Password reset and notification emails are now sending correctly.
If you recently requested a password reset, please check your inbox (and spam folder just in case).
You can now reset your password and log in as normal.
Welcome back to PCHF, and thank you for your patience during our migration process!
— The PCHF Team
Welcome to PC Help Forum!
You’re viewing our community as a guest.
That means you can browse posts, but can’t yet reply or start new topics.
Join us today — it's completely free!
As a member, you'll be able to:
✅ Get personalized tech support from trusted volunteers
🦠 Work one-on-one with our Malware Removal Specialists
I will move this thread to Malware forum. There appears nothing serious is going on but lets have a look. Unfortunately with Chrome defaults settings it allows background activity which may happen to remain.
Roger can you upload frst and AdwLeaner logs please?
Please go HERE and download AdwCleaner to your Desktop. Once downloaded right click the new icon and select Run as Administrator from the context menu to open the program. It will open at the Dashboard tab and no further changes to the program are necessary at this stage.
Click the Scan Now button.
[MEDIA=imgur]ILRtByH[/MEDIA]
Allow AdwCleaner to start scanning and depending on the amount of data on your PC it may take some time. At the conclusion of the scan any content considered unnecessary will be displayed in the Scan Results box. Ensure all items are selected for removal and click “Clean & Repair”
[MEDIA=imgur]rodxNou[/MEDIA]
After selecting “Clean & Repair” another dialogue box may appear asking to restart now or later. If so choose “Clean & Restart Now”
[MEDIA=imgur]sAbeW6Z[/MEDIA]
Once the PC has restarted if AdwCleaner does not restart then open it again and click “Log Files” tab on the left. All log files will be listed. If you have used the program previously you may have several logs to select from so double click the most recent “Clean” log and it will open a notepad file on your Desktop.
[COLOR=rgb(184, 49, 47)]Please COPY and PASTE the contents of that file in your next post[COLOR=rgb(184, 49, 47)][/COLOR][/COLOR][COLOR=rgb(184, 49, 47)][COLOR=rgb(184, 49, 47)]
[COLOR=rgb(184, 49, 47)]We also need a log from Farbar Recovery Scan Tool (FRST) to examine your system.
Please download the FRST 32 bit or FRST 64bit version to suit your operating system. It is important FRST is downloaded to your desktop.
If you are unsure if your operating system is 32 or 64 Bit please go HERE.
Once downloaded right click the FRST desktop icon and select “Run as administrator” from the menu"
If you receive any security warnings, or the User Account Control warning opens at any time whilst using FRST you can safely allow FRST to proceed.
Frst will open with two dialogue boxes, accept the disclaimer.
[ol]
[li]Accept the default whitelist options,[/li][li]If the additions.txt options box is not checked please select it.[/li][li]Then select “Scan”[/li][/ol]
Frst will take a few minutes to scan your computer, and when finished will produce two log files on your desktop, FRST.txt, and Addition.txt. They will display immediately on the desktop, but can be reopened later as a notepad file.
[COLOR=rgb(184, 49, 47)]Please also COPY and PASTE the content[COLOR=rgb(184, 49, 47)]s of these two files in your next post.[/COLOR][/COLOR][COLOR=rgb(184, 49, 47)][COLOR=rgb(184, 49, 47)][/color][/color][/COLOR][/color][/color]
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Roger\My Documents\Google Preference Page.lnk → C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) → hxxp://www.google.co.uk/preferences
ShortcutWithArgument: C:\Users\Roger\My Documents\FORUMS\Thunderbird Forum.lnk → C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) → hxxp://forums.mozillazine.org/viewforum.php?f=39
ShortcutWithArgument: C:\Users\Roger\My Documents'TONES STUFF'Tones Facebook.lnk → C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) → hxxps://www.facebook.com/OfficialTheUndertones/
ShortcutWithArgument: C:\Users\Roger\My Documents'TONES STUFF'Tones Italian.lnk → C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) → hxxps://www.facebook.com/pages/The-Undertones-Italia/289890997869209?ref_type=bookmark
ShortcutWithArgument: C:\Users\Roger\My Documents'TONES STUFF\Rocking Humdingers Club.lnk → C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) → hxxps://www.facebook.com/UndertonesHumdingers/
ShortcutWithArgument: C:\Users\Roger\AppData\Roaming\Microsoft\Windows\P rinter Shortcuts\Documents\My Documents\Google Preference Page.lnk → C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) → hxxp://www.google.co.uk/preferences
==================== Loaded Modules (Whitelisted) ==============
2017-11-27 11:11 - 2017-06-07 02:42 - 002197608 _____ () C:\Program Files\Everything\Everything.exe
2018-04-07 15:43 - 2017-11-21 12:29 - 000280568 _____ () C:\Program Files\Bitdefender Antivirus Free\txmlutil.dll
2018-04-07 15:43 - 2017-02-07 12:29 - 001008448 _____ () C:\Program Files\Bitdefender Antivirus Free\Signatures\OTEngines\OTEngines_000_000\ashttp br.mdl
2018-04-07 15:43 - 2017-02-07 12:29 - 000541952 _____ () C:\Program Files\Bitdefender Antivirus Free\Signatures\OTEngines\OTEngines_000_000\ashttp dsp.mdl
2018-04-07 15:43 - 2017-02-07 12:29 - 003243920 _____ () C:\Program Files\Bitdefender Antivirus Free\Signatures\OTEngines\OTEngines_000_000\ashttp ph.mdl
2018-04-07 15:43 - 2017-02-07 12:29 - 001544568 _____ () C:\Program Files\Bitdefender Antivirus Free\Signatures\OTEngines\OTEngines_000_000\ashttp rbl.mdl
2018-04-19 10:19 - 2018-03-27 13:47 - 002492704 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
2018-04-19 10:19 - 2018-03-12 15:09 - 002300192 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2010-07-15 05:44 - 2010-07-15 05:44 - 000020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll
2017-06-27 19:27 - 2016-04-05 14:11 - 000167936 _____ () C:\Program Files (x86)\Epson Software\Print CD\GPNG.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\TEMP:A31FAD21 [163]
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The “AlternateShell” will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Min imal\MBAMService => “”=“Service”
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\MBAMService => “”=“Service”
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2017-11-26 12:09 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1680508398-4254546052-4236040641-1001\Control Panel\Desktop\Wallpaper → C:\Users\Roger\AppData\Roaming\Microsoft\Windows\T hemes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Pol icies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: AMD External Events Utility => 2
MSCONFIG\Services: AMD FUEL Service => 2
MSCONFIG\Services: Apple Mobile Device Service => 2
MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\Services: DigitalWave.Update.Service => 2
MSCONFIG\Services: EPSON_PM_RPCV4_01 => 2
MSCONFIG\Services: Everything => 2
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: gusvc => 3
MSCONFIG\Services: ICScsiSV => 3
MSCONFIG\Services: IcVzMonLauncher => 3
MSCONFIG\Services: IDriverT => 3
MSCONFIG\Services: Image Converter video recording monitor for VAIO Entertainment => 3
MSCONFIG\Services: iPod Service => 3
MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: MSCSPTISRV => 3
MSCONFIG\Services: NAUpdate => 2
MSCONFIG\Services: PACSPTISVR => 3
MSCONFIG\Services: ProductAgentService => 2
MSCONFIG\Services: SonicStage Back-End Service => 3
MSCONFIG\Services: SPTISRV => 3
MSCONFIG\Services: SSScsiSV => 3
MSCONFIG\Services: TomTomHOMEService => 2
MSCONFIG\Services: ZAMSvc => 2
MSCONFIG\startupreg: AvastUI.exe => “C:\Program Files\AVAST Software\Avast\AvLaunch.exe” /gui
MSCONFIG\startupreg: Everything => “C:\Program Files\Everything\Everything.exe” -startup
MSCONFIG\startupreg: ISUSPM Startup => C:\PROGRA~2\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
MSCONFIG\startupreg: SsAAD.exe => C:\PROGRA~2\SsAAD.exe
MSCONFIG\startupreg: SunJavaUpdateSched => “C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe”
MSCONFIG\startupreg: WMAAD => C:\Program Files (x86)\Sony\WALKMAN Launcher\WMAAD.exe
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{0C988403-6F21-4350-B509-1726E45FDF24}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{F067DDE8-8E5E-450C-B4A0-9386A653F2D8}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Restore Points =========================
14-04-2018 15:20:16 OK
15-04-2018 10:24:37 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215
==================== Faulty Device Manager Devices =============
Name: Realtek RTL8169/8110 Family PCI Gigabit Ethernet NIC (NDIS 6.20)
Description: Realtek RTL8169/8110 Family PCI Gigabit Ethernet NIC (NDIS 6.20)
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Realtek
Service: RTL8167
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click “Action”, and then click “Enable Device”. This starts the Enable Device wizard. Follow the instructions.
Name: ZAM Helper Driver
Description: ZAM Helper Driver
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: ZAM
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: ZAM Guard Driver
Description: ZAM Guard Driver
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: ZAM_Guard
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Microsoft PS/2 Mouse
Description: Microsoft PS/2 Mouse
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Standard PS/2 Keyboard
Description: Standard PS/2 Keyboard
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard keyboards)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
[HEADING=1]==================== Event log errors: =========================
Application errors:[/HEADING]
Error: (04/19/2018 10:23:24 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for “C:\Program Files (x86)\Audacity\audacity.exe”.Error in manifest or policy file “” on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.window s.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b 1e3d17594757.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows. common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e8 55142bd5705d.manifest.
Error: (04/19/2018 10:23:24 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for “C:\Program Files (x86)\Audacity\audacity.exe”.Error in manifest or policy file “” on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.window s.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b 1e3d17594757.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows. common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e8 55142bd5705d.manifest.
Error: (04/18/2018 09:43:45 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for “C:\Program Files (x86)\Audacity\audacity.exe”.Error in manifest or policy file “” on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.window s.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b 1e3d17594757.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows. common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e8 55142bd5705d.manifest.
Error: (04/18/2018 09:43:45 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for “C:\Program Files (x86)\Audacity\audacity.exe”.Error in manifest or policy file “” on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.window s.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b 1e3d17594757.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows. common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e8 55142bd5705d.manifest.
Error: (04/17/2018 02:37:10 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program IEXPLORE.EXE version 11.0.9600.18978 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
Process ID: 31c
Start Time: 01d3d6511fc4de3b
Termination Time: 20
Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Report Id:
Error: (04/17/2018 02:36:43 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program IEXPLORE.EXE version 11.0.9600.18978 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
Process ID: b54
Start Time: 01d3d651021cc73a
Termination Time: 25
Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Report Id:
Error: (04/17/2018 02:34:24 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program IEXPLORE.EXE version 11.0.9600.18978 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
Process ID: b64
Start Time: 01d3d650beb10378
Termination Time: 30
Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Report Id:
Error: (04/17/2018 02:34:00 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program IEXPLORE.EXE version 11.0.9600.18978 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
Process ID: 428
Start Time: 01d3d650a6bdd935
Termination Time: 27
Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Report Id:
[HEADING=1]System errors:[/HEADING]
Error: (04/20/2018 11:15:26 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Peer Name Resolution Protocol service terminated with the following error:
%%-2140993535
Error: (04/20/2018 11:15:26 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Peer Networking Grouping service depends on the Peer Name Resolution Protocol service which failed to start because of the following error:
%%-2140993535
Error: (04/20/2018 11:15:26 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Peer Name Resolution Protocol service terminated with the following error:
%%-2140993535
Error: (04/20/2018 11:15:26 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Peer Networking Grouping service depends on the Peer Name Resolution Protocol service which failed to start because of the following error:
%%-2140993535
Error: (04/20/2018 11:15:26 AM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: The Peer Name Resolution Protocol cloud did not start because the creation of the default identity failed with error code: 0x80630801.
Error: (04/20/2018 11:15:26 AM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: The Peer Name Resolution Protocol cloud did not start because the creation of the default identity failed with error code: 0x80630801.
Error: (04/20/2018 11:15:15 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Peer Networking Grouping service depends on the Peer Name Resolution Protocol service which failed to start because of the following error:
%%-2140993535
Error: (04/20/2018 11:15:15 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Peer Name Resolution Protocol service terminated with the following error:
%%-2140993535
[HEADING=1]Windows Defender:[/HEADING]
[HEADING=1]Date: 2013-07-04 11:38:00.543
Description:
Windows Defender has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures.
Signatures Attempted:Current
Error Code:0x80070002
Error description:The system cannot find the file specified.
Signature version:0.0.0.0
Engine version:0.0.0.0
Date: 2013-07-04 11:38:00.538
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version:
Update Source:Signature Update Folder
Signature Type:AntiSpyware
Update Typeelta
Current Engine Version:
Previous Engine Version:
Error code:0x80070002
Error description:The system cannot find the file specified.
Date: 2013-04-13 12:30:34.243
Description:
Windows Defender has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures.
Signatures Attempted:Current
Error Code:0x80070002
Error description:The system cannot find the file specified.
Signature version:0.0.0.0
Engine version:0.0.0.0
Date: 2013-04-13 12:30:34.243
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version:
Update Source:Signature Update Folder
Signature Type:AntiSpyware
Update Typeelta
Current Engine Version:
Previous Engine Version:
Error code:0x80070002
Error description:The system cannot find the file specified.
CodeIntegrity:[/HEADING]
Date: 2016-10-30 20:30:12.143
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\P EAuth.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-10-30 20:30:12.096
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\P EAuth.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-10-30 20:30:05.747
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\audiodg.e xe because the set of per-page image hashes could not be found on the system.
Date: 2016-10-30 20:18:16.704
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\audiodg.e xe because the set of per-page image hashes could not be found on the system.
Date: 2016-10-30 16:39:11.283
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\P EAuth.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-10-30 16:39:11.205
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\P EAuth.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-10-30 16:38:47.742
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\audiodg.e xe because the set of per-page image hashes could not be found on the system.
Date: 2016-10-26 14:14:35.774
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\audiodg.e xe because the set of per-page image hashes could not be found on the system.
==================== Memory info ===========================
Processor: AMD Athlon™ 64 X2 Dual Core Processor 6000+
Percentage of memory in use: 46%
Total physical RAM: 4095.3 MB
Available physical RAM: 2194.98 MB
Total Virtual: 8188.76 MB
Available Virtual: 5853.91 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:465.76 GB) (Free:355.33 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive g: () (Fixed) (Total:232.88 GB) (Free:181.37 GB) NTFS
[HEADING=1]==================== MBR & Partition Table ==================[/HEADING]
[HEADING=1]Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: DF13BED6)
Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS)[/HEADING]
Disk: 1 (MBR Code: Windows XP) (Size: 232.9 GB) (Disk ID: 9C539C53)
Partition 1: (Active) - (Size=232.9 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================
Hello Roger, whilst I go through your logs could I strongly urge you to NOT have more than one realtime security app in use at the same time. Irrespective of what you read sooner or later, if not already, there will be a conflict which may ultimately prevent your PC from responding. Recommend you disable malwarebytes realtime protection, and as recommended previously only use it for a second opinion as required and run it manually
Hello Roger, Grandson is doing very well thank you. He is 5 months old today, getting teeth and trying to crawl. He has his Grandmother captivated so he gets spoiled.
Deselecting the 4 options you have marked with arrows should be all that’s needed to turn realtime protection off.
Please left click on the attached Fixlist.txt file at the bottom of this post. On the dialogue box that opens click “Save File” and then “OK”
[MEDIA=imgur]vzol8OV[/MEDIA]
Select a location then save the file to the desktop. [COLOR=rgb(184, 49, 47)]IMPORTANT the fixlist.txt file must be in the same location as the FRST program otherwise the fix will not work.
[COLOR=rgb(184, 49, 47)]This fix was created for this users computer only and the use of it on another machine may render that machine unusable.
[MEDIA=imgur]pjsQ8XB[/MEDIA]
To run the fix right click the FRST icon and choose “Run as Administrator” then click on “Fix”
[MEDIA=imgur]cp0349X[/MEDIA]
Depending on the amount of data to be moved it may take a few minutes to complete, and the computer may reboot. When the fix is complete and/or the computer has rebooted the “Fixlist.txt” file you created will be renamed “Fixlog.txt”
[COLOR=rgb(184, 49, 47)]Please COPY and PASTE the contents of this new file in your next post:slight_smile:[/COLOR][/COLOR][/COLOR]
Bitdefender is still playing up.(as in first post). Unable to switch it back on.
Sometimes it is showing “Your device is at risk” - if I shut down PC and log in again - it generally shows that “Your device is protected”. (but not always).
Unistalled Bitdefender with Geek.
Re-installed Bitdefender.
Part way through re-installation Bitdefender advised me to uninstall Malwarebytes (incompatibility etc - can’t remember exact wording)
Uninstalled Malwarebytes with Geek.
Carried on installing Bitdefender carefully following instructions.
[COLOR=rgb(184, 49, 47)]Still playing up???[/COLOR][COLOR=rgb(184, 49, 47)][/color]
I would try removing Malwarebytes and suggest again you use Zemana instead. If that doesnt work remove Bitdefender and install Avast free. I think you have it on your desktop as a link.
Also your computer would certainly benefit from a reinstall of Windows 7.
We process personal data about users of our site, through the use of cookies and other technologies, to deliver our services, personalize advertising, and to analyze site activity. We may share certain information about our users with our advertising and analytics partners. For additional details, refer to our Privacy Policy.
By clicking "I AGREE" below, you agree to our Privacy Policy and our personal data processing and cookie practices as described therein. You also acknowledge that this forum may be hosted outside your country and you consent to the collection, storage, and processing of your data in the country where this forum is hosted.
Comment