Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Computer Crashes or Shuts Down without Warning


  • Please log in to reply

#91
periwinkle

periwinkle

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 297 posts

Well, the file recovery is going poorly.  I haven't been able to find most of the files that were lost.  Keep in mind that this was 3/4 of my hard drive!!!  I don't know how it could be so simple to just delete files like that.  If I'd known the Recycle Bin only had a small capacity and that it was actually deleting and not just storing the files, I would never have deleted the files.  Many of these files were music files.  I have some of them on my MP3 player, but not all of them.  A whole set of 20 CDs is just gone.  I'm fairly certain my MP3 player has these files on it, but I'm thinking many were lost.  At least I may be able to recoup some of them from the MP3 player.

 

I'm still running the Recuva recovery and I keep trying different things, but it takes hours to get through a scan.

 

As far as the power supply goes, I purchased a power supply box and I just have to wait until the scans finish.  I don't want to restart it because I've read that causes files to be written over deleted file space.  I'm trying to avoid that.  The computer has stayed on since the last time it shut off 5 times on Sunday.  I keep wanting to run the Adwcleaner to see if anything gets cleaned off since I changed my FB password.  I still have iLivid in the control panel and it's not going away.  The uninstall button disappears when I click on it.  I have to wait until the Recuva scan finishes.  However, at this point I'm feeling less optimistic about recovering any of the deleted files.  The scan keeps showing the picture files that I backed up, but very few files I don't already have either on the F drive or elsewhere.

 

At Fry's Electronics (where I got the power supply), a woman in the service department was suggesting I wipe the hard drive to get rid of any viruses.  That's the absolute last thing I'd do.  There must be some way to clean this crap off this computer.  This woman seemed to think it was malware since I told her my computer has been shutting off randomly for 8 months now.  There has to be a way to rid the computer of the crap. ESET finds a lot of stuff when I scan with it, and some of it quarantines, but a lot of it keeps showing up in subsequent scans.

 

Oh, this woman at Fry's also recommended getting into the BIOS and scanning to see if the motherboard is bad.  She said there was a way to do this.  Do you know how to do this?  I asked if perhaps there was something free online to scan for a bad motherboard.  If we can scan other hardware, then why not the motherboard?


  • 0

Advertisements


#92
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,811 posts
You may be wasting time on file recovery, and only some picture files may get recovered. I perhaps thought better results then you're getting to bad.

To be honest I have no problem reinstalling windows, it fixes everything. I just reinstalled mine last month got tired of glitches etc and now everything runs better.

Your Last ESET scan
 

C:\AdwCleaner\Quarantine\C\Program Files (x86)\NCH Software\Prism\prism.exe.vir a variant of Win32/Toolbar.Conduit.H potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\NCH Software\Prism\prismsetup_v1.82.exe.vir a variant of Win32/Toolbar.Conduit.H potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files (x86)\NCH Software\Prism\uninst.exe.vir a variant of Win32/Toolbar.Conduit.H potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Veronica\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\eBay.lnk.vir Win32/Adware.ADON potentially unwanted application deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Veronica\AppData\Roaming\Microsoft\Windows\Start Menu\eBay.lnk.vir Win32/Adware.ADON potentially unwanted application deleted - quarantined
C:\Program Files (x86)\Lavasoft\AdAware SecureSearch Toolbar\adawareDx.dll a variant of Win32/Toolbar.Visicom.B potentially unwanted application deleted - quarantined
C:\Program Files (x86)\Lavasoft\AdAware SecureSearch Toolbar\adawaretb.dll a variant of Win32/Toolbar.Visicom.A potentially unwanted application deleted - quarantined
C:\Program Files (x86)\Lavasoft\AdAware SecureSearch Toolbar\dtUser.exe a variant of Win32/Toolbar.Visicom.C potentially unwanted application deleted - quarantined
C:\Users\Veronica\Downloads\ccsetup415.exe Win32/Bundled.Toolbar.Google.D potentially unsafe application deleted - quarantined
C:\Users\Veronica\Program Files (x86)\FreeVideoFlipAndRotate.exe Win32/Toolbar.Conduit potentially unwanted application deleted - quarantined
C:\_OTL\MovedFiles\07082014_173542\C_Users\Veronica\Desktop\drivermax_7_34_cnet.exe a variant of Win32/OpenCandy.A potentially unsafe application deleted - quarantined
C:\_OTL\MovedFiles\07082014_173542\C_Users\Veronica\Documents\debutsetup.exe a variant of Win32/Toolbar.Conduit.H potentially unwanted application deleted - quarantined
C:\_OTL\MovedFiles\07082014_173542\C_Users\Veronica\Downloads\drivermax_7_34_cnet.exe a variant of Win32/OpenCandy.A potentially unsafe application deleted - quarantined
C:\_OTL\MovedFiles\07082014_173542\C_Users\Veronica\Downloads\m4a-to-mp3-converter.exe a variant of Win32/Bundled.Toolbar.Ask.A potentially unsafe application deleted - quarantined
C:\_OTL\MovedFiles\07082014_173542\C_Users\Veronica\Program Files (x86)\FreemakeVideoConverterSetup.exe Win32/OpenCandy potentially unsafe application deleted - quarantined
F:\VERONICA-PC\Backup Set 2014-07-13 155313\Backup Files 2014-07-13 155313\Backup files 4.zip a variant of Win32/Toolbar.Conduit.H potentially unwanted application deleted - quarantined


