Your browser isn't supported
It looks like you're using an old web browser. To get the most out of the site and to ensure guides display correctly, we suggest upgrading your browser now. Download the latest:

Welcome to the MSE Forums

We're home to a fantastic community of MoneySavers but anyone can post. Please exercise caution & report spam, illegal, offensive or libellous posts/messages: click "report" or email forumteam@. Skimlinks & other affiliated links are turned on

Search
  • FIRST POST
    Crimson60
    Can't click on links successfully
    • #1
    • 29th Apr 13, 1:23 PM
    Can't click on links successfully 29th Apr 13 at 1:23 PM
    Hello

    If anyone can help it will be much appreciated. On Internet Explorer Browser or Firefox I now don't have any success clicking on a link on a website. I used to be able to click on a link and go straight through without any problem. I haven't intentionally changed anything on my computer lately.

    This is the sort of notice which comes up when I click on a link:

    "Unable to connect

    Firefox can't establish a connection to the server at www.googleadservices.com." It is a similar notice on Internet Explorer.

    It seems to happen on any website and not just on any particular ones I notice.

    I'm not sure if it could be related at all but I notice that quite recently my screen seems to freeze, just occasionally, for a few seconds before going back to normal.

    Thank you in advance for any advice.

    Crimson
    Last edited by Crimson60; 29-04-2013 at 1:28 PM.
Page 1
  • danthemoneysavingman
    • #2
    • 29th Apr 13, 2:35 PM
    • #2
    • 29th Apr 13, 2:35 PM
    its possible you need to update your browsers to a more recent version. What version of IE and of Firefox are you using?
    Let me Google that for you...
  • waddler_8
    • #3
    • 29th Apr 13, 5:23 PM
    • #3
    • 29th Apr 13, 5:23 PM
    Post me a DDS log - should take 2-3 minutes.

    Download DDS from the link below and save it to your desktop:

    Link

    After you've downloaded it and saved it to your desktop:
    • Double click DDS to run it.
    • Click Start
    • When it's finished, DDS will open two logs:
    1. DDS.txt
    2. Attach.txt
    Save both reports to your desktop.

    Copy & paste the contents of just DDS.txt for now and post it here (you may need to split the log over separate posts)
  • Crimson60
    • #4
    • 29th Apr 13, 5:55 PM
    • #4
    • 29th Apr 13, 5:55 PM
    .
    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT
    .
    DDS (Ver_2012-11-20.01)
    .
    Microsoft Windows 7 Home Premium
    Boot Device: \Device\HarddiskVolume1
    Install Date: 02/11/2010 22:13:43
    System Uptime: 29/04/2013 17:33:18 (0 hours ago)
    .
    Motherboard: TOSHIBA | | Portable PC
    Processor: Pentium(R) Dual-Core CPU T4500 @ 2.30GHz | CPU | 2300/800mhz
    .
    ==== Disk Partitions =========================
    .
    C: is FIXED (NTFS) - 116 GiB total, 75.365 GiB free.
    D: is FIXED (NTFS) - 116 GiB total, 42.674 GiB free.
    E: is CDROM ()
    .
    ==== Disabled Device Manager Items =============
    .
    ==== System Restore Points ===================
    .
    RP633: 30/03/2013 15:30:36 - Windows Update
    RP634: 31/03/2013 21:10:01 - Windows Backup
    RP635: 03/04/2013 19:50:04 - Windows Update
    RP636: 07/04/2013 20:38:02 - Windows Backup
    RP637: 07/04/2013 20:41:52 - Windows Update
    RP638: 11/04/2013 13:19:39 - Windows Update
    RP639: 11/04/2013 13:43:10 - Windows Update
    RP641: 15/04/2013 12:04:03 - Windows Update
    RP642: 17/04/2013 13:29:53 - Installed Java 7 Update 21 (64-bit)
    RP643: 18/04/2013 14:15:31 - Windows Update
    RP644: 22/04/2013 18:09:33 - Windows Backup
    RP645: 22/04/2013 18:12:29 - Windows Update
    RP646: 24/04/2013 16:19:01 - Windows Update
    RP647: 25/04/2013 19:23:46 - Installed Advanced System Cleaner
    RP648: 25/04/2013 19:27:56 - PC Performer Thu, Apr 25, 13 19:27
    RP649: 25/04/2013 19:38:53 - Removed Advanced System Cleaner
    RP650: 25/04/2013 21:15:19 - Installed HiJackThis
    RP651: 28/04/2013 17:27:36 - Windows Update
    RP652: 28/04/2013 21:22:44 - Windows Backup
    .
    ==== Hosts File Hijack ======================
    .
    Hosts: 127.0.0.1 ads.mcafee.com
    Hosts: 127.0.0.1 analytics.microsoft.com
    Hosts: 127.0.0.1 metrics.bitdefender.com
    Hosts: 127.0.0.1 metrics.mcafee.com
    Hosts: 127.0.0.1 om.symantec.com
    Hosts: 127.0.0.1 ads.bleepingcomputer.com
    Hosts: 127.0.0.1 wdcs.trendmicro.com
    .
    ==== Installed Programs ======================
    .
    64 Bit HP CIO Components Installer
    Adobe AIR
    Adobe Flash Player 11 ActiveX
    Adobe Flash Player 11 Plugin
    Adobe Reader XI (11.0.02)
    Adobe Shockwave Player 11.5
    Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
    Atheros Driver Installation Program
    CCleaner
    Compatibility Pack for the 2007 Office system
    Conexant HD Audio
    D3DX10
    FileHippo.com Update Checker
    Google Chrome
    Google Toolbar for Internet Explorer
    Google Update Helper
    HiJackThis
    HitmanPro 3.7
    HP Envy 100 D410 series Basic Device Software
    HP Envy 100 D410 series Help
    HP Envy 100 D410 series Product Improvement Study
    HP Photo Creations
    HP Update
    ImagXpress
    Intel(R) Graphics Media Accelerator Driver
    Intel Matrix Storage Manager
    Java 7 Update 21 (64-bit)
    Java Auto Updater
    Java(TM) 6 Update 24
    Java(TM) 6 Update 26 (64-bit)
    Junk Mail filter update
    Malwarebytes Anti-Malware version 1.75.0.1300
    Microsoft .NET Framework 4 Client Profile
    Microsoft Application Error Reporting
    Microsoft Office File Validation Add-In
    Microsoft Office Outlook Connector
    Microsoft Office Professional Edition 2003
    Microsoft Security Client
    Microsoft Security Essentials
    Microsoft Silverlight
    Microsoft SkyDrive
    Microsoft SQL Server 2005 Compact Edition [ENU]
    Microsoft Visual C++ 2005 Redistributable
    Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
    Movie Maker
    Mozilla Firefox 21.0 (x86 en-US)
    Mozilla Maintenance Service
    MSVCRT
    MSVCRT_amd64
    MSVCRT110
    MSVCRT110_amd64
    MSXML 4.0 SP2 (KB954430)
    MSXML 4.0 SP2 (KB973688)
    neroxml
    Photo Common
    Photo Gallery
    Photo Service - powered by myphotobook
    PlayReady PC Runtime amd64
    Plusnet Assist
    Realtek USB 2.0 Card Reader
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
    SUPERAntiSpyware
    Synaptics Pointing Device Driver
    Toshiba Assist
    TOSHIBA Bulletin Board
    TOSHIBA ConfigFree
    TOSHIBA Disc Creator
    TOSHIBA Hardware Setup
    TOSHIBA HDD/SSD Alert
    Toshiba Manuals
    TOSHIBA Recovery Media Creator
    TOSHIBA Recovery Media Creator Reminder
    TOSHIBA ReelTime
    TOSHIBA Service Station
    TOSHIBA Supervisor Password
    Toshiba TEMPRO
    TOSHIBA Value Added Package
    TRORMCLauncher
    Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
    Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
    Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
    Windows Live Communications Platform
    Windows Live Essentials
    Windows Live Family Safety
    Windows Live ID Sign-in Assistant
    Windows Live Installer
    Windows Live Mail
    Windows Live Messenger
    Windows Live MIME IFilter
    Windows Live Photo Common
    Windows Live PIMT Platform
    Windows Live SOXE
    Windows Live SOXE Definitions
    Windows Live Sync
    Windows Live UX Platform
    Windows Live UX Platform Language Pack
    Windows Live Writer
    Windows Live Writer Resources
    .
    ==== Event Viewer Messages From Past Week ========
    .
    29/04/2013 12:45:33, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.
    29/04/2013 12:45:33, Error: Service Control Manager [7000] - The Windows Search service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
    29/04/2013 12:45:33, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1053" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
    29/04/2013 12:45:32, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1053" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
    29/04/2013 12:45:30, Error: Service Control Manager [7031] - The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.
    29/04/2013 12:45:29, Error: Service Control Manager [7024] - The Windows Search service terminated with service-specific error %%-1073473535.
    28/04/2013 20:35:12, Error: Service Control Manager [7000] - The MRESP50a64 NDIS Protocol Driver service failed to start due to the following error: The system cannot find the file specified.
    26/04/2013 13:27:05, Error: Service Control Manager [7023] - The McciCMService64 service terminated with the following error: %%-2147467243
    .
    ==== End Of File ===========================
  • waddler_8
    • #5
    • 29th Apr 13, 5:58 PM
    • #5
    • 29th Apr 13, 5:58 PM
    That's attach.txt - can you post dds.txt too.
  • Crimson60
    • #6
    • 29th Apr 13, 5:59 PM
    • #6
    • 29th Apr 13, 5:59 PM
    its possible you need to update your browsers to a more recent version. What version of IE and of Firefox are you using?
    Originally posted by danthemoneysavingman
    Thank you for replying, danthemoneysavingman. I'm using Internet Explorer 9 and Firefox 21.0 - do they sound recent?

    Crimson
    Last edited by Crimson60; 29-04-2013 at 6:04 PM.
  • Crimson60
    • #7
    • 29th Apr 13, 6:01 PM
    • #7
    • 29th Apr 13, 6:01 PM
    Thank you Waddler_8. I posted DDS.txt separately - I hope it is the right thing. I appreciate your help.

    Crimson
  • Crimson60
    • #8
    • 29th Apr 13, 6:04 PM
    • #8
    • 29th Apr 13, 6:04 PM
    That's attach.txt - can you post dds.txt too.
    Originally posted by waddler_8
    Sorry for the mistake, waddler_8. Is this the dds.txt?

    DDS (Ver_2012-11-20.01) - NTFS_AMD64
    Internet Explorer: 9.0.8112.16476 BrowserJavaVersion: 1.6.0_24
    Run by Christine at 17:38:38 on 2013-04-29
    Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.2940.1543 [GMT 1:00]
    .
    AV: Microsoft Security Essentials *Enabled/Updated* {3F839487-C7A2-C958-E30C-E2825BA31FB5}
    SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    SP: Microsoft Security Essentials *Enabled/Updated* {84E27563-E198-C6D6-D9BC-D9F020245508}
    .
    ============== Running Processes ===============
    .
    C:\Windows\system32\lsm.exe
    C:\Windows\system32\svchost.exe -k DcomLaunch
    C:\Windows\system32\svchost.exe -k RPCSS
    c:\Program Files\Microsoft Security Client\MsMpEng.exe
    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
    C:\Windows\system32\svchost.exe -k LocalService
    C:\Windows\system32\svchost.exe -k netsvcs
    C:\Program Files\HitmanPro\hmpsched.exe
    C:\Windows\system32\svchost.exe -k NetworkService
    C:\Windows\system32\Dwm.exe
    C:\Windows\System32\spoolsv.exe
    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
    C:\Windows\Explorer.EXE
    C:\Windows\system32\taskhost.exe
    C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
    C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
    C:\Windows\system32\taskeng.exe
    C:\Program Files (x86)\Common Files\Motive\McciCMService.exe
    C:\Windows\System32\igfxtray.exe
    C:\Windows\System32\hkcmd.exe
    C:\Windows\System32\igfxpers.exe
    C:\Program Files\Common Files\Motive\McciCMService.exe
    C:\Windows\System32\svchost.exe -k HPZ12
    C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent 64.exe
    C:\Windows\System32\svchost.exe -k HPZ12
    C:\Windows\system32\svchost.exe -k imgsvc
    C:\Windows\system32\TODDSrv.exe
    C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
    C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
    C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe
    C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
    C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe
    C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
    C:\Program Files\Microsoft Security Client\msseces.exe
    C:\Windows\system32\igfxext.exe
    C:\Windows\system32\igfxsrvc.exe
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
    C:\Program Files\Plusnet Assist\btbb\PlusnetHelpNotifier.exe
    c:\Program Files\Microsoft Security Client\NisSrv.exe
    C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
    C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe
    C:\Windows\system32\SearchIndexer.exe
    C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    C:\Windows\system32\taskeng.exe
    C:\Program Files (x86)\Common Files\Motive\McciContextHookShim.exe
    C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
    C:\Windows\system32\taskeng.exe
    C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
    C:\Program Files\Windows Media Player\wmpnetwk.exe
    C:\Windows\System32\svchost.exe -k LocalServicePeerNet
    C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE
    C:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE
    C:\Windows\system32\wbem\wmiprvse.exe
    C:\Windows\splwow64.exe
    C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
    C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
    C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
    C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
    C:\Windows\system32\sppsvc.exe
    C:\Windows\sysWow64\SearchProtocolHost.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Windows\system32\SearchProtocolHost.exe
    C:\Windows\system32\SearchProtocolHost.exe
    C:\Windows\System32\cscript.exe
    .
    ============== Pseudo HJT Report ===============
    .
    uStart Page = hxxp://www.google.co.uk/
    BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    BHO: Yealt Class: {40C78C4E-5AE5-4762-9B7D-D2DE31B03B77} - C:\Windows\SysWOW64\yealt.dll
    BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
    TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
    EB: <No Name>: {555D4D79-4BD2-4094-A395-CFC534424A05} - LocalServer32 - <no file>
    uRun: [FileHippo.com] "C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe" /background
    uRun: [ccleaner] "C:\Program Files\CCleaner\CCleaner64.exe" /AUTO
    uRun: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    uRunOnce: [Uninstall C:\Users\Christine\AppData\Local\Microsoft\SkyDriv e\16.4.6010.0727\amd64] C:\Windows\System32\cmd.exe /q /c rmdir /s /q "C:\Users\Christine\AppData\Local\Microsoft\SkyDri ve\16.4.6010.0727\amd64"
    mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    uPolicies-Explorer: NoDrives = dword:0
    mPolicies-Explorer: NoDrives = dword:0
    mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
    mPolicies-System: ConsentPromptBehaviorUser = dword:3
    mPolicies-System: EnableUIADesktopToggle = dword:0
    IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
    IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
    .
    INFO: HKCU has more than 50 listed domains.
    If you wish to scan all of them, select the 'Force scan all domains' option.
    .
    .
    INFO: HKLM has more than 50 listed domains.
    If you wish to scan all of them, select the 'Force scan all domains' option.
    .
    DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} -
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
    DPF: {EBB176D2-AF75-4706-832F-4C8448F72757} - hxxp://www.shopandscan.com/TNSClickrc.CAB
    TCP: NameServer = 192.168.0.1
    TCP: Interfaces\{957BEC76-EC4E-40FB-A3E7-FF7A024591B0} : DHCPNameServer = 192.168.0.1
    TCP: Interfaces\{A22D127C-938C-4DC7-8264-DF55CA381631} : DHCPNameServer = 192.168.0.1
    Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
    x64-BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
    x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    x64-BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
    x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
    x64-TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
    x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
    x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
    x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
    x64-Run: [cAudioFilterAgent] C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent 64.exe
    x64-Run: [SmartAudio] C:\Program Files\CONEXANT\SAII\SAIICpl.exe /t
    x64-Run: [TPwrMain] C:\Program Files (x86)\TOSHIBA\Power Saver\TPwrMain.EXE
    x64-Run: [SmoothView] C:\Program Files (x86)\Toshiba\SmoothView\SmoothView.exe
    x64-Run: [00TCrdMain] C:\Program Files (x86)\TOSHIBA\FlashCards\TCrdMain.exe
    x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
    x64-Run: [TosReelTimeMonitor] C:\Program Files (x86)\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
    x64-Run: [TosNC] C:\Program Files (x86)\Toshiba\BulletinBoard\TosNcCore.exe
    x64-Run: [Toshiba TEMPRO] C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe
    x64-Run: [TosSENotify] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe
    x64-Run: [TosVolRegulator] C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe
    x64-Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
    x64-Run: [btbb_McciTrayApp] "C:\Program Files\Plusnet Assist\btbb\PlusnetHelpNotifier.exe"
    .
    INFO: x64-HKLM has more than 50 listed domains.
    If you wish to scan all of them, select the 'Force scan all domains' option.
    .
    x64-DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
    x64-DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
    x64-DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
    x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
    x64-Notify: igfxcui - igfxdev.dll
    Hosts: 127.0.0.1 ads.mcafee.com
    Hosts: 127.0.0.1 analytics.microsoft.com
    Hosts: 127.0.0.1 metrics.bitdefender.com
    Hosts: 127.0.0.1 metrics.mcafee.com
    Hosts: 127.0.0.1 om.symantec.com
    .
    Note: multiple HOSTS entries found. Please refer to Attach.txt
    .
    ================= FIREFOX ===================
    .
    FF - ProfilePath - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox \Profiles\wur5wv4d.default\
    FF - prefs.js: browser.search.selectedEngine - Hola Search
    FF - prefs.js: browser.startup.homepage - hxxp://www.google.com
    FF - prefs.js: network.proxy.type - 0
    FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
    FF - plugin: C:\Program Files (x86)\Common Files\Motive\npMotive.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
    FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrlui.dll
    FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
    FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_70 0_191.dll
    .
    ---- FIREFOX POLICIES ----
    FF - user.js: extensions.holasearch.tlbrSrchUrl -
    FF - user.js: extensions.holasearch.id - a095438d000000000000ee39df5bbc94
    FF - user.js: extensions.holasearch.appId - {8D5CFE57-B0FD-4396-97A2-DFD0B7DA935B}
    FF - user.js: extensions.holasearch.instlDay - 15820
    FF - user.js: extensions.holasearch.vrsn - 1.8.16.16
    FF - user.js: extensions.holasearch.vrsni - 1.8.16.16
    FF - user.js: extensions.holasearch.vrsnTs - 1.8.16.1619:25:18
    FF - user.js: extensions.holasearch.prtnrId - holasearch
    FF - user.js: extensions.holasearch.prdct - holasearch
    FF - user.js: extensions.holasearch.aflt - babsst
    FF - user.js: extensions.holasearch.smplGrp - none
    FF - user.js: extensions.holasearch.tlbrId - base
    FF - user.js: extensions.holasearch.instlRef - sst
    FF - user.js: extensions.holasearch.dfltLng - en
    FF - user.js: extensions.holasearch.excTlbr - false
    FF - user.js: extensions.holasearch.ffxUnstlRst - false
    FF - user.js: extensions.holasearch.admin - false
    FF - user.js: extensions.holasearch.autoRvrt - false
    FF - user.js: extensions.holasearch.rvrt - false
    FF - user.js: extensions.holasearch.newTab - false
    .
    ============= SERVICES / DRIVERS ===============
    .
    R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2013-1-20 230320]
    R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys [2011-7-22 14928]
    R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\saskutil64.sys [2011-7-12 12368]
    R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore64.exe [2012-7-11 140672]
    R2 cfWiMAXService;ConfigFree WiMAX Service;C:\Program Files (x86)\Toshiba\ConfigFree\CFIWmxSvcs64.exe [2010-1-28 249200]
    R2 ConfigFree Service;ConfigFree Service;C:\Program Files (x86)\Toshiba\ConfigFree\CFSvcs.exe [2009-3-10 46448]
    R2 HitmanProScheduler;HitmanPro Scheduler;C:\Program Files\HitmanPro\hmpsched.exe [2012-10-3 109352]
    R2 McciCMService64;McciCMService64;C:\Program Files\Common Files\Motive\McciCMService.exe [2013-1-17 517632]
    R2 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2011-4-27 130008]
    R3 FwLnk;FwLnk Driver;C:\Windows\System32\drivers\FwLnk.sys [2010-4-8 9216]
    R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\System32\drivers\L1C62x64.sy s [2011-4-20 169584]
    R3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\NisSrv.exe [2013-1-27 379360]
    R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-2-5 137560]
    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\ v4.0.30319\mscorsvw.exe [2010-3-18 130384]
    S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework6 4\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
    S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssflt r.sys [2012-9-3 57280]
    S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-9-12 1512448]
    S3 optousb;OPTO ELECTRONICS optousb;C:\Windows\System32\drivers\optousb.sys [2010-3-24 27264]
    S3 optovcm;OPTO ELECTRONICS optovcm;C:\Windows\System32\drivers\optovcm.sys [2010-3-24 34304]
    S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2010-4-8 232992]
    S3 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO);C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [2010-2-11 124368]
    S3 TMachInfo;TMachInfo;C:\Program Files (x86)\Toshiba\TOSHIBA Service Station\TMachInfo.exe [2010-4-8 51512]
    S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUs bFlt.sys [2011-5-21 59392]
    S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2010-11-3 1255736]
    .
    =============== Created Last 30 ================
    .
    2013-04-28 16:28:02 9317456 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{07820FEB-583C-4F0A-9586-16D5FB4B8436}\mpengine.dll
    2013-04-27 15:10:30 9317456 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
    2013-04-26 16:07:06 137728 ----a-w- C:\Windows\SysWow64\yealt.dll
    2013-04-26 16:06:23 -------- d-----w- C:\Program Files (x86)\MyPC Backup
    2013-04-25 20:20:02 388096 ----a-r- C:\Users\Christine\AppData\Roaming\Microsoft\Insta ller\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
    2013-04-25 20:20:01 -------- d-----w- C:\Program Files (x86)\Trend Micro
    2013-04-25 18:25:00 -------- d-----w- C:\Users\Christine\AppData\Roaming\PerformerSoft
    2013-04-25 18:24:59 19632 ----a-w- C:\Windows\System32\roboot64.exe
    2013-04-25 18:24:50 -------- d-----w- C:\Users\Christine\AppData\Roaming\File Scout
    2013-04-25 18:24:40 -------- d-----w- C:\Users\Christine\AppData\Roaming\Babylon
    2013-04-25 18:24:40 -------- d-----w- C:\ProgramData\Babylon
    2013-04-24 15:04:40 1656680 ----a-w- C:\Windows\System32\drivers\ntfs.sys
    2013-04-23 17:37:16 905296 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{9FCB6038-6177-4887-A3F0-C37657E8808A}\gapaengine.dll
    2013-04-17 12:32:43 108448 ----a-w- C:\Windows\System32\WindowsAccessBridge-64.dll
    2013-04-11 12:22:51 3717632 ----a-w- C:\Windows\System32\mstscax.dll
    2013-04-11 12:22:50 3217408 ----a-w- C:\Windows\SysWow64\mstscax.dll
    2013-04-11 12:22:49 131584 ----a-w- C:\Windows\SysWow64\aaclient.dll
    2013-04-11 12:22:48 44032 ----a-w- C:\Windows\System32\tsgqec.dll
    2013-04-11 12:22:48 36864 ----a-w- C:\Windows\SysWow64\tsgqec.dll
    2013-04-11 12:22:48 158720 ----a-w- C:\Windows\System32\aaclient.dll
    2013-04-11 12:21:13 3153408 ----a-w- C:\Windows\System32\win32k.sys
    2013-04-11 12:17:54 223752 ----a-w- C:\Windows\System32\drivers\fvevol.sys
    2013-04-11 12:16:33 5550424 ----a-w- C:\Windows\System32\ntoskrnl.exe
    2013-04-11 12:16:32 3913560 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
    2013-04-11 12:16:31 3968856 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
    2013-04-11 12:16:30 6656 ----a-w- C:\Windows\SysWow64\apisetschema.dll
    2013-04-11 12:16:30 43520 ----a-w- C:\Windows\System32\csrsrv.dll
    2013-04-11 12:16:30 112640 ----a-w- C:\Windows\System32\smss.exe
    .
    ==================== Find3M ====================
    .
    2013-04-24 09:28:14 71048 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
    2013-04-24 09:28:14 692104 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
    2013-04-17 12:32:31 971680 ----a-w- C:\Windows\System32\deployJava1.dll
    2013-04-17 12:32:31 1092512 ----a-w- C:\Windows\System32\npdeployJava1.dll
    2013-04-04 13:50:32 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys
    2013-04-02 10:34:28 282744 ------w- C:\Windows\System32\MpSigStub.exe
    2013-02-22 06:27:49 2312704 ----a-w- C:\Windows\System32\jscript9.dll
    2013-02-22 06:20:51 1392128 ----a-w- C:\Windows\System32\wininet.dll
    2013-02-22 06:19:37 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl
    2013-02-22 06:15:48 173056 ----a-w- C:\Windows\System32\ieUnatt.exe
    2013-02-22 06:15:23 599040 ----a-w- C:\Windows\System32\vbscript.dll
    2013-02-22 06:12:41 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
    2013-02-22 03:46:00 1800704 ----a-w- C:\Windows\SysWow64\jscript9.dll
    2013-02-22 03:38:00 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll
    2013-02-22 03:37:50 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
    2013-02-22 03:34:17 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
    2013-02-22 03:34:03 420864 ----a-w- C:\Windows\SysWow64\vbscript.dll
    2013-02-22 03:31:46 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
    2013-02-12 05:45:24 135168 ----a-w- C:\Windows\apppatch\AppPatch64\AcXtrnal.dll
    2013-02-12 05:45:22 350208 ----a-w- C:\Windows\apppatch\AppPatch64\AcLayers.dll
    2013-02-12 05:45:22 308736 ----a-w- C:\Windows\apppatch\AppPatch64\AcGenral.dll
    2013-02-12 05:45:22 111104 ----a-w- C:\Windows\apppatch\AppPatch64\acspecfc.dll
    2013-02-12 04:48:31 474112 ----a-w- C:\Windows\apppatch\AcSpecfc.dll
    2013-02-12 04:48:26 2176512 ----a-w- C:\Windows\apppatch\AcGenral.dll
    2013-02-12 04:12:05 19968 ----a-w- C:\Windows\System32\drivers\usb8023.sys
    .
    ============= FINISH: 17:40:36.35 ===============


