Tech Support Forum banner
Status
Not open for further replies.

Browser Popup Audio Video

2K views 12 replies 2 participants last post by  chemist 
#1 ·
I've been infected!

An annoying ad popup featuring audio and video takes over my Chrome browser by showing a video and/or ad in the center of my browser window up near the booksmark bar. It also features its own ads in the browser side bars. Occasionally it will redirect the url to another site (e.g. Adobe flash update). It results in a periodic complete computer sluggish performance.

I've got ASC Ultimate 7 realtime protection, run superantispyware and spybot to try to keep these buggers away, but clicked on an ad while viewing a streaming TV site -- had to get my TV fix while traveling -- and invited the virus/bot by accident.

Thanks for any help you can give.

DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 11.0.9600.16521 BrowserJavaVersion: 10.51.2
Run by Scott at 10:11:35 on 2014-04-11
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.2038.520 [GMT 2:00]
.
AV: Advanced SystemCare Ultimate *Disabled/Updated* {1C304DC4-1D72-5DB9-B33A-43B638ECFD30}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Spybot - Search and Destroy *Enabled/Outdated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
.
============== Running Processes ================
.
C:\windows\system32\wininit.exe
C:\windows\system32\lsm.exe
C:\Program Files\IObit\Advanced SystemCare Ultimate 7\ASCService.exe
C:\Program Files\IObit\Advanced SystemCare Ultimate 7\ascavsvc.exe
C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe
C:\windows\System32\spoolsv.exe
C:\windows\system32\WLANExt.exe
C:\windows\system32\conhost.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Windows\System32\AsusService.exe
C:\Program Files\Microsoft\BingBar\SeaPort.EXE
C:\windows\system32\BtwRSupportService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
C:\Program Files\Microsoft Office 15\ClientX86\OfficeClickToRun.exe
C:\Program Files\CrashPlan\CrashPlanService.exe
C:\Program Files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe
C:\windows\system32\taskhost.exe
C:\windows\system32\taskeng.exe
C:\windows\Explorer.EXE
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\windows\system32\taskeng.exe
C:\windows\system32\Dwm.exe
C:\Program Files\IObit\Advanced SystemCare Ultimate 7\Monitor.exe
C:\Program Files\Sling Media\SlingAgent\SlingAgentService.exe
C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Windows\System32\igfxpers.exe
C:\windows\system32\igfxsrvc.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Windows\System32\hkcmd.exe
C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files\Google\Drive\googledrivesync.exe
C:\Program Files\IObit\Advanced SystemCare Ultimate 7\ASCTray.exe
C:\Users\Scott\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
C:\Program Files\CrashPlan\CrashPlanTray.exe
C:\Users\Scott\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Users\Scott\AppData\Local\Apps\Evernote\Evernote\EvernoteClipper.exe
C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE
C:\Program Files\Google\Drive\googledrivesync.exe
C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
C:\windows\system32\SearchIndexer.exe
C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\vssvc.exe
C:\windows\system32\SearchProtocolHost.exe
C:\windows\system32\SearchFilterHost.exe
C:\windows\system32\conhost.exe
C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\System32\svchost.exe -k HPZ12
C:\windows\System32\svchost.exe -k HPZ12
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\System32\svchost.exe -k secsvcs
C:\windows\system32\svchost.exe -k SDRSVC
C:\windows\System32\svchost.exe -k swprv
.
============== Pseudo HJT Report ===============
.
uStart Page = about:Tabs
uSearch Bar = Preserve
mStart Page = hxxp://www.google.com
BHO: ExplorerWnd Helper: {10921475-03CE-4E04-90CE-E2E7EF20C814} - c:\program files\iobit\iobit uninstaller\UninstallExplorer32.dll
BHO: Canon Easy-WebPrint EX BHO: {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - c:\program files\canon\easy-webprint ex\ewpexbho.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - c:\program files\microsoft office 15\root\office15\URLREDIR.DLL
BHO: Advanced SystemCare Browser Protection: {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - c:\program files\iobit\surfing protection\browerprotect\ASCPlugin_Protection.dll
BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
TB: Canon Easy-WebPrint EX: {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - c:\program files\canon\easy-webprint ex\ewpexhlp.dll
TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} -
uRun: [GoogleDriveSync] "c:\program files\google\drive\googledrivesync.exe" /autostart
uRun: [Advanced SystemCare Ultimate] "c:\program files\iobit\advanced systemcare ultimate 7\ASCTray.exe" /Auto
uRun: [SkyDrive] "c:\users\scott\appdata\local\microsoft\skydrive\SkyDrive.exe" /background
uRun: [Spybot-S&D Cleaning] "c:\program files\spybot - search & destroy 2\SDCleaner.exe" /autoclean
mRun: [SynTPEnh] c:\program files\synaptics\syntp\syntpenh.exe
mRun: [SynAsusAcpi] c:\program files\synaptics\syntp\SynAsusAcpi.exe
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [RtHDVCpl] c:\program files\realtek\audio\hda\RtHDVCpl.exe -s
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [IAStorIcon] c:\program files\intel\intel(r) rapid storage technology\iastoricon.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [SDTray] "c:\program files\spybot - search & destroy 2\SDTray.exe"
dRun: [Advanced SystemCare 5] "c:\program files\iobit\advanced systemcare 5\ASCTray.exe" /AutoStart
StartupFolder: c:\users\scott\appdata\roaming\micros~1\windows\startm~1\programs\startup\dropbox.lnk - c:\users\scott\appdata\roaming\dropbox\bin\Dropbox.exe
StartupFolder: c:\users\scott\appdata\roaming\micros~1\windows\startm~1\programs\startup\everno~1.lnk - c:\users\scott\appdata\local\apps\evernote\evernote\EvernoteClipper.exe
StartupFolder: c:\users\scott\appdata\roaming\micros~1\windows\startm~1\programs\startup\sendto~1.lnk - c:\program files\microsoft office 15\root\office15\ONENOTEM.EXE
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\crashp~1.lnk - c:\program files\crashplan\CrashPlanTray.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office 15\root\office15\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office 15\root\office15\ONBttnIELinkedNotes.dll
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_21-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_45-windows-i586.cab
DPF: {CAFEEFAC-0017-0000-0021-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_21-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_45-windows-i586.cab
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{3252E06A-9966-4A87-A4E7-59D1024C84CA} : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{3252E06A-9966-4A87-A4E7-59D1024C84CA}\0554D213F474D2C4 : DHCPNameServer = 192.168.2.1
TCP: Interfaces\{3252E06A-9966-4A87-A4E7-59D1024C84CA}\0554D223F474D225 : DHCPNameServer = 192.168.2.1
TCP: Interfaces\{3252E06A-9966-4A87-A4E7-59D1024C84CA}\24143343 : DHCPNameServer = 192.168.0.1
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - c:\program files\microsoft office 15\root\office15\MSOSB.DLL
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Notify: igfxcui - igfxdev.dll
Notify: SDWinLogon - SDWinLogon.dll
SSODL: WebCheck - <orphaned>
SEH: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - c:\program files\superantispyware\SASSEH.DLL
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\33.0.1750.154\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
============= SERVICES / DRIVERS ===============
.
R0 AiDriver;ASUS Charger Driver;c:\windows\system32\drivers\AiDriver.sys [2011-7-20 13224]
R0 SmartDefragDriver;SmartDefragDriver;c:\windows\system32\drivers\SmartDefragDriver.sys [2014-2-1 18624]
R1 AsUpIO;AsUpIO;c:\windows\system32\drivers\AsUpIO.sys [2010-12-9 11832]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2011-7-22 12880]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2011-7-12 67664]
R2 !SASCORE;SAS Core Service;c:\program files\superantispyware\SASCore.exe [2013-10-11 120088]
R2 AdvancedSystemCareService7;Advanced SystemCare Service 7;c:\program files\iobit\advanced systemcare ultimate 7\ASCService.exe [2014-1-2 886592]
R2 ASCAntivirusSrv;AdvancedSystemCareAntivirus;c:\program files\iobit\advanced systemcare ultimate 7\ASCAvSvc.exe [2014-1-2 647488]
R2 AsusService;Asus Launcher Service;c:\windows\system32\AsusService.exe [2010-12-9 219136]
R2 BBUpdate;BBUpdate;c:\program files\microsoft\bingbar\SeaPort.EXE [2011-10-13 249648]
R2 BcmBtRSupport;Bluetooth Driver Management Service;c:\windows\system32\BtwRSupportService.exe [2013-8-9 1678040]
R2 ClickToRunSvc;Microsoft Office ClickToRun Service;c:\program files\microsoft office 15\clientx86\officeclicktorun.exe [2014-3-23 1490104]
R2 CrashPlanService;CrashPlan Backup Service;c:\program files\crashplan\CrashPlanService.exe [2013-4-9 152576]
R3 L1C;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller;c:\windows\system32\drivers\L1C62x86.sys [2013-8-22 109256]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\drivers\nusb3hub.sys [2013-8-22 62208]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\drivers\nusb3xhc.sys [2013-8-22 141568]
R3 rtsuvc;Realtek USB2.0 PC Camera;c:\windows\system32\drivers\rtsuvc.sys [2014-2-5 6864600]
S2 280f2936;SW_Sustainer; [x]
S2 BBSvc;Bing Bar Update Service;c:\program files\microsoft\bingbar\BBSvc.EXE [2011-10-21 196176]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 bcbtums;Bluetooth USB LD Filter;c:\windows\system32\drivers\bcbtums.sys [2013-8-9 174936]
S3 btwampfl;btwampfl;c:\windows\system32\drivers\btwampfl.sys [2013-8-9 144600]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\drivers\btwl2cap.sys [2011-7-20 33320]
S3 libusb0;Jawbone LibUsb-Win32 - Kernel Driver 07/08/2013,1.2.6.1;c:\windows\system32\drivers\libusb0.sys [2013-8-30 42592]
S3 pwdrvio;pwdrvio;c:\windows\system32\pwdrvio.sys [2013-11-23 15688]
S3 pwdspio;pwdspio;c:\windows\system32\pwdspio.sys [2013-11-23 10320]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2014-2-5 14848]
S3 Ser2plx86;Prolific Serial port WDF driver;c:\windows\system32\drivers\ser2pl.sys [2013-2-22 134144]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2014-2-5 49664]
S3 usbrndis6;USB RNDIS6 Adapter;c:\windows\system32\drivers\usb80236.sys [2013-3-21 15872]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\drivers\wdcsam.sys [2008-5-6 11520]
.
=============== Created Last 30 ================
.
2014-04-09 13:30:52 27072 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2014-04-09 13:30:52 234432 ----a-w- c:\windows\system32\drivers\msiscsi.sys
2014-04-09 13:30:52 2048 ----a-w- c:\windows\system32\iologmsg.dll
2014-04-09 13:30:52 149440 ----a-w- c:\windows\system32\drivers\storport.sys
2014-04-09 13:30:49 1212352 ----a-w- c:\windows\system32\drivers\ntfs.sys
2014-04-09 13:30:45 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2014-04-08 06:25:03 7969936 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{2d2f94bf-3ea2-49c8-a0fe-9f28f10ab323}\mpengine.dll
2014-04-02 04:58:53 18968 ----a-w- c:\windows\system32\sdnclean.exe
2014-04-02 04:58:49 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2014-04-02 04:58:36 -------- d-----w- c:\program files\Spybot - Search & Destroy 2
2014-04-02 03:36:39 -------- d-----w- c:\users\scott\appdata\roaming\LavasoftStatistics
2014-04-01 07:50:18 42168 ----a-w- c:\programdata\microsoft\ehome\packages\mceclientux\dsm-2\StartResources.dll
2014-04-01 07:50:13 1236816 ----a-w- c:\programdata\microsoft\ehome\packages\mcespotlight\mcespotlight-2\SpotlightResources.dll
2014-03-27 22:37:46 -------- d-----w- c:\programdata\TerraTec
2014-03-27 22:37:27 1712128 ------r- c:\windows\system32\gdiplus.dll
2014-03-27 22:35:21 -------- d-----w- c:\users\scott\appdata\roaming\TerraTec
2014-03-27 22:26:16 32768 ----a-w- c:\program files\common files\installshield\professional\runtime\Objectps.dll
2014-03-27 22:26:16 266240 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iscript.dll
2014-03-27 22:26:16 192512 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iuser.dll
2014-03-27 22:26:13 69715 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\ctor.dll
2014-03-27 22:26:13 5632 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\DotNetInstaller.exe
2014-03-27 22:26:05 729088 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iKernel.dll
2014-03-27 22:25:54 188548 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iGdi.dll
2014-03-27 22:25:18 311428 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\setup.dll
2014-03-27 21:44:14 -------- d-----w- c:\program files\TERRATEC
2014-03-25 05:45:13 -------- d-----w- C:\AdwCleaner
2014-03-25 05:43:01 -------- d-----w- c:\programdata\HitmanPro
2014-03-23 06:46:12 -------- d-----w- c:\users\scott\appdata\local\ElevatedDiagnostics
2014-03-21 07:10:13 -------- d-----w- c:\users\scott\appdata\local\BookletCreator.com
2014-03-21 07:07:57 -------- d-----w- c:\programdata\IsolatedStorage
2014-03-21 07:07:38 -------- d-----w- c:\program files\BookletCreator
2014-03-19 18:47:42 -------- d-----w- c:\users\scott\appdata\local\Foxit Reader
2014-03-17 10:56:36 -------- d-----w- c:\programdata\NexTCoup
2014-03-17 10:56:35 -------- d-----w- c:\program files\NexTCoup
2014-03-17 06:38:09 -------- d-----w- c:\program files\EaseUS
2014-03-12 10:32:22 -------- d-----w- c:\programdata\SnowApp
2014-03-12 10:32:15 -------- d-----w- c:\program files\SW_Booster
2014-03-12 10:31:46 -------- d-----w- c:\programdata\safieweb
2014-03-12 10:31:45 -------- d-----w- c:\program files\safieweb
2014-03-12 10:31:38 -------- d-----w- c:\programdata\4181365be25e29e4
2014-03-12 10:31:37 -------- d-----w- c:\users\scott\appdata\local\Comodo
2014-03-12 10:30:26 -------- d-----w- c:\programdata\InstallMate
.
==================== Find3M ====================
.
2014-04-09 14:05:10 692400 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-04-09 14:05:09 70832 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-03-31 07:35:10 231584 ------w- c:\windows\system32\MpSigStub.exe
2014-03-03 10:18:00 1892056 ----a-w- c:\windows\system32\RTSndMgr.cpl
2014-03-03 10:17:54 2947160 ----a-w- c:\windows\system32\drivers\RTKVHDA.sys
2014-03-03 10:17:47 125144 ----a-w- c:\windows\system32\RtkCoInstII.dll
2014-03-03 10:17:46 2329816 ----a-w- c:\windows\system32\RtkAPO.dll
2014-03-01 04:10:48 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll
2014-03-01 03:52:43 61952 ----a-w- c:\windows\system32\iesetup.dll
2014-03-01 03:51:53 51200 ----a-w- c:\windows\system32\ieetwproxystub.dll
2014-03-01 03:38:26 112128 ----a-w- c:\windows\system32\ieUnatt.exe
2014-03-01 03:38:23 108032 ----a-w- c:\windows\system32\ieetwcollector.exe
2014-03-01 03:37:35 553472 ----a-w- c:\windows\system32\jscript9diag.dll
2014-03-01 03:31:30 646144 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2014-03-01 03:14:15 4244480 ----a-w- c:\windows\system32\jscript9.dll
2014-03-01 03:00:08 1964032 ----a-w- c:\windows\system32\inetcpl.cpl
2014-03-01 02:32:16 1820160 ----a-w- c:\windows\system32\wininet.dll
2014-02-07 01:07:56 2349056 ----a-w- c:\windows\system32\win32k.sys
2014-02-04 22:00:36 6864600 ----a-w- c:\windows\system32\drivers\rtsuvc.sys
2014-02-04 22:00:36 421592 ----a-w- c:\windows\system32\RtCamX.dll
2014-02-04 22:00:36 1910488 ----a-w- c:\windows\RtCamU.exe
2014-02-04 21:08:06 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2014-02-04 20:51:00 2547928 ----a-w- c:\windows\system32\RtkPgExt.dll
2014-02-04 02:04:22 1230336 ----a-w- c:\windows\system32\WindowsCodecs.dll
2014-02-04 02:04:11 509440 ----a-w- c:\windows\system32\qedit.dll
2014-01-29 02:06:47 381440 ----a-w- c:\windows\system32\wer.dll
2014-01-28 02:07:07 185344 ----a-w- c:\windows\system32\wwansvc.dll
2014-01-26 16:55:40 109856 ----a-w- c:\windows\system32\IObitSmartDefragExtension.dll
2014-01-23 16:40:18 268968 ----a-w- c:\windows\system32\sqlite3.dll
2013-08-26 13:03:14 612864 ----a-w- c:\program files\LPToolbar.dll
2013-08-26 13:03:14 1068544 ----a-w- c:\program files\LPIEHome.ocx
2013-08-26 13:03:13 180736 ----a-w- c:\program files\WinBioStandalone.exe
2013-08-26 13:03:12 6484992 ----a-w- c:\program files\LPPlugin.dll
2013-08-19 09:27:37 11634176 ----a-w- c:\program files\common files\lpuninstall.exe
.
============= FINISH: 10:14:41.55 ===============
 

Attachments

See less See more
#2 ·
Hello and Welcome to TSF.

If you haven't already, please Subscribe to this Thread to get immediate notification of replies as soon as they are posted. To do this click Thread Tools, then click Subscribe to this Thread. Make sure it is set to Instant notification by email, then click Add Subscription.

Please note that the forum is very busy and if I don't hear from you within three days this thread will be closed.

------------------------------------------------------

It appears that you have two antivirus programs installed, ASC Ultimate and Trend Micro Titanium. Even though Trend Micro Titanium isn't running, they can still conflict with one another and cause system instability or even system hangs. Please choose one to keep and uninstall the other via Programs and Features in your Control Panel.

------------------------------------------------------

Delete your existing copy of AdwCleaner.

Please download AdwCleaner from here and save it to your desktop.
  • Do NOT click the green 'Download' button(if visible).
  • Click the blue 'Download now @bleepingcomputer' button.
  • Run AdwCleaner and select Scan
  • Once the Scan is done, select Clean
  • Once done it will ask to reboot, please allow the reboot.
  • On reboot, a log will be produced. It can also be found at C:\AdwCleaner\AdwCleaner[S#].txt
  • Please copy/paste the contents of the log in your next reply.
------------------------------------------------------
 
#3 ·
Thanks for your reply! I was unable to find either the "AdwCleaner" or the "Trend Micro Titanium" listed in either the "Program and Features" or in the IOBIT "Uninstall Programs" tool. However, I uninstalled HiJackThis (Trend Micro) and deleted all of the folders/files associated with HiJackThis and AdwCleaner.

Per your instructions here's the copied txt file from AdwCleaner:

# AdwCleaner v3.023 - Report created 15/04/2014 at 12:11:38
# Updated 01/04/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (32 bits)
# Username : Scott - CORWINNETBOOK
# Running from : C:\Users\Scott\Downloads\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16521


*************************

AdwCleaner[R2].txt - [643 octets] - [15/04/2014 11:49:18]
AdwCleaner[R3].txt - [702 octets] - [15/04/2014 12:09:18]
AdwCleaner[S2].txt - [624 octets] - [15/04/2014 12:11:38]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [683 octets] ##########
 
#4 ·
Hello sydneymtbdog.

------------------------------------------------------

Please note that these fixes are not instantaneous. Most infections require more than one round to properly eradicate.

Please stay with me until given the 'all clear' even if symptoms seemingly abate.

Kindly follow my instructions and please do no fixing on your own or running of scanners unless requested by a helper.

------------------------------------------------------

If there are any personal files, pics, etc. on your computer you cannot live without, back them up now just as a precaution.

Emergency Backup Procedure - Tech Support Forum

------------------------------------------------------

Please download ComboFix and Save it to your Desktop.

**Note: It is important that it is saved directly to your desktop**

* Ensure you have disabled all antivirus and antimalware programs so they do not interfere with the running of ComboFix.

Get help here

Double-click ComboFix.exe and follow the prompts to run it.

Your desktop may go blank. This is normal. It will return when ComboFix is done. ComboFix may reboot your machine. This is normal.

When finished, it shall produce a log for you. Please post that log, C:\ComboFix.txt, in your next reply.

Please re-enable your antivirus before posting the ComboFix.txt log.

Note: If you get an 'Illegal operation attempted on a Registry key which has been marked for deletion' error message, please open Task Manager and 'End Process' on explorer.exe

Next, go File > New Task(Run...) and type explorer then press 'Enter'.

------------------------------------------------------
 
#5 ·
Thanks, Chemist, for your help! Here's the file you requested. I appreciate your time and expertise.

ComboFix 14-04-12.01 - Scott 15/04/2014 19:25:13.1.4 - x86
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.2038.1066 [GMT 2:00]
Running from: c:\users\Scott\Desktop\ComboFix.exe
AV: Advanced SystemCare Ultimate *Disabled/Updated* {1C304DC4-1D72-5DB9-B33A-43B638ECFD30}
SP: IObit Malware Fighter *Disabled/Updated* {A751AC20-3B48-5237-898A-78C4436BB78D}
SP: Spybot - Search and Destroy *Disabled/Outdated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Scott\AppData\Local\assembly\tmp
c:\windows\system32\Thumbs.db
c:\windows\TEMP\jna6276012815241540991.dll
.
.
((((((((((((((((((((((((( Files Created from 2014-03-15 to 2014-04-15 )))))))))))))))))))))))))))))))
.
.
2014-04-15 17:51 . 2014-04-15 17:51 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-04-15 06:18 . 2014-03-07 04:35 7969936 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{9CA614F7-F6E5-45F7-B3BF-EEEA75937B36}\mpengine.dll
2014-04-09 13:30 . 2014-02-04 02:07 149440 ----a-w- c:\windows\system32\drivers\storport.sys
2014-04-09 13:30 . 2014-02-04 02:07 234432 ----a-w- c:\windows\system32\drivers\msiscsi.sys
2014-04-09 13:30 . 2014-02-04 02:07 27072 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2014-04-09 13:30 . 2014-02-04 02:00 2048 ----a-w- c:\windows\system32\iologmsg.dll
2014-04-09 13:30 . 2014-01-24 02:18 1212352 ----a-w- c:\windows\system32\drivers\ntfs.sys
2014-04-09 13:30 . 2014-03-31 00:13 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2014-04-02 04:58 . 2013-09-20 08:49 18968 ----a-w- c:\windows\system32\sdnclean.exe
2014-04-02 04:58 . 2014-04-02 05:14 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2014-04-02 04:58 . 2014-04-02 05:02 -------- d-----w- c:\program files\Spybot - Search & Destroy 2
2014-04-02 03:36 . 2014-04-02 03:36 -------- d-----w- c:\users\Scott\AppData\Roaming\LavasoftStatistics
2014-04-02 03:29 . 2014-04-02 03:29 -------- d-----w- c:\programdata\Lavasoft
2014-04-01 07:50 . 2014-04-01 07:50 42168 ----a-w- c:\programdata\Microsoft\ehome\Packages\MCEClientUX\dSM-2\StartResources.dll
2014-04-01 07:50 . 2014-04-01 07:50 1236816 ----a-w- c:\programdata\Microsoft\ehome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2014-03-27 22:37 . 2014-03-27 22:37 -------- d-----w- c:\programdata\TerraTec
2014-03-27 22:37 . 2008-04-16 12:55 1712128 ------r- c:\windows\system32\gdiplus.dll
2014-03-27 22:35 . 2014-03-27 22:40 -------- d-----w- c:\users\Scott\AppData\Roaming\TerraTec
2014-03-27 22:26 . 2003-11-10 17:12 266240 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iscript.dll
2014-03-27 22:26 . 2003-11-10 17:12 192512 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iuser.dll
2014-03-27 22:26 . 2003-11-10 17:10 32768 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\Objectps.dll
2014-03-27 22:26 . 2003-11-10 17:13 69715 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\ctor.dll
2014-03-27 22:26 . 2003-11-10 17:11 5632 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\DotNetInstaller.exe
2014-03-27 22:26 . 2003-11-10 17:14 729088 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iKernel.dll
2014-03-27 22:25 . 2014-03-27 22:25 188548 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iGdi.dll
2014-03-27 22:25 . 2014-03-27 22:25 311428 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\setup.dll
2014-03-27 21:45 . 2014-03-27 21:45 -------- d-----w- c:\program files\DIFX
2014-03-25 05:45 . 2014-04-15 10:11 -------- d-----w- C:\AdwCleaner
2014-03-25 05:43 . 2014-03-25 14:50 -------- d-----w- c:\programdata\HitmanPro
2014-03-23 06:46 . 2014-03-23 06:46 -------- d-----w- c:\users\Scott\AppData\Local\ElevatedDiagnostics
2014-03-21 07:10 . 2014-03-21 07:10 -------- d-----w- c:\users\Scott\AppData\Local\BookletCreator.com
2014-03-21 07:07 . 2014-03-21 07:07 -------- d-----w- c:\programdata\IsolatedStorage
2014-03-21 07:07 . 2014-03-21 07:07 -------- d-----w- c:\program files\BookletCreator
2014-03-19 18:47 . 2014-03-19 18:47 -------- d-----w- c:\users\Scott\AppData\Local\Foxit Reader
2014-03-17 10:56 . 2014-03-25 05:28 -------- d-----w- c:\programdata\NexTCoup
2014-03-17 10:56 . 2014-03-25 05:27 -------- d-----w- c:\program files\NexTCoup
2014-03-17 06:38 . 2014-03-17 11:07 -------- d-----w- c:\program files\EaseUS
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-04-12 05:10 . 2013-08-16 16:48 578256 ----a-w- c:\programdata\Microsoft\ClickToRun\{9AC08E99-230B-47e8-9721-4577B7F124EA}\integrator.exe
2014-04-09 14:05 . 2012-07-13 21:47 692400 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-04-09 14:05 . 2011-07-19 17:51 70832 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-03-31 07:35 . 2011-07-19 18:48 231584 ------w- c:\windows\system32\MpSigStub.exe
2014-03-03 10:18 . 2014-03-03 10:18 1892056 ----a-w- c:\windows\system32\RTSndMgr.cpl
2014-03-03 10:17 . 2014-03-03 10:17 2947160 ----a-w- c:\windows\system32\drivers\RTKVHDA.sys
2014-03-03 10:17 . 2014-03-03 10:17 125144 ----a-w- c:\windows\system32\RtkCoInstII.dll
2014-03-03 10:17 . 2014-03-03 10:17 2329816 ----a-w- c:\windows\system32\RtkAPO.dll
2014-03-01 04:10 . 2014-03-13 06:19 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll
2014-03-01 03:52 . 2014-03-13 06:18 61952 ----a-w- c:\windows\system32\iesetup.dll
2014-03-01 03:51 . 2014-03-13 06:19 51200 ----a-w- c:\windows\system32\ieetwproxystub.dll
2014-03-01 03:38 . 2014-03-13 06:19 112128 ----a-w- c:\windows\system32\ieUnatt.exe
2014-03-01 03:38 . 2014-03-13 06:19 108032 ----a-w- c:\windows\system32\ieetwcollector.exe
2014-03-01 03:37 . 2014-03-13 06:19 553472 ----a-w- c:\windows\system32\jscript9diag.dll
2014-03-01 03:31 . 2014-03-13 06:19 646144 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2014-03-01 03:14 . 2014-03-13 06:19 4244480 ----a-w- c:\windows\system32\jscript9.dll
2014-03-01 03:00 . 2014-03-13 06:18 1964032 ----a-w- c:\windows\system32\inetcpl.cpl
2014-03-01 02:32 . 2014-03-13 06:19 1820160 ----a-w- c:\windows\system32\wininet.dll
2014-02-28 11:22 . 2014-02-28 11:22 893552 ----a-w- c:\programdata\Microsoft\ehome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2014-02-28 11:12 . 2014-02-28 11:12 42168 ----a-w- c:\programdata\Microsoft\ehome\Packages\MCEClientUX\dSM\StartResources.dll
2014-02-28 11:12 . 2014-02-28 11:12 1236816 ----a-w- c:\programdata\Microsoft\ehome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2014-02-07 01:07 . 2014-03-13 06:18 2349056 ----a-w- c:\windows\system32\win32k.sys
2014-02-05 07:52 . 2014-02-05 07:52 56320 ----a-w- c:\windows\system32\TSWbPrxy.exe
2014-02-05 07:52 . 2014-02-05 07:52 49664 ----a-w- c:\windows\system32\drivers\TsUsbFlt.sys
2014-02-05 07:52 . 2014-02-05 07:52 4916224 ----a-w- c:\windows\system32\mstscax.dll
2014-02-05 07:52 . 2014-02-05 07:52 46592 ----a-w- c:\windows\system32\MsRdpWebAccess.dll
2014-02-05 07:52 . 2014-02-05 07:52 37376 ----a-w- c:\windows\system32\tsgqec.dll
2014-02-05 07:52 . 2014-02-05 07:52 32768 ----a-w- c:\windows\system32\TsUsbGDCoInstaller.dll
2014-02-05 07:52 . 2014-02-05 07:52 317440 ----a-w- c:\windows\system32\wksprt.exe
2014-02-05 07:52 . 2014-02-05 07:52 3072 ----a-w- c:\windows\system32\drivers\en-US\tsusbflt.sys.mui
2014-02-05 07:52 . 2014-02-05 07:52 2739712 ----a-w- c:\windows\system32\rdpcorets.dll
2014-02-05 07:52 . 2014-02-05 07:52 269312 ----a-w- c:\windows\system32\aaclient.dll
2014-02-05 07:52 . 2014-02-05 07:52 221184 ----a-w- c:\windows\system32\rdpudd.dll
2014-02-05 07:52 . 2014-02-05 07:52 192000 ----a-w- c:\windows\system32\rdpendp_winip.dll
2014-02-05 07:52 . 2014-02-05 07:52 16896 ----a-w- c:\windows\system32\wksprtPS.dll
2014-02-05 07:52 . 2014-02-05 07:52 14848 ----a-w- c:\windows\system32\drivers\rdpvideominiport.sys
2014-02-05 07:52 . 2014-02-05 07:52 13312 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-02-05 07:52 . 2014-02-05 07:52 12800 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2014-02-05 07:52 . 2014-02-05 07:52 12288 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-02-05 07:52 . 2014-02-05 07:52 1048064 ----a-w- c:\windows\system32\mstsc.exe
2014-02-04 22:00 . 2014-02-04 22:00 6864600 ----a-w- c:\windows\system32\drivers\rtsuvc.sys
2014-02-04 22:00 . 2014-02-04 22:00 421592 ----a-w- c:\windows\system32\RtCamX.dll
2014-02-04 22:00 . 2014-02-04 22:00 1910488 ----a-w- c:\windows\RtCamU.exe
2014-02-04 21:08 . 2014-02-04 21:08 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2014-02-04 20:51 . 2014-02-04 20:51 2547928 ----a-w- c:\windows\system32\RtkPgExt.dll
2014-02-04 02:04 . 2014-03-13 06:18 1230336 ----a-w- c:\windows\system32\WindowsCodecs.dll
2014-02-04 02:04 . 2014-03-13 06:19 509440 ----a-w- c:\windows\system32\qedit.dll
2014-01-29 02:06 . 2014-03-13 06:18 381440 ----a-w- c:\windows\system32\wer.dll
2014-01-28 02:07 . 2014-03-13 06:18 185344 ----a-w- c:\windows\system32\wwansvc.dll
2014-01-26 16:55 . 2014-02-01 19:40 109856 ----a-w- c:\windows\system32\IObitSmartDefragExtension.dll
2014-01-23 16:40 . 2013-08-21 18:53 268968 ----a-w- c:\windows\system32\sqlite3.dll
2013-08-26 13:03 . 2013-08-19 09:27 1068544 ----a-w- c:\program files\LPIEHome.ocx
2013-08-26 13:03 . 2013-08-19 09:27 6582 ----a-w- c:\program files\vaultcommonc.js
2013-08-26 13:03 . 2013-08-19 09:27 612864 ----a-w- c:\program files\LPToolbar.dll
2013-08-26 13:03 . 2013-08-19 09:27 2972 ----a-w- c:\program files\json2c.js
2013-08-26 13:03 . 2013-08-19 09:27 180736 ----a-w- c:\program files\WinBioStandalone.exe
2013-08-26 13:03 . 2013-08-19 09:27 6484992 ----a-w- c:\program files\LPPlugin.dll
2013-08-19 09:27 . 2013-08-19 09:27 11634176 ----a-w- c:\program files\Common Files\lpuninstall.exe
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\~\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
2014-03-31 10:04 752960 ----a-w- c:\program files\IObit\IObit Uninstaller\UninstallExplorer32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2014-04-05 05:26 223432 ----a-w- c:\users\Scott\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2014-04-05 05:26 223432 ----a-w- c:\users\Scott\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2014-04-05 05:26 223432 ----a-w- c:\users\Scott\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_B]
@="{CC5FC992-B0AA-47CD-9DC2-83445083CBB8}"
[HKEY_CLASSES_ROOT\CLSID\{CC5FC992-B0AA-47CD-9DC2-83445083CBB8}]
2012-08-03 09:39 1476480 ----a-w- c:\program files\ASUS\ASUS WebStorage\3.0.143.296\AsusWSShellExt.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_O]
@="{618A47A2-528B-4D9A-AFC8-97D3233511E2}"
[HKEY_CLASSES_ROOT\CLSID\{618A47A2-528B-4D9A-AFC8-97D3233511E2}]
2012-08-03 09:39 1476480 ----a-w- c:\program files\ASUS\ASUS WebStorage\3.0.143.296\AsusWSShellExt.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_U]
@="{1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4D}"
[HKEY_CLASSES_ROOT\CLSID\{1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4D}]
2012-08-03 09:39 1476480 ----a-w- c:\program files\ASUS\ASUS WebStorage\3.0.143.296\AsusWSShellExt.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Scott\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Scott\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Scott\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2014-01-30 14:05 579400 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2014-01-30 14:05 579400 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2014-01-30 14:05 579400 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2014-01-30 14:05 579400 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2014-01-30 14:05 579400 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2014-01-30 14:05 579400 ----a-w- c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GoogleDriveSync"="c:\program files\Google\Drive\googledrivesync.exe" [2014-01-30 21822128]
"Advanced SystemCare Ultimate"="c:\program files\IObit\Advanced SystemCare Ultimate 7\ASCTray.exe" [2013-12-02 2562368]
"SkyDrive"="c:\users\Scott\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe" [2014-04-05 257224]
"Spybot-S&D Cleaning"="c:\program files\Spybot - Search & Destroy 2\SDCleaner.exe" [2013-09-20 3666224]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\synaptics\syntp\syntpenh.exe" [2013-08-25 1750312]
"SynAsusAcpi"="c:\program files\Synaptics\SynTP\SynAsusAcpi.exe" [2013-08-25 83240]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2013-07-02 254336]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2014-03-03 12017368]
"Persistence"="c:\windows\system32\igfxpers.exe" [2013-08-26 150552]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2013-08-26 141848]
"IAStorIcon"="c:\program files\intel\intel(r) rapid storage technology\iastoricon.exe" [2010-06-08 284696]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2013-08-26 173592]
"SDTray"="c:\program files\Spybot - Search & Destroy 2\SDTray.exe" [2013-07-25 5624784]
"IObit Malware Fighter"="c:\program files\IObit\IObit Malware Fighter\IMF.exe" [2014-02-27 1592640]
.
c:\users\Scott\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Scott\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-1-3 30714328]
EvernoteClipper.lnk - c:\users\Scott\AppData\Local\Apps\Evernote\Evernote\EvernoteClipper.exe [2013-7-23 1089888]
Send to OneNote.lnk - c:\program files\Microsoft Office 15\root\office15\ONENOTEM.EXE /tsr [2014-3-19 194224]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
CrashPlan Tray.lnk - c:\program files\CrashPlan\CrashPlanTray.exe [2013-4-9 209920]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2013-05-07 115440]
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean.exe
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]
@="Service"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\googletalk
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Akamai NetSession Interface]
2013-06-04 23:01 4489472 ----a-w- c:\users\Tech\AppData\Local\Akamai\netsession_win.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
2013-04-21 19:43 59720 ----a-w- c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
2010-12-08 23:14 3058304 ----a-w- c:\windows\AsScrPro.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSPRP]
2010-12-08 23:14 2018032 ----a-w- c:\program files\ASUS\APRP\aprp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
2012-08-03 09:38 740736 ----a-w- c:\program files\ASUS\ASUS WebStorage\3.0.143.296\AsusWSPanel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
2011-03-15 01:09 2565520 ----a-w- c:\program files\Canon\MyPrinter\BJMYPRT.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenuEx]
2011-03-28 10:40 1611160 ----a-w- c:\program files\Canon\Solution Menu EX\CNSEMAIN.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CapsHook]
2011-07-13 07:38 34728 ----a-w- c:\windows\System32\AsusSender.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXMediaServer]
2013-12-23 04:16 450560 ----a-w- c:\program files\DivX\DivX Media Server\DivXMediaServer.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
2013-11-15 00:48 1861968 ----a-w- c:\program files\DivX\DivX Update\DivXUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google+ Auto Backup]
2013-12-23 10:09 3622864 ----a-w- c:\users\Tech\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotkeyMon]
2011-07-13 07:38 34728 ----a-w- c:\windows\System32\AsusSender.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotkeyService]
2011-07-13 07:38 34728 ----a-w- c:\windows\System32\AsusSender.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iSeriesCharge]
2010-08-18 08:55 96176 ----a-w- c:\program files\ASUS\USBChargeSetting\iSeriesCharge.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LiveUpdate]
2011-07-13 07:38 34728 ----a-w- c:\windows\System32\AsusSender.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OOBESetup]
2009-12-11 06:56 334848 ----a-w- c:\program files\ASUS\OOBERegBackup\OOBERegBackup.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PhonePower]
2012-02-15 14:04 7506944 ----a-w- c:\program files\PhonePower\PhonePower.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2013-05-01 01:59 421888 ----a-w- c:\program files\QuickTime\QTTask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SuperHybridEngine]
2011-07-13 07:38 34728 ----a-w- c:\windows\System32\AsusSender.exe
.
R2 280f2936;SW_Sustainer; [x]
R2 LiveUpdateSvc;LiveUpdate;c:\program files\IObit\LiveUpdate\LiveUpdate.exe [2014-03-31 2153792]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2013-10-23 172192]
R3 bcbtums;Bluetooth USB LD Filter;c:\windows\system32\drivers\bcbtums.sys [2013-08-09 174936]
R3 btwampfl;btwampfl;c:\windows\system32\drivers\btwampfl.sys [2013-08-09 144600]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [2010-05-21 33320]
R3 clwvd;CyberLink WebCam Virtual Driver;c:\windows\system32\DRIVERS\clwvd.sys [x]
R3 hwusbdev;Huawei DataCard USB PNP Device;c:\windows\system32\DRIVERS\ewusbdev.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2014-03-01 108032]
R3 libusb0;Jawbone LibUsb-Win32 - Kernel Driver 07/08/2013,1.2.6.1;c:\windows\system32\DRIVERS\libusb0.sys [2013-08-30 42592]
R3 pwdrvio;pwdrvio;c:\windows\system32\pwdrvio.sys [2013-09-30 15688]
R3 pwdspio;pwdspio;c:\windows\system32\pwdspio.sys [2013-09-30 10320]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2014-02-05 14848]
R3 RegFilter;RegFilter;c:\program files\IObit\IObit Malware Fighter\drivers\win7_x86\regfilter.sys [2013-11-19 32288]
R3 Ser2plx86;Prolific Serial port WDF driver;c:\windows\system32\DRIVERS\ser2pl.sys [2013-02-22 134144]
R3 TOO;TOO; [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2014-02-05 49664]
R3 UrlFilter;UrlFilter;c:\program files\IObit\IObit Malware Fighter\drivers\win7_x86\UrlFilter.sys [2013-11-19 20944]
R3 usbrndis6;USB RNDIS6 Adapter;c:\windows\system32\DRIVERS\usb80236.sys [2013-03-21 15872]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2013-09-25 1343400]
R3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam.sys [2008-05-06 11520]
R4 FileMonitor;FileMonitor;c:\program files\IObit\IObit Malware Fighter\Drivers\win7_x86\FileMonitor.sys [2013-03-23 21480]
S0 AiDriver;ASUS Charger Driver;c:\windows\system32\DRIVERS\AiDriver.sys [2010-05-20 13224]
S0 SmartDefragDriver;SmartDefragDriver;c:\windows\System32\Drivers\SmartDefragDriver.sys [2013-12-24 18624]
S1 AsUpIO;AsUpIO;c:\windows\system32\drivers\AsUpIO.sys [2011-02-09 11832]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2011-07-22 12880]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [2011-07-12 67664]
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [2013-10-10 120088]
S2 AdvancedSystemCareService7;Advanced SystemCare Service 7;c:\program files\IObit\Advanced SystemCare Ultimate 7\ASCService.exe [2013-12-16 886592]
S2 ASCAntivirusSrv;AdvancedSystemCareAntivirus;c:\program files\IObit\Advanced SystemCare Ultimate 7\ascavsvc.exe [2013-12-10 647488]
S2 AsusService;Asus Launcher Service;c:\windows\System32\AsusService.exe [2009-08-19 219136]
S2 BBSvc;Bing Bar Update Service;c:\program files\Microsoft\BingBar\BBSvc.EXE [2011-10-21 196176]
S2 BBUpdate;BBUpdate;c:\program files\Microsoft\BingBar\SeaPort.EXE [2011-10-13 249648]
S2 BcmBtRSupport;Bluetooth Driver Management Service;c:\windows\system32\BtwRSupportService.exe [2013-08-09 1678040]
S2 ClickToRunSvc;Microsoft Office ClickToRun Service;c:\program files\Microsoft Office 15\ClientX86\OfficeClickToRun.exe [2014-03-30 1520824]
S2 CrashPlanService;CrashPlan Backup Service;c:\program files\CrashPlan\CrashPlanService.exe [2013-04-08 152576]
S2 FoxitCloudUpdateService;Foxit Cloud Safe Update Service;c:\program files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [2014-02-19 239680]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-06-08 13336]
S2 IMFservice;IMF Service;c:\program files\IObit\IObit Malware Fighter\IMFsrv.exe [2014-01-24 342336]
S2 RtkAudioService;Realtek Audio Service;c:\program files\Realtek\Audio\HDA\RtkAudioService.exe [2013-11-29 250072]
S2 SDScannerService;Spybot-S&D 2 Scanner Service;c:\program files\Spybot - Search & Destroy 2\SDFSSvc.exe [2013-10-15 3921880]
S2 SDUpdateService;Spybot-S&D 2 Updating Service;c:\program files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2013-09-20 1042272]
S2 SDWSCService;Spybot-S&D 2 Security Center Service;c:\program files\Spybot - Search & Destroy 2\SDWSCSvc.exe [2013-09-13 171416]
S2 SlingAgentService;SlingAgentService;c:\program files\Sling Media\SlingAgent\SlingAgentService.exe [2010-11-03 94024]
S2 TeamViewer9;TeamViewer 9;c:\program files\TeamViewer\Version9\TeamViewer_Service.exe [2014-02-17 4915040]
S3 L1C;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x86.sys [2013-08-22 109256]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2013-08-22 62208]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2013-08-22 141568]
S3 rtsuvc;Realtek USB2.0 PC Camera;c:\windows\system32\DRIVERS\rtsuvc.sys [2014-02-04 6864600]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-03-15 09:50 1150280 ----a-w- c:\program files\Google\Chrome\Application\33.0.1750.154\Installer\chrmstp.exe
.
Contents of the 'Scheduled Tasks' folder
.
2014-04-15 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-13 14:05]
.
2013-08-23 c:\windows\Tasks\Driver Booster Startup.job
- c:\program files\IObit\Driver Booster\DriverBooster.exe [2013-08-22 16:57]
.
2014-04-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-12-07 19:13]
.
2014-04-15 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-12-07 19:13]
.
.
------- Supplementary Scan -------
.
uStart Page = about:Tabs
mStart Page = hxxp://www.google.com
TCP: DhcpNameServer = 192.168.1.1
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-Locked - (no file)
HKU-Default-Run-Advanced SystemCare 5 - c:\program files\IObit\Advanced SystemCare 5\ASCTray.exe
Notify-SDWinLogon - SDWinLogon.dll
MSConfigStartUp-KiesPreload - c:\program files\Samsung\Kies\Kies.exe
MSConfigStartUp-KiesTrayAgent - c:\program files\Samsung\Kies\KiesTrayAgent.exe
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'Explorer.exe'(4752)
c:\program files\ASUS\ASUS WebStorage\3.0.143.296\ASUSWSShellExt.dll
c:\program files\WIDCOMM\Bluetooth Software\btncopy.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Realtek\Audio\HDA\RtHDVBg.exe
c:\windows\system32\WLANExt.exe
c:\windows\system32\conhost.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\WIDCOMM\Bluetooth Software\btwdins.exe
c:\windows\system32\taskhost.exe
c:\windows\system32\conhost.exe
c:\program files\IObit\Advanced SystemCare Ultimate 7\Monitor.exe
c:\program files\Microsoft Office 15\Root\Office15\MsoSync.exe
.
**************************************************************************
.
Completion time: 2014-04-15 20:06:38 - machine was rebooted
ComboFix-quarantined-files.txt 2014-04-15 18:06
.
Pre-Run: 61,614,747,648 bytes free
Post-Run: 61,355,307,008 bytes free
.
- - End Of File - - 3D76ECED4DD1661C15008B4B57B6DA75
A36C5E4F47E84449FF07ED3517B43A31
 
#6 ·
Hello again, sydneymtbdog. You're very welcome.

Are you still getting popups, etc. in Chrome?

If so you will have to uninstall, delete your Chrome folder, then re-install Chrome.

This will delete your bookmarks and passwords, so you will have to export them, then import them once re-installed.

Download the Google Chrome installer and save it to your desktop:

Chrome Browser

Uninstall Google Chrome via Programs and Features in your Control Panel.

Press the Windows "logo" key and "R" key then copy/paste the following single-line command into the Run box and click OK:

cmd /c rd /s /q "C:\Users\Scott\AppData\Local\Google\Chrome"

A DOS window will open and close again, this is normal.

------------------------------------------------------

Reboot your computer. Re-install Google Chrome using the installer you downloaded earlier.

Are the popups gone in Chrome now?

------------------------------------------------------
 
#12 ·
Still with us, sydneymtbdog? I generally unsubscribe from threads after 3 days of inactivity. If you do not reply within 24 hours, this thread will be closed.

------------------------------------------------------
 
#13 ·
Due to lack of response, this topic will now be closed. If you need continued support, please begin a new thread, and provide a link to this topic. This applies only to the original topic starter. Everyone else please begin a New Topic, after following the steps outlined here:

IMPORTANT - Read This Before Posting For Malware Removal Help

------------------------------------------------------
 
Status
Not open for further replies.
You have insufficient privileges to reply here.
Top