Data error (cyclic redundancy check)" may indicate some hard drive issue but we'll see.
Run OTL
- Under the Custom Scans/Fixes box at the bottom, paste in the following
Code::OTL
[2012/07/11 08:02:17 | 000,000,000 | ---D | M] (Support.com Toolbar) -- C:\Users\Janette\AppData\Roaming\Mozilla\Firefox\Profiles\pk4iz42a.default\extensions\[email protected]
O2 - BHO: (Support.com Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (Support.com Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O4 - HKLM..\Run: [ApnUpdater] C:\Program Files\Ask.com\Updater\Updater.exe (Ask)
O15 - HKU\S-1-5-21-4005884000-2466192861-660793693-1005\..Trusted Domains: internet ([]about in Trusted sites)
O15 - HKU\S-1-5-21-4005884000-2466192861-660793693-1005\..Trusted Domains: mcafee.com ([]http in Trusted sites)
O15 - HKU\S-1-5-21-4005884000-2466192861-660793693-1005\..Trusted Domains: mcafee.com ([]https in Trusted sites)
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} file:///C:/Program%20Files/Mahjong%20Escape%20-%20Ancient%20China/Images/armhelper.ocx (Reg Error: Key error.)
O37 - HKU\S-1-5-21-4005884000-2466192861-660793693-1005\...com [@ = ComFile] -- Reg Error: Key error. File not found
[2012/07/10 09:38:00 | 000,000,000 | -H-- | M] () -- C:\ProgramData\-dEXeuNYt1835dg
@Alternate Data Stream - 98 bytes -> C:\ProgramData\TEMP:35950FAF
@Alternate Data Stream - 96 bytes -> C:\ProgramData\TEMP:197335E4
@Alternate Data Stream - 95 bytes -> C:\ProgramData\TEMP:CDCFEE39
@Alternate Data Stream - 95 bytes -> C:\ProgramData\TEMP:A4ACFB14
@Alternate Data Stream - 95 bytes -> C:\ProgramData\TEMP:621BEE66
@Alternate Data Stream - 94 bytes -> C:\ProgramData\TEMP:CF61CE5A
@Alternate Data Stream - 254 bytes -> C:\ProgramData\TEMP:0B352B60
@Alternate Data Stream - 247 bytes -> C:\ProgramData\TEMP:701B92FB
@Alternate Data Stream - 244 bytes -> C:\ProgramData\TEMP:E6C6EB3B
@Alternate Data Stream - 243 bytes -> C:\ProgramData\TEMP:C9B27A06
@Alternate Data Stream - 243 bytes -> C:\ProgramData\TEMP:9D03192E
@Alternate Data Stream - 241 bytes -> C:\ProgramData\TEMP:9D6EAEC3
@Alternate Data Stream - 239 bytes -> C:\ProgramData\TEMP:0EC7A545
@Alternate Data Stream - 235 bytes -> C:\ProgramData\TEMP:72E6616C
@Alternate Data Stream - 235 bytes -> C:\ProgramData\TEMP:5A437AC3
@Alternate Data Stream - 234 bytes -> C:\ProgramData\TEMP:99AC3203
@Alternate Data Stream - 232 bytes -> C:\ProgramData\TEMP:C22674B6
@Alternate Data Stream - 231 bytes -> C:\ProgramData\TEMP:D31BE97C
@Alternate Data Stream - 229 bytes -> C:\ProgramData\TEMP:5C6EBC69
@Alternate Data Stream - 228 bytes -> C:\ProgramData\TEMP:CB16385F
@Alternate Data Stream - 228 bytes -> C:\ProgramData\TEMP:9BB8C675
@Alternate Data Stream - 227 bytes -> C:\ProgramData\TEMP:5FFC2819
@Alternate Data Stream - 226 bytes -> C:\ProgramData\TEMP:E51234A9
@Alternate Data Stream - 226 bytes -> C:\ProgramData\TEMP:D48500F8
@Alternate Data Stream - 224 bytes -> C:\ProgramData\TEMP:7C4DF735
@Alternate Data Stream - 224 bytes -> C:\ProgramData\TEMP:370E4EFB
@Alternate Data Stream - 224 bytes -> C:\ProgramData\TEMP:0AC32449
@Alternate Data Stream - 223 bytes -> C:\ProgramData\TEMP:A31B5E9B
@Alternate Data Stream - 220 bytes -> C:\ProgramData\TEMP:8F067037
@Alternate Data Stream - 220 bytes -> C:\ProgramData\TEMP:109734F6
@Alternate Data Stream - 219 bytes -> C:\ProgramData\TEMP:EC855C73
@Alternate Data Stream - 219 bytes -> C:\ProgramData\TEMP:A02025CE
@Alternate Data Stream - 218 bytes -> C:\ProgramData\TEMP:51676264
@Alternate Data Stream - 217 bytes -> C:\ProgramData\TEMP:A9ABA3FF
@Alternate Data Stream - 217 bytes -> C:\ProgramData\TEMP:78E0DF72
@Alternate Data Stream - 211 bytes -> C:\ProgramData\TEMP:1C88C8E5
@Alternate Data Stream - 210 bytes -> C:\ProgramData\TEMP:918B7566
@Alternate Data Stream - 205 bytes -> C:\ProgramData\TEMP:260575F1
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:35FAD15D
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:123A86B5
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:F84B8DB5
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:32A82570
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:38FF076E
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:BAC2F271
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:737160C1
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:C76CFF82
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:A7596EAE
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:35629AE6
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:6423D635
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:700B9342
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:DE875C30
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:D2397415
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:1C4D3509
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:98982C88
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:50636E35
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:22786385
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:F33C37D5
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:B2735F9E
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:5D351BC6
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:4A448DB2
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:AD727397
