Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Old Compacq Win 7 running like a snail [Closed]


  • This topic is locked This topic is locked

#16
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Restart for those elements is unusual... I am on GMT but am available from lunchtime onwards daily
  • 0

Advertisements


#17
Don Stewart

Don Stewart

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 239 posts

It appears that my problem (everything in slow motion) is the Firefox browser only.  Is there a specific recommended version of Firefox or should I move to Google? Maybe run Yahoo mail off Google browser? Thoughts?


  • 0

#18
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Have you uninstalled and then re-installed Firefox.
How is IE behaving, try updating that to IE 11 https://www.microsof...-7-details.aspx ?
  • 0

#19
Don Stewart

Don Stewart

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 239 posts

I've reloaded many times, should I try loading their beta version?  Don't like or ever use IE anymore, but both it & Google appear to be OK.  Just bought a new chrome book and trying to get away from Microsoft & all their updates!


  • 0

#20
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
You can try chrome You can download The latest version from here - Google Chrome as it appears to be a Firefox problem. One option would be for you to uninstall Firefox, run an FRST scan. I will remove all the remnants from firefox and then you could try a re-install
  • 0

#21
Don Stewart

Don Stewart

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 239 posts

Will do the latter & let yo know the results soon!


  • 0

#22
Don Stewart

Don Stewart

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 239 posts

Did as requested, no change Firefox ONLY still slow as a snail.  Also using tools/options can't get Firefox to retain home page and I always have the same message at the bottom of the page stating FIrefox auto sends data to Mozilla to improve experience, but no matter what I enter the same note keeps coming up again & again!

 

Also whenever I open firefox I always get the same two pages: "Welcome to Firefox" & "Firefox start  page".....Should be my home that displays, but I can't get it programed into Firefox to stay!


Edited by Don Stewart, 25 May 2015 - 12:28 PM.

  • 0

#23
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
OK uninstall Firefox.

Then scan with FRST and I will remove everything firefox related
Once that is done then reinstall firefox
It will mean that you will need to run IE until I have finished the cleaning
  • 0

#24
Don Stewart

Don Stewart

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 239 posts

Please explain how YOU are going to clean-out Fire fox remnants form MY computer? Please don't take it the wrong way, as I don't mine, just wondering how?


Edited by Don Stewart, 25 May 2015 - 01:07 PM.

  • 0

#25
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
After you have uninstalled Firefox the FRST scan will show me what elements related to Firefox (if any ) are left on your computer, I will then use FRST to remove them via a fixlist.
  • 0

Advertisements


#26
Don Stewart

Don Stewart

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 239 posts

Had to run a "Honey Do" just got back, maybe answer tomorrow....,,no hurry!

 

 

San result of Farbar Recovery Scan Tool (FRST) (x86) Version: 25-05-2015
Ran by Don (administrator) on DON-PC on 25-05-2015 14:35:01
Running from H:\Users\Don\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\22C1AUCC
Loaded Profiles: Don (Available Profiles: Don & Merry)
Platform: Microsoft Windows 7 Professional  Service Pack 1 (X86) OS Language: English (United States)
Internet Explorer Version 10 (Default browser not detected!)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Symantec Corporation) H:\Program Files\Norton AntiVirus\Engine\21.7.0.11\nav.exe
(Symantec Corporation) H:\Program Files\Norton AntiVirus\Engine\21.7.0.11\nav.exe
(Google Inc.) H:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) H:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) H:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) H:\Windows\System32\Macromed\Flash\FlashUtil32_15_0_0_189_ActiveX.exe

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKU\S-1-5-21-3964834215-2275053063-3108885826-1000\...\Run: [083B39FB7B958A0F78E959FDA72E539905C51D18._service_run] => H:\Program Files\Google\Chrome\Application\chrome.exe [813896 2015-05-13] (Google Inc.)
HKU\S-1-5-18\...\RunOnce: [SPReview] => H:\Windows\System32\SPReview\SPReview.exe [280576 2014-04-17] (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3964834215-2275053063-3108885826-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com/?...OIE8MSE&PC=UP09
HKU\S-1-5-21-3964834215-2275053063-3108885826-1000\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.yahoo.com/
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> H:\Program Files\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll [2009-02-06] (Zeon Corporation)
BHO: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> H:\Program Files\Norton AntiVirus\Engine\21.7.0.11\IPS\IPSBHO.DLL [2015-03-04] (Symantec Corporation)
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> H:\Program Files\Java\jre7\bin\ssv.dll [2014-09-26] (Oracle Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> H:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-09-26] (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 205.171.2.25

FireFox:
========
FF ProfilePath: H:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\hhgro1n2.default-1414124344833
FF DefaultSearchEngine: Bing
FF DefaultSearchEngine.US: Bing
FF Plugin: @adobe.com/FlashPlayer -> H:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_188.dll [2015-05-18] ()
FF Plugin: @java.com/DTPlugin,version=10.71.2 -> H:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-09-26] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.71.2 -> H:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-09-26] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @tools.google.com/Google Update;version=3 -> H:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-14] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> H:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-14] (Google Inc.)
FF Plugin: Adobe Reader -> H:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-02] (Adobe Systems Inc.)
FF Extension: Flashblock - H:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\hhgro1n2.default-1414124344833\Extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a} [2014-12-10]
FF Extension: NoScript - H:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\hhgro1n2.default-1414124344833\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2014-10-23]
FF Extension: Adblock Plus - H:\Users\Don\AppData\Roaming\Mozilla\Firefox\Profiles\hhgro1n2.default-1414124344833\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-10-23]
FF Extension: No Name - H:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [not found]

Chrome:
=======
CHR Profile: H:\Users\Don\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Bookmark Manager) - H:\Users\Don\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-16]
CHR Extension: (Chrome Hotword Shared Module) - H:\Users\Don\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-16]
CHR Extension: (Google Wallet) - H:\Users\Don\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-19]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S4 !SASCORE; H:\Program Files\SASCORE.EXE [142648 2014-07-22] (SUPERAntiSpyware.com)
S4 BrYNSvc; H:\Program Files\Browny02\BrYNSvc.exe [282112 2012-10-26] (Brother Industries, Ltd.) []
R2 DiagTrack; H:\Windows\system32\diagtrack.dll [851456 2015-04-27] (Microsoft Corporation)
S4 MBAMService; H:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 NAV; H:\Program Files\Norton AntiVirus\Engine\21.7.0.11\NAV.exe [262928 2015-03-06] (Symantec Corporation)
S4 PDFProFiltSrvPP; H:\Program Files\Nuance\PaperPort\PDFProFiltSrvPP.exe [145256 2011-08-02] (Nuance Communications, Inc.)
S3 WinDefend; H:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-26] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 ALCXWDM; H:\Windows\System32\drivers\ALCXWDM.SYS [3844032 2006-01-11] (Realtek Semiconductor Corp.)
R1 BHDrvx86; H:\Program Files\Norton AntiVirus\NortonData\21.1.0.18\Definitions\BASHDefs\20150519.001\BHDrvx86.sys [1172184 2015-05-01] (Symantec Corporation)
R1 ccSet_NAV; H:\Windows\system32\drivers\NAV\1507000.00B\ccSetx86.sys [127064 2013-09-25] (Symantec Corporation)
R1 eeCtrl; H:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [378672 2015-03-15] (Symantec Corporation)
R3 EraserUtilRebootDrv; H:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [111408 2015-03-15] (Symantec Corporation)
S3 GKUPRO2D; H:\Windows\System32\DRIVERS\GKUPRO2D.sys [90240 2012-11-05] (Gemalto)
R1 IDSVix86; H:\Program Files\Norton AntiVirus\NortonData\21.1.0.18\Definitions\IPSDefs\20150521.003\IDSvix86.sys [505048 2015-03-30] (Symantec Corporation)
S3 MBAMProtector; H:\Windows\system32\drivers\mbam.sys [23256 2015-04-14] (Malwarebytes Corporation)
S3 MBAMSwissArmy; H:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2015-05-21] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; H:\Windows\system32\drivers\mwac.sys [51928 2015-04-14] (Malwarebytes Corporation)
R3 NAVENG; H:\Program Files\Norton AntiVirus\NortonData\21.1.0.18\Definitions\VirusDefs\20150525.001\NAVENG.SYS [95704 2015-03-15] (Symantec Corporation)
R3 NAVEX15; H:\Program Files\Norton AntiVirus\NortonData\21.1.0.18\Definitions\VirusDefs\20150525.001\NAVEX15.SYS [1636696 2015-03-15] (Symantec Corporation)
R1 SASDIFSV; H:\Program Files\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; H:\Program Files\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 SISNIC; H:\Windows\System32\DRIVERS\sisnic.sys [40840 2006-07-13] (SiS Corporation)
S3 SISNICXP; H:\Windows\System32\DRIVERS\sisnicxp.sys [32768 2006-02-14] (SiS Corporation)
R3 SRTSP; H:\Windows\System32\Drivers\NAV\1507000.00B\SRTSP.SYS [664792 2014-08-25] (Symantec Corporation)
R1 SRTSPX; H:\Windows\system32\drivers\NAV\1507000.00B\SRTSPX.SYS [32984 2014-08-25] (Symantec Corporation)
S3 SrvHsfPCI; H:\Windows\System32\DRIVERS\VSTBS23.SYS [266752 2009-07-13] (Conexant Systems, Inc.)
R0 SymDS; H:\Windows\System32\drivers\NAV\1507000.00B\SYMDS.SYS [367704 2013-09-09] (Symantec Corporation)
R0 SymEFA; H:\Windows\System32\drivers\NAV\1507000.00B\SYMEFA.SYS [936152 2014-03-03] (Symantec Corporation)
R3 SymEvent; H:\Windows\system32\Drivers\SYMEVENT.SYS [142936 2014-04-16] (Symantec Corporation)
R1 SymIRON; H:\Windows\system32\drivers\NAV\1507000.00B\Ironx86.SYS [209624 2014-08-06] (Symantec Corporation)
R1 SymNetS; H:\Windows\System32\Drivers\NAV\1507000.00B\SYMNETS.SYS [447704 2014-02-17] (Symantec Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-05-25 10:55 - 2015-05-25 10:55 - 00243344 _____ () H:\Users\Don\Downloads\Firefox Setup Stub 38.0.1 (2).exe
2015-05-25 10:51 - 2015-05-25 10:51 - 00001026 _____ () H:\Windows\PFRO.log
2015-05-25 09:30 - 2015-05-25 09:30 - 00243344 _____ () H:\Users\Don\Downloads\Firefox Setup Stub 38.0.1 (1).exe
2015-05-25 09:22 - 2015-05-25 09:22 - 00243424 _____ () H:\Users\Don\Downloads\Firefox Setup Stub 38.0.5b3.exe
2015-05-24 08:18 - 2015-05-25 10:52 - 00000168 _____ () H:\Windows\setupact.log
2015-05-24 08:18 - 2015-05-24 08:18 - 00000000 _____ () H:\Windows\setuperr.log
2015-05-23 22:35 - 2015-05-23 22:35 - 00001686 _____ () H:\Users\Public\Documents\cc_20150523_223515.reg
2015-05-23 11:25 - 2015-05-23 11:26 - 00022619 _____ () H:\Users\Don\Downloads\Addition.txt
2015-05-23 11:24 - 2015-05-25 10:50 - 00028577 _____ () H:\Users\Don\Downloads\FRST.txt
2015-05-23 11:23 - 2015-05-25 14:35 - 00000000 ____D () H:\FRST
2015-05-23 11:23 - 2015-05-25 10:45 - 00000000 ____D () H:\Users\Don\Downloads\FRST-OlderVersion
2015-05-23 09:55 - 2015-05-23 09:56 - 02223104 _____ () H:\Users\Don\Desktop\AdwCleaner(1).exe
2015-05-22 23:53 - 2015-05-22 23:53 - 00010218 _____ () H:\Users\Public\Documents\cc_20150522_235320.reg
2015-05-22 15:30 - 2015-05-22 15:30 - 00000000 ____D () H:\Users\Public\Documents\Sewer
2015-05-21 22:06 - 2015-05-21 22:06 - 00000000 ____D () H:\Users\Don\Desktop\DVDIRECT_DISC_00100002052
2015-05-21 21:46 - 2015-05-21 21:46 - 03060320 ____N (Symantec Corporation) H:\Users\Don\Downloads\NPE.exe
2015-05-21 14:13 - 2015-05-21 14:13 - 00000000 _____ () H:\Users\Don\Documents\Nuance Image Printer Writer Port
2015-05-21 13:41 - 2015-05-21 13:43 - 00000000 _____ () H:\Users\Merry\Documents\Nuance Image Printer Writer Port
2015-05-21 13:33 - 2015-05-21 13:33 - 00000000 ____D () H:\Users\Merry\AppData\Roaming\Zeon
2015-05-20 14:18 - 2015-04-27 12:11 - 03989440 _____ (Microsoft Corporation) H:\Windows\system32\ntkrnlpa.exe
2015-05-20 14:18 - 2015-04-27 12:11 - 03934144 _____ (Microsoft Corporation) H:\Windows\system32\ntoskrnl.exe
2015-05-20 14:18 - 2015-04-27 12:11 - 00137664 _____ (Microsoft Corporation) H:\Windows\system32\Drivers\ksecpkg.sys
2015-05-20 14:18 - 2015-04-27 12:11 - 00067520 _____ (Microsoft Corporation) H:\Windows\system32\Drivers\ksecdd.sys
2015-05-20 14:18 - 2015-04-27 12:08 - 01307648 _____ (Microsoft Corporation) H:\Windows\system32\ntdll.dll
2015-05-20 14:18 - 2015-04-27 12:05 - 00851456 _____ (Microsoft Corporation) H:\Windows\system32\diagtrack.dll
2015-05-20 14:18 - 2015-04-27 12:05 - 00635392 _____ (Microsoft Corporation) H:\Windows\system32\tdh.dll
2015-05-20 14:18 - 2015-04-27 12:05 - 00400896 _____ (Microsoft Corporation) H:\Windows\system32\srcore.dll
2015-05-20 14:18 - 2015-04-27 12:05 - 00259584 _____ (Microsoft Corporation) H:\Windows\system32\msv1_0.dll
2015-05-20 14:18 - 2015-04-27 12:05 - 00221184 _____ (Microsoft Corporation) H:\Windows\system32\ncrypt.dll
2015-05-20 14:18 - 2015-04-27 12:05 - 00172032 _____ (Microsoft Corporation) H:\Windows\system32\wdigest.dll
2015-05-20 14:18 - 2015-04-27 12:05 - 00100352 _____ (Microsoft Corporation) H:\Windows\system32\sspicli.dll
2015-05-20 14:18 - 2015-04-27 12:05 - 00092160 _____ (Microsoft Corporation) H:\Windows\system32\sechost.dll
2015-05-20 14:18 - 2015-04-27 12:05 - 00065536 _____ (Microsoft Corporation) H:\Windows\system32\TSpkg.dll
2015-05-20 14:18 - 2015-04-27 12:05 - 00043008 _____ (Microsoft Corporation) H:\Windows\system32\srclient.dll
2015-05-20 14:18 - 2015-04-27 12:05 - 00022016 _____ (Microsoft Corporation) H:\Windows\system32\secur32.dll
2015-05-20 14:18 - 2015-04-27 12:05 - 00015872 _____ (Microsoft Corporation) H:\Windows\system32\sspisrv.dll
2015-05-20 14:18 - 2015-04-27 12:04 - 01061376 _____ (Microsoft Corporation) H:\Windows\system32\lsasrv.dll
2015-05-20 14:18 - 2015-04-27 12:04 - 00641536 _____ (Microsoft Corporation) H:\Windows\system32\advapi32.dll
2015-05-20 14:18 - 2015-04-27 12:04 - 00550912 _____ (Microsoft Corporation) H:\Windows\system32\kerberos.dll
2015-05-20 14:18 - 2015-04-27 12:04 - 00364544 _____ (Microsoft Corporation) H:\Windows\system32\tracerpt.exe
2015-05-20 14:18 - 2015-04-27 12:04 - 00262656 _____ (Microsoft Corporation) H:\Windows\system32\rstrui.exe
2015-05-20 14:18 - 2015-04-27 12:04 - 00082944 _____ (Microsoft Corporation) H:\Windows\system32\logman.exe
2015-05-20 14:18 - 2015-04-27 12:04 - 00069632 _____ (Microsoft Corporation) H:\Windows\system32\smss.exe
