Password reset and notification emails are now sending correctly.
If you recently requested a password reset, please check your inbox (and spam folder just in case).
You can now reset your password and log in as normal.
Welcome back to PCHF, and thank you for your patience during our migration process!
— The PCHF Team
Welcome to PC Help Forum!
You’re viewing our community as a guest.
That means you can browse posts, but can’t yet reply or start new topics.
Join us today — it's completely free!
As a member, you'll be able to:
✅ Get personalized tech support from trusted volunteers
🦠 Work one-on-one with our Malware Removal Specialists
Good Morning:
I downloaded the ZHP Scan.
I ran the scanner. The program found 82 issues. When I attempted to push the repair button the program appeared to be stalled and it wouldn’t continue. I closed the program and ran it again 3 more times with the same results.
Any suggestions?
[ol]
[li]Run the program in safe mode with networking.[/li][li]If that fails. [/li]
[li]Skip it.[/li][/ol] Next:
Next lets check for Mcafee remnants.
Get the Everything Search Engine
Install Program, Right Click Run As Admin. Type McAfee into to search window.
Then Click Edit.
Select all.
Right Click highlighted items>>>>>>>> Copy full name to clipboard. >>>>> Paste content of clipboard, here in your next reply.
Repeat the same steps for each of the 3 words below.
One at a time!
& Then The file path.
Hola Speedbit VaudiX C:\Windows\System32\Tasks
Next:
You have an extreme amount of scheduled task on your machine. More than Normal by far…
Download CCleaner from here.
After install Click Options.
Go to monitoring.
Uncheck All Monitoring items.
Go to advanced – Click close program after cleaning.
Go to settings – click run ccleaner when the computer starts.
Now that you have ccleaner installed and set-up:
Open the program.
Go to Tools
Go to Startup
Now double click each item. To Disable.
Then disable All items in your scheduled task as well.
As yet, since I used the “Reset Browser” program I haven’t experienced any pop ups. So I am very pleased with that.
(Thanks)
Here is the next program.
After I ran the last program, (ZHPDiag) there was a report saying that there were 4 issues but it wouldn’t allow me to copy them to show you what they were.
~ ZHPDiag v2016.11.28.232 By Nicolas Coolman (2016/11/28)
~ Run by CEP Local 440 (Administrator) (2016/11/29 13:33:46)
~ Web: https://www.nicolascoolman.com
~ Blog: https://www.anti-malware.top
~ Facebook: ZHP
~ State version: Version OK
~ Mode: Scan
~ Report: C:\Users\CEP Local 440\Desktop\ZHPDiag.txt
~ Report: C:\Users\CEP Local 440\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ System startup: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 10240)
After I ran the ZHPDiag program. As I mentioned before a log came up saying the following;
Items found at your station; 4
Superflous.SlimWare Utilities
Heuristic.Suspect
Pup.Optional. Install Converter
Superflous.Tarma.
~ ZHPDiag v2016.11.28.232 By Nicolas Coolman (2016/11/28)
~ Run by CEP Local 440 (Administrator) (2016/11/29 14:02:37)
~ Web: https://www.nicolascoolman.com
~ Blog: https://www.anti-malware.top
~ Facebook: ZHP
~ State version: Version OK
~ Mode: Scan
~ Report: C:\Users\CEP Local 440\Desktop\ZHPDiag.txt
~ Report: C:\Users\CEP Local 440\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ System startup: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 10240)
—\ Internet Browsers (1) - 0s
~ MSIE: Internet Explorer v11.0.10240.16841
—\ Windows Product Information (3) - 3s
~ Windows Server License Manager Script : OK
System - VBScript Engine not found
Windows Automatic Updates : OK
—\ System protection software (2) - 4s
Malwarebytes Anti-Malware version 2.2.1.1043 (Protection)
Windows Defender (Activate) (Protection)
—\ Information on the system (6) - 0s
~ Operating System: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4094.892 MB (48% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 334 GB (72%) free of 461 GB : OK =>.Disk Space
—\ Connection to the system mode (3) - 0s
~ Computer Name: CEPLOCAL440-PC
~ User Name: CEP Local 440
~ Logged in as Administrator
—\ Enumeration of the disk units (3) - 0s
~ Drive C: has 334 GB free of 461 GB (System)
~ Drive D: has 2 GB free of 14 GB
~ Drive E: has 0 GB free of 0 GB
—\ State of the Windows Security Center (7) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Pol icies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\pol icies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
Download attached fixlist.txt file and save it to the Desktop. NOTE. It’s important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work. NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system Run FRST/FRST64 and press the Fix button just once and wait. If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run. When finished FRST will generate a log on the Desktop (Fixlog.txt). Please post it to your reply.
[HEADING=1]Fix result of Farbar Recovery Scan Tool (x64) Version: 02-12-2016
Ran by CEP Local 440 (02-12-2016 19:42:10) Run:4
Running from C:\Users\CEP Local 440\Desktop
Loaded Profiles: CEP Local 440 (Available Profiles: CEP Local 440 & DefaultAppPool)
Boot Mode: Normal[/HEADING]
fixlist content:
start
CreateRestorePoint:
CloseProcesses:
C:\WINDOWS\System32\drivers\mfeavfk.sys
C:\WINDOWS\System32\drivers\mfeapfk.sys
C:\WINDOWS\System32\mfevtps.exe
C:\WINDOWS\System32\Tasks{298B2E4F-B19F-479B-A158-24E952B262D7}
C:\WINDOWS\System32\Tasks{BF9EF130-FE70-4432-88EC-F3B7132270EA}
C:\Program Files (x86)\Amazon
C:\Program Files (x86)\SpeedBit Video Accelerator
C:\Program Files (x86)\uTorrent
C:\ProgramData\boost_interprocess
C:\ProgramData\Kaspersky Lab Setup Files
C:\ProgramData\McAfee
C:\ProgramData\Norton
C:\ProgramData\NortonInstaller
C:\ProgramData{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF}
C:\Program Files (x86)\Common Files\McAfee
C:\Users\CEP Local 440\AppData\Local\uTorrent
C:\WINDOWS\System32\drivers\mfeclnk.sys
C:\WINDOWS\System32\drivers\mfehidk.sys
C:\WINDOWS\System32\drivers\mferkdet.sys
C:\WINDOWS\System32\drivers\mfewfpk.sys
C:\WINDOWS\System32\drivers\tmcomm.sys
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\InstallConverter
C:\ProgramData\InstallMate
C:\WINDOWS\Installer\e3541.msi
C:\Users\CEP Local 440\AppData\Roaming\inst.exe
DeleteKey: HKLM\SOFTWARE\Wow6432Node\KasperskyLab
DeleteKey: HKLM\SOFTWARE\Wow6432Node\McAfee
DeleteKey: HKLM\SOFTWARE\Wow6432Node\Symantec
DeleteKey: HKLM\SOFTWARE\Wow6432Node\trendmicro
DeleteKey: HKCU\SOFTWARE\KasperskyLab
DeleteKey: HKCU\SOFTWARE\McAfee
DeleteKey: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall{3CF3DEF4-ED15-4F7B-9320-C3E1081EA4DA}
DeleteKey: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
DeleteKey: HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\Curren tVersion\Uninstall{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Emptytemp:
reboot:
end
Restore point was successfully created.
Processes closed successfully.
C:\WINDOWS\System32\drivers\mfeavfk.sys => moved successfully
C:\WINDOWS\System32\drivers\mfeapfk.sys => moved successfully
C:\WINDOWS\System32\mfevtps.exe => moved successfully
C:\WINDOWS\System32\Tasks{298B2E4F-B19F-479B-A158-24E952B262D7} => moved successfully
C:\WINDOWS\System32\Tasks{BF9EF130-FE70-4432-88EC-F3B7132270EA} => moved successfully
C:\Program Files (x86)\Amazon => moved successfully
C:\Program Files (x86)\SpeedBit Video Accelerator => moved successfully
C:\Program Files (x86)\uTorrent => moved successfully
C:\ProgramData\boost_interprocess => moved successfully
C:\ProgramData\Kaspersky Lab Setup Files => moved successfully
C:\ProgramData\McAfee => moved successfully
C:\ProgramData\Norton => moved successfully
C:\ProgramData\NortonInstaller => moved successfully
C:\ProgramData{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF} => moved successfully
C:\Program Files (x86)\Common Files\McAfee => moved successfully
C:\Users\CEP Local 440\AppData\Local\uTorrent => moved successfully
C:\WINDOWS\System32\drivers\mfeclnk.sys => moved successfully
C:\WINDOWS\System32\drivers\mfehidk.sys => moved successfully
C:\WINDOWS\System32\drivers\mferkdet.sys => moved successfully
C:\WINDOWS\System32\drivers\mfewfpk.sys => moved successfully
C:\WINDOWS\System32\drivers\tmcomm.sys => moved successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\InstallConverter => moved successfully
C:\ProgramData\InstallMate => moved successfully
C:\WINDOWS\Installer\e3541.msi => moved successfully
C:\Users\CEP Local 440\AppData\Roaming\inst.exe => moved successfully
HKLM\SOFTWARE\Wow6432Node\KasperskyLab => key removed successfully
HKLM\SOFTWARE\Wow6432Node\McAfee => key removed successfully
HKLM\SOFTWARE\Wow6432Node\Symantec => key removed successfully
HKLM\SOFTWARE\Wow6432Node\trendmicro => key removed successfully
HKCU\SOFTWARE\KasperskyLab => key removed successfully
HKCU\SOFTWARE\McAfee => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall{3CF3DEF4-ED15-4F7B-9320-C3E1081EA4DA} => could not remove key.: incorrect path.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} => could not remove key.: incorrect path.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\Curren tVersion\Uninstall{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} => key removed successfully
=========== EmptyTemp: ==========
BITS transfer queue => 32768 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 6481875 B
Java, Flash, Steam htmlcache => 492 B
Windows/system/drivers => 1452669 B
Edge => 0 B
Chrome => 0 B
Firefox => 0 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 128 B
systemprofile32 => 128 B
LocalService => 0 B
NetworkService => 0 B
CEP Local 440 => 160891345 B
DefaultAppPool => 0 B
RecycleBin => 4348207 B
EmptyTemp: => 165.2 MB temporary data Removed.
We process personal data about users of our site, through the use of cookies and other technologies, to deliver our services, personalize advertising, and to analyze site activity. We may share certain information about our users with our advertising and analytics partners. For additional details, refer to our Privacy Policy.
By clicking "I AGREE" below, you agree to our Privacy Policy and our personal data processing and cookie practices as described therein. You also acknowledge that this forum may be hosted outside your country and you consent to the collection, storage, and processing of your data in the country where this forum is hosted.
Comment