That scan shows no malware.

You don't scan motherboards, I told you, you replace suspected bad parts. You are already on your way replace the power supply, forget about the files looks they they are gone.
  • 0

#93
periwinkle

periwinkle

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 297 posts

I keep getting results from Adwcleaner that show malware or threats in Chrome and FF.  I did run an ESET scan only on the C drive and the operating system and it came up clean.  This is the first time ever I did not get threats in ESET.  I was running a scan two nights ago and I saw 2 threats, but then the computer shut down again!  It took 3 tries to reboot it.  I did buy the power supply, but I'm just not convinced that the power supply is bad because the shutdowns have been going on for 8 months now.  I could still try putting it in, but I want to try restarting the computer before putting in the power supply.  I also want to see if I can get rid of the threats that keep showing up in Chrome and FF first.

 

Last night, I did some research on removing iLivid, as it was still showing in my Programs and Features.  I found this result and started looking for it in the Registry.  Please see Joda Reply #5 in the link:  http://www.computerh...?topic=141447.0

 

I realize the Registry is a tricky thing, but I mostly removed entries with the iLivid name in them. There might have been one entry that didn't have the name.  

 

 

Here are my results with the Adwcleaner after removing iLivid (but before a restart):

 

# AdwCleaner v3.216 - Report created 24/07/2014 at 16:35:58
# Updated 17/07/2014 by Xplode
# Operating System : Windows ™ Vista Home Premium Service Pack 2 (64 bits)
# Username : Veronica - VERONICA-PC
# Running from : C:\Users\Veronica\Desktop\adwcleaner_3.216.exe
# Option : Clean
 
***** [ Services ] *****
 
 
***** [ Files / Folders ] *****
 
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Key Deleted : HKCU\Software\AppDataLow\Software\adawarebp
 
***** [ Browsers ] *****
 
-\\ Internet Explorer v9.0.8112.16561
 
 
-\\ Mozilla Firefox v30.0 (en-US)
 
[ File : C:\Users\Veronica\AppData\Roaming\Mozilla\Firefox\Profiles\1yjtp4dv.default-1405501392780\prefs.js ]
 
 
-\\ Google Chrome v
 
[ File : C:\Users\Veronica\AppData\Local\Google\Chrome\User Data\Default\preferences ]
 
Deleted [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
 
*************************
 
 
AdwCleaner[R0].txt - [7470 octets] - [07/07/2014 00:54:42]
AdwCleaner[R1].txt - [1228 octets] - [17/07/2014 15:27:18]
AdwCleaner[R2].txt - [1224 octets] - [17/07/2014 19:34:55]
AdwCleaner[R3].txt - [1345 octets] - [17/07/2014 19:58:16]
AdwCleaner[R4].txt - [1465 octets] - [17/07/2014 21:45:07]
AdwCleaner[R5].txt - [1797 octets] - [18/07/2014 22:42:55]
AdwCleaner[R6].txt - [1828 octets] - [23/07/2014 19:15:55]
AdwCleaner[R7].txt - [1825 octets] - [24/07/2014 16:33:08]
AdwCleaner[S0].txt - [7491 octets] - [07/07/2014 02:04:42]
AdwCleaner[S1].txt - [1511 octets] - [17/07/2014 15:37:19]
AdwCleaner[S2].txt - [1506 octets] - [17/07/2014 19:38:41]
AdwCleaner[S3].txt - [1626 octets] - [17/07/2014 21:38:31]
AdwCleaner[S4].txt - [1528 octets] - [17/07/2014 21:46:30]
AdwCleaner[S5].txt - [1866 octets] - [18/07/2014 22:45:19]
AdwCleaner[S6].txt - [1961 octets] - [23/07/2014 19:18:59]
AdwCleaner[S7].txt - [1816 octets] - [24/07/2014 16:35:58]
 
########## EOF - C:\AdwCleaner\AdwCleaner[S7].txt - [1876 octets] ##########
 
 
That hxxp://en.softonic.com/s/{searchTerms} is new and has started popping up in the scans.  
 
 
 
I have not restarted the computer after removing iLivid entries in the Registry.  However, the iLivid icon is gone from the Programs and Features - for the first time since we've been working on ridding my computer of malware.  I will set a restore point.

  • 0

#94
periwinkle

periwinkle

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 297 posts

Here are the AdwCleaner results after the restart:

 

# AdwCleaner v3.216 - Report created 25/07/2014 at 06:44:35
# Updated 17/07/2014 by Xplode
# Operating System : Windows ™ Vista Home Premium Service Pack 2 (64 bits)
# Username : Veronica - VERONICA-PC
# Running from : C:\Users\Veronica\Desktop\adwcleaner_3.216.exe
# Option : Clean
 
***** [ Services ] *****
 
 
***** [ Files / Folders ] *****
 
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Key Deleted : HKCU\Software\AppDataLow\Software\adawarebp
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{8D15E1B2-D2B7-4A17-B44B-D2DDE5981406}
 
***** [ Browsers ] *****
 
-\\ Internet Explorer v9.0.8112.16561
 
 
-\\ Mozilla Firefox v30.0 (en-US)
 
[ File : C:\Users\Veronica\AppData\Roaming\Mozilla\Firefox\Profiles\1yjtp4dv.default-1405501392780\prefs.js ]
 
 
-\\ Google Chrome v
 
[ File : C:\Users\Veronica\AppData\Local\Google\Chrome\User Data\Default\preferences ]
 
Deleted [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
 
*************************
 
AdwCleaner[R0].txt - [7470 octets] - [07/07/2014 00:54:42]
AdwCleaner[R1].txt - [1228 octets] - [17/07/2014 15:27:18]
AdwCleaner[R2].txt - [1224 octets] - [17/07/2014 19:34:55]
AdwCleaner[R3].txt - [1345 octets] - [17/07/2014 19:58:16]
AdwCleaner[R4].txt - [1465 octets] - [17/07/2014 21:45:07]
AdwCleaner[R5].txt - [1797 octets] - [18/07/2014 22:42:55]
AdwCleaner[R6].txt - [1828 octets] - [23/07/2014 19:15:55]
AdwCleaner[R7].txt - [1825 octets] - [24/07/2014 16:33:08]
AdwCleaner[R8].txt - [2068 octets] - [25/07/2014 05:54:03]
AdwCleaner[S0].txt - [7491 octets] - [07/07/2014 02:04:42]
AdwCleaner[S1].txt - [1511 octets] - [17/07/2014 15:37:19]
AdwCleaner[S2].txt - [1506 octets] - [17/07/2014 19:38:41]
AdwCleaner[S3].txt - [1626 octets] - [17/07/2014 21:38:31]
AdwCleaner[S4].txt - [1528 octets] - [17/07/2014 21:46:30]
AdwCleaner[S5].txt - [1866 octets] - [18/07/2014 22:45:19]
AdwCleaner[S6].txt - [1961 octets] - [23/07/2014 19:18:59]
AdwCleaner[S7].txt - [1956 octets] - [24/07/2014 16:35:58]
AdwCleaner[S8].txt - [2061 octets] - [25/07/2014 06:44:35]
 
########## EOF - C:\AdwCleaner\AdwCleaner[S8].txt - [2121 octets] ##########
 
 
iLivid is now gone from my Programs and Features as I removed several entries in the Registry.   :spoton: Guess it wasn't so bad working in the Registry.  I think I was remembering how difficult the Registry was XP's operating system.  
 
Also just did MBAM scan which came up clean:
 
Malwarebytes Anti-Malware
www.malwarebytes.org
 
Scan Date: 7/25/2014
Scan Time: 11:33:36 PM
Logfile: MBAM Scan 7-26-14.txt
Administrator: Yes
 
Version: 2.00.2.1012
Malware Database: v2014.07.26.04
Rootkit Database: v2014.07.17.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
 
OS: Windows Vista Service Pack 2
CPU: x64
File System: NTFS
User: Veronica
 
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 330789
Time Elapsed: 34 min, 17 sec
 
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
 
Processes: 0
(No malicious items detected)
 
Modules: 0
(No malicious items detected)
 
Registry Keys: 0
(No malicious items detected)
 
Registry Values: 0
(No malicious items detected)
 
Registry Data: 0
(No malicious items detected)
 
Folders: 0
(No malicious items detected)
 
Files: 0
(No malicious items detected)
 
Physical Sectors: 0
(No malicious items detected)
 
 
(end)
 
Only AdwCleaner keeps telling me Chrome and FF have items it keeps finding!  I will be so glad to get rid of those items.

  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP