System Volume Information is not accessiblle

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • Malnutrition
    PCHF Moderator
    • Jul 2016
    • 7041

    #76
    Alright, lets have a look at a fresh Hijack this log please.

    HijackThis.

    1- Please click HERE to download HijackThis.
    2- Run the program.
    3- Click on the Main Menu button if not already there.
    4- Select Do a system scan and save a logfile.
    5- Copy paste the log here.

    Security Check Scan.

    Download Security Check to your desktop, right click it run as administrator. When the program completes, the tool will automatically open a log file, please post that log here in your next post.

    Comment

    • ManishMan
      PCHF Member
      • Sep 2016
      • 99

      #77
      Logfile of Trend Micro HijackThis v2.0.4
      Scan saved at 8:56:17 PM, on 9/9/2016
      Platform: Unknown Windows (WinNT 6.02.1008)
      MSIE: Internet Explorer v11.0 (11.00.14393.0000)
      Boot mode: Normal

      Running processes:
      C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
      C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
      C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
      C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe
      C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe
      C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLMLSvc_P2G8.exe
      C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
      C:\Program Files (x86)\Dell Update\DellUpTray.exe
      C:\Program Files (x86)\Mozilla Firefox\firefox.exe
      C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
      C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerPlug in_22_0_0_209.exe
      C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerPlug in_22_0_0_209.exe
      C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.ex e
      C:\Users\asing\Desktop\HijackThis.exe

      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Search - Microsoft Bing
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = MSN
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Search - Microsoft Bing
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Search - Microsoft Bing
      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN
      R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
      R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
      O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll
      O2 - BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll
      O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll
      O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
      O4 - HKLM..\Run: [AdobeCS5ServiceManager] “C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.ex e” -launchedbylogin
      O4 - HKLM..\Run: [AdobeCS6ServiceManager] “C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.ex e” -launchedbylogin
      O4 - HKLM..\Run: [SunJavaUpdateSched] “C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe”
      O4 - HKLM..\Run: [Malwarebytes Anti-Exploit] C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe
      O4 - HKCU..\Run: [OneDrive] “C:\Users\asing\AppData\Local\Microsoft\OneDrive\O neDrive.exe” /background
      O4 - HKCU..\Run: [CCleaner Monitoring] “C:\Program Files\CCleaner\CCleaner64.exe” /MONITOR
      O4 - HKCU..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot
      O4 - HKCU..\Run: [Mailbird] “C:\Program Files (x86)\Mailbird\Mailbird.exe” startup
      O4 - HKCU..\Run: [TunnelBear] C:\Program Files (x86)\TunnelBear\TBear.Client.exe -autoconnect
      O4 - HKCU..\Run: [CCleaner] “C:\Program Files\CCleaner\CCleaner64.exe” /AUTO
      O4 - HKCU..\RunOnce: [Uninstall C:\Users\asing\AppData\Local\Microsoft\OneDrive\17 .3.6390.0509_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q “C:\Users\asing\AppData\Local\Microsoft\OneDrive\1 7.3.6390.0509_1\amd64”
      O4 - HKUS\S-1-5-19..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User ‘LOCAL SERVICE’)
      O4 - HKUS\S-1-5-20..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User ‘NETWORK SERVICE’)
      O8 - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm
      O8 - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm
      O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE/3000
      O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files (x86)\Microsoft Office\Root\Office16\ONBttnIE.dll/105
      O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIE.dll
      O9 - Extra ‘Tools’ menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIE.dll
      O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIELinkedNotes.dll
      O9 - Extra ‘Tools’ menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIELinkedNotes.dll
      O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
      O18 - Protocol: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
      O18 - Protocol: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
      O18 - Protocol: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
      O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
      O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
      O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
      O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
      O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
      O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpda teService.exe
      O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
      O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
      O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
      O23 - Service: BTDevManager - Unknown owner - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe
      O23 - Service: Dell Data Vault (DellDataVault) - Dell Inc. - C:\Program Files\Dell\DellDataVault\DellDataVault.exe
      O23 - Service: Dell Data Vault Wizard (DellDataVaultWiz) - Dell Inc. - C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe
      O23 - Service: Dell Update Service (DellUpdate) - Dell Inc. - C:\Program Files (x86)\Dell Update\DellUpService.exe
      O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.Sta ndardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.Standa rdCollector.Service.exe (file missing)
      O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
      O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
      O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
      O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
      O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
      O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
      O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
      O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\WINDOWS\system32\IProsetMonitor.exe (file missing)
      O23 - Service: Intel(R) Security Assist - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
      O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
      O23 - Service: Intel(R) Ready Mode Technology (IRMTService) - Intel Corporation - c:\Program Files\Intel\Intel(R) Ready Mode Technology\IRMTService.exe
      O23 - Service: Intel(R) Security Assist Helper (isaHelperSvc) - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
      O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
      O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
      O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
      O23 - Service: Mailbird Updater (MailbirdUpdater.exe) - Mailbird - C:\Program Files (x86)\Mailbird\MailbirdUpdater.exe
      O23 - Service: Malwarebytes Anti-Exploit Service (MbaeSvc) - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae-svc.exe
      O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
      O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
      O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
      O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe
      O23 - Service: McAfee Boot Delay Start Service (McBootDelayStartSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
      O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPServiceHost.exe
      O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
      O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe
      O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
      O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe
      O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe
      O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
      O23 - Service: McAfee Service Controller (mfemms) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
      O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
      O23 - Service: McAfee Module Core Service (ModuleCoreService) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
      O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
      O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
      O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
      O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
      O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
      O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
      O23 - Service: NVIDIA Wireless Controller Service - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe
      O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
      O23 - Service: Intel Security PEF Service (PEFService) - Intel Security, Inc. - C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe
      O23 - Service: Rapport Management Service (RapportMgmtService) - IBM Corp. - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
      O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
      O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
      O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
      O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
      O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
      O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
      O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
      O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
      O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe
      O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
      O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
      O23 - Service: TunnelBear Maintenance (TunnelBearMaintenance) - Unknown owner - C:\Program Files (x86)\TunnelBear\TBear.Maintenance.exe
      O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
      O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
      O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
      O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
      O23 - Service: Waves System Service (WavesSysSvc) - Waves Audio Ltd. - C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
      O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
      O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
      O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
      O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
      O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
      O23 - Service: ZAM Controller Service (ZAMSvc) - Zemana Ltd. - C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe


      End of file - 16831 bytes

      Comment

      • ManishMan
        PCHF Member
        • Sep 2016
        • 99

        #78
        SecurityCheck by glax24 & Severnyj v.1.4.0.44 [17.08.16]
        WebSite: www.safezone.cc
        DateLog: 09.09.2016 20:56:59
        Path starting: C:\Users\asing\AppData\Local\Temp\SecurityCheck\Se curityCheck.exe
        Log directory: C:\SecurityCheck
        IsAdmin: True
        User: asing
        VersionXML: 3.30is-07.09.2016


        Windows 10(6.3.14393) (x64) Core Lang: English(0409)
        Installation date OS: 14.08.2016 01:25:20
        LicenseStatus: Windows(R), Core edition The machine is permanently activated.
        LicenseStatus: Office 16, Office16O365HomePremR_SubTrial5 edition Windows is in Notification mode
        Boot Mode: Normal
        Default Browser: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
        SystemDrive: C: FS: [NTFS] Capacity: [917.5 Gb] Used: [203.9 Gb] Free: [713.6 Gb]
        ------------------------------- [ Windows ] -------------------------------
        User Account Control enabled
        Automatic Updates disabled (-1)
        Windows Update (wuauserv) - The service has stopped
        Security Center (wscsvc) - The service is running
        Remote Registry (RemoteRegistry) - The service has stopped
        SSDP Discovery (SSDPSRV) - The service is running
        Remote Desktop Services (TermService) - The service has stopped
        Windows Remote Management (WS-Management) (WinRM) - The service has stopped
        ---------------------------- [ Antivirus_WMI ] ----------------------------
        Windows Defender (disabled and up to date)
        McAfee Anti-Virus and Anti-Spyware (enabled)
        ---------------------------- [ Firewall_WMI ] -----------------------------
        McAfee Firewall
        --------------------------- [ AntiSpyware_WMI ] ---------------------------
        Windows Defender (disabled and up to date)
        McAfee Anti-Virus and Anti-Spyware (enabled)
        ---------------------- [ AntiVirusFirewallInstall ] -----------------------
        McAfee LiveSafe v.15.0.166
        -------------------------- [ SecurityUtilities ] --------------------------
        Malwarebytes Anti-Malware version 2.2.1.1043 v.2.2.1.1043
        Zemana AntiMalware v.2.30.75
        --------------------------- [ OtherUtilities ] ----------------------------
        WinRAR 5.31 beta 1 (64-bit) v.5.31.1 Warning! Download Update
        VLC media player v.2.2.4
        ---------------------------- [ ProxyAndVPNs ] -----------------------------
        TunnelBear v.2.3.25.0 Warning! This app can show ads.
        -------------------------------- [ Java ] ---------------------------------
        Java 8 Update 101 v.8.0.1010.13 Warning! Download Update
        Uninstall old version and install new one (jre-8u102-windows-i586.exe).
        --------------------------- [ AppleProduction ] ---------------------------
        Bonjour v.3.1.0.1
        iTunes v.12.4.1.6 Warning! Download Update
        ^Please use Apple Software Update tool.[1]
        Bonjour Service (Bonjour Service) - The service is running
        --------------------------- [ AdobeProduction ] ---------------------------
        Adobe AIR v.3.1.0.4880 Warning! Download Update
        Adobe Flash Player 22 NPAPI v.22.0.0.209
        Adobe Acrobat Reader DC v.15.017.20053
        ------------------------------- [ Browser ] -------------------------------
        Google Chrome v.52.0.2743.116 Warning! Download Update
        Mozilla Firefox 48.0.2 (x86 en-GB) v.48.0.2
        --------------------------- [ RunningProcess ] ----------------------------
        C:\Program Files (x86)\Mozilla Firefox\firefox.exe v.48.0.2.6079
        ------------------ [ AntivirusFirewallProcessServices ] -------------------
        C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe v.2.3.173.0
        MBAMScheduler (MBAMScheduler) - The service is running
        C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe v.3.1.7.0
        MBAMService (MBAMService) - The service is running
        C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe v.3.2.21.0
        Malwarebytes Anti-Exploit Service (MbaeSvc) - The service is running
        C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae-svc.exe v.1.8.1.2572
        C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe v.15.4.0.822
        McAfee Validation Trust Protection Service (mfevtp) - The service is running
        C:\Windows\System32\mfevtps.exe
        C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe v.1.4.1.612
        McAfee Firewall Core Service (mfefire) - The service is running
        C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe v.15.4.0.822
        McAfee AP Service (McAPExe) - The service is running
        C:\Program Files\mcafee\msc\McAPExe.exe v.15.0.166.0
        McAfee Personal Firewall Service (McMPFSvc) - The service is running
        C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe v.6.0.151.0
        C:\Program Files\Common Files\McAfee\platform\McUICnt.exe v.8.0.140.0
        McAfee CSP Service (mccspsvc) - The service is running
        C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPServiceHost.exe v.1.9.829.0
        McAfee Scanner (McODS) - The service has stopped
        McAfee Service Controller (mfemms) - The service is running
        C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe v.15.4.0.822
        McAfee Module Core Service (ModuleCoreService) - The service is running
        C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe v.1.3.118.0
        McAfee Home Network (HomeNetSvc) - The service is running
        McAfee VirusScan Announcer (McNaiAnn) - The service is running
        McAfee OOBE Service2 (McOobeSv2) - The service has stopped
        McAfee Platform Services (mcpltsvc) - The service is running
        McAfee Proxy Service (McProxy) - The service is running
        McAfee Boot Delay Start Service (McBootDelayStartSvc) - The service is running
        McAfee Platform Services (mcpltsvc) - The service is running
        Windows Defender Service (WinDefend) - The service has stopped
        Windows Defender Network Inspection Service (WdNisSvc) - The service has stopped
        ZAM Controller Service (ZAMSvc) - The service is running
        C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe v.0.0.0.0
        ----------------------------- [ End of Log ] ------------------------------

        1. /b ↩︎

        Comment

        • Malnutrition
          PCHF Moderator
          • Jul 2016
          • 7041

          #79
          Fix with HijackThis!

          Close all other programs!

          Right Click Hijack this, run as administrator.
          Click do a system scan only.
          Place a tick next to the items below.

          O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
          O4 - HKLM..\Run: [AdobeCS5ServiceManager] “C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.ex e” -launchedbylogin
          O4 - HKLM..\Run: [AdobeCS6ServiceManager] “C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.ex e” -launchedbylogin
          O4 - HKLM..\Run: [SunJavaUpdateSched] “C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe”
          O4 - HKCU..\Run: [OneDrive] “C:\Users\asing\AppData\Local\Microsoft\OneDrive\O neDrive.exe” /background
          O4 - HKCU..\Run: [CCleaner Monitoring] “C:\Program Files\CCleaner\CCleaner64.exe” /MONITOR
          O4 - HKCU..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot
          O4 - HKCU..\Run: [Mailbird] “C:\Program Files (x86)\Mailbird\Mailbird.exe” startup
          O4 - HKCU..\Run: [TunnelBear] C:\Program Files (x86)\TunnelBear\TBear.Client.exe -autoconnect
          O4 - HKCU..\RunOnce: [Uninstall C:\Users\asing\AppData\Local\Microsoft\OneDrive\17 .3.6390.0509_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q “C:\Users\asing\AppData\Local\Microsoft\OneDrive\1 7.3.6390.0509_1\amd64”
          O4 - HKUS\S-1-5-19..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User ‘LOCAL SERVICE’)
          O4 - HKUS\S-1-5-20..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User ‘NETWORK SERVICE’)

          Click fix checked.
          Accept the prompt.
          Reboot the machine after.

          Update your programs.

          Make sure and update all programs suggested by the Security Check tool, you can update manually, or use this effective tool.
          Removing Security Programs.

          I have noted over the years of helping in forums that Trusteer Endpoint Protection has been known to slow down machines and cause issues, if this program is not needed, then I would suggest removing it. I think that removing Mcafee and then re-installing it may also help. Make sure and remove it reboot, and then run the Mcafee Removal Tool then reboot, and then reinstall the program.

          Finally, running a check disk on your machine…

          Run chkdsk /f /r From elevated Command Prompt.

          I have made a video explaining how to run check disk on your computer found below.

          [MEDIA=youtube]4feZG3LebOg[/MEDIA]

          Comment

          • ManishMan
            PCHF Member
            • Sep 2016
            • 99

            #80
            Thanks for your responses. So I have done everything else that you mentioned apart from removing Trusteer Endpoint Protection as I do lots of online shopping and not sure if this software protects me in anyway. Also I haven’t removed McAfee because the program came pre installed with my system and I had a look in program files for an .exe file so that I can re install later, but I found some other mcafee .exe files and I’m unsure which do which.

            Finally when I run the check disk I got this message which is different from the one in the video so I exited it and came here to make this post.
            here is the message I got from check disk after I hit enter:
            Access Denied as you do not have sufficient privileges.
            You have to invoke this utility running in elevated mode.

            Comment

            • Malnutrition
              PCHF Moderator
              • Jul 2016
              • 7041

              #81
              If you look at the video it will explain how to open command prompt in elevated mode.

              Open the Start Menu, click on All Programs and Accessories, right click on Command Prompt, and click on Run as administrator.

              Comment

              • Malnutrition
                PCHF Moderator
                • Jul 2016
                • 7041

                #82
                Just so you know as well. Mcafee along with AVG antivirus have been known to cause many many issues on many machines. Since you did not pay for the program, might I suggest a free one that is far superior.

                360 Total Security
                Sophos Home Free
                Panda Free Antivirus.

                I am only suggesting that you give one of these a chance in place of Mcafee, you can always reinstall later. You can download a fresh copy of Mcafee here. As well the Trusteer program has also been known to cause issues, bit defender makes a similiar product which does not slow things down. Your choice, these are only trouble shooting steps that you can take to see if your issue is solved.

                Comment

                • ManishMan
                  PCHF Member
                  • Sep 2016
                  • 99

                  #83
                  Originally posted by Malnutrition
                  Just so you know as well. Mcafee along with AVG antivirus have been known to cause many many issues on many machines. Since you did not pay for the program, might I suggest a free one that is far superior.

                  360 Total Security
                  Sophos Home Free
                  Panda Free Antivirus.

                  I am only suggesting that you give one of these a chance in place of Mcafee, you can always reinstall later. You can download a fresh copy of Mcafee here. As well the Trusteer program has also been known to cause issues, bit defender makes a similiar product which does not slow things down. Your choice, these are only trouble shooting steps that you can take to see if your issue is solved.
                  I was hoping you wouldn’t say this about McAfee.. lol. I have actually read in other places how rubbish McAfee is and how it can really slow down your pc but I though it wouldn’t happen to everyone and since I got it free I’ll just use it. Out of those 3 free ones that you suggested, which one would you recommend the most, almost ALL of my day is spent on internet and computer because of graphic designing.

                  Comment

                  • jmarket
                    PCHF Owner
                    • Jan 2015
                    • 7635

                    #84
                    A free one I recommend is Avast. I’ve never in my 10 years of computer repair heard of 360 Total Security. Panda is good too.

                    Comment

                    • Malnutrition
                      PCHF Moderator
                      • Jul 2016
                      • 7041

                      #85
                      I would personally use 360 Total Security, it even has an initial speed up scan, that can really get things moving. I would couple that with an Adblocking DNS Server.

                      Ublock Origin, and the Fanboy Ultimate List Add-on

                      If you do decide to remove Mcafee, then make sure and run the removal tool. Test out 360 for a couple of days and see if you notice an overall improvement. I am not trying to get you to switch out of personal preference, I am just trying to get your machine running the best it can run. Personal preference has nothing to do with this for me, if you were able to run brand a antivirus and it was ok for you, then that is that. I am just letting you know my experience with these programs. I would feel it irresponsible of me to not inform you of such things.

                      Comment

                      • Malnutrition
                        PCHF Moderator
                        • Jul 2016
                        • 7041

                        #86
                        Originally posted by jmarket
                        I’ve never in my 10 years of computer repair heard of 360 Total Security.
                        A very nice antivirus which I install on all my families machines, I have tested this antivirus against many malware samples and the detection rate is in the 90 percent range.

                        Comment

                        • ManishMan
                          PCHF Member
                          • Sep 2016
                          • 99

                          #87
                          Originally posted by Malnutrition
                          I would personally use 360 Total Security, it even has an initial speed up scan, that can really get things moving. I would couple that with an Adblocking DNS Server.

                          Ublock Origin, and the Fanboy Ultimate List Add-on

                          If you do decide to remove Mcafee, then make sure and run the removal tool. Test out 360 for a couple of days and see if you notice an overall improvement. I am not trying to get you to switch out of personal preference, I am just trying to get your machine running the best it can run. Personal preference has nothing to do with this for me, if you were able to run brand a antivirus and it was ok for you, then that is that. I am just letting you know my experience with these programs. I would feel it irresponsible of me to not inform you of such things.
                          McAfee is not a personal preference for me as I don’t know sh*t about antiviruses, I just try to do research online before I get one. And when I bought this pc, McAfee was already installed and running on all cylinders so I thought what the heck, I’ll just leave it on here since I have “32 GB DDR4” ram . Feels like I’m running on 8GB though, hence the reason, why I am just going with your recommendations since you have the experience and I don’t.

                          Comment

                          • Malnutrition
                            PCHF Moderator
                            • Jul 2016
                            • 7041

                            #88
                            Ok, just make sure and run the removal tool after you uninstall Mcafee. I would use Geek Uninstaller to remove it and then run the removal tool. As well since this is a windows 10 machine, you might consider using a program that helps protect your privacy.

                            O&O ShutUP10
                            Destroy Windows Spying.
                            Disable Win Tracking

                            Comment

                            • Malnutrition
                              PCHF Moderator
                              • Jul 2016
                              • 7041

                              #89
                              @ManishMan how about an update for us please.

                              Comment

                              • ManishMan
                                PCHF Member
                                • Sep 2016
                                • 99

                                #90
                                Sorry, I didn’t had a chance to reply. I am doing the check disk scan now and its been stuck on 10% for a while now. Is that normal?

                                Comment

                                Working...