Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Missing imagehlp.dll file [Closed]


  • This topic is locked This topic is locked

#16
ltunagur

ltunagur

    Member

  • Topic Starter
  • Member
  • PipPip
  • 35 posts
And finally the FRST.txt result

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 05-01-2014
Ran by Amy (administrator) on AMY-PC on 06-01-2014 08:46:31
Running from C:\Users\Amy\Desktop
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Safe Mode (with Networking)

==================== Processes (Whitelisted) ===================

(Apple Inc.) C:\Program Files\Safari\Safari.exe
(Apple Inc.) C:\Program Files\Safari\Apple Application Support\WebKit2WebProcess.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [avast] - C:\Program Files\Alwil Software\Avast5\AvastUI.exe [4767304 2013-02-28] (AVAST Software)
HKLM\...\RunOnce: [20131224] - C:\Program Files\Alwil Software\Avast5\setup\emupdate\51362f8f-a53a-4873-9655-436f3d5c3105.exe /check [181136 2014-01-02] (AVAST Software)
Winlogon\Notify\GoToAssist: C:\Program Files\Citrix\GoToAssist\514\g2awinlogon.dll (Citrix Online, a division of Citrix Systems, Inc.)
HKCU\...\RunOnce: [Report] - C:\AdwCleaner\AdwCleaner[S0].txt [17159 2014-01-06] ()
MountPoints2: F - F:\LaunchU3.exe -a
MountPoints2: {10bd4da7-b0a4-11e0-92b0-001d095f5de3} - F:\TL_Bootstrap.exe
MountPoints2: {b1fc9daf-649f-11e2-b784-001d095f5de3} - F:\TL_Bootstrap.exe
MountPoints2: {d3f971df-171b-11df-b2c9-001d095f5de3} - F:\LaunchU3.exe -a
HKU\Default\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2009-04-11] (Microsoft Corporation)
HKU\Default User\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2009-04-11] (Microsoft Corporation)
AppInit_DLLs: C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [111616 2008-06-26] (Google)

==================== Internet (Whitelisted) ====================

SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {7F13559B-02AF-4A6D-8B5C-466B0A5A03F6} URL = http://search.yahoo....p={searchTerms}
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: Bing Bar Helper - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll (Dell Inc.)
BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
Toolbar: HKLM - Bing Bar - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab
DPF: {BEA7310D-06C4-4339-A784-DC3804819809} http://images3.pnime...veX_Control.cab
DPF: {CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab
DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C}
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\microsoft shared\Information Retrieval\msitss.dll (Microsoft Corporation)
Handler: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - C:\Program Files\Common Files\Pure Networks Shared\Platform\puresp4.dll (Cisco Systems, Inc.)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254

FireFox:
========
FF ProfilePath: C:\Users\Amy\AppData\Roaming\Mozilla\Firefox\Profiles\83fs00ny.default
FF DefaultSearchEngine: Bing
FF SelectedSearchEngine: Bing
FF Homepage: https://www.google.com/
FF Keyword.URL: hxxp://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=198484&p=
FF NetworkProxy: "no_proxies_on", "*.local"
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin: @Apple.com/iTunes,version=1.0 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @Motive.com/NpMotive,version=1.0 - C:\Program Files\Common Files\Motive\npMotive.dll (Motive, Inc.)
FF Plugin: @pack.google.com/Google Updater;version=14 - C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: npDisplayEngine - C:\Program Files\LivingPlay Games\nplplaypop.dll ( )
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Amy\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Amy\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\Amy\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Amy\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Amy\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Amy\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Extension: No Name - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\Alwil Software\Avast5\WebRep\FF
FF Extension: avast! WebRep - C:\Program Files\Alwil Software\Avast5\WebRep\FF

Chrome:
=======
CHR HomePage: hxxp://search.yahoo.com?type=198484&fr=spigot-yhp-ch
CHR RestoreOnStartup: "hxxp://search.yahoo.com?type=198484&fr=spigot-yhp-ch",
"hxxp://www.google.com/"
CHR DefaultSearchURL: {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR Extension: (Skype Click to Call) - C:\Users\Amy\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.3.0.11079_0
CHR Extension: (We-Care Reminder Lite) - C:\Users\Amy\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkpmjnommfoljgjbckjmjhkmnhfmcmon\1.2.0.2_0
CHR Extension: (LivingPlay) - C:\Users\Amy\AppData\Local\Google\Chrome\User Data\Default\Extensions\maopdgeieiiiifooolcjjfmjdlkmhfdh
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx

========================== Services (Whitelisted) =================

S4 AdvancedSystemCareService6; C:\Program Files\IObit\Advanced SystemCare 6\ASCService.exe [465216 2013-01-15] (IObit)
S2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [45248 2013-02-28] (AVAST Software)
S4 FreeAgentGoNext Service; C:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe [189736 2009-09-25] (Seagate Technology LLC)
S4 GoogleDesktopManager-010708-104812; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [29744 2008-06-26] (Google)
S4 gupdate1c9bbda2d1a3f60; C:\Program Files\Google\Update\GoogleUpdate.exe [133104 2009-04-12] (Google Inc.)
S4 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S4 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S4 nmservice; C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe [647216 2009-07-07] (Cisco Systems, Inc.)
S4 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3275136 2013-10-09] (Skype Technologies S.A.)
S4 sprtsvc_dellsupportcenter; C:\Program Files\Dell Support Center\bin\sprtsvc.exe [201968 2008-08-14] (SupportSoft, Inc.)
S4 wltrysvc; C:\Windows\System32\bcmwltry.exe [2506752 2007-12-12] (Dell Inc.)
S4 IMFservice; C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe [x]

==================== Drivers (Whitelisted) ====================

S2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [29880 2013-02-28] (AVAST Software)
S2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [66408 2013-02-28] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswRdr.sys [49832 2013-02-28] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [49320 2013-02-28] ()
S1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [765808 2013-02-28] (AVAST Software)
S1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [368248 2013-02-28] (AVAST Software)
S1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [62448 2013-02-28] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [163784 2013-02-28] ()
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation)
S3 MREMP50; C:\Program Files\Common Files\Motive\MREMP50.sys [21248 2009-08-14] (Printing Communications Assoc., Inc. (PCAUSA))
S3 MRESP50; C:\Program Files\Common Files\Motive\MRESP50.sys [20096 2009-08-14] (Printing Communications Assoc., Inc. (PCAUSA))
S2 pnarp; C:\Windows\System32\DRIVERS\pnarp.sys [26672 2009-07-07] (Cisco Systems, Inc.)
S2 purendis; C:\Windows\System32\DRIVERS\purendis.sys [27696 2009-07-07] (Cisco Systems, Inc.)
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [15672 2013-05-22] ()
S3 usbbus; C:\Windows\System32\DRIVERS\lgusbbus.sys [13056 2011-02-14] (LG Electronics Inc.)
S3 UsbDiag; C:\Windows\System32\DRIVERS\lgusbdiag.sys [20864 2011-02-14] (LG Electronics Inc.)
S3 USBModem; C:\Windows\System32\DRIVERS\lgusbmodem.sys [25216 2011-02-14] (LG Electronics Inc.)
S3 BCM42RLY; system32\drivers\BCM42RLY.sys [x]
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [x]
S3 IpInIp; system32\DRIVERS\ipinip.sys [x]
S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [x]
S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [x]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [x]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [x]
S3 RimUsb; System32\Drivers\RimUsb.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-01-06 08:11 - 2014-01-06 08:18 - 00002330 _____ C:\Users\Amy\Desktop\Search.txt
2014-01-06 08:06 - 2014-01-06 08:06 - 00001005 _____ C:\Users\Amy\Desktop\JRT.txt
2014-01-06 08:03 - 2014-01-06 08:03 - 00000000 ____D C:\Windows\ERUNT
2014-01-06 08:02 - 2014-01-06 08:02 - 01036305 _____ (Thisisu) C:\Users\Amy\Desktop\JRT.exe
2014-01-06 07:53 - 2014-01-06 07:55 - 00000000 ____D C:\AdwCleaner
2014-01-06 07:53 - 2014-01-06 07:53 - 01233962 _____ C:\Users\Amy\Desktop\AdwCleaner.exe
2014-01-05 16:06 - 2014-01-05 16:09 - 00000000 ____D C:\Users\Amy\Desktop\New Folder
2014-01-04 14:20 - 2014-01-06 07:44 - 00000000 ____D C:\Users\Amy\Desktop\FRST-OlderVersion
2014-01-04 14:20 - 2014-01-04 14:20 - 01064761 _____ (Farbar) C:\Users\Amy\Downloads\FRST.exe
2014-01-03 17:04 - 2014-01-03 17:04 - 00001812 _____ C:\Users\Amy\Desktop\readme.txt
2014-01-03 17:04 - 2014-01-03 17:04 - 00000000 ____D C:\Users\Amy\AppData\Roaming\f-secure
2014-01-03 17:04 - 2014-01-03 17:04 - 00000000 ____D C:\ProgramData\F-Secure
2014-01-03 17:01 - 2014-01-03 17:01 - 00000352 ____H C:\Windows\Tasks\avast! Emergency Update.job
2014-01-03 16:57 - 2014-01-03 16:57 - 02049128 _____ (Trend Micro Inc.) C:\Users\Amy\Downloads\HousecallLauncher.exe
2014-01-03 07:57 - 2014-01-03 07:57 - 00000000 __SHD C:\found.013
2014-01-02 19:19 - 2014-01-02 19:19 - 00000000 __SHD C:\found.012
2014-01-02 18:57 - 2014-01-02 18:58 - 00143728 _____ C:\Windows\Minidump\Mini010214-04.dmp
2014-01-02 17:39 - 2014-01-02 17:39 - 00143728 _____ C:\Windows\Minidump\Mini010214-03.dmp
2014-01-02 13:59 - 2014-01-02 13:59 - 00143728 _____ C:\Windows\Minidump\Mini010214-02.dmp
2014-01-02 13:55 - 2014-01-02 13:55 - 00000000 __SHD C:\found.011
2014-01-02 11:02 - 2014-01-02 11:02 - 00143728 _____ C:\Windows\Minidump\Mini010214-01.dmp
2014-01-02 01:57 - 2014-01-02 01:57 - 00602112 _____ (OldTimer Tools) C:\Users\Amy\Desktop\OTL.exe
2014-01-02 01:45 - 2014-01-02 01:46 - 00033484 _____ C:\Users\Amy\Desktop\Addition.txt
2014-01-02 01:44 - 2014-01-06 08:46 - 00000540 _____ C:\Users\Amy\Desktop\FRST.txt
2014-01-02 01:44 - 2014-01-06 07:44 - 00000000 ____D C:\FRST
2014-01-02 01:43 - 2014-01-06 07:44 - 01064805 _____ (Farbar) C:\Users\Amy\Desktop\FRST.exe
2014-01-02 00:52 - 2014-01-02 00:52 - 00000000 ____D C:\Program Files\MSECache
2014-01-02 00:40 - 2014-01-02 00:40 - 00000000 _____ C:\Windows\setuperr.log
2014-01-02 00:40 - 2014-01-02 00:40 - 00000000 _____ C:\Windows\setupact.log
2014-01-01 23:50 - 2014-01-01 23:50 - 00000000 ____D C:\Users\Amy\AppData\Roaming\Eusing
2014-01-01 23:45 - 2014-01-01 23:45 - 00185534 _____ C:\Users\Amy\Documents\easy clean save 010114.htm
2014-01-01 23:27 - 2014-01-01 23:27 - 00000766 _____ C:\Users\Public\Desktop\CCleaner.lnk
2014-01-01 23:27 - 2014-01-01 23:27 - 00000000 ____D C:\Program Files\CCleaner
2014-01-01 22:01 - 2014-01-02 17:39 - 00003990 _____ C:\Windows\PFRO.log
2014-01-01 21:35 - 2014-01-01 21:35 - 04379048 _____ (Piriform Ltd) C:\Users\Amy\Downloads\ccsetup407.exe
2014-01-01 15:55 - 2014-01-01 15:55 - 00172444 ____H C:\Windows\system32\mlfcache.dat
2014-01-01 15:45 - 2014-01-01 17:44 - 00000055 _____ C:\Users\Amy\AppData\Roaming\mbam.context.scan
2013-12-30 19:27 - 2013-12-30 19:27 - 00000000 __SHD C:\found.010
2013-12-30 17:33 - 2013-12-30 17:33 - 00138024 _____ C:\Windows\Minidump\Mini123013-01.dmp
2013-12-30 17:32 - 2014-01-02 18:57 - 267242094 _____ C:\Windows\MEMORY.DMP
2013-12-30 15:17 - 2013-12-30 15:17 - 00000000 __SHD C:\found.009
2013-12-29 23:38 - 2013-10-29 20:12 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\SysFxUI.dll
2013-12-29 23:38 - 2013-10-29 19:43 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2013-12-29 23:38 - 2013-10-29 18:43 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2013-12-29 14:58 - 2013-12-29 14:58 - 00000162 _____ C:\Users\Amy\Documents\cc_20131229_145837.reg
2013-12-29 13:26 - 2013-12-29 13:26 - 00022584 _____ C:\Users\Amy\Documents\cc_20131229_132626.reg
2013-12-29 13:12 - 2014-01-01 20:58 - 00335308 _____ C:\Windows\WindowsUpdate.log
2013-12-22 18:52 - 2013-12-22 18:52 - 00000000 __SHD C:\found.008
2013-12-22 18:11 - 2013-12-22 18:11 - 00000000 __SHD C:\found.007
2013-12-19 04:22 - 2014-01-01 21:30 - 04645232 _____ (Piriform Ltd) C:\Users\Amy\Downloads\ccsetup409.exe
2013-12-10 20:19 - 2013-12-10 20:19 - 00000000 __SHD C:\found.006
2013-12-10 20:08 - 2014-01-02 02:12 - 00000000 ____D C:\Users\Amy\AppData\Roaming\Apple Computer

==================== One Month Modified Files and Folders =======

2014-01-06 08:46 - 2014-01-02 01:44 - 00000540 _____ C:\Users\Amy\Desktop\FRST.txt
2014-01-06 08:18 - 2014-01-06 08:11 - 00002330 _____ C:\Users\Amy\Desktop\Search.txt
2014-01-06 08:06 - 2014-01-06 08:06 - 00001005 _____ C:\Users\Amy\Desktop\JRT.txt
2014-01-06 08:03 - 2014-01-06 08:03 - 00000000 ____D C:\Windows\ERUNT
2014-01-06 08:02 - 2014-01-06 08:02 - 01036305 _____ (Thisisu) C:\Users\Amy\Desktop\JRT.exe
2014-01-06 08:02 - 2006-11-02 04:33 - 00005530 _____ C:\Windows\system32\PerfStringBackup.INI
2014-01-06 07:59 - 2008-09-01 11:05 - 00001356 _____ C:\Users\Amy\AppData\Local\d3d9caps.dat
2014-01-06 07:55 - 2014-01-06 07:53 - 00000000 ____D C:\AdwCleaner
2014-01-06 07:53 - 2014-01-06 07:53 - 01233962 _____ C:\Users\Amy\Desktop\AdwCleaner.exe
2014-01-06 07:44 - 2014-01-04 14:20 - 00000000 ____D C:\Users\Amy\Desktop\FRST-OlderVersion
2014-01-06 07:44 - 2014-01-02 01:44 - 00000000 ____D C:\FRST
2014-01-06 07:44 - 2014-01-02 01:43 - 01064805 _____ (Farbar) C:\Users\Amy\Desktop\FRST.exe
2014-01-05 17:00 - 2008-06-26 07:56 - 00000000 ____D C:\Program Files\Google
2014-01-05 16:09 - 2014-01-05 16:06 - 00000000 ____D C:\Users\Amy\Desktop\New Folder
2014-01-04 14:20 - 2014-01-04 14:20 - 01064761 _____ (Farbar) C:\Users\Amy\Downloads\FRST.exe
2014-01-04 14:14 - 2006-11-02 06:47 - 00366880 _____ C:\Windows\system32\FNTCACHE.DAT
2014-01-03 17:04 - 2014-01-03 17:04 - 00001812 _____ C:\Users\Amy\Desktop\readme.txt
2014-01-03 17:04 - 2014-01-03 17:04 - 00000000 ____D C:\Users\Amy\AppData\Roaming\f-secure
2014-01-03 17:04 - 2014-01-03 17:04 - 00000000 ____D C:\ProgramData\F-Secure
2014-01-03 17:01 - 2014-01-03 17:01 - 00000352 ____H C:\Windows\Tasks\avast! Emergency Update.job
2014-01-03 17:01 - 2006-11-02 04:23 - 00002577 _____ C:\Windows\system32\config.nt
2014-01-03 16:57 - 2014-01-03 16:57 - 02049128 _____ (Trend Micro Inc.) C:\Users\Amy\Downloads\HousecallLauncher.exe
2014-01-03 11:30 - 2006-11-02 07:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-03 11:30 - 2006-11-02 06:47 - 00003568 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-03 11:30 - 2006-11-02 06:47 - 00003568 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-03 07:57 - 2014-01-03 07:57 - 00000000 __SHD C:\found.013
2014-01-02 19:19 - 2014-01-02 19:19 - 00000000 __SHD C:\found.012
2014-01-02 19:01 - 2006-11-02 07:01 - 00032614 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2014-01-02 18:58 - 2014-01-02 18:57 - 00143728 _____ C:\Windows\Minidump\Mini010214-04.dmp
2014-01-02 18:57 - 2013-12-30 17:32 - 267242094 _____ C:\Windows\MEMORY.DMP
2014-01-02 18:57 - 2008-07-10 18:13 - 00000000 ____D C:\Windows\Minidump
2014-01-02 18:10 - 2006-11-02 05:18 - 00000000 ____D C:\Windows\system32\LogFiles
2014-01-02 17:39 - 2014-01-02 17:39 - 00143728 _____ C:\Windows\Minidump\Mini010214-03.dmp
2014-01-02 17:39 - 2014-01-01 22:01 - 00003990 _____ C:\Windows\PFRO.log
2014-01-02 14:03 - 2006-11-02 05:18 - 00000000 ____D C:\Windows\system32\spool
2014-01-02 13:59 - 2014-01-02 13:59 - 00143728 _____ C:\Windows\Minidump\Mini010214-02.dmp
2014-01-02 13:55 - 2014-01-02 13:55 - 00000000 __SHD C:\found.011
2014-01-02 11:02 - 2014-01-02 11:02 - 00143728 _____ C:\Windows\Minidump\Mini010214-01.dmp
2014-01-02 02:12 - 2013-12-10 20:08 - 00000000 ____D C:\Users\Amy\AppData\Roaming\Apple Computer
2014-01-02 01:57 - 2014-01-02 01:57 - 00602112 _____ (OldTimer Tools) C:\Users\Amy\Desktop\OTL.exe
2014-01-02 01:52 - 2009-06-29 20:07 - 00000886 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-02 01:46 - 2014-01-02 01:45 - 00033484 _____ C:\Users\Amy\Desktop\Addition.txt
2014-01-02 01:19 - 2013-02-07 18:27 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-01-02 01:13 - 2012-10-06 23:44 - 00000900 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3605760776-3286238575-773632184-1000UA.job
2014-01-02 00:52 - 2014-01-02 00:52 - 00000000 ____D C:\Program Files\MSECache
2014-01-02 00:40 - 2014-01-02 00:40 - 00000000 _____ C:\Windows\setuperr.log
2014-01-02 00:40 - 2014-01-02 00:40 - 00000000 _____ C:\Windows\setupact.log
2014-01-02 00:28 - 2009-06-29 20:07 - 00000882 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-01 23:50 - 2014-01-01 23:50 - 00000000 ____D C:\Users\Amy\AppData\Roaming\Eusing
2014-01-01 23:45 - 2014-01-01 23:45 - 00185534 _____ C:\Users\Amy\Documents\easy clean save 010114.htm
2014-01-01 23:33 - 2008-06-26 07:48 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2014-01-01 23:32 - 2006-11-02 05:18 - 00000000 ___RD C:\Users\Public
2014-01-01 23:27 - 2014-01-01 23:27 - 00000766 _____ C:\Users\Public\Desktop\CCleaner.lnk
2014-01-01 23:27 - 2014-01-01 23:27 - 00000000 ____D C:\Program Files\CCleaner
2014-01-01 23:20 - 2011-09-05 09:29 - 00000000 ____D C:\Windows\pss
2014-01-01 21:35 - 2014-01-01 21:35 - 04379048 _____ (Piriform Ltd) C:\Users\Amy\Downloads\ccsetup407.exe
2014-01-01 21:30 - 2013-12-19 04:22 - 04645232 _____ (Piriform Ltd) C:\Users\Amy\Downloads\ccsetup409.exe
2014-01-01 20:58 - 2013-12-29 13:12 - 00335308 _____ C:\Windows\WindowsUpdate.log
2014-01-01 17:44 - 2014-01-01 15:45 - 00000055 _____ C:\Users\Amy\AppData\Roaming\mbam.context.scan
2014-01-01 15:55 - 2014-01-01 15:55 - 00172444 ____H C:\Windows\system32\mlfcache.dat
2013-12-30 19:27 - 2013-12-30 19:27 - 00000000 __SHD C:\found.010
2013-12-30 17:33 - 2013-12-30 17:33 - 00138024 _____ C:\Windows\Minidump\Mini123013-01.dmp
2013-12-30 15:17 - 2013-12-30 15:17 - 00000000 __SHD C:\found.009
2013-12-29 23:53 - 2008-09-05 18:21 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-12-29 14:58 - 2013-12-29 14:58 - 00000162 _____ C:\Users\Amy\Documents\cc_20131229_145837.reg
2013-12-29 13:26 - 2013-12-29 13:26 - 00022584 _____ C:\Users\Amy\Documents\cc_20131229_132626.reg
2013-12-22 18:52 - 2013-12-22 18:52 - 00000000 __SHD C:\found.008
2013-12-22 18:11 - 2013-12-22 18:11 - 00000000 __SHD C:\found.007
2013-12-12 07:18 - 2008-07-07 18:23 - 00000000 ____D C:\Users\Amy
2013-12-10 20:19 - 2013-12-10 20:19 - 00000000 __SHD C:\found.006
2013-12-10 13:20 - 2013-02-07 18:27 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-12-10 13:20 - 2011-11-19 06:35 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-12-10 13:10 - 2011-02-22 11:40 - 00000868 _____ C:\Windows\Tasks\Google Software Updater.job
2013-12-10 12:13 - 2012-10-06 23:44 - 00000848 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3605760776-3286238575-773632184-1000Core.job

Some content of TEMP:
====================
C:\Users\Amy\AppData\Local\Temp\fs_health_check.exe
C:\Users\Amy\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-01-06 08:18

==================== End Of Log ============================
  • 0

Advertisements


#17
Machiavelli

Machiavelli

    GeekU Moderator

  • GeekU Moderator
  • 3,698 posts
Please do this in Safe Mode.

  • Step 1: Command Prompt

Warning: this fix is specific to the user in this thread. No one else should follow these instructions as it may cause more harm than good. If you are after assistance, please start a thread of your own.

  • Click on the Start Posted Image button and in the search box, type Command Prompt
  • When you see Command Prompt on the list, right-click on it and select Run as administrator
  • When command prompt opens, copy and paste the following command into it

    copy C:\Windows\winsxs\x86_microsoft-windows-coreos_31bf3856ad364e35_6.0.6002.23248_none_279f086a54ae84de\imagehlp.dll C:\Windows\System32\

  • Report back if you still have the missing imagehlp.dll error.

  • Step 2: FRST Search

  • Right click on FRST.exe and select Run as Administrator
  • You will see a text box - please give the following text into the Search Box: imagehlp.dll
  • Then click on Search File(s) - the scan will begin
  • After this a file called Search.txt (located under the same directory where you saved FRST) will open - please post the content of this file into your next reply

Posted Image
  • 0

#18
ltunagur

ltunagur

    Member

  • Topic Starter
  • Member
  • PipPip
  • 35 posts
Files seem to be working now. Tried to open a couple of files and had no issue. Missing imagehlp.dll file error is resolved.

Here are the results of the final FRST.exe scan.

Farbar Recovery Scan Tool (x86) Version: 05-01-2014
Ran by Amy at 2014-01-06 13:12:32
Running from C:\Users\Amy\Desktop
Boot Mode: Safe Mode (with Networking)

================== Search: "imagehlp.dll" ===================

C:\Windows\winsxs\x86_microsoft-windows-coreos_31bf3856ad364e35_6.0.6002.23248_none_279f086a54ae84de\imagehlp.dll
[2013-12-29 23:38] - [2013-10-21 03:51] - 0158208 ____A (Microsoft Corporation) A16CC6879BA6CCF77420E419A1870FB6

C:\Windows\winsxs\x86_microsoft-windows-coreos_31bf3856ad364e35_6.0.6002.22806_none_27c869b2548fb7b5\imagehlp.dll
[2012-04-12 02:08] - [2012-02-29 08:47] - 0157696 ____A (Microsoft Corporation) 5C2132864F0E97624E8297E4BF1C0BE6

C:\Windows\winsxs\x86_microsoft-windows-coreos_31bf3856ad364e35_6.0.6002.18971_none_26ee1fcd3baf571d\imagehlp.dll
[2013-12-29 23:38] - [2013-10-22 01:19] - 0158208 ____A (Microsoft Corporation) 09EA40F4DAD2EDB3587E5E0BAA9C3E15

C:\Windows\winsxs\x86_microsoft-windows-coreos_31bf3856ad364e35_6.0.6002.18592_none_26d978a73bbeb3ba\imagehlp.dll
[2012-04-12 02:08] - [2012-02-29 09:09] - 0157696 ____A (Microsoft Corporation) EB49FAA5EBBC06356FB12476438781B9

C:\Windows\winsxs\x86_microsoft-windows-coreos_31bf3856ad364e35_6.0.6002.18005_none_273dbf533b731283\imagehlp.dll
[2008-07-19 08:54] - [2008-01-19 01:34] - 0153088 ____A (Microsoft Corporation) 8C55A6333DAFAB88E44C040C55179274

C:\Windows\winsxs\x86_microsoft-windows-coreos_31bf3856ad364e35_6.0.6001.18000_none_255246473e514737\imagehlp.dll
[2008-07-19 08:54] - [2008-01-19 01:34] - 0153088 ____A (Microsoft Corporation) 8C55A6333DAFAB88E44C040C55179274

C:\Windows\winsxs\x86_microsoft-windows-coreos_31bf3856ad364e35_6.0.6000.20580_none_239f21405a893b4a\imagehlp.dll
[2008-06-26 15:08] - [2008-06-26 15:08] - 0152576 ____A (Microsoft Corporation) F3071CFDD6BE3051375506D38CDECD80

C:\Windows\winsxs\x86_microsoft-windows-coreos_31bf3856ad364e35_6.0.6000.16470_none_2320546141637f8f\imagehlp.dll
[2008-06-26 15:08] - [2008-06-26 15:08] - 0152576 ____A (Microsoft Corporation) 5D53724E96F6B907355E616FFE08EB83

C:\Windows\winsxs\x86_microsoft-windows-coreos_31bf3856ad364e35_6.0.6000.16386_none_231b844b41663663\imagehlp.dll
[2006-11-02 03:00] - [2006-11-02 03:46] - 0152576 ____A (Microsoft Corporation) 0042A84C24C6DA6FE904B6FC3421A419

C:\Windows\System32\imagehlp.dll
[2014-01-06 13:10] - [2013-10-21 03:51] - 0158208 ____A (Microsoft Corporation) A16CC6879BA6CCF77420E419A1870FB6

=== End Of Search ===
  • 0

#19
Machiavelli

Machiavelli

    GeekU Moderator

  • GeekU Moderator
  • 3,698 posts
  • Step 1: Malwarebytes' Anti-Malware

Please download Malwarebytes' Anti-Malware from Here or Here

Double Click mbam-setup.exe to install the application. (if you have Windows Vista / Windows 7 / Windows 8 please do a Right click on the MBAM icon and select Run as Administrator)
  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy & Paste the entire report in your next reply.
If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer, please do so immediately.

  • Step 2: ESET Online Scanner

Please disable your AntiVirus before doing these steps!

  • If you have Win Vista / Win 7 / Win 8 please start IE as Administrator!
  • This will only work for Internet Explorer or FireFox
  • Please download ESET Online Scanner from here

How to do this?

  • Visit this website here
  • You will see a screen like this:


    Posted Image

    • Click Run ESET Online Scanner

      Posted Image
    • A Window will open (see above) - please click on the link
    • A window will pop up - please download the file to your Desktop
    • When the download has finished please run the program (for Win Vista/ Win7 / Win 8 User please run it as Administrator)

      Posted Image
    • Tick the box next to YES, I accept the Terms of Use then click on: Start
    • You may see a panel towards the top of the screen telling you the website wants to install an addon... click and allow it to install. If your firewall asks whether you want to allow installation, say yes.

      Posted Image
    • Make sure that the option Remove found threats is NOT checked.
    • Make sure that the option Scan archives is checked.
    • Now click on Advanced Settings and select the following:
      • Scan for potentially unwanted applications
      • Scan for potentially unsafe applications
      • Enable Anti-Stealth Technology
    • Then click on Start
    • virus signature database will begin to download. Be patient this make take some time depending on the speed of your Internet Connection.
    • When completed the Online Scan will begin automatically. The scan may take several hours.
    • Do not touch either the Mouse or keyboard during the scan otherwise it may stall.

      Posted Image
    • After the scan is finished please click on Finish
  • Use notepad to open the logfile located at C:\Program Files\ESET\EsetOnlineScanner\log.txt.
  • Copy and paste that log as a reply to this topic.
  • I want you to uninstall following programs (XP: Start > Control Panel > Add/Remove Programs | Vista / Win7 / Win8: Start > Control Panel > uninstall a program):
    • ESET Online Scanner

  • Step 3: Security Check

Download Security Check from here or here.
  • Save it to your Desktop.
  • Right click on the SecurityCheck.exe icon and select Run as Administrator - then follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.

  • Step 4: Question

How is the system running? Any issues?
  • 0

#20
ltunagur

ltunagur

    Member

  • Topic Starter
  • Member
  • PipPip
  • 35 posts
After my last post I shutdown the computer waiting to hear from you. When I turned the computer on to complete the last steps somehow it started it did not start in safe mode and begin installing 3 windows updates. I sat at 0% completion for more than 10 hours. I did a hard shutdown by pressing down the power button and tried to start in safe mode. I got the screen that gives me the option to start in safe mode and chose safe mode with networking and that is all my computer will do, windows will not load. I have left the computer for more than 10 hours and still it just sit there with the white mouse error. I have tried doing a hard shutdown and starting over but with the same results. I have also tried doing a repair and then restarting but there is no difference.

I have malwarebytes already installed on the computer and it has probably been a week since the last update. Is there anything I can do?
  • 0

#21
Machiavelli

Machiavelli

    GeekU Moderator

  • GeekU Moderator
  • 3,698 posts
  • Step 1: FRST

  • On a clean machine, please download Farbar Recovery Scan Tool 32bit and save it to a flash drive.

    Plug the flashdrive into the infected PC.

    If you are using Vista or Windows 7 enter System Recovery Options.

    To enter System Recovery Options from the Advanced Boot Options:
    • Restart the computer.
    • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
    • Use the arrow keys to select the Repair your computer menu item.
    • Select US as the keyboard language settings, and then click Next.
    • Select the operating system you want to repair, and then click Next.
    • Select your user account an click Next.
    Note: In case you can not enter System Recovery Options by using F8 method, you can use Windows installation disc, or make a repair disc. Any Windows installation disc or a repair disc made on another computer can be used.
    To make a repair disk on Windows 7 consult: http://www.sevenforu...isc-create.html

  • On the System Recovery Options menu you will get the following options:

    Startup Repair
    System Restore
    Windows Complete PC Restore
    Windows Memory Diagnostic Tool
    Command Prompt


    Select Command Prompt
  • Once in the Command Prompt:
    • In the command window type in notepad and press Enter.
    • The notepad opens. Under File menu select Open.
    • Select "Computer" and find your flash drive letter and close the notepad.
    • In the command window type e:\frst (for x64 bit version type e:\frst64) and press Enter
      Note: Replace letter e with the drive letter of your flash drive.
    • The tool will start to run.
    • When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will make a log (FRST.txt) on the flash drive. Please copy and paste it to your reply.

  • 0

#22
ltunagur

ltunagur

    Member

  • Topic Starter
  • Member
  • PipPip
  • 35 posts
FRST.txt result
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 08-01-2014
Ran by SYSTEM on MINWINPC on 08-01-2014 10:02:29
Running from E:\
Windows Vista ™ Home Premium (X86) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Recovery

The current controlset is ControlSet001
ATTENTION!:=====> If the system is bootable FRST could be run from normal or Safe mode to create a complete log.


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [avast] - C:\Program Files\Alwil Software\Avast5\AvastUI.exe [4767304 2013-02-28] (AVAST Software)
HKLM\...\RunOnce: [20131224] - C:\Program Files\Alwil Software\Avast5\setup\emupdate\51362f8f-a53a-4873-9655-436f3d5c3105.exe /check [181136 2014-01-01] (AVAST Software)
Winlogon\Notify\GoToAssist: C:\Program Files\Citrix\GoToAssist\514\g2awinlogon.dll (Citrix Online, a division of Citrix Systems, Inc.)
HKU\Amy\...\RunOnce: [Report] - C:\AdwCleaner\AdwCleaner[S0].txt [ 2014-01-06] ()
HKU\Default\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2009-04-10] (Microsoft Corporation)
HKU\Default User\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2009-04-10] (Microsoft Corporation)
AppInit_DLLs: C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [111616 2008-06-26] (Google)

========================== Services (Whitelisted) =================

S4 AdvancedSystemCareService6; C:\Program Files\IObit\Advanced SystemCare 6\ASCService.exe [465216 2013-01-15] (IObit)
S2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [45248 2013-02-28] (AVAST Software)
S4 FreeAgentGoNext Service; C:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe [189736 2009-09-25] (Seagate Technology LLC)
S4 GoogleDesktopManager-010708-104812; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [29744 2008-06-26] (Google)
S4 gupdate1c9bbda2d1a3f60; C:\Program Files\Google\Update\GoogleUpdate.exe [133104 2009-04-12] (Google Inc.)
S4 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S4 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S4 nmservice; C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe [647216 2009-07-07] (Cisco Systems, Inc.)
S4 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3275136 2013-10-09] (Skype Technologies S.A.)
S4 wltrysvc; C:\Windows\System32\bcmwltry.exe [2506752 2007-12-11] (Dell Inc.)
S4 IMFservice; C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe [x]
S4 sprtsvc_dellsupportcenter; C:\Program Files\Dell Support Center\bin\sprtsvc.exe /service /p dellsupportcenter [x]

==================== Drivers (Whitelisted) ====================

S2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [29880 2013-02-28] (AVAST Software)
S2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [66408 2013-02-28] (AVAST Software)
S1 aswRdr; C:\Windows\System32\Drivers\aswRdr.sys [49832 2013-02-28] (AVAST Software)
S0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [49320 2013-02-28] ()
S1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [765808 2013-02-28] (AVAST Software)
S1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [368248 2013-02-28] (AVAST Software)
S1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [62448 2013-02-28] (AVAST Software)
S0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [163784 2013-02-28] ()
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation)
S3 MREMP50; C:\Program Files\Common Files\Motive\MREMP50.sys [21248 2009-08-14] (Printing Communications Assoc., Inc. (PCAUSA))
S3 MRESP50; C:\Program Files\Common Files\Motive\MRESP50.sys [20096 2009-08-14] (Printing Communications Assoc., Inc. (PCAUSA))
S2 pnarp; C:\Windows\System32\DRIVERS\pnarp.sys [26672 2009-07-07] (Cisco Systems, Inc.)
S2 purendis; C:\Windows\System32\DRIVERS\purendis.sys [27696 2009-07-07] (Cisco Systems, Inc.)
S0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [15672 2013-05-22] ()
S3 usbbus; C:\Windows\System32\DRIVERS\lgusbbus.sys [13056 2011-02-13] (LG Electronics Inc.)
S3 UsbDiag; C:\Windows\System32\DRIVERS\lgusbdiag.sys [20864 2011-02-13] (LG Electronics Inc.)
S3 USBModem; C:\Windows\System32\DRIVERS\lgusbmodem.sys [25216 2011-02-13] (LG Electronics Inc.)
S3 BCM42RLY; system32\drivers\BCM42RLY.sys [x]
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [x]
S3 IpInIp; system32\DRIVERS\ipinip.sys [x]
S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [x]
S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [x]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [x]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [x]
S3 RimUsb; System32\Drivers\RimUsb.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-01-06 16:44 - 2014-01-06 16:44 - 00000000 __SHD C:\found.017
2014-01-06 13:11 - 2014-01-06 13:11 - 00143728 _____ C:\Windows\Minidump\Mini010614-03.dmp
2014-01-06 12:20 - 2014-01-06 12:20 - 00143728 _____ C:\Windows\Minidump\Mini010614-02.dmp
2014-01-06 12:16 - 2014-01-06 12:16 - 00000000 __SHD C:\found.016
2014-01-06 11:27 - 2014-01-06 11:28 - 00000000 ____D C:\Users\Amy\Desktop\Programs used to fix computer Jan 2014
2014-01-06 11:10 - 2013-10-21 01:51 - 00158208 _____ (Microsoft Corporation) C:\Windows\System32\imagehlp.dll
2014-01-06 10:05 - 2014-01-06 10:05 - 00000000 __SHD C:\found.015
2014-01-06 09:43 - 2014-01-06 09:43 - 00143728 _____ C:\Windows\Minidump\Mini010614-01.dmp
2014-01-06 09:20 - 2014-01-06 09:20 - 00000000 __SHD C:\found.014
2014-01-06 06:03 - 2014-01-06 06:03 - 00000000 ____D C:\Windows\ERUNT
2014-01-06 06:02 - 2014-01-06 06:02 - 01036305 _____ (Thisisu) C:\Users\Amy\Desktop\JRT.exe
2014-01-06 05:53 - 2014-01-06 05:55 - 00000000 ____D C:\AdwCleaner
2014-01-05 14:06 - 2014-01-05 14:09 - 00000000 ____D C:\Users\Amy\Desktop\New Folder
2014-01-04 12:20 - 2014-01-04 12:20 - 01064761 _____ (Farbar) C:\Users\Amy\Downloads\FRST.exe
2014-01-03 15:04 - 2014-01-03 15:04 - 00000000 ____D C:\Users\Amy\AppData\Roaming\f-secure
2014-01-03 15:04 - 2014-01-03 15:04 - 00000000 ____D C:\ProgramData\F-Secure
2014-01-03 14:57 - 2014-01-03 14:57 - 02049128 _____ (Trend Micro Inc.) C:\Users\Amy\Downloads\HousecallLauncher.exe
2014-01-03 05:57 - 2014-01-03 05:57 - 00000000 __SHD C:\found.013
2014-01-02 17:19 - 2014-01-02 17:19 - 00000000 __SHD C:\found.012
2014-01-02 16:57 - 2014-01-02 16:58 - 00143728 _____ C:\Windows\Minidump\Mini010214-04.dmp
2014-01-02 15:39 - 2014-01-02 15:39 - 00143728 _____ C:\Windows\Minidump\Mini010214-03.dmp
2014-01-02 11:59 - 2014-01-02 11:59 - 00143728 _____ C:\Windows\Minidump\Mini010214-02.dmp
2014-01-02 11:55 - 2014-01-02 11:55 - 00000000 __SHD C:\found.011
2014-01-02 09:02 - 2014-01-02 09:02 - 00143728 _____ C:\Windows\Minidump\Mini010214-01.dmp
2014-01-01 23:44 - 2014-01-06 05:44 - 00000000 ____D C:\FRST
2014-01-01 22:52 - 2014-01-01 22:52 - 00000000 ____D C:\Program Files\MSECache
2014-01-01 22:40 - 2014-01-01 22:40 - 00000000 _____ C:\Windows\setuperr.log
2014-01-01 22:40 - 2014-01-01 22:40 - 00000000 _____ C:\Windows\setupact.log
2014-01-01 21:50 - 2014-01-01 21:50 - 00000000 ____D C:\Users\Amy\AppData\Roaming\Eusing
2014-01-01 21:45 - 2014-01-01 21:45 - 00185534 _____ C:\Users\Amy\Documents\easy clean save 010114.htm
2014-01-01 21:27 - 2014-01-01 21:27 - 00000766 _____ C:\Users\Public\Desktop\CCleaner.lnk
2014-01-01 21:27 - 2014-01-01 21:27 - 00000766 _____ C:\ProgramData\Desktop\CCleaner.lnk
2014-01-01 21:27 - 2014-01-01 21:27 - 00000000 ____D C:\Program Files\CCleaner
2014-01-01 20:01 - 2014-01-02 15:39 - 00003990 _____ C:\Windows\PFRO.log
2014-01-01 19:35 - 2014-01-01 19:35 - 04379048 _____ (Piriform Ltd) C:\Users\Amy\Downloads\ccsetup407.exe
2014-01-01 13:55 - 2014-01-01 13:55 - 00172444 ____H C:\Windows\System32\mlfcache.dat
2014-01-01 13:45 - 2014-01-01 15:44 - 00000055 _____ C:\Users\Amy\AppData\Roaming\mbam.context.scan
2013-12-30 17:27 - 2013-12-30 17:27 - 00000000 __SHD C:\found.010
2013-12-30 15:33 - 2013-12-30 15:33 - 00138024 _____ C:\Windows\Minidump\Mini123013-01.dmp
2013-12-30 15:32 - 2014-01-06 13:11 - 270068334 _____ C:\Windows\MEMORY.DMP
2013-12-30 13:17 - 2013-12-30 13:17 - 00000000 __SHD C:\found.009
2013-12-29 21:38 - 2013-10-29 18:12 - 00335360 _____ (Microsoft Corporation) C:\Windows\System32\SysFxUI.dll
2013-12-29 21:38 - 2013-10-29 17:43 - 00130048 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\drmk.sys
2013-12-29 21:38 - 2013-10-29 16:43 - 00167936 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\portcls.sys
2013-12-29 12:58 - 2013-12-29 12:58 - 00000162 _____ C:\Users\Amy\Documents\cc_20131229_145837.reg
2013-12-29 11:26 - 2013-12-29 11:26 - 00022584 _____ C:\Users\Amy\Documents\cc_20131229_132626.reg
2013-12-29 11:12 - 2014-01-01 18:58 - 00335308 _____ C:\Windows\WindowsUpdate.log
2013-12-22 16:52 - 2013-12-22 16:52 - 00000000 __SHD C:\found.008
2013-12-22 16:11 - 2013-12-22 16:11 - 00000000 __SHD C:\found.007
2013-12-19 02:22 - 2014-01-01 19:30 - 04645232 _____ (Piriform Ltd) C:\Users\Amy\Downloads\ccsetup409.exe
2013-12-10 18:19 - 2013-12-10 18:19 - 00000000 __SHD C:\found.006
2013-12-10 18:08 - 2014-01-02 00:12 - 00000000 ____D C:\Users\Amy\AppData\Roaming\Apple Computer

==================== One Month Modified Files and Folders =======

2014-01-06 16:44 - 2014-01-06 16:44 - 00000000 __SHD C:\found.017
2014-01-06 13:11 - 2014-01-06 13:11 - 00143728 _____ C:\Windows\Minidump\Mini010614-03.dmp
2014-01-06 13:11 - 2013-12-30 15:32 - 270068334 _____ C:\Windows\MEMORY.DMP
2014-01-06 13:11 - 2008-07-10 16:13 - 00000000 ____D C:\Windows\Minidump
2014-01-06 13:11 - 2006-11-02 04:47 - 00003568 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-06 13:11 - 2006-11-02 04:47 - 00003568 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-06 12:20 - 2014-01-06 12:20 - 00143728 _____ C:\Windows\Minidump\Mini010614-02.dmp
2014-01-06 12:16 - 2014-01-06 12:16 - 00000000 __SHD C:\found.016
2014-01-06 11:28 - 2014-01-06 11:27 - 00000000 ____D C:\Users\Amy\Desktop\Programs used to fix computer Jan 2014
2014-01-06 11:22 - 2008-09-01 09:05 - 00001356 _____ C:\Users\Amy\Local Settings\Application Data\d3d9caps.dat
2014-01-06 11:22 - 2008-09-01 09:05 - 00001356 _____ C:\Users\Amy\AppData\Local\d3d9caps.dat
2014-01-06 11:13 - 2006-11-02 02:33 - 00005530 _____ C:\Windows\System32\PerfStringBackup.INI
2014-01-06 10:05 - 2014-01-06 10:05 - 00000000 __SHD C:\found.015
2014-01-06 09:45 - 2006-11-02 03:18 - 00000000 ____D C:\Windows\System32\spool
2014-01-06 09:43 - 2014-01-06 09:43 - 00143728 _____ C:\Windows\Minidump\Mini010614-01.dmp
2014-01-06 09:20 - 2014-01-06 09:20 - 00000000 __SHD C:\found.014
2014-01-06 06:03 - 2014-01-06 06:03 - 00000000 ____D C:\Windows\ERUNT
2014-01-06 06:02 - 2014-01-06 06:02 - 01036305 _____ (Thisisu) C:\Users\Amy\Desktop\JRT.exe
2014-01-06 05:55 - 2014-01-06 05:53 - 00000000 ____D C:\AdwCleaner
2014-01-06 05:44 - 2014-01-01 23:44 - 00000000 ____D C:\FRST
2014-01-05 15:00 - 2008-06-26 05:56 - 00000000 ____D C:\Program Files\Google
2014-01-05 14:09 - 2014-01-05 14:06 - 00000000 ____D C:\Users\Amy\Desktop\New Folder
2014-01-04 12:20 - 2014-01-04 12:20 - 01064761 _____ (Farbar) C:\Users\Amy\Downloads\FRST.exe
2014-01-04 12:14 - 2006-11-02 04:47 - 00366880 _____ C:\Windows\System32\FNTCACHE.DAT
2014-01-03 15:04 - 2014-01-03 15:04 - 00000000 ____D C:\Users\Amy\AppData\Roaming\f-secure
2014-01-03 15:04 - 2014-01-03 15:04 - 00000000 ____D C:\ProgramData\F-Secure
2014-01-03 15:01 - 2006-11-02 02:23 - 00002577 _____ C:\Windows\System32\config.nt
2014-01-03 14:57 - 2014-01-03 14:57 - 02049128 _____ (Trend Micro Inc.) C:\Users\Amy\Downloads\HousecallLauncher.exe
2014-01-03 05:57 - 2014-01-03 05:57 - 00000000 __SHD C:\found.013
2014-01-02 17:19 - 2014-01-02 17:19 - 00000000 __SHD C:\found.012
2014-01-02 16:58 - 2014-01-02 16:57 - 00143728 _____ C:\Windows\Minidump\Mini010214-04.dmp
2014-01-02 16:10 - 2006-11-02 03:18 - 00000000 ____D C:\Windows\System32\LogFiles
2014-01-02 15:39 - 2014-01-02 15:39 - 00143728 _____ C:\Windows\Minidump\Mini010214-03.dmp
2014-01-02 15:39 - 2014-01-01 20:01 - 00003990 _____ C:\Windows\PFRO.log
2014-01-02 11:59 - 2014-01-02 11:59 - 00143728 _____ C:\Windows\Minidump\Mini010214-02.dmp
2014-01-02 11:55 - 2014-01-02 11:55 - 00000000 __SHD C:\found.011
2014-01-02 09:02 - 2014-01-02 09:02 - 00143728 _____ C:\Windows\Minidump\Mini010214-01.dmp
2014-01-02 00:12 - 2013-12-10 18:08 - 00000000 ____D C:\Users\Amy\AppData\Roaming\Apple Computer
2014-01-01 22:52 - 2014-01-01 22:52 - 00000000 ____D C:\Program Files\MSECache
2014-01-01 22:40 - 2014-01-01 22:40 - 00000000 _____ C:\Windows\setuperr.log
2014-01-01 22:40 - 2014-01-01 22:40 - 00000000 _____ C:\Windows\setupact.log
2014-01-01 21:50 - 2014-01-01 21:50 - 00000000 ____D C:\Users\Amy\AppData\Roaming\Eusing
2014-01-01 21:45 - 2014-01-01 21:45 - 00185534 _____ C:\Users\Amy\Documents\easy clean save 010114.htm
2014-01-01 21:33 - 2008-06-26 05:48 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2014-01-01 21:32 - 2006-11-02 03:18 - 00000000 ___RD C:\users\Public
2014-01-01 21:27 - 2014-01-01 21:27 - 00000766 _____ C:\Users\Public\Desktop\CCleaner.lnk
2014-01-01 21:27 - 2014-01-01 21:27 - 00000766 _____ C:\ProgramData\Desktop\CCleaner.lnk
2014-01-01 21:27 - 2014-01-01 21:27 - 00000000 ____D C:\Program Files\CCleaner
2014-01-01 21:20 - 2011-09-05 07:29 - 00000000 ____D C:\Windows\pss
2014-01-01 19:35 - 2014-01-01 19:35 - 04379048 _____ (Piriform Ltd) C:\Users\Amy\Downloads\ccsetup407.exe
2014-01-01 19:30 - 2013-12-19 02:22 - 04645232 _____ (Piriform Ltd) C:\Users\Amy\Downloads\ccsetup409.exe
2014-01-01 18:58 - 2013-12-29 11:12 - 00335308 _____ C:\Windows\WindowsUpdate.log
2014-01-01 15:44 - 2014-01-01 13:45 - 00000055 _____ C:\Users\Amy\AppData\Roaming\mbam.context.scan
2014-01-01 13:55 - 2014-01-01 13:55 - 00172444 ____H C:\Windows\System32\mlfcache.dat
2013-12-30 17:27 - 2013-12-30 17:27 - 00000000 __SHD C:\found.010
2013-12-30 15:33 - 2013-12-30 15:33 - 00138024 _____ C:\Windows\Minidump\Mini123013-01.dmp
2013-12-30 13:17 - 2013-12-30 13:17 - 00000000 __SHD C:\found.009
2013-12-29 21:53 - 2008-09-05 16:21 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-12-29 12:58 - 2013-12-29 12:58 - 00000162 _____ C:\Users\Amy\Documents\cc_20131229_145837.reg
2013-12-29 11:26 - 2013-12-29 11:26 - 00022584 _____ C:\Users\Amy\Documents\cc_20131229_132626.reg
2013-12-22 16:52 - 2013-12-22 16:52 - 00000000 __SHD C:\found.008
2013-12-22 16:11 - 2013-12-22 16:11 - 00000000 __SHD C:\found.007
2013-12-12 05:18 - 2008-07-07 16:23 - 00000000 ____D C:\users\Amy
2013-12-10 18:19 - 2013-12-10 18:19 - 00000000 __SHD C:\found.006
2013-12-10 11:20 - 2013-02-07 16:27 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerApp.exe
2013-12-10 11:20 - 2011-11-19 04:35 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerCPLApp.cpl

Some content of TEMP:
====================
C:\Users\Amy\AppData\Local\Temp\fs_health_check.exe
C:\Users\Amy\AppData\Local\Temp\Quarantine.exe


==================== Known DLLs (Whitelisted) ============


==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== EXE ASSOCIATION =====================

HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK

==================== Restore Points =========================


==================== Memory info ===========================

Percentage of memory in use: 10%
Total physical RAM: 3061.43 MB
Available physical RAM: 2734.88 MB
Total Pagefile: 2960.24 MB
Available Pagefile: 2828.08 MB
Total Virtual: 2047.88 MB
Available Virtual: 1981.87 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:220.32 GB) (Free:151.54 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive e: (FLASH DRIVE) (Removable) (Total:7.46 GB) (Free:7.44 GB) FAT32
Drive x: (RECOVERY) (Fixed) (Total:10 GB) (Free:5.63 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 233 GB) (Disk ID: A0000000)
Partition 1: (Not Active) - (Size=63 MB) - (Type=DE)
Partition 2: (Not Active) - (Size=10 GB) - (Type=07 NTFS)
Partition 3: (Active) - (Size=220 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=3 GB) - (Type=OF Extended)

========================================================
Disk: 1 (Size: 7 GB) (Disk ID: 015D999E)
Partition 1: (Active) - (Size=7 GB) - (Type=0B)


LastRegBack: 2014-01-08 06:00

==================== End Of Log ============================
  • 0

#23
Machiavelli

Machiavelli

    GeekU Moderator

  • GeekU Moderator
  • 3,698 posts
  • Step 1: Using a System Restore

If you are using Vista or Windows 7 enter System Recovery Options.

To enter System Recovery Options from the Advanced Boot Options:
  • Restart the computer.
  • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
  • Use the arrow keys to select the Repair your computer menu item.
  • Select US as the keyboard language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account an click Next.
Note: In case you can not enter System Recovery Options by using F8 method, you can use Windows installation disc, or make a repair disc. Any Windows installation disc or a repair disc made on another computer can be used.
To make a repair disk on Windows 7 consult: http://www.sevenforu...isc-create.html


On the System Recovery Options menu you will get the following options:

Startup Repair
System Restore
Windows Complete PC Restore
Windows Memory Diagnostic Tool
Command Prompt


Select System Restore

Please select the last System Restore Point - report back if you are able to boot again (in normal mode or in Safe mode)
  • 0

#24
ltunagur

ltunagur

    Member

  • Topic Starter
  • Member
  • PipPip
  • 35 posts
When I tried to run System Restore I received the following.

No restore points have been created on your computer's system disk. To create a restore point open System Protection.


Before we started this process there were system restore points however I was not able to access them. Since that time these points have been deleted and I am not sure why.
  • 0

#25
Machiavelli

Machiavelli

    GeekU Moderator

  • GeekU Moderator
  • 3,698 posts
I'm going to research now. But probably we have to format and reinstall Vista. :upset: I have some questions to you:

I.) Do you have the Windows Vista Disk + License Key?
II.) Do you know how to format and reinstall Vista? If not I will provide you with a tutorial if I didn't found another solution.
  • 0

Advertisements


#26
Machiavelli

Machiavelli

    GeekU Moderator

  • GeekU Moderator
  • 3,698 posts
III.) Do you maybe have a backup of your PC?
  • 0

#27
ltunagur

ltunagur

    Member

  • Topic Starter
  • Member
  • PipPip
  • 35 posts
I do not have a Windows Vista disk. Product key is listed on the bottom of the laptop. There may be a backup of the computer on the d: drive. I have backed up all my important files to an external hard drive.
  • 0

#28
Machiavelli

Machiavelli

    GeekU Moderator

  • GeekU Moderator
  • 3,698 posts
I have an idea how to fix the problem. (Not sure if it works!) Please be a little bit patient as I'm consulting with different members on other forums and also with my teacher here. Also I need to work and prepare for school, so I must learn now. I'm giving my best to fix the problem here. It seems like some files are corrupt on the basis of Windows Update. I didn't see any errors in the last FRST scan, so I don't think it is Malware related.

I do not have a Windows Vista disk.

Can you ask someone else for a Vista disk? You must only use your product key then. Also, make sure you are using the same versions. Let's say if you have Home Premium you must also use the Vista Home Premium Disk, the same for the Professional version etc..
  • 0

#29
ltunagur

ltunagur

    Member

  • Topic Starter
  • Member
  • PipPip
  • 35 posts
I found the Windows Vista Home Premium 32BIT Reinstallation DVD.
  • 0

#30
Machiavelli

Machiavelli

    GeekU Moderator

  • GeekU Moderator
  • 3,698 posts
Do you knoe how to format and reinstall Vista? Or do you need a complete tutorial for that?
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP