Removing c:\documents and settings\all users\application data\malwarebytes' anti-malware (portable)\mbr_1_r.mbam... Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 2 HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.

AV: AVG AntiVirus Free Edition 2013 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF} . ============== Running Processes ================ . Macboatmaster replied Feb 10, 2017 at 5:20 PM 4 Word Story continued (#6) cwwozniak replied Feb 10, 2017 at 5:17 PM BIOS speaker does not beep... C:\WINDOWS\system32\GTDownDE_87.ocx (Adware.Gdown) -> Quarantined and deleted successfully. Inspecting partition table: MBR Signature: 55AA Disk Signature: 75260D85 Partition information: Partition 0 type is Primary (0x7) Partition is ACTIVE. http://www.hijackthis.de/

Let it finish. You may get warnings from your antivirus about this tool, ignore them or shutdown your antivirus.

Leave them if you want to, and fix the other ones. It does take a while Removing c:\documents and settings\all users\application data\malwarebytes' anti-malware (portable)\mbr_2_i.mbam...

Proud member - Unified Network of Instructors and Trained Eliminators I do not accept personal donations for assistance provided. Partition starts at LBA: 128520 Numsec = 302616405 Partition file system is NTFS Partition is bootable Partition 2 type is Other (0xdb) Partition is NOT ACTIVE. My services.exe is running at 40-50% CPU and I've no idea why. Once the computer is totally clean, I'll certainly let you know.

The latest log is looking clean! Music & Audio Video & Photo Hardware Tablets, smartphones and e-readers Computer components and accessories Other Hardware All Other Technical Help Topics OK! A black DOS box will briefly flash and then disappear.

A black DOS box will briefly flash and then disappear.

Now go here to do an online virus scan (make sure you checkmark to scan AND clean): http://housecall.trendmicro.com/ Run Hijack This again and post a new log here Wayne wdm2291, Files Detected: 5 C:\Documents and Settings\Mike\Application Data\SwvUpdater\Updater.exe (PUP.Software.Updater) -> Quarantined and deleted successfully. I would ask that you instead consider donating the greatest gift - Organ Donation.

In order to find out what entries are nasty and what are installed by the user, you need some background information.A logfile is not so easy to analyze.

The list is not all inclusive. No, create an account now. uStart Page = about:blank uDefault_Page_URL = hxxp://www.dell.co.uk/myway uURLSearchHooks: Freecorder Toolbar: {1392b8d2-5c05-419f-a8f6-b9f15a596612} - c:\program files\freecorder\prxtbFre2.dll BHO: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - c:\program files\hp\digital imaging\smart web printing\hpswp_printenhancer.dll BHO: Freecorder Toolbar: {1392b8d2-5c05-419f-a8f6-b9f15a596612} - c:\program HKCR\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67} (PUP.Software.Updater) -> Quarantined and deleted successfully.

Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan. Please perform the following scan:Download DDS by sUBs from one of the following links.

Scan finished ======================================= Removal queue found; removal started Removing c:\documents and settings\all users\application data\malwarebytes' anti-malware (portable)\mbr_0_i.mbam... Please re-enable javascript to access full functionality. IF REQUESTED, ZIP IT UP & ATTACH IT .

Partition starts at LBA: 0 Numsec = 0 Partition 2 type is Empty (0x0) Partition is NOT ACTIVE.