Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

am not able to do anything [Solved]


  • This topic is locked This topic is locked

#106
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
I will keep this open as long as you wish :)
  • 0

Advertisements


#107
leahcase

leahcase

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 229 posts

thank you so much for helping me to fix this mess...I realy need to do the Geeks U , so that I can help others....like you have help me..


  • 0

#108
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
No problem, once we have you sorted I will show you how
  • 0

#109
leahcase

leahcase

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 229 posts
Well since I have formats all the thumb drive..would I istill have to still buy the recovery disk...I have deleted everything in the hard drive. That waz affected ,and instead install some good pertection. And scan the system:-) :-)
  • 0

#110
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
How is the computer behaving at the moment now all the corrupted files are deleted ?
  • 0

#111
leahcase

leahcase

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 229 posts

getting all kinds of poputelling me that my computer at riski.. need to get rid of them.. it is much better and faster then before.... I did find onh drive D recovery and I did save it on my Book.... or do you think I can used it as a bu or recovery in the furture..


  • 0

#112
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Could you give me a screenshot of the popup please

Then download a fresh copy of FRST

Please download Farbar Recovery Scan Tool and save it to your Desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
  • Right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer.
  • Select additions at the bottom
  • Press Scan button.
    frst.JPG
  • It will produce a log called FRST.txt in the same directory the tool is run from.
  • Please attach both logs generated.

  • 0

#113
leahcase

leahcase

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 229 posts

I will the next time it does pop up.. I do have Rfirst save on desktop the first time you sent it to me could I used it or do you want me to save the same one you just sent me....


  • 0

#114
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
As FRST is regularly updated a fresh copy would be best. Just delete your current copy
  • 0

#115
leahcase

leahcase

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 229 posts

ok I will del the first one one you sent mr  ...


  • 0

Advertisements


#116
leahcase

leahcase

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 229 posts

I am not able to copy and past anything from the F scan it will not past on this....


  • 0

#117
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Could you attach the log ?

Capture.JPG
  • 0

#118
leahcase

leahcase

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 229 posts

did you get it yet...

Attached Files


  • 0

#119
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
OK first could you uninstall the following programmes :

7-zip v9.20
File Opener Packages
FileOpener
PC MightyMax 2015
QuickShare
ShopAtHome.com Helper
ShopAtHome.com Toolbar
videos MediaPlay-Air
weDownload Manager

THEN


CAUTION : This fix is only valid for this specific machine, using it on another may break your computer

Open notepad and copy/paste the text in the quotebox below into it:
 

CreateRestorePoint:
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-629239370-1108922991-2781443091-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
BHO-x32: No Name -> {451C804F-C205-4F03-B48E-537EC94937BF} -> No File
Handler: WSWSVCUchrome - {1CA93FF0-A218-44F1 - No File
S3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [47632 2013-04-29] (Panda Security, S.L.)
2015-02-07 22:58 - 2015-02-07 22:58 - 00000426 _____ () C:\Windows\Tasks\MyTurboPC.com Registration3.job
2015-02-07 22:58 - 2015-02-07 22:58 - 00000000 ____D () C:\Users\LEAH\AppData\Roaming\MyTurboPC.com
2015-02-07 22:58 - 2015-02-07 22:58 - 00000000 ____D () C:\Users\LEAH\AppData\Roaming\DriverCure
2015-02-07 22:57 - 2015-02-07 22:57 - 00001162 _____ () C:\Users\LEAH\Desktop\MyTurboPC.lnk
2015-02-07 22:57 - 2015-02-07 22:57 - 00000549 _____ () C:\Windows\Tasks\MyTurboPC_sch_0634F74E-AF4F-11E4-BD42-3860770F2AD2.job
2015-02-07 22:57 - 2015-02-07 22:57 - 00000438 _____ () C:\Windows\Tasks\MyTurboPC.com Update3_triggeronce.job
2015-02-07 22:57 - 2015-02-07 22:57 - 00000438 _____ () C:\Windows\Tasks\MyTurboPC.com Update3.job
2015-02-07 22:57 - 2015-02-07 22:57 - 00000000 ____D () C:\Users\LEAH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyTurboPC.com
2015-02-07 22:57 - 2015-02-07 22:57 - 00000000 ____D () C:\ProgramData\MyTurboPC.com
2015-02-07 22:57 - 2015-02-07 22:57 - 00000000 ____D () C:\Program Files (x86)\MyTurboPC.com
2015-02-07 20:52 - 2015-02-07 20:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ReviverSoft
2015-02-07 20:52 - 2015-02-07 20:52 - 00000000 ____D () C:\Program Files\ReviverSoft
2015-02-07 07:13 - 2015-02-07 07:13 - 00000000 ____D () C:\Users\LEAH\AppData\Roaming\1H1Q1V1N1N1O1R
2015-02-07 07:08 - 2015-02-09 01:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileOpener
2015-02-07 07:08 - 2015-02-07 07:08 - 00001148 _____ () C:\Users\Public\Desktop\FileOpener.lnk
2015-02-07 00:57 - 2015-02-07 00:57 - 00000000 ____D () C:\Users\LEAH\AppData\Roaming\ParetoLogic
2015-02-07 00:56 - 2015-02-07 21:01 - 00000000 ____D () C:\ProgramData\ParetoLogic
2015-02-07 00:56 - 2015-02-07 00:56 - 00000561 _____ () C:\Windows\Tasks\RegCure Pro_sch_7B33AAC5-AE96-11E4-9F19-3860770F2AD2.job
2015-02-07 00:54 - 2015-02-07 05:30 - 00000000 ____D () C:\Users\LEAH\AppData\Local\PC MightyMax 2015
2015-02-07 00:47 - 2015-02-07 00:47 - 00000000 ____D () C:\Users\LEAH\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A}
Task: {0C7EA0FD-7285-4C80-9943-3BD6B7D81D36} - \{908D02C7-1780-4D80-A96E-AB3A93B3D1ED} No Task File <==== ATTENTION
Task: C:\Windows\Tasks\MyTurboPC_sch_0634F74E-AF4F-11E4-BD42-3860770F2AD2.job => C:\Program Files (x86)\MyTurboPC.com\MyTurboPC\mtpc.exe <==== ATTENTION
Task: C:\Windows\Tasks\RegCure Pro_sch_7B33AAC5-AE96-11E4-9F19-3860770F2AD2.job => C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe <==== ATTENTION
EmptyTemp:
CMD: bitsadmin /reset /allusers