2015-05-20 14:18 - 2015-04-27 12:04 - 00040448 _____ (Microsoft Corporation) H:\Windows\system32\typeperf.exe
2015-05-20 14:18 - 2015-04-27 12:04 - 00038912 _____ (Microsoft Corporation) H:\Windows\system32\csrsrv.dll
2015-05-20 14:18 - 2015-04-27 12:04 - 00037888 _____ (Microsoft Corporation) H:\Windows\system32\relog.exe
2015-05-20 14:18 - 2015-04-27 12:04 - 00022528 _____ (Microsoft Corporation) H:\Windows\system32\lsass.exe
2015-05-20 14:18 - 2015-04-27 12:04 - 00017408 _____ (Microsoft Corporation) H:\Windows\system32\credssp.dll
2015-05-20 14:18 - 2015-04-27 12:03 - 00050176 _____ (Microsoft Corporation) H:\Windows\system32\auditpol.exe
2015-05-20 14:18 - 2015-04-27 12:03 - 00017408 _____ (Microsoft Corporation) H:\Windows\system32\diskperf.exe
2015-05-20 14:18 - 2015-04-27 12:01 - 00146432 _____ (Microsoft Corporation) H:\Windows\system32\msaudite.dll
2015-05-20 14:18 - 2015-04-27 12:01 - 00060416 _____ (Microsoft Corporation) H:\Windows\system32\msobjs.dll
2015-05-20 14:18 - 2015-04-27 11:59 - 00686080 _____ (Microsoft Corporation) H:\Windows\system32\adtschema.dll
2015-05-20 14:18 - 2015-04-27 11:59 - 00006656 _____ (Microsoft Corporation) H:\Windows\system32\apisetschema.dll
2015-05-20 14:18 - 2015-04-27 11:00 - 00036864 _____ (Microsoft Corporation) H:\Windows\system32\UtcResources.dll
2015-05-20 14:18 - 2015-01-28 20:02 - 02311168 _____ (Microsoft Corporation) H:\Windows\system32\wpdshext.dll
2015-05-20 14:16 - 2015-04-10 20:07 - 00054656 _____ (Microsoft Corporation) H:\Windows\system32\Drivers\stream.sys
2015-05-20 14:16 - 2015-03-13 20:04 - 01372160 _____ (Microsoft Corporation) H:\Windows\system32\dwmcore.dll
2015-05-20 14:16 - 2015-03-13 20:04 - 00067584 _____ (Microsoft Corporation) H:\Windows\system32\dwmapi.dll
2015-05-20 14:16 - 2015-03-03 21:11 - 00005120 _____ (Microsoft Corporation) H:\Windows\system32\shimeng.dll
2015-05-20 14:16 - 2015-03-03 21:10 - 00295936 _____ (Microsoft Corporation) H:\Windows\system32\apphelp.dll
2015-05-20 14:16 - 2015-03-03 21:10 - 00062464 _____ (Microsoft Corporation) H:\Windows\system32\aelupsvc.dll
2015-05-20 14:16 - 2015-03-03 21:10 - 00020992 _____ (Microsoft Corporation) H:\Windows\system32\sdbinst.exe
2015-05-20 13:17 - 2015-05-20 13:17 - 00243344 _____ () H:\Users\Don\Downloads\Firefox Setup Stub 38.0.1.exe
2015-05-20 13:16 - 2015-05-20 13:16 - 00983736 _____ (Download Assistant) H:\Users\Don\Downloads\firefox_install.exe
2015-05-20 08:42 - 2015-05-20 08:42 - 01489216 _____ (LogMeIn, Inc.) H:\Users\Don\Downloads\Support-LogMeInRescue(1).exe
2015-05-20 08:38 - 2015-05-20 08:38 - 00000145 _____ () H:\Users\Don\Desktop\CenturyLink PC Services.url
2015-05-20 08:36 - 2015-05-20 08:37 - 00000000 ____D () H:\Users\Don\AppData\Roaming\PCHC
2015-05-20 08:30 - 2015-05-20 08:30 - 02459880 _____ () H:\Users\Don\Downloads\PCHCInstallerPackage.exe
2015-05-20 08:10 - 2015-05-21 21:50 - 00000000 ____D () H:\NPE
2015-05-20 08:07 - 2015-05-21 22:00 - 00000000 ____D () H:\Users\Don\AppData\Local\NPE
2015-05-19 18:05 - 2015-05-19 18:05 - 00018432 _____ () H:\Program Files\Uninstall.dat
2015-05-19 18:05 - 2015-05-19 18:05 - 00000000 ____D () H:\Users\Don\AppData\Roaming\SUPERAntiSpyware.com
2015-05-19 18:04 - 2015-05-19 18:04 - 00001744 _____ () H:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2015-05-19 18:04 - 2015-05-19 18:04 - 00000000 ____D () H:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2015-05-19 18:04 - 2015-05-19 18:04 - 00000000 ____D () H:\Program Files\Plugins
2015-05-19 18:01 - 2015-05-19 18:02 - 21972920 _____ (SUPERAntiSpyware) H:\Users\Don\Downloads\SUPERAntiSpyware(1).exe
2015-05-18 20:18 - 2015-05-18 20:19 - 00000188 _____ () H:\Users\Public\Documents\cc_20150518_201853.reg
2015-05-17 09:06 - 2015-05-17 09:06 - 00000000 ____H () H:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2015-05-17 08:22 - 2015-05-25 09:15 - 00000243 _____ () H:\Users\Don\Desktop\BloodPressue.txt
2015-05-17 02:24 - 2015-05-01 06:16 - 00102608 _____ (Microsoft Corporation) H:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-17 02:02 - 2015-05-17 02:02 - 00000604 _____ () H:\Users\Public\Documents\cc_20150517_020238.reg
2015-05-15 11:59 - 2015-05-15 11:59 - 06714136 _____ (SUPERAntiSpyware) H:\Program Files\SUPERAntiSpyware.exe
2015-05-13 03:18 - 2015-05-04 18:12 - 00248832 _____ (Microsoft Corporation) H:\Windows\system32\schannel.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 14374400 _____ (Microsoft Corporation) H:\Windows\system32\mshtml.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 13771776 _____ (Microsoft Corporation) H:\Windows\system32\ieframe.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 02864640 _____ (Microsoft Corporation) H:\Windows\system32\jscript9.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 02055680 _____ (Microsoft Corporation) H:\Windows\system32\iertutil.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 01763328 _____ (Microsoft Corporation) H:\Windows\system32\wininet.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 01181696 _____ (Microsoft Corporation) H:\Windows\system32\urlmon.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 00690176 _____ (Microsoft Corporation) H:\Windows\system32\jscript.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 00524288 _____ (Microsoft Corporation) H:\Windows\system32\vbscript.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 00493056 _____ (Microsoft Corporation) H:\Windows\system32\msfeeds.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 00391168 _____ (Microsoft Corporation) H:\Windows\system32\ieui.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 00357888 _____ (Microsoft Corporation) H:\Windows\system32\dxtmsft.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 00226816 _____ (Microsoft Corporation) H:\Windows\system32\iedkcs32.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 00226816 _____ (Microsoft Corporation) H:\Windows\system32\dxtrans.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 00163840 _____ (Microsoft Corporation) H:\Windows\system32\msrating.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 00109056 _____ (Microsoft Corporation) H:\Windows\system32\iesysprep.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 00080384 _____ (Microsoft Corporation) H:\Windows\system32\mshtmled.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 00061440 _____ (Microsoft Corporation) H:\Windows\system32\iesetup.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 00042496 _____ (Microsoft Corporation) H:\Windows\system32\ie4uinit.exe
2015-05-13 03:18 - 2015-04-21 07:33 - 00039424 _____ (Microsoft Corporation) H:\Windows\system32\jsproxy.dll
2015-05-13 03:18 - 2015-04-21 07:33 - 00033280 _____ (Microsoft Corporation) H:\Windows\system32\iernonce.dll
2015-05-13 03:18 - 2015-04-21 07:32 - 01441280 _____ (Microsoft Corporation) H:\Windows\system32\inetcpl.cpl
2015-05-13 03:18 - 2015-04-19 19:56 - 01250816 _____ (Microsoft Corporation) H:\Windows\system32\DWrite.dll
2015-05-13 03:18 - 2015-04-19 19:56 - 00909312 _____ (Microsoft Corporation) H:\Windows\system32\FntCache.dll
2015-05-13 03:18 - 2015-04-19 19:03 - 02382336 _____ (Microsoft Corporation) H:\Windows\system32\win32k.sys
2015-05-13 03:18 - 2015-04-17 20:06 - 02706432 _____ (Microsoft Corporation) H:\Windows\system32\mshtml.tlb
2015-05-13 03:18 - 2015-04-17 19:56 - 00342016 _____ (Microsoft Corporation) H:\Windows\system32\certcli.dll
2015-05-13 03:18 - 2015-04-17 19:37 - 00361984 _____ (Microsoft Corporation) H:\Windows\system32\html.iec
2015-05-13 03:18 - 2015-04-17 19:12 - 00071680 _____ (Microsoft Corporation) H:\Windows\system32\RegisterIEPKEYs.exe
2015-05-13 03:18 - 2015-04-12 20:19 - 00259072 _____ (Microsoft Corporation) H:\Windows\system32\services.exe
2015-05-13 03:18 - 2015-04-07 20:14 - 00216064 _____ (Microsoft Corporation) H:\Windows\system32\InkEd.dll
2015-05-13 03:18 - 2015-04-07 20:14 - 00019968 _____ (Microsoft Corporation) H:\Windows\system32\jnwmon.dll
2015-05-13 03:18 - 2015-02-18 00:06 - 00123904 _____ (Microsoft Corporation) H:\Windows\system32\poqexec.exe
2015-05-11 09:37 - 2015-05-11 09:37 - 06484352 _____ (Piriform Ltd) H:\Users\Don\Downloads\ccsetup505.exe
2015-05-05 13:17 - 2015-05-05 13:18 - 00000000 ____D () H:\Users\Public\Documents\Will

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-05-25 11:56 - 2015-04-12 12:37 - 00007891 _____ () H:\Windows\BRRBCOM.INI
2015-05-25 11:00 - 2009-07-13 21:34 - 00015936 ____H () H:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-25 11:00 - 2009-07-13 21:34 - 00015936 ____H () H:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-25 10:57 - 2015-03-24 20:58 - 01964556 _____ () H:\Windows\WindowsUpdate.log
2015-05-25 10:52 - 2009-07-13 21:53 - 00000006 ____H () H:\Windows\Tasks\SA.DAT
2015-05-24 21:38 - 2014-04-17 18:12 - 00000000 ____D () H:\Users\Don\AppData\Local\PokerStars.NET
2015-05-23 10:01 - 2014-03-17 07:48 - 00000000 ____D () H:\AdwCleaner
2015-05-22 23:51 - 2014-04-20 01:09 - 00000000 ____D () H:\Users\Don\AppData\Local\CrashDumps
2015-05-21 22:57 - 2009-07-13 21:53 - 00032604 _____ () H:\Windows\Tasks\SCHEDLGU.TXT
2015-05-21 20:04 - 2014-07-07 23:24 - 00119512 _____ (Malwarebytes Corporation) H:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-05-20 15:45 - 2009-07-13 19:37 - 00000000 ____D () H:\Windows\rescache
2015-05-20 14:33 - 2014-04-15 23:05 - 00781790 _____ () H:\Windows\system32\PerfStringBackup.INI
2015-05-20 14:22 - 2009-07-13 19:37 - 00000000 ____D () H:\Windows\system32\AdvancedInstallers
2015-05-20 13:06 - 2014-04-16 16:40 - 00000000 ____D () H:\Users\Don\AppData\Local\LogMeIn Rescue Applet
2015-05-20 08:32 - 2014-04-15 23:06 - 00058496 _____ () H:\Users\Don\AppData\Local\GDIPFONTCACHEV1.DAT
2015-05-20 08:08 - 2014-04-16 17:01 - 00000000 ____D () H:\ProgramData\Norton
2015-05-19 21:28 - 2014-07-07 23:13 - 00000000 ____D () H:\Program Files\Malwarebytes Anti-Malware
2015-05-19 21:28 - 2014-04-16 23:29 - 00001064 _____ () H:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-05-19 19:47 - 2013-01-15 00:34 - 00000000 ____D () H:\Users\Don\Documents\My Items
2015-05-18 20:26 - 2014-08-13 07:24 - 00000000 ____D () H:\Users\Don\AppData\Local\Adobe
2015-05-18 20:25 - 2014-04-16 22:53 - 00778416 _____ (Adobe Systems Incorporated) H:\Windows\system32\FlashPlayerApp.exe
2015-05-18 20:25 - 2014-04-16 22:53 - 00142512 _____ (Adobe Systems Incorporated) H:\Windows\system32\FlashPlayerCPLApp.cpl
2015-05-18 20:17 - 2014-04-09 00:56 - 00000000 ____D () H:\Windows\Panther
2015-05-17 09:02 - 2009-07-13 19:37 - 00000000 ____D () H:\Windows\Microsoft.NET
2015-05-17 08:13 - 2009-07-14 00:50 - 00000000 ____D () H:\Program Files\Windows Journal
2015-05-17 07:58 - 2009-07-13 21:33 - 00269104 _____ () H:\Windows\system32\FNTCACHE.DAT
2015-05-17 02:24 - 2014-04-16 13:58 - 00000000 ____D () H:\Windows\system32\MRT
2015-05-17 02:15 - 2014-04-16 13:58 - 137310008 _____ (Microsoft Corporation) H:\Windows\system32\MRT.exe
2015-05-11 09:05 - 2015-04-01 19:59 - 00000000 ____D () H:\Users\Don\Downloads\rempnp
2015-05-05 14:48 - 2014-04-17 18:12 - 00000000 ____D () H:\Program Files\PokerStars.NET
2015-05-05 08:14 - 2014-12-22 02:23 - 00000582 _____ () H:\Users\Don\Desktop\Mark & Greg.txt

==================== Files in the root of some directories =======

2013-10-10 15:55 - 2013-10-10 15:55 - 0049944 _____ (SUPERAdBlocker.com) H:\Program Files\BootSafe.exe
2004-05-20 13:28 - 2004-05-20 13:28 - 0002048 _____ () H:\Program Files\detect.wav
2014-07-14 11:26 - 2014-07-14 11:26 - 0000192 _____ () H:\Program Files\High Contrast Black.set
2004-05-07 15:31 - 2004-05-07 15:31 - 0348160 _____ (Microsoft Corporation) H:\Program Files\msvcr71.dll
2013-10-10 15:55 - 2013-10-10 15:55 - 0316184 _____ (SUPERAdBlocker.com and SUPERAntiSpyware.com) H:\Program Files\RUNSAS.EXE
2014-07-08 12:30 - 2014-07-08 12:30 - 0000192 _____ () H:\Program Files\SAS Default.set
2014-07-22 16:47 - 2014-07-22 16:47 - 0142648 _____ (SUPERAntiSpyware.com) H:\Program Files\SASCore.exe
2014-06-06 11:40 - 2014-06-06 11:40 - 0150808 _____ (SUPERAntiSpyware.com) H:\Program Files\SASCTXMN.DLL
2011-07-22 09:27 - 2011-07-22 09:27 - 0012880 _____ (SUPERAdBlocker.com and SUPERAntiSpyware.com) H:\Program Files\sasdifsv.sys
2011-07-12 14:55 - 2011-07-12 14:55 - 0067664 _____ (SUPERAdBlocker.com and SUPERAntiSpyware.com) H:\Program Files\SASKUTIL.SYS
2012-10-26 10:10 - 2012-10-26 10:10 - 0555008 _____ () H:\Program Files\SASREPAIRS.STG
2013-05-07 15:36 - 2013-05-07 15:36 - 0115440 _____ (SuperAdBlocker.com) H:\Program Files\SASSEH.DLL
2013-11-07 13:08 - 2013-11-07 13:08 - 0049944 _____ (SUPERAdBlocker.com) H:\Program Files\SASTask.exe
2013-11-07 11:21 - 2013-11-07 11:21 - 0041272 _____ (Support.com) H:\Program Files\sas_enum_cookies.exe
2010-12-30 14:48 - 2010-12-30 14:48 - 0004096 _____ () H:\Program Files\SAS_Preconfig.db3
2014-07-29 13:45 - 2014-07-29 13:45 - 0395032 _____ (SUPERAntiSpyware.com) H:\Program Files\SSUpdate.exe
2015-05-15 11:59 - 2015-05-15 11:59 - 6714136 _____ (SUPERAntiSpyware) H:\Program Files\SUPERAntiSpyware.exe
2013-12-04 18:15 - 2013-12-04 18:15 - 0059160 _____ (Support.com) H:\Program Files\SUPERDelete.exe
2015-05-19 18:05 - 2015-05-19 18:05 - 0018432 _____ () H:\Program Files\Uninstall.dat

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

H:\Windows\explorer.exe => File is digitally signed
H:\Windows\system32\winlogon.exe => File is digitally signed
H:\Windows\system32\wininit.exe => File is digitally signed
H:\Windows\system32\svchost.exe => File is digitally signed
H:\Windows\system32\services.exe => File is digitally signed
H:\Windows\system32\User32.dll => File is digitally signed
H:\Windows\system32\userinit.exe => File is digitally signed
H:\Windows\system32\rpcss.dll => File is digitally signed
H:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2015-05-24 11:09

==================== End of log ============================

 

ADDITIONS:

 

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 25-05-2015
Ran by Don at 2015-05-25 14:35:55
Running from H:\Users\Don\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\22C1AUCC
Boot Mode: Normal
==========================================================

==================== Accounts: =============================

Administrator (S-1-5-21-3964834215-2275053063-3108885826-500 - Administrator - Disabled)
Don (S-1-5-21-3964834215-2275053063-3108885826-1000 - Administrator - Enabled) => H:\Users\Don
Guest (S-1-5-21-3964834215-2275053063-3108885826-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3964834215-2275053063-3108885826-1003 - Limited - Enabled)
Merry (S-1-5-21-3964834215-2275053063-3108885826-1001 - Administrator - Enabled) => H:\Users\Merry

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Norton AntiVirus Online (Disabled - Up to date) {53C7D717-52E2-B95E-FA61-6F32ECC805DB}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Norton AntiVirus Online (Enabled - Up to date) {E8A636F3-74D8-B6D0-C0D1-5440974F4F66}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

1 Media Player version 2.2.0 (HKLM\...\{6C566E3B-CBFB-4A3C-A8B6-88EA54DE7CA8}_is1) (Version: 2.2.0 - OneFloorApp Ltd.)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 15.0.0.249 - Adobe Systems Incorporated)
Adobe Flash Player 15 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 15.0.0.189 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 17.0.0.188 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Brother MFL-Pro Suite MFC-J425W (HKLM\...\{A1B36B88-AF90-43A3-8906-6DBEE89B4FBD}) (Version: 1.0.19.0 - Brother Industries, Ltd.)
Brother MFL-Pro Suite MFC-J650DW (HKLM\...\{7B4C83B6-17C1-4BFD-B86D-4D7AD4498CBB}) (Version: 1.0.4.0 - Brother Industries, Ltd.)
Bytescout XLS Viewer 1.30a (FREEWARE) (HKLM\...\Bytescout XLS Viewer_is1) (Version:  - Bytescout Software)
CCleaner (HKLM\...\CCleaner) (Version: 4.12 - Piriform)
Data Fax SoftModem with SmartCP (HKLM\...\CNXT_MODEM_PCI_VEN_14F1&DEV_2702&SUBSYS_8D88A259) (Version:  - )
Defraggler (HKLM\...\Defraggler) (Version: 2.19 - Piriform)
f.lux (HKU\S-1-5-21-3964834215-2275053063-3108885826-1000\...\Flux) (Version:  - )
Free Opener (HKLM\...\{A1F2C608-32D6-467D-B035-BBEF509042BA}_is1) (Version: 1.0 - EZ Freeware)
Google Chrome (HKLM\...\Google Chrome) (Version: 43.0.2357.65 - Google Inc.)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.27.5 - Google Inc.) Hidden
Java 7 Update 71 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.710 - Oracle)
K-Lite Codec Pack 7.0.0 (Standard) (HKLM\...\KLiteCodecPack_is1) (Version: 7.0.0 - )
Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Media Player Classic - Home Cinema v1.5.2.3456 (HKLM\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.5.2.3456 - MPC-HC Team)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office Excel Viewer (HKLM\...\{95120000-003F-0409-0000-0000000FF1CE}) (Version: 12.0.6219.1000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
mPlayer version 1.0 (HKLM\...\{B482E758-D602-434C-80B9-DDEFEEAE4BCA}_is1) (Version: 1.0 - Download Freely, LLC)
MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Norton AntiVirus (HKLM\...\NAV) (Version: 21.7.0.11 - Symantec Corporation)
Nuance PaperPort 12 (HKLM\...\{869FCC6C-5669-4B0B-827E-2BBAACD88A87}) (Version: 12.1.0006 - Nuance Communications, Inc.)
Nuance PDF Viewer Plus (HKLM\...\{28656860-4728-433C-8AD4-D1A930437BC8}) (Version: 5.30.3290 - Nuance Communications, Inc)
PaperPort Image Printer (HKLM\...\{6EF2FDAB-7FBF-4AB9-92CD-594BDDB6A56B}) (Version: 14.00.0000 - Nuance Communications, Inc.)
PDF Split And Merge Basic (HKLM\...\{9A40D2F8-9458-458B-95E3-B57797C574E1}) (Version: 2.2.4 - Andrea Vacondio)
PokerStars.net (HKLM\...\PokerStars.net) (Version:  - PokerStars.net)
PrintDeskTop (HKLM\...\PrintDeskTop_is1) (Version:  - PrintDeskTop)
Pro PC Cleaner (HKLM\...\{BED67F4B-AD6C-4DE8-98F2-EFB5BE5AFE5A}) (Version: 2.6.0 - Pro PC Cleaner)
Realtek AC'97 Audio (HKLM\...\{FB08F381-6533-4108-B7DD-039E11FBC27E}) (Version:  - )
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7083 - Realtek Semiconductor Corp.)
Scansoft PDF Professional (Version:  - ) Hidden
SiS 900 PCI Fast Ethernet Adapter Driver (HKLM\...\SiSLan) (Version:  - )
Windows Driver Package - Silicon Integrated Systems (uagp35) System  (04/14/2010 7.2.0.1232) (HKLM\...\421AF4FC7DA3FA928071877E7EE33B3D2690C950) (Version: 04/14/2010 7.2.0.1232 - Silicon Integrated Systems)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3964834215-2275053063-3108885826-1000_Classes\CLSID\{6d05bf60-3eaf-4a97-87c5-10cce505435b}\localserver32 -> H:\Users\Don\AppData\Local\Temp\{9c0ba3c1-2b67-45eb-bf69-bed9658d28d2}\IDriver.NonElevated.exe No Fi (the data entry has 2 more characters).

==================== Restore Points =========================

17-05-2015 02:04:11 Windows Update
17-05-2015 08:12:28 Windows Update
20-05-2015 13:18:31 LavasoftWeCompanion
20-05-2015 14:19:16 Windows Update
21-05-2015 22:50:06 LavasoftWeCompanion
23-05-2015 11:33:27 Restore Point Created by FRST

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 19:04 - 2009-06-10 14:39 - 00000824 ____N H:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {01E5A617-ECA9-4C1E-8534-6B1D95E7102F} - System32\Tasks\{14D13FA0-A47F-48E4-8D6D-0135177D34BC} => Firefox.exe http://ui.skype.com/...=lightinstaller
Task: {214EF93E-A10E-49AE-88AC-FF3B3F6F1EFE} - System32\Tasks\{FC292CCC-C4CD-4146-9A90-CBF662E1D0EC} => pcalua.exe -a H:\Users\Don\Downloads\PCHCInstallerPackage.exe -d H:\Users\Don\Downloads
Task: {2F53881C-2786-4007-B7B6-0B597CBC2EBC} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => H:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation)
Task: {3B6FABC5-6772-4F67-A376-D52626CBBF8D} - \ProPCCleaner_Popup No Task File <==== ATTENTION
Task: {4F7D2622-07EB-423B-99D4-DB635EB35C66} - System32\Tasks\Norton AntiVirus\Norton Error Processor => H:\Program Files\Norton AntiVirus\Engine\21.7.0.11\SymErr.exe [2014-01-30] (Symantec Corporation)
Task: {6072D411-F70B-47C5-83D2-E62FD10932A4} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => H:\Windows\system32\GWX\GWX.exe [2015-03-24] (Microsoft Corporation)
Task: {61D447A9-A53F-4C0F-9D33-B6CE10DB7BB7} - \Driver Booster SkipUAC (Don) No Task File <==== ATTENTION
Task: {6DA09067-6D78-4D57-8911-6ADC1F4D9D6E} - System32\Tasks\{0F073963-AFAF-4FD1-9C64-0DE30E40F61A} => Chrome.exe
Task: {6DA65DAE-52BF-4278-B18A-E3A9FE9B396F} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => H:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation)
Task: {755CE52F-3ED0-4742-B174-C253B1188975} - System32\Tasks\{FB2A723C-03E7-47B5-BB1A-799D24D5AC6C} => H:\Program Files\DriverRestore\DriverRestore.exe
Task: {8D983CB6-34A8-4F58-B0DA-9C51CC0DF66C} - \Driver Booster Update No Task File <==== ATTENTION
Task: {986BE30A-77DF-4BCA-BC50-301F2F41304D} - System32\Tasks\Norton WSC Integration => H:\Program Files\Norton AntiVirus\Engine\21.7.0.11\WSCStub.exe [2015-03-06] (Symantec Corporation)
Task: {C6574CC7-F89A-4176-8635-86625ED9C6F8} - System32\Tasks\{6A8A0EF1-795E-47AF-BBA6-54CCAAD12224} => H:\Program Files\DriverRestore\DriverRestore.exe
Task: {CA345D8F-7B89-428C-ABBE-128698082F1F} - \ProPCCleaner_Start No Task File <==== ATTENTION
Task: {CE76E854-63AD-4378-A785-A8A7A1DCD283} - System32\Tasks\{4089B4ED-BA7E-4A36-9BA4-21CDA5E19CEE} => Firefox.exe http://ui.skype.com/...#38;page=tsMain
Task: {D9647C7F-CBD0-4217-A19A-B8C425B49887} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => H:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation)
Task: {EC91BCFD-FE61-46DE-A8A6-1314126E3B82} - System32\Tasks\CCleanerSkipUAC => H:\Program Files\CCleaner\CCleaner.exe [2014-03-18] (Piriform Ltd)
Task: {F0AA9CB3-B8FA-4B98-B3CA-3B2BE3CB43F7} - System32\Tasks\Norton AntiVirus\Norton Error Analyzer => H:\Program Files\Norton AntiVirus\Engine\21.7.0.11\SymErr.exe [2014-01-30] (Symantec Corporation)
Task: {FD6BCCA0-CFB5-4281-A660-CF71A928ED6A} - \Driver Booster Scan No Task File <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

==================== Loaded Modules (Whitelisted) ==============

2015-04-01 22:06 - 2009-02-27 16:38 - 00139264 ____R () H:\Program Files\Brother\BrUtilities\BrLogAPI.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3964834215-2275053063-3108885826-1000\Control Panel\Desktop\\Wallpaper -> H:\Users\Don\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.0.1 - 205.171.2.25

==================== MSCONFIG/TASK MANAGER Error getting ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: !SASCORE => 2
MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: BrYNSvc => 3
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: MBAMService => 2
MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: PDFProFiltSrvPP => 2
MSCONFIG\startupreg: 083B39FB7B958A0F78E959FDA72E539905C51D18._service_run => "H:\Program Files\Google\Chrome\Application\chrome.exe" --type=service
MSCONFIG\startupreg: Adobe ARM => "H:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: AlcxMonitor => ALCXMNTR.EXE
MSCONFIG\startupreg: BrHelp => H:\Program Files\Brother\Brother Help\BrotherHelp.exe /AUTORUN
MSCONFIG\startupreg: BrStsMon00 => H:\Program Files\Browny02\Brother\BrStMonW.exe /AUTORUN
MSCONFIG\startupreg: ControlCenter4 => H:\Program Files\ControlCenter4\BrCcBoot.exe /autorun
MSCONFIG\startupreg: f.lux => "H:\Users\Don\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow
MSCONFIG\startupreg: FlashPlayerUpdate => H:\Windows\system32\Macromed\Flash\FlashUtil32_15_0_0_223_Plugin.exe -update plugin
MSCONFIG\startupreg: IndexSearch => "H:\Program Files\Nuance\PaperPort\IndexSearch.exe"
MSCONFIG\startupreg: iSkysoft Helper Compact.exe => H:\Program Files\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe
MSCONFIG\startupreg: ISUSPM => H:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler
MSCONFIG\startupreg: Malwarebytes Anti-Malware => H:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
MSCONFIG\startupreg: PaperPort PTD => "H:\Program Files\Nuance\PaperPort\pptd40nt.exe"
MSCONFIG\startupreg: PDF5 Registry Controller => H:\Program Files\Nuance\PDF Viewer Plus\RegistryController.exe
MSCONFIG\startupreg: PDFHook => H:\Program Files\Nuance\PDF Viewer Plus\pdfpro5hook.exe
MSCONFIG\startupreg: PPort12reminder => "H:\Program Files\Nuance\PaperPort\Ereg\Ereg.exe" -r "H:\ProgramData\ScanSoft\PaperPort\12\Config\Ereg\Ereg.ini"
MSCONFIG\startupreg: SunJavaUpdateSched => "H:\Program Files\Common Files\Java\Java Update\jusched.exe"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [TCP Query User{3339DE54-BB5C-415B-97FF-E628B3C80F85}H:\program files\google\chrome\application\chrome.exe] => (Allow) H:\program files\google\chrome\application\chrome.exe
FirewallRules: [UDP Query User{7B067917-727A-464A-BCE3-2045A4BEA3C8}H:\program files\google\chrome\application\chrome.exe] => (Allow) H:\program files\google\chrome\application\chrome.exe

==================== Faulty Device Manager Devices =============

Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

==================== Event log errors: =========================

Application errors:
==================
Error: (05/23/2015 01:06:29 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STI BrtSTI: [2015/05/23 13:06:29.182]: [00001672]: CUsbScnDev: DeviceIoControl() failed. ErrorCode = 2

Error: (05/23/2015 01:06:29 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STI BrtSTI: [2015/05/23 13:06:29.073]: [00001672]: CUsbScnDev: DeviceIoControl() failed. ErrorCode = 2

Error: (05/23/2015 01:06:28 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STI BrtSTI: [2015/05/23 13:06:28.963]: [00001672]: CUsbScnDev: DeviceIoControl() failed. ErrorCode = 2

Error: (05/23/2015 01:06:28 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STI BrtSTI: [2015/05/23 13:06:28.854]: [00001672]: CUsbScnDev: DeviceIoControl() failed. ErrorCode = 2

Error: (05/23/2015 11:33:27 AM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface.  hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.

Operation:
   Gathering Writer Data

Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {ea65772a-3a95-4923-b4a3-bfed75cb57ac}

Error: (05/23/2015 07:59:21 AM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: The index cannot be initialized.

Details:
 The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (05/23/2015 07:59:21 AM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: The application cannot be initialized.

Context: Windows Application

Details:
 The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (05/23/2015 07:59:21 AM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: The gatherer object cannot be initialized.

Context: Windows Application, SystemIndex Catalog

Details:
 The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (05/23/2015 07:59:21 AM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: The plug-in in <Search.TripoliIndexer> cannot be initialized.

Context: Windows Application, SystemIndex Catalog

Details:
 Element not found.  (HRESULT : 0x80070490) (0x80070490)

Error: (05/23/2015 07:59:19 AM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: The plug-in in <Search.JetPropStore> cannot be initialized.

Context: Windows Application, SystemIndex Catalog

Details:
 The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)

System errors:
=============
Error: (05/25/2015 10:53:59 AM) (Source: WMPNetworkSvc) (EventID: 14349) (User: )
Description: 0x800700b7

Error: (05/25/2015 10:53:59 AM) (Source: WMPNetworkSvc) (EventID: 14353) (User: )
Description: 00x800700b7http://+:10243/WMPNSSv4/2539395219/

Error: (05/25/2015 10:53:59 AM) (Source: WMPNetworkSvc) (EventID: 14349) (User: )
Description: 0x800700b7

Error: (05/25/2015 10:53:59 AM) (Source: WMPNetworkSvc) (EventID: 14353) (User: )
Description: 00x800700b7http://+:10243/WMPNSSv4/2539395219/

Error: (05/25/2015 10:51:54 AM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT AUTHORITY)
Description: Some processor performance power management features have been disabled due to a known firmware problem. Check with the computer manufacturer for updated firmware.

Error: (05/25/2015 08:20:16 AM) (Source: WMPNetworkSvc) (EventID: 14349) (User: )
Description: 0x800700b7

Error: (05/25/2015 08:20:16 AM) (Source: WMPNetworkSvc) (EventID: 14353) (User: )
Description: 00x800700b7http://+:10243/WMPNSSv4/2539395219/

Error: (05/25/2015 08:20:16 AM) (Source: WMPNetworkSvc) (EventID: 14349) (User: )
Description: 0x800700b7

Error: (05/25/2015 08:20:16 AM) (Source: WMPNetworkSvc) (EventID: 14353) (User: )
Description: 00x800700b7http://+:10243/WMPNSSv4/2539395219/

Error: (05/25/2015 08:17:30 AM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT AUTHORITY)
Description: Some processor performance power management features have been disabled due to a known firmware problem. Check with the computer manufacturer for updated firmware.

Microsoft Office:
=========================
Error: (05/23/2015 01:06:29 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STIBrtSTI: [2015/05/23 13:06:29.182]: [00001672]: CUsbScnDev: DeviceIoControl() failed. ErrorCode = 2

Error: (05/23/2015 01:06:29 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STIBrtSTI: [2015/05/23 13:06:29.073]: [00001672]: CUsbScnDev: DeviceIoControl() failed. ErrorCode = 2

Error: (05/23/2015 01:06:28 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STIBrtSTI: [2015/05/23 13:06:28.963]: [00001672]: CUsbScnDev: DeviceIoControl() failed. ErrorCode = 2

Error: (05/23/2015 01:06:28 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STIBrtSTI: [2015/05/23 13:06:28.854]: [00001672]: CUsbScnDev: DeviceIoControl() failed. ErrorCode = 2

Error: (05/23/2015 11:33:27 AM) (Source: VSS) (EventID: 8194) (User: )
Description: 0x80070005, Access is denied.

Operation:
   Gathering Writer Data

Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {ea65772a-3a95-4923-b4a3-bfed75cb57ac}

Error: (05/23/2015 07:59:21 AM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description:
Details:
 The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (05/23/2015 07:59:21 AM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Context: Windows Application

Details:
 The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (05/23/2015 07:59:21 AM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: Context: Windows Application, SystemIndex Catalog

Details:
 The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (05/23/2015 07:59:21 AM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Context: Windows Application, SystemIndex Catalog

Details:
 Element not found.  (HRESULT : 0x80070490) (0x80070490)
Search.TripoliIndexer

Error: (05/23/2015 07:59:19 AM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Context: Windows Application, SystemIndex Catalog

Details:
 The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)
Search.JetPropStore

==================== Memory info ===========================

Processor: AMD Sempron™ Processor 3100+
Percentage of memory in use: 44%
Total physical RAM: 1919.55 MB
Available physical RAM: 1060.02 MB
Total Pagefile: 3839.11 MB
Available Pagefile: 2993.66 MB
Total Virtual: 2047.88 MB
Available Virtual: 1909.89 MB

==================== Drives ================================

Drive h: () (Fixed) (Total:127.99 GB) (Free:71.61 GB) NTFS ==>[Drive with boot components (obtained from BCD)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 149.1 GB) (Disk ID: C6E09F94)
Partition 1: (Active) - (Size=128 GB) - (Type=07 NTFS)

==================== End of log ============================


Edited by Don Stewart, 25 May 2015 - 03:49 PM.

  • 0

#27
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Here we go this will take out any miscreant hiding in Firefox folders

Once this has run then re-install Firefox and let me know how that goes

CAUTION : This fix is only valid for this specific machine, using it on another may break your computer

Open notepad and copy/paste the text in the quotebox below into it:
 

CreateRestorePoint:
H:\Program Files\Mozilla Firefox
H:\Users\Don\AppData\Roaming\Mozilla
EmptyTemp:
CMD: bitsadmin /reset /allusers


Save this as fixlist.txt, in the same location as FRST.exe
FRSTfix.JPG
Run FRST and press Fix
On completion a log will be generated please post that
  • 0

#28
Don Stewart

Don Stewart

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 239 posts
Fix result of Farbar Recovery Scan Tool (x86) Version: 25-05-2015
Ran by Don at 2015-05-26 08:42:55 Run:3
Running from H:\Users\Don\Downloads
Loaded Profiles: Don (Available Profiles: Don & Merry)
Boot Mode: Normal
 
==============================================
 
fixlist content:
*****************
CreateRestorePoint:
H:\Program Files\Mozilla Firefox
H:\Users\Don\AppData\Roaming\Mozilla
EmptyTemp:
CMD: bitsadmin /reset /allusers
*****************
 
Restore point was successfully created.
"H:\Program Files\Mozilla Firefox" => File/Folder not found.
"H:\Users\Don\AppData\Roaming\Mozilla" => File/Folder not found.
 
=========  bitsadmin /reset /allusers =========
 
 
BITSADMIN version 3.0 [ 7.5.7601 ]
BITS administration utility.
© Copyright 2000-2006 Microsoft Corp.
 
BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.
 
0 out of 0 jobs canceled.
 
========= End of CMD: =========
 
EmptyTemp: => Removed 11.2 MB temporary data.
 
 
The system needed a reboot. 
 
==== End of Fixlog 08:44:51 ====

  • 0

#29
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
OK could you now install FF one more time and see if it functions correctly now
  • 0

#30
Don Stewart

Don Stewart

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 239 posts

Where is the best place to download Firefox


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP