Solved Problem internet local area connection doesnt have valid ip

Asus / M11bb-ca002s
March 16, 2015 at 07:29:42
Specs: Windows 8.1 64 bits, AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
For the last week or so, my internet keep crashing. when I do a check out (click on button to repair) I get a weird message telling several time that local area connection 4 (or 8 or even 11) doesn't have a valid IP.
NOthing changed, I still have a router for this computer and laptop. I do use sometimes VPN (TunnelBear Internet blocker IP) (I think) but im not using it when this messages happens and the weird thing to me it says it 3 or 4 times with a different number.

How do I solve this and what created this, nembye here so steps by steps appreciated.

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


See More: Problem internet local area connection doesnt have valid ip

Report •


✔ Best Answer
March 26, 2015 at 16:42:19
How to fix Internet Explorer has stopped working (2015 Update)
http://windows7themes.net/en-us/how...

What to do when Internet Explorer isn't working
http://windows.microsoft.com/en-au/...

How to perform a clean boot to troubleshoot a problem in Windows 8, Windows 7, or Windows Vista
http://support.microsoft.com/kb/929135

How to Fix Windows Internet Explorer Not Responding
http://www.wikihow.com/Fix-Windows-...



#1
March 16, 2015 at 08:17:29
It would be a good idea to run the following two programs just in case this is a malware issue:

MalwareBytes:
http://filehippo.com/download_malwa...
(green Download button top right - not anything else on the page)
Run the program but before doing the scan go to "Settings > Detection and Protection" and put a checkmark in "Scan for rootkits".

ADWCleaner:
http://www.bleepingcomputer.com/dow...
(blue Download button near top - not anything else on the page).
Download and "Save" the file somewhere. Go to the saved file then double click it to run the Scan. You then have options to remove whatever it shows under each heading in the table that appears below, although it is usually safe to run "Cleaning".

If they find anything please copy/paste the logs on here. If they don't we can probably put the malware idea on the back burner.

Always pop back and let us know the outcome - thanks


Report •

#2
March 16, 2015 at 12:16:03
malware found nothing. the ADW I let it cleaned but here is the log (but I clicked clean like you suggested)
# AdwCleaner v4.112 - Logfile created 16/03/2015 at 13:45:54
# Updated 09/03/2015 by Xplode
# Database : 2015-03-15.1 [Server]
# Operating system : Windows 8.1 (x64)
# Username : N - HOME
# Running from : C:\Users\N\Documents\coupns\AdwCleaner.exe
# Option : Cleaning

***** [ Services ] *****

Service Deleted : sbmntr
[#] Service Deleted : SMUpdd
[#] Service Deleted : CouponPrinterService

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\quickclick
Folder Deleted : C:\ProgramData\Viewpoint
Folder Deleted : C:\ProgramData\shopndroopp
Folder Deleted : C:\ProgramData\sHoppnDroP
Folder Deleted : C:\ProgramData\8a9c7f66e1a5d612
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Coupons
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\predm
Folder Deleted : C:\Program Files (x86)\Viewpoint
Folder Deleted : C:\Program Files (x86)\Coupons
Folder Deleted : C:\Users\N\AppData\Local\globalUpdate
Folder Deleted : C:\Users\N\AppData\Local\BrowserHelper
Folder Deleted : C:\Users\N\AppData\RoamiNg\Activeris
Folder Deleted : C:\Users\N\AppData\RoamiNg\DriverCure
Folder Deleted : C:\Users\N\AppData\RoamiNg\pdfforge
Folder Deleted : C:\Users\N\AppData\RoamiNg\Store
Folder Deleted : C:\Users\N\AppData\RoamiNg\WTools
Folder Deleted : C:\Users\N\DocumeNts\Optimizer Pro
Folder Deleted : C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd
File Deleted : C:\WINDOWS\SysWOW64\RegistryHelperLM.ocx

***** [ Scheduled tasks ] *****

Task Deleted : SMupdate1

***** [ Shortcuts ] *****

Shortcut Disinfected : C:\Users\Public\Desktop\Opera.lnk
Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Feature Mananger.lnk
Shortcut Disinfected : C:\Users\N\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Shortcut Disinfected : C:\Users\N\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk

***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtl
Key Deleted : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtl.1
Key Deleted : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtlSecondary
Key Deleted : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtlSecondary.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Key Deleted : HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@viewpoint.com/VMP
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{58FDA6AF-67D8-4198-B7CD-94B17532C8D5}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00B11DA2-75ED-4364-ABA5-9A95B1F5E946}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6EC77D09-02CB-4E1F-E3C4-FB141B2610B3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A85A5E6A-DE2C-4F4E-99DC-F469DF5A0EEC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E69D4A59-73DE-4E38-9FB3-740EC4D9060D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{020B1D4B-5738-4C77-9E19-4F173DD9B486}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A85A5E6A-DE2C-4F4E-99DC-F469DF5A0EEC}
Key Deleted : HKCU\Software\anchorfree
Key Deleted : HKCU\Software\Brothersoft
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\MetaStream
Key Deleted : HKLM\SOFTWARE\Viewpoint
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Coupon Printer for Windows5.0.1.3
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : [x64] HKLM\SOFTWARE\ShopperPro
Key Deleted : [x64] HKLM\SOFTWARE\Speedchecker Limited

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Google Chrome v32.0.1700.107

[C:\Users\berny\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
[C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
[C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www-searching.com/search.aspx?site=chuiauto&pid=s&shr=d&s=amodk02827_0_0_0_0,7f885bbe-534c-4857-80f1-60144046a3ef,&q={searchTerms}

-\\ Opera v28.0.1750.40

[C:\Users\berny\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
[C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
[C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www-searching.com/search.aspx?site=chuiauto&pid=s&shr=d&s=amodk02827_0_0_0_0,7f885bbe-534c-4857-80f1-60144046a3ef,&q={searchTerms}

*************************

AdwCleaner[R0].txt - [7012 bytes] - [16/03/2015 13:38:19]
AdwCleaner[S0].txt - [7557 bytes] - [16/03/2015 13:45:54]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [7616 bytes] ##########

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#3
March 16, 2015 at 12:50:39
More than I expected. Any change with the symptoms you reported?

Always pop back and let us know the outcome - thanks


Report •

Related Solutions

#4
March 16, 2015 at 13:01:46
I wasn't on internet for a few hours. ill know more tonight if it fixed it.Could it have been that AWD cleaned it or?

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#5
March 16, 2015 at 13:06:42
It is just possible

In view of what ADW found it would be worth running this too as it sometimes unearths more:

Junkware Removal Tool (JRT)
http://www.bleepingcomputer.com/dow...
(blue Download button near top - not anything else on the page).
Download and "Save" the file somewhere. Go to the saved file then double click it to run JRT. It might appear to have stopped at times but sit tight until it has finished.

Copy the log on here again please. Then let us know how you get on after a session online.

Always pop back and let us know the outcome - thanks


Report •

#6
March 16, 2015 at 13:18:21
log of JRT
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.4 (03.16.2015:1)
OS: Windows 8.1 x64
Ran by N on 2015-03-16 at 16:12:57.27
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


~~~ Services

~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL

~~~ Registry Keys

~~~ Files

Successfully deleted: [File] "C:\WINDOWS\couponprinter.ocx"

~~~ Folders

Successfully deleted: [Folder] C:\ProgramData\Alawar

~~~ Event Viewer Logs were cleared

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 2015-03-16 at 16:16:15.86
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#7
March 16, 2015 at 13:28:16
I don't know if its related to the clean up but now my anti virus (avast pro) isn't working anymore and don't want to start (even restarted computer with no luck) could it be it deleted a file it needs?

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#8
March 16, 2015 at 13:32:12
OK thanks. Difficult to advise on that Coupon Printer. If you Google it you will find that it is dubious. In ADW there were several computer tweakers which are best avoided if they were knowingly installed.

Just running those three programs does not necessarily mean your computer is clean but what I wanted to get an idea whether this is a malware issue or not - trying not to get side lined.

Give it a good whirl on line because if you still have the issue then malware can probably be put on the back burner.

Always pop back and let us know the outcome - thanks

message edited by Derek


Report •

#9
March 16, 2015 at 13:35:35
Ok do you have an idea why avast stopped working after I did those 3 malware tests?

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#10
March 16, 2015 at 13:40:27
Sorry, I think we overlapped on the Avast bit (#7). Can't see anything in the log that implicates those two programs and both are used widely on here. Malware can often attack Anti-virus programs.

Is there some way you can uninstall re-install Avast Pro with whatever key they provided? I've only ever used the free version.

Obviously it would be well worth sorting that before spending much time online.

Always pop back and let us know the outcome - thanks

message edited by Derek


Report •

#11
March 16, 2015 at 17:27:39
Some of the "malware" utilities occasionally see/identify some anti-virus utilities as possible/potential threats; and disable them.

Possibly a re-install of your anti-virus may get it running again?

Similarly (as Derek suugests/observes) some actual malware go after some anti-virus utilities, and disable them. Some malware and some anti-virus utils also-can screw up some aspects of networking (as I recently discovered with a windows-7 installation).


Report •

#12
March 16, 2015 at 17:32:22
I had to reinstall avast. Ill check what happens with internet but it did stop twice already

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#13
March 16, 2015 at 18:13:13
Are you getting the same error messages when you click on repair?

One simple thing you could try is turning off your router for at least 30 seconds the turning it on again (soft reset).

Always pop back and let us know the outcome - thanks

message edited by Derek


Report •

#14
March 16, 2015 at 18:53:59
.. also have a look in Device Manager and see if there are any errors showing against "Network adapters". They are usually yellow exclamation marks.

Are you using Wifi or an Ethernet cable?
If you have other computers are they doing the same?

Always pop back and let us know the outcome - thanks


Report •

#15
March 17, 2015 at 10:06:30
No other computer I rarely use laptop here, had much trouble getting internet so couldn't reply. did the repair and the error message is different now. using Ethernet cable internet.

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#16
March 17, 2015 at 10:59:55
Did this computer originally have Windows 8.1 on it or was it an upgrade from Win 8. The reason I'm asking is that there were some new manufacturers driver updates for Win 8.1. In any event it would be worth installing the latest driver for your LAN.

Go here:
http://www.asus.com/Desktops/M11BB/...
Select OS (Windows 8.1 64bit).
Select LAN from list.
Under "Download from" select Global.
Save (not Run) the file "Realtek_LAN_Win7-8-1_VER767_VER818.zip"
Double click the saved file to open it.
You will see a folder inside it with the same name as above but without the .zip part.
Copy that folder onto the desktop.
Open up the desktop folder and find the sub-folder "Realtek" and then "Windows8".
Open up the Windows8 folder then double click setup.exe to start the install.

Always pop back and let us know the outcome - thanks


Report •

#17
March 17, 2015 at 11:36:26
the setup exe only allows me to repair or remove so I clicked repair istaht what yo uwanted? there is an asussetup.exe= or is this the one you wanted

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#18
March 17, 2015 at 12:10:54
It probably suggests repair because you already have the update on there. No harm going for the repair though - it might just help. It is setup.exe not the other one.

Always pop back and let us know the outcome - thanks


Report •

#19
March 17, 2015 at 12:18:07
K did it and btw you were right it was 8 then upgraded right away to 8.1

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#20
March 17, 2015 at 14:20:46
OK, let us know how you get on - will keep fingers and toes crossed.

Always pop back and let us know the outcome - thanks


Report •

#21
March 18, 2015 at 07:20:30
Arg, I still get the error messages telling several time that local area connection 4 (or 8 or even 11) doesn't have a valid IP.

any other idea^

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#22
March 18, 2015 at 08:45:25
mmm - Have a look-see at the discussion here; appears to offer a few possible solutions

http://tinyurl.com/ohuatcs

- including one from social technet @ microsoft-land

http://tinyurl.com/lex5hef

Seems to be a not uncommon problem/irritation too...?


Report •

#23
March 18, 2015 at 15:36:21
bonjour wasnt theproblem (I ahve the latest version) but in task manageer some services are stopped and I know nothing about those so I dont know if I should restart them? maybe one of them is the problem?

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#24
March 18, 2015 at 16:22:05
"bonjour wasn't the problem"
How did you prove this - by uninstall?

Here is a list of Windows 8.1 service default settings:
http://www.blackviper.com/service-c...

Always pop back and let us know the outcome - thanks


Report •

#25
March 19, 2015 at 14:59:45
no it was installed and up to date. I lloked at your link...I have lots more goind on...
didn't use internet much but I do get a pop up from time to time to tell me internet stopped (which I never got before)

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#26
March 19, 2015 at 15:16:10
So Bonjour is still a possible culprit. The only way to be properly sure is to uninstall it but just temporarily disabling the Bonjour service might prove something.

As far as your Internet Explorer playing up you could try the Reset:
Control Panel > Internet Options > Advanced > Reset button. You will loose your addons but they come back with usage. It will not lose your Favorites etc.

Malware, viruses and the like have not been totally excluded. We have a helper on these boards who is expert in these matters. If you want to ensure your computer is properly clean then I'll alert him (Johnw) and if he is available he will take you through more programs which delve deeper. Let us know if you wish to do this - something I would recommend but it is entirely up to you.

Always pop back and let us know the outcome - thanks

message edited by Derek


Report •

#27
March 19, 2015 at 16:01:02
ok im up to that(go deeper) albeit malware and avast didn't find nothing. did the reset on explorer. will disable bonjour and reinstall it then

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#28
March 19, 2015 at 16:32:41
OK. Keep Bonjour uninstalled until you are satisfied it is not the culprit.

I will alert Johnw as requested. He is in Perth Australia and is probably around by now.

Always pop back and let us know the outcome - thanks


Report •

#29
March 19, 2015 at 16:39:24
Arg, I uninstalled it...then resinstalled it a few minutes ago...do I remove it again?

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#30
March 19, 2015 at 16:42:40
If you want to be sure it isn't implicated, then you need to uninstall it and see how the internet behaves without it.

Always pop back and let us know the outcome - thanks


Report •

#31
March 19, 2015 at 18:08:59
One little thing you should check.

Go to "Control Panel > Internet Options > Connections > LAN settings button".

See if there is a check mark in Proxy server. If so, uncheck it unless you are using a Proxy server. If you are unsure then it is about certain you are not using one.

Always pop back and let us know the outcome - thanks


Report •

#32
March 19, 2015 at 18:09:27
Please download Farbar Recovery Scan Tool and save it onto your Desktop. If your default download location is not the Desktop, drag it out of it's location onto the Desktop.
http://www.bleepingcomputer.com/dow...
If we have to run Farbar more than once, refer this SS.
http://i.imgur.com/yUxNw0j.gif
Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
Double-click to run it. When the tool opens click Yes to disclaimer.
Press Scan button.
It will make a log (FRST.txt) on the Desktop.
The first time the tool is run, it makes also another log (Addition.txt).
The logs are large, upload them using this, or upload to a site of your choosing. No account needed. Give us the links please.
http://www.zippyshare.com/
Instructions on how to use ZippyShare.
http://i.imgur.com/naG6t2T.gif
http://i.imgur.com/Vi9ZdIh.gif
http://i.imgur.com/1IZu5kP.gif

Report •

#33
March 23, 2015 at 10:11:06
ok bonjour removed, then lan wasn't checked, doing farbar as we speak internet keeps stopping so hard to stay on.
link to zippy share
http://www53.zippyshare.com/v/dBpeQ...
http://www53.zippyshare.com/v/HmkKz...

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#34
March 23, 2015 at 16:27:41
Copy & Paste the text below ( starting cmd: netsh winsock reset ), save it into Notepad on your Desktop & name it fixlist.txt
NOTE: It is important that Notepad is used. The fix will not work if Word or some other program is used.
NOTE: It is important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work.
NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system.

cmd: netsh winsock reset
cmd: ipconfig /flushdns
closeprocesses:
emptytemp:
Task: {ADB4C1BB-FE68-4845-842E-86C6DE14A92F} - System32\Tasks\Microsoft\Windows\Multimedia\SMupdate3 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update3 <==== ATTENTION
Task: {C275ED2B-3F2E-4623-BA8D-D0115E8992EF} - System32\Tasks\SMW_UpdateTask_Time_323731393034313337382d3437415a556c2a3223346c41 => Wscript.exe //B "C:\ProgramData\SearchModulePlus\smhe.js" smu.exe /invoke /f:check_services /l:0 <==== ATTENTION
Task: {D930B9DF-2603-4895-9F6B-3F7E656B38EE} - System32\Tasks\Microsoft\Windows\Maintenance\SMupdate2 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update2 <==== ATTENTION
AlternateDataStreams: C:\ProgramData\Temp:02DD996C
AlternateDataStreams: C:\ProgramData\Temp:2CB9631F
AlternateDataStreams: C:\ProgramData\Temp:57B2B96C
AlternateDataStreams: C:\ProgramData\Temp:902C848D
AlternateDataStreams: C:\ProgramData\Temp:99F8C0E6
AlternateDataStreams: C:\ProgramData\Temp:B0456F0C
AlternateDataStreams: C:\ProgramData\Temp:D3331ADB
AlternateDataStreams: C:\ProgramData\Temp:D5CCCBAA
AlternateDataStreams: C:\ProgramData\Temp:F3A89712
AlternateDataStreams: C:\Users\N\SkyDrive:ms-properties
HKU\S-1-5-21-480956558-2517508603-328147277-1001\...\Policies\Explorer: [NoFolderOptions] 0
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKU\S-1-5-21-480956558-2517508603-328147277-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?track...
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-480956558-2517508603-328147277-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?track...
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKU\S-1-5-21-480956558-2517508603-328147277-1001 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
CHR dev: Chrome dev build detected! <======= ATTENTION
OPR Extension: (No Name) - C:\Users\N\AppData\Roaming\Opera Software\Opera Stable\Extensions\hdhmofnopkgkpgnpggloijpbnaonhplc [2015-02-25]
S2 SPDRIVER_1510.0.0.0; No ImagePath
S3 WinRing0_1_2_0; No ImagePath
S3 wanatw; \SystemRoot\system32\DRIVERS\wanatw64.sys [X]
2015-03-13 06:59 - 2012-07-26 03:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-03-06 12:53 - 2013-07-18 04:05 - 00000000 ____D () C:\ProgramData\Temp

Run FRST/FRST64 and press the Fix button just once and wait.
If for some reason the tool needs a restart, please make sure you let the system restart normally. After that, let the tool complete its run.
When finished FRST will generate a log on the Desktop (Fixlog.txt). Please Copy & Paste the contents into your reply.

message edited by Johnw


Report •

#35
March 23, 2015 at 18:18:21
Here is the Fix log Thanks!
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015
Ran by N at 2015-03-23 21:08:06 Run:1
Running from C:\Users\N\Desktop
Loaded Profiles: N (Available profiles: N & berny & ELIZ)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
cmd: netsh winsock reset
cmd: ipconfig /flushdns
closeprocesses:
emptytemp:
Task: {ADB4C1BB-FE68-4845-842E-86C6DE14A92F} - System32\Tasks\Microsoft\Windows\Multimedia\SMupdate3 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update3 <==== ATTENTION
Task: {C275ED2B-3F2E-4623-BA8D-D0115E8992EF} - System32\Tasks\SMW_UpdateTask_Time_323731393034313337382d3437415a556c2a3223346c41 => Wscript.exe //B "C:\ProgramData\SearchModulePlus\smhe.js" smu.exe /invoke /f:check_services /l:0 <==== ATTENTION
Task: {D930B9DF-2603-4895-9F6B-3F7E656B38EE} - System32\Tasks\Microsoft\Windows\Maintenance\SMupdate2 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update2 <==== ATTENTION
AlternateDataStreams: C:\ProgramData\Temp:02DD996C
AlternateDataStreams: C:\ProgramData\Temp:2CB9631F
AlternateDataStreams: C:\ProgramData\Temp:57B2B96C
AlternateDataStreams: C:\ProgramData\Temp:902C848D
AlternateDataStreams: C:\ProgramData\Temp:99F8C0E6
AlternateDataStreams: C:\ProgramData\Temp:B0456F0C
AlternateDataStreams: C:\ProgramData\Temp:D3331ADB
AlternateDataStreams: C:\ProgramData\Temp:D5CCCBAA
AlternateDataStreams: C:\ProgramData\Temp:F3A89712
AlternateDataStreams: C:\Users\N\SkyDrive:ms-properties
HKU\S-1-5-21-480956558-2517508603-328147277-1001\...\Policies\Explorer: [NoFolderOptions] 0
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKU\S-1-5-21-480956558-2517508603-328147277-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?track...
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-480956558-2517508603-328147277-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?track...
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKU\S-1-5-21-480956558-2517508603-328147277-1001 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
CHR dev: Chrome dev build detected! <======= ATTENTION
OPR Extension: (No Name) - C:\Users\N\AppData\Roaming\Opera Software\Opera Stable\Extensions\hdhmofnopkgkpgnpggloijpbnaonhplc [2015-02-25]
S2 SPDRIVER_1510.0.0.0; No ImagePath
S3 WinRing0_1_2_0; No ImagePath
S3 wanatw; \SystemRoot\system32\DRIVERS\wanatw64.sys [X]
2015-03-13 06:59 - 2012-07-26 03:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-03-06 12:53 - 2013-07-18 04:05 - 00000000 ____D () C:\ProgramData\Temp
*****************


========= netsh winsock reset =========


Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.


========= End of CMD: =========


========= ipconfig /flushdns =========


Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========= End of CMD: =========

Processes closed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{ADB4C1BB-FE68-4845-842E-86C6DE14A92F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ADB4C1BB-FE68-4845-842E-86C6DE14A92F}" => Key deleted successfully.
C:\Windows\System32\Tasks\Microsoft\Windows\Multimedia\SMupdate3 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Multimedia\SMupdate3" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C275ED2B-3F2E-4623-BA8D-D0115E8992EF}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C275ED2B-3F2E-4623-BA8D-D0115E8992EF}" => Key deleted successfully.
C:\Windows\System32\Tasks\SMW_UpdateTask_Time_323731393034313337382d3437415a556c2a3223346c41 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SMW_UpdateTask_Time_323731393034313337382d3437415a556c2a3223346c41" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D930B9DF-2603-4895-9F6B-3F7E656B38EE}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D930B9DF-2603-4895-9F6B-3F7E656B38EE}" => Key deleted successfully.
C:\Windows\System32\Tasks\Microsoft\Windows\Maintenance\SMupdate2 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Maintenance\SMupdate2" => Key deleted successfully.
C:\ProgramData\Temp => ":02DD996C" ADS removed successfully.
C:\ProgramData\Temp => ":2CB9631F" ADS removed successfully.
C:\ProgramData\Temp => ":57B2B96C" ADS removed successfully.
C:\ProgramData\Temp => ":902C848D" ADS removed successfully.
C:\ProgramData\Temp => ":99F8C0E6" ADS removed successfully.
C:\ProgramData\Temp => ":B0456F0C" ADS removed successfully.
C:\ProgramData\Temp => ":D3331ADB" ADS removed successfully.
C:\ProgramData\Temp => ":D5CCCBAA" ADS removed successfully.
C:\ProgramData\Temp => ":F3A89712" ADS removed successfully.
"C:\Users\N\SkyDrive" => ":ms-properties" ADS not found.
HKU\S-1-5-21-480956558-2517508603-328147277-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoFolderOptions => value deleted successfully.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive1" => Key deleted successfully.
HKCR\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A} => Key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive2" => Key deleted successfully.
HKCR\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => Key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive3" => Key deleted successfully.
HKCR\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524} => Key not found.
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive1" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A} => Key not found.
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive2" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => Key not found.
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive3" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524} => Key not found.
"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
"HKU\S-1-5-21-480956558-2517508603-328147277-1001\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} => Key not found.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKU\S-1-5-21-480956558-2517508603-328147277-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F}" => Key deleted successfully.
HKCR\CLSID\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value deleted successfully.
HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => Key not found.
HKU\S-1-5-21-480956558-2517508603-328147277-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => value deleted successfully.
HKCR\CLSID\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => Key not found.
CHR dev: Chrome dev build detected! <======= ATTENTION => Error: No automatic fix found for this entry.
C:\Users\N\AppData\Roaming\Opera Software\Opera Stable\Extensions\hdhmofnopkgkpgnpggloijpbnaonhplc => Moved successfully.
SPDRIVER_1510.0.0.0 => Service deleted successfully.
WinRing0_1_2_0 => Service deleted successfully.
wanatw => Service deleted successfully.
C:\WINDOWS\CbsTemp => Moved successfully.
C:\ProgramData\Temp => Moved successfully.
EmptyTemp: => Removed 1.8 GB temporary data.


The system needed a reboot.

==== End of Fixlog 21:12:10 ====

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#36
March 23, 2015 at 18:24:18
We are breaking down the infections layer by layer.

Run RogueKiller
http://www.softpedia.com/get/Securi...
http://majorgeeks.com/RogueKiller_d...
http://www.geekstogo.com/forum/file...
http://tigzy.geekstogo.com/roguekil...
http://www.sur-la-toile.com/RogueKi...
User Guide
http://www.adlice.com/softwares/rog...
Official tutorial
http://www.adlice.com/softwares/rog...
How to Temporarily Disable your Anti-virus
http://www.bleepingcomputer.com/for...
http://www.techsupportforum.com/for...
If RogueKiller won't run, open IE & turn off SmartScreen Filter.
http://windows.microsoft.com/en-AU/...
Download & SAVE to your Desktop. If your default download location is not the Desktop, drag it out of it's location onto the Desktop.
Quit all programs that you may have started.
Shutdown your antivirus to avoid any conflicts.
Please disconnect any USB or external drives from the computer before you run this scan!
For Vista or Windows 7/8, right-click and select "Run as Administrator to start"

For Windows XP, double-click to start.
Wait until Prescan has finished ...
Then Click on "Scan" button
Wait until the Status box shows "Scan Finished"
Anything that is not checked, leave it unchecked.
Click on "Delete"
Wait until the Status box shows "Deleting Finished"
Click on "Report" and Copy & Paste the content of the Notepad into your next reply.
The log should be found in RKreport[1].txt on your Desktop.
Exit/Close RogueKiller.
When completed make sure to re-enable your antivirus.


Report •

#37
March 23, 2015 at 19:48:45
here is the report!
RogueKiller V10.5.7.0 [Mar 22 2015] by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Website : http://www.adlice.com/softwares/rog...
Blog : http://www.adlice.com

Operating System : Windows 8.1 (6.3.9200 ) 64 bits version
Started in : Normal mode
User : N [Administrator]
Started from : C:\Users\N\Desktop\RogueKiller.exe
Mode : Delete -- Date : 03/23/2015 22:47:52

¤¤¤ Processes : 0 ¤¤¤

¤¤¤ Registry : 16 ¤¤¤
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-480956558-2517508603-328147277-1001\Software\Microsoft\Internet Explorer\Main | Start Page : http://www.hotmail.com/ -> Not selected
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-480956558-2517508603-328147277-1001\Software\Microsoft\Internet Explorer\Main | Start Page : http://www.hotmail.com/ -> Not selected
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 24.200.241.37 24.202.72.13 24.200.0.1 [CANADA (CA)][CANADA (CA)][CANADA (CA)] -> Not selected
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 24.200.241.37 24.202.72.13 24.200.0.1 [CANADA (CA)][CANADA (CA)][CANADA (CA)] -> Not selected
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{1F09BC17-D454-45EB-92D8-90B85B68CDB8} | DhcpNameServer : 10.9.0.1 [(Private Address) (XX)] -> Not selected
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{6F2A15B0-57C9-47C6-9F9B-DCCE1BA3103B} | NameServer : 89.41.60.38,95.169.183.219 [ROMANIA (RO)][(Unknown Country?) (XX)] -> Not selected
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{8AAC2676-C826-45C0-A05A-48952CEE79F8} | NameServer : 8.8.8.8,4.4.4.4 [UNITED STATES (US)] -> Not selected
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{8AAC2676-C826-45C0-A05A-48952CEE79F8} | DhcpNameServer : 24.200.241.37 24.202.72.13 24.200.0.1 [CANADA (CA)][CANADA (CA)][CANADA (CA)] -> Not selected
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{1F09BC17-D454-45EB-92D8-90B85B68CDB8} | DhcpNameServer : 10.9.0.1 [(Private Address) (XX)] -> Not selected
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{6F2A15B0-57C9-47C6-9F9B-DCCE1BA3103B} | NameServer : 89.41.60.38,95.169.183.219 [ROMANIA (RO)][(Unknown Country?) (XX)] -> Not selected
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{8AAC2676-C826-45C0-A05A-48952CEE79F8} | NameServer : 8.8.8.8,4.4.4.4 [UNITED STATES (US)] -> Not selected
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{8AAC2676-C826-45C0-A05A-48952CEE79F8} | DhcpNameServer : 24.200.241.37 24.202.72.13 24.200.0.1 [CANADA (CA)][CANADA (CA)][CANADA (CA)] -> Not selected
[PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> Not selected
[PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> Not selected
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> Not selected
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> Not selected

¤¤¤ Tasks : 0 ¤¤¤

¤¤¤ Files : 0 ¤¤¤

¤¤¤ Hosts File : 2 ¤¤¤
[C:\Windows\System32\drivers\etc\hosts] 127.0.0.1 www.iobit.com
[C:\Windows\System32\drivers\etc\hosts] 127.0.0.1 www.asc55.iobit.com

¤¤¤ Antirootkit : 9 (Driver: Not loaded [0xc000036b]) ¤¤¤
[IAT:Inl(Hook.IEAT)] (iexplore.exe) ntdll.dll - LdrUnloadDll : D:\Program Files\AVAST Software\Avast\snxhk.dll @ 0x7028d5f0 (jmp 0x6fcdd1f4)
[IAT:Inl(Hook.IEAT)] (iexplore.exe) ntdll.dll - LdrLoadDll : D:\Program Files\AVAST Software\Avast\snxhk.dll @ 0x7028d4d0 (jmp 0x6fcdd2d8)
[IAT:Inl(Hook.IEAT)] (iexplore.exe) aswCmnBS.dll - usnCloseTracker : D:\Program Files\AVAST Software\Avast\aswCmnOS.dll @ 0x73e73eb0 (jmp dword near [0x741705c0])
[IAT:Inl(Hook.IEAT)] (iexplore.exe) ntdll.dll - LdrUnloadDll : D:\Program Files\AVAST Software\Avast\snxhk.dll @ 0x7028d5f0 (jmp 0x6d73d1f4)
[IAT:Inl(Hook.IEAT)] (iexplore.exe) ntdll.dll - LdrLoadDll : D:\Program Files\AVAST Software\Avast\snxhk.dll @ 0x7028d4d0 (jmp 0x6d73d2d8)
[IAT:Inl(Hook.IEAT)] (iexplore.exe) aswCmnBS.dll - usnCloseTracker : D:\Program Files\AVAST Software\Avast\aswCmnOS.dll @ 0x73e73eb0 (jmp dword near [0x741705c0])
[IAT:Inl(Hook.IEAT)] (iexplore.exe) ntdll.dll - LdrUnloadDll : D:\Program Files\AVAST Software\Avast\snxhk.dll @ 0x7028d5f0 (jmp 0x7013d1f4)
[IAT:Inl(Hook.IEAT)] (iexplore.exe) ntdll.dll - LdrLoadDll : D:\Program Files\AVAST Software\Avast\snxhk.dll @ 0x7028d4d0 (jmp 0x7013d2d8)
[IAT:Inl(Hook.IEAT)] (iexplore.exe) aswCmnBS.dll - usnCloseTracker : D:\Program Files\AVAST Software\Avast\aswCmnOS.dll @ 0x73e73eb0 (jmp dword near [0x741705c0])

¤¤¤ Web browsers : 0 ¤¤¤

¤¤¤ MBR Check : ¤¤¤
+++++ PhysicalDrive0: TOSHIBA DT01ACA100 SATA Disk Device +++++
--- User ---
[MBR] 30e29ddf8da7447ec03e0f1d8c394922
[BSP] af82cccbb60bc26541d07cebd86e8957 : Empty MBR Code
Partition table:
0 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 2048 | Size: 800 MB
1 - [MAN-MOUNT] EFI system partition | Offset (sectors): 1640448 | Size: 260 MB
2 - [MAN-MOUNT] Microsoft reserved partition | Offset (sectors): 2172928 | Size: 128 MB
3 - Basic data partition | Offset (sectors): 2435072 | Size: 153250 MB
4 - [SYSTEM][MAN-MOUNT] | Offset (sectors): 316291072 | Size: 350 MB
5 - Basic data partition | Offset (sectors): 317007872 | Size: 779599 MB
6 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 1913626624 | Size: 19481 MB
User = LL1 ... OK
User = LL2 ... OK

+++++ PhysicalDrive1: Generic- Multi-Card USB Device +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )


============================================
RKreport_SCN_03232015_224433.log - RKreport_DEL_03232015_224736.log

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#38
March 23, 2015 at 19:57:49
Extract from your Farbar log.
"Malwarebytes Anti-Malware version 1.75.0.1300 (HKLM-x32\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation)"
Way, way out of date.

Update & Run Malwarebytes' Anti-Malware ( MBAM ) Free Version. Use Quick scan ( now called Threat Scan )
Malwarebytes' Anti-Malware
http://www.softpedia.com/get/Antivi...
http://www.malwarebytes.org/free/
Make sure you uncheck > Enable free trial < at the END of the install.
http://i.imgur.com/tUFCbYz.gif
Click the Settings tab at the top, and then in the left column, select Detections and Protections, and if not already checked place a checkmark in the selection box to Scan for rootkits.
http://i.imgur.com/dZgt1g2.gif
Copy and Paste the contents of the log, in your reply please.

If potential threats are detected, ensure that Quarantine is selected as the Action for all the listed items, and click the Apply Actions button.
If your MBAM log indicates "No action taken". That's usually a result of NOT clicking the Apply Actions button after the scan. In most cases, a restart will be required.
If you misplace your log, here are ways to find.
http://i.imgur.com/U9IqcVj.gif
http://i.imgur.com/zHMG6J9.gif
http://i.imgur.com/ZZ1trsv.gif
http://i.imgur.com/LL0K3qs.gif
Or,
(Export log to save as txt)
After the restart once you are back at your desktop, open MBAM once more.
Click on the History tab > Application Logs.
Double click on the scan log which shows the Date and time of the scan just performed.
Click 'Export'.
Click 'Text file (*.txt)'
In the Save File dialog box which appears, click on Desktop.
In the File name: box type a name for your scan log.
A message box named 'File Saved' should appear stating "Your file has been successfully exported".
Click Ok
http://i.imgur.com/LNl3Sgw.gif
http://i.imgur.com/xGJgawB.gif


Report •

#39
March 23, 2015 at 20:16:47
the old Mbam couldn't get all deleted. and now the new one wont install. it gives me an error message that version1. is still installed but I removed it so something is wrong

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#40
March 23, 2015 at 20:19:24
See if this can find the remnants.

It does it in 2 steps.

Wise Program Uninstaller
http://www.softpedia.com/get/Tweak/...
http://www.freewarefiles.com/Wise-P...
http://www.freewarefiles.com/screen...
http://wisecleaner.com/wiseuninstal...


Report •

#41
March 23, 2015 at 20:27:09
I have to go out soon, if unable to get Malwarebytes running, I shall sort that out later.

Run ESET Online Scanner, Copy and Paste the contents of the log in your reply please. This scan may take a very long while, so please be patient. Maybe start it before going to work or bed.
http://www.eset.com/us/online-scann...
http://www.eset.com/home/products/o...
If your comp is unbootable, or won't let you download, you will have to download ESET from a good computer, put it on a flash/thumb/pen/usb drive & run it from there.
Create a ESET SysRescue CD or USB drive
http://kb.eset.com/esetkb/index?pag...
How do I use my ESET SysRescue CD or USB flash drive to scan and clean my system?
http://kb.eset.com/esetkb/index?pag...
Configure ESET this way & disable your AV.
http://i.imgur.com/3U7YC.gif
How to Temporarily Disable your Anti-virus
http://www.bleepingcomputer.com/for...
http://www.techsupportforum.com/for...
Which web browsers are compatible with ESET Online Scanner?
http://www.nod32.fi/eset-online-sca...
http://kb.eset.com/esetkb/index?pag...
Online Scanner not working
http://kb.eset.com/esetkb/index?pag...
My ESET product detected a threat—what should I do?
http://kb.eset.com/esetkb/index?pag...
Why Would I Ever Need an Online Virus Scanner? I already have an antivirus program installed, isn't that enough?
http://www.squidoo.com/the-best-fre...
Once onto a machine, malware can disable antivirus programs, prevent antimalware programs from downloading updates, or prevent a user from running antivirus scans or installing new antivirus software or malware removal tools. At this point even though you are aware the computer is infected, removal is very difficult.
5: Why does the ESET Online Scanner run slowly on my computer?
If you have other antivirus, antispyware or anti-malware programs running on your computer, they may intercept the scan being performed by the ESET Online Scanner and hinder performance. You may wish to disable the real-time protection components of your other security software before running the ESET Online Scanner. Remember to turn them back on after you are finished.
17: How can I view the log file from ESET Online Scanner?
http://kb.eset.com/esetkb/index?pag...
http://www.eset.com/home/products/o...
The ESET Online Scanner saves a log file after running, which can be examined or sent in to ESET for further analysis. The path to the log file is "C:\Program Files\EsetOnlineScanner\log.txt". You can view this file by navigating to the directory and double-clicking on it in Windows Explorer, or by copying and pasting the path specification above (including the quotation marks) into the Start ? Run dialog box from the Start Menu on the Desktop.
If no threats are found, you will simply see an information window that no threats were found.
http://www.trishtech.com/security/s...


Report •

#42
March 24, 2015 at 01:09:07
After posting the ESET results.

Extract from the Farbar log.
"CCleaner (HKLM\...\CCleaner) (Version: 4.10 - Piriform)"

Update CCleaner to latest version & run, as per these SS's.
http://i.imgur.com/6AIQMvR.gif
http://i.imgur.com/UtS1yx4.gif
http://i.imgur.com/0BzDgUb.gif
http://i.imgur.com/0lXlNn4.gif
http://i.imgur.com/0PU0gnT.gif
http://i.imgur.com/rXwEU7c.gif
Then check to see if you can install Malwarebytes.

message edited by Johnw


Report •

#43
March 24, 2015 at 10:47:04
weird, old mbam founded nothing last week new mbam installed your software worked.
log:
Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 2015-03-24
Scan Time: 12:07:43 PM
Logfile:
Administrator: Yes

Version: 2.01.4.1018
Malware Database: v2015.03.24.06
Rootkit Database: v2015.02.25.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 8.1
CPU: x64
File System: NTFS
User: N

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 495233
Time Elapsed: 22 min, 8 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 2
PUP.Optional.CrossRider.A, HKU\S-1-5-21-480956558-2517508603-328147277-1004\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\30935, Quarantined, [a1b5c9808406e84efde4c50db25133cd],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-480956558-2517508603-328147277-1005\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\30935, Quarantined, [cd89ac9ddcae70c621c0854d4cb752ae],

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 2
PUP.Optional.ShopperPro.A, C:\Users\Public\Documents\ShopperPro, Quarantined, [560037123357b5819b7b337e51b25fa1],
PUP.Optional.ShopperPro.A, C:\Users\Public\Documents\ShopperPro\JsDriver, Quarantined, [560037123357b5819b7b337e51b25fa1],

Files: 1
PUP.Optional.ShopperPro.A, C:\Users\Public\Documents\ShopperPro\JsDriver\Config.xml, Quarantined, [560037123357b5819b7b337e51b25fa1],

Physical Sectors: 0
(No malicious items detected)


(end)

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#44
March 24, 2015 at 14:16:35
eset found 3 things and deleted them couldn't do log. 2 were extension on chrome.

did cccleaner (which I do almost everyday) and it found nothing

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#45
March 24, 2015 at 14:32:39
"eset found 3 things and deleted them couldn't do log"
Refer post #41

Before we begin the final steps.
Are you still having the connection dropout or any other issues?


Report •

#46
March 24, 2015 at 15:03:10
It is very long here are the 3-4 (after althe scan blabla),I noticed internet is much better right now. albeit I got in the middle of the page a lsot internet connection box (which I never got before) I clicked on it to remove it and then my internet was working....is this a virus or a real internet lost connection by windows?

# scan_time=9843
sh=6535EF1963B5B6CEE0990224524F94C314EA960A ft=1 fh=c71c00117cfe6f75 vn="Win32/BHO.OEY trojan" ac=I fn="C:\Windows\SysWOW64\api-mms-win-mm-misc-l1-1-0.dll"
sh=19D534AF5BBEAB73AD1240E777207BD9A25B37AF ft=0 fh=0000000000000000 vn="JS/Kryptik.ATB trojan (cleaned by deleting - quarantined)" ac=C fn="C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Extensions\emehklffcaphknhhfhadkjhpfapcbpco\230\D_xf4I.js"
sh=74EE87E2FBD7C4DC4F68EDFDEB42B82B9EC68010 ft=0 fh=0000000000000000 vn="JS/Kryptik.ATB trojan (cleaned by deleting - quarantined)" ac=C fn="C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Extensions\emehklffcaphknhhfhadkjhpfapcbpco\230\lsdb.js"
sh=D9F34F953921512F10B82181481038E0A74AA7C2 ft=1 fh=9c4024302c20bab6 vn="a variant of Win32/HackTool.Patcher.T potentially unsafe application (deleted - quarantined)" ac=C fn="C:\Windows\System32\api-mms-win-mm-misc-l1-1-0.dll"
sh=F4DA97F9CEF8E0432DBA2265D7CEEC8CEB49C1C4 ft=1 fh=c62a0ee7e4c1ea96 vn="NSIS/TrojanDownloader.Adload.M trojan (cleaned by deleting - quarantined)"

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#47
March 24, 2015 at 15:12:39
"albeit I got in the middle of the page a lsot internet connection box (which I never got before) I clicked on it to remove it and then my internet was working....is this a virus or a real internet lost connection by windows?"

What browser?


Report •

#48
March 24, 2015 at 16:22:20
IE mostly using IE

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#49
March 24, 2015 at 16:28:38
"IE mostly using IE"
Ok.

"(which I never got before)"
If you get that message again, can I have a screenshot/photo or the exact wording please.

"is this a virus or a real internet lost connection by windows?"
Lets check.
Run ADWCleaner again & post the log please.

message edited by Johnw


Report •

#50
March 24, 2015 at 17:53:50
AWD:
# AdwCleaner v4.113 - Logfile created 24/03/2015 at 20:49:19
# Updated 22/03/2015 by Xplode
# Database : 2015-03-23.1 [Server]
# Operating system : Windows 8.1 (x64)
# Username : N - HOME
# Running from : D:\downloads\AdwCleaner.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\SysMenuExt
Key Deleted : HKLM\SOFTWARE\Classes\AppID\SysMenu.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D813D5BB-EBC7-45F9-B8A4-36A305168069}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Google Chrome v32.0.1700.107


-\\ Opera v28.0.1750.48


*************************

AdwCleaner[R0].txt - [7012 bytes] - [16/03/2015 13:38:19]
AdwCleaner[R1].txt - [1491 bytes] - [24/03/2015 20:44:32]
AdwCleaner[S0].txt - [7716 bytes] - [16/03/2015 13:46:04]
AdwCleaner[S1].txt - [1432 bytes] - [24/03/2015 20:49:19]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1491 bytes] ##########

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#51
March 24, 2015 at 18:09:36
That uncovered more.

Run Malawarebytes again & post the log please.


Report •

#52
March 24, 2015 at 20:00:58
malware found nothing so that's a good sign!

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#53
March 24, 2015 at 20:06:10
Yep, that's what I was expecting.

Run DelFix. Copy & Paste the contents of the log please.
https://toolslib.net/downloads/view...
DelFix is designed to delete all removal tools used during a disinfection.
Indeed, these tools are often updated. It's recommended not to have and use outdated versions on computer.
It's compatible with Windows XP, Vista, 7, 8 in 32 & 64 bits.
Run the tool by right click on the DelFix icon and Run as administrator option.
Make sure that these are checked:
Activate UAC
Remove disinfection tools
Create registry backup
Purge system restore
Reset system settings
Click Run and wait until the tool completes it's work.
All tools we used should be gone. Tool will create an report for you (C:\DelFix.txt)


Report •

#54
March 24, 2015 at 20:14:40
K done...does it mean that it nows finally cleaned? I used avat, and ccleaner mbam every week. what did I do wrong to get so many files?

# DelFix v10.9 - Logfile created 24/03/2015 at 23:12:20
# Updated 27/02/2015 by Xplode
# Username : N - HOME
# Operating System : Windows 8.1 (64 bits)

~ Activating UAC ... OK

~ Removing disinfection tools ...

Deleted : C:\FRST
Deleted : C:\AdwCleaner
Deleted : C:\Users\N\Desktop\Addition.txt
Deleted : C:\Users\N\Desktop\Fixlog.txt
Deleted : C:\Users\N\Desktop\FRST.txt
Deleted : C:\Users\N\Desktop\FRST64.exe
Deleted : C:\Users\N\Desktop\JRT.txt
Deleted : C:\Users\N\Desktop\RKreport_DEL_03232015_224752.log
Deleted : C:\Users\N\Desktop\RogueKiller.exe
Deleted : C:\Users\N\Downloads\esetsmartinstaller_enu (1).exe
Deleted : C:\Users\N\Downloads\esetsmartinstaller_enu.exe
Deleted : C:\Users\N\Downloads\TFC.exe

~ Creating registry backup ... OK

~ Cleaning system restore ...

Deleted : RP #147 [Installed Java(TM) 6 Update 31 | 03/08/2015 17:39:46]
Deleted : RP #148 [Windows Update | 03/13/2015 10:45:05]
Deleted : RP #149 [avast! antivirus system restore point | 03/16/2015 00:18:19]
Deleted : RP #150 [Installed Realtek Ethernet Controller Driver | 03/17/2015 18:33:41]
Deleted : RP #151 [Installed Bonjour | 03/19/2015 23:21:18]
Deleted : RP #152 [Removed Bonjour | 03/19/2015 23:51:54]
Deleted : RP #153 [TunnelBear | 03/23/2015 15:18:40]
Deleted : RP #154 [Windows Modules Installer | 03/24/2015 17:46:49]

New restore point created !

~ Resetting system settings ... OK

########## - EOF - ##########

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#55
March 24, 2015 at 20:26:06
Good one, that got rid of all the nasties out of System Restore.

Run Farbar again & upload the 2 logs please.
"If we have to run Farbar more than once, refer this SS.
http://i.imgur.com/yUxNw0j.gif"


Report •

#56
March 24, 2015 at 20:28:02
"what did I do wrong to get so many files?"
Will show how in my final post, very soon.

Report •

#57
March 25, 2015 at 07:51:27
Farbar:
http://www81.zippyshare.com/v/4zpZj...
http://www81.zippyshare.com/v/QhDGb...

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#58
March 25, 2015 at 09:10:21
again error message today please see link
http://www78.zippyshare.com/v/HdOSN...

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#59
March 25, 2015 at 15:46:13
"again error message today please see link"
Farbar logs are infection clean, now to tackle the above errors.

Disable your antivirus program before running Windows Repair.
How to Temporarily Disable your Anti-virus
http://www.bleepingcomputer.com/for...
http://www.techsupportforum.com/for...

Run Tweaking.com - Windows Repair
http://www.softpedia.com/get/Tweak/...
http://i.imgur.com/UbaXHuV.gif
http://www.tweaking.com/
http://www.tweaking.com/content/pag...

Do Step 1, this is very, very important > Do a Proper Power Reset First!
http://i1-win.softpedia-static.com/...

Then go straight to Repairs & check all the boxes. Reboot when finished.
http://i.imgur.com/BSqcYxn.gif
http://i.imgur.com/HxVvaOD.gif

Another way to find logs.
C:\Program Files > Tweaking.com > Windows Repair (All in One) > Tweaking.com_Windows_Repair > Logs
64-bit
Refer SS ( screenshots )
http://i.imgur.com/6zQBU9H.gif
http://i.imgur.com/e63WNzy.gif

message edited by Johnw


Report •

#60
March 25, 2015 at 15:56:33
That tweaking.com utility is superb... Having used it recently to resolve a couple of irritations with my Windows-7 installation... can recommend it highly.

Nice to find/see a genuine and safe "fix it" utility which, unlike so many, doesn't create more problems. So many of them create more problems than they (allegedly) find/fix.


Report •

#61
March 25, 2015 at 17:17:42
here is the repair log:
Tweaking.com - Windows Repair v3.1.0
--------------------------------------------------------------------------------

System Variables
--------------------------------------------------------------------------------
OS: Windows 8.1
OS Architecture: 64-bit
OS Version: 6.3.9600
OS Service Pack:
Computer Name: HOME
Windows Drive: C:\
Windows Path: C:\WINDOWS
Program Files: C:\Program Files
Program Files (x86): C:\Program Files (x86)
Current Profile: C:\Users\N
Current Profile SID: S-1-5-21-480956558-2517508603-328147277-1001
Current Profile Classes: S-1-5-21-480956558-2517508603-328147277-1001_Classes
Profiles Location: C:\Users
Profiles Location 2: C:\WINDOWS\ServiceProfiles
Local Settings AppData: C:\Users\N\AppData\Local
--------------------------------------------------------------------------------

System Information
--------------------------------------------------------------------------------
System Up Time: 0 Days 00:04:33

Process Count: 66
Commit Total: 1.89 GB
Commit Limit: 6.07 GB
Commit Peak: 2.00 GB
Handle Count: 26936
Kernel Total: 403.61 MB
Kernel Paged: 323.68 MB
Kernel Non Paged: 79.93 MB
System Cache: 1.93 GB
Thread Count: 959
--------------------------------------------------------------------------------

Memory Before Cleaning with CleanMem
--------------------------------------------------------------------------------
Memory Total: 5.20 GB
Memory Used: 1.84 GB(35.4901%)
Memory Avail.: 3.35 GB
--------------------------------------------------------------------------------

Cleaning Memory Before Starting Repairs...

Memory After Cleaning with CleanMem
--------------------------------------------------------------------------------
Memory Total: 5.20 GB
Memory Used: 1.55 GB(29.8586%)
Memory Avail.: 3.64 GB
--------------------------------------------------------------------------------

Starting Repairs...
Started at (2015-03-25 7:21:49 PM)

Setting Any Missing 'InstallDate' From Uninstall Sections Before Running Repair...
Total Missing 'InstallDate' Fixed: 55

01 - Reset Registry Permissions
Restore Windows 8 Default Registry Permissions
Start (2015-03-25 7:21:52 PM)


Decompressing & Updating Windows Permission File hkud.txt
Done, 0.2 seconds.


Decompressing & Updating Windows Permission File hkcu.txt
Done, 0.25 seconds.


Decompressing & Updating Windows Permission File hkcr.txt
Done, 0.73 seconds.


Decompressing & Updating Windows Permission File hklm.txt
Done, 2.31 seconds.

Running Repair Under System Account
Running Repair Under Current User Account
Done (2015-03-25 7:27:19 PM)

03 - Reset Service Permissions
Start (2015-03-25 7:27:19 PM)

Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:27:30 PM)

04 - Register System Files
Start (2015-03-25 7:27:30 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:28:01 PM)

05 - Repair WMI
Start (2015-03-25 7:28:01 PM)

Starting Security Center So We Can Export The Security Info.

Exporting Antivirus Info...
Windows Defender Exported.
avast! Antivirus Exported.

Exporting AntiSpyware Info...
Windows Defender Exported.
IObit Malware Fighter Exported.
avast! Antivirus Exported.

Exporting 3rd Party Firewall Info...
No Firewall Products Reported.

Running Repair Under Current User Account
Done (2015-03-25 7:33:31 PM)

06 - Repair Windows Firewall
Start (2015-03-25 7:33:32 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:34:24 PM)

07 - Repair Internet Explorer
Start (2015-03-25 7:34:24 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:34:54 PM)

08 - Repair MDAC/MS Jet
Start (2015-03-25 7:34:54 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:35:07 PM)

09 - Repair Hosts File
Start (2015-03-25 7:35:07 PM)
Running Repair Under System Account
Done (2015-03-25 7:35:08 PM)

10 - Remove Policies Set By Infections
Start (2015-03-25 7:35:08 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:35:12 PM)

12 - Repair Icons
Start (2015-03-25 7:35:12 PM)
Running Repair Under Current User Account
Done (2015-03-25 7:35:14 PM)

13 - Repair Winsock & DNS Cache
Start (2015-03-25 7:35:14 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:35:26 PM)

15 - Repair Proxy Settings
Start (2015-03-25 7:35:26 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:35:28 PM)

17 - Repair Windows Updates
Start (2015-03-25 7:35:28 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Setting Windows Updates Files That Are In Use To Be Removed At Next Boot.
Done (2015-03-25 7:36:10 PM)

18 - Repair CD/DVD Missing/Not Working
Start (2015-03-25 7:36:10 PM)
iTunes not found, not applying UpperFilters iTunes Reg Key
Done (2015-03-25 7:36:10 PM)

19 - Repair Volume Shadow Copy Service
Start (2015-03-25 7:36:10 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:36:57 PM)

21 - Repair MSI (Windows Installer)
Start (2015-03-25 7:36:57 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:37:29 PM)

23.01 - Repair bat Association
Start (2015-03-25 7:37:29 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:37:34 PM)

23.02 - Repair cmd Association
Start (2015-03-25 7:37:34 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:37:37 PM)

23.03 - Repair com Association
Start (2015-03-25 7:37:37 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:37:39 PM)

23.04 - Repair Directory Association
Start (2015-03-25 7:37:39 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:37:45 PM)

23.05 - Repair Drive Association
Start (2015-03-25 7:37:45 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:37:48 PM)

23.06 - Repair exe Association
Start (2015-03-25 7:37:48 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:37:50 PM)

23.07 - Repair Folder Association
Start (2015-03-25 7:37:50 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:37:54 PM)

23.08 - Repair inf Association
Start (2015-03-25 7:37:54 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:37:56 PM)

23.09 - Repair lnk (Shortcuts) Association
Start (2015-03-25 7:37:56 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:37:58 PM)

23.10 - Repair msc Association
Start (2015-03-25 7:37:58 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:38:00 PM)

23.11 - Repair reg Association
Start (2015-03-25 7:38:00 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:38:02 PM)

23.12 - Repair scr Association
Start (2015-03-25 7:38:02 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:38:05 PM)

24 - Repair Windows Safe Mode
Start (2015-03-25 7:38:05 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:38:07 PM)

25 - Repair Print Spooler
Start (2015-03-25 7:38:07 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:38:45 PM)

26 - Restore Important Windows Services
Start (2015-03-25 7:38:45 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:39:22 PM)

27 - Set Windows Services To Default Startup
Start (2015-03-25 7:39:23 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 7:39:28 PM)

28.01 - Repair Windows 8 App Store
Start (2015-03-25 7:39:28 PM)

Decompressing & Updating Windows Permission File hkcu.txt
Done, 0.2 seconds.

Running Repair Under Current User Account
Done (2015-03-25 7:42:09 PM)

29 - Repair Windows 8 Component Store
Start (2015-03-25 7:42:09 PM)
Running Repair Under Current User Account
Done (2015-03-25 8:09:37 PM)

30 - Restore Windows 8 COM+ Unmarshalers
Start (2015-03-25 8:09:37 PM)
Running Repair Under System Account
Processing ACL of: <classes_root\Unmarshalers>

SetACL finished with error(s):
SetACL error message: The call to SetNamedSecurityInfo () failed
Operating system error message: Access is denied. Done (2015-03-25 8:09:38 PM)

31 - Repair Windows 'New' Submenu
Start (2015-03-25 8:09:38 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (2015-03-25 8:09:40 PM)

33 - Repair Performance Counters
Start (2015-03-25 8:09:40 PM)
Running Repair Under Current User Account
Done (2015-03-25 8:09:41 PM)

Cleaning up empty logs...

All Selected Repairs Done.
Done at (2015-03-25 8:09:42 PM)
Total Repair Time: 00:47:54


...YOU MUST RESTART YOUR SYSTEM...

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#62
March 25, 2015 at 17:42:33
Testing time now nbabe.
Fingers crossed.

Report •

#63
March 26, 2015 at 13:04:13
Ok, its worse. I now get every few minutes an internet interrupt message (which I cant take in picture) which makes my work almost impossible.

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#64
March 26, 2015 at 14:25:29
AS My internet was getting worse I redid a MBam: albeit I wasn't on google all day it found these:
Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 2015-03-26
Scan Time: 4:26:05 PM
Logfile:
Administrator: Yes

Version: 2.01.4.1018
Malware Database: v2015.03.26.07
Rootkit Database: v2015.02.25.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 8.1
CPU: x64
File System: NTFS
User: N

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 499106
Time Elapsed: 26 min, 0 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 4
PUP.Optional.MultiPlug.A, C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Extensions\infbohjcpbljfmnimjodijobdhjfijnp\241, Quarantined, [1c03b694385284b23d9d6edeeb1a0cf4],
PUP.Optional.MultiPlug.A, C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Extensions\infbohjcpbljfmnimjodijobdhjfijnp, Quarantined, [1c03b694385284b23d9d6edeeb1a0cf4],
PUP.Optional.MultiPlug.A, C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Extensions\olhcogoioikcdeceiakjbandbaifohik\136, Quarantined, [18076fdb1476c274c119c48833d22ed2],
PUP.Optional.MultiPlug.A, C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Extensions\olhcogoioikcdeceiakjbandbaifohik, Quarantined, [18076fdb1476c274c119c48833d22ed2],

Files: 8
PUP.Optional.MultiPlug.A, C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Extensions\infbohjcpbljfmnimjodijobdhjfijnp\241\lsdb.js, Quarantined, [1c03b694385284b23d9d6edeeb1a0cf4],
PUP.Optional.MultiPlug.A, C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Extensions\infbohjcpbljfmnimjodijobdhjfijnp\241\background.html, Quarantined, [1c03b694385284b23d9d6edeeb1a0cf4],
PUP.Optional.MultiPlug.A, C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Extensions\infbohjcpbljfmnimjodijobdhjfijnp\241\content.js, Quarantined, [1c03b694385284b23d9d6edeeb1a0cf4],
PUP.Optional.MultiPlug.A, C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Extensions\infbohjcpbljfmnimjodijobdhjfijnp\241\manifest.json, Quarantined, [1c03b694385284b23d9d6edeeb1a0cf4],
PUP.Optional.MultiPlug.A, C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Extensions\olhcogoioikcdeceiakjbandbaifohik\136\lsdb.js, Quarantined, [18076fdb1476c274c119c48833d22ed2],
PUP.Optional.MultiPlug.A, C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Extensions\olhcogoioikcdeceiakjbandbaifohik\136\background.html, Quarantined, [18076fdb1476c274c119c48833d22ed2],
PUP.Optional.MultiPlug.A, C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Extensions\olhcogoioikcdeceiakjbandbaifohik\136\content.js, Quarantined, [18076fdb1476c274c119c48833d22ed2],
PUP.Optional.MultiPlug.A, C:\Users\N\AppData\Local\Google\Chrome\User Data\Default\Extensions\olhcogoioikcdeceiakjbandbaifohik\136\manifest.json, Quarantined, [18076fdb1476c274c119c48833d22ed2],

Physical Sectors: 0
(No malicious items detected)


(end)

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#65
March 26, 2015 at 14:38:17
Have you uninstalled the VPN (TunnelBear Internet blocker IP)?
If it comes with a network driver/filter, uncheck it from the properties of the LAN-network-adapter.

Report •

#66
March 26, 2015 at 14:45:33
no I didn't uninstall it as I use it rarely but need it. didn't use it of all week. ie not in background I didn't start it

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek

message edited by nbabe


Report •

#67
March 26, 2015 at 14:58:38
" (which I cant take in picture)"
Have your finger on the pause button & hit when the message appears.

Report •

#68
March 26, 2015 at 16:04:14
Way back in #14 I asked:
Are you using Wifi or an Ethernet cable?
Lot of posts now so sorry if you've already said but which one are you using?

Not sure how you are trying to get that picture but one way is to hit "Print Scrn" key then open up Paint and do Ctrl+V to copy it in. Might take a few tries to hit Print Scrn just at the right moment.

Always pop back and let us know the outcome - thanks

message edited by Derek


Report •

#69
March 26, 2015 at 16:24:31
Cable internet.
Yes I kept trying but it froze the page and then it shot the page so Ill keep trying but I don't guarantee Ill get it.
Im not sure if that is part of problem but earlier today on my network there were several ip )I never did that so I disable them...good idea or not^

http://www38.zippyshare.com/v/JSObl...
then this is what the internet pop up says
[Main Instruction]
Internet Explorer has stopped working

[Content]
Windows is checking for a solution to the problem...

[Cancel]

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#70
March 26, 2015 at 16:42:19
✔ Best Answer
How to fix Internet Explorer has stopped working (2015 Update)
http://windows7themes.net/en-us/how...

What to do when Internet Explorer isn't working
http://windows.microsoft.com/en-au/...

How to perform a clean boot to troubleshoot a problem in Windows 8, Windows 7, or Windows Vista
http://support.microsoft.com/kb/929135

How to Fix Windows Internet Explorer Not Responding
http://www.wikihow.com/Fix-Windows-...


Report •

#71
March 26, 2015 at 16:51:11
Re #69 (your screen shot)

Are you running shared networking using a bridge?

Otherwise it sounds odd to have more than just the one of the same type (LAN). I would be inclined to disable all except the one with the lowest number and see how that shakes out.

If you have an alternative browser do you have the same trouble with that?

Always pop back and let us know the outcome - thanks

message edited by Derek


Report •

#72
March 26, 2015 at 17:05:18
Further to Derek's post, if necessary, I would do this.

http://i.imgur.com/lwO9eXm.gif


Report •

#73
March 27, 2015 at 09:02:22
Ok got the message now trying to do all you guy say.
http://www81.zippyshare.com/v/1KklI...

I have cable internet with a router for being able to use laptop, not wireless.

now 1=up to date
now doing internet gsu (in reparing internet)also did internet 11 off and on
now doing 2- clean boot trying if internet working better that way
Ok clean boot:computer started much faster Great. Internet faster Great, but the internet connection interrupted message already appeared once...albeit it didn't really stopped the internet?it flashed on and I clicked ok and internet was working nonetheless..
so what now ?I went to do restart set up normal...then I saw somwhoe all windows didn't get disable. I retried it (disabling all windows and restarted computer) in half hour with 5 internet pages opened nothing happened....it might mean that it is a window problem? any help on that now?

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek

message edited by nbabe


Report •

#74
March 27, 2015 at 10:10:01
Ok now its been 1 hour without internet problem always with 5-6 pages open Im still in clean booth mode which means its a windows problem? I will wait for your help
EDIT: after 1 hour I got the message again twice but it didn't stop internet it flashed, I clikc ok and internet was still running so now im confused.
restarting in normal mode
Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek

message edited by nbabe


Report •

#75
March 27, 2015 at 11:55:04
"Ok now its been 1 hour without internet problem always with 5-6 pages open Im still in clean booth mode which means its a windows problem? I will wait for your help"
Sounds like it.
Process of elimination, all the information needed has been provided in that link, not much more I can say.

Report •

#76
March 27, 2015 at 12:02:27
DID yo u read the edit? irestarted in normal mode because after 1 hour I got the pop up twice.

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek


Report •

#77
March 27, 2015 at 12:06:05
regarding deleting the numerous extra internet I have (image posted)I tried to delete these I right click and a pop up message tells me I cant delete them

Manufacturer: Asus
Model: M11bb-ca002s
OS: Windows 8 64 bits
CPU/Ram: AMD Quad-Core A8-5500 3.2GHz/ 6gb 1600MHZ
Video Card: Radeon HD 7560D Graphics
Sound Card: realtek

message edited by nbabe


Report •

#78
March 28, 2015 at 15:53:55
"I right click and a pop up message tells me I cant delete them"

Uninstall all those VPN programs, using > Wise Program Uninstaller
You can always reinstall again if you want to.

how to remove network connection in windows 8.1
http://bit.ly/1G3nucM

local area connection doesn't have a valid ip windows 8.1
http://bit.ly/1G3ojT8


Report •


Ask Question