Jump to content

Search the Community

Showing results for tags 'Bitcoin'.

  • Search By Tags

    Type tags separated by commas.
  • Search By Author

Content Type


Forums

  • Announcements
    • Malwarebytes News
    • Beta Testing Program
  • Malware Removal Help
    • Windows Malware Removal Help & Support
    • Mac Malware Removal Help & Support
    • Mobile Malware Removal Help & Support
    • Malware Removal Self-Help Guides
  • Malwarebytes for Home Support
    • Malwarebytes for Windows Support Forum
    • Malwarebytes for Mac Support Forum
    • Malwarebytes for Android Support Forum
    • Malwarebytes for iOS Support
    • Malwarebytes Privacy
    • Malwarebytes Browser Guard
    • False Positives
    • Comments and Suggestions
  • Malwarebytes for Business Support
    • Malwarebytes Endpoint Protection
    • Malwarebytes Incident Response (includes Breach Remediation)
    • Malwarebytes Endpoint Security
    • Malwarebytes Business Products Comments and Suggestions
  • Malwarebytes Tools and Other Products
    • Malwarebytes AdwCleaner
    • Malwarebytes Junkware Removal Tool Support
    • Malwarebytes Anti-Rootkit BETA Support
    • Malwarebytes Techbench USB (Legacy)
    • Malwarebytes Secure Backup discontinued
    • Other Tools
    • Malwarebytes Tools Comments and Suggestions
  • General Computer Help and Security Updates
    • BSOD, Crashes, Kernel Debugging
    • General Windows PC Help
  • Research Center
    • Newest Rogue-Ransomware Threats
    • Newest Malware Threats
    • Newest Mobile Threats
    • Newest IP or URL Threats
    • Newest Mac Threats
    • Report Scam Phone Numbers
  • General
    • General Chat
    • Forums Announcements & Feedback

Find results in...

Find results that contain...


Date Created

  • Start

    End


Last Updated

  • Start

    End


Filter by number of...

Joined

  • Start

    End


Group


AIM


MSN


Website URL


ICQ


Yahoo


Jabber


Location


Interests

  1. First of all, I'm not too good with computer stuff and English isn't my national language. However, I'll do my best to be co-operating and to understand everything the helpful and respectful staff has to say. Thank you. My computer is considerably new. I've had it for about 1 year now. Not too sure. Anyways, when I leave it alone for a moment, it, of course, turns its screen off to save some energy. But when I open the screen, nothing happens. The only light that's there is the message that says something about a missing video input. I check that my computer is on and it is. I check if my keyboard is on, and press Caps Lock. No light indicating over the 'Caps Lock' -text at the top right of the keyboard. I then, as usual, manually restart my computer. This is not the only thing that's happened. My Internet connection is fast. Yet, my computer sometimes seems very slow, even though it's a good computer. I've cleaned it up many times, and it's gotten better. It still feels like something is wrong. I was a bit surprised when a few months ago I had this error message that said: btc-miner.exe has stopped working. -Strange, I thought. Never heard of anything like that. Made some research this week and realized it is a program used to create Bitcoins, which are experimental(Yet, somewhat accepted) "Cyber-Money". Apparently, these "Miners" create Bitcoins by solving complex calculations, or, in other words, exchanging the electricity that the computer uses up into Bitcoins. The funny thing is that I have never downloaded such program. In fact, I found some more information about Bitcoins. I read about trojans that control a computer to mine Bitcoins for the creator of the virus. That information led me to Botnet. Basically, I could lose control over my computer any time if this is about it. I'm not too sure, since Botnet is pretty new in the Internet, and no antivirus has been created for it(I think). I'm assuming that there is somebody who is mining Bitcoins with my computer and using up extra electricity + slowing down my computer(And possibly taking control of it, when I can't open the screen) I might be a little paranoid about this, but I'm highly concerned. It might be just a normal virus, or it might be a lot worse, so I'm hoping to get some help here as soon as possible. Thanks!
  2. Hi, it seems bitcoin has infected my svchost for awhile now, I have tried to remove it using malware anti - malware, but it never really did remove the problem. I have scanned this probably 20 or more times, and everytime it said "remove on reboot" or "quarantined and successfully removed". At first there was no harm keeping it, it didn't affect anything i do really. But then today, it seems to have sprung. Problem: On startup, everything seems to work fine, but as soon as svchost starts, it starts to lag like crazy; hovering over an icon, click on the start button, opening up anything, etc. At first i didn't know what it was, or why this is happening, but when i checked task manager, it seems like svchost.exe was running a big number. shown here: I knew it was the problem, because when i ended process of svchost, everything return to normal, my computer was running fast like it always does and everything seems to function fine, sounds, graphics, etc. So I ran a full scan and found 7 problems. Shown here: MBAM-log-2013-11-01 (18-21-37).txt Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Database version: v2013.11.01.07 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 10.0.9200.16721 Quang Hong :: QUANGHONG-PC [administrator] 11/1/2013 5:42:39 PM MBAM-log-2013-11-01 (18-21-37).txt Scan type: Full scan (C:\|D:\|E:\|F:\|G:\|H:\|I:\|Q:\|) Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 427455 Time elapsed: 37 minute(s), 20 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 7 C:\Users\Quang Hong\AppData\Local\Temp\svchost.exe (Riskware.Bitcoin) -> No action taken. C:\Users\Quang Hong\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PFGM2B1Y\svchost[1].exe (Riskware.Bitcoin) -> No action taken. C:\Users\Quang Hong\AppData\Local\Temp\phatk121016.cl (Trojan.BitcoinMiner) -> No action taken. C:\Users\Quang Hong\AppData\Local\Temp\scrypt130511.cl (Trojan.BitcoinMiner) -> No action taken. C:\Users\Quang Hong\AppData\Local\Temp\diablo130302.cl (Trojan.BitcoinMiner) -> No action taken. C:\Users\Quang Hong\AppData\Local\Temp\poclbm130302.cl (Trojan.BitcoinMiner) -> No action taken. C:\Users\Quang Hong\AppData\Local\Temp\diakgcn121016.cl (Trojan.BitcoinMiner) -> No action taken. (end)
  3. Hello, I have a huge problem with viruses and other junk. I didn't have any Antivirus program for about 2 months. Few days ago my video card started acting weird, it randomly freezes and outputs this image: http://postimg.org/image/mtcywdbp3/ It was okay until today I got black screen and had to restart the pc. Mostly it happens when I leave the pc for about 10 mins (AFK) (Sleep mode is disabled). So today I did a scan with Malwarebytes and got a long list of viruses and other junk. It also had this trojan called "Bitcoin" which I heard is really bad. Please help me to remove all that malware. Here is the log: Malwarebytes Anti-Malware 1.75.0.1300www.malwarebytes.orgDatabase version: v2013.08.07.05Windows 8 x64 NTFSInternet Explorer 10.0.9200.16635Gabrielius :: GAMING-LAND [administrator]8/7/2013 4:22:53 PMMBAM-log-2013-08-07 (16-59-50).txtScan type: Full scan (C:\|)Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUMScan options disabled: P2PObjects scanned: 454290Time elapsed: 36 minute(s), 19 second(s)Memory Processes Detected: 0(No malicious items detected)Memory Modules Detected: 0(No malicious items detected)Registry Keys Detected: 0(No malicious items detected)Registry Values Detected: 1HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|svchost (Backdoor.Bot) -> Data: "C:\Users\Gabrielius\AppData\Roaming\Microsoft\WinUpdate\nircmd.exe" exec hide "C:\Users\Gabrielius\AppData\Roaming\Microsoft\WinUpdate\start.bat" -> No action taken.Registry Data Items Detected: 0(No malicious items detected)Folders Detected: 4C:\Users\Gabrielius\AppData\Roaming\Babylon (PUP.Optional.Babylon.A) -> No action taken.C:\ProgramData\Tarma Installer (PUP.Optional.Tarma.A) -> No action taken.C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504} (PUP.Optional.Tarma.A) -> No action taken.C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Cache (PUP.Optional.Tarma.A) -> No action taken.Files Detected: 33C:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\amtlib.dll (PUP.RiskwareTool.CK) -> No action taken.C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.exe (PUP.Optional.Tarma.A) -> No action taken.C:\Users\Gabrielius\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DQ2MC4FH\pack[1].7z (PUP.Browser.Defender.A) -> No action taken.C:\Users\Gabrielius\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JGCMSQ07\WebCakesetup[1].exe (PUP.Optional.Yontoo) -> No action taken.C:\Users\Gabrielius\AppData\Local\Temp\bundlesweetimsetup.exe (PUP.Optional.SweetIM) -> No action taken.C:\Users\Gabrielius\AppData\Local\Temp\DeltaTB.exe (PUP.Optional.Babylon.A) -> No action taken.C:\Users\Gabrielius\AppData\Local\Temp\drivers.zip (Trojan.BitCoinMiner) -> No action taken.C:\Users\Gabrielius\AppData\Local\Temp\FreeMouseAutoClickerSetup.exe (PUP.Optional.Somoto) -> No action taken.C:\Users\Gabrielius\AppData\Local\Temp\OptimizerPro.exe (PUP.Optional.OptimizePro.A) -> No action taken.C:\Users\Gabrielius\AppData\Local\Temp\PCPerformerSetup.exe (PUP.Optional.InstallBrain) -> No action taken.C:\Users\Gabrielius\AppData\Local\Temp\WinUpdate.zip (Trojan.BitcoinMiner) -> No action taken.C:\Users\Gabrielius\AppData\Local\Temp\19C26F33-BAB0-7891-B991-8D83AC94A98F\Latest\ccp.exe (PUP.Babylon.A) -> No action taken.C:\Users\Gabrielius\AppData\Local\Temp\19C26F33-BAB0-7891-B991-8D83AC94A98F\Latest\MyBabylonTB.exe (PUP.Optional.Delta) -> No action taken.C:\Users\Gabrielius\AppData\Local\Temp\19C26F33-BAB0-7891-B991-8D83AC94A98F\Latest\Setup.exe (PUP.Optional.Babylon.A) -> No action taken.C:\Users\Gabrielius\AppData\Local\Temp\iswizard\dwm.exe (Trojan.BitcoinMiner) -> No action taken.C:\Users\Gabrielius\AppData\Local\Temp\iswizard\iswizard.7z (Trojan.BitcoinMiner) -> No action taken.C:\Users\Gabrielius\AppData\Local\Temp\iswizard\wuaudit.exe (Trojan.BitcoinMiner) -> No action taken.C:\Users\Gabrielius\AppData\Roaming\Microsoft\WinUpdate\svchost.exe (Trojan.BitCoinMiner) -> No action taken.C:\Users\Gabrielius\AppData\Roaming\Microsoft\WinUpdate\cpu\LiveComm.exe (Trojan.BitcoinMiner) -> No action taken.C:\Users\Gabrielius\Desktop\cheat.exe (Malware.Packer.Gen) -> No action taken.C:\Users\Gabrielius\Desktop\Artix Games and Hacks\AQp00n3d (LH) 4.1 (Test) 3.zip (Malware.Gen) -> No action taken.C:\Users\Gabrielius\Desktop\Stuff\Dark+10Tr-LNG_v1.0.exe (VirTool.Obfuscator) -> No action taken.C:\Users\Gabrielius\Downloads\CheatEngine62.exe (PUP.Optional.Somoto) -> No action taken.C:\Users\Gabrielius\Downloads\SoftonicDownloader_for_auto-clicker.exe (PUP.Optional.Softonic) -> No action taken.C:\Users\Gabrielius\Downloads\SoftonicDownloader_for_scite.exe (PUP.Optional.Softonic) -> No action taken.C:\Users\Gabrielius\Downloads\Unlocker1.9.2.exe (PUP.Optional.Babylon.A) -> No action taken.C:\Users\Gabrielius\Downloads\WINDOWS 7 Ultimate SP1 x64 September 2012 [ThumperDC]\Windows Loader 2.1.7 By Daz.rar (PUP.HackTool.H) -> No action taken.C:\Users\Gabrielius\AppData\Roaming\Babylon\log_file.txt (PUP.Optional.Babylon.A) -> No action taken.C:\Users\Gabrielius\AppData\Roaming\Microsoft\WinUpdate\nircmd.exe (Backdoor.Bot) -> No action taken.C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.dat (PUP.Optional.Tarma.A) -> No action taken.C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.ico (PUP.Optional.Tarma.A) -> No action taken.C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\_Setup.dll (PUP.Optional.Tarma.A) -> No action taken.C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\_Setupx.dll (PUP.Optional.Tarma.A) -> No action taken.(end)
  4. Hello friends, I open this thread because I have the Malwarebytes Anti-Malware program trial version for "15 days" (I think). Well, on the main screen of scan, I get down an option called "Buy It Now", which sends me to the sales page of this Anti-Malware program, which is: http://www.malwarebytes.org / lp / Inproduct /. Now, hit the "upgrade now", I get the purchase screen shows me in my case in Mexican currency, which would be $ 335.03 MXN = 30 USD (approximately). Now ... I see the following methods of payment: VISA, MASTERCARD, AMEX, JCB, and finally transfer Paypal. Actually my doubt is, will implement the Bitcoin as a payment method ever? Since I usually buy this type of currency, since transfers are completely anonymous and easy to use. Would be very useful for me and for many users who want to buy with this type of currency. I hope your answers, greetings!
  5. Hello again, So the thing is that my Gpu is a constant high load even when idle. Temp goes up to 60° + idle. Some research brought me here and the knowledge of possible bitcoinminer virusses. So here are the first results of dds: DDS (Ver_2012-11-20.01) - NTFS_AMD64 Internet Explorer: 10.0.9200.16618Run by gABBY at 22:08:06 on 2013-07-09Microsoft Windows 7 Ultimate 6.1.7601.1.1252.32.1033.18.8146.5658 [GMT 2:00].AV: Microsoft Security Essentials *Disabled/Updated* {3F839487-C7A2-C958-E30C-E2825BA31FB5}SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}SP: Microsoft Security Essentials *Disabled/Updated* {84E27563-E198-C6D6-D9BC-D9F020245508}.============== Running Processes ===============.C:\Windows\system32\lsm.exeC:\Windows\system32\svchost.exe -k DcomLaunchC:\Windows\system32\nvvsvc.exeC:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exeC:\Windows\system32\svchost.exe -k RPCSSC:\Program Files\Microsoft Security Client\MsMpEng.exeC:\Windows\System32\svchost.exe -k LocalServiceNetworkRestrictedC:\Windows\System32\svchost.exe -k LocalSystemNetworkRestrictedC:\Windows\system32\svchost.exe -k LocalServiceC:\Windows\system32\svchost.exe -k netsvcsC:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exeC:\Windows\system32\svchost.exe -k NetworkServiceC:\Program Files\NVIDIA Corporation\Display\nvxdsync.exeC:\Windows\system32\nvvsvc.exeC:\Windows\System32\spoolsv.exeC:\Windows\system32\svchost.exe -k LocalServiceNoNetworkC:\Windows\system32\taskhost.exeC:\Windows\system32\Dwm.exeC:\Windows\Explorer.EXEC:\Windows\SysWOW64\ASGT.exeC:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exeC:\Windows\SysWOW64\PnkBstrA.exeC:\Windows\system32\svchost.exe -k imgsvcC:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exeC:\Program Files\Microsoft Security Client\msseces.exeC:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXEC:\Program Files (x86)\Origin\Origin.exeC:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exeC:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exeC:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exeG:\gABBY\Stiem\Steam.exeC:\Users\gABBY\AppData\Local\Akamai\netsession_win.exeC:\Program Files (x86)\Creative\Shared Files\CTSched.exeC:\Users\gABBY\AppData\Local\Akamai\netsession_win.exeC:\Program Files (x86)\Razer\Synapse\RzSynapse.exeC:\Windows\SysWOW64\Ctxfihlp.exeC:\Windows\system32\wbem\wmiprvse.exeC:\Users\gABBY\AppData\Roaming\Dropbox\bin\Dropbox.exeC:\Program Files (x86)\Google\Update\1.3.21.149\GoogleCrashHandler.exeC:\Program Files (x86)\Google\Update\1.3.21.149\GoogleCrashHandler64.exeC:\Windows\SysWOW64\CTXFISPI.EXEC:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestrictedC:\Program Files\NVIDIA Corporation\Display\nvtray.exeC:\Windows\system32\SearchIndexer.exeC:\Program Files\Windows Media Player\wmpnetwk.exeC:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonationC:\Windows\System32\svchost.exe -k LocalServicePeerNetC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Windows\System32\cscript.exe.============== Pseudo HJT Report ===============.uProxyOverride = <local>mWinlogon: Userinit = userinit.exe,BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dlluRun: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStartuRun: [steam] "G:\gABBY\Stiem\Steam.exe" -silentuRun: [Akamai NetSession Interface] "C:\Users\gABBY\AppData\Local\Akamai\netsession_win.exe"uRun: [DAEMON Tools Pro Agent] "C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe" -autorunuRun: [CreativeTaskScheduler] "C:\Program Files (x86)\Creative\Shared Files\CTSched.exe" /logonmRun: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"mRun: [CTxfiHlp] CTXFIHLP.EXEStartupFolder: C:\Users\gABBY\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\gABBY\AppData\Roaming\Dropbox\bin\Dropbox.exeuPolicies-Explorer: NoDriveTypeAutoRun = dword:145mPolicies-Explorer: NoActiveDesktop = dword:1mPolicies-Explorer: NoActiveDesktopChanges = dword:1mPolicies-System: ConsentPromptBehaviorAdmin = dword:0mPolicies-System: ConsentPromptBehaviorUser = dword:3mPolicies-System: EnableLUA = dword:0mPolicies-System: EnableUIADesktopToggle = dword:0mPolicies-System: PromptOnSecureDesktop = dword:0TCP: NameServer = 192.168.0.1TCP: Interfaces\{FE940914-2182-427D-ABE4-B20A871B09D3} : DHCPNameServer = 192.168.0.1Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dllSSODL: WebCheck - <orphaned>mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chromex64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dllx64-Run: [Nvtmru] "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"x64-Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkeyx64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>x64-SSODL: WebCheck - <orphaned>.============= SERVICES / DRIVERS ===============.R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2013-1-20 230320]R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\Windows\System32\drivers\dtsoftbus01.sys [2013-6-28 283200]R2 ASGT;ASGT;C:\Windows\SysWOW64\ASGT.exe [2012-1-17 55296]R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-6-21 413472]R2 uxpatch;uxpatch;C:\Windows\System32\drivers\uxpatch.sys [2009-7-13 30568]R3 CT20XUT.SYS;CT20XUT.SYS;C:\Windows\System32\drivers\CT20XUT.sys [2010-7-7 230488]R3 CTEXFIFX.SYS;CTEXFIFX.SYS;C:\Windows\System32\drivers\CTEXFIFX.sys [2010-7-7 1445976]R3 CTHWIUT.SYS;CTHWIUT.SYS;C:\Windows\System32\drivers\CTHWIUT.sys [2010-7-7 95320]R3 ha20x22k;Creative 20X2 HAL Driver;C:\Windows\System32\drivers\ha20x22k.sys [2010-7-7 1612888]R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2013-6-28 769168]R3 rzendpt;rzendpt;C:\Windows\System32\drivers\rzendpt.sys [2013-6-7 31232]R3 rzudd;Razer Mouse Driver;C:\Windows\System32\drivers\rzudd.sys [2013-6-7 126464]R4 IOMap;IOMap;C:\Windows\System32\drivers\IOMap64.sys [2013-6-28 23680]S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]S2 Time;Time;C:\ProgramData\Microsoft\Windows\Time\Time-svc.exe [2013-7-9 10752]S2 UnsignedThemes;Unsigned Themes;C:\Windows\UnsignedThemesSvc.exe [2009-7-13 24168]S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2013-6-29 79360]S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2013-6-28 79360]S3 CT20XUT;CT20XUT;C:\Windows\System32\drivers\CT20XUT.sys [2010-7-7 230488]S3 CTEXFIFX;CTEXFIFX;C:\Windows\System32\drivers\CTEXFIFX.sys [2010-7-7 1445976]S3 CTHWIUT;CTHWIUT;C:\Windows\System32\drivers\CTHWIUT.sys [2010-7-7 95320]S3 hitmanpro37;HitmanPro 3.7 Support Driver;C:\Windows\System32\drivers\hitmanpro37.sys [2013-7-9 32000]S3 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2013-1-20 130008]S3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\NisSrv.exe [2013-1-27 379360]S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2013-6-28 20992]S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2013-6-28 59392]S3 WatAdminSvc;Windows Activation Technologies-service;C:\Windows\System32\Wat\WatAdminSvc.exe [2013-6-28 1255736]S3 WSDScan;WSD Scan Support via UMB;C:\Windows\System32\drivers\WSDScan.sys [2009-7-14 25088]S3 XENfiltv;XENfiltv;C:\Windows\System32\drivers\XENfiltv.sys [2009-7-31 25600]SUnknown tsusbhub;tsusbhub; [x].=============== Created Last 30 ================.2013-07-09 20:05:58 15208 ----a-w- C:\Windows\System32\drivers\nvflash.sys2013-07-09 17:03:21 -------- d-----w- C:\Malware removel2013-07-09 15:55:32 32000 ----a-w- C:\Windows\System32\drivers\hitmanpro37.sys2013-07-09 15:49:58 -------- d-----w- C:\Program Files\HitmanPro2013-07-09 15:49:45 -------- d-----w- C:\ProgramData\HitmanPro2013-07-09 14:51:19 -------- d-----w- C:\Users\gABBY\AppData\Roaming\Malwarebytes2013-07-09 14:51:07 -------- d-----w- C:\ProgramData\Malwarebytes2013-07-09 14:51:06 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys2013-07-09 14:51:06 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware2013-07-09 14:39:45 -------- d-----w- C:\ProgramData\NVIDIA_Inspector2013-07-09 14:04:29 -------- d-----w- C:\Users\gABBY\AppData\Roaming\MKKE2013-07-09 12:52:00 569680 ----a-w- C:\ProgramData\Microsoft\Windows\Time\msvcp90.dll2013-07-09 12:52:00 49664 ----a-w- C:\ProgramData\Microsoft\Windows\Time\w9xpopen.exe2013-07-09 12:52:00 24064 ----a-w- C:\ProgramData\Microsoft\Windows\Time\TimeServer.exe2013-07-09 12:52:00 2303488 ----a-w- C:\ProgramData\Microsoft\Windows\Time\python27.dll2013-07-09 12:52:00 219648 ----a-w- C:\ProgramData\Microsoft\Windows\Time\boost_python-vc90-mt-1_48.dll2013-07-09 12:52:00 10752 ----a-w- C:\ProgramData\Microsoft\Windows\Time\Time-svc.exe2013-07-09 12:52:00 10240 ----a-w- C:\ProgramData\Microsoft\Windows\Time\WindowsTime.exe2013-07-09 08:18:56 9552976 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{38677760-460E-47D2-80AB-ECC8EFC63DC1}\mpengine.dll2013-07-03 08:46:06 9552976 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll2013-07-01 14:04:10 964552 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{BB094481-049E-4D8E-AB1C-2473ECAA55EA}\gapaengine.dll2013-06-29 16:48:30 -------- d-----r- C:\Users\gABBY\Dropbox2013-06-29 16:47:32 -------- d-----w- C:\Users\gABBY\AppData\Roaming\Dropbox2013-06-29 12:29:33 -------- d-----w- C:\Users\gABBY\AppData\Local\Soulseek Chat Logs2013-06-29 12:25:02 -------- d-----w- C:\Program Files (x86)\SoulseekQt2013-06-29 12:18:08 -------- d-----w- C:\Users\gABBY\AppData\Local\QuickPar2013-06-28 23:15:19 -------- d-----w- C:\Users\gABBY\AppData\Roaming\Wargaming.net2013-06-28 23:03:39 -------- d-----w- C:\Users\gABBY\AppData\Roaming\Windows Live Writer2013-06-28 23:03:39 -------- d-----w- C:\Users\gABBY\AppData\Local\Windows Live Writer2013-06-28 23:03:20 -------- d-----w- C:\Windows\SysWow64\xlive2013-06-28 23:03:17 -------- d-----w- C:\Program Files (x86)\Microsoft Games for Windows - LIVE2013-06-28 23:01:21 -------- d-----w- C:\Windows\nl2013-06-28 23:01:06 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server Compact Edition2013-06-28 23:00:52 -------- d-----w- C:\Windows\PCHEALTH2013-06-28 22:57:34 99840 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\CNMPPAG.DLL2013-06-28 22:57:34 30208 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\CNMPDAG.DLL2013-06-28 22:57:25 385024 ----a-w- C:\Windows\System32\CNMLMAG.DLL2013-06-28 22:54:04 -------- d-----w- C:\Users\gABBY\AppData\Roaming\NVIDIA2013-06-28 22:40:17 291088 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe2013-06-28 22:40:17 280904 ----a-w- C:\Windows\SysWow64\PnkBstrB.ex02013-06-28 22:39:58 291088 ----a-w- C:\Windows\SysWow64\PnkBstrB.xtr2013-06-28 22:39:52 76888 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe2013-06-28 22:39:52 -------- d-----w- C:\Users\gABBY\AppData\Local\PunkBuster2013-06-28 22:39:31 -------- d-----w- C:\ProgramData\EA Core2013-06-28 22:39:20 -------- d-----w- C:\ProgramData\EA Logs2013-06-28 22:30:06 -------- d-----w- C:\Program Files (x86)\Winamp Detect2013-06-28 22:27:25 2906586 ------w- C:\Windows\SysWow64\Sens_oal.dll2013-06-28 22:27:25 1944064 ------w- C:\Windows\System32\Sens_oal.dll2013-06-28 22:27:23 647872 ------w- C:\Windows\SysWow64\Mscomct2.ocx2013-06-28 22:27:23 53248 ------w- C:\Windows\Ctregrun.exe2013-06-28 22:24:11 61440 ------w- C:\Windows\SysWow64\CTChkAud.dll2013-06-28 22:24:11 49664 ------w- C:\Windows\System32\CTChkAud.dll2013-06-28 22:24:11 42496 ------w- C:\Windows\System32\AddCat.exe2013-06-28 22:24:11 183296 ------w- C:\Windows\System32\CTOPT352.dll2013-06-28 22:24:11 166912 ------w- C:\Windows\SysWow64\CTOPT352.dll2013-06-28 21:45:07 -------- d-----w- C:\Users\gABBY\AppData\Local\NVIDIA2013-06-28 21:20:57 1424384 ----a-w- C:\Windows\System32\WindowsCodecs.dll2013-06-28 21:20:57 1230336 ----a-w- C:\Windows\SysWow64\WindowsCodecs.dll2013-06-28 21:16:55 -------- d-----w- C:\ProgramData\Blizzard Entertainment2013-06-28 21:16:55 -------- d-----w- C:\Program Files (x86)\Common Files\Blizzard Entertainment2013-06-28 21:15:00 -------- d-----w- C:\ProgramData\Battle.net2013-06-28 21:14:19 283200 ----a-w- C:\Windows\System32\drivers\dtsoftbus01.sys2013-06-28 21:11:38 564824 ----a-w- C:\Windows\System32\drivers\sptd.sys2013-06-28 21:11:38 -------- d-----w- C:\Users\gABBY\AppData\Roaming\DAEMON Tools Pro2013-06-28 21:11:34 -------- d-----w- C:\Program Files (x86)\DAEMON Tools Pro2013-06-28 21:11:09 -------- d-----w- C:\ProgramData\DAEMON Tools Pro2013-06-28 21:08:53 9728 ---ha-w- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll2013-06-28 20:56:55 -------- d-----w- C:\Program Files (x86)\ASUS2013-06-28 20:54:52 2560 ----a-w- C:\Windows\System32\drivers\nl-NL\wdf01000.sys.mui2013-06-28 20:39:12 44032 ----a-w- C:\Windows\SysWow64\dhcpcsvc6.dll2013-06-28 20:39:12 193536 ----a-w- C:\Windows\SysWow64\dhcpcore6.dll2013-06-28 20:39:11 55296 ----a-w- C:\Windows\System32\dhcpcsvc6.dll2013-06-28 20:39:11 226816 ----a-w- C:\Windows\System32\dhcpcore6.dll2013-06-28 20:25:30 6656 ----a-w- C:\Windows\System32\drivers\nl-NL\rdvgkmd.sys.mui2013-06-28 20:25:30 2560 ----a-w- C:\Windows\System32\drivers\nl-NL\rdpwd.sys.mui2013-06-28 20:25:29 4608 ----a-w- C:\Windows\System32\drivers\nl-NL\tsusbhub.sys.mui2013-06-28 20:25:29 3584 ----a-w- C:\Windows\System32\drivers\nl-NL\tsusbflt.sys.mui2013-06-28 20:25:27 3072 ----a-w- C:\Windows\System32\drivers\nl-NL\Dot4usb.sys.mui2013-06-28 20:23:22 1910632 ----a-w- C:\Windows\System32\drivers\tcpip.sys2013-06-28 20:23:21 983400 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys2013-06-28 20:23:21 950128 ----a-w- C:\Windows\System32\drivers\ndis.sys2013-06-28 20:23:21 265064 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys2013-06-28 20:23:21 144384 ----a-w- C:\Windows\System32\cdd.dll2013-06-28 20:23:20 41472 ----a-w- C:\Windows\System32\drivers\RNDISMP.sys2013-06-28 20:23:18 48640 ----a-w- C:\Windows\System32\wwanprotdim.dll2013-06-28 20:23:18 3153920 ----a-w- C:\Windows\System32\win32k.sys2013-06-28 20:23:18 230400 ----a-w- C:\Windows\System32\wwansvc.dll2013-06-28 20:23:17 751104 ----a-w- C:\Windows\System32\win32spl.dll2013-06-28 20:23:17 68608 ----a-w- C:\Windows\System32\taskhost.exe2013-06-28 20:23:17 492544 ----a-w- C:\Windows\SysWow64\win32spl.dll2013-06-28 20:08:10 -------- d-----w- C:\Windows\nl-NL2013-06-28 20:01:50 -------- d-----w- C:\Users\gABBY\AppData\Local\Razer2013-06-28 19:53:16 -------- d-----w- C:\Windows\System32\SPReview2013-06-28 19:53:14 -------- d-----w- C:\Windows\System32\EventProviders2013-06-28 19:53:00 -------- d-----w- C:\Program Files (x86)\Microsoft Security Client2013-06-28 19:52:59 -------- d-----w- C:\Program Files\Microsoft Security Client2013-06-28 19:19:11 98816 ----a-w- C:\Windows\System32\drivers\usbccgp.sys2013-06-28 18:54:56 9728 ----a-w- C:\Windows\System32\Wdfres.dll2013-06-28 18:54:56 785512 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys2013-06-28 18:54:56 54376 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys2013-06-28 18:54:56 2560 ----a-w- C:\Windows\System32\drivers\en-US\wdf01000.sys.mui2013-06-28 18:49:35 294912 ----a-w- C:\Windows\System32\browserchoice.exe2013-06-28 18:48:59 6219088 ------w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll2013-06-28 18:48:58 9552976 ------w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DB752D9D-BB05-496F-A2BC-BF4933E21717}\mpengine.dll2013-06-28 18:42:42 2414360 ----a-w- C:\Windows\SysWow64\d3dx9_31.dll2013-06-28 18:42:42 1892184 ----a-w- C:\Windows\SysWow64\D3DX9_42.dll2013-06-28 18:42:38 -------- d-----w- C:\Program Files (x86)\Common Files\PX Storage Engine2013-06-28 18:41:02 70656 ----a-w- C:\Windows\SysWow64\fontsub.dll2013-06-28 18:41:02 46080 ----a-w- C:\Windows\System32\atmlib.dll2013-06-28 18:41:02 367616 ----a-w- C:\Windows\System32\atmfd.dll2013-06-28 18:41:02 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll2013-06-28 18:41:02 295424 ----a-w- C:\Windows\SysWow64\atmfd.dll2013-06-28 18:41:02 100864 ----a-w- C:\Windows\System32\fontsub.dll2013-06-28 18:40:20 87040 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys2013-06-28 18:40:20 84992 ----a-w- C:\Windows\System32\WUDFSvc.dll2013-06-28 18:40:20 198656 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys2013-06-28 18:40:20 194048 ----a-w- C:\Windows\System32\WUDFPlatform.dll2013-06-28 18:40:19 744448 ----a-w- C:\Windows\System32\WUDFx.dll2013-06-28 18:40:19 45056 ----a-w- C:\Windows\System32\WUDFCoinstaller.dll2013-06-28 18:40:19 229888 ----a-w- C:\Windows\System32\WUDFHost.exe2013-06-28 18:38:05 77656 ----a-w- C:\Windows\System32\XAPOFX1_5.dll2013-06-28 18:38:05 74072 ----a-w- C:\Windows\SysWow64\XAPOFX1_5.dll2013-06-28 18:38:05 527192 ----a-w- C:\Windows\SysWow64\XAudio2_7.dll2013-06-28 18:38:05 523088 ----a-w- C:\Windows\System32\d3dx10_42.dll2013-06-28 18:38:05 518488 ----a-w- C:\Windows\System32\XAudio2_7.dll2013-06-28 18:38:05 453456 ----a-w- C:\Windows\SysWow64\d3dx10_42.dll2013-06-28 18:38:05 276832 ----a-w- C:\Windows\System32\d3dx11_43.dll2013-06-28 18:38:05 2526056 ----a-w- C:\Windows\System32\D3DCompiler_43.dll2013-06-28 18:38:05 248672 ----a-w- C:\Windows\SysWow64\d3dx11_43.dll2013-06-28 18:38:05 2106216 ----a-w- C:\Windows\SysWow64\D3DCompiler_43.dll2013-06-28 18:38:01 4398360 ----a-w- C:\Windows\System32\d3dx9_32.dll2013-06-28 18:38:01 3426072 ----a-w- C:\Windows\SysWow64\d3dx9_32.dll2013-06-28 18:36:46 -------- d-----w- C:\Users\gABBY\AppData\Local\Akamai2013-06-28 18:35:58 -------- d-----w- C:\Program Files (x86)\Common Files\Steam2013-06-28 18:34:23 6656 ----a-w- C:\Windows\SysWow64\apisetschema.dll2013-06-28 18:33:59 67072 ----a-w- C:\Windows\splwow64.exe2013-06-28 18:32:36 -------- d-----w- C:\Program Files (x86)\QuickPar2013-06-28 18:31:33 -------- d-----w- C:\Users\gABBY\AppData\Roaming\GrabIt2013-06-28 18:31:08 -------- d-----w- C:\Program Files (x86)\GrabIt2013-06-28 18:30:10 23680 ----a-w- C:\Windows\System32\drivers\IOMap64.sys2013-06-28 18:27:56 -------- d-----w- C:\Windows\Downloaded Installations2013-06-28 18:26:27 -------- d-----w- C:\Program Files\NVIDIA Corporation2013-06-28 18:26:13 -------- d-----w- C:\NVIDIA2013-06-28 18:25:13 826880 ----a-w- C:\Windows\SysWow64\rdpcore.dll2013-06-28 18:25:13 23552 ----a-w- C:\Windows\System32\drivers\tdtcp.sys2013-06-28 18:25:13 20992 ----a-w- C:\Windows\System32\drivers\rdpvideominiport.sys2013-06-28 18:25:13 162816 ----a-w- C:\Windows\System32\rdpudd.dll2013-06-28 18:25:13 1031680 ----a-w- C:\Windows\System32\rdpcore.dll2013-06-28 18:23:36 -------- d-----w- C:\Users\gABBY\AppData\Local\Google2013-06-28 18:23:32 -------- d-----w- C:\Users\gABBY\AppData\Local\Deployment2013-06-28 18:23:32 -------- d-----w- C:\Users\gABBY\AppData\Local\Apps2013-06-28 18:23:03 2622464 ----a-w- C:\Windows\System32\wucltux.dll2013-06-28 18:21:54 99840 ----a-w- C:\Windows\System32\wudriver.dll2013-06-28 18:21:53 36864 ----a-w- C:\Windows\System32\wuapp.exe2013-06-28 18:21:53 186752 ----a-w- C:\Windows\System32\wuwebv.dll2013-06-28 18:21:18 769168 ----a-w- C:\Windows\System32\drivers\Rt64win7.sys2013-06-28 18:21:18 74344 ----a-w- C:\Windows\System32\RtNicProp64.dll2013-06-28 18:21:18 107552 ----a-w- C:\Windows\System32\RTNUninst64.dll2013-06-28 18:21:14 -------- d-----w- C:\Program Files (x86)\Realtek2013-06-28 18:20:40 -------- d-----w- C:\gABBY2013-06-28 18:12:36 -------- d-sh--we C:\Documents and Settings2013-06-28 18:12:36 -------- d-sh--w- C:\Recovery2013-06-24 11:20:22 768000 ----a-w- C:\Windows\SysWow64\rzdevicedll.dll2013-06-21 03:16:02 566048 ----a-w- C:\Windows\SysWow64\nvStreaming.exe2013-06-17 06:43:32 56832 ----a-w- C:\Windows\SysWow64\rzdevinfo.dll2013-06-17 06:43:32 154112 ----a-w- C:\Windows\SysWow64\rztouchdll.dll2013-06-17 06:43:28 117248 ----a-w- C:\Windows\SysWow64\rzdisplaydll.dll2013-06-17 06:43:26 296448 ----a-w- C:\Windows\SysWow64\rzaudiodll.dll.==================== Find3M ====================.2013-06-28 22:27:26 466520 ----a-w- C:\Windows\System32\wrap_oal.dll2013-06-28 22:27:26 445016 ----a-w- C:\Windows\SysWow64\wrap_oal.dll2013-06-28 22:27:26 123480 ----a-w- C:\Windows\System32\OpenAL32.dll2013-06-28 22:27:26 109144 ----a-w- C:\Windows\SysWow64\OpenAL32.dll2013-06-28 21:08:53 9728 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll2013-06-28 20:14:30 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll2013-06-28 20:14:29 175616 ----a-w- C:\Windows\System32\msclmd.dll2013-06-21 10:23:16 6496544 ----a-w- C:\Windows\System32\nvcpl.dll2013-06-21 10:23:16 3514656 ----a-w- C:\Windows\System32\nvsvc64.dll2013-06-21 10:23:11 884512 ----a-w- C:\Windows\System32\nvvsvc.exe2013-06-21 10:23:10 63776 ----a-w- C:\Windows\System32\nvshext.dll2013-06-21 10:23:10 2555680 ----a-w- C:\Windows\System32\nvsvcr.dll2013-06-21 10:23:10 237856 ----a-w- C:\Windows\System32\nvmctray.dll2013-06-20 04:17:49 3253909 ----a-w- C:\Windows\System32\nvcoproc.bin2013-06-07 03:29:52 126464 ----a-w- C:\Windows\System32\drivers\rzudd.sys2013-06-07 03:29:50 31232 ----a-w- C:\Windows\System32\drivers\rzendpt.sys2013-05-13 05:51:01 184320 ----a-w- C:\Windows\System32\cryptsvc.dll2013-05-13 05:51:00 1464320 ----a-w- C:\Windows\System32\crypt32.dll2013-05-13 05:51:00 139776 ----a-w- C:\Windows\System32\cryptnet.dll2013-05-13 05:50:40 52224 ----a-w- C:\Windows\System32\certenc.dll2013-05-13 04:45:55 140288 ----a-w- C:\Windows\SysWow64\cryptsvc.dll2013-05-13 04:45:55 1160192 ----a-w- C:\Windows\SysWow64\crypt32.dll2013-05-13 04:45:55 103936 ----a-w- C:\Windows\SysWow64\cryptnet.dll2013-05-13 03:43:55 1192448 ----a-w- C:\Windows\System32\certutil.exe2013-05-13 03:08:10 903168 ----a-w- C:\Windows\SysWow64\certutil.exe2013-05-13 03:08:06 43008 ----a-w- C:\Windows\SysWow64\certenc.dll2013-05-10 05:49:27 30720 ----a-w- C:\Windows\System32\cryptdlg.dll2013-05-10 03:20:54 24576 ----a-w- C:\Windows\SysWow64\cryptdlg.dll2013-05-02 15:29:56 278800 ------w- C:\Windows\System32\MpSigStub.exe2013-04-25 23:30:32 1505280 ----a-w- C:\Windows\SysWow64\d3d11.dll2013-04-13 05:49:23 135168 ----a-w- C:\Windows\apppatch\AppPatch64\AcXtrnal.dll2013-04-13 05:49:19 350208 ----a-w- C:\Windows\apppatch\AppPatch64\AcLayers.dll2013-04-13 05:49:19 308736 ----a-w- C:\Windows\apppatch\AppPatch64\AcGenral.dll2013-04-13 05:49:19 111104 ----a-w- C:\Windows\apppatch\AppPatch64\acspecfc.dll2013-04-13 04:45:16 474624 ----a-w- C:\Windows\apppatch\AcSpecfc.dll2013-04-13 04:45:15 2176512 ----a-w- C:\Windows\apppatch\AcGenral.dll2013-04-12 14:45:08 1656680 ----a-w- C:\Windows\System32\drivers\ntfs.sys.============= FINISH: 22:08:11,31 ===============
  6. I have over 90% usage and very high temperatures while idle. I really need some help to identify and solve the issue.
  7. Hi team, thanks in advance for your help! I've been trying to remove this coin-miner, but I have so far not succeeded. Please see the attached txt files from the dds script. I am an IT guy, so don't hesitate to ask me to do some advanced things if needed... attach.txt dds.txt
  8. Hello! I have problem with file iswizard.7z. It. He continues to come back when you physically delete it. Located in LocalSettings / Temp. It moves the file dwm.exe, which is a heavy burden the CPU. Please help.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.