Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Computer slows down


  • Please log in to reply
26 replies to this topic

#1 Godlover

Godlover

  • Members
  • 60 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto Rico
  • Local time:05:12 PM

Posted 29 August 2015 - 08:49 AM

I often am having problems with the computer slowing down, principally on internet.  Generally, if I restart, things are back to normal.

I am using Avast Internet security with Cleanup.  According to it, all systems are good. 

I am using Win 7 64 bit with 4g ram.  I use Firefox brouser.

With my mail program (Juno), quite often when things are running slow I get the message that Shockwave Flash may be busy or has stopped responding.



BC AdBot (Login to Remove)

 


#2 hamluis

hamluis

    Moderator


  • Moderator
  • 55,869 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Killeen, TX
  • Local time:04:12 PM

Posted 29 August 2015 - 02:09 PM

Please download MiniToolBox  , save it to your desktop and run it.
 
Checkmark the following checkboxes:
  List last 10 Event Viewer log
  List Installed Programs
  List Users, Partitions and Memory size.
 
Click Go and paste the content into your next post.
 
Also...please Publish a Snapshot using Speccy - http://www.bleepingcomputer.com/forums/topic323892.html/page__p__1797792#entry1797792 , taking care to post the link of the snapshot in your next post.
 
Louis



#3 Godlover

Godlover
  • Topic Starter

  • Members
  • 60 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto Rico
  • Local time:05:12 PM

Posted 29 August 2015 - 07:28 PM

Here is Toolbox:

 

MiniToolBox by Farbar  Version: 25-07-2015 01
Ran by Owner (administrator) on 29-08-2015 at 20:16:57
Running from "C:\Users\Owner\Downloads"
Microsoft Windows 7 Home Premium  Service Pack 1 (X64)
Model: GC517AA-ABA a6057c Manufacturer: HP-Pavilion
Boot Mode: Normal
***************************************************************************

========================= Event log errors: ===============================

Application errors:
==================
Error: (08/29/2015 01:03:47 PM) (Source: APC UPS Service) (User: NT AUTHORITY)
Description: PowerChute not communicating with the battery backup.

Error: (08/29/2015 11:57:59 AM) (Source: APC UPS Service) (User: NT AUTHORITY)
Description: PowerChute not communicating with the battery backup.

Error: (08/29/2015 10:59:40 AM) (Source: APC UPS Service) (User: NT AUTHORITY)
Description: PowerChute not communicating with the battery backup.

Error: (08/29/2015 08:57:08 AM) (Source: APC UPS Service) (User: NT AUTHORITY)
Description: PowerChute not communicating with the battery backup.

Error: (08/28/2015 05:14:44 PM) (Source: APC UPS Service) (User: NT AUTHORITY)
Description: PowerChute not communicating with the battery backup.

Error: (08/28/2015 03:47:39 PM) (Source: APC UPS Service) (User: NT AUTHORITY)
Description: PowerChute not communicating with the battery backup.

Error: (08/28/2015 01:16:40 PM) (Source: APC UPS Service) (User: NT AUTHORITY)
Description: PowerChute not communicating with the battery backup.

Error: (08/28/2015 09:40:47 AM) (Source: APC UPS Service) (User: NT AUTHORITY)
Description: PowerChute not communicating with the battery backup.

Error: (08/27/2015 08:56:34 PM) (Source: APC UPS Service) (User: NT AUTHORITY)
Description: PowerChute not communicating with the battery backup.

Error: (08/27/2015 01:04:08 PM) (Source: APC UPS Service) (User: NT AUTHORITY)
Description: PowerChute not communicating with the battery backup.

System errors:
=============
Error: (08/29/2015 12:37:05 PM) (Source: bowser) (User: )
Description: The master browser has received a server announcement from the computer SAMS-PC
that believes that it is the master browser for the domain on transport NetBT_Tcpip_{57C84785-BF4B-404E-BA9D-BAE4E1747FD2}.
The master browser is stopping or an election is being forced.

Error: (08/29/2015 12:01:04 PM) (Source: bowser) (User: )
Description: The master browser has received a server announcement from the computer SAMS-PC
that believes that it is the master browser for the domain on transport NetBT_Tcpip_{57C84785-BF4B-404E-BA9D-BAE4E1747FD2}.
The master browser is stopping or an election is being forced.

Error: (08/29/2015 11:13:05 AM) (Source: bowser) (User: )
Description: The master browser has received a server announcement from the computer SAMS-PC
that believes that it is the master browser for the domain on transport NetBT_Tcpip_{57C84785-BF4B-404E-BA9D-BAE4E1747FD2}.
The master browser is stopping or an election is being forced.

Error: (08/29/2015 11:01:03 AM) (Source: bowser) (User: )
Description: The master browser has received a server announcement from the computer SAMS-PC
that believes that it is the master browser for the domain on transport NetBT_Tcpip_{57C84785-BF4B-404E-BA9D-BAE4E1747FD2}.
The master browser is stopping or an election is being forced.

Error: (08/29/2015 08:56:58 AM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service.

Error: (08/28/2015 10:18:34 PM) (Source: bowser) (User: )
Description: The master browser has received a server announcement from the computer SAMS-PC
that believes that it is the master browser for the domain on transport NetBT_Tcpip_{57C84785-BF4B-404E-BA9D-BAE4E1747FD2}.
The master browser is stopping or an election is being forced.

Error: (08/28/2015 09:42:30 PM) (Source: bowser) (User: )
Description: The master browser has received a server announcement from the computer SAMS-PC
that believes that it is the master browser for the domain on transport NetBT_Tcpip_{57C84785-BF4B-404E-BA9D-BAE4E1747FD2}.
The master browser is stopping or an election is being forced.

Error: (08/28/2015 09:14:30 PM) (Source: bowser) (User: )
Description: The master browser has received a server announcement from the computer SAMS-PC
that believes that it is the master browser for the domain on transport NetBT_Tcpip_{57C84785-BF4B-404E-BA9D-BAE4E1747FD2}.
The master browser is stopping or an election is being forced.

Error: (08/28/2015 09:40:47 AM) (Source: Microsoft-Windows-HAL) (User: )
Description: The platform firmware has corrupted memory across the previous system power transition.  Please check for updated firmware for your system.

Error: (08/28/2015 08:55:50 AM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
SASDIFSV
SASKUTIL

Microsoft Office Sessions:
=========================
Error: (08/29/2015 01:03:47 PM) (Source: APC UPS Service)(User: NT AUTHORITY)
Description:

Error: (08/29/2015 11:57:59 AM) (Source: APC UPS Service)(User: NT AUTHORITY)
Description:

Error: (08/29/2015 10:59:40 AM) (Source: APC UPS Service)(User: NT AUTHORITY)
Description:

Error: (08/29/2015 08:57:08 AM) (Source: APC UPS Service)(User: NT AUTHORITY)
Description:

Error: (08/28/2015 05:14:44 PM) (Source: APC UPS Service)(User: NT AUTHORITY)
Description:

Error: (08/28/2015 03:47:39 PM) (Source: APC UPS Service)(User: NT AUTHORITY)
Description:

Error: (08/28/2015 01:16:40 PM) (Source: APC UPS Service)(User: NT AUTHORITY)
Description:

Error: (08/28/2015 09:40:47 AM) (Source: APC UPS Service)(User: NT AUTHORITY)
Description:

Error: (08/27/2015 08:56:34 PM) (Source: APC UPS Service)(User: NT AUTHORITY)
Description:

Error: (08/27/2015 01:04:08 PM) (Source: APC UPS Service)(User: NT AUTHORITY)
Description:

=========================== Installed Programs ============================
64 Bit HP CIO Components Installer (HKLM\...\{0EBC740B-4363-489B-8C27-98CE0740BA19}) (Version: 18.2.4 - Hewlett-Packard) Hidden
ABBYY FineReader 9.0 Sprint (HKLM-x32\...\{F9000000-0018-0000-0000-074957833700}) (Version: 9.01.513.58212 - ABBYY) Hidden
ABBYY FineReader 9.0 Sprint (HKLM-x32\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 18.0.0.180 - Adobe Systems Incorporated)
Adobe Flash Player 18 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 18.0.0.232 - Adobe Systems Incorporated)
Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.232 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.12) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated)
Adobe SVG Viewer 3.0 (HKLM-x32\...\Adobe SVG Viewer) (Version:  3.0 - )
APC PowerChute Personal Edition (HKLM-x32\...\{5A0C892E-FD1C-4203-941E-0956AED20A6A}) (Version: 2.1.1 - American Power Conversion Corporation)
Apple Application Support (HKLM-x32\...\{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}) (Version: 2.1.7 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Avast Internet Security (HKLM-x32\...\avast) (Version: 10.3.2225 - AVAST Software)
avast! EasyPass (HKLM-x32\...\AI RoboForm) (Version: 7-7-8-128 - AVAST Software)
Burn4Free DVD Burning Software 7.1.0.0 (HKLM-x32\...\Burn4Free DVD Burning Software_is1) (Version:  - Sakysoft s.r.l.)
CameraHelperMsi (HKLM-x32\...\{15634701-BACE-4449-8B25-1567DA8C9FD3}) (Version: 13.30.1395.0 - Logitech) Hidden
Coupon Printer for Windows (HKLM-x32\...\Coupon Printer for Windows5.0.1.4) (Version: 5.0.1.4 - Coupons.com Incorporated)
DesktopAssistant 1.6.173.0 (HKLM-x32\...\DesktopAssistant_is1) (Version: 1.6.173.0 - Sphinx Software)
Dropbox (HKCU\...\Dropbox) (Version: 3.8.8 - Dropbox, Inc.)
Epson CreativeZone (HKLM-x32\...\{E6C82F8F-2031-4825-8CC3-98C5960875C1}) (Version:  - )
Epson Event Manager (HKLM-x32\...\{03B8AA32-F23C-4178-B8E6-09ECD07EAA47}) (Version: 2.40.0001 - SEIKO EPSON CORPORATION)
Epson FAX Utility (HKLM-x32\...\{0CBE6C93-CB2E-4378-91EE-12BE6D4E2E4A}) (Version: 1.10.00 - SEIKO EPSON CORPORATION)
Epson PC-FAX Driver (HKLM-x32\...\EPSON PC-FAX Driver 2) (Version:  - )
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
EPSON WorkForce 630 Series Printer Uninstall (HKLM\...\EPSON WorkForce 630 Series) (Version:  - SEIKO EPSON Corporation)
EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.5.00 - SEIKO EPSON CORPORATION)
EpsonNet Setup 3.3 (HKLM-x32\...\{C9D8A041-2963-4B31-8FFC-1500F3DB9293}) (Version: 3.3b - SEIKO EPSON CORPORATION)
erLT (HKLM-x32\...\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}) (Version: 1.20.138.34 - Logitech, Inc.) Hidden
Evernote v. 5.9 (HKLM-x32\...\{AFFCD322-4AAE-11E5-A01D-0050569584E9}) (Version: 5.9.0.8665 - Evernote Corp.)
GFI BackUp Freeware (HKLM-x32\...\GFI BackUp Freeware) (Version: 4.0 - GFI Software Ltd.)
Hauppauge WinTV 7 (HKLM-x32\...\Hauppauge WinTV 7) (Version: v7.2.30108 (CD 2.5c) - Hauppauge Computer Works)
HL-2220 (HKLM-x32\...\{E2A97415-BD97-4867-B906-05E39E9EE51F}) (Version: 1.0.6.0 - Brother Industries, Ltd.)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.11182 - HP)
Intel® Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1912 - Intel Corporation)
IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 4.3.0.5 - IObit)
iSilo (HKLM-x32\...\{CA396DEC-C59A-43D8-BDDE-170306A1D938}) (Version: 5.10.22 - iSilo)
Java 7 Update 65 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417065FF}) (Version: 7.0.650 - Oracle)
Juno Internet (HKLM-x32\...\{a0296e52-6e9b-11d6-ace4-00105a0cf83f}) (Version: Juno QuickStart - United Online)
Logitech Vid HD (HKLM-x32\...\Logitech Vid) (Version: 7.2 (7259) - Logitech Inc..)
Logitech Webcam Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.30 - Logitech Inc.)
Logitech Webcam Software Driver Package (HKLM\...\lvdrivers_12.0) (Version: 12.0.1278 - Logitech Inc.)
LWS VideoEffects (HKLM\...\{138A4072-9E64-46BD-B5F9-DB2BB395391F}) (Version: 13.30.1379.0 - Logitech) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Mozilla Firefox 40.0.2 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 40.0.2 (x86 en-US)) (Version: 40.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 40.0.2.5702 - Mozilla)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation)
Music Notation (HKLM-x32\...\MagicScore_is1) (Version:  - )
NOOK for PC (HKLM-x32\...\BN_DesktopReader) (Version: 2.5.6.9575 - Barnesandnoble.com)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.5.4 - Notepad++ Team)
OpenOffice 4.1.1 (HKLM-x32\...\{9395F41D-0F80-432E-9A59-B8E477E7E163}) (Version: 4.11.9775 - Apache Software Foundation)
Polaris Office Sync (HKCU\...\InstallShield_{5C7C412A-1FBB-4705-B115-2458FB855CCE}) (Version: 2.005.001 - Infraware)
Polaris Office Sync (HKLM-x32\...\{5C7C412A-1FBB-4705-B115-2458FB855CCE}) (Version: 2.005.001 - Infraware) Hidden
Quicken 2004 (HKLM-x32\...\{54DE0B75-6CD9-44C4-B10A-1F25DA9899D8}) (Version: 13.00.0000 - Intuit) Hidden
Quicken 2004 (HKLM-x32\...\InstallShield_{54DE0B75-6CD9-44C4-B10A-1F25DA9899D8}) (Version: 13.00.0000 - Intuit)
QuickTime (HKLM-x32\...\{7BE15435-2D3E-4B58-867F-9C75BED0208C}) (Version: 7.71.80.42 - Apple Inc.)
RealDownloader (HKLM-x32\...\{2259DBC1-EFFB-42B5-BA35-DFC0AAB2B3FB}) (Version: 17.0.9 - RealNetworks, Inc.) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (HKLM-x32\...\{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}) (Version: 9.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (HKLM\...\{21E47F47-C9A7-4454-BA48-388327B0EA00}) (Version: 10.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (HKLM-x32\...\{AAECF7BA-E83B-4A10-87EA-DE0B333F8734}) (Version: 10.0 - RealNetworks, Inc) Hidden
RealPlayer Cloud (HKLM-x32\...\RealPlayer 17.0) (Version: 17.0.9 - RealNetworks)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7512 - Realtek Semiconductor Corp.)
RealUpgrade 1.1 (HKLM-x32\...\{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}) (Version: 1.1.0 - RealNetworks, Inc.) Hidden
Serif DrawPlus Starter Edition (HKLM-x32\...\{33311EA4-0ECA-4E7F-83E5-8A92CD760152}) (Version: 2.0.2.010 - Serif (Europe) Ltd)
Skype Click to Call (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 5.10.9560 - Skype Technologies S.A.)
Skype™ 7.6 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.6.105 - Skype Technologies S.A.)
Smart Defrag 3 (HKLM-x32\...\Smart Defrag 3_is1) (Version: 3.3 - IObit)
UpdateService (HKLM-x32\...\{E3AE96D6-E196-45B4-AF62-2B41998B9E37}) (Version: 1.0.0 - RealNetworks, Inc.) Hidden
Utility Chest Toolbar (HKLM-x32\...\UtilityChest_49bar Uninstall) (Version:  - Mindspark Interactive Network)
YNAB 4 version 4.1.140 (HKLM-x32\...\com.ynab.YNAB4.LiveCaptive_is1) (Version: 4.1.140 - YouNeedABudget.com)

========================= Memory info: ===================================
Percentage of memory in use: 41%
Total physical RAM: 3574.46 MB
Available physical RAM: 2077.59 MB
Total Virtual: 7147.13 MB
Available Virtual: 4236.77 MB

========================= Partitions: =====================================
1 Drive c: () (Fixed) (Total:465.66 GB) (Free:317.15 GB) NTFS
3 Drive e: (New Volume) (Fixed) (Total:298.09 GB) (Free:200.02 GB) NTFS

========================= Users: ========================================
User accounts for \\DAVID

Administrator            Guest                    Owner                    

**** End of log ****

 

http://speccy.piriform.com/results/Vzb2FUK8uD0sMh2bCednDSc


Edited by hamluis, 30 August 2015 - 06:45 AM.


#4 hamluis

hamluis

    Moderator


  • Moderator
  • 55,869 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Killeen, TX
  • Local time:04:12 PM

Posted 30 August 2015 - 06:47 AM

Emsisoft detects the Burn4Free website as malicious...IMO, that makes any download of that software dubious.

 

Moved topic to Am I Infected forum for a check for malware.

 

Louis



#5 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,595 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:02:12 PM

Posted 30 August 2015 - 11:10 AM

If you do a search at virustotal you will find one URL scanner which lists this as a Malware Site out of 62 URL scanners.  That was Emsisoft.  Two other scanners listed this as a suspicious site.

 

It looks like you need to uninstall the driver for your UPS (PowerChute) and then reinstall it.  It may be corrupted.


Edited by dc3, 30 August 2015 - 11:12 AM.

Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#6 Godlover

Godlover
  • Topic Starter

  • Members
  • 60 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto Rico
  • Local time:05:12 PM

Posted 31 August 2015 - 09:09 AM

Emsisoft detects the Burn4Free website as malicious...IMO, that makes any download of that software dubious.

 

Moved topic to Am I Infected forum for a check for malware.

 

Louis

What do I do?



#7 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,595 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:02:12 PM

Posted 31 August 2015 - 09:24 AM

Let's run some scans and see what is there.

 

Please run Malwarebytes AntiMalware
 
Please download Malwarebytes Anti-Malware.  After clicking on the link the download will start automatically.
 
1)  Double-click on mbam-setup.exe, then click on Run to install the application, follow the prompts through the installation.
 
2)  Malwarebytes will automatically open.  If this is the first time you have run this version of Malwarbytes you will see an image like the one below.
 
mbam1_zps95cc812c.png
 
Click on Update Now, after Malwarebytes is updated click on Scan.
 
If this isn't the first time you have run this version, then you will see an image like the one below.  Click on Scan
 
mbam1_zps98e7fba9.png
 
You will be prompted to update Malwarebytes, to do so click on Update Now.
 
 mbam2_zps85f38f0c.png
 
3)  The scan will automatically run now.
 
malwarerun_zps9abd4ef1.png
 
4)  When the scan is complete the results will be displayed.  Click on Delete All.
 
malwarenew_zps34b58fdc.png
 
5)  Please post the Malwarebytes log.
 
To find your Malwarebytes log,download mbam-check.exe from here and save it to your desktop.
 
To open the log double click on mbam-check.exe on your desktop.  Copy and paste the log in your topic.
 
================
 

Please run AdwCleaner
 
Please download AdwCleaner and install it.
 
When AdwCleaner opens you will see an image like the one below.
 
adwcleaner11_zps48314883.png
 
Click on Scan to start the scan.
 
Once the search is complete a list of the pending items will be displayed.  If you see any which you do not want removed, remove the check mark next to it.  
 
Click on Clean to remove the selected items.  If you have any questions about any items in the list please copy and paste the list in your topic so we can review it.  
 
You will receive a message telling you that all programs will be closed so that the infections can be removed.  Click on OK.  The computer will be restarted to complete the cleaning process.
 
When the cleaning process is complete a log of what was removed will be presented.  Please copy and the paste this log in your topic.
 
================
 

Emsisoft Emergency Kit
 
Please download Emsisoft Emergency Kit and save it to your desktop. Double click on the EmsisoftEmergencyKit file you downloaded to extract its contents and create a shortcut on the desktop. Leave all settings as they are and click the Extract button at the bottom. A folder named EEK will be created in the root of the drive (usually c:\).
  • After extraction please double-click on the new Start Emsisoft Emergency Kit icon on your desktop.
  • The first time you launch it, Emsisoft Emergency Kit will recommend that you allow it to download updates. Please click Yes so that it downloads the latest database updates.
  • When update is complete, click Malware Scan. When asked if you want the scanner to scan for Potentially Unwanted Programs, click Yes. Emsisoft Emergency Kit will start scanning.
  • When the scan is completed click Quarantine selected objects. Note:  This option is only available if malicious objects were detected during the scan.  If this is the case select Delete selected.
  • When the threats have been quarantined, click the View report button in the lower-right corner, and the scan log will be opened in Notepad.
  • Please save the log in Notepad on your desktop and post the contents in your next reply.
  • When you close Emsisoft Emergency Kit, it will give you an option to sign up for a newsletter. This is optional, and is not necessary for the malware removal process.

  • Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

     

     

     

     


    #8 Godlover

    Godlover
    • Topic Starter

    • Members
    • 60 posts
    • OFFLINE
    •  
    • Gender:Male
    • Location:Puerto Rico
    • Local time:05:12 PM

    Posted 31 August 2015 - 02:55 PM

    mbam-check result log version:     2.1.1.1001
    ========================================
    
    User Account type:                 Administrator
    OS:                                Windows 7 Service Pack 1 Service Pack 1 64 bit Operating System
    Current Version and Build:         6.1.7601.0 
    Malwarebytes Anti-Malware:         2.1.8.1057
    Installed On:                      2015/08/31
    Malware Database:                  0000.00.00.00
    Rootkit Database:                  0000.00.00.00
    Remediation Database:              0000.00.00.00
    IP Database:                       0000.00.00.00
    Domain Database:                   0000.00.00.00
    License:                           Free
    Malware Protection:                4 (The service is running.)
    Malicious Website Protection:      1 (The service is not running.)
    Chameleon:                         0 <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMChameleon
    Log Created:                       2015/08/31 14:22:19
    Compatibility Flag Settings:
    =================================
    
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\appCompatFlags\Layers
    	C:\Users\Owner\Downloads\mcekit_setup.exeREG_SZ		VISTARTM
    	C:\Users\Owner\AppData\Local\Evernote\Evernote\AutoUpdate\Evernote_5.8.1.6061.exeREG_SZ		VISTARTM
    
    
    
    Malwarebytes Anti-Malware Shell Extension Block Check:
    ======================================================
    
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Blocked:
    
    MBAM Startup Entries: 
    =====================
    HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run
    HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
    
    Malwarebytes Anti-Malware Service and Driver Status:
    =======================================================
    
    --------------Driver File Info:--------------
    C:\Windows\system32\drivers\mbam.sys
    File Size: 25816     BYTES	FileVersion: 0.1.15.0	MD5: [a8d28d5b3e2a528d1ef0e338e44f2820]
    C:\Windows\system32\drivers\mwac.sys
    File Size: 63704     BYTES	FileVersion: 1.0.6.0	MD5: [ae757332ea130e94e646621cc695b52a]
    C:\Windows\system32\drivers\mbamswissarmy.sys
    File Size: 113880    BYTES	FileVersion: 0.2.22.0	MD5: [8f22037d3f5a6bb676525d825a1388b9]
    C:\Windows\system32\drivers\mbamchameleon.sys
    File Size: 109272    BYTES	FileVersion: 1.1.20.0	MD5: [e681ce4ae5c09651d53cb4387ca3560e]
    
    --------------MBAMProtector:--------------
    Type:                   2
    State:                  4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)
    WIN32_EXIT_CODE:        0
    SERVICE_EXIT_CODE:      0
    CHECKPOINT:             0
    WAIT_HINT:              0
    
    
    --------------MBAMService:--------------
    Type:                   16
    State:                  1 (The service is not running.) (State is stopped)
    WIN32_EXIT_CODE:        0
    SERVICE_EXIT_CODE:      0
    CHECKPOINT:             0
    WAIT_HINT:              0
    
    
    --------------MBAMScheduler:--------------
    Type:                   N/A
    State:                  0 <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMScheduler
    WIN32_EXIT_CODE:        N/A
    SERVICE_EXIT_CODE:      N/A
    CHECKPOINT:             N/A
    WAIT_HINT:              N/A
    
    
    --------------MBAMChameleon:--------------
    Type:                   N/A
    State:                  0 <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMChameleon
    WIN32_EXIT_CODE:        N/A
    SERVICE_EXIT_CODE:      N/A
    CHECKPOINT:             N/A
    WAIT_HINT:              N/A
    
    
    --------------MBAMWebAccessControl:--------------
    Type:                   2
    State:                  1 (The service is not running.) (State is stopped)
    WIN32_EXIT_CODE:        1077
    SERVICE_EXIT_CODE:      0
    CHECKPOINT:             0
    WAIT_HINT:              0
    
    
    Required Dependencies:
    ======================
    
    --------------BFE:--------------
    Type:                   32
    State:                  4 (The service is running.)
    WIN32_EXIT_CODE:        0
    SERVICE_EXIT_CODE:      0
    CHECKPOINT:             0
    WAIT_HINT:              0
    
    
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE
    	DisplayName                   REG_SZ		@%SystemRoot%\system32\bfe.dll,-1001
    	Group                         REG_SZ		NetworkProvider
    	ImagePath                     REG_EXPAND_SZ	%systemroot%\system32\svchost.exe -k LocalServiceNoNetwork
    	Description                   REG_SZ		@%SystemRoot%\system32\bfe.dll,-1002
    	ObjectName                    REG_SZ		NT AUTHORITY\LocalService
    	ErrorControl                  REG_DWORD		1
    	Start                         REG_DWORD		2
    	Type                          REG_DWORD		32
    	DependOnService               REG_MULTI_SZ	RpcSs
    
    	ServiceSidType                REG_DWORD		3
    	RequiredPrivileges            REG_MULTI_SZ	SeAuditPrivilege
    
    	FailureActions                REG_BINARY	Binary Data
    
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters
    	ServiceDll                    REG_EXPAND_SZ	%SystemRoot%\System32\bfe.dll
    	ServiceDllUnloadOnStop        REG_DWORD		1
    	ServiceMain                   REG_SZ		BfeServiceMain
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\BootTime
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\BootTime\Filter
    	{dc95b53e-01cf-4058-821d-350b3d0d4676}REG_BINARY	Binary Data
    
    	{2dd96961-5757-434f-b617-34e732517c0e}REG_BINARY	Binary Data
    
    	{2db25e6c-f07a-44f4-b6c8-50a330d2790b}REG_BINARY	Binary Data
    
    	{c42f1cd6-3a95-4ae2-a513-793c3ae610c7}REG_BINARY	Binary Data
    
    	{0c41d586-9c19-4e01-9d66-b5b98a97576e}REG_BINARY	Binary Data
    
    	{12c38916-82ac-4737-8f38-b6957ffebad6}REG_BINARY	Binary Data
    
    	{c970a45d-57f9-4e32-a5bd-886a9662641e}REG_BINARY	Binary Data
    
    	{0c3be01b-fe70-4cc4-89dc-c07996b67e6d}REG_BINARY	Binary Data
    
    	{074f7f68-ee10-428a-89d1-ba78f6c327ca}REG_BINARY	Binary Data
    
    	{c016105c-eb34-4519-a5fd-5f4e4ad4d18e}REG_BINARY	Binary Data
    
    	{a47525e2-725b-4888-8af1-ba5a60c04f4d}REG_BINARY	Binary Data
    
    	{0ccc96a3-8c5c-45e2-b80e-7e37b16cc1ad}REG_BINARY	Binary Data
    
    	{935b7f48-0ede-44dd-9bc2-e00bb635cda3}REG_BINARY	Binary Data
    
    	{941dad9d-7b1a-4354-997b-00cf1aa9b35c}REG_BINARY	Binary Data
    
    	{bf9eae1b-1905-487e-b9d3-c7328ef34113}REG_BINARY	Binary Data
    
    	{b8b869cf-824b-4ee2-8c4e-24ad0ec6736a}REG_BINARY	Binary Data
    
    	{4af66d81-41cf-4464-a369-e7ef70628ce6}REG_BINARY	Binary Data
    
    	{f6b91a24-7c6b-4958-8111-b8d5182494fc}REG_BINARY	Binary Data
    
    	{aee12ee7-fa08-4f1d-930f-71820e2968ee}REG_BINARY	Binary Data
    
    	{60538d36-e220-4a0e-b31b-46778423b88d}REG_BINARY	Binary Data
    
    	{98be2af4-08d0-4fba-829f-042f55a9ee30}REG_BINARY	Binary Data
    
    	{5f097c86-97b5-41b2-968e-1cf1ab565ba4}REG_BINARY	Binary Data
    
    	{b231fc8e-20b7-4c66-a6d6-d94f96a53ba5}REG_BINARY	Binary Data
    
    	{d843fbd0-bc3b-4859-a968-f6b4095259f9}REG_BINARY	Binary Data
    
    	{1bac65bb-f95d-49e5-a6d8-86daf7cc7701}REG_BINARY	Binary Data
    
    	{7a224a9d-9c44-41c0-8a41-be6f2268c605}REG_BINARY	Binary Data
    
    	{c3352ece-0a6a-491f-a700-2e3b1075db1b}REG_BINARY	Binary Data
    
    	{771bcc07-3ea5-472c-84bd-8dc7f39300d5}REG_BINARY	Binary Data
    
    	{a7598913-4311-43b3-b8b1-d4569547cc8e}REG_BINARY	Binary Data
    
    	{6224d966-39ec-4d6c-a2e4-5e6dbdc26d66}REG_BINARY	Binary Data
    
    	{6ce07d57-3e4e-4fcb-835c-97443212094e}REG_BINARY	Binary Data
    
    	{b730961c-190c-4714-b761-14a0ba31ed54}REG_BINARY	Binary Data
    
    	{fa2ae604-deff-441d-8115-04797985e840}REG_BINARY	Binary Data
    
    	{a6478540-530d-4acf-974d-fd1e8da46928}REG_BINARY	Binary Data
    
    	{cb251666-fcca-4b5a-8668-4eef19e06e3d}REG_BINARY	Binary Data
    
    	{28db0e33-817d-4505-8822-7e5e73f75d8e}REG_BINARY	Binary Data
    
    	{d2ac3df2-ccad-4858-a3c3-2a5c1379d9c2}REG_BINARY	Binary Data
    
    	{ffd88f57-cd64-4cb4-bddc-002a4eb7e69a}REG_BINARY	Binary Data
    
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent\Callout
    	{22989d3b-d416-4df9-b07e-3c8b6ccfd1dc}REG_BINARY	Binary Data
    
    	{8368f29b-8ce5-4078-b500-3edae01c1d37}REG_BINARY	Binary Data
    
    	{a566a691-3145-4529-89f9-6aa194321faf}REG_BINARY	Binary Data
    
    	{db969f3a-7165-4536-a7e3-abd7973a59d1}REG_BINARY	Binary Data
    
    	{c0b4a1b5-42ff-47c5-92ff-4b361feb9a1f}REG_BINARY	Binary Data
    
    	{c523abea-cd87-4f67-9e59-20ae1f34bd81}REG_BINARY	Binary Data
    
    	{b9171c50-767a-460c-a40b-2f22229ef1b6}REG_BINARY	Binary Data
    
    	{6dcda39d-387c-4658-9de7-ed16f035dc77}REG_BINARY	Binary Data
    
    	{e048b478-c649-4c55-b057-d47d901d5d9f}REG_BINARY	Binary Data
    
    	{767a2c47-a4d9-4078-88c8-d2b2df2e5b6c}REG_BINARY	Binary Data
    
    	{37b71985-6b8c-456b-aa6c-c27861db1788}REG_BINARY	Binary Data
    
    	{476d74dc-099f-4289-af71-50f479e2956c}REG_BINARY	Binary Data
    
    	{6d0d8521-0597-42d3-91eb-320920527501}REG_BINARY	Binary Data
    
    	{03ea03ef-d1ea-4632-8385-5088c0965dc8}REG_BINARY	Binary Data
    
    	{f1f94802-61c8-4f74-94c6-3c5afc67f0b6}REG_BINARY	Binary Data
    
    	{208c15b8-107f-4ea0-b0a8-6a5c86a80935}REG_BINARY	Binary Data
    
    	{1491595b-c4aa-4f99-99a6-6585f480127e}REG_BINARY	Binary Data
    
    	{c1b43c96-1870-4599-bb0e-8ff2f33ba3c0}REG_BINARY	Binary Data
    
    	{51adff72-e25a-4ad6-b1cf-e68423cc4315}REG_BINARY	Binary Data
    
    	{e01cc7ce-61a0-4025-9d41-4e4664e1c55f}REG_BINARY	Binary Data
    
    	{b435f564-1e3d-4aac-bd95-d09ae2f7d7b6}REG_BINARY	Binary Data
    
    	{fb7ac9c8-6f78-424a-a15b-7f161c3987e7}REG_BINARY	Binary Data
    
    	{1d86f1fc-144d-4249-b2e8-9f2076f0c98b}REG_BINARY	Binary Data
    
    	{cac30c87-1805-40b6-b17e-23a3cdeaf18c}REG_BINARY	Binary Data
    
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent\Filter
    	{dc95b53e-01cf-4058-821d-350b3d0d4676}REG_BINARY	Binary Data
    
    	{f444c576-6e60-4ea2-9faa-80d57ed12cd2}REG_BINARY	Binary Data
    
    	{0c41d586-9c19-4e01-9d66-b5b98a97576e}REG_BINARY	Binary Data
    
    	{12c38916-82ac-4737-8f38-b6957ffebad6}REG_BINARY	Binary Data
    
    	{c970a45d-57f9-4e32-a5bd-886a9662641e}REG_BINARY	Binary Data
    
    	{0c3be01b-fe70-4cc4-89dc-c07996b67e6d}REG_BINARY	Binary Data
    
    	{4d9581d2-aef8-4993-84cd-b986ced80d42}REG_BINARY	Binary Data
    
    	{be7cbdf4-b192-4aa5-94f8-1fb5c5ee07bc}REG_BINARY	Binary Data
    
    	{716b48eb-0a35-4a76-92ab-1d987230d288}REG_BINARY	Binary Data
    
    	{1165065e-4996-4338-abaf-4b8556b4d431}REG_BINARY	Binary Data
    
    	{07a24961-a760-4e80-b263-6d275e1b09cb}REG_BINARY	Binary Data
    
    	{5b0cb2e2-ab87-4974-9f1c-2f22a654eeb9}REG_BINARY	Binary Data
    
    	{b6b2ca61-fb98-4422-adc2-e7cf56b3680c}REG_BINARY	Binary Data
    
    	{0aa7fff8-919f-453c-928c-28a12122ba38}REG_BINARY	Binary Data
    
    	{074f7f68-ee10-428a-89d1-ba78f6c327ca}REG_BINARY	Binary Data
    
    	{c016105c-eb34-4519-a5fd-5f4e4ad4d18e}REG_BINARY	Binary Data
    
    	{a47525e2-725b-4888-8af1-ba5a60c04f4d}REG_BINARY	Binary Data
    
    	{0ccc96a3-8c5c-45e2-b80e-7e37b16cc1ad}REG_BINARY	Binary Data
    
    	{91ffecf0-0a9e-4572-95f1-a7111af86967}REG_BINARY	Binary Data
    
    	{64e55933-15a5-495d-a928-ccca43d44875}REG_BINARY	Binary Data
    
    	{13bfd422-6f75-4408-8924-9400ec0cb19c}REG_BINARY	Binary Data
    
    	{cbfb56db-3c85-4543-9bc2-76ea28cdd74e}REG_BINARY	Binary Data
    
    	{2dd96961-5757-434f-b617-34e732517c0e}REG_BINARY	Binary Data
    
    	{375fb39b-08c6-40f2-bdf2-08fa63f970a2}REG_BINARY	Binary Data
    
    	{2db25e6c-f07a-44f4-b6c8-50a330d2790b}REG_BINARY	Binary Data
    
    	{c42f1cd6-3a95-4ae2-a513-793c3ae610c7}REG_BINARY	Binary Data
    
    	{b6fdab6b-dcc6-43e3-99ce-7aeca65063a4}REG_BINARY	Binary Data
    
    	{3697a558-3ed3-49be-a4c1-c1a4448653b4}REG_BINARY	Binary Data
    
    	{935b7f48-0ede-44dd-9bc2-e00bb635cda3}REG_BINARY	Binary Data
    
    	{941dad9d-7b1a-4354-997b-00cf1aa9b35c}REG_BINARY	Binary Data
    
    	{b02a4013-b6b5-4859-9168-1e3299e43b24}REG_BINARY	Binary Data
    
    	{d870c96c-75ee-46a6-8a02-8e4401a73423}REG_BINARY	Binary Data
    
    	{8b50e2ec-7cf0-4b71-b42e-5b0536f6cab8}REG_BINARY	Binary Data
    
    	{4137b143-2770-43d4-91a2-55bb0a069830}REG_BINARY	Binary Data
    
    	{3180114b-8338-4740-9a16-444134ad62f4}REG_BINARY	Binary Data
    
    	{17043d46-fac2-4561-bca1-0c7a05e95f5f}REG_BINARY	Binary Data
    
    	{567d3836-3f5b-4067-b9c4-952f677010a2}REG_BINARY	Binary Data
    
    	{4e718c57-c397-4221-9fbb-14fd51701d6a}REG_BINARY	Binary Data
    
    	{3a90a266-1519-4d23-911b-e84cd0f02ab8}REG_BINARY	Binary Data
    
    	{36e1be1b-6e2f-45e8-88ff-85d85e23a211}REG_BINARY	Binary Data
    
    	{bf9eae1b-1905-487e-b9d3-c7328ef34113}REG_BINARY	Binary Data
    
    	{d52149ee-f280-48a3-b9bb-c16fd554c111}REG_BINARY	Binary Data
    
    	{b8b869cf-824b-4ee2-8c4e-24ad0ec6736a}REG_BINARY	Binary Data
    
    	{9a95f83b-4d37-429f-a8d4-fb327c338c7d}REG_BINARY	Binary Data
    
    	{4af66d81-41cf-4464-a369-e7ef70628ce6}REG_BINARY	Binary Data
    
    	{748be50a-013b-4e22-a634-f7d33b5f1672}REG_BINARY	Binary Data
    
    	{f6b91a24-7c6b-4958-8111-b8d5182494fc}REG_BINARY	Binary Data
    
    	{ee9a2d81-edfa-44c7-bf0d-3f95192346b6}REG_BINARY	Binary Data
    
    	{aee12ee7-fa08-4f1d-930f-71820e2968ee}REG_BINARY	Binary Data
    
    	{713fb9af-2c09-4f34-84ec-638bbd201d97}REG_BINARY	Binary Data
    
    	{60538d36-e220-4a0e-b31b-46778423b88d}REG_BINARY	Binary Data
    
    	{417ce42c-01a3-4aac-8cb4-8ceffb48114b}REG_BINARY	Binary Data
    
    	{98be2af4-08d0-4fba-829f-042f55a9ee30}REG_BINARY	Binary Data
    
    	{e971191f-6b0f-4a10-b72c-0345f4a69b40}REG_BINARY	Binary Data
    
    	{5f097c86-97b5-41b2-968e-1cf1ab565ba4}REG_BINARY	Binary Data
    
    	{4624857b-cefb-4bf8-a8e9-b6842193e03b}REG_BINARY	Binary Data
    
    	{b231fc8e-20b7-4c66-a6d6-d94f96a53ba5}REG_BINARY	Binary Data
    
    	{c1c89e24-f256-4d50-8187-631ef804b931}REG_BINARY	Binary Data
    
    	{d843fbd0-bc3b-4859-a968-f6b4095259f9}REG_BINARY	Binary Data
    
    	{4caafd33-a4e5-4431-a4da-bd7cab8e87f7}REG_BINARY	Binary Data
    
    	{1bac65bb-f95d-49e5-a6d8-86daf7cc7701}REG_BINARY	Binary Data
    
    	{b2d6a25d-621a-4e20-813f-924861818094}REG_BINARY	Binary Data
    
    	{7a224a9d-9c44-41c0-8a41-be6f2268c605}REG_BINARY	Binary Data
    
    	{c0129fd1-aacf-4ccd-b7fc-da93feafb37a}REG_BINARY	Binary Data
    
    	{c3352ece-0a6a-491f-a700-2e3b1075db1b}REG_BINARY	Binary Data
    
    	{057e9567-eac8-4b53-a778-c6cea2cce4cb}REG_BINARY	Binary Data
    
    	{771bcc07-3ea5-472c-84bd-8dc7f39300d5}REG_BINARY	Binary Data
    
    	{e4cf1529-eb2d-4dc8-a6f3-a314c22e1efb}REG_BINARY	Binary Data
    
    	{a7598913-4311-43b3-b8b1-d4569547cc8e}REG_BINARY	Binary Data
    
    	{91b9783d-9949-475b-a416-26ba6e8acef2}REG_BINARY	Binary Data
    
    	{6224d966-39ec-4d6c-a2e4-5e6dbdc26d66}REG_BINARY	Binary Data
    
    	{1e168f86-e229-4217-8669-585e6c2996a0}REG_BINARY	Binary Data
    
    	{6ce07d57-3e4e-4fcb-835c-97443212094e}REG_BINARY	Binary Data
    
    	{3b71e824-3660-45e7-a48b-18efc85a9a54}REG_BINARY	Binary Data
    
    	{b730961c-190c-4714-b761-14a0ba31ed54}REG_BINARY	Binary Data
    
    	{038e88cb-9d30-49fc-91ce-b6ac4cbb51e6}REG_BINARY	Binary Data
    
    	{fa2ae604-deff-441d-8115-04797985e840}REG_BINARY	Binary Data
    
    	{ae715006-a879-4f80-9aef-c7bbe707ee66}REG_BINARY	Binary Data
    
    	{a6478540-530d-4acf-974d-fd1e8da46928}REG_BINARY	Binary Data
    
    	{2f3e9923-a2e8-4e07-a61c-6dd394185f72}REG_BINARY	Binary Data
    
    	{cb251666-fcca-4b5a-8668-4eef19e06e3d}REG_BINARY	Binary Data
    
    	{b8bf691a-2627-48ed-8a3b-2addd92be7ae}REG_BINARY	Binary Data
    
    	{28db0e33-817d-4505-8822-7e5e73f75d8e}REG_BINARY	Binary Data
    
    	{dca8212c-8274-4071-aafc-1955d0d67ac2}REG_BINARY	Binary Data
    
    	{d2ac3df2-ccad-4858-a3c3-2a5c1379d9c2}REG_BINARY	Binary Data
    
    	{dbe19dce-41ee-4815-911a-223288e43130}REG_BINARY	Binary Data
    
    	{ffd88f57-cd64-4cb4-bddc-002a4eb7e69a}REG_BINARY	Binary Data
    
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent\Provider
    	{decc16ca-3f33-4346-be1e-8fb4ae0f3d62}REG_BINARY	Binary Data
    
    	{4b153735-1049-4480-aab4-d1b9bdc03710}REG_BINARY	Binary Data
    
    	{1bebc969-61a5-4732-a177-847a0817862a}REG_BINARY	Binary Data
    
    	{42ff0794-3627-44c1-9886-765010075254}REG_BINARY	Binary Data
    
    	{08c1e7e7-4e47-4d05-be1f-e72415d480f1}REG_BINARY	Binary Data
    
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent\SubLayer
    	{b3cdd441-af90-41ba-a745-7c6008ff2300}REG_BINARY	Binary Data
    
    	{b3cdd441-af90-41ba-a745-7c6008ff2301}REG_BINARY	Binary Data
    
    	{b3cdd441-af90-41ba-a745-7c6008ff2302}REG_BINARY	Binary Data
    
    	{9ba30013-c84e-47e5-ac6e-1e1aed72fa69}REG_BINARY	Binary Data
    
    	{4224eab7-7d61-4fe0-9264-6d6568d2ddff}REG_BINARY	Binary Data
    
    	{9ef7b261-649e-498c-9244-73ce0133a45e}REG_BINARY	Binary Data
    
    	{989745d1-aaa5-459f-8d24-f3c0a7f6748e}REG_BINARY	Binary Data
    
    	{42921b7c-d3f8-4780-813d-94511b841da9}REG_BINARY	Binary Data
    
    	{1f7b80a2-57c7-43b7-a4a7-0c191aa7da22}REG_BINARY	Binary Data
    
    	{37d03a93-8372-472b-9735-c1574b626e62}REG_BINARY	Binary Data
    
    	{e0eafa89-1944-4e22-836e-6c218d845c78}REG_BINARY	Binary Data
    
    	{672b3149-95db-4bc6-a137-14cd7310548d}REG_BINARY	Binary Data
    
    	{08a1d66d-bfdc-4eb7-b60e-35217b8cc854}REG_BINARY	Binary Data
    
    	{d771ff7c-b353-437a-aece-dc5fce8fee50}REG_BINARY	Binary Data
    
    	{b5252aa2-05bb-495c-8028-2f880bc3ced3}REG_BINARY	Binary Data
    
    	{32fe297b-b888-4be5-9e5f-d63fb43e333a}REG_BINARY	Binary Data
    
    	{38789f74-39b8-4475-98c4-c707f6add2b3}REG_BINARY	Binary Data
    
    --------------fltmgr:--------------
    Type:                   2
    State:                  4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)
    WIN32_EXIT_CODE:        0
    SERVICE_EXIT_CODE:      0
    CHECKPOINT:             0
    WAIT_HINT:              0
    
    
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\FltMgr
    	AttachWhenLoaded              REG_DWORD		1
    	DisplayName                   REG_SZ		@%SystemRoot%\system32\drivers\fltmgr.sys,-10001
    	Group                         REG_SZ		FSFilter Infrastructure
    	ImagePath                     REG_EXPAND_SZ	system32\drivers\fltmgr.sys
    	Description                   REG_SZ		@%SystemRoot%\system32\drivers\fltmgr.sys,-10000
    	ErrorControl                  REG_DWORD		3
    	Start                         REG_DWORD		0
    	Tag                           REG_DWORD		1
    	Type                          REG_DWORD		2
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\FltMgr\Enum
    	0                             REG_SZ		Root\LEGACY_FLTMGR\0000
    	Count                         REG_DWORD		1
    	NextInstance                  REG_DWORD		1
    
    
    C:\Windows\system32\drivers\fltmgr.sys
    File Size: 289664    BYTES	FileVersion: 6.1.7601.17514	MD5: [da6b67270fd9db3697b20fce94950741]
    C:\Windows\SysWOW64\mscomctl.ocx
    File Size: 1081616   BYTES	FileVersion: 6.1.97.82	MD5: [ecc7d7f0d3446de36045d1d9e964fafe]
    C:\Windows\SysWOW64\olepro32.dll
    File Size: 90112     BYTES	FileVersion: 6.1.7601.17514	MD5: [703ffd301ab900b047337c5d40fd6f96]
    
    
    MBAM Registry Settings and License Info:
    ========================================
    --------------Settings:--------------
    Advanced: 
        AutomaticQuarantine:                                       true 
        AutostartProtection:                                       true 
        LimitedMode:                                               false 
        StartSilentMode:                                           false 
        StartupDelay:                                              -15 
    ApplicationState: 
        First-Run-After-Installation:                              false 
    General: 
        DaysUntilNotifyExpiration:                                 5 
        Language:                                                  en 
        RightClickAccess:                                          false 
        SilentErrors:                                              false 
    Logging: 
        ExportLog:                                                 true 
    Marketing: 
        LastPostScanMarketingIndex:                                2 
    Notification: 
    ProtectionTray: 
        DisplayMilliseconds:                                       3000 
    ScanHistory: 
        Duration_Complete:                                         231237 
        Duration_Driver:                                           0 
        Duration_Filesystem:                                       222 
        Duration_Heuristics:                                       702780 
        Duration_Loading:                                          0 
        Duration_MasterBootRecord:                                 0 
        Duration_Memory:                                           40000 
        Duration_PreScan:                                          22508 
        Duration_Registry:                                         21526 
        Duration_Sector:                                           0 
        Duration_Startup:                                          34877 
        ItemCount_Complete:                                        286923 
        ItemCount_Driver:                                          0 
        ItemCount_Filesystem:                                      47263 
        ItemCount_Heuristics:                                      15238 
        ItemCount_Loading:                                         0 
        ItemCount_MasterBootRecord:                                0 
        ItemCount_Memory:                                          2797 
        ItemCount_PreScan:                                         22500 
        ItemCount_Registry:                                        581 
        ItemCount_Sector:                                          0 
        ItemCount_Startup:                                         1792 
        LastScanDateEpoch:                                         1441042996117 
        LastScanType:                                              1 (Threat Scan)
    Update: 
        LastUpdate:                                                2015-08-31T17:42:53 
        NotifyInstallReady:                                        true 
        NotifyOutdatedDatabase:                                    7 
        ProxyPassword:                                              
        ProxyPort:                                                 0 
        ProxyServer:                                                
        ProxyUsername:                                              
        UseProxy:                                                  false 
        UseProxyAuthentication:                                    false 
    --------------Account:--------------
      Account Status:                                              Free 
      Expiration Time:                                             2015/07/20 22:47:07 
      Activation Time:                                             2015/07/06 18:47:10 
      Trial Used:                                                  true 
    --------------Access Policies:--------------
    
    Scheduler Queue:
    ================
    
    tasks: 
        6db0d327-935b-46c8-af72-c7dbdfdd29a6:                       
          parameters:                                               
            NotifyWhenUpdateCompletes:                             false 
            TaskType:                                              3 
          triggers:                                                 
            9cc9edce-6628-4bae-84e4-8650fa56819b:                   
              dateinterval:                                        0:0:0 
              lastscheduled:                                       Mon, 31 Aug 2015 13:38:23.132603 -0400 
              lasttriggered:                                       Mon, 06 Jul 2015 22:38:33.149353 -0400 
              nextscheduled:                                       Mon, 31 Aug 2015 14:38:23.132603 -0400 
              recovery:                                            00:00:00 
              start:                                               Mon, 06 Jul 2015 19:38:23.132603 -0400 
              timeinterval:                                        01:00:00 
              type:                                                3 
              uuid:                                                9cc9edce-6628-4bae-84e4-8650fa56819b 
          type:                                                    update 
          uuid:                                                    6db0d327-935b-46c8-af72-c7dbdfdd29a6 
        c142aa7a-18dc-47c5-a676-3eb0494eb2eb:                       
          parameters:                                               
            AutoDelete:                                            false 
            CheckForUpdatesBeforeScanStart:                        true 
            ScanConfig:                                             
              ExportLog:                                           true 
              FileSystemOption:                                    true 
              Quarantine:                                          Prompt 
              RebootSystemWhenMalwareDetected:                     false 
              ScanArchives:                                        true 
              ScanExtra:                                           true 
              ScanHeuristic:                                       true 
              ScanMemoryObjects:                                   true 
              ScanPUM:                                             2 
              ScanPUP:                                             2 
              ScanRegistry:                                        true 
              ScanRootkits:                                        false 
              ScanSource:                                          1 
              ScanStartup:                                         true 
              ScanTargets:                                          
              ScanType:                                            1 (Threat Scan)
              Silent:                                              true 
            StartTaskFromSystemAccount:                            false 
            TaskType:                                              0 
          triggers:                                                 
            8617afab-1204-42d1-94f0-f65aacdbec32:                   
              dateinterval:                                        1:0:0 
              lastscheduled:                                       Mon, 31 Aug 2015 03:49:25 -0400 
              lasttriggered:                                        
              nextscheduled:                                       Tue, 01 Sep 2015 03:49:25 -0400 
              recovery:                                            23:00:00 
              start:                                               Tue, 07 Jul 2015 03:49:25 -0400 
              timeinterval:                                        00:00:00 
              type:                                                4 
              uuid:                                                8617afab-1204-42d1-94f0-f65aacdbec32 
          type:                                                    scan 
          uuid:                                                    c142aa7a-18dc-47c5-a676-3eb0494eb2eb 
    
    Pending File Rename Operations: 
    ================================
    If any Malwarebytes Anti-Malware items are listed below, the user must reboot to complete a Malwarebytes Anti-Malware upgrade installation.
    
    MBAMProtector Registry Values:
    ==============================
    
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector
    	Type                          REG_DWORD		2
    	Start                         REG_DWORD		3
    	ErrorControl                  REG_DWORD		1
    	ImagePath                     REG_EXPAND_SZ	\??\C:\Windows\system32\drivers\mbam.sys
    	Group                         REG_SZ		FSFilter Anti-Virus
    	DependOnService               REG_MULTI_SZ	FltMgr
    
    	WOW64                         REG_DWORD		1
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Instances
    	DefaultInstance               REG_SZ		MBAMProtector Instance
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Instances\MBAMProtector Instance
    	Altitude                      REG_SZ		328800
    	Flags                         REG_DWORD		0
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Parameters
    	PassThruFile                  REG_SZ		mbampt.exe
    	ProductPath                   REG_SZ		C:\Program Files (x86)\Malwarebytes Anti-Malware
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Enum
    	0                             REG_SZ		Root\LEGACY_MBAMPROTECTOR\0000
    	Count                         REG_DWORD		1
    	NextInstance                  REG_DWORD		1
    
    MBAMService Registry Values:
    ============================
    
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMService
    	Type                          REG_DWORD		16
    	Start                         REG_DWORD		2
    	ErrorControl                  REG_DWORD		1
    	ImagePath                     REG_EXPAND_SZ	"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
    	DependOnService               REG_MULTI_SZ	MBAMProtector
    
    	WOW64                         REG_DWORD		1
    	ObjectName                    REG_SZ		LocalSystem
    	Description                   REG_SZ		Malwarebytes Anti-Malware service
    	DelayedAutostart              REG_DWORD		0
    
    MBAMScheduler Registry Values:
    ==============================
    
    
    
    Terminal Services Status for (null) entries in PM logs and GetUserToken errors:
    ===============================================================================
    
    --------------TERMService:--------------
    Type:                   32
    State:                  1 (The service is not running.) (State is stopped)
    WIN32_EXIT_CODE:        1077
    SERVICE_EXIT_CODE:      0
    CHECKPOINT:             0
    WAIT_HINT:              0
    
    
    TermService Start is set to: 3 (Manual Startup)
    
    Proxy Status: No proxy is Set
    
    LAN Settings:
    =============
    
    only 'Automatically detect settings' is selected
    
    SystemPartition:
    ================
    
    HKEY_LOCAL_MACHINE\SYSTEM\Setup\
    	SystemPartition	REG_SZ		\Device\HarddiskVolume1
    
    Balloon Tips Status:
    ====================
    
    Enabled
    
    Time Format Settings:
    =====================
    
    Should be:
    		h:mm:ss tt
    		AM 
    		PM 
    		:
    
    Currently:
    REG_SZ		h:mm:ss tt
    REG_SZ		AM
    REG_SZ		PM
    REG_SZ		:
    
    Language and Regional Settings:
    ===============================
    
    ACP: 	Language is English (United States)
    MACCP: 	Language is English (United States)
    OEMCP: 	Language is English (United States)
    
    Startup Folders for Error_Expanding_Variables Check:
    ====================================================
    
    All Users Startup Folder Exists.
    Current User's Startup Folder Exists.
    
    
    Context Menu Entries:
    =====================
    
    
    
    
    
    
    
    
    
    
    
    
    
    
    
    
    List of MBAM Related Directories:
    =================================
    
    C:\Program Files (x86)\Malwarebytes Anti-Malware\
    7z.dll                                  	File Size: 920888    BYTES	FileVersion:  9.20.0.0       MD5: [90cc5c5c5347eee0909d5bbbe4ea4321]
    changes.txt                             	File Size: 3003      BYTES	FileVersion:  N/A            MD5: [17b6dc5b45f9558ea11ee7b95da9b684]
    cloud-enumeration.dll                   	File Size: 286008    BYTES	FileVersion:  1.0.0.0        MD5: [932c98b79d8dc1409d6c74efd715135e]
    cloud.dll                               	File Size: 351544    BYTES	FileVersion:  1.0.0.0        MD5: [5d383e601d77e4e82b64c6c3e4b823b3]
    license.rtf                             	File Size: 235316    BYTES	FileVersion:  N/A            MD5: [5980b191ffe5d53bfef600b97ad533b5]
    master.conf                             	File Size: 1258      BYTES	FileVersion:  N/A            MD5: [9702ca5e82d3756c6d8af34a2ababaea]
    mbam.dll                                	File Size: 602936    BYTES	FileVersion:  1.0.37.0       MD5: [a3043182dcef5612c928517985bd545a]
    mbam.exe                                	File Size: 6554424   BYTES	FileVersion:  2.3.55.0       MD5: [abff2b3a80aa5348be5e43efd6b415d1]
    mbamcore.dll                            	File Size: 1971512   BYTES	FileVersion:  1.3.11.0       MD5: [51b5bea5015b2e37c4f4d496441f8369]
    mbamdor.exe                             	File Size: 54072     BYTES	FileVersion:  1.0.1.0        MD5: [a994a921e954ba55bea4cc8767f64e0f]
    mbamext.dll                             	File Size: 310584    BYTES	FileVersion:  3.0.6.0        MD5: [7a4c3c98cc41d06e26cc4cc5d9d06200]
    mbampt.exe                              	File Size: 39736     BYTES	FileVersion:  1.0.0.0        MD5: [f872caff0cc1fe69d55cbb10c087a00a]
    mbamresearch.exe                        	File Size: 1947960   BYTES	FileVersion:  1.1.0.0        MD5: [7fb4e7cfabfdc99b88165ecfc0c532c5]
    mbamscheduler.exe                       	File Size: 1871160   BYTES	FileVersion:  3.1.3.0        MD5: [301e3fdfcf33640bb8763ba444bc5093]
    mbamservice.exe                         	File Size: 1133880   BYTES	FileVersion:  3.2.13.0       MD5: [83c982a395d00baff6515fb38424ea76]
    mbamsrv.dll                             	File Size: 3841336   BYTES	FileVersion:  2.1.2.0        MD5: [b3273340603058e7e89964abeea0aa4b]
    msvcp100.dll                            	File Size: 421688    BYTES	FileVersion:  10.0.40219.325 MD5: [650f2286252c8854ac5846940d181d3a]
    msvcr100.dll                            	File Size: 774456    BYTES	FileVersion:  10.0.40219.325 MD5: [005f96c221719c03671c0262a4a93521]
    Qt5Core.dll                             	File Size: 4645688   BYTES	FileVersion:  5.4.1.0        MD5: [a8fceb6261751b709a84ce4a3726439f]
    Qt5Gui.dll                              	File Size: 4639032   BYTES	FileVersion:  5.4.1.0        MD5: [cdfa353db0a56a394b1fd8346c905069]
    Qt5Network.dll                          	File Size: 672056    BYTES	FileVersion:  5.4.1.0        MD5: [e4fd655cc85eb6063a8cef66f4e5ed55]
    Qt5Widgets.dll                          	File Size: 4473656   BYTES	FileVersion:  5.4.1.0        MD5: [5a48fe8fc8b20960713e172a83cca0f5]
    Third-party-notices.txt                 	File Size: 70041     BYTES	FileVersion:  N/A            MD5: [915ab4fe416654fbc412019a0a1002ac]
    unins000.dat                            	File Size: 30445     BYTES	FileVersion:  N/A            MD5: [85457167dfd205ef1a21deadabd11559]
    unins000.exe                            	File Size: 718037    BYTES	FileVersion:  51.52.0.0      MD5: [d2796ecf50731e696f0c065d24c0827a]
    
    C:\Program Files (x86)\Malwarebytes Anti-Malware\\Chameleon
    
    C:\Program Files (x86)\Malwarebytes Anti-Malware\\Chameleon\Windows
    chameleon.chm                           	File Size: 235882    BYTES	FileVersion:  N/A            MD5: [c4190b71f037714aa77aba294434ba5b]
    firefox.com                             	File Size: 893752    BYTES	FileVersion:  3.1.25.0       MD5: [0692c8163852ab5674e2eb3b36131ef3]
    firefox.exe                             	File Size: 893752    BYTES	FileVersion:  3.1.25.0       MD5: [0692c8163852ab5674e2eb3b36131ef3]
    firefox.pif                             	File Size: 893752    BYTES	FileVersion:  3.1.25.0       MD5: [0692c8163852ab5674e2eb3b36131ef3]
    firefox.scr                             	File Size: 893752    BYTES	FileVersion:  3.1.25.0       MD5: [0692c8163852ab5674e2eb3b36131ef3]
    iexplore.exe                            	File Size: 893752    BYTES	FileVersion:  3.1.25.0       MD5: [0692c8163852ab5674e2eb3b36131ef3]
    mbam-chameleon.com                      	File Size: 893752    BYTES	FileVersion:  3.1.25.0       MD5: [0692c8163852ab5674e2eb3b36131ef3]
    mbam-chameleon.exe                      	File Size: 893752    BYTES	FileVersion:  3.1.25.0       MD5: [0692c8163852ab5674e2eb3b36131ef3]
    mbam-chameleon.pif                      	File Size: 893752    BYTES	FileVersion:  3.1.25.0       MD5: [0692c8163852ab5674e2eb3b36131ef3]
    mbam-chameleon.scr                      	File Size: 893752    BYTES	FileVersion:  3.1.25.0       MD5: [0692c8163852ab5674e2eb3b36131ef3]
    mbam-killer.exe                         	File Size: 1496888   BYTES	FileVersion:  3.0.13.0       MD5: [10ddd12d628a5388865f2ae25019dd76]
    rundll32.exe                            	File Size: 893752    BYTES	FileVersion:  3.1.25.0       MD5: [0692c8163852ab5674e2eb3b36131ef3]
    svchost.exe                             	File Size: 893752    BYTES	FileVersion:  3.1.25.0       MD5: [0692c8163852ab5674e2eb3b36131ef3]
    windows.exe                             	File Size: 893752    BYTES	FileVersion:  3.1.25.0       MD5: [0692c8163852ab5674e2eb3b36131ef3]
    winlogon.exe                            	File Size: 893752    BYTES	FileVersion:  3.1.25.0       MD5: [0692c8163852ab5674e2eb3b36131ef3]
    
    C:\Program Files (x86)\Malwarebytes Anti-Malware\\imageformats
    qgif.dll                                	File Size: 28472     BYTES	FileVersion:  5.4.1.0        MD5: [8858629a544c7c0536c35561040a2d78]
    
    C:\Program Files (x86)\Malwarebytes Anti-Malware\\Languages
    lang_ar.qm                              	File Size: 87320     BYTES	FileVersion:  N/A            MD5: [7a7c7e14fcf3f14d6b269295e877750c]
    lang_bg.qm                              	File Size: 109563    BYTES	FileVersion:  N/A            MD5: [654b95c228a72131aca7cb26e964dcf9]
    lang_ca.qm                              	File Size: 92640     BYTES	FileVersion:  N/A            MD5: [533208d2306e5ad1e5972650f69d8c22]
    lang_cs.qm                              	File Size: 105006    BYTES	FileVersion:  N/A            MD5: [508844d9e9aa364aa53bc77adf4f42a8]
    lang_da.qm                              	File Size: 88045     BYTES	FileVersion:  N/A            MD5: [e3bc3cdfcf360d319319299d8cd66506]
    lang_de.qm                              	File Size: 133736    BYTES	FileVersion:  N/A            MD5: [9b6c6a0d6bc188c1d86ea9342b8035da]
    lang_el.qm                              	File Size: 126414    BYTES	FileVersion:  N/A            MD5: [3d112a79eca581d1775fd96b3c5870bb]
    lang_en.qm                              	File Size: 2849      BYTES	FileVersion:  N/A            MD5: [d495fecf1db29d41317196416d5ea6c2]
    lang_es.qm                              	File Size: 132948    BYTES	FileVersion:  N/A            MD5: [455f47414f13f8942ee6652dd194c46a]
    lang_et.qm                              	File Size: 107454    BYTES	FileVersion:  N/A            MD5: [ef9d8fcc151759a2cf100afe2889d5e5]
    lang_fi.qm                              	File Size: 89336     BYTES	FileVersion:  N/A            MD5: [09f12751811f8c1a46f6308ab1968ff7]
    lang_fr.qm                              	File Size: 136774    BYTES	FileVersion:  N/A            MD5: [581b5833e2fa89003ff8349390323790]
    lang_he.qm                              	File Size: 98616     BYTES	FileVersion:  N/A            MD5: [a9cb152f93da040fb9451d750f359c3e]
    lang_hu.qm                              	File Size: 108619    BYTES	FileVersion:  N/A            MD5: [042e132aa420bb7807dc6ea150d21c84]
    lang_id.qm                              	File Size: 105573    BYTES	FileVersion:  N/A            MD5: [1352510fd6296523d239363d90d493ad]
    lang_it.qm                              	File Size: 129004    BYTES	FileVersion:  N/A            MD5: [993c14184487084aedf79471b337606b]
    lang_ja.qm                              	File Size: 73730     BYTES	FileVersion:  N/A            MD5: [e1ae65ac342628156abb2cdc36508929]
    lang_ko.qm                              	File Size: 85538     BYTES	FileVersion:  N/A            MD5: [e495736a22b566cd27cef405507c0b55]
    lang_lt.qm                              	File Size: 90775     BYTES	FileVersion:  N/A            MD5: [2605701cc94ca4ee2ef0be3aaa617d64]
    lang_lv.qm                              	File Size: 90647     BYTES	FileVersion:  N/A            MD5: [c9dda1e18b4869c60b8df14907dd5e46]
    lang_nl.qm                              	File Size: 128186    BYTES	FileVersion:  N/A            MD5: [193e199cefe0429da41d564af35786e7]
    lang_no.qm                              	File Size: 118156    BYTES	FileVersion:  N/A            MD5: [a7a243c9ac9e1efc71f8cdeb8c6ed4bf]
    lang_pl.qm                              	File Size: 128623    BYTES	FileVersion:  N/A            MD5: [9e4c6ca1532843c77ddb07b8a1bcac08]
    lang_pt_BR.qm                           	File Size: 131550    BYTES	FileVersion:  N/A            MD5: [418b8766d7e7a2a4806ed4d97d18e80f]
    lang_pt_PT.qm                           	File Size: 131702    BYTES	FileVersion:  N/A            MD5: [34f70f2a89733552373fa935200c2a0a]
    lang_ro.qm                              	File Size: 90440     BYTES	FileVersion:  N/A            MD5: [24bf3ee283cf5a3fd4c93bba6c9fc12b]
    lang_ru.qm                              	File Size: 132186    BYTES	FileVersion:  N/A            MD5: [08e1303dba20e8e1957ae1de2ccb4550]
    lang_sk.qm                              	File Size: 89139     BYTES	FileVersion:  N/A            MD5: [82ddef8ec6d13b1d4601e7104243ecc9]
    lang_sl.qm                              	File Size: 107472    BYTES	FileVersion:  N/A            MD5: [c8e3fae6ae3980aec292baa6cb8eac89]
    lang_sv.qm                              	File Size: 105939    BYTES	FileVersion:  N/A            MD5: [646ad8e20658650d4d1daa63b5abb9b6]
    lang_tr.qm                              	File Size: 88788     BYTES	FileVersion:  N/A            MD5: [6c4e9b16e496ab46d4a1d3333d972762]
    lang_vi.qm                              	File Size: 105393    BYTES	FileVersion:  N/A            MD5: [d1b2c9264ef72792b53255d4dfeb3098]
    lang_zh_TW.qm                           	File Size: 87358     BYTES	FileVersion:  N/A            MD5: [1ebfe79770cf695df897750b3c2d5a08]
    
    C:\Program Files (x86)\Malwarebytes Anti-Malware\\platforms
    qwindows.dll                            	File Size: 928568    BYTES	FileVersion:  5.4.1.0        MD5: [15d93b1f5171eacf7724b2f728a064c4]
    
    C:\Program Files (x86)\Malwarebytes Anti-Malware\\Plugins
    fixdamage.exe                           	File Size: 821560    BYTES	FileVersion:  1.1.0.1010     MD5: [57da74e5d020877f0aa23133081a1d5c]
    
    C:\Users\Owner\AppData\Roaming\Malwarebytes\Malwarebytes Anti-Malware
    
    C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware
    actions.ref                             	File Size: 2936      BYTES	FileVersion:  N/A            MD5: [e3c1b99d5f0fac05c13d1b160528b1f5]
    akadomains.ref                          	File Size: 595747    BYTES	FileVersion:  N/A            MD5: [853998ae816b05cc3e662826dc67ad73]
    akaips.ref                              	File Size: 308509    BYTES	FileVersion:  N/A            MD5: [36d863774121705f670e574df12f7055]
    domains.ref                             	File Size: 94        BYTES	FileVersion:  N/A            MD5: [da07da8abeb59d060bc709b28e62bb94]
    exclusions.dat                          	File Size: 0         BYTES	FileVersion:  N/A            MD5: [d41d8cd98f00b204e9800998ecf8427e]
    ips.ref                                 	File Size: 35        BYTES	FileVersion:  N/A            MD5: [c78acab9f50caa91df2cc3302080c012]
    mbamdor.exe                             	File Size: 54072     BYTES	FileVersion:  1.0.1.0        MD5: [a994a921e954ba55bea4cc8767f64e0f]
    rules.ref                               	File Size: 10049051  BYTES	FileVersion:  N/A            MD5: [1f293b8aae35a82dcddb5da79d4c921a]
    swissarmy.ref                           	File Size: 25954     BYTES	FileVersion:  N/A            MD5: [2c81587c27a36ed4925f2942c7a56053]
    
    C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Configuration
    build.conf                              	File Size: 4609      BYTES	FileVersion:  N/A            MD5: [7d95cfdeb5b9b1a121047222d581b611]
    database.conf                           	File Size: 4         BYTES	FileVersion:  N/A            MD5: [2261e7eca4cd0615a97263c0ad5045c2]
    gatekeeper.conf                         	File Size: 4         BYTES	FileVersion:  N/A            MD5: [2261e7eca4cd0615a97263c0ad5045c2]
    license.conf                            	File Size: 1482      BYTES	FileVersion:  N/A            MD5: [e871e89c2e423fbd366d7807c9b4a75f]
    manifest.conf                           	File Size: 3385      BYTES	FileVersion:  N/A            MD5: [df94867bcff30b5382de543d929a5de1]
    marketing.conf                          	File Size: 10965     BYTES	FileVersion:  N/A            MD5: [84ab9b09a13b872629439986d863683d]
    net.conf                                	File Size: 6905      BYTES	FileVersion:  N/A            MD5: [dd3cde669b79178c628cf1fcb7ed95f5]
    notifications.conf                      	File Size: 4         BYTES	FileVersion:  N/A            MD5: [2261e7eca4cd0615a97263c0ad5045c2]
    scheduler.conf                          	File Size: 2076      BYTES	FileVersion:  N/A            MD5: [acde02c1ec524cb70b3962e3e54efcd1]
    settings.conf                           	File Size: 2064      BYTES	FileVersion:  N/A            MD5: [b523435567dda00b83aabc045d63e1b5]
    statistics.conf                         	File Size: 513       BYTES	FileVersion:  N/A            MD5: [7a4a30d121c6f37f7856eb3b0cdcb18f]
    
    C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Configuration\Restore
    build.conf                              	File Size: 4194      BYTES	FileVersion:  N/A            MD5: [402aa68f7a914337069a7a826a856503]
    database.conf                           	File Size: 4         BYTES	FileVersion:  N/A            MD5: [2261e7eca4cd0615a97263c0ad5045c2]
    gatekeeper.conf                         	File Size: 4         BYTES	FileVersion:  N/A            MD5: [2261e7eca4cd0615a97263c0ad5045c2]
    license.conf                            	File Size: 23        BYTES	FileVersion:  N/A            MD5: [0ec01df616b565180556881d8042255b]
    manifest.conf                           	File Size: 2836      BYTES	FileVersion:  N/A            MD5: [12da8707e6aa5c2dfafca55395a8bdbd]
    marketing.conf                          	File Size: 11105     BYTES	FileVersion:  N/A            MD5: [4bbcad9dd8e558eb9996d32f37cd25e2]
    net.conf                                	File Size: 6133      BYTES	FileVersion:  N/A            MD5: [78d9d986b84b11f36330303a86a2be82]
    notifications.conf                      	File Size: 4         BYTES	FileVersion:  N/A            MD5: [2261e7eca4cd0615a97263c0ad5045c2]
    scheduler.conf                          	File Size: 4         BYTES	FileVersion:  N/A            MD5: [2261e7eca4cd0615a97263c0ad5045c2]
    settings.conf                           	File Size: 1725      BYTES	FileVersion:  N/A            MD5: [5454026126dac24f6e96eeb0c64123d3]
    statistics.conf                         	File Size: 4         BYTES	FileVersion:  N/A            MD5: [2261e7eca4cd0615a97263c0ad5045c2]
    
    C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Logs
    mbam-log-2015-07-06 (18-48-46).xml      	File Size: 14976     BYTES	FileVersion:  N/A            MD5: [b5cdfd75b7992553b59cc6ff4dac7f1f]
    mbam-log-2015-08-31 (13-43-12).xml      	File Size: 2858      BYTES	FileVersion:  N/A            MD5: [21de8673fe723ce469c470f511a03ee1]
    protection-log-2015-07-06.xml           	File Size: 9095      BYTES	FileVersion:  N/A            MD5: [dc396810b7e2125b46f029f4862ee592]
    protection-log-2015-08-31.xml           	File Size: 4722      BYTES	FileVersion:  N/A            MD5: [ed3c82402ca0a8ec4855ecf8e0711b76]
    
    C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Quarantine
    0565129308.data                         	File Size: 882       BYTES	FileVersion:  N/A            MD5: [0b79765133cd0b7500435ed00349175f]
    0927950399.data                         	File Size: 731       BYTES	FileVersion:  N/A            MD5: [269e7651d44172efa06bc01699da9b47]
    0927950399.quar                         	File Size: 1160      BYTES	FileVersion:  N/A            MD5: [356a5d6bad309b8686c8e7eef48f6513]
    0928990939.data                         	File Size: 836       BYTES	FileVersion:  N/A            MD5: [608eefe9bb07215b70d70eabe6e68e98]
    0929494326.data                         	File Size: 721       BYTES	FileVersion:  N/A            MD5: [3191bceceaefd484dde2581ecf62d947]
    0929494326.quar                         	File Size: 1547      BYTES	FileVersion:  N/A            MD5: [b1341651c66cbc209bc7b52a8b7b3f6f]
    1074617383.data                         	File Size: 698       BYTES	FileVersion:  N/A            MD5: [7cbfddc4e9ca872357f5d2bd7035bca7]
    1074617383.quar                         	File Size: 1304960   BYTES	FileVersion:  N/A            MD5: [5c2219e0d1293246c7eb447f0576d5bf]
    1202830986.data                         	File Size: 707       BYTES	FileVersion:  N/A            MD5: [afb49f4e292dcb16fcfae273c21624d1]
    1288373641.data                         	File Size: 782       BYTES	FileVersion:  N/A            MD5: [c2313eaf01f52cf2c0a9f156027094af]
    1288373641.quar                         	File Size: 594       BYTES	FileVersion:  N/A            MD5: [b91e89dc8ce2870d8df6c1d8b6993b08]
    1607812474.data                         	File Size: 716       BYTES	FileVersion:  N/A            MD5: [ff858292aca42539e07cea0aec0d3d0e]
    1607812474.quar                         	File Size: 212480    BYTES	FileVersion:  N/A            MD5: [c5d17bb8b11e60d876463da3d714eb2b]
    1702817776.data                         	File Size: 705       BYTES	FileVersion:  N/A            MD5: [2fb832a0055d80ee855189a0b1aaf42c]
    1704374131.data                         	File Size: 713       BYTES	FileVersion:  N/A            MD5: [c559b4a940a79e2681cb99a9d8da8c10]
    2280543244.data                         	File Size: 701       BYTES	FileVersion:  N/A            MD5: [84c7d40f7c5da3af8a1176c54c03ff37]
    2808203766.data                         	File Size: 713       BYTES	FileVersion:  N/A            MD5: [acee042aafff6a158f5b7b2b487e0b67]
    3396616343.data                         	File Size: 724       BYTES	FileVersion:  N/A            MD5: [a1035818e11e610c84c43f8434f71e0b]
    3396616343.quar                         	File Size: 89451     BYTES	FileVersion:  N/A            MD5: [d49494b1b2aa609edeb951304a7121ce]
    3617283194.data                         	File Size: 737       BYTES	FileVersion:  N/A            MD5: [f48dc54f76696a48662ec9d939da07bd]
    3617283194.quar                         	File Size: 756       BYTES	FileVersion:  N/A            MD5: [fe08d0d05eaf93a0e87aec342bf49b2a]
    3828091727.data                         	File Size: 714       BYTES	FileVersion:  N/A            MD5: [18111bbb9d940afa8b99eb834d0ac9fc]
    3900499457.data                         	File Size: 704       BYTES	FileVersion:  N/A            MD5: [a10154cfbdf4bd0e45db2fdfae05dd6b]
    3900499457.quar                         	File Size: 2676      BYTES	FileVersion:  N/A            MD5: [eda77a849e09663660d9413351d35ba7]
    5192421095.data                         	File Size: 705       BYTES	FileVersion:  N/A            MD5: [2b741ec4078115f1305ac233a531d309]
    5192421095.quar                         	File Size: 108008    BYTES	FileVersion:  N/A            MD5: [5dfc4b3429ebb426dd23c18d1fd9c92f]
    6268048514.data                         	File Size: 735       BYTES	FileVersion:  N/A            MD5: [1cb7eccfb077ea02f642e89b801d46f8]
    6268048514.quar                         	File Size: 936       BYTES	FileVersion:  N/A            MD5: [8db796b8e1b7fa7e2300c32f603bb5e8]
    6451115151.data                         	File Size: 782       BYTES	FileVersion:  N/A            MD5: [9169de65eaa46017b4c9d9668512788e]
    6451115151.quar                         	File Size: 594       BYTES	FileVersion:  N/A            MD5: [64f5f7f4591b7455bc8fa8f8cacf4739]
    6621931694.data                         	File Size: 724       BYTES	FileVersion:  N/A            MD5: [7b6282eda1ed61ab60e2a0bc8142ab9e]
    6621931694.quar                         	File Size: 32        BYTES	FileVersion:  N/A            MD5: [a95b766bbc95ece6d005bd3083f93fcf]
    6689531313.data                         	File Size: 757       BYTES	FileVersion:  N/A            MD5: [585c49a7dd02282b27ea3008b812969e]
    6689531313.quar                         	File Size: 2808      BYTES	FileVersion:  N/A            MD5: [607541d5ad0a02970274053ee9c016a3]
    7543964477.data                         	File Size: 710       BYTES	FileVersion:  N/A            MD5: [d1a5a096742d76d333af4397ec0425aa]
    7682807836.data                         	File Size: 714       BYTES	FileVersion:  N/A            MD5: [187f6f47b1b4c261ab34dca53fff8bbe]
    7959108061.data                         	File Size: 724       BYTES	FileVersion:  N/A            MD5: [f0ed26cdfe266a971bfb408dbd8bc74a]
    7959108061.quar                         	File Size: 446747    BYTES	FileVersion:  N/A            MD5: [4bfc3d881dedd0e6668fe1b4b02c1203]
    8152161659.data                         	File Size: 723       BYTES	FileVersion:  N/A            MD5: [845ba081dbd0332f20c0bcf80bb1edd2]
    8187560159.quar                         	File Size: 0         BYTES	FileVersion:  N/A            MD5: [d41d8cd98f00b204e9800998ecf8427e]
    8781624343.data                         	File Size: 710       BYTES	FileVersion:  N/A            MD5: [ccd7aa7a5e978f524d6d9078121fd5f4]
    9167978793.data                         	File Size: 882       BYTES	FileVersion:  N/A            MD5: [3e989cc520157077dbd0d470758be4da]
    9377974174.data                         	File Size: 751       BYTES	FileVersion:  N/A            MD5: [6c4dfc61c6e157997492ccc14692bffb]
    9377974174.quar                         	File Size: 98304     BYTES	FileVersion:  N/A            MD5: [eb966f9e20bd392210fafaa578f1fcbd]
    
    Malware Exclusions:
    ===================
    Unable to access exclusion information: Error code 20001Web Exclusions:
    ================
    Unable to access exclusion information: Error code 20001Quarantined Items:
    ===================
    Unable to access quarantine information: Error code 20001===============================================================
    END OF FILE

    # AdwCleaner v5.004 - Logfile created 31/08/2015 at 14:16:31
    # Updated 26/08/2015 by Xplode
    # Database : 2015-08-30.1 [Server]
    # Operating system : Windows 7 Home Premium Service Pack 1 (x64)
    # Username : Owner - DAVID
    # Running from : C:\Users\Owner\Downloads\adwcleaner_5.004.exe
    # Option : Cleaning
    # Support : http://toolslib.net/forum

    ***** [ Services ] *****

    [x] Service Not Deleted : CouponPrinterService

    ***** [ Folders ] *****

    [-] Folder Deleted : C:\Program Files (x86)\Coupons
    [!] Folder Not Deleted : C:\Program Files (x86)\Coupons
    [-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Coupons
    [!] Folder Not Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Coupons
    [-] Folder Deleted : C:\Users\Owner\AppData\Roaming\K9AMW
    [-] Folder Deleted : C:\Users\Owner\AppData\Roaming\K9Tools
    [-] Folder Deleted : C:\Users\Owner\Documents\Genesis

    ***** [ Files ] *****

    [-] File Deleted : C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\fnobbjsw.default-1392478065003\user.js
    [-] File Deleted : C:\Users\Owner\Desktop\Live PC Help.lnk
    [-] File Deleted : C:\Windows\Sysnative\roboot64.exe

    ***** [ Shortcuts ] *****


    ***** [ Scheduled tasks ] *****


    ***** [ Registry ] *****

    [-] Key Deleted : HKLM\SOFTWARE\Classes\Applications\ilividsetup.exe
    [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
    [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10921475-03CE-4E04-90CE-E2E7EF20C814}
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{10921475-03CE-4E04-90CE-E2E7EF20C814}
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{0E1FE4D8-70CE-417E-8FF4-C2B17FF3DD07}
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{13B8FF9D-DEB0-4070-B846-D049218307B3}
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1E877590-30B7-400E-A835-B942489EB7BC}
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}
    [-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
    [-] Key Deleted : HKCU\Software\K9Tools
    [-] Key Deleted : HKCU\Software\Burn4Free
    [-] Key Deleted : HKLM\SOFTWARE\Conduit
    [-] Key Deleted : HKLM\SOFTWARE\K9Tools
    [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Coupon Printer for Windows5.0.1.4
    [!] Key Not Deleted : [x64] HKCU\Software\K9Tools
    [!] Key Not Deleted : [x64] HKCU\Software\Burn4Free
    [-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
    [-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
    [-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\SearchUrl []
    [-] Data Restored : HKU\S-1-5-21-2383782337-837215056-1308495511-1000\Software\Microsoft\Internet Explorer\SearchUrl []
    [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3CCA4B1C-FEE3-4ABF-9CFB-3B14A8691F1B}
    [!] Key Not Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3CCA4B1C-FEE3-4ABF-9CFB-3B14A8691F1B}
    [!] Key Not Deleted : HKU\S-1-5-21-2383782337-837215056-1308495511-1000\Software\Microsoft\Internet Explorer\SearchScopes\{3CCA4B1C-FEE3-4ABF-9CFB-3B14A8691F1B}

    ***** [ Web browsers ] *****


    *************************

    :: Winsock settings cleared

    ########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [3551 bytes] ##########

     

     

    ÿþE#m#s#i#s#o#f#t# #E#m#e#r#g#e#n#c#y# #K#i#t# #-# #V#e#r#s#i#o#n# #1#0#.#0#

     

    It seems that the EMSISOFT report did not come through. I have a screen shot of the results if that would help.



    #9 dc3

    dc3

      Bleeping Treehugger


    • Members
    • 30,595 posts
    • OFFLINE
    •  
    • Gender:Male
    • Location:Sierra Foothills of Northern Ca.
    • Local time:02:12 PM

    Posted 31 August 2015 - 03:28 PM

    Let's see the screenshot.


    Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

     

     

     

     


    #10 Godlover

    Godlover
    • Topic Starter

    • Members
    • 60 posts
    • OFFLINE
    •  
    • Gender:Male
    • Location:Puerto Rico
    • Local time:05:12 PM

    Posted 04 September 2015 - 08:14 PM

    I am sorry, I have been thinking that I sent the report and have been waiting for response as to what is next.

    I do not see how to attach a file to send.



    #11 dc3

    dc3

      Bleeping Treehugger


    • Members
    • 30,595 posts
    • OFFLINE
    •  
    • Gender:Male
    • Location:Sierra Foothills of Northern Ca.
    • Local time:02:12 PM

    Posted 05 September 2015 - 09:10 AM

    You can post the screenshot in your next post as an attachment.  
     
    Just below the area where you write text in a post there is the Post button, to the right of this is More Reply Options
     
    Post2_zpsf05c0430.png
     
    When you click on More Relpy Options  you will see Attach Files and Browse, click on Browse, this will open Pictures on your computer, click on the image you want to post, then click on Attach This File, then Add Reply.
     
    BCreply1_zpsc36d42fc.png 

    Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

     

     

     

     


    #12 Queen-Evie

    Queen-Evie

      Official Bleepin' G.R.I.T.S. (and proud of it)


    • Members
    • 16,485 posts
    • OFFLINE
    •  
    • Gender:Female
    • Location:My own little corner of the universe (somewhere in Alabama). It's OK, they know me here
    • Local time:04:12 PM

    Posted 05 September 2015 - 09:22 AM

    You can post the screenshot in your next post as an attachment.


    Attachments are not allowed in Am I Infected.

    Attachments are allowed only certain forums.

    For reference, here is a list of which sub-forums allow the use of attachments.

    Operating Systems Forum
    Windows 95/98/ME
    Windows XP Home and Professional
    Windows NT/2000/2003/2008
    Windows Vista
    Windows 7
    Windows 8

    Hardware Forum
    Internal Hardware

    Security Forum
    Virus, Trojan, Spyware, and Malware Removal Logs

    #13 Queen-Evie

    Queen-Evie

      Official Bleepin' G.R.I.T.S. (and proud of it)


    • Members
    • 16,485 posts
    • OFFLINE
    •  
    • Gender:Female
    • Location:My own little corner of the universe (somewhere in Alabama). It's OK, they know me here
    • Local time:04:12 PM

    Posted 05 September 2015 - 09:22 AM

    You can post the screenshot in your next post as an attachment.


    Attachments are not allowed in Am I Infected.

    Attachments are allowed only certain forums.

    For reference, here is a list of which sub-forums allow the use of attachments.

    Operating Systems Forum
    Windows 95/98/ME
    Windows XP Home and Professional
    Windows NT/2000/2003/2008
    Windows Vista
    Windows 7
    Windows 8

    Hardware Forum
    Internal Hardware

    Security Forum
    Virus, Trojan, Spyware, and Malware Removal Logs

    #14 dc3

    dc3

      Bleeping Treehugger


    • Members
    • 30,595 posts
    • OFFLINE
    •  
    • Gender:Male
    • Location:Sierra Foothills of Northern Ca.
    • Local time:02:12 PM

    Posted 05 September 2015 - 09:34 AM

    Use the snipping tool or take a screenshot to create an image.

     

    Open an account at Photobucket and upload the image there.  

     

    In the Library place you mouse pointer in the upper left portion of the image and a menu will open.

     

    Click on  Share Links, under Photo Links click on IMG.  This will copy the link to this image.

     

    Paste the link in this topic.


    Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

     

     

     

     


    #15 Godlover

    Godlover
    • Topic Starter

    • Members
    • 60 posts
    • OFFLINE
    •  
    • Gender:Male
    • Location:Puerto Rico
    • Local time:05:12 PM

    Posted 05 September 2015 - 10:34 AM

    Finally here it is.

    http://i173.photobucket.com/albums/w67/David_Lamar_Shumway/Capture%20EMSISOFT_zps82o0vgvf.png

     

    I also find that something is causing a 2 o3 second sound clip to play at times.  It seems that something could be related to actions that I initiciate.  could this be something of maleware?






    0 user(s) are reading this topic

    0 members, 0 guests, 0 anonymous users