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:68EF6203
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:F44D3C53
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:97C4F81F
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:598E8EA1
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:8401B6D5
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:616D21DE
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:041C0562
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:DE47A3DA
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:BCA198E3
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:F92AD177
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:B72F3698
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:98DFF516
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:C085630F
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:3F2212BB
@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:B9710577
@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:9BFB769D
@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:40EE25BB
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:5E9B629B
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:AFB24B00
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:D2BD3451
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:3A78F62C
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:2B275F6A
@Alternate Data Stream - 111 bytes -> C:\ProgramData\TEMP:83ACAC73
@Alternate Data Stream - 111 bytes -> C:\ProgramData\TEMP:60A4BB64
@Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:FD2BFC89
@Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:DA18FD1D
@Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:66AA0486
@Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:0F0A5896
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:70E897B5
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:4249A835
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:B1381B34
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:853CCFC7
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:6F1F66C0
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:090FB735
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:9124CA95
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:8EA719EA
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:68DC65DC
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:4F8B72C9
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:40E5AD89
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:211ED887
@Alternate Data Stream - 106 bytes -> C:\ProgramData\TEMP:23ADF89D
@Alternate Data Stream - 106 bytes -> C:\ProgramData\TEMP:177313FB
@Alternate Data Stream - 105 bytes -> C:\ProgramData\TEMP:B6C77675
@Alternate Data Stream - 105 bytes -> C:\ProgramData\TEMP:24FECE50
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:E3313793
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:4A9220C3
@Alternate Data Stream - 103 bytes -> C:\ProgramData\TEMP:F14D1F80
@Alternate Data Stream - 103 bytes -> C:\ProgramData\TEMP:9B285B76
@Alternate Data Stream - 103 bytes -> C:\ProgramData\TEMP:6440F08B
@Alternate Data Stream - 101 bytes -> C:\ProgramData\TEMP:561B1D2B
@Alternate Data Stream - 101 bytes -> C:\ProgramData\TEMP:029300DC
@Alternate Data Stream - 100 bytes -> C:\ProgramData\TEMP:7E0EFF7B
@Alternate Data Stream - 100 bytes -> C:\ProgramData\TEMP:1A7FFE9C
:Services
:Reg
:Files
C:\Program Files\Ask.com
:Commands
[purity]
[emptytemp]
[emptyjava]
[emptyflash]
[Reboot]
- Then click the Run Fix button at the top
- Let the program run unhindered, reboot the PC when it is done
- You will get a log that shows the results of the fix. Please post it.
===========================================
Last scans...
1. Download Security Check from HERE, and save it to your Desktop.
- Double-click SecurityCheck.exe
- Follow the onscreen instructions inside of the black box.
- A Notepad document should open automatically called checkup.txt; please post the contents of that document.
NOTE SecurityCheck may produce some false warning(s), so leave the results reading to me.
2. Please download Farbar Service Scanner (FSS) and run it on the computer with the issue.
- Make sure the following options are checked:
- Internet Services
- Windows Firewall
- System Restore
- Security Center
- Windows Update
- Windows Defender
- Press "Scan".
- It will create a log (FSS.txt) in the same directory the tool is run.
- Please copy and paste the log to your reply.
3. Download Temp File Cleaner (TFC)
Alternate download: http://www.itxassociates.com/OT-Tools/TFC.exe
- Double click on TFC.exe to run the program.
- Click on Start button to begin cleaning process.
- TFC will close all running programs, and it may ask you to restart computer.
4. Please run a free online scan with the ESET Online Scanner
- Disable your antivirus program
- Tick the box next to YES, I accept the Terms of Use
- Click Start
- Accept any security warnings from your browser.
- Check Scan archives
- Click Start
- ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
- When the scan completes, click on List of found threats
- Click on Export to text file , and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
- NOTE. If Eset won't find any threats, it won't produce any log.
