Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Black screen with blinking cursor


  • Please log in to reply

#76
Robertcharles123

Robertcharles123

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 101 posts
I am a little hazy on what to do. I am at system recovery options. Do I go to command prompt and enter the Run FRST64

Thanks. Robert
  • 0

Advertisements


#77
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 20,017 posts
I assume you have saved the fixlist.txt to the flashdrive where FRST is.

After that, yes do the same as before, that is, type in the command as you did last time to run FRST. When it opens, press the Fix button. :)
  • 0

#78
Robertcharles123

Robertcharles123

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 101 posts
I did the fix and it could not reboot after I tried to restart it is doing the same as before.

Attached Files


Edited by Robertcharles123, 11 February 2014 - 03:26 PM.

  • 0

#79
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 20,017 posts
Hello again Robertcharles123,

Please copy and paste your logs in the thread. Easier to analyze. Also this is a teaching site and it is easier for the students. :)

Turning to that fix, it looks like it worked successfully but you still can't boot up.

Time to have another look.

Please run FRST again but this time press scan, like you did the first time.

Post the FRST.txt log it makes back here. Copy and paste in the thread. ;)
  • 0

#80
Robertcharles123

Robertcharles123

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 101 posts
Ok. I need to work on the attaching files particulars. I do not do a lot of this stuff, so I am learning as I go. Please forgive my mistakes. I will try to copy and paste the log.

Thanks,

Robert
  • 0

#81
Robertcharles123

Robertcharles123

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 101 posts
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-02-2014 03
Ran by SYSTEM on MININT-HN5UJ6T on 11-02-2014 15:39:38
Running from L:\
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 8
Boot Mode: Recovery

The current controlset is ControlSet001
ATTENTION!:=====> If the system is bootable FRST could be run from normal or Safe mode to create a complete log.


The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingc...can-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingc...can-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo...very-scan-tool/

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [hpsysdrv] - c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard)
HKLM\...\Run: [SmartMenu] - C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe [611896 2010-09-15] ()
HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [497648 2010-07-28] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [StartCCC] - c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [102400 2010-05-11] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [HP Software Update] - c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2008-12-08] (Hewlett-Packard)
HKLM-x32\...\Run: [] - [X]
HKLM-x32\...\Run: [PDF Complete] - C:\Program Files (x86)\PDF Complete\pdfsty.exe [664600 2010-09-28] (PDF Complete Inc)
HKLM-x32\...\Run: [Microsoft Default Manager] - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe [439568 2010-05-10] (Microsoft Corporation)
HKLM-x32\...\Run: [Memeo Instant Backup] - C:\Program Files (x86)\Memeo\AutoBackup\MemeoLauncher2.exe [136416 2010-04-22] (Memeo Inc.)
HKLM-x32\...\Run: [Memeo AutoSync] - C:\Program Files (x86)\Memeo\AutoSync\MemeoLauncher2.exe [144608 2010-04-16] (Memeo Inc.)
HKLM-x32\...\Run: [Memeo Send] - C:\Program Files (x86)\Memeo\Memeo Send\MemeoLauncher.exe [236816 2010-07-20] ()
HKLM-x32\...\Run: [Seagate Dashboard] - C:\Program Files (x86)\Seagate\Seagate Dashboard\MemeoLauncher.exe [79112 2011-06-01] ()
HKLM-x32\...\Run: [MoneyStartUp10.0] - C:\Program Files (x86)\Microsoft Money\System\Activation.exe [241714 2001-07-25] (Microsoft Corporation)
HKLM-x32\...\Run: [UCam_Menu] - C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [218408 2009-02-17] (CyberLink Corp.)
HKLM-x32\...\Run: [LGODDFU] - C:\Program Files (x86)\lg_fwupdate\fwupdate.exe [548864 2008-10-01] (BL)
HKLM-x32\...\Run: [mcui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [537512 2013-09-24] (McAfee, Inc.)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM-x32\...\Run: [WMBoot] - C:\Program Files (x86)\Logitech\WingMan Profiler\ChekList.exe -L:F:\WS\ENU\Setup.exe -CD -CL4 -LP:" reboot"
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-01] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [Boingo Wi-Finder] - C:\Program Files (x86)\Boingo\Boingo Wi-Finder\Boingo.lnk [2429 2014-01-06] ()
HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-12-11] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [WD Quick View] - C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [5537136 2013-08-14] (Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [mcpltui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [537512 2013-09-24] (McAfee, Inc.)
HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2014\avgui.exe [4956176 2013-11-07] (AVG Technologies CZ, s.r.o.)
HKLM\...\RunOnce: [NCPluginUpdater] - "c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\NCPluginUpdater.exe" Update [21720 2014-01-28] (Hewlett-Packard)
HKU\Diane\...\Run: [MoneyAgent] - C:\Program Files (x86)\Microsoft Money\System\Money Express.exe [184376 2001-07-25] (Microsoft Corporation)
HKU\Diane\...\Run: [attcm.exe] - C:\Program Files (x86)\AT&T\AT&T Communication Manager\attcm.exe
HKU\Diane\...\Run: [Steam] - C:\steam\Steam.exe [1815976 2014-01-27] (Valve Corporation)
HKU\Diane\...\Run: [KiesAirMessage] - C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup
HKU\Diane\...\Run: [Updater] - C:\ProgramData\Updater\updater.exe
HKU\Diane\...\Policies\system: [LogonHoursAction] 2
HKU\Diane\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\Guest\...\Run: [attcm.exe] - C:\Program Files (x86)\AT&T\AT&T Communication Manager\attcm.exe
HKU\Guest\...\Run: [MoneyAgent] - C:\Program Files (x86)\Microsoft Money\System\Money Express.exe [184376 2001-07-25] (Microsoft Corporation)
HKU\Robbie\...\Run: [RESTART_STICKY_NOTES] - C:\Windows\System32\StikyNot.exe [427520 2009-07-13] (Microsoft Corporation)
HKU\Robbie\...\Run: [attcm.exe] - C:\Program Files (x86)\AT&T\AT&T Communication Manager\attcm.exe
HKU\Robbie\...\Policies\system: [LogonHoursAction] 2
HKU\Robbie\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
Startup: C:\Users\Diane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PdaNet Desktop.lnk
ShortcutTarget: PdaNet Desktop.lnk -> C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe ()

==================== Services (Whitelisted) =================

S2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3478544 2013-11-11] (AVG Technologies CZ, s.r.o.)
S2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-23] (AVG Technologies CZ, s.r.o.)
S2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S2 IDVaultSvc; C:\Program Files (x86)\AOL OnePoint\IDVaultSvc.exe [39704 2013-09-16] (White Sky, Inc.)
S2 InternetUpdater; C:\ProgramData\InternetUpdater\InternetUpdaterService.exe [45568 2014-01-14] (Parallel Lines Development, LLC)
S2 iSafeService; C:\Program Files (x86)\iSafe\iSafeSvc.exe [491688 2013-12-30] (Elex do Brasil Participações Ltda)
S2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178048 2013-11-28] (McAfee, Inc.)
S2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [602944 2013-08-02] (McAfee, Inc.)
S2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1025232 2013-12-11] (McAfee, Inc.)
S2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219272 2013-12-05] (McAfee, Inc.)
S2 mfevtp; C:\Windows\system32\mfevtps.exe [184800 2013-12-05] (McAfee, Inc.)
S2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1119768 2010-09-28] (PDF Complete Inc)
S2 RaMediaServer; C:\Program Files (x86)\Ralink\Common\RaMediaServer.exe [1859584 2012-07-04] (Ralink)
S2 UpdateServiceTool; C:\Program Files (x86)\Bin\UpdateTool\UpdaterToolService.exe [6656 2013-12-02] (VIS without Co)
S2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [270704 2013-08-14] (Western Digital Technologies, Inc.)
S2 BackupStack; C:\Program Files (x86)\MyPC Backup\BackupStack.exe [X]
S2 CltMngSvc; C:\PROGRA~2\SearchProtect\Main\bin\CltMngSvc.exe [X]

==================== Drivers (Whitelisted) ====================

S1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [150808 2013-11-05] (AVG Technologies CZ, s.r.o.)
S1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [240920 2013-11-04] (AVG Technologies CZ, s.r.o.)
S0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [194872 2013-10-24] (AVG Technologies CZ, s.r.o.)
S1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [212280 2013-10-31] (AVG Technologies CZ, s.r.o.)
S0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [294712 2013-10-31] (AVG Technologies CZ, s.r.o.)
S0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123704 2013-09-30] (AVG Technologies CZ, s.r.o.)
S0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31544 2013-09-09] (AVG Technologies CZ, s.r.o.)
S1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [251192 2013-08-01] (AVG Technologies CZ, s.r.o.)
S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-12-05] (McAfee, Inc.)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
S3 iSafeKrnl; C:\Program Files (x86)\iSafe\iSafeKrnl.sys [219648 2013-12-30] (Elex do Brasil Participações Ltda)
S1 iSafeNetFilter; C:\Program Files (x86)\iSafe\iSafeNetFilter.sys [44032 2013-12-30] (Elex do Brasil Participações Ltda)
S2 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179792 2013-12-05] (McAfee, Inc.)
S2 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311120 2013-12-05] (McAfee, Inc.)
S3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [519576 2013-12-05] (McAfee, Inc.)
S2 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [782616 2013-12-05] (McAfee, Inc.)
S3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [411944 2013-11-26] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [96112 2013-11-26] (McAfee, Inc.)
S2 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [343696 2013-12-05] (McAfee, Inc.)
S3 usbrndis6; C:\Windows\System32\DRIVERS\usb80236.sys [19968 2009-07-13] (Microsoft Corporation)
S3 lgwnusbbus; system32\DRIVERS\lgwnusb64bus.sys [X]
S3 lgwnusbmodem; system32\DRIVERS\lgwnusb64modem.sys [X]
S3 lgwnusbndis; system32\DRIVERS\lgwnusb64ndis62.sys [X]
S3 lgwnusbser01; system32\DRIVERS\lgwnusb64ser01.sys [X]
S3 lgwnusbser02; system32\DRIVERS\lgwnusb64ser02.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-02-11 12:22 - 2014-02-11 15:39 - 00000000 ____D () C:\FRST
2014-02-03 10:44 - 2014-02-03 10:44 - 00000000 ____D () C:\Windows\SysWOW64\SearchProtect
2014-02-02 19:17 - 2014-02-02 19:17 - 00000000 ____D () C:\Users\Diane\AppData\Roaming\eCyber
2014-02-02 14:30 - 2014-02-02 14:30 - 00263480 _____ (setup process) C:\Users\Diane\Downloads\Setup.exe
2014-02-02 14:29 - 2014-02-02 14:29 - 00673304 _____ (Conduit) C:\Users\Diane\Downloads\InstallConverter_TSV12ZOYG.exe
2014-02-02 14:14 - 2014-02-02 14:14 - 00001746 _____ () C:\Users\Public\Desktop\YAC.lnk
2014-02-02 14:14 - 2014-02-02 14:14 - 00000000 ____D () C:\Windows\System32\log
2014-02-02 14:13 - 2014-02-03 19:18 - 00000000 ____D () C:\Users\Diane\AppData\Roaming\iSafe
2014-02-02 14:13 - 2014-02-03 18:31 - 00000000 ____D () C:\Program Files (x86)\iSafe
2014-02-02 14:12 - 2014-02-02 14:12 - 00000000 ____D () C:\Users\Diane\AppData\Local\Conduit
2014-02-02 14:10 - 2014-02-02 14:10 - 00001935 _____ () C:\Users\Diane\Desktop\Sync Folder.lnk
2014-02-02 14:09 - 2014-02-03 18:29 - 00000356 _____ () C:\Windows\Tasks\AmiUpdXp.job
2014-02-02 14:09 - 2014-02-02 14:09 - 00003376 _____ () C:\Windows\System32\Tasks\AmiUpdXp
2014-02-02 14:09 - 2014-02-02 14:09 - 00001053 _____ () C:\Users\Diane\Desktop\MyPC Backup.lnk
2014-02-02 14:09 - 2014-02-02 14:09 - 00000000 ____D () C:\ProgramData\InternetUpdater
2014-02-02 14:08 - 2014-02-03 18:29 - 00000384 _____ () C:\Windows\Tasks\Re-markit Update.job
2014-02-02 14:08 - 2014-02-02 14:08 - 00003032 _____ () C:\Windows\System32\Tasks\Re-markit Update
2014-02-02 14:03 - 2014-02-02 14:03 - 00000000 ____D () C:\Users\Diane\AppData\Roaming\Mozilla
2014-02-02 14:03 - 2014-02-02 14:03 - 00000000 ____D () C:\ProgramData\Websteroids
2014-02-02 14:03 - 2014-02-02 14:03 - 00000000 ____D () C:\ProgramData\RHelpers
2014-02-02 14:03 - 2014-02-02 14:03 - 00000000 ____D () C:\Program Files (x86)\YTD Downloader
2014-02-02 14:03 - 2014-02-02 14:03 - 00000000 ____D () C:\Program Files (x86)\Bin
2014-01-31 13:44 - 2014-01-31 13:44 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_xusb21_01009.Wdf
2014-01-31 13:44 - 2014-01-31 13:44 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_MijXfilt_01009.Wdf
2014-01-31 13:13 - 2014-01-31 13:13 - 00000925 _____ () C:\Users\Public\Desktop\DS3 Tool.lnk
2014-01-31 13:13 - 2014-01-31 13:13 - 00000000 ____D () C:\Users\Diane\AppData\Roaming\MotioninJoy
2014-01-31 13:13 - 2014-01-31 13:13 - 00000000 ____D () C:\Program Files\MotioninJoy
2014-01-31 13:13 - 2012-05-12 10:31 - 00121416 _____ (MotioninJoy) C:\Windows\System32\Drivers\MijXfilt.sys
2014-01-31 13:13 - 2011-12-07 17:42 - 00328712 _____ (Logitech Inc.) C:\Windows\System32\MijFrc.dll
2014-01-31 13:13 - 2011-12-07 17:42 - 00074960 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\xusb21.sys
2014-01-31 13:11 - 2014-01-31 13:11 - 04117346 _____ () C:\Users\Diane\Downloads\MotioninJoy_071001_signed.zip
2014-01-31 13:11 - 2014-01-31 13:11 - 04117346 _____ () C:\Users\Diane\Downloads\MotioninJoy_071001_signed (1).zip
2014-01-27 22:57 - 2014-02-01 18:16 - 00000332 _____ () C:\Windows\Tasks\HPCeeScheduleForDiane.job
2014-01-27 22:57 - 2014-02-01 17:51 - 00003186 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForDiane
2014-01-22 13:10 - 2013-09-23 11:49 - 00197704 _____ (McAfee, Inc.) C:\Windows\System32\Drivers\HipShieldK.sys
2014-01-21 12:14 - 2014-01-21 12:14 - 00002183 _____ () C:\Users\Diane\Desktop\HP Support Assistant.lnk
2014-01-21 12:05 - 2014-01-21 12:05 - 00000000 ____D () C:\ProgramData\{18165758-115C-4DC0-9EC2-FF89F725767F}
2014-01-19 10:20 - 2013-08-24 04:18 - 2069770532 _____ () C:\Users\Diane\Desktop\MVI_8270.MOV
2014-01-16 19:39 - 2014-01-16 19:39 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_netaapl64_01009.Wdf
2014-01-13 20:01 - 2014-01-13 20:01 - 00001935 _____ () C:\Users\Public\Desktop\Samsung Kies 3.lnk

==================== One Month Modified Files and Folders =======

2014-02-11 15:39 - 2014-02-11 12:22 - 00000000 ____D () C:\FRST
2014-02-03 19:43 - 2012-12-11 21:14 - 00000338 _____ () C:\Windows\Tasks\HP Photo Creations Communicator.job
2014-02-03 19:28 - 2011-04-12 00:21 - 01972807 _____ () C:\Windows\WindowsUpdate.log
2014-02-03 19:27 - 2013-07-31 17:29 - 00000896 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-03 19:20 - 2012-12-09 18:45 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log
2014-02-03 19:19 - 2013-04-05 19:49 - 00000000 _____ () C:\Windows\System32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-02-03 19:18 - 2014-02-02 14:13 - 00000000 ____D () C:\Users\Diane\AppData\Roaming\iSafe
2014-02-03 18:53 - 2012-12-12 00:18 - 00000000 ____D () C:\Users\Diane\AppData\Local\Windows Live
2014-02-03 18:51 - 2012-07-28 20:24 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-03 18:43 - 2013-10-16 13:41 - 00000894 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cecab88449e7e4.job
2014-02-03 18:33 - 2014-01-07 19:44 - 00000000 ____D () C:\ProgramData\MFAData
2014-02-03 18:31 - 2014-02-02 14:13 - 00000000 ____D () C:\Program Files (x86)\iSafe
2014-02-03 18:29 - 2014-02-02 14:09 - 00000356 _____ () C:\Windows\Tasks\AmiUpdXp.job
2014-02-03 18:29 - 2014-02-02 14:08 - 00000384 _____ () C:\Windows\Tasks\Re-markit Update.job
2014-02-03 10:44 - 2014-02-03 10:44 - 00000000 ____D () C:\Windows\SysWOW64\SearchProtect
2014-02-02 20:15 - 2012-07-25 21:22 - 00003926 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{EDF1A06D-7AC7-4C8F-9B97-E488A025B3D2}
2014-02-02 19:17 - 2014-02-02 19:17 - 00000000 ____D () C:\Users\Diane\AppData\Roaming\eCyber
2014-02-02 19:17 - 2013-12-27 16:18 - 00000000 ____D () C:\steam
2014-02-02 19:16 - 2011-07-29 18:10 - 00000271 _____ () C:\Windows\lgfwup.ini
2014-02-02 19:16 - 2011-07-29 18:07 - 00000000 ____D () C:\Program Files (x86)\lg_fwupdate
2014-02-02 19:16 - 2011-05-16 01:14 - 00000000 ____D () C:\Users\Diane\AppData\Local\CrashDumps
2014-02-02 16:22 - 2009-07-13 20:45 - 00015568 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-02 16:22 - 2009-07-13 20:45 - 00015568 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-02 16:11 - 2009-07-13 20:45 - 00410352 _____ () C:\Windows\System32\FNTCACHE.DAT
2014-02-02 16:10 - 2011-04-12 02:27 - 00278280 _____ () C:\Windows\PFRO.log
2014-02-02 16:10 - 2009-07-13 21:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-02 16:10 - 2009-07-13 20:51 - 00074730 _____ () C:\Windows\setupact.log
2014-02-02 14:30 - 2014-02-02 14:30 - 00263480 _____ (setup process) C:\Users\Diane\Downloads\Setup.exe
2014-02-02 14:30 - 2013-12-26 10:31 - 00000382 _____ () C:\Windows\Tasks\REGSERVO.job
2014-02-02 14:29 - 2014-02-02 14:29 - 00673304 _____ (Conduit) C:\Users\Diane\Downloads\InstallConverter_TSV12ZOYG.exe
2014-02-02 14:19 - 2011-05-15 19:36 - 00114344 _____ () C:\Users\Diane\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-02 14:14 - 2014-02-02 14:14 - 00001746 _____ () C:\Users\Public\Desktop\YAC.lnk
2014-02-02 14:14 - 2014-02-02 14:14 - 00000000 ____D () C:\Windows\System32\log
2014-02-02 14:12 - 2014-02-02 14:12 - 00000000 ____D () C:\Users\Diane\AppData\Local\Conduit
2014-02-02 14:12 - 2013-09-15 07:31 - 00000000 _____ () C:\END
2014-02-02 14:12 - 2013-09-15 07:30 - 00000000 ____D () C:\Program Files (x86)\Conduit
2014-02-02 14:10 - 2014-02-02 14:10 - 00001935 _____ () C:\Users\Diane\Desktop\Sync Folder.lnk
2014-02-02 14:09 - 2014-02-02 14:09 - 00003376 _____ () C:\Windows\System32\Tasks\AmiUpdXp
2014-02-02 14:09 - 2014-02-02 14:09 - 00001053 _____ () C:\Users\Diane\Desktop\MyPC Backup.lnk
2014-02-02 14:09 - 2014-02-02 14:09 - 00000000 ____D () C:\ProgramData\InternetUpdater
2014-02-02 14:09 - 2013-09-15 07:31 - 00000000 ____D () C:\Users\Diane\AppData\Local\SwvUpdater
2014-02-02 14:08 - 2014-02-02 14:08 - 00003032 _____ () C:\Windows\System32\Tasks\Re-markit Update
2014-02-02 14:03 - 2014-02-02 14:03 - 00000000 ____D () C:\Users\Diane\AppData\Roaming\Mozilla
2014-02-02 14:03 - 2014-02-02 14:03 - 00000000 ____D () C:\ProgramData\Websteroids
2014-02-02 14:03 - 2014-02-02 14:03 - 00000000 ____D () C:\ProgramData\RHelpers
2014-02-02 14:03 - 2014-02-02 14:03 - 00000000 ____D () C:\Program Files (x86)\YTD Downloader
2014-02-02 14:03 - 2014-02-02 14:03 - 00000000 ____D () C:\Program Files (x86)\Bin
2014-02-02 13:57 - 2009-07-13 21:13 - 00779016 _____ () C:\Windows\System32\PerfStringBackup.INI
2014-02-01 18:16 - 2014-01-27 22:57 - 00000332 _____ () C:\Windows\Tasks\HPCeeScheduleForDiane.job
2014-02-01 17:51 - 2014-01-27 22:57 - 00003186 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForDiane
2014-02-01 17:15 - 2013-02-09 01:01 - 00000000 ____D () C:\Windows\Minidump
2014-02-01 17:14 - 2011-04-12 02:27 - 00287201 ____N () C:\Windows\Minidump\020114-75270-01.dmp
2014-01-31 15:09 - 2011-04-12 00:42 - 00000000 ____D () C:\ProgramData\PDFC
2014-01-31 14:06 - 2012-12-09 19:22 - 00000000 ____D () C:\Program Files (x86)\McAfee
2014-01-31 13:53 - 2014-01-03 22:13 - 00000000 ____D () C:\Users\Diane\AppData\Roaming\Awesomium
2014-01-31 13:44 - 2014-01-31 13:44 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_xusb21_01009.Wdf
2014-01-31 13:44 - 2014-01-31 13:44 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_MijXfilt_01009.Wdf
2014-01-31 13:13 - 2014-01-31 13:13 - 00000925 _____ () C:\Users\Public\Desktop\DS3 Tool.lnk
2014-01-31 13:13 - 2014-01-31 13:13 - 00000000 ____D () C:\Users\Diane\AppData\Roaming\MotioninJoy
2014-01-31 13:13 - 2014-01-31 13:13 - 00000000 ____D () C:\Program Files\MotioninJoy
2014-01-31 13:11 - 2014-01-31 13:11 - 04117346 _____ () C:\Users\Diane\Downloads\MotioninJoy_071001_signed.zip
2014-01-31 13:11 - 2014-01-31 13:11 - 04117346 _____ () C:\Users\Diane\Downloads\MotioninJoy_071001_signed (1).zip
2014-01-30 16:03 - 2011-05-20 16:15 - 00000000 ____D () C:\Users\Diane\AppData\Roaming\SoftGrid Client
2014-01-29 10:48 - 2013-07-31 17:31 - 00002145 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-01-23 18:52 - 2012-12-29 21:07 - 00000000 ____D () C:\Users\Diane\AppData\Roaming\MediaMonkey
2014-01-22 13:05 - 2012-12-09 19:23 - 00000000 ____D () C:\Program Files\Common Files\McAfee
2014-01-21 12:14 - 2014-01-21 12:14 - 00002183 _____ () C:\Users\Diane\Desktop\HP Support Assistant.lnk
2014-01-21 12:14 - 2011-04-12 00:21 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-01-21 12:14 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\Help
2014-01-21 12:08 - 2011-04-12 00:20 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2014-01-21 12:05 - 2014-01-21 12:05 - 00000000 ____D () C:\ProgramData\{18165758-115C-4DC0-9EC2-FF89F725767F}
2014-01-21 12:01 - 2011-04-12 00:21 - 00000000 ____D () C:\ProgramData\Hewlett-Packard
2014-01-21 12:00 - 2011-04-12 00:30 - 00000000 ____D () C:\Windows\System32\Tasks\Hewlett-Packard
2014-01-21 12:00 - 2010-06-14 18:07 - 00000000 ____D () C:\swsetup
2014-01-20 19:58 - 2012-07-28 20:34 - 00000000 ____D () C:\Users\Diane\AppData\Roaming\HP Support Assistant
2014-01-20 19:58 - 2011-05-17 16:34 - 00000000 ____D () C:\Users\Diane\AppData\Roaming\HpUpdate
2014-01-19 10:21 - 2013-12-23 20:27 - 00031744 ___SH () C:\Users\Diane\Desktop\Thumbs.db
2014-01-16 19:39 - 2014-01-16 19:39 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_netaapl64_01009.Wdf
2014-01-16 10:14 - 2013-12-07 17:19 - 00000000 ____D () C:\Program Files (x86)\AOL OnePoint
2014-01-15 19:39 - 2013-12-07 17:19 - 00000000 ____D () C:\Users\Diane\AppData\Roaming\ID Vault
2014-01-13 20:02 - 2014-01-11 18:16 - 00000000 ____D () C:\Users\Diane\Documents\SelfMV
2014-01-13 20:01 - 2014-01-13 20:01 - 00001935 _____ () C:\Users\Public\Desktop\Samsung Kies 3.lnk
2014-01-13 20:01 - 2014-01-06 19:10 - 00000000 ____D () C:\Users\Diane\AppData\Roaming\Samsung
2014-01-13 20:01 - 2014-01-06 18:57 - 00000000 ____D () C:\Program Files (x86)\Samsung
2014-01-13 20:00 - 2013-04-03 17:53 - 00000000 ____D () C:\Users\Diane\AppData\Local\Downloaded Installations

==================== Known DLLs (Whitelisted) ================


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== EXE ASSOCIATION =====================

HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK

==================== Restore Points =========================

Restore point made on: 2014-01-26 22:32:07
Restore point made on: 2014-01-31 13:43:20

==================== Memory info ===========================

Percentage of memory in use: 8%
Total physical RAM: 12031.29 MB
Available physical RAM: 11041.63 MB
Total Pagefile: 12029.48 MB
Available Pagefile: 11032.31 MB
Total Virtual: 8192 MB
Available Virtual: 8191.87 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:918.51 GB) (Free:537.09 GB) NTFS
Drive e: (HP_RECOVERY) (Fixed) (Total:12.9 GB) (Free:1.55 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive f: (Repair disc Windows 7 64-bit) (CDROM) (Total:0.16 GB) (Free:0 GB) UDF
Drive g: (EOS_DIGITAL) (Removable) (Total:7.39 GB) (Free:6.62 GB) FAT32
Drive l: (ReatogoPE) (Removable) (Total:1.87 GB) (Free:1.55 GB) NTFS
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
Drive y: (SYSTEM) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 932 GB) (Disk ID: 3B9CA57A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=919 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=13 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 7 GB) (Disk ID: 32223221)
Partition 1: (Not Active) - (Size=7 GB) - (Type=0B)

========================================================
Disk: 6 (Size: 2 GB) (Disk ID: 187A95F8)
No partition Table on disk 6.


LastRegBack: 2014-01-28 22:47

==================== End Of Log ============================


I hope this works.

Thanks,

Robert

Looks like it did

Edited by Robertcharles123, 11 February 2014 - 03:43 PM.

  • 0

#82
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 20,017 posts
Hello Robert,

Please download the attached fixlist.txt file to your flashdrive .

NOTE. It's important that both files, FRST and fixlist.txt are in the same location or the fix will not work.

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

Now please enter System Recovery Options.
Run FRST64 and press the Fix button just once and wait.
The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.

Also tell me if you can boot normally.
  • 0

#83
Robertcharles123

Robertcharles123

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 101 posts
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 09-02-2014 03
Ran by SYSTEM at 2014-02-11 16:11:16 Run:2
Running from L:\
Boot Mode: Recovery
==============================================

Content of fixlist:
*****************
S2 UpdateServiceTool; C:\Program Files (x86)\Bin\UpdateTool\UpdaterToolService.exe [6656 2013-12-02] (VIS without Co)
S2 BackupStack; C:\Program Files (x86)\MyPC Backup\BackupStack.exe [X]
S2 CltMngSvc; C:\PROGRA~2\SearchProtect\Main\bin\CltMngSvc.exe [X]
C:\Program Files (x86)\Bin\UpdateTool
C:\Windows\SysWOW64\SearchProtect
C:\Users\Diane\Downloads\InstallConverter_TSV12ZOYG.exe
C:\Users\Diane\AppData\Local\Conduit
C:\Windows\System32\Tasks\AmiUpdXp
C:\Windows\Tasks\AmiUpdXp.job
C:\Users\Diane\Desktop\MyPC Backup.lnk
C:\ProgramData\InternetUpdater
C:\Windows\Tasks\Re-markit Update.job
C:\Windows\System32\Tasks\Re-markit Update
C:\ProgramData\Websteroids
C:\ProgramData\RHelpers
C:\Program Files (x86)\Bin
C:\Users\Diane\AppData\Local\SwvUpdater
*****************

UpdateServiceTool => Service deleted successfully.
BackupStack => Service deleted successfully.
CltMngSvc => Service deleted successfully.
C:\Program Files (x86)\Bin\UpdateTool => Moved successfully.
C:\Windows\SysWOW64\SearchProtect => Moved successfully.
C:\Users\Diane\Downloads\InstallConverter_TSV12ZOYG.exe => Moved successfully.
C:\Users\Diane\AppData\Local\Conduit => Moved successfully.
C:\Windows\System32\Tasks\AmiUpdXp => Moved successfully.
C:\Windows\Tasks\AmiUpdXp.job => Moved successfully.
C:\Users\Diane\Desktop\MyPC Backup.lnk => Moved successfully.
C:\ProgramData\InternetUpdater => Moved successfully.
C:\Windows\Tasks\Re-markit Update.job => Moved successfully.
C:\Windows\System32\Tasks\Re-markit Update => Moved successfully.
C:\ProgramData\Websteroids => Moved successfully.
C:\ProgramData\RHelpers => Moved successfully.
C:\Program Files (x86)\Bin => Moved successfully.
C:\Users\Diane\AppData\Local\SwvUpdater => Moved successfully.

==== End of Fixlog ====

Here we go.

Still the same- it has a black screen with a blinking cursor.


Thanks,

Robert

Attached Files


Edited by Robertcharles123, 11 February 2014 - 04:16 PM.

  • 0

#84
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 20,017 posts
Are you able to start that computer normally now?

If not see if you can start in Safe Mode

Boot into Safe Mode:

1) Restart your computer
2) After hearing your computer beep once during startup, but before the Windows icon appears, tap F8 continually.
3) If you are asked what mode to bootup in press Esc to boot in the default settings
4) Instead of Windows loading as normal, a menu should appear
5) Select the option to run Windows in Safe Mode.
  • 0

#85
Robertcharles123

Robertcharles123

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 101 posts
I restarted it again and this time I pressed ESC a bunch of times. Now, it went to the boot menu and started. It went to the sign on screen but after putting in the password, the screen is now completely black with the mouse able to be moved around on the screen.

Thanks,

Robert
  • 0

Advertisements


#86
Robertcharles123

Robertcharles123

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 101 posts

Are you able to start that computer normally now?

If not see if you can start in Safe Mode

Boot into Safe Mode:

1) Restart your computer
2) After hearing your computer beep once during startup, but before the Windows icon appears, tap F8 continually.
3) If you are asked what mode to bootup in press Esc to boot in the default settings
4) Instead of Windows loading as normal, a menu should appear
5) Select the option to run Windows in Safe Mode.



I just followed these directions and it went back to the original problem. Black screen with a blinking cursor.
  • 0

#87
Robertcharles123

Robertcharles123

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 101 posts
I just restarted and pressed esc until I got to a screen with the safe mode option. It Just came up. It is really large icons but the desktop is there.

I can open the icons and close them. It seems to be functioning in safe mode.

Edited by Robertcharles123, 11 February 2014 - 04:26 PM.

  • 0

#88
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 20,017 posts

I just restarted and pressed esc until I got to a screen with the safe mode option. It Just came up. It is really large icons but the desktop is there.


Good news.

I wonder whether conflict happening with your multiple security programs is preventing a normal start up.

Please go to Control panel > Uninstall a program and uninstall two of

AVG
isafe(YAC Security Protection)
or McAfee

After that try again for a normal start up.

Come back and tell me how you got on.
  • 0

#89
Robertcharles123

Robertcharles123

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 101 posts

Hello Robertcharles123,

Please download the attached fixlist.txt file to your flashdrive .

NOTE. It's important that both files, FRST and fixlist.txt are in the same location or the fix will not work.

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

Now please enter System Recovery Options.
Run FRST64 and press the Fix button just once and wait.
The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.

After that see if you can start up your machine normally. If you can't come back and paste the log in the forum.

If you can then do the following:

You appear to be running multiple anti-virus programs

Running two or more real-time anti-virus, anti-spyware and firewall monitors at the same time can cause a conflict. That conflict can result in slow computer performance, error messages, crashes of the programs or other types of failure. You will very likely end up with little or no protection.

Please uninstall two of AVG, isafe(YAC Security Protection) or McAfee

After that

Please download a new copy of Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.

  • Right click to run as administrator. When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will produce a log called (FRST.txt) in the same directory the tool is run from.
  • Please copy and paste log back here.
  • The first time the tool is run, it makes also another log (Addition.txt). Please also paste that into your reply.



Can I uninstall the virus software in safe mode? It is saying it might have to make some modifications to my system and is asking me if I want to continue.



Thanks,

Robert

Edited by Robertcharles123, 11 February 2014 - 04:34 PM.

  • 0

#90
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 20,017 posts

It is saying it might have to make some modifications to my system and is asking me if I want to continue.


Say yes and continue.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP