Phone and other accessories not connecting and/or working properly

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by bjdprivate, Dec 14, 2013.

  1. bjdprivate

    bjdprivate Private E-2

    Hi there,

    I have had ongoing slowness of the computer for the last month, and my phone is not connecting properly to transfer music (via musicbee). Other accessories are also not working, such as a sound Blaster wireless dongle and an LG external dvd drive.

    I have run the malware forum programs with some success and the logs are attached.

    However, MG\TOOLs did not complete its sequence even when left overnight.

    The computer is faster; however, the accessories are still not working can you help?

    Attached Files:

  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Hi and welcome. :)

    Despite what you said about MGTools, I have a full set of logs from it running.

    Before we continue I would like for you to use MSConfig to put this machine back into normal start up mode

    Re run Hitman and have it delete Potential Unwanted Programs.

    Now explain what issues remain please.
  3. bjdprivate

    bjdprivate Private E-2

    Thanks Kestrel13,

    I will do this tonight Melbourne time.

  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    No worries. :) I'll be here floating about somewhere.
  5. bjdprivate

    bjdprivate Private E-2

    Thanks for your patience.

    I left hitman pro running all day and it stalled. i have attached a screen dump of where it is at the moment!!

    Where to from here?


    Attached Files:

  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Try running it again. Without anything else running in the background. If you find it hangs up and stalls again, cancel it out and I will give you a manual fix.
  7. bjdprivate

    bjdprivate Private E-2

    HI I've run it again as requested with the same result.

    What now?

  8. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    As I said:

    Here it comes: (although not quite manual;))

    Download and run OTM.

    Download OTM by Old Timer and save it to your Desktop.

    • Right-click OTM.exe And select " Run as administrator " to run it.
    • Paste the following code under the [​IMG] area. Do not include the word Code.

    C:\Users\Charles Dorings comp\AppData\Local\OpenCandy
    C:\Users\Charles Dorings comp\AppData\LocalLow\AskToolbar
    [-HKU\S-1-5-21-1848723552-3925726775-3031632135-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}]
    [-HKU\S-1-5-21-1848723552-3925726775-3031632135-1001\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}]
    • Return to OTM, right click in the Paste List of Files/Folders to Move window (under the yellow bar) and choose Paste.
    • Push the large [​IMG] button.
    • OTM may ask to reboot the machine. Please do so if asked.
    • Copy everything in the Results window (under the green bar), and paste it in your next reply.

    NOTE: If you are unable to copy/paste from this window (as will be the case if the machine was rebooted), open Notepad (Start->All Programs->Accessories->Notepad), click File->Open, in the File Name box enter *.log and press the Enter key, navigate to the C:\_OTM\MovedFiles folder, and open the newest .log file present, and attach the contents of that document back here in your next post.

    Now re run Hitman again and attach the new log from it please.
  9. bjdprivate

    bjdprivate Private E-2

    HI There,

    Sorry about the delay!!

    the OT LOg is
    All processes killed
    ========== FILES ==========
    C:\Users\bruno\AppData\LocalLow\Conduit\ChromeExtData\dknkjnkhedbanphkkpbpcgoblmkbfhlf\Repository folder moved successfully.
    C:\Users\bruno\AppData\LocalLow\Conduit\ChromeExtData\dknkjnkhedbanphkkpbpcgoblmkbfhlf folder moved successfully.
    C:\Users\bruno\AppData\LocalLow\Conduit\ChromeExtData folder moved successfully.
    C:\Users\bruno\AppData\LocalLow\Conduit folder moved successfully.
    C:\Users\Charles Dorings comp\AppData\Local\OpenCandy folder moved successfully.
    C:\Users\Charles Dorings comp\AppData\LocalLow\AskToolbar folder moved successfully.
    ========== REGISTRY ==========
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\secman.DLL\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{BDB69379-802F-4eaf-B541-F8DE92DD98DB}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BDB69379-802F-4eaf-B541-F8DE92DD98DB}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\secman.OutlookSecurityManager.1\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\secman.OutlookSecurityManager\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Conduit\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1001\Software\AppDataLow\AskToolbarInfo\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1001\Software\AppDataLow\Software\Crossrider\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1001\Software\\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}\ not found.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1001\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}\ not found.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1006\Software\AppDataLow\AskToolbarInfo\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1006\Software\AppDataLow\Software\Crossrider\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1006\Software\AppDataLow\Software\SmartBar\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1008\Software\AppDataLow\AskToolbarInfo\ not found.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1008\Software\AppDataLow\Software\Crossrider\ not found.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1013\Software\AppDataLow\AskToolbarInfo\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1013\Software\AppDataLow\Software\Crossrider\ deleted successfully.
    ========== COMMANDS ==========


    User: All Users

    User: bruno
    ->Temp folder emptied: 166362756 bytes
    ->Temporary Internet Files folder emptied: 11560489 bytes
    ->Java cache emptied: 4760982 bytes
    ->FireFox cache emptied: 4470226 bytes
    ->Google Chrome cache emptied: 170396502 bytes
    ->Flash cache emptied: 57983 bytes

    User: Charles Dorings comp
    ->Temp folder emptied: 28694767 bytes
    ->Temporary Internet Files folder emptied: 171333266 bytes
    ->Java cache emptied: 9303736 bytes
    ->Google Chrome cache emptied: 21535856 bytes
    ->Apple Safari cache emptied: 0 bytes
    ->Flash cache emptied: 107610 bytes

    User: Classic .NET AppPool
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 67 bytes
    ->Flash cache emptied: 56502 bytes

    User: Default
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 33170 bytes
    ->Flash cache emptied: 57472 bytes

    User: Default User
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: Itunes Test
    ->Temp folder emptied: 280454 bytes
    ->Temporary Internet Files folder emptied: 897547 bytes
    ->Flash cache emptied: 58282 bytes

    User: postgres
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 67 bytes
    ->Flash cache emptied: 58264 bytes

    User: Public
    ->Temp folder emptied: 0 bytes

    %systemdrive% .tmp files removed: 14648 bytes
    %systemroot% .tmp files removed: 184243 bytes
    %systemroot%\System32 .tmp files removed: 1564672 bytes
    %systemroot%\System32\drivers .tmp files removed: 0 bytes
    Windows Temp folder emptied: 121526649 bytes
    %systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 15805219 bytes
    %systemroot%\system32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 741 bytes
    RecycleBin emptied: 142531562 bytes

    Total Files Cleaned = 831.00 mb

    OTM by OldTimer - Version log created on 12202013_213957

    Files moved on Reboot...
    C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.

    Registry entries deleted on Reboot...

    And the Hitman is attached. looking forward to finding out what happens next!!

    Attached Files:

    Last edited by a moderator: Dec 21, 2013
  10. bjdprivate

    bjdprivate Private E-2

    HI There,

    Thanks for waiting Christmas and work keep getting in the way!!

    THe OT LOg was:
    All processes killed
    ========== FILES ==========
    C:\Users\bruno\AppData\LocalLow\Conduit\ChromeExtData\dknkjnkhedbanphkkpbpcgoblmkbfhlf\Repository folder moved successfully.
    C:\Users\bruno\AppData\LocalLow\Conduit\ChromeExtData\dknkjnkhedbanphkkpbpcgoblmkbfhlf folder moved successfully.
    C:\Users\bruno\AppData\LocalLow\Conduit\ChromeExtData folder moved successfully.
    C:\Users\bruno\AppData\LocalLow\Conduit folder moved successfully.
    C:\Users\Charles Dorings comp\AppData\Local\OpenCandy folder moved successfully.
    C:\Users\Charles Dorings comp\AppData\LocalLow\AskToolbar folder moved successfully.
    ========== REGISTRY ==========
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\secman.DLL\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{BDB69379-802F-4eaf-B541-F8DE92DD98DB}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BDB69379-802F-4eaf-B541-F8DE92DD98DB}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\secman.OutlookSecurityManager.1\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\secman.OutlookSecurityManager\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}\ not found.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Conduit\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1001\Software\AppDataLow\AskToolbarInfo\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1001\Software\AppDataLow\Software\Crossrider\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1001\Software\\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}\ not found.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1001\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}\ not found.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1006\Software\AppDataLow\AskToolbarInfo\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1006\Software\AppDataLow\Software\Crossrider\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1006\Software\AppDataLow\Software\SmartBar\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1008\Software\AppDataLow\AskToolbarInfo\ not found.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1008\Software\AppDataLow\Software\Crossrider\ not found.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1013\Software\AppDataLow\AskToolbarInfo\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1848723552-3925726775-3031632135-1013\Software\AppDataLow\Software\Crossrider\ deleted successfully.
    ========== COMMANDS ==========


    User: All Users

    User: bruno
    ->Temp folder emptied: 166362756 bytes
    ->Temporary Internet Files folder emptied: 11560489 bytes
    ->Java cache emptied: 4760982 bytes
    ->FireFox cache emptied: 4470226 bytes
    ->Google Chrome cache emptied: 170396502 bytes
    ->Flash cache emptied: 57983 bytes

    User: Charles Dorings comp
    ->Temp folder emptied: 28694767 bytes
    ->Temporary Internet Files folder emptied: 171333266 bytes
    ->Java cache emptied: 9303736 bytes
    ->Google Chrome cache emptied: 21535856 bytes
    ->Apple Safari cache emptied: 0 bytes
    ->Flash cache emptied: 107610 bytes

    User: Classic .NET AppPool
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 67 bytes
    ->Flash cache emptied: 56502 bytes

    User: Default
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 33170 bytes
    ->Flash cache emptied: 57472 bytes

    User: Default User
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: Itunes Test
    ->Temp folder emptied: 280454 bytes
    ->Temporary Internet Files folder emptied: 897547 bytes
    ->Flash cache emptied: 58282 bytes

    User: postgres
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 67 bytes
    ->Flash cache emptied: 58264 bytes

    User: Public
    ->Temp folder emptied: 0 bytes

    %systemdrive% .tmp files removed: 14648 bytes
    %systemroot% .tmp files removed: 184243 bytes
    %systemroot%\System32 .tmp files removed: 1564672 bytes
    %systemroot%\System32\drivers .tmp files removed: 0 bytes
    Windows Temp folder emptied: 121526649 bytes
    %systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 15805219 bytes
    %systemroot%\system32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 741 bytes
    RecycleBin emptied: 142531562 bytes

    Total Files Cleaned = 831.00 mb

    OTM by OldTimer - Version log created on 12202013_213957

    Files moved on Reboot...
    C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.

    Registry entries deleted on Reboot...

    and the Hitman log is attached.

    where to from here?!!


    Attached Files:

  11. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Sorry for the delay in a response. Your posts got caught up in moderation.

    Hitman log looks good. How're things running? :)

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds