Page 1 of 3 123 LastLast
Results 1 to 10 of 30
  1. #1
    Member
    Join Date
    Oct 2010
    Posts
    189
    Points
    3

    Default Numerous problems with functioning

    Hi, I've been having a problem with the pages reloading randomly. Ie, I'll open a page and as it's come up, it will reload. The page appears then reloads. And it will do this about five times before it stops. Next, I will click on one article of a row of article. What will come up is the article three down as though it had jumped to that. It also does that when I'm clicking on an email in my Inbox. What comes up is an email either 3 to 5 emails up or down. Many times it will jump right before my eyes and I will see it jump to another email before it opens it. The next problem is that I will click on something hi-lighted on something and my computer will suddenly jump to another article, or go backward to something I had selected previously or perform another function I hadn't even asked it to do. I find I'm repeatedly trying to get back to where I was.

    Another problem is that I have quite a few files. I know what I'm looking for so put in a search for say "Civil War". I know that's the title of the email I sent to myself. It will invariably come back that there's nothing in my files with that name. Many times, I'll have to go through 100 emails to find it and there it is "Civil War" but it won't come up in a Search of my emails.

    Lastly, my computer has suddenly become EXTREMELY slow. It will sit on one page with an hour glass and stay on that. I've tried everything I can think of and have had to shut my computer down numerous times and start it up again. Doesn't make any difference. Same thing.

    Help would be appreciated. Thank you.

  2. #2
    Member Spyware Fighter zep516's Avatar
    Join Date
    Dec 2005
    Location
    Pittsburgh, Pa
    Posts
    7,173
    Points
    1307

    Default

    Hello rjay81,

    Since the computer has slowed lets check for adware issues by running adwcleaner.

    Please download adwCleaner to your desktop.
    • Close all open programs and internet browsers.
    • Double click on AdwCleaner.exe to run the tool.
    • Click the Scan button and wait for the process to complete.
    • Click the logfile button and the log will open in Notepad.
    • Click on the Clean button follow the prompts.
    • A log file will automatically open after the scan has finished and the PC has rebooted.
    • Please post the content of that log file with your next answer.
    • The report will be saved in the C:\AdwCleaner folder.

  3. The Following User Says Thank You to zep516 For This Useful Post:


  4. #3
    Member
    Join Date
    Oct 2010
    Posts
    189
    Points
    3

    Default

    Quote Originally Posted by zep516 View Post
    Hello rjay81,Since the computer has slowed lets check for adware issues by running adwcleaner.[/list]

    Thank you for your reply. Sorry for my late reply. Out of town on business, just got back(home computer is my only computer).
    The result of the scan said "no threats'. There is something continually running on my computer, almost as if I'm running a virus check
    when I'm not. It slows pulling up pages down A LOT.


    # AdwCleaner v6.043 - Logfile created 23/02/2017 at 19:46:41
    # Updated on 27/01/2017 by Malwarebytes
    # Database : 2017-01-27.1 [Local]
    # Operating System : Microsoft Windows XP Service Pack 3 (X86)
    # Username : Administrator - XP-PERFORMANCE-
    # Running from : C:\Documents and Settings\Administrator\My Documents\Downloads\adwcleaner_6.043.exe
    # Mode: Clean
    # Support : https://www.malwarebytes.com/support



    ***** [ Services ] *****



    ***** [ Folders ] *****



    ***** [ Files ] *****



    ***** [ DLL ] *****

  5. #4
    Member Spyware Fighter zep516's Avatar
    Join Date
    Dec 2005
    Location
    Pittsburgh, Pa
    Posts
    7,173
    Points
    1307

    Default

    Hello,
    Lets take a closer look

    Please download Farbar Recovery Scan Tool and save it to your Desktop.

    Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
    • Right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will produce a log called FRST.txt in the same directory the tool is run from.
    • Please copy and paste log back here.
    • The first time the tool is run it generates another log (Addition.txt - also located in the same directory as FRST.exe/FRST64.exe). Please also paste that along with the FRST.txt into your reply.

  6. The Following User Says Thank You to zep516 For This Useful Post:


  7. #5
    Member
    Join Date
    Oct 2010
    Posts
    189
    Points
    3

    Default

    Quote Originally Posted by zep516 View Post
    Please download Farbar Recovery Scan Tool and save it to your Desktop.[*]Please copy and paste log back here.[*]The first time the tool is run it generates another log (Addition.txt - also located in the same directory as FRST.exe/FRST64.exe). Please also paste that along with the FRST.txt into your reply.[/LIST]


    Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 23-02-2017 01
    Ran by Administrator (administrator) on XP-PERFORMANCE- (24-02-2017 12:26:12)
    Running from C:\Documents and Settings\Administrator\My Documents\Downloads
    Loaded Profiles: Administrator (Available Profiles: Administrator)
    Platform: Microsoft Windows XP Professional Service Pack 3 (X86) Language: English (United States)
    Internet Explorer Version 8 (Default browser: Chrome)
    Boot Mode: Normal
    Tutorial for Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials

    ==================== Processes (Whitelisted) =================

    (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

    (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
    (Google Inc.) C:\Program Files\Google\Update\1.3.32.7\GoogleCrashHandler.exe
    (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe
    (Intel Corporation) C:\WINDOWS\system32\igfxpers.exe
    (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
    (SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe
    (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
    (Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe

    ==================== Registry (Whitelisted) ====================

    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

    HKLM\...\Run: [igfxhkcmd] => C:\WINDOWS\system32\hkcmd.exe [77824 2005-09-20] (Intel Corporation)
    HKLM\...\Run: [igfxpers] => C:\WINDOWS\system32\igfxpers.exe [114688 2005-09-20] (Intel Corporation)
    HKLM\...\Run: [AvgUi] => "C:\Program Files\AVG\Framework\Common\avguirnx.exe" /lps=fmw
    HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [9080768 2016-11-15] (AVAST Software)
    HKLM\...\Policies\Explorer: [NoDesktopCleanupWizard] 1
    HKU\S-1-5-19\...\RunOnce: [_nltide_3] => rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N
    HKU\S-1-5-18\...\RunOnce: [_nltide_3] => rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N
    HKU\S-1-5-18\...\RunOnce: [FlashPlayerUpdate] => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_21_0_0_197_pepper.exe -update pepperplugin
    HKU\S-1-5-18\...\RunOnce: [RunNarrator] => C:\WINDOWS\system32\Narrator.exe [53760 2008-04-13] (Microsoft Corporation)
    HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> logon.scr
    ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [115440 2013-05-07] (SuperAdBlocker.com)
    ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2016-10-16] (AVAST Software)

    ==================== Internet (Whitelisted) ====================

    (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

    Tcpip\Parameters: [DhcpNameServer] 65.87.230.4 65.87.230.5
    Tcpip\..\Interfaces\{614D070C-357A-46AA-A952-A8A84AB12C4A}: [DhcpNameServer] 65.87.230.4 65.87.230.5

    Internet Explorer:
    ==================
    HKU\S-1-5-21-299502267-1292428093-1606980848-500\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/en-ca/?ocid=iehp
    BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-10-24] (AVAST Software)

    FireFox:
    ========
    FF ProfilePath: C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\b86ag752.default-1476559061859 [2017-02-24]
    FF Homepage: C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\b86ag752.default-1476559061859 -> hxxps://www.google.ca/
    FF Extension: (SHA-1 deprecation staged rollout) - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\b86ag752.default-1476559061859\features\{87a93751-1a1c-4f2c-94ba-346124fa72f5}\disableSHA1rollout@mozilla.org.xpi [2017-02-16]
    FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
    FF Extension: (Microsoft .NET Framework Assistant) - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2016-04-06] [not signed]
    FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
    FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-10-16]
    FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
    FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-10-16]
    FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_24_0_0_194.dll [2017-02-02] ()
    FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
    FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.)
    FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.)

    Chrome:
    =======
    CHR Profile: C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default [2017-02-09]
    CHR Extension: (Google Slides) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-09-14]
    CHR Extension: (Google Docs) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-09-14]
    CHR Extension: (Google Drive) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-09-14]
    CHR Extension: (YouTube) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-09-14]
    CHR Extension: (Google Sheets) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-09-14]
    CHR Extension: (Google Docs Offline) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-09-15]
    CHR Extension: (Chrome Web Store Payments) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-02-05]
    CHR Extension: (Gmail) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-09-14]

    Opera:
    =======
    OPR StartupUrls: "hxxps://www.google.ca/webhp?complete=0&gws_rd=cr&ei=FcwFV6JJofSOBJKzu6gF"

    ==================== Services (Whitelisted) ====================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [142648 2014-07-22] (SUPERAntiSpyware.com)
    R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-10-16] (AVAST Software)

    ===================== Drivers (Whitelisted) ======================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    S3 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [34008 2016-10-16] (AVAST Software)
    R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [35096 2016-10-16] (AVAST Software)
    R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [92256 2016-10-16] (AVAST Software)
    R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [64272 2016-10-16] (AVAST Software)
    R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [60424 2016-10-16] (AVAST Software)
    R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [735488 2016-10-16] (AVAST Software)
    R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [433768 2016-10-16] (AVAST Software)
    R3 aswStmXP; C:\WINDOWS\system32\drivers\aswStmXP.sys [184592 2016-10-16] (AVAST Software)
    S3 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [66688 2016-10-16] (AVAST Software)
    R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [224752 2016-10-16] (AVAST Software)
    S3 FETNDIS; C:\WINDOWS\System32\DRIVERS\fetnd5.sys [27165 2001-08-17] (VIA Technologies, Inc. )
    R3 FETNDISB; C:\WINDOWS\System32\DRIVERS\dlkfet5b.sys [43008 2007-05-16] (D-Link )
    R1 HWiNFO32; C:\WINDOWS\system32\drivers\HWiNFO32.SYS [23840 2016-04-10] (REALiX(tm))
    R3 P17; C:\WINDOWS\System32\drivers\P17.sys [1127936 2016-04-10] (Creative Technology Ltd.)
    R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
    R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
    R3 VIAudio; C:\WINDOWS\System32\drivers\vinyl97.sys [207488 2016-04-10] (VIA Technologies, Inc.)

    ==================== NetSvcs (Whitelisted) ===================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


    ==================== One Month Created files and folders ========

    (If an entry is included in the fixlist, the file/folder will be moved.)

    2017-02-22 00:56 - 2017-02-22 00:57 - 00000375 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
    2017-02-22 00:56 - 2017-02-22 00:56 - 00008192 _____ C:\WINDOWS\REGLOCS.OLD

    ==================== One Month Modified files and folders ========

    (If an entry is included in the fixlist, the file/folder will be moved.)

    2017-02-24 12:28 - 2016-04-06 13:18 - 00000000 ____D C:\Documents and Settings\Administrator\Local Settings\Temp
    2017-02-24 12:27 - 2016-12-17 11:22 - 00000886 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
    2017-02-24 12:27 - 2016-04-06 13:17 - 00032440 _____ C:\WINDOWS\SchedLgU.Txt
    2017-02-24 12:26 - 2016-09-17 12:48 - 00000000 ____D C:\FRST
    2017-02-24 12:18 - 2016-10-16 14:35 - 00000378 ____H C:\WINDOWS\Tasks\avast! Emergency Update.job
    2017-02-24 12:16 - 2016-12-17 11:22 - 00000882 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
    2017-02-24 12:16 - 2016-10-16 14:53 - 00000480 _____ C:\WINDOWS\Tasks\SafeZone scheduled Autoupdate 1476651184.job
    2017-02-24 12:16 - 2016-09-20 09:52 - 00000314 ____H C:\WINDOWS\Tasks\AVG EUpdate Task.job
    2017-02-24 12:16 - 2016-04-06 20:59 - 00000424 _____ C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1459997937.job
    2017-02-24 12:16 - 2016-04-06 15:52 - 00000238 _____ C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Logon.job
    2017-02-24 12:16 - 2016-04-06 13:18 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
    2017-02-24 12:16 - 2001-08-23 06:00 - 00002206 _____ C:\WINDOWS\system32\wpa.dbl
    2017-02-24 01:19 - 2016-04-06 13:18 - 00000178 ___SH C:\Documents and Settings\Administrator\ntuser.ini
    2017-02-24 01:19 - 2016-04-06 13:18 - 00000000 ____D C:\Documents and Settings\Administrator
    2017-02-24 01:08 - 2016-05-14 08:02 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
    2017-02-23 22:01 - 2016-04-06 22:01 - 00000526 _____ C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task afc618c2-4128-41cc-85e8-e28548256c19.job
    2017-02-23 19:46 - 2016-09-18 08:05 - 00000000 ____D C:\AdwCleaner
    2017-02-22 08:17 - 2016-04-06 20:58 - 00000000 ____D C:\Program Files\Opera
    2017-02-21 02:00 - 2016-04-11 21:24 - 00000526 _____ C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task 71f9c40c-5acd-4bb4-9839-35f49ecd2f85.job
    2017-02-19 15:17 - 2016-04-06 13:14 - 00000000 ____D C:\WINDOWS\system32\Macromed
    2017-02-18 23:22 - 2016-04-06 23:13 - 00000892 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
    2017-02-08 15:00 - 2016-04-06 15:52 - 00000232 _____ C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Monthly.job
    2017-02-05 15:44 - 2016-04-06 22:42 - 00000000 ____D C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe
    2017-02-02 21:33 - 2016-04-06 22:42 - 00802904 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
    2017-02-02 21:33 - 2016-04-06 22:42 - 00144472 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
    2017-01-29 07:36 - 2016-04-06 13:43 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
    2017-01-28 14:53 - 2016-11-15 21:50 - 00000000 ____D C:\Program Files\Mozilla Firefox

    ==================== Bamital & volsnap ======================

    (There is no automatic fix for files that do not pass verification.)

    C:\WINDOWS\explorer.exe => File is digitally signed
    C:\WINDOWS\system32\winlogon.exe => File is digitally signed
    C:\WINDOWS\system32\svchost.exe => File is digitally signed
    C:\WINDOWS\system32\services.exe => File is digitally signed
    C:\WINDOWS\system32\User32.dll => File is digitally signed
    C:\WINDOWS\system32\userinit.exe => File is digitally signed
    C:\WINDOWS\system32\rpcss.dll => File is digitally signed
    C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
    C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

    ==================== End of FRST.txt ============================

  8. #6
    Member
    Join Date
    Oct 2010
    Posts
    189
    Points
    3

    Default

    Additional scan result of Farbar Recovery Scan Tool (x86) Version: 23-02-2017 01
    Ran by Administrator (24-02-2017 12:29:03)
    Running from C:\Documents and Settings\Administrator\My Documents\Downloads
    Microsoft Windows XP Professional Service Pack 3 (X86) (2016-04-06 19:16:32)
    Boot Mode: Normal
    ==========================================================


    ==================== Accounts: =============================

    Administrator (S-1-5-21-299502267-1292428093-1606980848-500 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Administrator
    ASPNET (S-1-5-21-299502267-1292428093-1606980848-1001 - Limited - Enabled)
    Guest (S-1-5-21-299502267-1292428093-1606980848-501 - Limited - Disabled)
    HelpAssistant (S-1-5-21-299502267-1292428093-1606980848-1000 - Limited - Disabled)

    ==================== Security Center ========================

    (If an entry is included in the fixlist, it will be removed.)


    ==================== Installed Programs ======================

    (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

    7-Zip 15.14 (HKLM\...\7-Zip) (Version: 15.14 - Igor Pavlov)
    Adobe Flash Player 23 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 23.0.0.205 - Adobe Systems Incorporated)
    Adobe Flash Player 24 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 24.0.0.194 - Adobe Systems Incorporated)
    Adobe Flash Player 24 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 24.0.0.186 - Adobe Systems Incorporated)
    Avast Free Antivirus (HKLM\...\Avast) (Version: 12.3.2280 - AVAST Software)
    D-Link PCI Fast Ethernet Adapter (HKLM\...\VN_VUIns_Rhine_D-Link) (Version: - )
    Driver Booster 3.2 (HKLM\...\Driver Booster_is1) (Version: 3.2 - IObit)
    Google Chrome (HKLM\...\Google Chrome) (Version: 49.0.2623.112 - Google Inc.)
    Google Update Helper (Version: 1.3.32.7 - Google Inc.) Hidden
    HashCheck Shell Extension (x86-32) (HKLM\...\HashCheck Shell Extension) (Version: 2.1.11.0 - Kai Liu)
    Intel(R) Extreme Graphics 2 Driver (HKLM\...\{8A708DD8-A5E6-11D4-A706-000629E95E20}) (Version: 6.14.10.4396 - )
    Intel(R) PRO Network Adapters and Drivers (HKLM\...\PROSet) (Version: - )
    IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.42 - Irfan Skiljan)
    Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
    Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1 (1033)) (Version: - )
    Microsoft .NET Framework 1.1 Security Update (KB2833941) (HKLM\...\M2833941) (Version: - )
    Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
    Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation)
    Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
    Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
    Microsoft Base Smart Card Cryptographic Service Provider Package (HKLM\...\KB909520) (Version: - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
    Mozilla Firefox 51.0.1 (x86 en-US) (HKLM\...\Mozilla Firefox 51.0.1 (x86 en-US)) (Version: 51.0.1 - Mozilla)
    Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 51.0.1.6234 - Mozilla)
    Opera Stable 36.0.2130.80 (HKLM\...\Opera 36.0.2130.80) (Version: 36.0.2130.80 - Opera Software)
    Paint Shop Pro 7 Anniversary Edition (HKLM\...\{D6DE02C7-1F47-11D4-9515-00105AE4B89A}) (Version: 7.0.4.0000 - Jasc Software Inc)
    SafeZone Stable 1.48.2066.120 (Version: 1.48.2066.120 - Avast Software) Hidden
    Speccy (HKLM\...\Speccy) (Version: 1.29 - Piriform)
    SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1204 - SUPERAntiSpyware.com)
    TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
    Viper Racing 2012 (HKLM\...\Viper Racing 2012) (Version: - )
    Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
    Windows Imaging Component (HKLM\...\WIC) (Version: 3.0.0.0 - Microsoft Corporation)
    Windows Internet Explorer 8 (HKLM\...\ie8) (Version: 20090308.140743 - Microsoft Corporation)
    Windows Management Framework Core (HKLM\...\KB968930) (Version: - Microsoft Corporation)
    WinRAR archiver (HKLM\...\WinRAR archiver) (Version: - )
    ZModeler (remove only) (HKLM\...\ZModeler) (Version: - )

    ==================== Custom CLSID (Whitelisted): ==========================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


    (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

    Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_24_0_0_186_pepper.exe
    Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
    Task: C:\WINDOWS\Tasks\AVG EUpdate Task.job => C:\Program Files\AVG\Setup AVG Technologies 耇 0 ߠ
        0ߠ
       
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Logon.job => C:\WINDOWS\system32\xp_eos.exe
    Task: C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Monthly.job => C:\WINDOWS\system32\xp_eos.exe
    Task: C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1459997937.job => C:\Program Files\Opera\launcher.exe
    Task: C:\WINDOWS\Tasks\SafeZone scheduled Autoupdate 1476651184.job => C:\Program Files\AVAST Software\SZBrowser\launcher.exe
    Task: C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task 71f9c40c-5acd-4bb4-9839-35f49ecd2f85.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    Task: C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task afc618c2-4128-41cc-85e8-e28548256c19.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

    ==================== Shortcuts =============================

    (The entries could be listed to be restored or removed.)

    ==================== Loaded Modules (Whitelisted) ==============

    2016-10-16 14:34 - 2016-10-16 14:34 - 00169064 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
    2017-02-23 19:24 - 2017-02-23 19:24 - 05884928 _____ () C:\Program Files\AVAST Software\Avast\defs\17022300\algo.dll
    2016-10-16 14:34 - 2016-10-16 14:34 - 00482928 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
    2017-02-24 12:18 - 2017-02-24 12:18 - 05989072 _____ () C:\Program Files\AVAST Software\Avast\defs\17022401\algo.dll
    2016-10-16 14:34 - 2016-10-16 14:35 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
    2009-09-13 23:56 - 2013-01-02 00:49 - 01292288 _____ () C:\WINDOWS\system32\quartz.dll
    2017-02-02 21:33 - 2017-02-02 21:33 - 19762776 _____ () C:\WINDOWS\system32\Macromed\Flash\NPSWF32_24_0_0_194.dll

    ==================== Alternate Data Streams (Whitelisted) =========

    (If an entry is included in the fixlist, only the ADS will be removed.)


    ==================== Safe Mode (Whitelisted) ===================

    (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"

    ==================== Association (Whitelisted) ===============

    (If an entry is included in the fixlist, the registry item will be restored to default or removed.)


    ==================== Internet Explorer trusted/restricted ===============

    (If an entry is included in the fixlist, it will be removed from the registry.)


    ==================== Hosts content: ===============================

    (If needed Hosts: directive could be included in the fixlist to reset Hosts.)

    2001-08-23 06:00 - 2016-10-16 15:53 - 00000021 _RASH C:\WINDOWS\system32\Drivers\etc\hosts

    127.0.0.1 localhost

    ==================== Other Areas ============================

    (Currently there is no automatic fix for this section.)

    HKU\S-1-5-21-299502267-1292428093-1606980848-500\Control Panel\Desktop\\Wallpaper -> C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Desktop Background.bmp
    DNS Servers: 65.87.230.4 - 65.87.230.5
    Windows Firewall is enabled.

    ==================== MSCONFIG/TASK MANAGER disabled items ==


    ==================== FirewallRules (Whitelisted) ===============

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    StandardProfile\AuthorizedApplications: [C:\Program Files\Google\Chrome\Application\chrome.exe] => Enabled:Google Chrome
    StandardProfile\AuthorizedApplications: [C:\Program Files\Mozilla Firefox\firefox.exe] => Enabled:Firefox (C:\Program Files\Mozilla Firefox)
    StandardProfile\GloballyOpenPorts: [5985:TCP] => Disabled:Windows Remote Management
    StandardProfile\GloballyOpenPorts: [80:TCP] => Disabled:Windows Remote Management - Compatibility Mode (HTTP-In)
    StandardProfile\GloballyOpenPorts: [1900:UDP] => :LocalSubNetisabled:@xpsp2res.dll,-22007
    StandardProfile\GloballyOpenPorts: [2869:TCP] => :LocalSubNetisabled:@xpsp2res.dll,-22008
    StandardProfile\GloballyOpenPorts: [139:TCP] => :LocalSubNetisabled:@xpsp2res.dll,-22004
    StandardProfile\GloballyOpenPorts: [445:TCP] => :LocalSubNetisabled:@xpsp2res.dll,-22005
    StandardProfile\GloballyOpenPorts: [137:UDP] => :LocalSubNetisabled:@xpsp2res.dll,-22001
    StandardProfile\GloballyOpenPorts: [138:UDP] => :LocalSubNetisabled:@xpsp2res.dll,-22002

    ==================== Restore Points =========================

    08-01-2017 20:03:59 System Checkpoint
    09-01-2017 20:28:59 System Checkpoint
    10-01-2017 23:38:10 System Checkpoint
    12-01-2017 00:32:47 System Checkpoint
    13-01-2017 12:08:35 System Checkpoint
    14-01-2017 20:14:45 System Checkpoint
    16-01-2017 12:07:15 System Checkpoint
    17-01-2017 18:33:40 System Checkpoint
    18-01-2017 22:50:53 System Checkpoint
    20-01-2017 11:06:14 System Checkpoint
    21-01-2017 11:09:38 System Checkpoint
    22-01-2017 12:12:20 System Checkpoint
    23-01-2017 12:23:33 System Checkpoint
    24-01-2017 16:35:12 System Checkpoint
    26-01-2017 09:29:28 System Checkpoint
    27-01-2017 10:01:49 System Checkpoint
    28-01-2017 14:19:35 System Checkpoint
    29-01-2017 16:05:15 System Checkpoint
    31-01-2017 17:53:13 System Checkpoint
    02-02-2017 01:00:44 System Checkpoint
    03-02-2017 23:14:54 System Checkpoint
    08-02-2017 14:54:49 System Checkpoint
    10-02-2017 12:15:29 System Checkpoint
    11-02-2017 15:40:25 System Checkpoint
    13-02-2017 10:07:27 System Checkpoint
    15-02-2017 15:59:53 System Checkpoint
    16-02-2017 20:48:03 System Checkpoint
    18-02-2017 16:24:40 System Checkpoint
    22-02-2017 00:28:58 System Checkpoint

    ==================== Faulty Device Manager Devices =============


    ==================== Event log errors: =========================

    Application errors:
    ==================
    Error: (10/16/2016 07:26:09 PM) (Source: crypt32) (EventID: 5) (User: )
    Description: Failed auto update retrieval of third-party root certificate from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/6252DC40F71143A22FDE9EF7348E064251B18118.crt> with error: This operation returned because the timeout period expired.

    Error: (09/14/2016 04:02:03 PM) (Source: crypt32) (EventID: 11) (User: )
    Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

    Error: (09/14/2016 04:02:03 PM) (Source: crypt32) (EventID: 11) (User: )
    Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.

    Error: (08/27/2016 11:00:32 AM) (Source: crypt32) (EventID: 8) (User: )
    Description: Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: This operation returned because the timeout period expired.


    System errors:
    =============
    Error: (02/22/2017 12:57:04 AM) (Source: ipnathlp) (EventID: 31012) (User: )
    Description: The DNS proxy agent encountered an error while obtaining the local list
    of name-resolution servers.
    Some DNS or WINS servers may be inaccessible to clients on the local network.
    The data is the error code.

    Error: (02/22/2017 12:57:04 AM) (Source: ipnathlp) (EventID: 31012) (User: )
    Description: The DNS proxy agent encountered an error while obtaining the local list
    of name-resolution servers.
    Some DNS or WINS servers may be inaccessible to clients on the local network.
    The data is the error code.

    Error: (02/22/2017 12:57:04 AM) (Source: ipnathlp) (EventID: 31012) (User: )
    Description: The DNS proxy agent encountered an error while obtaining the local list
    of name-resolution servers.
    Some DNS or WINS servers may be inaccessible to clients on the local network.
    The data is the error code.

    Error: (02/22/2017 12:56:45 AM) (Source: ipnathlp) (EventID: 31012) (User: )
    Description: The DNS proxy agent encountered an error while obtaining the local list
    of name-resolution servers.
    Some DNS or WINS servers may be inaccessible to clients on the local network.
    The data is the error code.

    Error: (02/19/2017 03:18:37 PM) (Source: Schannel) (EventID: 4108) (User: )
    Description: The certificate received from the remote server has not validated correctly. The
    error code is 0x80092013. The SSL connection request has failed. The attached data contains
    the server certificate.

    Error: (02/15/2017 05:29:34 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
    Description: DCOM got error "%%1053 = The service did not respond to the start or control request in a timely fashion." attempting to start the service gupdate with arguments "/comsvc"
    in order to run the server:
    {4EB61BAC-A3B6-4760-9581-655041EF4D69}

    Error: (02/12/2017 11:24:11 AM) (Source: Schannel) (EventID: 4108) (User: )
    Description: The certificate received from the remote server has not validated correctly. The
    error code is 0x80092013. The SSL connection request has failed. The attached data contains
    the server certificate.

    Error: (02/05/2017 03:20:36 PM) (Source: Schannel) (EventID: 4108) (User: )
    Description: The certificate received from the remote server has not validated correctly. The
    error code is 0x80092013. The SSL connection request has failed. The attached data contains
    the server certificate.

    Error: (01/21/2017 04:48:06 PM) (Source: W32Time) (EventID: 29) (User: )
    Description: The time provider NtpClient is configured to acquire time from one or more
    time sources, however none of the sources are currently accessible.
    No attempt to contact a source will be made for 29 minutes.
    NtpClient has no source of accurate time.

    Error: (01/21/2017 04:48:06 PM) (Source: W32Time) (EventID: 17) (User: )
    Description: Time Provider NtpClient: An error occurred during DNS lookup of the manually
    configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 30
    minutes.
    The error was: A socket operation was attempted to an unreachable host. (0x80072751)


    ==================== Memory info ===========================

    Processor: Intel(R) Celeron(R) CPU 2.53GHz
    Percentage of memory in use: 67%
    Total physical RAM: 1021.98 MB
    Available physical RAM: 335.99 MB
    Total Virtual: 2464.51 MB
    Available Virtual: 1813.3 MB

    ==================== Drives ================================

    Drive c: () (Fixed) (Total:74.54 GB) (Free:59.11 GB) NTFS ==>[drive with boot components (Windows XP)]

    ==================== MBR & Partition Table ==================

    ========================================================
    Disk: 0 (MBR Code: Windows XP) (Size: 74.6 GB) (Disk ID: 41172BA5)
    Partition 1: (Active) - (Size=74.5 GB) - (Type=07 NTFS)

    ==================== End of Addition.txt ============================

  9. #7
    Member Spyware Fighter zep516's Avatar
    Join Date
    Dec 2005
    Location
    Pittsburgh, Pa
    Posts
    7,173
    Points
    1307

    Default

    A few items to fix

    NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

    Open notepad (Start =>All Programs => Accessories => Notepad).
    Copy/Paste the contents of the code box below into Notepad.

    Code:
    start
    CloseProcesses:
    CreateRestorePoint:
    HKLM\...\Run: [AvgUi] => "C:\Program Files\AVG\Framework\Common\avguirnx.exe" /lps=fmw
    C:\Program Files\AVG
    2017-02-24 12:27 - 2016-12-17 11:22 - 00000886 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
    2017-02-24 12:16 - 2016-09-20 09:52 - 00000314 ____H C:\WINDOWS\Tasks\AVG EUpdate Task.job
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
    CMD: netsh winsock reset catalog
    CMD: ipconfig /flushdns
    CMD: netsh winsock reset all
    CMD: netsh int ipv4 reset
    CMD: netsh int ipv6 reset
    CMD: bitsadmin /reset /allusers
    RemoveProxy:
    hosts:
    Emptytemp:
    • Click Format and ensure Wordwrap is unchecked.
    • Save as Fixlist.txt to your Desktop (Must be in this location)
    • Run FRST/FRST64 and press the Fix button just once and wait.
    • If the tool needed a restart please make sure you let the system to restart normally and let the tool completes its run after restart.
    • The tool will make a log on the Desktop (Fixlog.txt). Please post it to your reply.


    Note: If the tool warns you about the version you're using being an outdated version please download and run the updated version.

  10. The Following User Says Thank You to zep516 For This Useful Post:


  11. #8
    Member
    Join Date
    Oct 2010
    Posts
    189
    Points
    3

    Default

    Quote Originally Posted by zep516 View Post
    A few items to fix
    • Click Format and ensure Wordwrap is unchecked.
    • Save as Fixlist.txt to your Desktop (Must be in this location)
    • Run FRST/FRST64 and press the Fix button just once and wait.
    • If the tool needed a restart please make sure you let the system to restart normally and let the tool completes its run after restart.
    • The tool will make a log on the Desktop (Fixlog.txt). Please post it to your reply.

    Note: If the tool warns you about the version you're using being an outdated version please download and run the updated version.
    Sorry. I got as far as saving Fixlist.txt to my Desktop and can't get any further. I can't find FRST/FRST64. I can't run anything from the Fixlist.txt I have on my Desktop and can't run anything from the Frst.txt and Addition.txt. Don't know where to find FRST/FRST64 and going around in circles.

  12. #9
    Member Spyware Fighter zep516's Avatar
    Join Date
    Dec 2005
    Location
    Pittsburgh, Pa
    Posts
    7,173
    Points
    1307

    Default

    FRST is here,

    C:\Documents and Settings\Administrator\My Documents\Downloads

    Navigate to the above location find FRST.
    Right click on FRST
    Choose cut
    Now
    Go back to the desktop, find an empty space on the desktop.
    Right click, choose paste.
    FRST will now be on the desktop, double click on FRST to open, click on FIX.
    a log will be saved to the desktop called Fixlog.txt.


    Or

    saving files to your desktop.

    It's easiest if you configure your browser(s) to download any tools to the desktop by default. Please use the appropriate instructions below depending on the browser you are using.
    Google Chrome - Click the "Customize and control Google Chrome" button in the upper right-corner of the browser.[img=https://dl.dropboxusercontent.com/u/6063925/GeeksToGo/Chrome/Settings.JPG] Choose Settings. at the bottom of the screen click the
    "Show advanced settings..." link. Scroll down to find the Downloads section and click the Change... button. Select your desktop and click OK.
    Mozilla Firefox - Click the "Open Menu" button in the upper right-corner of the browser. Choose Options. In the downloads section, click the Browse button, click on the Desktop folder
    and the click the "Select Folder" button. Click OK to get out of the Options menu.
    Internet Explorer - Click the Tools menu in the upper right-corner of the browser. Select View downloads. Select the Options link in the lower left of the window. Click Browse and
    select the Desktop and then choose the Select Folder button. Click OK to get out of the download options screen and then click Close to get out of the View Downloads screen.
    NOTE: IE8 Does not support changing download locations in this manner. You will need to download the tool(s) to the default folder, usually Downloads, then copy them to the desktop.
    Last edited by zep516; 02-24-2017 at 02:50 PM.

  13. The Following User Says Thank You to zep516 For This Useful Post:


  14. #10
    Member
    Join Date
    Oct 2010
    Posts
    189
    Points
    3

    Default

    Quote Originally Posted by zep516 View Post
    FRST is here,C:\Documents and Settings\Administrator\My Documents\Downloads
    Yes, that worked. Thank you.

    Fix result of Farbar Recovery Scan Tool (x86) Version: 23-02-2017 01
    Ran by Administrator (24-02-2017 15:51:26) Run:4
    Running from C:\Documents and Settings\Administrator\Desktop
    Loaded Profiles: Administrator (Available Profiles: Administrator)
    Boot Mode: Normal

    ==============================================

    fixlist content:
    *****************
    CloseProcesses:
    CreateRestorePoint:
    HKLM\...\Run: [AvgUi] => "C:\Program Files\AVG\Framework\Common\avguirnx.exe" /lps=fmw
    C:\Program Files\AVG
    2017-02-24 12:27 - 2016-12-17 11:22 - 00000886 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
    2017-02-24 12:16 - 2016-09-20 09:52 - 00000314 ____H C:\WINDOWS\Tasks\AVG EUpdate Task.job
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
    CMD: netsh winsock reset catalog
    CMD: ipconfig /flushdns
    CMD: netsh winsock reset all
    CMD: netsh int ipv4 reset
    CMD: netsh int ipv6 reset
    CMD: bitsadmin /reset /allusers
    RemoveProxy:
    hosts:
    Emptytemp:
    *****************

    Processes closed successfully.
    Restore point was successfully created.
    HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AvgUi => value removed successfully.
    C:\Program Files\AVG => moved successfully
    C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
    C:\WINDOWS\Tasks\AVG EUpdate Task.job => moved successfully
    HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => key removed successfully.
    HKLM\System\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => key removed successfully.

    ========= netsh winsock reset catalog =========

    'netsh' is not recognized as an internal or external command,
    operable program or batch file.

    ========= End of CMD: =========


    ========= ipconfig /flushdns =========



    Windows IP Configuration



    Successfully flushed the DNS Resolver Cache.


    ========= End of CMD: =========


    ========= netsh winsock reset all =========

    'netsh' is not recognized as an internal or external command,
    operable program or batch file.

    ========= End of CMD: =========


    ========= netsh int ipv4 reset =========

    'netsh' is not recognized as an internal or external command,
    operable program or batch file.

    ========= End of CMD: =========


    ========= netsh int ipv6 reset =========

    'netsh' is not recognized as an internal or external command,
    operable program or batch file.

    ========= End of CMD: =========


    ========= bitsadmin /reset /allusers =========

    'bitsadmin' is not recognized as an internal or external command,
    operable program or batch file.

    ========= End of CMD: =========


    ========= RemoveProxy: =========

    HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully.
    HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully.
    HKU\S-1-5-21-299502267-1292428093-1606980848-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully.
    HKU\S-1-5-21-299502267-1292428093-1606980848-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully.


    ========= End of RemoveProxy: =========

    C:\Windows\System32\Drivers\etc\hosts => moved successfully
    Hosts restored successfully.

    =========== EmptyTemp: ==========

    BITS transfer queue => 11047 B
    DOMStoree, IE Recovery, AppCache, Feeds Cache, Thumbcache => 77660 B
    Java, Flash, Steam htmlcache => 4599 B
    Windows/system/dllcache/drivers => 1692764 B
    Edge => 0 B
    Chrome => 190455035 B
    Firefox => 280451725 B
    Opera => 130630612 B

    Temp, IE cache, history, cookies, recent:
    Documents and Settings => 0 B
    Default User => 0 B
    All Users => 0 B
    systemprofile => 0 B
    LocalService => 424 B
    NetworkService => 33058 B
    Administrator => 8032406 B

    RecycleBin => 635464823 B
    EmptyTemp: => 1.2 GB temporary data Removed.

    ================================


    The system needed a reboot.

    ==== End of Fixlog 16:01:55 ====

Page 1 of 3 123 LastLast