    Crimson
  • waddler_8
    • #9
    • 29th Apr 13, 6:16 PM
    • #9
    • 29th Apr 13, 6:16 PM
    That's the one - thanks.

    Download AdwCleaner from the link below & save it to your desktop.

    LINK

    Then,
    • Right click AdwCleaner.exe & choose "Run as administrator" to run it.
    • Click Delete.
    • Click OK to the prompt.
    • The tool will run & your computer will be rebooted automatically. A logfile will open after the restart.
    • Post the contents of the logfile with your next reply.
    • You can also find the logfile at C:\AdwCleaner[s1].txt.

    (If it's too large to post, let me know )
  • Crimson60
    That's the one - thanks.

    Download AdwCleaner from the link below & save it to your desktop.

    LINK

    Then,
    • Right click AdwCleaner.exe & choose "Run as administrator" to run it.
    • Click Delete.
    • Click OK to the prompt.
    • The tool will run & your computer will be rebooted automatically. A logfile will open after the restart.
    • Post the contents of the logfile with your next reply.
    • You can also find the logfile at C:\AdwCleaner[s1].txt.
    (If it's too large to post, let me know )
    Originally posted by waddler_8
    Thank you very much. I appreciate your help and I'll do as you suggest above right now.

    Crimson
  • Crimson60
    Thank you very much. I appreciate your help and I'll do as you suggest above right now.

    Crimson
    Originally posted by Crimson60
    I hope I've done this correctly, waddler_8:

    # AdwCleaner v2.300 - Logfile created 04/29/2013 at 18:22:36
    # Updated 28/04/2013 by Xplode
    # Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
    # User : Christine - CHRISTINE-TOSH
    # Boot Mode : Normal
    # Running from : C:\Users\Christine\Downloads\adwcleaner.exe
    # Option [Delete]

    ***** [Services] *****

    ***** [Files / Folders] *****
    File Deleted : C:\Users\Christine\AppData\Roaming\Mozilla\Firefox \Profiles\wur5wv4d.default\bProtector_extensions.r df
    Folder Deleted : C:\ProgramData\Babylon
    Folder Deleted : C:\Users\Christine\AppData\Roaming\Babylon
    Folder Deleted : C:\Users\Christine\AppData\Roaming\file scout
    Folder Deleted : C:\Users\Christine\AppData\Roaming\PerformerSoft
    ***** [Registry] *****
    Key Deleted : HKCU\Software\AppDataLow\Software\CompeteInc
    Key Deleted : HKCU\Software\BabylonToolbar
    Key Deleted : HKCU\Software\DataMngr
    Key Deleted : HKCU\Software\DataMngr_Toolbar
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings\ZoneMap\Domains\grusskartencenter.com
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings\ZoneMap\EscDomains\grusskartencenter.com
    Key Deleted : HKCU\Software\Softonic
    Key Deleted : HKLM\Software\Babylon
    Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
    Key Deleted : HKLM\Software\CompeteInc
    Key Deleted : HKLM\Software\Conduit
    Key Deleted : HKLM\Software\DataMngr
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apntoolbarinstalle r_RASAPI32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apntoolbarinstalle r_RASMANCS
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI 32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMAN CS
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\a6d7dcb03fe415
    Key Deleted : HKLM\SOFTWARE\Software
    ***** [Internet Browsers] *****
    -\\ Internet Explorer v9.0.8112.16476
    [OK] Registry is clean.
    -\\ Mozilla Firefox v21.0 (en-US)
    File : C:\Users\Christine\AppData\Roaming\Mozilla\Firefox \Profiles\wur5wv4d.default\prefs.js
    C:\Users\Christine\AppData\Roaming\Mozilla\Firefox \Profiles\wur5wv4d.default\user.js ... Deleted !
    Deleted : user_pref("extensions.holasearch.admin", false);
    Deleted : user_pref("extensions.holasearch.aflt", "babsst");
    Deleted : user_pref("extensions.holasearch.appId", "{8D5CFE57-B0FD-4396-97A2-DFD0B7DA935B}");
    Deleted : user_pref("extensions.holasearch.autoRvrt", "false");
    Deleted : user_pref("extensions.holasearch.dfltLng", "en");
    Deleted : user_pref("extensions.holasearch.excTlbr", false);
    Deleted : user_pref("extensions.holasearch.ffxUnstlRst", false);
    Deleted : user_pref("extensions.holasearch.id", "a095438d000000000000ee39df5bbc94");
    Deleted : user_pref("extensions.holasearch.instlDay", "15820");
    Deleted : user_pref("extensions.holasearch.instlRef", "sst");
    Deleted : user_pref("extensions.holasearch.newTab", false);
    Deleted : user_pref("extensions.holasearch.prdct", "holasearch");
    Deleted : user_pref("extensions.holasearch.prtnrId", "holasearch");
    Deleted : user_pref("extensions.holasearch.rvrt", "false");
    Deleted : user_pref("extensions.holasearch.smplGrp", "none");
    Deleted : user_pref("extensions.holasearch.tlbrId", "base");
    Deleted : user_pref("extensions.holasearch.tlbrSrchUrl", "");
    Deleted : user_pref("extensions.holasearch.vrsn", "1.8.16.16");
    Deleted : user_pref("extensions.holasearch.vrsnTs", "1.8.16.1619:25:18");
    Deleted : user_pref("extensions.holasearch.vrsni", "1.8.16.16");
    -\\ Google Chrome v27.0.1453.65
    File : C:\Users\Christine\AppData\Local\Google\Chrome\Use r Data\Default\Preferences
    [OK] File is clean.
    -\\ Opera v [Unable to get version]
    File : C:\Users\Christine\AppData\Roaming\Opera\Opera\ope raprefs.ini
    [OK] File is clean.
    *************************
    AdwCleaner[S1].txt - [3783 octets] - [29/04/2013 18:22:36]
    ########## EOF - C:\AdwCleaner[S1].txt - [3843 octets] ##########
  • waddler_8
    That's good - A few more things to go.

    Download OTM by Old Timer from the link below and save it to your Desktop.

    LINK

    The script below will stop explorer & your desktop will temporarily disappear (it will return on reboot), & your recycle bin will be emptied.
    • Double click OTM.exe to run it.
    • Highlight & copy all the following code inside the codebox below. Do not include the word Code:
      Code:
      :Commands
      [CreateRestorePoint]
      
      :reg
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{40C78C4E-5AE5-4762-9B7D-D2DE31B03B77}]
      
      :Files
      C:\Windows\System32\roboot64.exe
      C:\Windows\SysWow64\yealt.dll
      ipconfig /flushdns /c
      
      :Commands
      [CreateRestorePoint]
      [resethosts]
      [EMPTYTEMP]
    • Return to OTM, right click in the Paste instructions for Items to be Moved window (under the yellow bar) and choose Paste.
    • Push the large MoveIt! button.
    • Click OK to the prompt
    • OTM may ask to reboot the machine. Please Allow it to do so if asked.
    • The report should appear in Notepad after the reboot. Copy/paste the contents of that report back here in your next reply.
  • Crimson60
    That's good - A few more things to go.

    Download OTM by Old Timer from the link below and save it to your Desktop.

    LINK

    The script below will stop explorer & your desktop will temporarily disappear (it will return on reboot), & your recycle bin will be emptied.
    • Double click OTM.exe to run it.
    • Highlight & copy all the following code inside the codebox below. Do not include the word Code:
      Code:
      :Commands
      [CreateRestorePoint]
       
      :reg
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{40C78C4E-5AE5-4762-9B7D-D2DE31B03B77}]
       
      :Files
      C:\Windows\System32\roboot64.exe
      C:\Windows\SysWow64\yealt.dll
      ipconfig /flushdns /c
       
      :Commands
      [CreateRestorePoint]
      [resethosts]
      [EMPTYTEMP]
    • Return to OTM, right click in the Paste instructions for Items to be Moved window (under the yellow bar) and choose Paste.
    • Push the large MoveIt! button.
    • Click OK to the prompt
    • OTM may ask to reboot the machine. Please Allow it to do so if asked.
    • The report should appear in Notepad after the reboot. Copy/paste the contents of that report back here in your next reply.
    Originally posted by waddler_8
    Thank you very much for all the time and expertise you are giving to this for me - my mind is boggling as it is all beyond me. I appreciate your help:
    All processes killed
    ========== COMMANDS ==========
    Restore point Set: OTM Restore Point
    ========== REGISTRY ==========
    ========== FILES ==========
    File/Folder C:\Windows\System32\roboot64.exe not found.
    C:\Windows\SysWow64\yealt.dll moved successfully.
    < ipconfig /flushdns /c >
    Windows IP Configuration
    Successfully flushed the DNS Resolver Cache.
    C:\Users\Christine\Downloads\cmd.bat deleted successfully.
    C:\Users\Christine\Downloads\cmd.txt deleted successfully.
    ========== COMMANDS ==========
    Restore point Set: OTM Restore Point
    C:\Windows\System32\drivers\etc\Hosts moved successfully.
    HOSTS file reset successfully

    [EMPTYTEMP]

    User: All Users

    User: Christine
    ->Temp folder emptied: 284503 bytes
    ->Temporary Internet Files folder emptied: 4441453 bytes
    ->Java cache emptied: 551160 bytes
    ->FireFox cache emptied: 64464945 bytes
    ->Google Chrome cache emptied: 0 bytes
    ->Opera cache emptied: 0 bytes
    ->Flash cache emptied: 57983 bytes

    User: Default
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 33170 bytes
    ->Flash cache emptied: 57472 bytes

    User: Default User
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: Public
    ->Temp folder emptied: 0 bytes

    %systemdrive% .tmp files removed: 0 bytes
    %systemroot% .tmp files removed: 0 bytes
    %systemroot%\System32 .tmp files removed: 0 bytes
    %systemroot%\System32 (64bit) .tmp files removed: 0 bytes
    %systemroot%\System32\drivers .tmp files removed: 0 bytes
    Windows Temp folder emptied: 22242 bytes
    %systemroot%\system32\config\systemprofile\AppData \Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33170 bytes
    %systemroot%\system32\config\systemprofile\AppData \LocalLow\Sun\Java\Deployment folder emptied: 753 bytes
    %systemroot%\sysnative\config\systemprofile\AppDat a\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50333 bytes
    %systemroot%\sysnative\config\systemprofile\AppDat a\LocalLow\Sun\Java\Deployment folder emptied: 666 bytes
    RecycleBin emptied: 0 bytes

    Total Files Cleaned = 67.00 mb


    OTM by OldTimer - Version 3.1.21.0 log created on 04292013_191031
    Files moved on Reboot...
    C:\Users\Christine\AppData\Local\Temp\Low\JavaDepl oyReg.log moved successfully.
    C:\Users\Christine\AppData\Local\Temp\FXSAPIDebugL ogFile.txt moved successfully.
    C:\Users\Christine\AppData\Local\Microsoft\Windows \Temporary Internet Files\Low\AntiPhishing\ED8654D5-B9F0-4DD9-B3E8-F8F560086FDF.dat moved successfully.
    C:\Users\Christine\AppData\Local\Microsoft\Windows \Temporary Internet Files\Low\MSIMGSIZ.DAT moved successfully.
    Registry entries deleted on Reboot...


    Crimson
  • waddler_8
    my mind is boggling as it is all beyond me.
    You're doing fine

    I'm just about to have tea - how is the computer behaving now?
  • Crimson60
    You're doing fine

    I'm just about to have tea - how is the computer behaving now?
    Originally posted by waddler_8
    It seems OK! Do you think you've sorted it?? What ever you have done has taken a lot of your time and, as I said earlier, it's very much appreciated, thank you.

    Enjoy your tea. I'll log off for a bit and try again later.

    Kind regards

    Crimson
  • waddler_8
    No problem.

    Yes, it should be sorted. Let me know how things are.

    One question - did you install this?

    MyPC Backup


    .
    Last edited by waddler_8; 29-04-2013 at 7:56 PM.
  • Crimson60
    No problem.

    Yes, it should be sorted. Let me know how things are.

    One question - did you install this?

    MyPC Backup


    .
    Originally posted by waddler_8
    No, waddler_8, I've not installed MYPC Backup - should I look for a link and do that?

    I'm using Internet Explorer as I've just tried Firefox again. I can log into MSE but it wouldn't let me click to reply to your post - more success here in IE.

    Many thanks

    Crimson
  • waddler_8
    I've not installed MYPC Backup - should I look for a link and do that?
    Originally posted by Crimson60
    No, your log shows that the programs folder was created a few days ago (friday, 4 o'clock ish) but it isn't in the list of installed programs.

    2013-04-26 16:06:23 -------- d-----w- C:\Program Files (x86)\MyPC Backup
    Might anybody else have installed it?
  • Crimson60
    No, your log shows that the programs folder was created a few days ago (friday, 4 o'clock ish) but it isn't in the list of installed programs.


    Might anybody else have installed it?
    Originally posted by waddler_8
    I'm the only person who has access to my computer. I wonder if I installed it some time ago and forgot about it. I don't remember installing a new backup program on Friday. I'll look to see if I can find it - thank you.

    Crimson
  • Crimson60
    I'm the only person who has access to my computer. I wonder if I installed it some time ago and forgot about it. I don't remember installing a new backup program on Friday. I'll look to see if I can find it - thank you.

    Crimson
    Originally posted by Crimson60
    I checked installed programmes for MyPC Backup and it says 0 results. Should I install it?

    Thank you, again.

    Crimson
Welcome to our new Forum!

Our aim's to save you money quickly and easily. We hope you like it!

Forum Team Contact us

Live Stats

1,906Posts Today

8,637Users online

Martin's Twitter
  • Solar panels are they worth it? Full analysis http://t.co/opA6XcsCgC

  • Morning. I'm on my way to @itvthismorning for my Mon slot (on at 11:45) exploring solar panels and if they're worth it.

  • On train home from Birmingham. Had dinner by the canal there this evening. Lovely area, very sunny and picturesque.

  • Follow Martin