trevsdad 0 Posted October 21, 2015 Report Share Posted October 21, 2015 Something is causing my PC to run something in the background soon after it boots that slows it down to a crawl. It doesn't happen right away, but gets worse as I try to open any windows or apps. Eventually everything seems to stop and I can hear the HD intermittently start and stop. Soon, the PC gives up and restarts. As a result I'm not sure the emsisoft emergency scan completed but it did generate a log which I attached per your instructions along with the FRST logs. I've tried everything including ccleaner, rkill, Hijackthis, malewarebytes and a few others to try and correct this. Nothing has worked. One other thing...emsisoft generated a message that said the following kernel was infected but that it couldn't be removed without help from someone in the forum. C:\Windows\System32\taskhostw.exe Please help, thanks! elliott logs.db3 FRST.txt Addition.txt Link to post Share on other sites
Kevin Zoll 309 Posted October 22, 2015 Report Share Posted October 22, 2015 Hello, logs.db3 is a database file, the actual scan log should be in C:\EEK\bin\Reports\. Copy the below code to Notepad; Save As fixlist.txt to your Desktop. HKLM-x32\...\Run: [] => [X] ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\PROGRA~2\MICROS~4\Office15\GROOVEEX.DLL No File ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\PROGRA~2\MICROS~4\Office15\GROOVEEX.DLL No File ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\PROGRA~2\MICROS~4\Office15\GROOVEEX.DLL No File HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = Toolbar: HKU\.DEFAULT -> No Name - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - No File Toolbar: HKU\.DEFAULT -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKU\S-1-5-21-3960584884-3807317841-67137960-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKU\S-1-5-21-3960584884-3807317841-67137960-1001 -> No Name - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - No File Toolbar: HKU\S-1-5-21-3960584884-3807317841-67137960-1001 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File FF HKLM-x32\...\Firefox\Extensions: [{97E22097-9A2F-45b1-8DAF-36AD648C7EF4}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext => not found 2015-10-20 14:33 - 2015-10-20 14:33 - 00003266 _____ C:\WINDOWS\System32\Tasks\{1859BFB9-C4AB-4743-A722-7499A13572A6} 2015-09-30 11:06 - 2015-09-30 11:06 - 00276803 _____ C:\ProgramData\SPL897B.tmp 2011-11-18 00:10 - 2011-11-18 00:12 - 0000026 ____H () C:\ProgramData\.811261211181235583101118113995 2011-10-24 09:29 - 2015-08-14 15:19 - 0367648 _____ () C:\ProgramData\lxduJSW.log 2015-01-16 17:28 - 2015-01-16 17:28 - 0472290 _____ () C:\ProgramData\SPL1286.tmp 2015-05-31 22:59 - 2015-05-31 22:59 - 3173361 _____ () C:\ProgramData\SPL178B.tmp 2015-02-08 21:21 - 2015-02-08 21:21 - 4601158 _____ () C:\ProgramData\SPL19DC.tmp 2015-07-19 13:52 - 2015-07-19 13:52 - 4480996 _____ () C:\ProgramData\SPL1D7.tmp 2014-09-26 19:49 - 2014-09-26 19:49 - 1035606 _____ () C:\ProgramData\SPL1F23.tmp 2011-11-14 13:32 - 2011-11-14 13:32 - 2228995 _____ () C:\ProgramData\SPL1F24.tmp 2015-03-17 13:44 - 2015-03-17 13:44 - 0686356 _____ () C:\ProgramData\SPL1FC6.tmp 2014-03-16 23:22 - 2014-03-16 23:22 - 5280179 _____ () C:\ProgramData\SPL2197.tmp 2013-09-18 09:15 - 2013-09-18 09:15 - 2775770 _____ () C:\ProgramData\SPL2461.tmp 2013-12-23 15:05 - 2013-12-23 15:05 - 2213421 _____ () C:\ProgramData\SPL2512.tmp 2014-01-22 11:54 - 2014-01-22 11:54 - 0990460 _____ () C:\ProgramData\SPL25D9.tmp 2014-04-06 16:38 - 2014-04-06 16:38 - 1030067 _____ () C:\ProgramData\SPL2635.tmp 2014-04-24 09:03 - 2014-04-24 09:03 - 3221579 _____ () C:\ProgramData\SPL2819.tmp 2014-11-17 12:53 - 2014-11-17 12:53 - 0351403 _____ () C:\ProgramData\SPL2941.tmp 2014-01-07 14:34 - 2014-01-07 14:34 - 0885473 _____ () C:\ProgramData\SPL2965.tmp 2014-04-02 10:54 - 2014-04-02 10:54 - 2087792 _____ () C:\ProgramData\SPL2B44.tmp 2014-07-18 17:06 - 2014-07-18 17:06 - 0823845 _____ () C:\ProgramData\SPL2C2F.tmp 2014-04-02 10:21 - 2014-04-02 10:21 - 2089236 _____ () C:\ProgramData\SPL2DC4.tmp 2015-09-09 19:22 - 2015-09-09 19:22 - 0000000 _____ () C:\ProgramData\SPL2EC3.tmp 2015-01-09 17:36 - 2015-01-09 17:36 - 0816179 _____ () C:\ProgramData\SPL3344.tmp 2014-02-03 12:25 - 2014-02-03 12:25 - 0553190 _____ () C:\ProgramData\SPL34E5.tmp 2014-01-06 19:58 - 2014-01-06 19:58 - 3628076 _____ () C:\ProgramData\SPL3843.tmp 2015-08-31 09:14 - 2015-08-31 09:14 - 1072999 _____ () C:\ProgramData\SPL38A3.tmp 2015-06-23 16:28 - 2015-06-23 16:28 - 2194408 _____ () C:\ProgramData\SPL39B5.tmp 2013-04-30 14:51 - 2013-04-30 14:51 - 1081858 _____ () C:\ProgramData\SPL3D50.tmp 2015-01-30 14:03 - 2015-01-30 14:03 - 1183986 _____ () C:\ProgramData\SPL3E8B.tmp 2015-01-16 15:44 - 2015-01-16 15:44 - 0380671 _____ () C:\ProgramData\SPL40AA.tmp 2015-02-01 23:28 - 2015-02-01 23:28 - 2168388 _____ () C:\ProgramData\SPL420.tmp 2015-04-19 15:28 - 2015-04-19 15:28 - 1174988 _____ () C:\ProgramData\SPL423F.tmp 2014-07-06 14:35 - 2014-07-06 14:35 - 3998331 _____ () C:\ProgramData\SPL425C.tmp 2015-01-16 14:51 - 2015-01-16 14:51 - 0899365 _____ () C:\ProgramData\SPL456D.tmp 2014-10-08 20:30 - 2014-10-08 20:30 - 1212416 _____ () C:\ProgramData\SPL4681.tmp 2014-07-26 10:47 - 2014-07-26 10:47 - 1031172 _____ () C:\ProgramData\SPL46A0.tmp 2014-01-06 15:03 - 2014-01-06 15:03 - 0201463 _____ () C:\ProgramData\SPL46E4.tmp 2014-04-02 10:41 - 2014-04-02 10:41 - 2087792 _____ () C:\ProgramData\SPL46EE.tmp 2014-03-17 12:18 - 2014-03-17 12:18 - 3476952 _____ () C:\ProgramData\SPL47A9.tmp 2015-06-17 17:49 - 2015-06-17 17:49 - 0316688 _____ () C:\ProgramData\SPL4C36.tmp 2011-11-11 17:00 - 2011-11-11 17:00 - 0296384 _____ () C:\ProgramData\SPL4C92.tmp 2014-08-06 14:04 - 2014-08-06 14:04 - 0511800 _____ () C:\ProgramData\SPL4D64.tmp 2015-01-08 14:01 - 2015-01-08 14:01 - 0240376 _____ () C:\ProgramData\SPL4FD4.tmp 2014-05-22 23:04 - 2014-05-22 23:04 - 3160883 _____ () C:\ProgramData\SPL502E.tmp 2014-04-24 08:47 - 2014-04-24 08:47 - 0430694 _____ () C:\ProgramData\SPL5072.tmp 2014-02-25 22:52 - 2014-02-25 22:52 - 2774513 _____ () C:\ProgramData\SPL533D.tmp 2015-03-31 14:01 - 2015-03-31 14:01 - 0262354 _____ () C:\ProgramData\SPL5360.tmp 2015-01-30 17:53 - 2015-01-30 17:53 - 1296563 _____ () C:\ProgramData\SPL53AA.tmp 2015-09-02 13:01 - 2015-09-02 13:01 - 1072999 _____ () C:\ProgramData\SPL541.tmp 2014-12-13 14:51 - 2014-12-13 14:51 - 0866741 _____ () C:\ProgramData\SPL562C.tmp 2014-06-08 11:40 - 2014-06-08 11:40 - 4288105 _____ () C:\ProgramData\SPL5791.tmp 2015-06-29 13:03 - 2015-06-29 13:03 - 6107864 _____ () C:\ProgramData\SPL5830.tmp 2014-01-11 21:16 - 2014-01-11 21:16 - 0799321 _____ () C:\ProgramData\SPL5946.tmp 2015-02-25 17:41 - 2015-02-25 17:41 - 0994920 _____ () C:\ProgramData\SPL5BE7.tmp 2015-06-22 22:33 - 2015-06-22 22:33 - 2194408 _____ () C:\ProgramData\SPL5D99.tmp 2014-03-17 11:53 - 2014-03-17 11:53 - 1500538 _____ () C:\ProgramData\SPL61F0.tmp 2015-05-30 13:03 - 2015-05-30 13:03 - 0706716 _____ () C:\ProgramData\SPL6326.tmp 2014-06-07 13:37 - 2014-06-07 13:37 - 4288105 _____ () C:\ProgramData\SPL6567.tmp 2014-11-13 19:52 - 2014-11-13 19:52 - 3132676 _____ () C:\ProgramData\SPL6686.tmp 2015-04-22 14:07 - 2015-04-22 14:07 - 0720932 _____ () C:\ProgramData\SPL66EC.tmp 2015-01-16 18:30 - 2015-01-16 18:30 - 0472290 _____ () C:\ProgramData\SPL67C7.tmp 2014-03-31 12:03 - 2014-03-31 12:03 - 0403397 _____ () C:\ProgramData\SPL67E9.tmp 2013-12-16 23:00 - 2013-12-16 23:00 - 1403308 _____ () C:\ProgramData\SPL68EE.tmp 2014-01-24 19:00 - 2014-01-24 19:00 - 0377119 _____ () C:\ProgramData\SPL6A01.tmp 2013-12-14 14:05 - 2013-12-14 14:05 - 0867590 _____ () C:\ProgramData\SPL6B22.tmp 2014-05-15 22:25 - 2014-05-15 22:25 - 2831731 _____ () C:\ProgramData\SPL6B8E.tmp 2015-05-21 19:14 - 2015-05-21 19:14 - 0323160 _____ () C:\ProgramData\SPL6C1A.tmp 2015-02-22 13:46 - 2015-02-22 13:46 - 4838654 _____ () C:\ProgramData\SPL6C69.tmp 2015-05-22 21:43 - 2015-05-22 21:43 - 0323160 _____ () C:\ProgramData\SPL6CA6.tmp 2015-06-19 11:23 - 2015-06-19 11:23 - 5341253 _____ () C:\ProgramData\SPL6DCF.tmp 2013-12-04 12:24 - 2013-12-04 12:24 - 2004212 _____ () C:\ProgramData\SPL6E3D.tmp 2015-06-23 11:37 - 2015-06-23 11:37 - 2194408 _____ () C:\ProgramData\SPL6F07.tmp 2015-06-22 10:56 - 2015-06-22 10:56 - 0810717 _____ () C:\ProgramData\SPL6F17.tmp 2015-03-23 01:59 - 2015-03-23 01:59 - 0291160 _____ () C:\ProgramData\SPL6F9B.tmp 2015-05-18 17:18 - 2015-05-18 17:18 - 0104080 _____ () C:\ProgramData\SPL6FA4.tmp 2014-01-11 21:11 - 2014-01-11 21:11 - 0799321 _____ () C:\ProgramData\SPL6FD8.tmp 2015-05-24 12:03 - 2015-05-24 12:03 - 0323160 _____ () C:\ProgramData\SPL7001.tmp 2014-05-30 22:28 - 2014-05-30 22:28 - 0486492 _____ () C:\ProgramData\SPL71DE.tmp 2015-04-22 13:02 - 2015-04-22 13:02 - 0861845 _____ () C:\ProgramData\SPL72EE.tmp 2014-06-25 20:39 - 2014-06-25 20:39 - 1035621 _____ () C:\ProgramData\SPL7314.tmp 2014-12-23 16:57 - 2014-12-23 16:57 - 1943352 _____ () C:\ProgramData\SPL732E.tmp 2015-07-19 14:06 - 2015-07-19 14:06 - 0287376 _____ () C:\ProgramData\SPL75AB.tmp 2015-08-24 22:56 - 2015-08-24 22:56 - 0343292 _____ () C:\ProgramData\SPL7696.tmp 2015-04-12 16:05 - 2015-04-12 16:05 - 0570314 _____ () C:\ProgramData\SPL77AE.tmp 2014-06-07 15:02 - 2014-06-07 15:02 - 4288105 _____ () C:\ProgramData\SPL7879.tmp 2014-05-11 02:33 - 2014-05-11 02:33 - 1414694 _____ () C:\ProgramData\SPL7916.tmp 2015-09-01 18:34 - 2015-09-01 18:34 - 1072999 _____ () C:\ProgramData\SPL794C.tmp 2014-06-28 12:48 - 2014-06-28 12:48 - 0110496 _____ () C:\ProgramData\SPL7BD8.tmp 2015-06-18 13:15 - 2015-06-18 13:15 - 5341253 _____ () C:\ProgramData\SPL7C9E.tmp 2014-01-25 17:42 - 2014-01-25 17:42 - 1411296 _____ () C:\ProgramData\SPL7E05.tmp 2015-01-30 17:43 - 2015-01-30 17:43 - 1296563 _____ () C:\ProgramData\SPL7FFC.tmp 2014-07-06 13:59 - 2014-07-06 13:59 - 4529340 _____ () C:\ProgramData\SPL80A7.tmp 2014-01-14 16:30 - 2014-01-14 16:30 - 1517698 _____ () C:\ProgramData\SPL821A.tmp 2014-03-02 17:37 - 2014-03-02 17:37 - 0517430 _____ () C:\ProgramData\SPL83DE.tmp 2014-01-06 21:18 - 2014-01-06 21:18 - 5565911 _____ () C:\ProgramData\SPL85C3.tmp 2014-12-14 18:58 - 2014-12-14 18:58 - 0866741 _____ () C:\ProgramData\SPL8870.tmp 2015-03-01 22:03 - 2015-03-01 22:03 - 4938701 _____ () C:\ProgramData\SPL88C4.tmp 2014-12-04 23:45 - 2014-12-04 23:45 - 5181228 _____ () C:\ProgramData\SPL88CE.tmp 2015-09-30 11:06 - 2015-09-30 11:06 - 0276803 _____ () C:\ProgramData\SPL897B.tmp 2014-12-04 10:07 - 2014-12-04 10:07 - 5181228 _____ () C:\ProgramData\SPL8A35.tmp 2014-05-06 20:00 - 2014-05-06 20:00 - 1024929 _____ () C:\ProgramData\SPL8A9E.tmp 2015-05-21 18:58 - 2015-05-21 18:58 - 0323160 _____ () C:\ProgramData\SPL8ADA.tmp 2015-07-30 19:47 - 2015-07-30 19:47 - 0215184 _____ () C:\ProgramData\SPL8CBD.tmp 2014-01-29 11:16 - 2014-01-29 11:16 - 2153568 _____ () C:\ProgramData\SPL8D32.tmp 2014-05-29 10:26 - 2014-05-29 10:26 - 1056657 _____ () C:\ProgramData\SPL8D60.tmp 2015-07-22 15:17 - 2015-07-22 15:17 - 0199503 _____ () C:\ProgramData\SPL8E1C.tmp 2013-05-05 17:13 - 2013-05-05 17:13 - 2507844 _____ () C:\ProgramData\SPL8F49.tmp 2014-09-01 19:36 - 2014-09-01 19:36 - 1208456 _____ () C:\ProgramData\SPL941C.tmp 2015-04-22 16:11 - 2015-04-22 16:11 - 1749533 _____ () C:\ProgramData\SPL956D.tmp 2015-05-10 02:15 - 2015-05-10 02:15 - 3400844 _____ () C:\ProgramData\SPL9710.tmp 2011-11-14 13:17 - 2011-11-14 13:17 - 2228995 _____ () C:\ProgramData\SPL9763.tmp 2015-08-31 09:23 - 2015-08-31 09:23 - 1072999 _____ () C:\ProgramData\SPL983E.tmp 2015-05-18 17:23 - 2015-05-18 17:23 - 0104080 _____ () C:\ProgramData\SPL9887.tmp 2015-06-18 13:19 - 2015-06-18 13:19 - 5341253 _____ () C:\ProgramData\SPL999F.tmp 2015-09-03 12:04 - 2015-09-03 12:04 - 3074607 _____ () C:\ProgramData\SPL9CFA.tmp 2013-12-19 22:34 - 2013-12-19 22:34 - 0414656 _____ () C:\ProgramData\SPL9D8F.tmp 2014-06-29 21:24 - 2014-06-29 21:24 - 4268048 _____ () C:\ProgramData\SPLA073.tmp 2014-07-13 17:39 - 2014-07-13 17:39 - 3810959 _____ () C:\ProgramData\SPLA13E.tmp 2015-01-30 17:45 - 2015-01-30 17:45 - 1296563 _____ () C:\ProgramData\SPLA1BA.tmp 2014-07-20 14:39 - 2014-07-20 14:39 - 5036217 _____ () C:\ProgramData\SPLA1DA.tmp 2014-09-06 15:35 - 2014-09-06 15:35 - 1517059 _____ () C:\ProgramData\SPLA35.tmp 2015-05-29 12:57 - 2015-05-29 12:57 - 3327408 _____ () C:\ProgramData\SPLA987.tmp 2015-01-26 21:29 - 2015-01-26 21:29 - 0097234 _____ () C:\ProgramData\SPLAA3.tmp 2014-02-26 00:41 - 2014-02-26 00:41 - 1069906 _____ () C:\ProgramData\SPLAAFF.tmp 2013-12-04 20:06 - 2013-12-04 20:06 - 8483833 _____ () C:\ProgramData\SPLAB83.tmp 2015-07-25 12:23 - 2015-07-25 12:23 - 0341927 _____ () C:\ProgramData\SPLAE96.tmp 2014-07-06 14:05 - 2014-07-06 14:05 - 4529340 _____ () C:\ProgramData\SPLAFDD.tmp 2014-12-03 19:15 - 2014-12-03 19:16 - 5181228 _____ () C:\ProgramData\SPLB0A2.tmp 2014-01-07 20:29 - 2014-01-07 20:29 - 0264244 _____ () C:\ProgramData\SPLB409.tmp 2014-12-15 23:38 - 2014-12-15 23:38 - 0869675 _____ () C:\ProgramData\SPLB40A.tmp 2014-06-15 17:58 - 2014-06-15 17:58 - 0104392 _____ () C:\ProgramData\SPLB4FC.tmp 2015-01-16 17:26 - 2015-01-16 17:26 - 0472290 _____ () C:\ProgramData\SPLB77D.tmp 2015-01-16 18:31 - 2015-01-16 18:31 - 0472290 _____ () C:\ProgramData\SPLB7C9.tmp 2015-04-15 11:24 - 2015-04-15 11:25 - 0716804 _____ () C:\ProgramData\SPLBA39.tmp 2014-03-20 23:15 - 2014-03-20 23:15 - 0557731 _____ () C:\ProgramData\SPLBAED.tmp 2015-03-31 22:48 - 2015-03-31 22:48 - 0537849 _____ () C:\ProgramData\SPLBB9A.tmp 2015-01-13 16:42 - 2015-01-13 16:43 - 11052660 _____ () C:\ProgramData\SPLC01C.tmp 2015-09-08 08:42 - 2015-09-08 08:42 - 3074607 _____ () C:\ProgramData\SPLC11F.tmp 2011-11-14 13:30 - 2011-11-14 13:30 - 2228995 _____ () C:\ProgramData\SPLC216.tmp 2014-05-15 22:22 - 2014-05-15 22:22 - 2831731 _____ () C:\ProgramData\SPLC229.tmp 2012-11-08 00:23 - 2012-11-08 00:23 - 0684901 _____ () C:\ProgramData\SPLC252.tmp 2014-03-17 12:29 - 2014-03-17 12:29 - 3476952 _____ () C:\ProgramData\SPLC698.tmp 2015-06-23 13:07 - 2015-06-23 13:07 - 2194408 _____ () C:\ProgramData\SPLC7A1.tmp 2014-02-18 21:18 - 2014-02-18 21:18 - 0631626 _____ () C:\ProgramData\SPLCA3D.tmp 2015-04-12 15:56 - 2015-04-12 15:56 - 3717200 _____ () C:\ProgramData\SPLCD3D.tmp 2014-12-04 00:03 - 2014-12-04 00:03 - 5181228 _____ () C:\ProgramData\SPLCE27.tmp 2015-05-29 12:54 - 2015-05-29 12:54 - 3327408 _____ () C:\ProgramData\SPLCEC4.tmp 2014-01-13 14:09 - 2014-01-13 14:09 - 0989005 _____ () C:\ProgramData\SPLD1E3.tmp 2014-01-03 16:35 - 2014-01-03 16:35 - 29882459 _____ () C:\ProgramData\SPLD7DB.tmp 2015-06-22 18:34 - 2015-06-22 18:34 - 2194408 _____ () C:\ProgramData\SPLD87B.tmp 2011-11-14 13:19 - 2011-11-14 13:19 - 2228995 _____ () C:\ProgramData\SPLDEAF.tmp 2014-07-20 13:54 - 2014-07-20 13:54 - 4029857 _____ () C:\ProgramData\SPLE485.tmp 2015-05-29 23:06 - 2015-05-29 23:06 - 3327408 _____ () C:\ProgramData\SPLE5AC.tmp 2014-01-05 16:07 - 2014-01-05 16:07 - 0645735 _____ () C:\ProgramData\SPLE5DD.tmp 2014-06-29 17:59 - 2014-06-29 17:59 - 4115923 _____ () C:\ProgramData\SPLEA16.tmp 2015-09-09 20:10 - 2015-09-09 20:10 - 21688545 _____ () C:\ProgramData\SPLEA18.tmp 2015-02-27 11:49 - 2015-02-27 11:49 - 0146065 _____ () C:\ProgramData\SPLEAAC.tmp 2015-06-30 12:27 - 2015-06-30 12:27 - 0608004 _____ () C:\ProgramData\SPLECDF.tmp 2014-01-05 21:34 - 2014-01-05 21:34 - 1365826 _____ () C:\ProgramData\SPLEE34.tmp 2014-01-25 17:22 - 2014-01-25 17:22 - 0571723 _____ () C:\ProgramData\SPLF3B1.tmp 2014-03-26 09:01 - 2014-03-26 09:01 - 2732876 _____ () C:\ProgramData\SPLF48B.tmp 2015-04-19 14:46 - 2015-04-19 14:46 - 1438268 _____ () C:\ProgramData\SPLF517.tmp 2014-09-05 19:06 - 2014-09-05 19:06 - 1004824 _____ () C:\ProgramData\SPLF5E3.tmp 2014-06-15 17:39 - 2014-06-15 17:39 - 4295813 _____ () C:\ProgramData\SPLF72A.tmp 2015-05-18 17:35 - 2015-05-18 17:35 - 0104080 _____ () C:\ProgramData\SPLF739.tmp 2013-12-15 20:19 - 2013-12-15 20:19 - 0637182 _____ () C:\ProgramData\SPLF78F.tmp 2014-07-13 17:51 - 2014-07-13 17:51 - 6065636 _____ () C:\ProgramData\SPLF7A.tmp 2014-01-25 17:01 - 2014-01-25 17:01 - 0592204 _____ () C:\ProgramData\SPLF8F1.tmp 2015-06-15 16:47 - 2015-06-15 16:47 - 6003362 _____ () C:\ProgramData\SPLF991.tmp 2014-08-10 13:52 - 2014-08-10 13:52 - 0091389 _____ () C:\ProgramData\SPLFAC2.tmp 2015-05-23 15:39 - 2015-05-23 15:39 - 0323160 _____ () C:\ProgramData\SPLFB3F.tmp 2015-04-15 11:15 - 2015-04-15 11:15 - 0729032 _____ () C:\ProgramData\SPLFBAA.tmp 2011-11-14 13:20 - 2011-11-14 13:20 - 2228995 _____ () C:\ProgramData\SPLFC4D.tmp 2014-01-14 16:09 - 2014-01-14 16:09 - 1917720 _____ () C:\ProgramData\SPLFC8D.tmp 2014-03-26 09:30 - 2014-03-26 09:30 - 2082598 _____ () C:\ProgramData\SPLFDED.tmp 2013-12-19 01:20 - 2013-12-19 01:20 - 1301598 _____ () C:\ProgramData\SPLFE4C.tmp 2015-04-19 15:15 - 2015-04-19 15:15 - 1811456 _____ () C:\ProgramData\SPLFEB8.tmp C:\ProgramData\flashax10.exe C:\Users\-\AppData\Local\Temp\dllnt_dump.dll Task: {06B66E2C-A16A-4F45-B63C-B97B069AD48C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION Task: {15A25E46-0FEB-42AC-8741-222C0C30574E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION Task: {1A472999-96FF-4A16-A728-07A1B071DC3F} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION Task: {54288577-F7E2-4C47-A5BE-A8B60DA2FF35} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION Task: {71879DDA-D563-49BA-8C80-59CFA1827ABB} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION Task: {9AFEE0DF-DD10-489A-9A90-E824CBC6FD89} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION Task: {A2800AC2-B96C-4F4E-A158-D3028262A39C} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION Task: {B19B2902-2A6E-4E1D-BBB6-72D6377B41C6} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION Task: {C1E49FF0-45CF-4D5B-8162-6E2AD543103B} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION Task: {EC153482-B7FC-4680-950F-F74CA9DD85F3} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION Task: {F08419A5-5597-44F5-B908-124EAF4C90C3} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION AlternateDataStreams: C:\Users\-\Cookies:lMh19JZqGGH3sYALfkCSmsTnAJClose Notepad.NOTE: It's important that both files, FRST64 and fixlist.txt are in the same location or the fix will not work. NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system Run FRST64 and press the Fix button just once and wait. If the tool needed a restart please make sure you let the system to restart normally and let the tool complete its run after restart. The tool will make a log on the Desktop (Fixlog.txt). Attach it to your reply. Note: If the tool warns you about an outdated version please download and run the updated version. Link to post Share on other sites
trevsdad 0 Posted October 24, 2015 Author Report Share Posted October 24, 2015 The Fixlog is attached. Also my problem seems to be growing. I can't boot into normal windows mode anymore. I just get a blue screen that says my PC will reboot with a note to look up something called 'Bad_Pool_Header'. eventually I'm able to boot into safe mode. elliott Fixlog.txt Link to post Share on other sites
Kevin Zoll 309 Posted October 26, 2015 Report Share Posted October 26, 2015 These instructions are for Windows 8, but Windows 10 will be similar. http://www.tomshardware.com/faq/id-1653072/fix-bad-pool-header-error-windows.html Link to post Share on other sites
trevsdad 0 Posted October 26, 2015 Author Report Share Posted October 26, 2015 I don't think that's going to work. Under 'troubleshoot' there's no option for 'refreshing'. Apparently in Windows 10 it's been rolled into the 'reset' function which is something I've been trying to avoid. See this link for more. http://www.tenforums.com/tutorials/4090-refresh-windows-10-a.html Do u think this 'Bad Pool' thing was caused by whatever was clogging up my computer? Link to post Share on other sites
Kevin Zoll 309 Posted October 27, 2015 Report Share Posted October 27, 2015 The Bad Pool may be malware related. Have you been able to start Win10 in normal mode since the crash? Link to post Share on other sites
trevsdad 0 Posted October 27, 2015 Author Report Share Posted October 27, 2015 Yes, I was able to boot into Win 10 for about a week until the Bad Pool thing happened this weekend. Link to post Share on other sites
Kevin Zoll 309 Posted October 28, 2015 Report Share Posted October 28, 2015 Try running a system restore, and see if that will let you boot to normal mode. Link to post Share on other sites
trevsdad 0 Posted October 28, 2015 Author Report Share Posted October 28, 2015 Already tried that. Apparently when I installed Win 10 it reset the system and no restore points were saved and the system never informed me to set new restore points. Link to post Share on other sites
Kevin Zoll 309 Posted October 29, 2015 Report Share Posted October 29, 2015 At this point reinstalling Windows 10, may be the only option. Link to post Share on other sites
trevsdad 0 Posted October 30, 2015 Author Report Share Posted October 30, 2015 Yeah I got the same conclusion, but if I do that on the drive where it's installed (C drive) will anything happen to a separate internal drive ? (D drive) Link to post Share on other sites
Kevin Zoll 309 Posted October 30, 2015 Report Share Posted October 30, 2015 The installation routine should not alter drive D. Link to post Share on other sites
trevsdad 0 Posted October 31, 2015 Author Report Share Posted October 31, 2015 Ok...going to do it this weekend. Will let u know if there are problems with the malware after the reset. Link to post Share on other sites
Kevin Zoll 309 Posted November 2, 2015 Report Share Posted November 2, 2015 How did the reinstall go? Link to post Share on other sites
Recommended Posts