Jump to content
Due to inclement weather in Southwest Florida, our Clearwater support team is offline. Our other offices are available to assist you, however their responses may be delayed. We appreciate your patience and understanding during this time. ×

Random hourly Tab-out


Recommended Posts

  • Root Admin

Well I didn't delete the flash file but I did tell it to remove a couple of entries that were loading it.

Okay please show me another screen shot of what you're talking about and we can run some other stuff to remove anything we want.

I'll be out most of the night soon, but will check back when I get back or sometime tomorrow.

Link to post
Share on other sites

Pic 1 is the item still in system service. 

Pic 2 is the .exe still in the flash folder (with location in directory bar)

Pic 3 is the error log with time stamps. (the gap of no activity was when my computer was shut down)

 

The error logs all have a detail message of the following:

 

Faulting application name: FlashPlayerUpdateService.exe, version: 11.6.602.180, time stamp: 0x51a4ab8c
Faulting module name: ntdll.dll, version: 6.1.7601.17725, time stamp: 0x4ec49b8f
Exception code: 0xc0000005
Fault offset: 0x0002e243
Faulting process id: 0x8f8
Faulting application start time: 0x01ce79dd930c88f7
Faulting application path: C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Faulting module path: C:\Windows\SysWOW64\ntdll.dll
Report Id: d2ace482-e5d0-11e2-bc42-001e33d02f39
 
 
Hope that helps :) No rush, as I'm sure you're busy. I appreciate your patience with this :)

post-142351-0-51314300-1373087307_thumb.

post-142351-0-09374900-1373087308_thumb.

post-142351-0-48394100-1373087308_thumb.

Link to post
Share on other sites

  • Root Admin

Please save the attached CFScript.txt file as before to your desktop and drag and drop onto combofix.

You need to disable your antivirus for combofix to run properly.

If combofix asks to update please let it. Also please remember the note about the "key marked for deletion" and simply restart the computer if that happens.

Then reboot and run the minitoolbox scan again and let me know if the flash has been removed or not.

Please download MiniToolBox save it to your desktop and run it.

Checkmark the following check-boxes:

  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Devices
  • List Users, Partitions and Memory size.
  • List Minidump Files
Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.

Note: When using Reset FF Proxy Settings option Firefox should be closed.

CFScript.txt

Link to post
Share on other sites

  • Root Admin

Great, Next, download Security Check from here or here.

  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.
Link to post
Share on other sites

 Results of screen317's Security Check version 0.99.68  

 Windows 7 Service Pack 1 x64 (UAC is enabled)  

 Internet Explorer 10  

``````````````Antivirus/Firewall Check:`````````````` 

 Windows Firewall Enabled!  

Avira Desktop   

 Antivirus up to date!  (On Access scanning disabled!) 

`````````Anti-malware/Other Utilities Check:````````` 

 Malwarebytes Anti-Malware version 1.75.0.1300  

 Java 7 Update 25  

 Adobe Reader 10.1.7 Adobe Reader out of Date!  

 Mozilla Firefox 21.0 Firefox out of Date!  

 Google Chrome 27.0.1453.110  

 Google Chrome 27.0.1453.116  

 Google Chrome plugins...  

````````Process Check: objlist.exe by Laurent````````  

 Avira Antivir avgnt.exe 

 Avira Antivir avguard.exe 

`````````````````System Health check````````````````` 

 Total Fragmentation on Drive C: 0% 

````````````````````End of Log`````````````````````` 
Link to post
Share on other sites

  • Root Admin

Glad we could help. :)

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
 Share

  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.