] (Proxy Labs)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [132968] (Apple Inc.)
x64-Catalog5 08 C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [28560] (National Instruments Corporation)
x64-Catalog5 09 pcapwsp.dll [File Not found] (Proxy Labs)
x64-Catalog9 01 pcapwsp.dll [File Not found] (Proxy Labs)
x64-Catalog9 02 pcapwsp.dll [File Not found] (Proxy Labs)
x64-Catalog9 03 pcapwsp.dll [File Not found] (Proxy Labs)
x64-Catalog9 04 pcapwsp.dll [File Not found] (Proxy Labs)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 11 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 12 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 13 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 14 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 15 pcapwsp.dll [File Not found] (Proxy Labs)

========================= Event log errors: ===============================

Application errors:
==================
Error: (06/04/2015 02:43:40 PM) (Source: Application Error) (User: )
Description: Faulting application name: plugin-container.exe, version: 38.0.5.5623, time stamp: 0x5563c49a
Faulting module name: mozalloc.dll, version: 38.0.5.5623, time stamp: 0x5563b229
Exception code: 0x80000003
Fault offset: 0x00001aa1
Faulting process id: 0x1bb0
Faulting application start time: 0xplugin-container.exe0
Faulting application path: plugin-container.exe1
Faulting module path: plugin-container.exe2
Report Id: plugin-container.exe3

Error: (06/04/2015 07:32:44 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/04/2015 07:31:48 AM) (Source: MySQL) (User: )
Description: Native table 'performance_schema'.'events_waits_current' has the wrong structure

For more information, see Help and Support Center at http://www.mysql.com.

Error: (06/04/2015 07:30:58 AM) (Source: Application Error) (User: )
Description: Faulting application name: igfxCUIService.exe, version: 6.15.10.3958, time stamp: 0x54256c7d
Faulting module name: igfxCUIService.exe, version: 6.15.10.3958, time stamp: 0x54256c7d
Exception code: 0xc0000005
Fault offset: 0x000000000000ee28
Faulting process id: 0x528
Faulting application start time: 0xigfxCUIService.exe0
Faulting application path: igfxCUIService.exe1
Faulting module path: igfxCUIService.exe2
Report Id: igfxCUIService.exe3

Error: (06/03/2015 08:58:35 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/03/2015 08:57:30 AM) (Source: MySQL) (User: )
Description: Native table 'performance_schema'.'events_waits_current' has the wrong structure

For more information, see Help and Support Center at http://www.mysql.com.

Error: (06/03/2015 08:56:49 AM) (Source: Application Error) (User: )
Description: Faulting application name: igfxCUIService.exe, version: 6.15.10.3958, time stamp: 0x54256c7d
Faulting module name: igfxCUIService.exe, version: 6.15.10.3958, time stamp: 0x54256c7d
Exception code: 0xc0000005
Fault offset: 0x000000000000ee28
Faulting process id: 0x52c
Faulting application start time: 0xigfxCUIService.exe0
Faulting application path: igfxCUIService.exe1
Faulting module path: igfxCUIService.exe2
Report Id: igfxCUIService.exe3

Error: (06/02/2015 07:41:57 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/02/2015 07:41:21 AM) (Source: MySQL) (User: )
Description: Native table 'performance_schema'.'events_waits_current' has the wrong structure

For more information, see Help and Support Center at http://www.mysql.com.

Error: (06/02/2015 07:40:11 AM) (Source: Application Error) (User: )
Description: Faulting application name: igfxCUIService.exe, version: 6.15.10.3958, time stamp: 0x54256c7d
Faulting module name: igfxCUIService.exe, version: 6.15.10.3958, time stamp: 0x54256c7d
Exception code: 0xc0000005
Fault offset: 0x000000000000ee28
Faulting process id: 0x52c
Faulting application start time: 0xigfxCUIService.exe0
Faulting application path: igfxCUIService.exe1
Faulting module path: igfxCUIService.exe2
Report Id: igfxCUIService.exe3


System errors:
=============
Error: (06/04/2015 07:32:58 AM) (Source: Service Control Manager) (User: )
Description: The Computer Backup (JustCloud) service failed to start due to the following error:
%%3

Error: (06/04/2015 07:30:58 AM) (Source: Service Control Manager) (User: )
Description: The Intel® HD Graphics Control Panel Service service terminated with the following error:
%%-2147467259

Error: (06/04/2015 07:30:48 AM) (Source: volmgr) (User: )
Description: Crash dump initialization failed!

Error: (06/03/2015 08:58:49 AM) (Source: Service Control Manager) (User: )
Description: The Computer Backup (JustCloud) service failed to start due to the following error:
%%3

Error: (06/03/2015 08:57:20 AM) (Source: Service Control Manager) (User: )
Description: The Steam Client Service service failed to start due to the following error:
%%1053

Error: (06/03/2015 08:57:20 AM) (Source: Service Control Manager) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.

Error: (06/03/2015 08:56:49 AM) (Source: Service Control Manager) (User: )
Description: The Intel® HD Graphics Control Panel Service service terminated with the following error:
%%-2147467259

Error: (06/03/2015 08:56:39 AM) (Source: volmgr) (User: )
Description: Crash dump initialization failed!

Error: (06/02/2015 07:42:11 AM) (Source: Service Control Manager) (User: )
Description: The Computer Backup (JustCloud) service failed to start due to the following error:
%%3

Error: (06/02/2015 07:40:11 AM) (Source: Service Control Manager) (User: )
Description: The Intel® HD Graphics Control Panel Service service terminated with the following error:
%%-2147467259


Microsoft Office Sessions:
=========================
Error: (06/04/2015 02:43:40 PM) (Source: Application Error)(User: )
Description: plugin-container.exe38.0.5.56235563c49amozalloc.dll38.0.5.56235563b2298000000300001aa11bb001d09edc50058d0dC:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dllc2e3366b-0b02-11e5-b1e7-c86000cbf322

Error: (06/04/2015 07:32:44 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/04/2015 07:31:48 AM) (Source: MySQL)(User: )
Description: Native table 'performance_schema'.'events_waits_current' has the wrong structure

Error: (06/04/2015 07:30:58 AM) (Source: Application Error)(User: )
Description: igfxCUIService.exe6.15.10.395854256c7digfxCUIService.exe6.15.10.395854256c7dc0000005000000000000ee2852801d09ed31117922fC:\Windows\system32\igfxCUIService.exeC:\Windows\system32\igfxCUIService.exe5069cc86-0ac6-11e5-b1e7-c86000cbf322

Error: (06/03/2015 08:58:35 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/03/2015 08:57:30 AM) (Source: MySQL)(User: )
Description: Native table 'performance_schema'.'events_waits_current' has the wrong structure

Error: (06/03/2015 08:56:49 AM) (Source: Application Error)(User: )
Description: igfxCUIService.exe6.15.10.395854256c7digfxCUIService.exe6.15.10.395854256c7dc0000005000000000000ee2852c01d09e15e4dddc8bC:\Windows\system32\igfxCUIService.exeC:\Windows\system32\igfxCUIService.exe242c32bb-0a09-11e5-8a87-c86000cbf322

Error: (06/02/2015 07:41:57 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/02/2015 07:41:21 AM) (Source: MySQL)(User: )
Description: Native table 'performance_schema'.'events_waits_current' has the wrong structure

Error: (06/02/2015 07:40:11 AM) (Source: Application Error)(User: )
Description: igfxCUIService.exe6.15.10.395854256c7digfxCUIService.exe6.15.10.395854256c7dc0000005000000000000ee2852c01d09d4205c86ac7C:\Windows\system32\igfxCUIService.exeC:\Windows\system32\igfxCUIService.exe451db269-0935-11e5-8ab3-c86000cbf322


CodeIntegrity Errors:
===================================
  Date: 2015-06-04 07:30:55.518
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.

  Date: 2015-06-03 08:56:46.440
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.

  Date: 2015-06-02 07:40:08.356
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.

  Date: 2015-06-01 07:29:03.340
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.

  Date: 2015-06-01 07:19:18.533
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.

  Date: 2015-05-31 07:54:50.102
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.

  Date: 2015-05-30 10:01:01.774
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.

  Date: 2015-05-29 20:32:51.078
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.

  Date: 2015-05-29 06:48:03.112
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.

  Date: 2015-05-28 14:14:02.948
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.


=========================== Installed Programs ============================

µTorrent (HKCU\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.)
4game (HKLM-x32\...\4game) (Version: 3.4.22.118 - Innova Systems)
64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.11) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated)
Apple Application Support (HKLM-x32\...\{78002155-F025-4070-85B3-7C0453561701}) (Version: 3.0.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{B678797F-DF38-4556-8A31-8B818E261868}) (Version: 8.0.0.23 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.14.8.0 - Asmedia Technology)
ASUS Xonar DG Audio Driver (HKLM\...\C-Media Oxygen HD Audio Driver) (Version:  - )
BlueStacks App Player (HKLM-x32\...\BlueStacks App Player) (Version: 0.9.25.5401 - BlueStack Systems, Inc.)
BlueStacks Notification Center (HKLM-x32\...\{79809712-A577-4B8C-A9FC-51945690C7DC}) (Version: 0.9.25.5401 - BlueStack Systems, Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Broadcom Wireless Utility (HKLM\...\Broadcom Wireless Utility) (Version: 5.100.196.16 - Broadcom Corporation)
Cheat Engine 6.3 (HKLM-x32\...\Cheat Engine 6.3_is1) (Version:  - Cheat Engine)
CPUID HWMonitor 1.26 (HKLM\...\CPUID HWMonitor_is1) (Version:  - )
Desktop Icon für Amazon (HKLM\...\DesktopIconAmazon) (Version: 1.0.1 (de) - CHIP.de)
Dropbox (HKCU\...\Dropbox) (Version: 3.4.6 - Dropbox, Inc.)
EVGA PrecisionX 16 (HKLM-x32\...\{DF31774D-B479-47D9-82F4-6ED733A7A341}) (Version: 5.2.4 - EVGA Corporation)
Evolve (HKLM\...\{670B1B49-9FD3-4827-9B41-471EFF580AA8}) (Version: 1.8.13 - Echobit, LLC)
Follow Liker version 8.5.5 (HKLM-x32\...\{0C42C8A7-894B-49A1-B6EC-FB7FB3C0A193}_is1) (Version: 8.5.5 - Follow Liker)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version:  - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.81 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.27.5 - Google Inc.) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.24.7 - Google Inc.) Hidden
Grand Theft Auto V (HKLM-x32\...\Steam App 271590) (Version:  - Rockstar North)
HandBrake 0.10.1 (HKLM-x32\...\HandBrake) (Version: 0.10.1 - )
HI-TECH C Compiler for the PIC10/12/16 MCUs V9.82PL0 (HKLM-x32\...\PICC 9.82) (Version: 9.82 - HI-TECH Software)
HI-TECH C51-lite V9.60PL0 (HKLM-x32\...\HC51 9.60PL0) (Version: 9.60 - HI-TECH Software)
HP FWUpdateEDO3 (HKLM-x32\...\{A82D0C46-EBDF-4B27-A731-D06EF2056E81}) (Version: 1.0.0.0 - Hewlett-Packard Company)
HP LaserJet 100 color MFP M175 (HKLM-x32\...\{965D0289-10E1-45ec-B11F-A60AC9AE8D4D}) (Version:  - Hewlett-Packard)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
hpbDSService (HKLM-x32\...\{9767CBB5-2A81-427D-8F05-497737D56AA0}) (Version: 001.001.05133 - Hewlett-Packard) Hidden
hpbM175DSService (HKLM-x32\...\{A5949B71-46FB-43F3-8852-4E74D9FC7564}) (Version: 001.001.05133 - Hewlett-Packard) Hidden
HPLaserJet100ColorMFPM175_HelpLearnCenter_SI (HKLM-x32\...\{19542156-285B-458C-994D-2A21889001DF}) (Version: 1.00.0000 - Hewlett-Packard)
HPLJUT (HKLM-x32\...\{229D6185-BD7E-494B-A73B-C5215BE0690E}) (Version: 1.00.0012 - HP) Hidden
hppLaserJetService (HKLM-x32\...\{621F8F71-4D04-4862-A258-D4895DE676D6}) (Version: 002.015.00602 - Hewlett-Packard) Hidden
hppM175LaserJetService (HKLM-x32\...\{020B8383-8F4E-4ADD-8D61-5ADEB1EBBC70}) (Version: 001.014.00480 - Hewlett-Packard) Hidden
iCloud (HKLM\...\{6096C0CC-7E19-4355-87F0-627EC5AA146D}) (Version: 4.0.3.56 - Apple Inc.)
InstanceFinder (HKLM-x32\...\{D1BD4EEC-8C99-4E83-B7DE-AE10F9D8D5B6}) (Version: 1.00.0001 - HP) Hidden
Intel® Driver Update Utility 2.0 (HKLM-x32\...\{59DB38EB-F864-4E10-841D-38CFBCF864B0}) (Version: 2.0.0.29 - Intel) Hidden
Intel® Network Connections 17.3.63.0 (HKLM\...\PROSetDX) (Version: 17.3.63.0 - Intel)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation)
Intel® Update Manager (HKLM-x32\...\{12914061-EB9B-4AE7-AC7E-0B8A607C7DF4}) (Version: 2.3.1338 - Intel Corporation)
Intel® USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.5.235 - Intel Corporation)
Intel® Driver Update Utility (HKLM-x32\...\{8409c4f7-2340-4933-a304-5d37db4fb48b}) (Version: 2.0.0.29 - Intel)
Intel® SSD Toolbox (HKLM-x32\...\{06D085C8-1F00-11B2-96A7-8f0CE39193ED}) (Version: 3.2.3.400 - Intel Corporation)
iTunes (HKLM\...\{F46AA0F1-E284-4878-A462-5F11B9166C0E}) (Version: 11.4.0.18 - Apple Inc.)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Kaspersky PURE 3.0 (HKLM-x32\...\{D0702EE9-9DE4-419A-9C6C-4730B1C985BA}) (Version: 13.0.2.558 - Kaspersky Lab) Hidden
Kaspersky PURE 3.0 (HKLM-x32\...\InstallWIX_{D0702EE9-9DE4-419A-9C6C-4730B1C985BA}) (Version: 13.0.2.558 - Kaspersky Lab)
K-Lite Codec Pack 10.7.5 Standard (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.7.5 - )
Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Math Kernel Libraries (64-bit) (HKLM\...\{112D8201-03A2-43B2-861B-EB3FCB855547}) (Version: 13.0.13 - National Instruments) Hidden
Math Kernel Libraries (64-bit) (HKLM\...\{56B02DF2-C570-43E0-A16A-C6A1CE4AD7FB}) (Version: 1.0.31.0 - National Instruments) Hidden
Math Kernel Libraries (HKLM-x32\...\{9BA528A0-F33B-4162-993A-538CF56A005E}) (Version: 1.0.31.0 - National Instruments) Hidden
Math Kernel Libraries (HKLM-x32\...\{E71784F9-5B67-4052-A5FC-55C038396936}) (Version: 13.0.13 - National Instruments) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Halo (HKLM-x32\...\Halo) (Version:  - Microsoft)
Microsoft Halo Custom Edition (HKLM-x32\...\Halo CE) (Version:  - )
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.4734.1000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Mozilla Firefox 38.0.5 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 38.0.5 (x86 en-US)) (Version: 38.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
National Instruments Software (HKLM-x32\...\NI Uninstaller) (Version:  - National Instruments)
Nexon Game Manager (HKLM-x32\...\{EA2DB6E0-72C5-4ef9-A3A0-E6705F4A6A9E}) (Version:  - )
NI .NET Framework 4.0 (HKLM-x32\...\{5CC95D76-A798-4722-AE76-E494D9664907}) (Version: 4.01.49152 - National Instruments) Hidden
NI ActiveX Container (64-bit) (HKLM\...\{63B6ADAB-AB1B-4542-911D-C15FFBD5E1BE}) (Version: 13.0.4 - National Instruments) Hidden
NI ActiveX Container (HKLM-x32\...\{53606225-A1A8-4A74-BA4B-00206F38DB60}) (Version: 13.0.4 - National Instruments) Hidden
NI Authentication 13.0.0 (64-bit) (HKLM\...\{2BF63B6D-6B44-46D5-8F2C-5BFBC78D9593}) (Version: 13.0.326 - National Instruments) Hidden
NI Authentication 13.0.0 (HKLM-x32\...\{6CB3DA3D-C753-423D-AB3B-670C5C2FE6C4}) (Version: 13.0.326 - National Instruments) Hidden
NI Circuit Design Suite 13.0 Core (HKLM-x32\...\{FC45C756-6CD9-4ECA-9956-9F499EB63252}) (Version: 13.0.632 - National Instruments) Hidden
NI Circuit Design Suite 13.0 Pro (HKLM-x32\...\{D5D05281-9A9D-409A-9882-C05700FED721}) (Version: 13.0.632 - National Instruments) Hidden
NI Circuit Design Suite 13.0 Pro Licenses (HKLM-x32\...\{69037D6C-C3CD-4044-81BF-70AE34C71A3C}) (Version: 13.0.632 - National Instruments) Hidden
NI Circuit Design Suite Master Database (HKLM-x32\...\{96A5A9B4-30CC-466F-9111-4EF18AABFDC7}) (Version: 13.0.632 - National Instruments) Hidden
NI Curl 13.0.0 (64-bit) (HKLM\...\{E957A395-E199-4B35-B06A-FF7CBA66B953}) (Version: 13.0.324 - National Instruments) Hidden
NI Curl 13.0.0 (HKLM-x32\...\{2DD33997-3C3E-4517-9D98-0CC5802D6D53}) (Version: 13.0.324 - National Instruments) Hidden
NI Error Reporting 2013 (HKLM-x32\...\{DF549FB9-B94F-4B8D-B007-39281EDB9A52}) (Version: 13.0.324 - National Instruments) Hidden
NI Error Reporting Interface Installer 5.5 (HKLM-x32\...\{843AA365-C682-4540-9E7C-9B9A10C6A539}) (Version: 5.50.49152 - National Instruments) Hidden
NI Error Reporting Interface Installer 5.5 for Windows 64-bit (HKLM\...\{817746FE-367D-4BA3-9ABF-D2214D0E5E33}) (Version: 5.50.49152 - National Instruments) Hidden
NI EulaDepot (HKLM-x32\...\{1C7DB297-FD1E-448E-9388-A32A2C68D306}) (Version: 3.20.356 - National Instruments) Hidden
NI Example Finder 13.0 (HKLM-x32\...\{4A1BCB81-2F91-451D-BEC6-59FAB0ADB8F0}) (Version: 13.0.324 - National Instruments) Hidden
NI GMP Windows 32-bit Installer 13.0.0 (HKLM-x32\...\{0AF8A008-7141-40DD-BB99-10B7F0C4769A}) (Version: 13.0.45.0 - National Instruments) Hidden
NI GMP Windows 64-bit Installer 13.0.0 (HKLM\...\{00D12A70-7B79-4A14-80B5-F12626237DE7}) (Version: 13.0.45.0 - National Instruments) Hidden
NI Help Assistant 2.0 (64bit) (HKLM\...\{DDAAADDD-C57E-4731-A29C-133191587488}) (Version: 2.0.3 - National Instruments) Hidden
NI Help Assistant 2.0 (HKLM-x32\...\{C9A0D47F-9A68-4917-868C-79E384E4DEE6}) (Version: 2.0.3 - National Instruments) Hidden
NI LabVIEW 2012 Real-Time NBFifo (HKLM-x32\...\{B4A772D4-ED42-4484-8C0E-663A52D07A2F}) (Version: 12.0.219.0 - National Instruments) Hidden
NI LabVIEW 2012 Real-Time NBFifo (HKLM-x32\...\{EEDB0927-3BD8-4349-856E-425A146CC680}) (Version: 13.0.336 - National Instruments) Hidden
NI LabVIEW 2012 Run-Time Engine Web Server (HKLM-x32\...\{3C717C2C-A9F4-4236-A539-89592B0652A7}) (Version: 12.5.198.0 - National Instruments) Hidden
NI LabVIEW 2012 SP1 Run-Time Engine Non-English Support. (HKLM-x32\...\{06897ACD-84E1-4F9E-8848-3E3BF27D2D99}) (Version: 12.1.52.0 - National Instruments) Hidden
NI LabVIEW 2013 Deployment Framework (HKLM-x32\...\{EE372D3C-8CDE-4141-8DE9-05A0734B63E4}) (Version: 13.0.330 - National Instruments) Hidden
NI LabVIEW 2013 Run-Time Engine Non-English Support. (HKLM-x32\...\{9BA381D6-F63D-4C03-BE13-940F39068E01}) (Version: 13.0.329 - National Instruments) Hidden
NI LabVIEW 2013 Run-Time Engine Web Server (HKLM-x32\...\{ADC16943-45BD-4E47-89CD-A9CA790DE09C}) (Version: 13.0.321 - National Instruments) Hidden
NI LabVIEW Run-Time Engine 2012 SP1 f3 (HKLM-x32\...\{5157CC53-EB17-4E69-A5C9-73E5695198B1}) (Version: 12.1.58.0 - National Instruments) Hidden
NI LabVIEW Run-Time Engine 2013 (HKLM-x32\...\{C0446EC0-D69F-44C3-B3AD-E04EA7FAE72B}) (Version: 13.0.332 - National Instruments) Hidden
NI LabVIEW Run-Time Engine Interop 2012 SP1 (HKLM-x32\...\{3750BCB6-B4E7-4678-817D-732F1CD84EF5}) (Version: 12.1.58.0 - National Instruments) Hidden
NI LabVIEW Run-Time Engine Interop 2013 (HKLM-x32\...\{2931F00C-6417-4BFE-B3C5-26D90ABE8189}) (Version: 13.0.332 - National Instruments) Hidden
NI LabWindows/CVI 2013 .NET Library (64-bit) (HKLM\...\{86A13148-C5C4-494D-8A72-101FCAEAE179}) (Version: 13.0.0632 - National Instruments) Hidden
NI LabWindows/CVI 2013 .NET Library (HKLM-x32\...\{DCA53D09-472F-48FB-9670-0AC2614B9F04}) (Version: 13.0.0632 - National Instruments) Hidden
NI LabWindows/CVI 2013 Analysis Library (64-bit) (HKLM\...\{5082931D-0578-4032-88C0-AB64278E444A}) (Version: 13.0.0632 - National Instruments) Hidden
NI LabWindows/CVI 2013 Analysis Library (HKLM-x32\...\{F2C35605-B41A-4139-93FE-9052FD30BD8B}) (Version: 13.0.0632 - National Instruments) Hidden
NI LabWindows/CVI 2013 Low-Level Driver (Original) (HKLM-x32\...\{70400242-737B-4BB1-A951-4FACC011A5D9}) (Version: 13.0.0632 - National Instruments) Hidden
NI LabWindows/CVI 2013 Low-Level Driver (Updated) (HKLM-x32\...\{0DEEF8A0-A14B-4058-96E2-59B00C581A42}) (Version: 13.0.0632 - National Instruments) Hidden
NI LabWindows/CVI 2013 Network Streams Library (64-bit) (HKLM\...\{24007B13-2F2E-490E-93CC-B38416EB62A0}) (Version: 13.0.0632 - National Instruments) Hidden
NI LabWindows/CVI 2013 Network Streams Library (HKLM-x32\...\{96F8514D-1673-47AE-BD16-A8E22EF0A6FD}) (Version: 13.0.0632 - National Instruments) Hidden
NI LabWindows/CVI 2013 Network Variable Library (64-bit) (HKLM\...\{001671BD-307C-4907-8EFA-B98752C1AB3C}) (Version: 13.0.0632 - National Instruments) Hidden
NI LabWindows/CVI 2013 Network Variable Library (HKLM-x32\...\{4098334C-5D36-48EA-B734-80F6B3F106CD}) (Version: 13.0.0632 - National Instruments) Hidden
NI LabWindows/CVI 2013 TDMS Library (64-bit) (HKLM\...\{519FEA58-3F45-4CA5-9B8B-2F2942A73CC1}) (Version: 13.0.0632 - National Instruments) Hidden
NI LabWindows/CVI 2013 TDMS Library (HKLM-x32\...\{A42C6FAF-061F-4A1E-8089-9850A26357D7}) (Version: 13.0.0632 - National Instruments) Hidden
NI LabWindows/CVI Run-Time Engine 2013 (Updated) (HKLM-x32\...\{15D18785-E55F-4595-B39F-BDE775EAB8B1}) (Version: 13.0.0632 - National Instruments) Hidden
NI LabWindows/CVI Shared Run-Time Engine 2013 (64-bit) (HKLM\...\{B670964F-D495-4E8F-9AC6-B513DA498E65}) (Version: 13.0.0632 - National Instruments) Hidden
NI LabWindows/CVI Shared Run-Time Engine 2013 (HKLM-x32\...\{A1D6B35A-7ECC-4E12-9413-D47E81609F0A}) (Version: 13.0.0632 - National Instruments) Hidden
NI Launcher (HKLM-x32\...\{37466378-782F-4465-9FE7-90794D831C83}) (Version: 3.20.356 - National Instruments) Hidden
NI License Manager (HKLM-x32\...\{A8490B70-08B4-40F8-84FE-CCE239901EA1}) (Version: 3.7.53 - National Instruments) Hidden
NI Logos 5.5 (64-bit) (HKLM\...\{B2149E16-A01C-458E-A6E5-B9DC96EAD1AA}) (Version: 5.5.293 - National Instruments) Hidden
NI Logos 5.5 (HKLM-x32\...\{CA533BA0-E6F9-4349-B0EC-ABDEB0481E77}) (Version: 5.5.293 - National Instruments) Hidden
NI Logos XT Support (HKLM-x32\...\{A05EFB3F-19E2-4F9E-8380-BE095CCF0BE4}) (Version: 5.5.294 - National Instruments) Hidden
NI Logos64 XT Support (HKLM\...\{A3154334-4692-449E-8836-3CCD28D0B1D7}) (Version: 5.5.294 - National Instruments) Hidden
NI Math Kernel Libraries (HKLM-x32\...\{DB2C5648-700D-4AEF-83E1-70C72F0C34FA}) (Version: 1.0.861.0 - National Instruments) Hidden
NI MAX Remote Configuration 64-bit Installer 5.5 (HKLM\...\{4768A660-5962-491F-8B1D-9A3FA35819A6}) (Version: 5.50.49152 - National Instruments) Hidden
NI MAX Remote Configuration Installer 5.5 (HKLM-x32\...\{5A073702-D6E0-4D28-B43B-4C4D5DFB752D}) (Version: 5.50.49152 - National Instruments) Hidden
NI MDF Support (HKLM-x32\...\{A32D7AC5-9C70-4F85-AB68-1D276599A6EA}) (Version: 3.20.356 - National Instruments) Hidden
NI mDNS Responder 2.2 for Windows 64-bit (HKLM\...\{3A6898F6-9B23-40DE-9B2D-617DBDEFDBF9}) (Version: 2.20.49152 - National Instruments) Hidden
NI mDNS Responder 2.2.0 (HKLM-x32\...\{1F7F5330-D1C5-49D8-85A3-75E29C2434FE}) (Version: 2.20.49152 - National Instruments) Hidden
NI Measurement Studio ComponentWorks 3D Graph (HKLM-x32\...\{F278392D-547E-4E67-AD1C-2576C2852B50}) (Version: 8.6.10603 - National Instruments) Hidden
NI MetaSuite Installer (HKLM-x32\...\{A68F0B89-40BF-4052-9D7E-53FA8EC0FE72}) (Version: 3.20.356 - National Instruments) Hidden
NI Multisim LabVIEW Interoperability Support 13.0 (HKLM-x32\...\{2026DAA3-FFEA-4815-9318-1B219B030077}) (Version: 13.0.632 - National Instruments) Hidden
NI Security Update (KB 67L8LCQW) (64-bit) (HKLM\...\{4A78D9E6-D349-4CCA-9295-45B12BE5BC6C}) (Version: 1.0.29.0 - National Instruments) Hidden
NI Security Update (KB 67L8LCQW) (HKLM-x32\...\{20124E21-206B-485F-838F-14BB88161045}) (Version: 1.0.29.0 - National Instruments) Hidden
NI Service Locator 13.0 (HKLM-x32\...\{23180501-7886-47B6-AB6E-5ABFB1848012}) (Version: 13.0.303 - National Instruments) Hidden
NI SSL LabVIEW RTE 2012 SP1 Support (HKLM-x32\...\{DFEB5AEC-611E-466F-A072-956751A66880}) (Version: 12.5.8.0 - National Instruments) Hidden
NI SSL LabVIEW RTE 2013 Support (HKLM-x32\...\{BF324FB5-4C39-4FDC-B023-19AEFFAE116A}) (Version: 13.0.317 - National Instruments) Hidden
NI SSL Support (64-bit) (HKLM\...\{A6E0DCE3-A917-4234-B401-6D630E869FB3}) (Version: 13.0.319 - National Instruments) Hidden
NI SSL Support (HKLM-x32\...\{87392509-BFBD-4780-9170-E0106DB472DF}) (Version: 13.0.324 - National Instruments) Hidden
NI System API Windows 32-bit 5.5.0 (HKLM-x32\...\{A8779088-85BA-4CC0-8205-1C7AF40FCDBD}) (Version: 5.50.589 - National Instruments) Hidden
NI System API Windows 64-bit 5.5.0 (HKLM\...\{6662C75A-9A77-4959-9853-F4A2AF15C4B8}) (Version: 5.50.588 - National Instruments) Hidden
NI System State Publisher (64-bit) (HKLM\...\{68319FE7-1E06-4156-BC00-8D24828B5084}) (Version: 13.0.299 - National Instruments) Hidden
NI System State Publisher (HKLM-x32\...\{AE20D525-5D10-475F-9115-963DB67D49DF}) (Version: 13.0.304 - National Instruments) Hidden
NI System Web Server 13.0 (HKLM-x32\...\{FC59A893-A510-411A-A71C-60A06D2C9BF2}) (Version: 13.0.330 - National Instruments) Hidden
NI System Web Server Base 13.0.0 (64-bit) (HKLM\...\{A0133B57-1D4B-4D89-A0EF-1453ECECA58A}) (Version: 13.0.323 - National Instruments) Hidden
NI System Web Server Base 13.0.0 (HKLM-x32\...\{69D447B3-1B3F-42A9-9605-A8533BE06D17}) (Version: 13.0.323 - National Instruments) Hidden
NI TDM Streaming 2.5 (64-bit) (HKLM\...\{3ABCF186-64DE-439C-8B66-CC31B8513D8C}) (Version: 2.5.36 - National Instruments) Hidden
NI TDM Streaming 2.5 (HKLM-x32\...\{27367777-A95D-4014-B73B-18D4838E54A4}) (Version: 2.5.36 - National Instruments) Hidden
NI Trace Engine (64-bit) (HKLM\...\{DA83B4AC-EC3C-4F13-A867-CB0C24A8E1D5}) (Version: 13.0.324 - National Instruments) Hidden
NI Trace Engine (HKLM-x32\...\{63495F25-850C-4127-8BA6-1DFD5144723C}) (Version: 13.0.324 - National Instruments) Hidden
NI Uninstaller (HKLM-x32\...\{0BA91512-3CC9-476F-9EAC-1D88BF82105E}) (Version: 3.20.356 - National Instruments) Hidden
NI Update Service 2.3 (64-bit) (HKLM\...\{FCA2E817-8584-43EF-ABCA-05514305F0C6}) (Version: 2.30.53 - National Instruments) Hidden
NI Update Service 2.3 (HKLM-x32\...\{8FBAA717-6C1C-4BA1-B446-AA5118BA6401}) (Version: 2.30.65 - National Instruments) Hidden
NI USI 2.0.1 (HKLM-x32\...\{FE82D7AF-0A22-40E8-B7A5-9D7615296BA6}) (Version: 2.0.15249 - National Instruments) Hidden
NI USI 2.0.1 64-Bit (HKLM\...\{0D8CE7D9-884A-4DF1-B459-E910CF34EE5C}) (Version: 2.0.15249 - National Instruments) Hidden
NI VC2005MSMs x64 (HKLM\...\{E3E3E625-8F74-44CE-A6D2-C31CB43DA23D}) (Version: 8.05.0 - National Instruments) Hidden
NI VC2005MSMs x86 (HKLM-x32\...\{4B877FC6-F44C-4B39-B0B6-CE15ADC63997}) (Version: 8.05.0 - National Instruments) Hidden
NI VC2008MSMs x64 (HKLM\...\{07E00E94-7A78-40FA-9BEF-71C190E98041}) (Version: 9.0.401 - National Instruments) Hidden
NI VC2008MSMs x86 (HKLM-x32\...\{E84997A1-4D6F-4C0B-B60D-F85B360D2666}) (Version: 9.0.401 - National Instruments) Hidden
NI VC2010SP1MSMs x64 (HKLM\...\{AFC5A844-CA3A-4566-89E7-3E24E6AFF9A3}) (Version: 10.0.100 - National Instruments) Hidden
NI VC2010SP1MSMs x86 (HKLM-x32\...\{F2273FA7-117C-43D7-BD59-00B025535442}) (Version: 10.0.100 - National Instruments) Hidden
NI Visual C++ 2008 Redistributable Package (HKLM-x32\...\{08505CC2-EA7F-4818-9C45-B74EDA7227F8}) (Version: 9.00.49152 - National Instruments) Hidden
NI Visual C++ 2010 Redistributable Package (HKLM-x32\...\{1C3B75E1-DA30-404C-B2C2-9BD31AB64909}) (Version: 10.02.49152 - National Instruments) Hidden
NI Web Application Server 13.0 (64-bit) (HKLM\...\{62126BD1-8107-48A1-9889-FA16F064893C}) (Version: 13.0.319 - National Instruments) Hidden
NI Web Application Server 13.0 (HKLM-x32\...\{4845B7A3-DDC3-44F9-A7DB-C50C94017129}) (Version: 13.0.324 - National Instruments) Hidden
NI-Mesa (HKLM\...\{D43C46AB-57CC-48E4-83B1-514CDBF148A5}) (Version: 13.0.3 - National Instruments) Hidden
NI-Mesa (HKLM-x32\...\{7F93F26A-E5F7-4AE1-840F-F88DFE2DE3A5}) (Version: 13.0.3 - National Instruments) Hidden
NinjaGram (HKLM-x32\...\NinjaGram_is1) (Version:  - )
NI-RPC 4.4.0f0 (HKLM-x32\...\{9125CF98-08A9-41AA-96B9-A7A7A255E3DC}) (Version: 4.40.49152 - National Instruments) Hidden
NI-RPC 4.4.0f0 for 64 Bit Windows (HKLM\...\{B1153914-2CA8-4FFE-855E-FAC61EFD9C0D}) (Version: 4.40.49152 - National Instruments) Hidden
NVIDIA 3D Vision Controller Driver 349.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 349.95 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 350.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 350.12 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.4.1.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.1.21 - NVIDIA Corporation)
NVIDIA Graphics Driver 350.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 350.12 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.33.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.33.0 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0324 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0324 - NVIDIA Corporation)
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version:  - )
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
ProxyCap (HKLM\...\{DFBFBC41-DFE4-408C-A1F7-C02B1BF82921}) (Version: 5.2.70 - Proxy Labs)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games)
SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 4.1.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 2.4.1.21 - NVIDIA Corporation) Hidden
Skype™ 7.4 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.4.102 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version:  - Valve Corporation)
System Requirements Lab CYRI (HKLM-x32\...\{F3FCB08B-E752-444D-86A0-0634A4F3B23D}) (Version: 6.0.8.0 - Husdawg, LLC)
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.42849 - TeamViewer)
ToolboxProxy (HKLM-x32\...\{7C891636-F91F-4B74-8919-A7DDC0DDF764}) (Version: 1.00.0001 - HP) Hidden
Video Downloader Toolbar (HKLM-x32\...\Video Downloader Toolbar) (Version: 1.0.2 - Vids.st)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
WinDirStat 1.1.2 (HKCU\...\WinDirStat) (Version:  - )
WinRAR 4.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.00.0 - win.rar GmbH)
Xfire 2.0 (HKLM-x32\...\{43ADAE00-A4ED-4379-A76D-A1FF5D9D334A}_is1) (Version: 2.0 - Xfire, Inc.)
Xfire Codec (remove only) (HKLM-x32\...\XfireCodec) (Version:  - )
Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.3) (Version: 1.3.3 - Xvid Team)

========================= Memory info: ===================================

Percentage of memory in use: 30%
Total physical RAM: 16328.45 MB
Available physical RAM: 11324.76 MB
Total Pagefile: 16326.63 MB
Available Pagefile: 9548.24 MB
Total Virtual: 4095.88 MB
Available Virtual: 3966.22 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:167.58 GB) (Free:27.71 GB) NTFS
2 Drive d: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS
3 Drive e: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS
4 Drive f: () (Fixed) (Total:931.41 GB) (Free:92.29 GB) NTFS

========================= Users: ========================================

User accounts for \\GARY-PC

Administrator            Gary                     Guest                    


**** End of log ****
 

 

 

 

 

 

 

TDSS killer did not find anything and did not give me a report

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

# AdwCleaner v4.206 - Logfile created 04/06/2015 at 14:48:20
# Updated 01/06/2015 by Xplode
# Database : 2015-06-01.1 [Server]
# Operating system : Windows 7 Ultimate Service Pack 1 (x64)
# Username : Gary - GARY-PC
# Running from : C:\Users\Gary\Downloads\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Users\Gary\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Goodgame Empire.lnk
File Found : C:\Users\Gary\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Goodgame Empire.lnk
Folder Found : C:\Users\Gary\AppData\Roaming\DesktopIconForAmazon

***** [ Scheduled tasks ] *****

Task Found : LaunchApp

***** [ Shortcuts ] *****


***** [ Registry ] *****

Data Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local
Key Found : HKCU\Software\OCS
Key Found : [x64] HKCU\Software\OCS
Key Found : HKLM\SOFTWARE\Classes\CLSID\{2097A1B6-E86A-4072-A32D-2249A3ECBC5A}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3070CF0C-F396-3DCA-87D6-9DBF3D77B610}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{4529EB14-6B38-3CC4-9504-6EAB6C9E1255}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A43DE495-3D00-47D4-9D2C-303115707939}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{BEEA930F-CD8A-341E-B6B5-5BAF659685D5}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EBC25CF6-9120-4283-B972-0E5520D00004}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EBC25CF6-9120-4283-B972-0E5520D00005}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EBC25CF6-9120-4283-B972-0E5520D00006}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EBC25CF6-9120-4283-B972-0E5520D00007}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EBC25CF6-9120-4283-B972-0E5520D00008}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EBC25CF6-9120-4283-B972-0E5520D00009}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EBC25CF6-9120-4283-B972-0E5520D0000A}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EBC25CF6-9120-4283-B972-0E5520D0000B}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EBC25CF6-9120-4283-B972-0E5520D0000C}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EBC25CF6-9120-4283-B972-0E5520D0000D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EBC25CF6-9120-4283-B972-0E5520D0000E}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EBC25CF6-9120-4283-B972-0E5520D0000F}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{F03955F1-309E-34E9-A021-1399C3532273}
Key Found : HKLM\SOFTWARE\Classes\Record\{05660A04-00F1-3A04-AB3B-BC1074B84D67}
Key Found : HKLM\SOFTWARE\Classes\Record\{37AC0F3B-749F-3B22-811B-5A019EED2E85}
Key Found : HKLM\SOFTWARE\Classes\Record\{4392A6CC-7940-310E-8E16-799A8D93A438}
Key Found : HKLM\SOFTWARE\Classes\Record\{66DF7821-ED6D-3534-893C-0E89E74B0F91}
Key Found : HKLM\SOFTWARE\Classes\Record\{755CAFCC-F016-3B06-8F22-945EAA3AD10D}
Key Found : HKLM\SOFTWARE\Classes\Record\{76552F88-640C-314D-82B6-0D8A740907F7}
Key Found : HKLM\SOFTWARE\Classes\Record\{903F9872-E87F-3B74-83B0-DBE10073B29D}
Key Found : HKLM\SOFTWARE\Classes\Record\{9558EEB4-CDA6-3778-B53B-98076F0A1E90}
Key Found : HKLM\SOFTWARE\Classes\Record\{B25AA9BA-FD52-3E5E-BFE3-9B106779DA6E}
Key Found : HKLM\SOFTWARE\Classes\Record\{C852CF9F-37DC-35AC-926A-7E6CFFF7C501}
Key Found : HKLM\SOFTWARE\Classes\Record\{C9777796-4378-3C90-B52D-7238FFFC2A5C}
Key Found : HKLM\SOFTWARE\Classes\Record\{DB1BC8B2-FDBF-30E7-BE1C-AFF9160059E6}
Key Found : HKLM\SOFTWARE\Classes\Record\{F3D5729C-7DEB-3850-A026-D0E323ECFEF5}
Key Found : HKLM\SOFTWARE\Classes\Record\{FEC70973-CB8B-351C-8047-CAE1274CE249}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DesktopIconAmazon

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17496


-\\ Mozilla Firefox v38.0.5 (x86 en-US)

[hoe1kpve.default] - Line Found : user_pref("browser.startup.homepage", "hxxps://ca.search.yahoo.com/?type=926458&fr=spigot-yhp-ff|hxxp://vdt.asksearch.com/?cfg=2-83-0-0");

-\\ Google Chrome v43.0.2357.81

[C:\Users\Gary\AppData\Local\Google\Chrome\User Data\Default\Web data] - Found [Search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
[C:\Users\Gary\AppData\Local\Google\Chrome\User Data\Default\Web data] - Found [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}

*************************

AdwCleaner[R0].txt - [3382 bytes] - [21/05/2014 00:39:54]
AdwCleaner[R1].txt - [4324 bytes] - [04/06/2015 14:48:20]
AdwCleaner[S0].txt - [3315 bytes] - [21/05/2014 00:41:15]

########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [4442 bytes] ##########
 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.8.8 (06.03.2015:1)
OS: Windows 7 Ultimate x64
Ran by Gary on Thu 06/04/2015 at 14:51:30.79
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Tasks

Successfully deleted: [Task] C:\Windows\system32\tasks\LaunchApp



~~~ Registry Values



~~~ Registry Keys



~~~ Files

Successfully deleted: [File] C:\Users\Gary\AppData\Roaming\microsoft\internet explorer\quick launch\goodgame empire.lnk
Successfully deleted: [File] C:\Users\Gary\AppData\Roaming\microsoft\internet explorer\quick launch\user pinned\taskbar\goodgame empire.lnk



~~~ Folders



~~~ FireFox

Successfully deleted the following from C:\Users\Gary\AppData\Roaming\mozilla\firefox\profiles\hoe1kpve.default\prefs.js

user_pref(browser.startup.homepage, hxxps://ca.search.yahoo.com/?type=926458&fr=spigot-yhp-ff|hxxp://vdt.asksearch.com/?cfg=2-83-0-0);
Emptied folder: C:\Users\Gary\AppData\Roaming\mozilla\firefox\profiles\hoe1kpve.default\minidumps [55 files]



~~~ Chrome


[C:\Users\Gary\appdata\local\Google\Chrome\User Data\Default\Preferences] - default search provider reset

[C:\Users\Gary\appdata\local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:

[C:\Users\Gary\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset

[C:\Users\Gary\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
[]





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Thu 06/04/2015 at 14:53:32.02
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

C:\$Recycle.Bin\S-1-5-21-3551054282-2245661226-2413285924-1000\$R264CCS.exe    a variant of Win32/Bundled.Toolbar.Ask.G potentially unsafe application    deleted - quarantined
C:\$Recycle.Bin\S-1-5-21-3551054282-2245661226-2413285924-1000\$RWMML4P.exe    a variant of Win32/Bundled.Toolbar.Ask.G potentially unsafe application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe.vir    a variant of Win32/Conduit.SearchProtect.H potentially unwanted application    cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\Main\bin\SPTool.dll.vir    a variant of Win32/Conduit.SearchProtect.H potentially unwanted application    cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\Main\bin\uninstall.exe.vir    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe.vir    a variant of Win32/Conduit.SearchProtect.I potentially unwanted application    cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\SPTool64.exe.vir    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32.dll.vir    a variant of Win32/Conduit.SearchProtect.H potentially unwanted application    cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32Loader.dll.vir    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64.dll.vir    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64Loader.dll.vir    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe.vir    a variant of Win32/Conduit.SearchProtect.I potentially unwanted application    cleaned by deleting - quarantined
C:\AdwCleaner\Quarantine\C\Users\Gary\AppData\Roaming\OpenCandy\4DBA476F2D2149A493429034BCC80C8A\sp-downloader.exe.vir    Win32/Toolbar.Conduit.R potentially unwanted application    cleaned by deleting - quarantined
C:\Program Files (x86)\Cheat Engine 6.3\cheatengine-i386.exe    a variant of Win32/HackTool.CheatEngine.AB potentially unsafe application    cleaned by deleting - quarantined
C:\Program Files (x86)\Cheat Engine 6.3\standalonephase1.dat    a variant of Win32/HackTool.CheatEngine.AF potentially unsafe application    cleaned by deleting - quarantined
C:\Users\Gary\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G5EDKTDG\CnetInstaller[1]    Win32/WinWrapper.B potentially unwanted application    cleaned by deleting - quarantined
C:\Users\Gary\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MXH5G97N\spstub[1].exe    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
C:\Users\Gary\AppData\Local\Temp\optprosetup.exe    a variant of Win32/OptimizerEliteMax.C potentially unwanted application    cleaned by deleting - quarantined
C:\Users\Gary\AppData\Local\Temp\DMR\dmr_72.exe    a variant of Win32/DownloadSponsor.C potentially unwanted application    cleaned by deleting - quarantined
C:\Users\Gary\AppData\Local\Temp\DMR\Downloads\3676090eded622c6bec547ed78bdf6d1\fc221309746013ac554571fbd180e1c8\any-video-converter-free.exe    a variant of Win32/OpenCandy.C potentially unsafe application    deleted - quarantined
C:\Users\Gary\Downloads\any-video-converter-free.exe    a variant of Win32/DownloadSponsor.C potentially unwanted application    cleaned by deleting - quarantined
C:\Users\Gary\Downloads\CR_Downloader_for_visual-boy-advance.exe    a variant of Win32/InstallCore.SM potentially unwanted application    cleaned by deleting - quarantined
C:\Users\Gary\Downloads\xfire_installer.exe    Win32/OpenCandy potentially unsafe application    deleted - quarantined
C:\Users\Gary\Downloads\winject17b_[www.unknowncheats.me]_\Winject.exe    a variant of Win32/HackTool.Inject.F potentially unsafe application    cleaned by deleting - quarantined
C:\Windows\KJ\BIOS.EXE    Win32/HackTool.SLICMod.C potentially unsafe application    cleaned by deleting - quarantined
C:\Windows\KJ\K.J_12.exe    Win32/HackTool.SLICMod.C potentially unsafe application    deleted - quarantined
C:\Windows\KJ\BIOS_Emulator\royal32.sys    a variant of Win32/HackKMS.M potentially unsafe application    cleaned by deleting - quarantined
C:\Windows\KJ\OEM_info\oem.exe    a variant of MSIL/HackTool.WinActivator.A potentially unsafe application    cleaned by deleting - quarantined
C:\Windows\KJ\Pirate\WinRR.exe    a variant of Win32/HackTool.WinActivator.J potentially unsafe application    cleaned by deleting - quarantined
C:\Windows\Temp\tmp105A.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp1AC0.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp1DF0.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp21A3.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp228.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp2740.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp2763.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp2C31.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp3553.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp35B4.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp3707.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp3A72.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp41B0.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp43F1.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp43F5.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp4596.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp5227.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp55F0.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp589A.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp6017.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp6058.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp618C.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp7272.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp7E5D.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp80D3.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp8B3B.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp8B57.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp8C9E.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp995E.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp9AEF.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmp9D94.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpA707.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpA72E.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpABF5.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpAF0.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpB539.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpB570.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpB65D.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpB752.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpBDE7.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpC14.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpC399.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpC3EF.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpC5D2.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpC858.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpCC95.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpD231.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpD2C0.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpD452.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpD68A.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpE02C.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpE0A1.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpE2D2.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpE49C.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpE86D.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpEEE4.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpEFC0.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpF36A.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpF383.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpFCBE.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
C:\Windows\Temp\tmpFD14.tmp    a variant of MSIL/MyPCBackup.A potentially unwanted application    deleted - quarantined
F:\GARY-PC\Backup Set 2013-09-08 190001\Backup Files 2013-09-08 190001\Backup files 330.zip    a variant of Win32/Bundled.Toolbar.Ask.G potentially unsafe application    deleted - quarantined
F:\GARY-PC\Backup Set 2013-09-08 190001\Backup Files 2013-09-08 190001\Backup files 356.zip    multiple threats    deleted - quarantined
F:\GARY-PC\Backup Set 2013-09-08 190001\Backup Files 2013-09-08 190001\Backup files 77.zip    a variant of Win32/Toolbar.Conduit.AL potentially unwanted application    deleted - quarantined
F:\GARY-PC\Backup Set 2013-09-08 190001\Backup Files 2013-09-08 190001\Backup files 82.zip    Win32/Bundled.Toolbar.Google.D potentially unsafe application    deleted - quarantined
F:\GARY-PC\Backup Set 2013-09-08 190001\Backup Files 2013-09-08 190001\Backup files 83.zip    multiple threats    deleted - quarantined
F:\GARY-PC\Backup Set 2013-09-08 190001\Backup Files 2013-12-30 190000\Backup files 3.zip    Win32/OpenCandy potentially unsafe application    deleted - quarantined
F:\GARY-PC\Backup Set 2014-01-30 190000\Backup Files 2014-01-30 190000\Backup files 283.zip    a variant of Win32/Bundled.Toolbar.Ask.G potentially unsafe application    deleted - quarantined
F:\GARY-PC\Backup Set 2014-01-30 190000\Backup Files 2014-01-30 190000\Backup files 308.zip    multiple threats    deleted - quarantined
F:\GARY-PC\Backup Set 2014-01-30 190000\Backup Files 2014-01-30 190000\Backup files 67.zip    a variant of Win32/Toolbar.Conduit.AL potentially unwanted application    deleted - quarantined
F:\GARY-PC\Backup Set 2014-01-30 190000\Backup Files 2014-01-30 190000\Backup files 71.zip    Win32/OpenCandy potentially unsafe application    deleted - quarantined
F:\GARY-PC\Backup Set 2014-01-30 190000\Backup Files 2014-01-30 190000\Backup files 72.zip    Win32/Bundled.Toolbar.Google.D potentially unsafe application    deleted - quarantined
F:\GARY-PC\Backup Set 2014-01-30 190000\Backup Files 2014-01-30 190000\Backup files 73.zip    multiple threats    deleted - quarantined
F:\GARY-PC\Backup Set 2014-03-30 190000\Backup Files 2014-03-30 190000\Backup files 201.zip    a variant of Win32/Bundled.Toolbar.Ask.G potentially unsafe application    deleted - quarantined
F:\GARY-PC\Backup Set 2014-03-30 190000\Backup Files 2014-03-30 190000\Backup files 226.zip    multiple threats    deleted - quarantined
F:\GARY-PC\Backup Set 2014-03-30 190000\Backup Files 2014-03-30 190000\Backup files 57.zip    a variant of Win32/Toolbar.Conduit.AL potentially unwanted application    deleted - quarantined
F:\GARY-PC\Backup Set 2014-03-30 190000\Backup Files 2014-03-30 190000\Backup files 61.zip    Win32/OpenCandy potentially unsafe application    deleted - quarantined
F:\GARY-PC\Backup Set 2014-03-30 190000\Backup Files 2014-03-30 190000\Backup files 62.zip    Win32/Bundled.Toolbar.Google.D potentially unsafe application    deleted - quarantined
F:\GARY-PC\Backup Set 2014-03-30 190000\Backup Files 2014-03-30 190000\Backup files 63.zip    multiple threats    deleted - quarantined
F:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe    a variant of Win32/Conduit.SearchProtect.H potentially unwanted application    cleaned by deleting - quarantined
F:\Program Files (x86)\SearchProtect\Main\bin\SPtool.dll    a variant of Win32/Conduit.SearchProtect.Y potentially unwanted application    cleaned by deleting - quarantined
F:\Program Files (x86)\SearchProtect\Main\bin\sptool.dll_1418667705272    a variant of Win32/Conduit.SearchProtect.H potentially unwanted application    cleaned by deleting - quarantined
F:\Program Files (x86)\SearchProtect\Main\bin\sptool.dll_1418938886535    a variant of Win32/Conduit.SearchProtect.Y potentially unwanted application    cleaned by deleting - quarantined
F:\Program Files (x86)\SearchProtect\Main\bin\uninstall.exe    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
F:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe    a variant of Win32/Conduit.SearchProtect.Y potentially unwanted application    cleaned by deleting - quarantined
F:\Program Files (x86)\SearchProtect\SearchProtect\bin\RN32.dll    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
F:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPtool64.exe    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
F:\Program Files (x86)\SearchProtect\SearchProtect\bin\VC32.dll    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
F:\Program Files (x86)\SearchProtect\SearchProtect\bin\VC32Loader.dll    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
F:\Program Files (x86)\SearchProtect\SearchProtect\bin\VC64.dll    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
F:\Program Files (x86)\SearchProtect\SearchProtect\bin\VC64Loader.dll    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
F:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe    a variant of Win32/Conduit.SearchProtect.Y potentially unwanted application    cleaned by deleting - quarantined
F:\Users\Gary\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ANT2PJSK\spstub[1].exe    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
F:\Users\Gary\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\X7RM5QPF\SPSetup[1].exe    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
F:\Users\Gary\AppData\Local\Temp\logo48x48.png&SoftwareDescription=&setid=1    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
F:\Users\Gary\AppData\Local\Temp\nscFF0E.exe    Win32/Conduit.SearchProtect.R potentially unwanted application    cleaned by deleting - quarantined
F:\Users\Gary\AppData\Local\Temp\nsh23A.exe    Win32/Conduit.SearchProtect.R potentially unwanted application    cleaned by deleting - quarantined
F:\Users\Gary\AppData\Local\Temp\nshE89E.exe    Win32/Conduit.SearchProtect.R potentially unwanted application    cleaned by deleting - quarantined
F:\Users\Gary\AppData\Local\Temp\nsmBB07.tmp    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
F:\Users\Gary\AppData\Local\Temp\nssE66C.exe    Win32/Conduit.SearchProtect.R potentially unwanted application    cleaned by deleting - quarantined
F:\Users\Gary\AppData\Local\Temp\SPSetup.exe    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
F:\Users\Gary\AppData\Roaming\OpenCandy\B7B742C608EE47DEB79FBB406694105C\HSS-2.67-install-p76-335-conduit.exe    Win32/Toolbar.Conduit potentially unwanted application    deleted - quarantined
F:\Users\Gary\Documents\uTorrent Downloads\captchasniper.rar    a variant of Win32/Packed.Themida suspicious application    deleted - quarantined
F:\Users\Gary\Documents\uTorrent Downloads\K.J_121026.exe    Win32/HackTool.SLICMod.C potentially unsafe application    deleted - quarantined
F:\Users\Gary\Documents\uTorrent Downloads\Nero 12 Platinum 12.0.020 + Patch + Key [EC].zip    a variant of Win32/HackTool.Patcher.AD potentially unsafe application    deleted - quarantined
F:\Users\Gary\Documents\uTorrent Downloads\Pharaoh with Cleopatra Expansion.exe    a variant of Win32/GameHack.AD potentially unsafe application    deleted - quarantined
F:\Users\Gary\Documents\uTorrent Downloads\KMSpico 9.06.20131120 Install\KMSpico_setup.exe    a variant of MSIL/HackTool.IdleKMS.E potentially unsafe application    deleted - quarantined
F:\Users\Gary\Documents\uTorrent Downloads\Southpark.Stick.Of.Truth-RELOADED\southpa\southpa.iso    a variant of Win32/HackTool.Crack.CS potentially unsafe application    deleted - quarantined
F:\Users\Gary\Documents\uTorrent Downloads\Southpark.Stick.Of.Truth-RELOADED\southpa\southpa\Crack\steam_api.dll    a variant of Win32/HackTool.Crack.CS potentially unsafe application    cleaned by deleting - quarantined
F:\Users\Gary\Downloads\WAT_Fix_downloader-eASeuhxu.exe    Win32/Somoto.G potentially unwanted application    deleted - quarantined
F:\Windows\AppPatch\AppPatch64\VCLdr64.dll    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
F:\Windows\AppPatch\nbin\VC32Loader.dll    a variant of Win32/ClientConnect.A potentially unwanted application    cleaned by deleting - quarantined
 


Edited by butterchicken, 04 June 2015 - 11:25 PM.


#4 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,195 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:42 AM

Posted 04 June 2015 - 07:25 PM

Hi BC, do you play Goodgame Empire?

Do you use these
National Instruments\mDNS Responder\ (National Instruments Corporation)

(Proxy Labs)
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#5 butterchicken

butterchicken
  • Topic Starter

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:06:42 AM

Posted 04 June 2015 - 11:27 PM

Hi BC, do you play Goodgame Empire?

Do you use these
National Instruments\mDNS Responder\ (National Instruments Corporation)

(Proxy Labs)

i've only heard of proxy labs. i used to use it but i don't really need it anymore.

 

 

updated my last post with ESET log



#6 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,195 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:42 AM

Posted 05 June 2015 - 11:50 AM

ESET was a good clean..

I want to fix your Hosts file but I need to know if you play Goodgame empire.. (I play it). Some of the files are listed so I don't want them removed if you use it.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#7 butterchicken

butterchicken
  • Topic Starter

  • Members
  • 19 posts
  • OFFLINE
  •  
  • Local time:06:42 AM

Posted 05 June 2015 - 11:29 PM

ESET was a good clean..

I want to fix your Hosts file but I need to know if you play Goodgame empire.. (I play it). Some of the files are listed so I don't want them removed if you use it.

hmmm now that i think about it i'm pretty sure goodgame empire was installed through bluestacks.

 

i was given two options from bluestacks, either pay or download apps to continuing using it so i took the second option. i've never touched the game and i don't plan on it.

 

my keyboard still has problems. i googled around a bit and found this thread: https://forums.logitech.com/t5/Logitech-G-Keyboards/Logitech-G110-Keyboard-Freezing-Stuck-keys/td-p/922294

 

it is a problem which many people have, i will try cleaning out my keyboard.


Edited by butterchicken, 05 June 2015 - 11:29 PM.


#8 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,195 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:42 AM

Posted 09 June 2015 - 02:47 PM

Ok Uninstall Goodgame in Control Panel and reboot.

Fix the Winsock like this..

Please click Start > Run, type inetcpl.cpl in the runbox and press enter.
Click the Connections tab and click the LAN settings option.
Verify if "Use a proxy..." is checked, if so, UNcheck it and click OK/OK to exit.
Now check if the internet is working again.


Please Download this file, Click Me
Right-click on winsockfix.bat and click on Run as Administrator.



Ask in Hardware about the Keyboard.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users