Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Windows 8 ~ Boot Device Not Found [Solved]


  • This topic is locked This topic is locked

#31
DonnaB

DonnaB

    Miss Congeniality

  • Topic Starter
  • GeekU Moderator
  • 7,497 posts

Cool! I have more control over the cursor and can actually scroll without the thinker orb thinking.

Here are the logs you requested. :)

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 13-07-2014

Ran by Evelyn Sass at 2014-07-13 16:18:30 Run:5
Running from C:\Users\Evelyn Sass\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://search.condui...rchTerms}&SSPV=
SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://search.condui...rchTerms}&SSPV=
BHO: Plus-HD-1.3 - {11111111-1111-1111-1111-110311121157} - C:\Program Files (x86)\Plus-HD-1.3\Plus-HD-1.3-bho64.dll No File
BHO: a2zLyrics-16 - {11111111-1111-1111-1111-110411411168} - C:\Program Files (x86)\a2zLyrics-16\a2zLyrics-16-bho64.dll No File
BHO: The weDownload Manager - {11111111-1111-1111-1111-110411901174} - C:\Program Files (x86)\The weDownload Manager\The weDownload Manager-bho64.dll No File
BHO: Save Valet - {F0F12903-DE76-4DF7-BCDC-0A0689151189} - C:\Program Files (x86)\SaveValet\ie\SaveValetIE_64.dll No File
CHR Extension: (a2zLyrics-16) - C:\Users\Evelyn Sass\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfocabhmkfcdibnkgogpaclhgblhnemn [2013-10-20]
CHR Extension: (We-Care Reminder) - C:\Users\Evelyn Sass\AppData\Local\Google\Chrome\User Data\Default\Extensions\ippkomaaonokjnfjoikaemidanojkfmm [2014-07-13]
CHR Extension: (couponpeak) - C:\Users\Evelyn Sass\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohpblbaekcpbmnmcjpkcdecgpbjgfdbm [2013-12-21]
CHR Extension: (eeAsytosshop) - C:\ProgramData\edocehkojjnboekfgkcpedjmebgcpkpm\ [2013-05-24]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
couponpeak (HKLM-x32\...\{7C28DF4D-53DB-2913-830C-A43B46EAC005}) (Version: - couponpaeakk) <==== ATTENTION
CWA Reminder by We-Care.com v4.1.24.3 (HKLM-x32\...\{0228288D-975E-42F7-9993-E91A82E6BBD9}) (Version: 4.1.24.3 - We-Care.com)
DMUninstaller (HKLM-x32\...\DMUninstaller) (Version: - ) <==== ATTENTION
eeAsytosshop (HKLM-x32\...\{532970A2-464B-73CB-BBC4-F209EAD3EEBE}) (Version: - eAAsytoshop)
JFileManager (HKLM-x32\...\JFileManager) (Version: v1.10 - TUGUU SL) <==== ATTENTION
Software Updater version 1.8.3 (HKLM-x32\...\Software Updater_is1) (Version: 1.8.3 - Air Software) <==== ATTENTION
Task: {791A65AD-87DC-4724-8ADB-A9D6EC8688C0} - \SpeedUpMyPC No Task File <==== ATTENTION
Task: {D5F9ED5A-0010-4A1F-A326-4DEE250F5752} - \spmonitor No Task File <==== ATTENTION
Task: {E40B625E-3845-4502-A39A-0C2B2090D40D} - \BonanzaDealsUpdate No Task File <==== ATTENTION
S2 LMIRescue_d241719e-d1fb-42f7-aaf9-4db5c97ee885; "C:\Users\EVELYN~1\AppData\Local\LOGMEI~1\LMIR0001.tmp\LMI_Rescue_srv.exe" -service -sid d241719e-d1fb-42f7-aaf9-4db5c97ee885 [X]
C:\Program Files (x86)\Plus-HD-1.3
C:\Program Files (x86)\a2zLyrics-16
C:\Program Files (x86)\The weDownload Manager

CMD: ipconfig /release
CMD: netsh int ip reset
CMD: ipconfig /renew
CMD: DEL %TEMP%\*.* /F /S /Q
CMD: RD /S /Q %TEMP%
REBOOT:
*****************

HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
'HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}' => Key deleted successfully.
'HKCR\CLSID\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}'=> Key not found.
'HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311121157}' => Key deleted successfully.
'HKCR\CLSID\{11111111-1111-1111-1111-110311121157}' => Key deleted successfully.
'HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411411168}' => Key deleted successfully.
'HKCR\CLSID\{11111111-1111-1111-1111-110411411168}' => Key deleted successfully.
'HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411901174}' => Key deleted successfully.
'HKCR\CLSID\{11111111-1111-1111-1111-110411901174}' => Key deleted successfully.
'HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0F12903-DE76-4DF7-BCDC-0A0689151189}' => Key deleted successfully.
'HKCR\CLSID\{F0F12903-DE76-4DF7-BCDC-0A0689151189}' => Key deleted successfully.
C:\Users\Evelyn Sass\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfocabhmkfcdibnkgogpaclhgblhnemn => Moved successfully.
C:\Users\Evelyn Sass\AppData\Local\Google\Chrome\User Data\Default\Extensions\ippkomaaonokjnfjoikaemidanojkfmm => Moved successfully.
C:\Users\Evelyn Sass\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohpblbaekcpbmnmcjpkcdecgpbjgfdbm => Moved successfully.
C:\ProgramData\edocehkojjnboekfgkcpedjmebgcpkpm\ => Moved successfully.
'HKLM\SOFTWARE\Policies\Google' => Key deleted successfully.
'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{791A65AD-87DC-4724-8ADB-A9D6EC8688C0}' => Key deleted successfully.
'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{791A65AD-87DC-4724-8ADB-A9D6EC8688C0}' => Key deleted successfully.
'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SpeedUpMyPC' => Key deleted successfully.
'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D5F9ED5A-0010-4A1F-A326-4DEE250F5752}' => Key deleted successfully.
'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D5F9ED5A-0010-4A1F-A326-4DEE250F5752}' => Key deleted successfully.
'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\spmonitor' => Key deleted successfully.
'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E40B625E-3845-4502-A39A-0C2B2090D40D}' => Key deleted successfully.
'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E40B625E-3845-4502-A39A-0C2B2090D40D}' => Key deleted successfully.
'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BonanzaDealsUpdate' => Key deleted successfully.
LMIRescue_d241719e-d1fb-42f7-aaf9-4db5c97ee885 => Service deleted successfully.
"C:\Program Files (x86)\Plus-HD-1.3" => File/Directory not found.
"C:\Program Files (x86)\a2zLyrics-16" => File/Directory not found.
"C:\Program Files (x86)\The weDownload Manager" => File/Directory not found.

=========  ipconfig /release =========

Windows IP Configuration

No operation can be performed on Local Area Connection* 12 while it has its media disconnected.
No operation can be performed on Ethernet while it has its media disconnected.

Wireless LAN adapter Local Area Connection* 12:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :

Wireless LAN adapter Wi-Fi:

   Connection-specific DNS Suffix  . :
   Link-local IPv6 Address . . . . . : fe80::b880:32af:6672:513b%17
   Default Gateway . . . . . . . . . :

Ethernet adapter Ethernet:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : gateway.2wire.net

Tunnel adapter isatap.{665AD9BE-F4F2-4685-89E8-647FB49834AA}:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :

Tunnel adapter Teredo Tunneling Pseudo-Interface:

   Connection-specific DNS Suffix  . :
   IPv6 Address. . . . . . . . . . . : 2001:0:5ef5:79fb:68:35ae:3f57:fe99
   Link-local IPv6 Address . . . . . : fe80::68:35ae:3f57:fe99%15
   Default Gateway . . . . . . . . . : ::

========= End of CMD: =========


=========  netsh int ip reset =========

Resetting Global, OK!
Resetting Interface, OK!
Resetting Neighbor, OK!
Resetting Path, OK!
Resetting , failed.
Access is denied.

Resetting , OK!
Restart the computer to complete this action.

========= End of CMD: =========


=========  ipconfig /renew =========

Windows IP Configuration

No operation can be performed on Local Area Connection* 12 while it has its media disconnected.
No operation can be performed on Ethernet while it has its media disconnected.

Wireless LAN adapter Local Area Connection* 12:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :

Wireless LAN adapter Wi-Fi:

   Connection-specific DNS Suffix  . :
   Link-local IPv6 Address . . . . . : fe80::b880:32af:6672:513b%17
   IPv4 Address. . . . . . . . . . . : 192.168.1.102
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Default Gateway . . . . . . . . . : 192.168.1.1

Ethernet adapter Ethernet:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : gateway.2wire.net

Tunnel adapter isatap.{665AD9BE-F4F2-4685-89E8-647FB49834AA}:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :

Tunnel adapter Teredo Tunneling Pseudo-Interface:

   Connection-specific DNS Suffix  . :
   IPv6 Address. . . . . . . . . . . : 2001:0:9d38:90d7:384a:3f51:3f57:fe99
   Link-local IPv6 Address . . . . . : fe80::384a:3f51:3f57:fe99%15
   Default Gateway . . . . . . . . . : ::

========= End of CMD: =========


=========  DEL %TEMP%\*.* /F /S /Q =========

Deleted file - C:\Users\EVELYN~1\AppData\Local\Temp\HP Support Framework\HPSF_Config1.dll

========= End of CMD: =========

=========  RD /S /Q %TEMP% =========

C:\Users\EVELYN~1\AppData\Local\Temp\etilqs_420fIz1jkfBOiM0 - The process cannot access the file because it is being used by another process.
C:\Users\EVELYN~1\AppData\Local\Temp\etilqs_CNZtEMAa0hqRNwl - The process cannot access the file because it is being used by another process.

========= End of CMD: =========

The system needed a reboot.

==== End of Fixlog ====


# AdwCleaner v3.215 - Report created 13/07/2014 at 16:28:50

# Updated 09/07/2014 by Xplode
# Operating System : Windows 8  (64 bits)
# Username : Evelyn Sass - EVELYN
# Running from : C:\Users\Evelyn Sass\Downloads\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Flash Player Pro
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\jfilemanager
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Software Updater
Folder Deleted : C:\Program Files (x86)\Flash Player Pro
Folder Deleted : C:\Program Files (x86)\jfilemanager
Folder Deleted : C:\Program Files (x86)\Software Updater
Folder Deleted : C:\Program Files\Uninstaller
Folder Deleted : C:\Users\Evelyn Sass\AppData\Roaming\Uniblue
Folder Deleted : C:\Users\Evelyn Sass\Documents\Flash Player Pro
File Deleted : C:\Users\Evelyn Sass\AppData\Roaming\LiveSupport.exe_log.txt
File Deleted : C:\Users\Evelyn Sass\AppData\Roaming\regsvr32.exe_log.txt
File Deleted : C:\Users\Evelyn Sass\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Search The Web.url
File Deleted : C:\Users\Evelyn Sass\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
File Deleted : C:\Users\Evelyn Sass\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
File Deleted : C:\Users\Evelyn Sass\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.livelyrics00.live-lyrics.com_0.localstorage
File Deleted : C:\Users\Evelyn Sass\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.livelyrics00.live-lyrics.com_0.localstorage-journal

***** [ Shortcuts ] *****

***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\JFileManager_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\JFileManager_RASMANCS
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{058F0E48-61CA-4964-9FBA-1978A1BB060D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{18F33C35-8EF2-40D7-8BA4-932B0121B472}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
Key Deleted : HKCU\Software\installedbrowserextensions
Key Deleted : HKCU\Software\WEDLMNGR
Key Deleted : HKLM\Software\JFileManager
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DMUninstaller
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\JFileManager
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Software Updater_is1

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16537

-\\ Google Chrome v31.0.1650.63

[ File : C:\Users\Evelyn Sass\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Homepage] : hxxp://search.conduit.com/?ctid=CT3314759&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP6C55A5CC-7AE5-4B8E-84BA-80ACF8E780E4&SSPV=
Deleted [Extension] : amfclgbdpgndipgoegfpkkgobahigbcl
Deleted [Extension] : hhlmghjmomaoodfgjeikphfdljhpcpkl
Deleted [Extension] : ieadcoanfjloocmfafkebdnfefmohngj
Deleted [Extension] : ippkomaaonokjnfjoikaemidanojkfmm

*************************

AdwCleaner[R0].txt - [21863 octets] - [18/02/2014 20:42:36]
AdwCleaner[R1].txt - [6500 octets] - [13/07/2014 10:08:53]
AdwCleaner[R2].txt - [5360 octets] - [13/07/2014 16:26:06]
AdwCleaner[S0].txt - [21044 octets] - [18/02/2014 20:45:18]
AdwCleaner[S1].txt - [5105 octets] - [13/07/2014 16:28:50]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [5165 octets] ##########


  • 0

Advertisements


#32
DonnaB

DonnaB

    Miss Congeniality

  • Topic Starter
  • GeekU Moderator
  • 7,497 posts

Chrome has been reset! Niceeee :yes:


  • 0

#33
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
We will now run a final check with AswMBR and then it will just be a matter of speeding up I feel

Download aswMBR.exe ( 4.5mb ) to your desktop.
Double click the aswMBR.exe to run it.
You may be offered the option of using virtualisation, accept that
When it offers to download the virus database allow that as well
Click the "Scan" button to start scan

AswMBR%20scan.JPG


On completion of the scan click save log, save it to your desktop and post in your next reply
  • 0

#34
DonnaB

DonnaB

    Miss Congeniality

  • Topic Starter
  • GeekU Moderator
  • 7,497 posts

Essexboy,

This is the second log generated. When I clicked on Save Log after the first scan, AVG popped up a warning that aswMBR.exe was infected and deleted the program and log before I could get it saved to the desktop. Had to disable AVG to be able to download aswMBR again. Is that going to be a problem?

Seems my only issue with speed is after I type in the password and when shutting down. Once the computer has booted, surfing about doesn't seem to be an issue now. 

aswMBR version 1.0.1.2041 Copyright© 2014 AVAST Software

Run date: 2014-07-13 17:59:12
-----------------------------
17:59:12.640    OS Version: Windows x64 6.2.9200
17:59:12.641    Number of processors: 2 586 0x200
17:59:12.644    ComputerName: EVELYN  UserName:
17:59:14.886    Initialize success
17:59:15.020    VM: initialized successfully
17:59:15.028    VM: Amd CPU BiosDisabled
17:59:20.430    VM: supported disk I/O storport.sys
18:00:35.335    AVAST engine defs: 14071301
18:00:40.458    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000035
18:00:40.466    Disk 0 Vendor: TOSHIBA_MQ01ABD032 AX001C Size: 305245MB BusType: 11
18:00:40.620    Disk 0 MBR read successfully
18:00:40.629    Disk 0 MBR scan
18:00:40.700    Disk 0 unknown MBR code
18:00:40.710    Disk 0 Partition 1 00     EE          GPT           2097151 MB offset 1
18:00:40.845    Disk 0 scanning C:\Windows\system32\drivers
18:00:58.830    Service scanning
18:01:48.353    Modules scanning
18:01:48.378    Disk 0 trace - called modules:
18:01:48.423    ntoskrnl.exe CLASSPNP.SYS disk.sys amd_xata.sys storport.sys hal.dll amd_sata.sys
18:01:48.439    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80029ac420]
18:01:48.454    3 CLASSPNP.SYS[fffff88001401e0a] -> nt!IofCallDriver -> [0xfffffa8002548b20]
18:01:48.467    5 amd_xata.sys[fffff88000ec2634] -> nt!IofCallDriver -> \Device\00000035[0xfffffa80025447f0]
18:01:50.494    AVAST engine scan C:\Windows
18:01:59.061    AVAST engine scan C:\Windows\system32
18:06:54.234    AVAST engine scan C:\Windows\system32\drivers
18:07:16.369    AVAST engine scan C:\Users\Evelyn Sass
18:08:34.623    Disk 0 MBR has been saved successfully to "C:\Users\Evelyn Sass\Desktop\MBR.dat"
18:08:34.654    The log file has been saved successfully to "C:\Users\Evelyn Sass\Desktop\aswMBR.txt"


  • 0

#35
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
A couple of options then, dependant on how much time you wish to spend on it

First would be a drive defrag and second would be to use xbootmgr to locate the load drivers optimally on the disc http://www.msfn.org/...a-or-windows-7/

I do have a set of destructions where it makes sense :)
  • 0

#36
DonnaB

DonnaB

    Miss Congeniality

  • Topic Starter
  • GeekU Moderator
  • 7,497 posts
I had promised her that I would have it back today. That is not going to happen. I'd love to view those instructive destruction's, if you don't mind. :yes:


I did scan with MBAM version 2 last night and quarantined quite a bit more nasties that were found. I'd like to run an ESET and see what is found, as well as a defrag.

Does Windows 8 have a System Toos folder anywhere? I can't find a defrag or disc cleanup. I'd also like to flush the RP's.

IE 11 needs to be installed and she does have the 8.1 update that popped up somewhere along the way that I clicked away out of view for the moment. Will installing that update make W8 appear/function more like W7. She received this W8 for Christmas from her kids and she literally hates it. She is 80+ years old and set in her ways. What can I do to make it "feel" like W7?
  • 0

#37
DonnaB

DonnaB

    Miss Congeniality

  • Topic Starter
  • GeekU Moderator
  • 7,497 posts
Ooops! Found defrag and disc cleanup!
  • 0

#38
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts

To revert the look to windows 7 then you could not do worse than classic shell

 

You are probably on an orphan hunt at the moment as FRST/Avast/MBAM show clean  


  • 0

#39
DonnaB

DonnaB

    Miss Congeniality

  • Topic Starter
  • GeekU Moderator
  • 7,497 posts
Good morning smiley-happy005.gif!

I'll ask her if she would like to try Classic Shell. If she decides she does and doesn't like it, can it be uninstalled?

You're right about the orphans. I also cleared the History in her Chrome browser. She swears up and down that she does not visit sites that would install what we removed. I know she'll ask me in due time to look at this laptop, so I'll be able to see where she's been so I can point out the bad places she has been and maybe teach her where not to go, then again, can't teach an old dog a new trick.

She is having fits not being able to use her computer so I will be taking it back to her today. I told her that you were helping me since I am not W8 user friendly and she wanted me to thank you. I thank you as well! :hug: I'm quite sure I would be working on this laptop for days if not for you.

Again, thank you Essexboy. :happy:

Have a great day!! :)
  • 0

#40
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Yes classic shell can be uninstalled, but, once she has it I think she will keep it. Personally I use start8 but it did cost £5.00

This is my start menu on 8.1 and it goes direct to the desktop on start

[attachment=71637:Untitled.jpg]
  • 0

Advertisements


#41
SleepyDude

SleepyDude

    Trusted Helper

  • Malware Removal
  • 4,401 posts

This is my start menu on 8.1 and it goes direct to the desktop on start


Windows 8.1 after Update (KB2919355 it's like a Service Pack) will detect if the device doesn't have a touch screen and revert to Desktop mode on start.


  • 0

#42
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Ah but does it look like 7 ? As the metro desktop I still find illogical
  • 0

#43
SleepyDude

SleepyDude

    Trusted Helper

  • Malware Removal
  • 4,401 posts

Ah but does it look like 7 ? As the metro desktop I still find illogical

 

Nope. Only a white Start Menu button that gives access to this:

shut.jpg

 

It's basically the same menu you can access by using windows8_key.png + X

If I'm not mistaken the only change is the Shutdown option presented on the image.


  • 0

#44
DonnaB

DonnaB

    Miss Congeniality

  • Topic Starter
  • GeekU Moderator
  • 7,497 posts

Well gentlemen, I have returned the laptop to my friend and she is a happy bunny once again. I tried, and I tried with no joy to talk my dear friend into at least trying the classic shell, but you know that the older we get, the less we like change. I think she just needs something to complain about. ;)

Thanks for all your help. Till next time!

Donna :)


  • 0

#45
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Since this issue appears to be resolved ... this Topic has been closed. Glad we could help. :)

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.
  • 0






Similar Topics

1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP