Quantcast
Channel: Tech Support Guy - Virus & Other Malware Removal
Viewing all articles
Browse latest Browse all 4746

BSOD problems

$
0
0
Sorry - I missed that one.


Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 17-01-2014 03
Ran by CazMo at 2014-01-18 17:25:45 Run:1
Running from C:\Users\CazMo\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
HKCU\...\Run: [Google Update*] - [x] <===== ATTENTION (ZeroAccess rootkit hidden path)
HKU\Mcx1-CAZMO-VAIO\...\Winlogon: [Shell] C:\Windows\eHome\McrMgr.exe [343552 2009-07-14] (Microsoft Corporation) <==== ATTENTION
URLSearchHook: HKLM-x32 - (No Name) - {b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14} - No File
URLSearchHook: HKCU - (No Name) - {b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14} - No File
SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://search.conduit.com/Results.as...rchTerms}&SSPV=
SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://search.conduit.com/Results.as...rchTerms}&SSPV=
BHO-x32: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
Toolbar: HKCU - No Name - {3BBD3C14-4C16-4989-8366-95BC9179779D} - No File
Toolbar: HKCU - No Name - {B6AC5E3C-5CEB-4E72-B451-F0E1BA983C14} - No File
C:\Users\CazMo\AppData\Local\Google\Desktop\Install
Task: {07C6C2D1-0420-445E-BBE6-59D3BE96A8D0} - System32\Tasks\0 => Iexplore.exe <==== ATTENTION
Task: {42C07A71-D80D-4CF9-A907-8496531B8AA9} - System32\Tasks\GreatArcadeHits => C:\Users\CazMo\AppData\Local\GreatArcadeHits\GAHUpdate.exe <==== ATTENTION
C:\Users\CazMo\AppData\Local\GreatArcadeHits\GAHUpdate.exe
Task: {58A3764F-E68B-4569-A47C-1AFF74B6121D} - \DSite No Task File
Task: {5C0904AD-BE43-44F2-9C55-BF1179E80D03} - System32\Tasks\SpeedyPC Update Version3 Startup Task => C:\Program Files (x86)\Common Files\SpeedyPC Software\UUS3\SpeedyPC_Update3.exe
Task: {5FB75AAD-F862-4698-9935-5F5DA0E02CFA} - \Express FilesUpdate No Task File
Task: {6F08AEEF-9F5C-4184-AFCF-05DC5CEB7D6A} - System32\Tasks\SpeedyPC Pro_sch_7AC1395B-7EEC-11E3-9CE2-0024BEAC8FA5 => C:\Program Files (x86)\SpeedyPC Software\SpeedyPC\SpeedyPC.exe
Task: {7F2368B2-1022-4642-A48B-9D57C892AFDB} - System32\Tasks\SpeedyPC Registration3 => Rundll32.exe "C:\Program Files (x86)\Common Files\SpeedyPC Software\UUS3\UUS3.dll" RunUns
C:\Program Files (x86)\Common Files\SpeedyPC Software\UUS3\SpeedyPC_Update3.exe
C:\Program Files (x86)\SpeedyPC Software\SpeedyPC\SpeedyPC.exe
C:\Program Files (x86)\Common Files\SpeedyPC Software\UUS3\UUS3.dll
Task: {A3993D7D-55C9-4F81-8114-FD6BE37E3CE0} - System32\Tasks\4655 => Wscript.exe C:\Users\CazMo\AppData\Local\Temp\launchie.vbs //B <==== ATTENTION
C:\Users\CazMo\AppData\Local\Temp\launchie.vbs
Task: {D8378B29-3ABF-4747-BEED-B28598FA1E9D} - System32\Tasks\SpeedyPC Update Version3 => C:\Program Files (x86)\Common Files\SpeedyPC Software\UUS3\SpeedyPC_Update3.exe
C:\Program Files (x86)\Common Files\SpeedyPC Software\UUS3\SpeedyPC_Update3.exe
Task: C:\Windows\Tasks\SpeedyPC Pro_sch_7AC1395B-7EEC-11E3-9CE2-0024BEAC8FA5.job => C:\Program Files (x86)\SpeedyPC Software\SpeedyPC\SpeedyPC.exe
C:\Program Files (x86)\SpeedyPC Software\SpeedyPC\SpeedyPC.exe
*****************
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update* => Value deleted successfully.
HKU\Mcx1-CAZMO-VAIO\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => Value deleted successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\{b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14} => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14} => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} => Key deleted successfully.
HKCR\CLSID\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{3BBD3C14-4C16-4989-8366-95BC9179779D} => Value deleted successfully.
HKCR\CLSID\{3BBD3C14-4C16-4989-8366-95BC9179779D} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{B6AC5E3C-5CEB-4E72-B451-F0E1BA983C14} => Value deleted successfully.
HKCR\CLSID\{B6AC5E3C-5CEB-4E72-B451-F0E1BA983C14} => Key not found.
C:\Users\CazMo\AppData\Local\Google\Desktop\Install => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{07C6C2D1-0420-445E-BBE6-59D3BE96A8D0} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{07C6C2D1-0420-445E-BBE6-59D3BE96A8D0} => Key deleted successfully.
C:\Windows\System32\Tasks\0 => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\0 => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{42C07A71-D80D-4CF9-A907-8496531B8AA9} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{42C07A71-D80D-4CF9-A907-8496531B8AA9} => Key deleted successfully.
C:\Windows\System32\Tasks\GreatArcadeHits => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GreatArcadeHits => Key deleted successfully.
"C:\Users\CazMo\AppData\Local\GreatArcadeHits\GAHUpdate.exe" => File/Directory not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{58A3764F-E68B-4569-A47C-1AFF74B6121D} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{58A3764F-E68B-4569-A47C-1AFF74B6121D} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DSite => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5C0904AD-BE43-44F2-9C55-BF1179E80D03} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5C0904AD-BE43-44F2-9C55-BF1179E80D03} => Key deleted successfully.
C:\Windows\System32\Tasks\SpeedyPC Update Version3 Startup Task => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SpeedyPC Update Version3 Startup Task => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5FB75AAD-F862-4698-9935-5F5DA0E02CFA} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5FB75AAD-F862-4698-9935-5F5DA0E02CFA} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Express FilesUpdate => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6F08AEEF-9F5C-4184-AFCF-05DC5CEB7D6A} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6F08AEEF-9F5C-4184-AFCF-05DC5CEB7D6A} => Key deleted successfully.
C:\Windows\System32\Tasks\SpeedyPC Pro_sch_7AC1395B-7EEC-11E3-9CE2-0024BEAC8FA5 => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SpeedyPC Pro_sch_7AC1395B-7EEC-11E3-9CE2-0024BEAC8FA5 => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7F2368B2-1022-4642-A48B-9D57C892AFDB} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7F2368B2-1022-4642-A48B-9D57C892AFDB} => Key deleted successfully.
C:\Windows\System32\Tasks\SpeedyPC Registration3 => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SpeedyPC Registration3 => Key deleted successfully.
"C:\Program Files (x86)\Common Files\SpeedyPC Software\UUS3\SpeedyPC_Update3.exe" => File/Directory not found.
"C:\Program Files (x86)\SpeedyPC Software\SpeedyPC\SpeedyPC.exe" => File/Directory not found.
"C:\Program Files (x86)\Common Files\SpeedyPC Software\UUS3\UUS3.dll" => File/Directory not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A3993D7D-55C9-4F81-8114-FD6BE37E3CE0} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A3993D7D-55C9-4F81-8114-FD6BE37E3CE0} => Key deleted successfully.
C:\Windows\System32\Tasks\4655 => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4655 => Key deleted successfully.
"C:\Users\CazMo\AppData\Local\Temp\launchie.vbs" => File/Directory not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D8378B29-3ABF-4747-BEED-B28598FA1E9D} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D8378B29-3ABF-4747-BEED-B28598FA1E9D} => Key deleted successfully.
C:\Windows\System32\Tasks\SpeedyPC Update Version3 => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SpeedyPC Update Version3 => Key deleted successfully.
"C:\Program Files (x86)\Common Files\SpeedyPC Software\UUS3\SpeedyPC_Update3.exe" => File/Directory not found.
C:\Windows\Tasks\SpeedyPC Pro_sch_7AC1395B-7EEC-11E3-9CE2-0024BEAC8FA5.job => Moved successfully.
"C:\Program Files (x86)\SpeedyPC Software\SpeedyPC\SpeedyPC.exe" => File/Directory not found.
==== End of Fixlog ====

Viewing all articles
Browse latest Browse all 4746

Trending Articles