1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Resolved Windows won't load-stuck on WELCOME

Discussion in 'Windows 7' started by chinaclipper, 2013/06/08.

  1. 2013/06/08
    chinaclipper

    chinaclipper Well-Known Member Thread Starter

    Joined:
    2010/01/20
    Messages:
    96
    Likes Received:
    0
    I JUST finished my home PC, now my work laptop is malfunctioning! When I boot up, it sticks in the Welcome phase, after I enter my password. I am in safe mode now.....Speccy refused to run!!

    Dell Inc. Latitude E6520 01
    System

    OS:Windows 7 Enterprise (x64) Service Pack 1 (build 7601)

    Processor:2.50 gigahertz Intel Core i5-2520M
    32 kilobyte primary memory cache
    256 kilobyte secondary memory cache
    3072 kilobyte tertiary memory cache
    64-bit ready
    Multi-core (2 total)
    Hyper-threaded (4 total)

    main circuit board:Board: Dell Inc. 0NVF5K A01
    Serial Number: /31M14R1/CN1296117L052A/
    Bus Clock: 100 megahertz
    BIOS: Dell Inc. A05 05/24/201
     
    Last edited: 2013/06/08
  2. 2013/06/08
    chinaclipper

    chinaclipper Well-Known Member Thread Starter

    Joined:
    2010/01/20
    Messages:
    96
    Likes Received:
    0
    more info

    249.95 Gigabytes Usable Hard Drive Capacity
    176.94 Gigabytes Hard Drive Free Space

    PLDS DVD+-RW DU-8A3S [Optical drive]

    WDC WD2500BEKT-75PVMT0 [Hard drive] (250.06 GB) -- drive 0, s/n WD-WXE1A6139033, rev 01.01A01, SMART Status: Healthy

    3978 Megabytes Usable Installed Memory

    Slot 'ChannelA-DIMM0' has 2048 MB (serial number 847A9A24)
    Slot 'ChannelB-DIMM0' has 2048 MB (serial number 847A9A28)
    Local Drive Volumes


    c: (NTFS on drive 0) 249.95 GB 176.94 GB free
     

  3. to hide this advert.

  4. 2013/06/08
    Evan Omo

    Evan Omo Computer Support Technician Staff

    Joined:
    2006/09/10
    Messages:
    7,919
    Likes Received:
    511
  5. 2013/06/08
    chinaclipper

    chinaclipper Well-Known Member Thread Starter

    Joined:
    2010/01/20
    Messages:
    96
    Likes Received:
    0
    No joy!

    I followed the instructions for a clean boot and no joy.
    No change-stays on Welcome......
    Argh! I hate this!
     
  6. 2013/06/08
    Evan Omo

    Evan Omo Computer Support Technician Staff

    Joined:
    2006/09/10
    Messages:
    7,919
    Likes Received:
    511
    Did this problem just start occurring recently? If so, from Safe mode you could try running System Restore and restoring your computer to an earlier point before this problem started happening.
     
  7. 2013/06/08
    chinaclipper

    chinaclipper Well-Known Member Thread Starter

    Joined:
    2010/01/20
    Messages:
    96
    Likes Received:
    0
    Yeah I thought about that too. Apparently system restore is turned off :(.
    It started yesterday. The computer guy at work recently upgraded all our Microsoft word etc stuff by remote.....
     
  8. 2013/06/08
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Please download Farbar Recovery Scan Tool and save it to your desktop.

    Note: You need to run the version compatibale with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
    • Double-click to run it. When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
    • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.
     
  9. 2013/06/09
    chinaclipper

    chinaclipper Well-Known Member Thread Starter

    Joined:
    2010/01/20
    Messages:
    96
    Likes Received:
    0
    Additional scan result of Farbar Recovery Scan Tool (x64) Version: 08-06-2013
    Ran by tdufresne1 at 2013-06-09 08:29:38 Run:
    Running from C:\Users\tdufresne1\Desktop
    Boot Mode: Safe Mode (with Networking)
    ==========================================================


    ==================== Installed Programs =======================

    64 Bit HP CIO Components Installer (Version: 8.2.1)
    AccelerometerP11 (Version: 2.00.10.33)
    Adobe Flash Player 11 ActiveX (Version: 11.7.700.202)
    Adobe Flash Player 11 Plugin (Version: 11.7.700.202)
    Adobe Reader XI (11.0.03) (Version: 11.0.03)
    Apple Application Support (Version: 2.0.1)
    Belarc Advisor 8.3 (Version: 8.3.2.0)
    Canon MX880 series MP Drivers
    CCleaner (Version: 4.02)
    Cisco AnyConnect Diagnostics and Reporting Tool (Version: 3.0.5075)
    Cisco AnyConnect Secure Mobility Client (Version: 3.0.5075)
    Cisco AnyConnect Secure Mobility Client (Version: 3.0.5075)
    Cisco AnyConnect Start Before Login Module (Version: 3.0.5075)
    Definition Update for Microsoft Office 2013 (KB2760587) 32-Bit Edition
    Dell ControlVault Host Components Installer 64 bit (Version: 2.1.2.187)
    Dell KACE Agent (Version: 5.3.47657)
    Dell KACE Agent (Version: 5.4.10622)
    EPSON WorkForce 645 Series Printer Uninstall
    Geeksnerds Photo Recovery 3.0.0 (Version: 3.0.0)
    Google Chrome (Version: 27.0.1453.110)
    Google Earth (Version: 7.0.3.8542)
    Google Toolbar for Internet Explorer (Version: 1.0.0)
    Google Toolbar for Internet Explorer (Version: 7.4.3607.2246)
    Google Update Helper (Version: 1.3.21.145)
    HP LJ300-400 color M351-M451
    HP Product FWUpdater (Version: 4.0.0.6579)
    HP Unified IO (Version: 1.0.1.94)
    HP Update (Version: 5.005.000.002)
    hpbDSService (Version: 001.001.05133)
    hpbM351M451DSService (Version: 001.001.05164)
    HPLaserJet300-400ColorM351-M451Series_HelpLearnCenter_SI (Version: 1.02.0000)
    HPLJDXPHelper (Version: 020.021.004)
    HPLJUTCore (Version: 1.02.0014)
    HPLJUTM351-M451 (Version: 1.02.0013)
    hppLaserJetService (Version: 009.022.00806)
    hppM351_M451LaserJetService (Version: 005.020.00094)
    hppToolboxProxyM351 (Version: 020.021.004)
    hpStatusAlerts (Version: 020.025.1119)
    hpStatusAlertsM351_M451 (Version: 020.023.01805)
    Injury Management System (Version: 1.88.500)
    InstanceFinder (Version: 020.021.004)
    Intel PROSet Wireless
    Intel(R) Control Center (Version: 1.2.1.1007)
    Intel(R) Management Engine Components (Version: 7.0.0.1144)
    Intel(R) Network Connections Drivers (Version: 15.4)
    Intel(R) PROSet/Wireless WiFi Software (Version: 14.00.20110)
    Java 2 Runtime Environment, SE v1.4.2_19 (Version: 1.4.2_19)
    Java 7 Update 11 (Version: 7.0.110)
    Java 7 Update 15 (64-bit) (Version: 7.0.150)
    Java Auto Updater (Version: 2.1.9.0)
    Java(TM) 6 Update 26 (64-bit) (Version: 6.0.260)
    Java(TM) 6 Update 31 (Version: 6.0.310)
    LJDXPHelperUI (Version: 020.021.004)
    Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
    Microsoft Access MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft Access Setup Metadata MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft DCF MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft Excel MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft Groove MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft InfoPath MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft Lync MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft Office 64-bit Components 2013 (Version: 15.0.4420.1017)
    Microsoft Office OSM MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft Office OSM UX MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft Office Professional Plus 2013 (Version: 15.0.4420.1017)
    Microsoft Office Proofing (English) 2013 (Version: 15.0.4420.1017)
    Microsoft Office Proofing Tools 2013 - English (Version: 15.0.4420.1017)
    Microsoft Office Proofing Tools 2013 - Español (Version: 15.0.4420.1017)
    Microsoft Office Shared 64-bit MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft Office Shared MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft Office Shared Setup Metadata MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft OneNote MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft Outlook MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft PowerPoint MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft Publisher MUI (English) 2013 (Version: 15.0.4420.1017)
    Microsoft Silverlight (Version: 5.1.20125.0)
    Microsoft SQL Server Native Client (Version: 9.00.3042.00)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
    Microsoft Word MUI (English) 2013 (Version: 15.0.4420.1017)
    Mozilla Firefox 21.0 (x86 en-US) (Version: 21.0)
    Mozilla Maintenance Service (Version: 21.0)
    mTelnet 1.0b12-20110804
    O2Micro Flash Memory Card Windows Driver (Version: 3.0.07.23)
    Outils de vérification linguistique 2013 de Microsoft Office*- Français (Version: 15.0.4420.1017)
    Picasa 3 (Version: 3.9)
    QuickTime (Version: 7.74.80.86)
    Renesas Electronics USB 3.0 Host Controller Driver (Version: 2.0.30.0)
    Symantec Endpoint Protection (Version: 12.1.2100.2093)
    ToolboxProxy (Version: 020.023.005)
    Unity Web Player (Version: )
    Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
    Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
    Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
    Update for Microsoft Access 2013 (KB2760350) 32-Bit Edition
    Update for Microsoft Excel 2013 (KB2760339) 32-Bit Edition
    Update for Microsoft Lync 2013 (KB2768004) 32-Bit Edition
    Update for Microsoft Office 2013 (KB2726954) 32-Bit Edition
    Update for Microsoft Office 2013 (KB2726961) 32-Bit Edition
    Update for Microsoft Office 2013 (KB2726996) 32-Bit Edition
    Update for Microsoft Office 2013 (KB2737954) 32-Bit Edition
    Update for Microsoft Office 2013 (KB2752025) 32-Bit Edition
    Update for Microsoft Office 2013 (KB2752094) 32-Bit Edition
    Update for Microsoft Office 2013 (KB2752101) 32-Bit Edition
    Update for Microsoft Office 2013 (KB2760224) 32-Bit Edition
    Update for Microsoft Office 2013 (KB2760343) 32-Bit Edition
    Update for Microsoft Office 2013 (KB2767845) 32-Bit Edition
    Update for Microsoft Office 2013 (KB2767860) 32-Bit Edition
    Update for Microsoft Office 2013 (KB2767861) 32-Bit Edition
    Update for Microsoft Office 2013 (KB2767864) 32-Bit Edition
    Update for Microsoft Office 2013 (KB2768016) 32-Bit Edition
    Update for Microsoft Office 2013 (KB2768333) 32-Bit Edition
    Update for Microsoft Office 2013 (KB2810010) 32-Bit Edition
    Update for Microsoft OneNote 2013 (KB2760334) 32-Bit Edition
    Update for Microsoft Outlook 2013 (KB2810015) 32-Bit Edition
    Update for Microsoft PowerPoint 2013 (KB2726947) 32-Bit Edition
    Update for Microsoft PowerPoint 2013 (KB2727013) 32-Bit Edition
    Update for Microsoft SkyDrive Pro (KB2810019) 32-Bit Edition
    Update for Microsoft Visio 2013 (KB2810008) 32-Bit Edition
    Update for Microsoft Visio Viewer 2013 (KB2768338) 32-Bit Edition
    Update for Microsoft Word 2013 (KB2768007) 32-Bit Edition
    Update for Microsoft Word 2013 (KB2768337) 32-Bit Edition
    WinRAR 4.20 (64-bit) (Version: 4.20.0)

    ==================== Restore Points =========================


    ==================== Faulty Device Manager Devices =============

    Name: Security Processor Loader Driver
    Description: Security Processor Loader Driver
    Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
    Manufacturer:
    Service: spldr
    Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
    Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
    Devices stay in this state if they have been prepared for removal.
    After you remove the device, this error disappears.Remove the device, and this error should be resolved.

    Name: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64
    Description: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64
    Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
    Manufacturer: Cisco Systems
    Service: vpnva
    Problem: : This device is disabled. (Code 22)
    Resolution: In Device Manager, click "Action ", and then click "Enable Device ". This starts the Enable Device wizard. Follow the instructions.


    ==================== Event log errors: =========================

    Application errors:
    ==================
    Error: (06/08/2013 07:55:21 PM) (Source: WinMgmt) (User: )
    Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

    Error: (06/08/2013 07:54:45 PM) (Source: ESENT) (User: )
    Description: DllHost (1308) WebCacheLocal: Error -1811 occurred while opening logfile C:\Users\tdufresne1\AppData\Local\Microsoft\Windows\WebCache\V0100008.log.

    Error: (06/08/2013 07:51:51 PM) (Source: Windows Search Service) (User: )
    Description: The Windows Search Service is being stopped because there is a problem with the indexer: The catalog is corrupt.


    Details:
    The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)

    Error: (06/08/2013 07:51:51 PM) (Source: Windows Search Service) (User: )
    Description: The index cannot be initialized.


    Details:
    The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)

    Error: (06/08/2013 07:51:51 PM) (Source: Windows Search Service) (User: )
    Description: The application cannot be initialized.

    Context: Windows Application


    Details:
    The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)

    Error: (06/08/2013 07:51:51 PM) (Source: Windows Search Service) (User: )
    Description: The gatherer object cannot be initialized.

    Context: Windows Application, SystemIndex Catalog


    Details:
    The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)

    Error: (06/08/2013 07:51:51 PM) (Source: Windows Search Service) (User: )
    Description: The plug-in in <Search.TripoliIndexer> cannot be initialized.

    Context: Windows Application, SystemIndex Catalog


    Details:
    Element not found. (HRESULT : 0x80070490) (0x80070490)

    Error: (06/08/2013 07:51:50 PM) (Source: Windows Search Service) (User: )
    Description: The plug-in in <Search.JetPropStore> cannot be initialized.

    Context: Windows Application, SystemIndex Catalog


    Details:
    The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)

    Error: (06/08/2013 07:51:50 PM) (Source: Windows Search Service) (User: )
    Description: The Windows Search Service cannot load the property store information.

    Context: Windows Application, SystemIndex Catalog


    Details:
    The content index server cannot update or access information because of a database error. Stop and restart the search service. If the problem persists, reset and recrawl the content index. In some cases it may be necessary to delete and recreate the content index. (HRESULT : 0x8004117f) (0x8004117f)

    Error: (06/08/2013 07:51:50 PM) (Source: Windows Search Service) (User: )
    Description: The search service has detected corrupted data files in the index {id=1100}. The service will attempt to automatically correct this problem by rebuilding the index.


    Details:
    The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)


    System errors:
    =============
    Error: (06/09/2013 08:28:40 AM) (Source: Service Control Manager) (User: )
    Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
    %%1068

    Error: (06/09/2013 08:28:40 AM) (Source: Service Control Manager) (User: )
    Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
    %%1068

    Error: (06/09/2013 08:28:40 AM) (Source: Service Control Manager) (User: )
    Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
    %%1068

    Error: (06/09/2013 08:28:40 AM) (Source: Service Control Manager) (User: )
    Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
    %%1068

    Error: (06/09/2013 08:28:40 AM) (Source: Service Control Manager) (User: )
    Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
    %%1068

    Error: (06/09/2013 08:28:40 AM) (Source: Service Control Manager) (User: )
    Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
    %%1068

    Error: (06/09/2013 08:27:38 AM) (Source: Service Control Manager) (User: )
    Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
    %%1068

    Error: (06/09/2013 08:27:38 AM) (Source: Service Control Manager) (User: )
    Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
    %%1068

    Error: (06/09/2013 08:27:38 AM) (Source: Service Control Manager) (User: )
    Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
    %%1068

    Error: (06/09/2013 08:27:22 AM) (Source: Service Control Manager) (User: )
    Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
    %%1068


    Microsoft Office Sessions:
    =========================
    Error: (06/08/2013 07:55:21 PM) (Source: WinMgmt)(User: )
    Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

    Error: (06/08/2013 07:54:45 PM) (Source: ESENT)(User: )
    Description: DllHost1308WebCacheLocal: C:\Users\tdufresne1\AppData\Local\Microsoft\Windows\WebCache\V0100008.log-1811

    Error: (06/08/2013 07:51:51 PM) (Source: Windows Search Service)(User: )
    Description:
    Details:
    The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)
    The catalog is corrupt

    Error: (06/08/2013 07:51:51 PM) (Source: Windows Search Service)(User: )
    Description:
    Details:
    The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)

    Error: (06/08/2013 07:51:51 PM) (Source: Windows Search Service)(User: )
    Description: Context: Windows Application


    Details:
    The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)

    Error: (06/08/2013 07:51:51 PM) (Source: Windows Search Service)(User: )
    Description: Context: Windows Application, SystemIndex Catalog


    Details:
    The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)

    Error: (06/08/2013 07:51:51 PM) (Source: Windows Search Service)(User: )
    Description: Context: Windows Application, SystemIndex Catalog


    Details:
    Element not found. (HRESULT : 0x80070490) (0x80070490)
    Search.TripoliIndexer

    Error: (06/08/2013 07:51:50 PM) (Source: Windows Search Service)(User: )
    Description: Context: Windows Application, SystemIndex Catalog


    Details:
    The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)
    Search.JetPropStore

    Error: (06/08/2013 07:51:50 PM) (Source: Windows Search Service)(User: )
    Description: Context: Windows Application, SystemIndex Catalog


    Details:
    The content index server cannot update or access information because of a database error. Stop and restart the search service. If the problem persists, reset and recrawl the content index. In some cases it may be necessary to delete and recreate the content index. (HRESULT : 0x8004117f) (0x8004117f)

    Error: (06/08/2013 07:51:50 PM) (Source: Windows Search Service)(User: )
    Description:
    Details:
    The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)
    1100


    CodeIntegrity Errors:
    ===================================
    Date: 2013-02-20 08:35:27.974
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\sysfer.dll because the set of per-page image hashes could not be found on the system.

    Date: 2013-02-20 08:20:57.934
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\sysfer.dll because the set of per-page image hashes could not be found on the system.

    Date: 2013-02-19 10:25:12.810
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\sysfer.dll because the set of per-page image hashes could not be found on the system.

    Date: 2013-02-19 10:10:11.859
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\sysfer.dll because the set of per-page image hashes could not be found on the system.

    Date: 2013-02-19 10:01:26.444
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\sysfer.dll because the set of per-page image hashes could not be found on the system.

    Date: 2013-02-18 10:53:49.279
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\sysfer.dll because the set of per-page image hashes could not be found on the system.

    Date: 2013-02-18 10:38:26.839
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\sysfer.dll because the set of per-page image hashes could not be found on the system.

    Date: 2013-02-18 09:38:26.223
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\sysfer.dll because the set of per-page image hashes could not be found on the system.

    Date: 2013-02-18 09:28:29.311
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\sysfer.dll because the set of per-page image hashes could not be found on the system.

    Date: 2013-02-18 08:27:18.921
    Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\sysfer.dll because the set of per-page image hashes could not be found on the system.


    ==================== Memory info ===========================

    Percentage of memory in use: 21%
    Total physical RAM: 3976.9 MB
    Available physical RAM: 3140.82 MB
    Total Pagefile: 7951.98 MB
    Available Pagefile: 7168.92 MB
    Total Virtual: 8192 MB
    Available Virtual: 8191.81 MB

    ==================== Drives ================================

    Drive c: () (Fixed) (Total:232.79 GB) (Free:167.13 GB) NTFS (Disk=0 Partition=2)

    ==================== MBR & Partition Table ==================

    ========================================================
    Disk: 0 (MBR Code: Windows 7 or 8) (Size: 233 GB) (Disk ID: CE74CCB0)
    Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
    Partition 2: (Not Active) - (Size=233 GB) - (Type=07 NTFS)

    ==================== End Of Log ============================
     
  10. 2013/06/09
    chinaclipper

    chinaclipper Well-Known Member Thread Starter

    Joined:
    2010/01/20
    Messages:
    96
    Likes Received:
    0
    frst text

    Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-06-2013
    Ran by tdufresne1 (administrator) on 09-06-2013 08:28:50
    Running from C:\Users\tdufresne1\Desktop
    Windows 7 Enterprise Service Pack 1 (X64) OS Language: English(US)
    Internet Explorer Version 9
    Boot Mode: Safe Mode (with Networking)

    ==================== Processes (Whitelisted) =================

    (Symantec Corporation) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.2100.2093.105\Bin\ccSvcHst.exe
    (Symantec Corporation) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.2100.2093.105\Bin64\Smc.exe
    (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_202.exe
    (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_202.exe

    ==================== Registry (Whitelisted) ==================

    HKLM Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot% <====== ATTENTION
    HKLM Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%\*.exe <====== ATTENTION
    HKLM Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%\System32\*.exe <====== ATTENTION
    HKLM Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir% <====== ATTENTION
    HKLM\...\Winlogon: [Userinit] C:\Windows\System32\KUsrInit.exe, [403048 2013-02-08] (Dell Inc.)
    HKCU\...\Policies\system: [DisableRegistryTools] 0
    HKCU\...\Policies\system: [DisableTaskMgr] 0
    HKLM-x32\...\Run: [] [x]

    ==================== Internet (Whitelisted) ====================

    HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?ocid=EIE9HP&PC=UP50
    HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
    HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com/?ocid=EIE9HP&PC=UP50
    BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
    BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
    BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
    BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL (Microsoft Corporation)
    BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL (Microsoft Corporation)
    BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
    BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
    BHO-x32: Symantec Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.2100.2093.105\bin\IPS\IPSBHO.DLL (Symantec Corporation)
    BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
    BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
    BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL (Microsoft Corporation)
    BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
    Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
    Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
    DPF: HKLM-x32 {917623D1-D8E5-11D2-BE8B-00104B06BDE3} http://cit-cam1.unl.edu/activex/AxisCamControl.cab
    DPF: HKLM-x32 {CC679CB8-DC4B-458B-B817-D447B3B6AC31} https://vpn.unl.edu/CACHE/stc/1/binaries/vpnweb.cab
    Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - No File
    Handler-x32: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\BelarcAdvisor\System\BAVoilaX.dll (Belarc, Inc.)
    Tcpip\Parameters: [DhcpNameServer] 209.18.47.61 209.18.47.62

    FireFox:
    ========
    FF ProfilePath: C:\Users\tdufresne1\AppData\Roaming\Mozilla\Firefox\Profiles\283asvsr.default
    FF Homepage: www.worldnetdaily.com
    FF NetworkProxy: "type ", 0
    FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_202.dll ()
    FF Plugin: @java.com/DTPlugin,version=10.15.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
    FF Plugin: @java.com/JavaPlugin,version=10.15.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
    FF Plugin: @microsoft.com/GENUINE - disabled No File
    FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
    FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll ()
    FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
    FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
    FF Plugin-x32: @java.com/DTPlugin,version=10.10.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
    FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
    FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
    FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
    FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
    FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
    FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
    FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

    Chrome:
    =======
    CHR HomePage: hxxp://blekkosearch.mystart.com/blekkotb_soc/?source=86adbc52&toolbarid=blekkotb_soc&u=20120517CA80452196425E732E7B846D&tbp=homepage
    CHR RestoreOnStartup: "hxxp://blekkosearch.mystart.com/blekkotb_soc/?source=86adbc52&toolbarid=blekkotb_soc&u=20120517CA80452196425E732E7B846D&tbp=homepage "
    CHR DefaultSearchURL: (Blekko) - http://blekko.com/ws/?source=86adbc52&tbp=rbox&toolbarid=blekkotb_soc&u=20120517CA80452196425E732E7B846D&q={searchTerms}
    CHR DefaultSuggestURL: (Blekko) - "suggest_url ": " "
    CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
    CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\ppGoogleNaClPluginChrome.dll No File
    CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\pdf.dll No File
    CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\gcswf32.dll No File
    CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll No File
    CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll No File
    CHR Plugin: (NapsterLink) - C:\Program Files (x86)\Mozilla Firefox\plugins\npstrlnk.dll No File
    CHR Plugin: (QuickTime Plug-in 7.7) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll (Apple Inc.)
    CHR Plugin: (QuickTime Plug-in 7.7) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll (Apple Inc.)
    CHR Plugin: (QuickTime Plug-in 7.7) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll (Apple Inc.)
    CHR Plugin: (QuickTime Plug-in 7.7) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll (Apple Inc.)
    CHR Plugin: (QuickTime Plug-in 7.7) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll (Apple Inc.)
    CHR Plugin: (QuickTime Plug-in 7.7) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll No File
    CHR Plugin: (QuickTime Plug-in 7.7) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll No File
    CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL No File
    CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL No File
    CHR Plugin: (RIM Handheld Application Loader) - C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll No File
    CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
    CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll No File
    CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll No File
    CHR Plugin: (Default Plug-in) - default_plugin No File
    CHR Extension: (YouTube) - C:\Users\tdufresne1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
    CHR Extension: (Google Search) - C:\Users\tdufresne1\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
    CHR Extension: (Gmail) - C:\Users\tdufresne1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1

    ==================== Services (Whitelisted) =================

    S4 AMPAgent; C:\Program Files (x86)\Dell\KACE\AMPAgent.exe [2848360 2013-02-08] (Dell Inc.)
    S4 HP DS Service; C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe [13824 2010-10-27] (Hewlett-Packard Company)
    S4 O2SDIOAssist; C:\Windows\SysWOW64\srvany.exe [8192 2003-04-18] ()
    R2 SepMasterService; C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.2100.2093.105\Bin\sms.dll [169360 2013-06-03] (Symantec Corporation)
    R3 SmcService; C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.2100.2093.105\Bin64\Smc.exe [2299192 2013-06-03] (Symantec Corporation)
    S4 SNAC; C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.2100.2093.105\Bin64\snac64.exe [334736 2013-06-03] (Symantec Corporation)
    S4 ZcfgSvc7; C:\Program Files\Intel\WiFi\bin\ZCfgSvc7.exe [992256 2010-12-23] (Intel(R) Corporation)

    ==================== Drivers (Whitelisted) ====================

    S1 BHDrvx64; C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2100.2093.105\Data\Definitions\BASHDefs\20130521.011\BHDrvx64.sys [1390680 2013-04-23] (Symantec Corporation)
    S1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2013-02-11] (Symantec Corporation)
    S3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [138912 2013-02-11] (Symantec Corporation)
    S1 IDSVia64; C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2100.2093.105\Data\Definitions\IPSDefs\20130607.011\IDSvia64.sys [513184 2013-06-06] (Symantec Corporation)
    S3 NAVENG; C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2100.2093.105\Data\Definitions\VirusDefs\20130607.018\ENG64.SYS [126040 2013-05-22] (Symantec Corporation)
    S3 NAVEX15; C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2100.2093.105\Data\Definitions\VirusDefs\20130607.018\EX64.SYS [2098776 2013-05-22] (Symantec Corporation)
    S3 RimVSerPort; C:\Windows\System32\DRIVERS\RimSerial_AMD64.sys [44032 2011-07-20] (Research in Motion Ltd)
    S1 SRTSP; C:\Windows\System32\Drivers\SEP\0C010834\082D.105\x64\SRTSP64.SYS [796248 2013-06-03] (Symantec Corporation)
    S1 SRTSPX; C:\Windows\System32\Drivers\SEP\0C010834\082D.105\x64\SRTSPX64.SYS [36952 2013-06-03] (Symantec Corporation)
    S3 SyDvCtrl; C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.2100.2093.105\Bin64\SyDvCtrl64.sys [34800 2013-06-03] (Symantec Corporation)
    R0 SymDS; C:\Windows\System32\Drivers\SEP\0C010834\082D.105\x64\SYMDS64.SYS [493216 2013-06-03] (Symantec Corporation)
    R0 SymEFA; C:\Windows\System32\Drivers\SEP\0C010834\082D.105\x64\SYMEFA64.SYS [1133216 2012-11-03] (Symantec Corporation)
    S3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177312 2013-06-03] (Symantec Corporation)
    S1 SymIRON; C:\Windows\System32\Drivers\SEP\0C010834\082D.105\x64\Ironx64.SYS [224416 2012-11-03] (Symantec Corporation)
    S1 SYMNETS; C:\Windows\System32\Drivers\SEP\0C010834\082D.105\x64\SYMNETS.SYS [432800 2012-11-03] (Symantec Corporation)
    S1 SysPlant; C:\Windows\System32\Drivers\SysPlant.sys [155352 2013-06-04] (Symantec Corporation)
    R1 Teefer2; C:\Windows\System32\DRIVERS\Teefer.sys [91944 2013-06-03] (Symantec Corporation)
    S1 ccSettings_{FA0ED830-25A2-4721-AB37-26A5FF82EB30}; system32\Drivers\SEP\0C010834\082D.105\x64\ccSetx64.sys [x]
    S3 RimUsb; System32\Drivers\RimUsb_AMD64.sys [x]
    S3 VGPU; System32\drivers\rdvgkmd.sys [x]

    ==================== NetSvcs (Whitelisted) ===================


    ==================== One Month Created Files and Folders ========

    2013-06-09 08:28 - 2013-06-09 08:28 - 00000000 ____D C:\FRST
    2013-06-09 08:26 - 2013-06-09 08:26 - 01919210 ____A (Farbar) C:\Users\tdufresne1\Desktop\FRST64.exe
    2013-06-08 19:51 - 2013-06-08 19:51 - 00000548 ____A C:\Windows\WindowsUpdate.log
    2013-06-08 19:49 - 2013-06-08 19:49 - 00000056 ____A C:\Windows\setupact.log
    2013-06-08 19:49 - 2013-06-08 19:49 - 00000000 ____A C:\Windows\setuperr.log
    2013-06-08 10:52 - 2013-06-08 10:52 - 00000546 ____A C:\Users\tdufresne1\Desktop\cc_20130608_105218.reg
    2013-06-08 09:45 - 2013-06-08 09:45 - 00081825 ____A C:\Users\tdufresne1\Desktop\Belarc Advisor Computer Profile.htm
    2013-06-08 09:45 - 2013-06-08 09:45 - 00000000 ____D C:\Users\tdufresne1\Desktop\Belarc Advisor Computer Profile_files
    2013-06-08 09:20 - 2013-06-08 09:20 - 00002120 ____A C:\Users\Public\Desktop\Belarc Advisor.lnk
    2013-06-08 09:20 - 2013-06-08 09:20 - 00000000 ____D C:\Program Files (x86)\Belarc
    2013-06-08 09:19 - 2013-06-08 09:20 - 03210328 ____A C:\Users\tdufresne1\Downloads\advisorinstaller.exe
    2013-06-08 09:11 - 2013-06-08 09:11 - 00003288 ____N C:\bootsqm.dat
    2013-06-07 23:50 - 2013-06-07 23:51 - 00191822 ____A C:\Users\tdufresne1\Documents\cc_20130607_235049.reg
    2013-06-07 23:31 - 2013-06-07 23:31 - 04938520 ____A (Piriform Ltd) C:\Users\tdufresne1\Downloads\spsetup121.exe
    2013-06-07 22:54 - 2013-06-07 23:00 - 00000000 ____D C:\Users\tdufresne1\AppData\Roaming\Nico Mak Computing
    2013-06-07 22:54 - 2013-06-07 22:54 - 00000290 ____A C:\Windows\Tasks\Registry Optimizer.job
    2013-06-07 22:54 - 2012-02-08 10:29 - 00018760 ____A (WinZip Computing, S.L.(WinZip Computing)) C:\Windows\System32\roboot64.exe
    2013-06-07 22:53 - 2013-06-07 22:53 - 00467472 ____A (WinZip Computing) C:\Users\tdufresne1\Downloads\WinZipRegistryOptimizer.exe
    2013-06-07 17:50 - 2013-06-07 17:50 - 00643592 ____A (Unity Technologies ApS) C:\Users\tdufresne1\Downloads\UnityWebPlayer.exe
    2013-06-07 17:50 - 2013-06-07 17:50 - 00000000 ____D C:\Users\tdufresne1\AppData\Local\Unity
    2013-06-06 11:34 - 2013-06-06 11:34 - 00000000 ____D C:\Windows\ERUNT
    2013-06-06 11:34 - 2013-06-06 11:34 - 00000000 ____D C:\JRT
    2013-06-06 11:33 - 2013-06-06 11:33 - 00545954 ____A (Oleg N. Scherbakov) C:\Users\tdufresne1\Downloads\JRT.exe
    2013-06-06 09:38 - 2013-06-06 09:38 - 00000000 ____D C:\Windows\PCHEALTH
    2013-06-06 09:37 - 2013-06-06 09:37 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
    2013-06-06 09:36 - 2013-06-06 09:38 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
    2013-06-06 09:36 - 2013-06-06 09:36 - 00000000 ____D C:\Program Files\Microsoft Office
    2013-06-06 09:34 - 2013-06-06 09:34 - 00000000 __RHD C:\MSOCache
    2013-06-03 13:45 - 2013-06-03 13:45 - 00091944 ____A (Symantec Corporation) C:\Windows\System32\Drivers\Teefer.sys
    2013-06-03 10:45 - 2013-06-03 10:45 - 00001845 ____A C:\Users\Public\Desktop\QuickTime Player.lnk
    2013-06-03 10:45 - 2013-06-03 10:45 - 00000000 ____D C:\ProgramData\Apple Computer
    2013-06-03 10:45 - 2013-06-03 10:45 - 00000000 ____D C:\Program Files (x86)\QuickTime
    2013-05-29 07:26 - 2013-05-29 07:26 - 04378864 ____A (Piriform Ltd) C:\Users\tdufresne1\Downloads\ccsetup402.exe
    2013-05-20 08:33 - 2013-05-20 08:33 - 04346816 ____A (Piriform Ltd) C:\Users\tdufresne1\Downloads\ccsetup401.exe
    2013-05-17 11:47 - 2013-05-17 11:47 - 08453309 ____A C:\wakeonlan.exe
    2013-05-17 01:02 - 2013-05-17 01:02 - 00000000 ____D C:\28811acbce3f208fd9
    2013-05-16 09:55 - 2013-04-05 01:52 - 02242048 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
    2013-05-16 09:55 - 2013-04-05 01:52 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
    2013-05-16 09:55 - 2013-04-05 01:52 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
    2013-05-16 09:55 - 2013-04-05 01:50 - 19231232 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
    2013-05-16 09:55 - 2013-04-05 01:50 - 15404032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
    2013-05-16 09:55 - 2013-04-05 01:50 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
    2013-05-16 09:55 - 2013-04-05 01:50 - 02647552 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
    2013-05-16 09:55 - 2013-04-05 01:50 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
    2013-05-16 09:55 - 2013-04-05 01:50 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
    2013-05-16 09:55 - 2013-04-05 01:50 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
    2013-05-16 09:55 - 2013-04-05 01:50 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
    2013-05-16 09:55 - 2013-04-05 01:50 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll
    2013-05-16 09:55 - 2013-04-05 01:50 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
    2013-05-16 09:55 - 2013-04-05 01:50 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll
    2013-05-16 09:55 - 2013-04-05 00:28 - 01767424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
    2013-05-16 09:55 - 2013-04-05 00:28 - 01130496 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
    2013-05-16 09:55 - 2013-04-05 00:26 - 14323712 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
    2013-05-16 09:55 - 2013-04-05 00:26 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
    2013-05-16 09:55 - 2013-04-05 00:26 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
    2013-05-16 09:55 - 2013-04-05 00:26 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
    2013-05-16 09:55 - 2013-04-05 00:26 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
    2013-05-16 09:55 - 2013-04-05 00:26 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
    2013-05-16 09:55 - 2013-04-05 00:26 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
    2013-05-16 09:55 - 2013-04-05 00:26 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
    2013-05-16 09:55 - 2013-04-05 00:26 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
    2013-05-16 09:55 - 2013-04-05 00:26 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
    2013-05-16 09:55 - 2013-04-05 00:26 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
    2013-05-16 09:55 - 2013-04-04 23:43 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
    2013-05-16 09:55 - 2013-04-04 23:29 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
    2013-05-16 09:55 - 2013-04-04 22:51 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe
    2013-05-16 09:55 - 2013-04-04 22:38 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
    2013-05-15 10:23 - 2013-05-15 10:23 - 09195912 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
    2013-05-15 09:54 - 2013-04-10 01:01 - 00983400 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dxgkrnl.sys
    2013-05-15 09:54 - 2013-04-10 01:01 - 00265064 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dxgmms1.sys
    2013-05-15 09:54 - 2011-02-03 06:25 - 00144384 ____A (Microsoft Corporation) C:\Windows\System32\cdd.dll
    2013-05-15 09:53 - 2013-04-09 22:30 - 03153920 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
    2013-05-15 09:53 - 2013-03-19 00:53 - 00230400 ____A (Microsoft Corporation) C:\Windows\System32\wwansvc.dll
    2013-05-15 09:53 - 2013-03-19 00:53 - 00048640 ____A (Microsoft Corporation) C:\Windows\System32\wwanprotdim.dll
    2013-05-15 09:53 - 2013-02-27 01:02 - 00111448 ____A (Microsoft Corporation) C:\Windows\System32\consent.exe
    2013-05-15 09:53 - 2013-02-27 00:52 - 14172672 ____A (Microsoft Corporation) C:\Windows\System32\shell32.dll
    2013-05-15 09:53 - 2013-02-27 00:52 - 00197120 ____A (Microsoft Corporation) C:\Windows\System32\shdocvw.dll
    2013-05-15 09:53 - 2013-02-27 00:48 - 01930752 ____A (Microsoft Corporation) C:\Windows\System32\authui.dll
    2013-05-15 09:53 - 2013-02-27 00:47 - 00070144 ____A (Microsoft Corporation) C:\Windows\System32\appinfo.dll
    2013-05-15 09:53 - 2013-02-26 23:55 - 12872704 ____A (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
    2013-05-15 09:53 - 2013-02-26 23:55 - 00180224 ____A (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
    2013-05-15 09:53 - 2013-02-26 23:49 - 01796096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
    2013-05-13 12:54 - 2013-05-13 12:54 - 00009830 ____A C:\Users\tdufresne1\Downloads\exefix.reg

    ==================== One Month Modified Files and Folders =======

    2013-06-09 08:28 - 2013-06-09 08:28 - 00000000 ____D C:\FRST
    2013-06-09 08:26 - 2013-06-09 08:26 - 01919210 ____A (Farbar) C:\Users\tdufresne1\Desktop\FRST64.exe
    2013-06-08 19:51 - 2013-06-08 19:51 - 00000548 ____A C:\Windows\WindowsUpdate.log
    2013-06-08 19:49 - 2013-06-08 19:49 - 00000056 ____A C:\Windows\setupact.log
    2013-06-08 19:49 - 2013-06-08 19:49 - 00000000 ____A C:\Windows\setuperr.log
    2013-06-08 19:49 - 2009-07-14 00:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
    2013-06-08 10:52 - 2013-06-08 10:52 - 00000546 ____A C:\Users\tdufresne1\Desktop\cc_20130608_105218.reg
    2013-06-08 10:51 - 2012-04-26 22:55 - 00000000 ____D C:\Windows\Minidump
    2013-06-08 09:45 - 2013-06-08 09:45 - 00081825 ____A C:\Users\tdufresne1\Desktop\Belarc Advisor Computer Profile.htm
    2013-06-08 09:45 - 2013-06-08 09:45 - 00000000 ____D C:\Users\tdufresne1\Desktop\Belarc Advisor Computer Profile_files
    2013-06-08 09:20 - 2013-06-08 09:20 - 00002120 ____A C:\Users\Public\Desktop\Belarc Advisor.lnk
    2013-06-08 09:20 - 2013-06-08 09:20 - 00000000 ____D C:\Program Files (x86)\Belarc
    2013-06-08 09:20 - 2013-06-08 09:19 - 03210328 ____A C:\Users\tdufresne1\Downloads\advisorinstaller.exe
    2013-06-08 09:11 - 2013-06-08 09:11 - 00003288 ____N C:\bootsqm.dat
    2013-06-07 23:54 - 2011-10-19 12:19 - 00000906 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
    2013-06-07 23:54 - 2011-10-19 12:19 - 00000902 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
    2013-06-07 23:51 - 2013-06-07 23:50 - 00191822 ____A C:\Users\tdufresne1\Documents\cc_20130607_235049.reg
    2013-06-07 23:31 - 2013-06-07 23:31 - 04938520 ____A (Piriform Ltd) C:\Users\tdufresne1\Downloads\spsetup121.exe
    2013-06-07 23:00 - 2013-06-07 22:54 - 00000000 ____D C:\Users\tdufresne1\AppData\Roaming\Nico Mak Computing
    2013-06-07 22:54 - 2013-06-07 22:54 - 00000290 ____A C:\Windows\Tasks\Registry Optimizer.job
    2013-06-07 22:53 - 2013-06-07 22:53 - 00467472 ____A (WinZip Computing) C:\Users\tdufresne1\Downloads\WinZipRegistryOptimizer.exe
    2013-06-07 22:40 - 2009-07-14 00:13 - 00730448 ____A C:\Windows\System32\PerfStringBackup.INI
    2013-06-07 21:23 - 2012-08-16 14:41 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
    2013-06-07 17:50 - 2013-06-07 17:50 - 00643592 ____A (Unity Technologies ApS) C:\Users\tdufresne1\Downloads\UnityWebPlayer.exe
    2013-06-07 17:50 - 2013-06-07 17:50 - 00000000 ____D C:\Users\tdufresne1\AppData\Local\Unity
    2013-06-07 16:44 - 2009-07-13 23:45 - 00022208 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    2013-06-07 16:44 - 2009-07-13 23:45 - 00022208 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    2013-06-07 13:25 - 2009-07-14 00:32 - 00000000 ____D C:\Windows\System32\FxsTmp
    2013-06-07 13:24 - 2011-10-19 09:13 - 00000112 ____A C:\Windows\System32\config\netlogon.ftl
    2013-06-07 10:40 - 2011-10-28 11:06 - 00000458 ____A C:\Users\tdufresne1\Desktop\KLIN Radio.website
    2013-06-07 03:05 - 2011-10-05 10:57 - 00000000 ____D C:\ProgramData\Microsoft Help
    2013-06-06 15:03 - 2012-02-02 15:16 - 00002183 ____A C:\Users\Public\Desktop\Google Chrome.lnk
    2013-06-06 11:41 - 2009-07-13 23:45 - 00442888 ____A C:\Windows\System32\FNTCACHE.DAT
    2013-06-06 11:36 - 2012-05-17 11:00 - 00000000 ____D C:\ProgramData\Anti-phishing Domain Advisor
    2013-06-06 11:34 - 2013-06-06 11:34 - 00000000 ____D C:\Windows\ERUNT
    2013-06-06 11:34 - 2013-06-06 11:34 - 00000000 ____D C:\JRT
    2013-06-06 11:33 - 2013-06-06 11:33 - 00545954 ____A (Oleg N. Scherbakov) C:\Users\tdufresne1\Downloads\JRT.exe
    2013-06-06 09:47 - 2013-01-17 09:27 - 00000000 ____D C:\Program Files (x86)\Microsoft Lync
    2013-06-06 09:46 - 2011-10-19 16:43 - 00111632 ____A C:\Users\tdufresne1\AppData\Local\GDIPFONTCACHEV1.DAT
    2013-06-06 09:39 - 2011-10-05 13:51 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
    2013-06-06 09:38 - 2013-06-06 09:38 - 00000000 ____D C:\Windows\PCHEALTH
    2013-06-06 09:38 - 2013-06-06 09:36 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
    2013-06-06 09:38 - 2009-07-13 21:34 - 00000478 ____A C:\Windows\win.ini
    2013-06-06 09:37 - 2013-06-06 09:37 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
    2013-06-06 09:37 - 2010-11-21 01:30 - 00000000 ____D C:\Windows\ShellNew
    2013-06-06 09:36 - 2013-06-06 09:36 - 00000000 ____D C:\Program Files\Microsoft Office
    2013-06-06 09:36 - 2009-07-13 22:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
    2013-06-06 09:34 - 2013-06-06 09:34 - 00000000 __RHD C:\MSOCache
    2013-06-06 09:30 - 2009-07-13 22:20 - 00000000 ____D C:\Program Files\Common Files\System
    2013-06-05 07:43 - 2013-01-17 09:27 - 00000000 ____D C:\Users\tdufresne1\Tracing
    2013-06-04 11:34 - 2011-10-19 10:17 - 00000000 ___RD C:\Users\tdufresne1\Documents\docs
    2013-06-04 03:56 - 2013-02-20 15:10 - 00420240 ____A (Symantec Corporation) C:\Windows\SysWOW64\SymVPN.dll
    2013-06-04 03:56 - 2013-02-20 15:10 - 00136592 ____A (Symantec Corporation) C:\Windows\SysWOW64\FwsVpn.dll
    2013-06-04 03:56 - 2011-12-14 19:53 - 00576400 ____A (Symantec Corporation) C:\Windows\System32\SymVPN.dll
    2013-06-04 03:56 - 2011-12-14 19:53 - 00459152 ____A (Symantec Corporation) C:\Windows\System32\sysfer.dll
    2013-06-04 03:56 - 2011-12-14 19:53 - 00360336 ____A (Symantec Corporation) C:\Windows\SysWOW64\sysfer.dll
    2013-06-04 03:56 - 2011-12-14 19:53 - 00157584 ____A (Symantec Corporation) C:\Windows\System32\FwsVpn.dll
    2013-06-04 03:56 - 2011-12-14 19:53 - 00155352 ____A (Symantec Corporation) C:\Windows\System32\Drivers\SysPlant.sys
    2013-06-04 03:56 - 2011-12-14 19:53 - 00056720 ____A (Symantec Corporation) C:\Windows\System32\snacnp.dll
    2013-06-04 03:56 - 2011-12-14 19:53 - 00050576 ____A (Symantec Corporation) C:\Windows\SysWOW64\snacnp.dll
    2013-06-04 03:56 - 2011-12-14 19:53 - 00044448 ____A (Symantec Corporation) C:\Windows\System32\Drivers\WGX64.SYS
    2013-06-04 03:56 - 2011-12-14 19:53 - 00012176 ____A (Symantec Corporation) C:\Windows\System32\sysferThunk.dll
    2013-06-04 03:56 - 2011-12-14 19:53 - 00011152 ____A (Symantec Corporation) C:\Windows\SysWOW64\sysferThunk.dll
    2013-06-03 13:49 - 2011-12-14 19:54 - 00177312 ____A (Symantec Corporation) C:\Windows\System32\Drivers\SYMEVENT64x86.SYS
    2013-06-03 13:49 - 2011-12-14 19:54 - 00007631 ____A C:\Windows\System32\Drivers\SYMEVENT64x86.CAT
    2013-06-03 13:49 - 2011-12-14 19:54 - 00000000 ____D C:\Program Files\Symantec
    2013-06-03 13:47 - 2011-12-14 19:53 - 00000000 ____D C:\Windows\System32\Drivers\SEP
    2013-06-03 13:45 - 2013-06-03 13:45 - 00091944 ____A (Symantec Corporation) C:\Windows\System32\Drivers\Teefer.sys
    2013-06-03 10:45 - 2013-06-03 10:45 - 00001845 ____A C:\Users\Public\Desktop\QuickTime Player.lnk
    2013-06-03 10:45 - 2013-06-03 10:45 - 00000000 ____D C:\ProgramData\Apple Computer
    2013-06-03 10:45 - 2013-06-03 10:45 - 00000000 ____D C:\Program Files (x86)\QuickTime
    2013-05-29 07:28 - 2012-02-03 23:46 - 00000000 ____D C:\Program Files\CCleaner
    2013-05-29 07:26 - 2013-05-29 07:26 - 04378864 ____A (Piriform Ltd) C:\Users\tdufresne1\Downloads\ccsetup402.exe
    2013-05-21 09:02 - 2012-07-24 11:30 - 00000000 ____D C:\Users\tdufresne1\AppData\Roaming\HpUpdate
    2013-05-20 08:51 - 2011-10-05 13:03 - 00000000 ____D C:\Windows\Panther
    2013-05-20 08:33 - 2013-05-20 08:33 - 04346816 ____A (Piriform Ltd) C:\Users\tdufresne1\Downloads\ccsetup401.exe
    2013-05-20 08:15 - 2011-10-20 08:32 - 00000000 ____D C:\ProgramData\Napster
    2013-05-20 08:15 - 2011-10-05 13:09 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
    2013-05-17 11:47 - 2013-05-17 11:47 - 08453309 ____A C:\wakeonlan.exe
    2013-05-17 10:31 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\rescache
    2013-05-17 03:17 - 2013-03-20 11:03 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
    2013-05-17 03:17 - 2012-11-27 20:32 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
    2013-05-17 01:02 - 2013-05-17 01:02 - 00000000 ____D C:\28811acbce3f208fd9
    2013-05-16 21:55 - 2011-10-05 13:46 - 00001075 ____A C:\Users\Public\Desktop\Mozilla Firefox.lnk
    2013-05-16 16:45 - 2011-10-19 09:21 - 00027794 _RASH C:\ProgramData\ntuser.pol
    2013-05-16 10:02 - 2011-10-05 10:19 - 75016696 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
    2013-05-15 10:23 - 2013-05-15 10:23 - 09195912 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
    2013-05-15 10:23 - 2012-04-09 15:28 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
    2013-05-15 10:23 - 2011-10-05 13:54 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
    2013-05-13 12:54 - 2013-05-13 12:54 - 00009830 ____A C:\Users\tdufresne1\Downloads\exefix.reg
    2013-05-11 10:40 - 2012-01-09 09:15 - 00008704 ____A C:\Users\tdufresne1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

    ==================== Bamital & volsnap Check =================

    C:\Windows\System32\winlogon.exe => MD5 is legit
    C:\Windows\System32\wininit.exe => MD5 is legit
    C:\Windows\SysWOW64\wininit.exe => MD5 is legit
    C:\Windows\explorer.exe => MD5 is legit
    C:\Windows\SysWOW64\explorer.exe => MD5 is legit
    C:\Windows\System32\svchost.exe => MD5 is legit
    C:\Windows\SysWOW64\svchost.exe => MD5 is legit
    C:\Windows\System32\services.exe => MD5 is legit
    C:\Windows\System32\User32.dll => MD5 is legit
    C:\Windows\SysWOW64\User32.dll => MD5 is legit
    C:\Windows\System32\userinit.exe => MD5 is legit
    C:\Windows\SysWOW64\userinit.exe => MD5 is legit
    C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


    LastRegBack: 2013-06-03 00:03

    ==================== End Of Log ============================
     
  11. 2013/06/09
    chinaclipper

    chinaclipper Well-Known Member Thread Starter

    Joined:
    2010/01/20
    Messages:
    96
    Likes Received:
    0
    I used the 64 bit one .
    I did NOT hit "fix" on the faber scan......waiting for instructions!
     
  12. 2013/06/09
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Download attached fixlist.txt file and save it to the Desktop.
    NOTE. It's important that both files, FRST and fixlist.txt are in the same location or the fix will not work.

    NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

    Run FRST/FRST64 and press the Fix button just once and wait.
    The tool will make a log on the Desktop (Fixlog.txt). Please post it to your reply.

    See if you can boot normally.
     

    Attached Files:

  13. 2013/06/09
    chinaclipper

    chinaclipper Well-Known Member Thread Starter

    Joined:
    2010/01/20
    Messages:
    96
    Likes Received:
    0
    fixlog.txt YES!!

    Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 08-06-2013
    Ran by tdufresne1 at 2013-06-09 10:43:00 Run:1
    Running from C:\Users\tdufresne1\Desktop
    Boot Mode: Safe Mode (with Networking)
    ==============================================

    HKLM => Group Policy Restriction on software restored successfully.
    HKLM => Group Policy Restriction on software restored successfully.
    HKLM => Group Policy Restriction on software restored successfully.
    HKLM => Group Policy Restriction on software restored successfully.
    HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.

    ==== End of Fixlog ====


    Booted successfully. You are da man!!
     
  14. 2013/06/09
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Good news :)
     
  15. 2013/06/09
    chinaclipper

    chinaclipper Well-Known Member Thread Starter

    Joined:
    2010/01/20
    Messages:
    96
    Likes Received:
    0
    Thanks a ton...again..
    Look for the donation. You've really helped,
     
  16. 2013/06/09
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    :)...
     
  17. 2013/06/09
    Evan Omo

    Evan Omo Computer Support Technician Staff

    Joined:
    2006/09/10
    Messages:
    7,919
    Likes Received:
    511
    Thanks for letting us know. :)

    Since this issue is now resolved, please mark this thread as 'Resolved'.

     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.