Save this as fixlist.txt, in the same location as FRST.exe
FRSTfix.JPG
Run FRST and press Fix
On completion a log will be generated please post that
  • 0

#120
leahcase

leahcase

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 229 posts

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 08-02-2015
Ran by LEAH at 2015-02-10 18:40:01 Run:6
Running from C:\Users\LEAH\Desktop
Loaded Profiles: LEAH (Available profiles: LEAH)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
CreateRestorePoint:
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-629239370-1108922991-2781443091-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
BHO-x32: No Name -> {451C804F-C205-4F03-B48E-537EC94937BF} -> No File
Handler: WSWSVCUchrome - {1CA93FF0-A218-44F1 - No File
S3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [47632 2013-04-29] (Panda Security, S.L.)
2015-02-07 22:58 - 2015-02-07 22:58 - 00000426 _____ () C:\Windows\Tasks\MyTurboPC.com Registration3.job
2015-02-07 22:58 - 2015-02-07 22:58 - 00000000 ____D () C:\Users\LEAH\AppData\Roaming\MyTurboPC.com
2015-02-07 22:58 - 2015-02-07 22:58 - 00000000 ____D () C:\Users\LEAH\AppData\Roaming\DriverCure
2015-02-07 22:57 - 2015-02-07 22:57 - 00001162 _____ () C:\Users\LEAH\Desktop\MyTurboPC.lnk
2015-02-07 22:57 - 2015-02-07 22:57 - 00000549 _____ () C:\Windows\Tasks\MyTurboPC_sch_0634F74E-AF4F-11E4-BD42-3860770F2AD2.job
2015-02-07 22:57 - 2015-02-07 22:57 - 00000438 _____ () C:\Windows\Tasks\MyTurboPC.com Update3_triggeronce.job
2015-02-07 22:57 - 2015-02-07 22:57 - 00000438 _____ () C:\Windows\Tasks\MyTurboPC.com Update3.job
2015-02-07 22:57 - 2015-02-07 22:57 - 00000000 ____D () C:\Users\LEAH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyTurboPC.com
2015-02-07 22:57 - 2015-02-07 22:57 - 00000000 ____D () C:\ProgramData\MyTurboPC.com
2015-02-07 22:57 - 2015-02-07 22:57 - 00000000 ____D () C:\Program Files (x86)\MyTurboPC.com
2015-02-07 20:52 - 2015-02-07 20:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ReviverSoft
2015-02-07 20:52 - 2015-02-07 20:52 - 00000000 ____D () C:\Program Files\ReviverSoft
2015-02-07 07:13 - 2015-02-07 07:13 - 00000000 ____D () C:\Users\LEAH\AppData\Roaming\1H1Q1V1N1N1O1R
2015-02-07 07:08 - 2015-02-09 01:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileOpener
2015-02-07 07:08 - 2015-02-07 07:08 - 00001148 _____ () C:\Users\Public\Desktop\FileOpener.lnk
2015-02-07 00:57 - 2015-02-07 00:57 - 00000000 ____D () C:\Users\LEAH\AppData\Roaming\ParetoLogic
2015-02-07 00:56 - 2015-02-07 21:01 - 00000000 ____D () C:\ProgramData\ParetoLogic
2015-02-07 00:56 - 2015-02-07 00:56 - 00000561 _____ () C:\Windows\Tasks\RegCure Pro_sch_7B33AAC5-AE96-11E4-9F19-3860770F2AD2.job
2015-02-07 00:54 - 2015-02-07 05:30 - 00000000 ____D () C:\Users\LEAH\AppData\Local\PC MightyMax 2015
2015-02-07 00:47 - 2015-02-07 00:47 - 00000000 ____D () C:\Users\LEAH\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A}
Task: {0C7EA0FD-7285-4C80-9943-3BD6B7D81D36} - \{908D02C7-1780-4D80-A96E-AB3A93B3D1ED} No Task File <==== ATTENTION
Task: C:\Windows\Tasks\MyTurboPC_sch_0634F74E-AF4F-11E4-BD42-3860770F2AD2.job => C:\Program Files (x86)\MyTurboPC.com\MyTurboPC\mtpc.exe <==== ATTENTION
Task: C:\Windows\Tasks\RegCure Pro_sch_7B33AAC5-AE96-11E4-9F19-3860770F2AD2.job => C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe <==== ATTENTION
EmptyTemp:
CMD: bitsadmin /reset /allusers

*****************

Restore point was successfully created.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKU\S-1-5-21-629239370-1108922991-2781443091-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{451C804F-C205-4F03-B48E-537EC94937BF}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{451C804F-C205-4F03-B48E-537EC94937BF} => Key not found.
"HKCR\PROTOCOLS\Handler\WSWSVCUchrome" => Key deleted successfully.
PSKMAD => Service deleted successfully.
C:\Windows\Tasks\MyTurboPC.com Registration3.job => Moved successfully.
C:\Users\LEAH\AppData\Roaming\MyTurboPC.com => Moved successfully.
C:\Users\LEAH\AppData\Roaming\DriverCure => Moved successfully.
"C:\Users\LEAH\Desktop\MyTurboPC.lnk" => File/Directory not found.
C:\Windows\Tasks\MyTurboPC_sch_0634F74E-AF4F-11E4-BD42-3860770F2AD2.job => Moved successfully.
C:\Windows\Tasks\MyTurboPC.com Update3_triggeronce.job => Moved successfully.
C:\Windows\Tasks\MyTurboPC.com Update3.job => Moved successfully.
C:\Users\LEAH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyTurboPC.com => Moved successfully.
C:\ProgramData\MyTurboPC.com => Moved successfully.
C:\Program Files (x86)\MyTurboPC.com => Moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ReviverSoft => Moved successfully.
C:\Program Files\ReviverSoft => Moved successfully.
"C:\Users\LEAH\AppData\Roaming\1H1Q1V1N1N1O1R" => File/Directory not found.
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileOpener" => File/Directory not found.
C:\Users\Public\Desktop\FileOpener.lnk => Moved successfully.
C:\Users\LEAH\AppData\Roaming\ParetoLogic => Moved successfully.
C:\ProgramData\ParetoLogic => Moved successfully.
C:\Windows\Tasks\RegCure Pro_sch_7B33AAC5-AE96-11E4-9F19-3860770F2AD2.job => Moved successfully.
C:\Users\LEAH\AppData\Local\PC MightyMax 2015 => Moved successfully.
C:\Users\LEAH\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0C7EA0FD-7285-4C80-9943-3BD6B7D81D36}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0C7EA0FD-7285-4C80-9943-3BD6B7D81D36}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{908D02C7-1780-4D80-A96E-AB3A93B3D1ED}" => Key deleted successfully.
C:\Windows\Tasks\MyTurboPC_sch_0634F74E-AF4F-11E4-BD42-3860770F2AD2.job not found.
C:\Windows\Tasks\RegCure Pro_sch_7B33AAC5-AE96-11E4-9F19-3860770F2AD2.job not found.

=========  bitsadmin /reset /allusers =========

BITSADMIN version 3.0 [ 7.5.7601 ]
BITS administration utility.
© Copyright 2000-2006 Microsoft Corp.

BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

0 out of 0 jobs canceled.

========= End of CMD: =========

EmptyTemp: => Removed 147.6 MB temporary data.

The system needed a reboot.

==== End of Fixlog 18:40:40 ====


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP