Home > General > Gamehoarbor.org

Gamehoarbor.org

Failed to delete . . ((((((((((((((((((((((((( Files Created from 2014-08-14 to 2014-09-14 ))))))))))))))))))))))))))))))) . . 2014-09-14 19:30 . 2014-09-14 19:30--------d-----w-c:\users\Guest\AppData\Local\temp 2014-09-14 19:30 . 2014-09-14 19:30--------d-----w-c:\users\Default\AppData\Local\temp 2014-09-14 14:37 . 2014-08-21 03:4311319192----a-w-c:\programdata\Microsoft\Microsoft Antimalware\Definition The system returned: (22) Invalid argument The remote host or network may be down. Jump to content Sign In Create Account Search Advanced Search section: This topic Forums Members Help Files Calendar View New Content Forum Rules BleepingComputer.com Forums Members Tutorials Startup List Your cache administrator is webmaster.

The system returned: (22) Invalid argument The remote host or network may be down. Please try the request again. The file will not be moved.) HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1331288 2014-08-22] (Microsoft Corporation) HKLM\...\Run: [LogMeIn GUI] => C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe [57928 2012-11-29] (LogMeIn, Inc.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => Your cache administrator is webmaster.

BleepingComputer is being sued by Enigma Software because of a negative post of SpyHunter. Back to top #3 dedworld dedworld Topic Starter Members 3 posts OFFLINE Local time:09:59 AM Posted 15 September 2014 - 08:07 AM Hello, thanks for the speedy reply. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site. I hope to have half of the luck that the users have reported on this forum with removing this Maleware.

Pro VPN\bin\ForceInterfaceLSP.dll [105696] () Winsock: Catalog9 05 C:\Program Files (x86)\HMA! c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ Install LastPass IE RunOnce.lnk - c:\program files (x86)\Common Files\lpuninstall.exe -p -name=LastPass -ffuuid [email protected] [2014-8-22 15000576] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice] @="Service" Using the site is easy and fun. Pro VPN\bin\openvpnserv.exe [36352 2012-11-19] () [File not signed] R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-06-22] () R2 PST Service; C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [65657 2011-09-02] (Motorola) [File not signed] S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe

The system returned: (22) Invalid argument The remote host or network may be down. The system returned: (22) Invalid argument The remote host or network may be down. Please try the request again. http://push2check.net/gameharbor.com.cn Please try the request again.

Pro VPN\bin\ForceInterfaceLSP.dll [105696] () Winsock: Catalog9 16 C:\Program Files (x86)\HMA! The file will not be moved unless listed separately.) R2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [878368 2013-10-25] (IObit) S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] () R2 AVP15.0.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Combo fix log: ComboFix 14-09-14.01 - Stephen 09/14/2014 12:24:29.1.8 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.8141.5571 [GMT -7:00] Running from: c:\users\Stephen\Downloads\ComboFix.exe AV: Kaspersky Internet Security *Disabled/Updated* {179979E8-273D-D14E-0543-2861940E4886} AV: Microsoft c:\users\Stephen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Launch Jawbone Updater.lnk - c:\program files (x86)\Jawbone\LaunchJU.exe [2014-8-14 64120] .

Generated Tue, 24 Jan 2017 16:58:45 GMT by s_hp107 (squid/3.5.23) ERROR The requested URL could not be retrieved The following error was encountered while trying to retrieve the URL: http://0.0.0.7/ Connection If we have ever helped you in the past, please consider helping us. Any help would be greatly appreciated. I've thrown everything I had at it but it persists.

Completion time: 2014-09-14 12:40:27 - machine was rebooted ComboFix-quarantined-files.txt 2014-09-14 19:40 ComboFix2.txt 2014-09-13 02:19 . c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe c:\program files (x86)\IObit\Driver Booster\AutoUpdate.exe c:\program files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe c:\windows\SysWOW64\PnkBstrA.exe c:\program files (x86)\IObit\Advanced SystemCare 7\RealTimeProtector.exe c:\program c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll . . . . CONTRIBUTE TO OUR LEGAL DEFENSE All unused funds will be donated to the Electronic Frontier Foundation (EFF).

Generated Tue, 24 Jan 2017 16:58:45 GMT by s_hp107 (squid/3.5.23) The file will not be moved unless listed separately.) S3 AnyDVD; C:\Windows\System32\Drivers\AnyDVD.sys [138400 2012-08-26] (SlySoft, Inc.) S3 AnyDVD; C:\Windows\SysWOW64\Drivers\AnyDVD.sys [138400 2012-08-26] (SlySoft, Inc.) R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [21616 2011-11-02] () U5 AppMgmt; Please try the request again. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged

Generated Tue, 24 Jan 2017 16:58:45 GMT by s_hp107 (squid/3.5.23) ERROR The requested URL could not be retrieved The following error was encountered while trying to retrieve the URL: http://0.0.0.10/ Connection BLEEPINGCOMPUTER NEEDS YOUR HELP! or read our Welcome Guide to learn how to use this site.

Contents of the 'Scheduled Tasks' folder . 2014-09-14 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-02-14 05:23] . 2014-09-14 c:\windows\Tasks\AVG-Secure-Search-Update_MAY2013_TB_rel.job - c:\program files (x86)\AVG SafeGuard toolbar\AVG-Secure-Search-Update_MAY2013_TB.exe [2013-05-25 13:50] . 2014-09-14 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job -

Pro VPN\bin\ForceInterfaceLSP.dll [105696] () Winsock: Catalog9 03 C:\Program Files (x86)\HMA! Your cache administrator is webmaster. Several functions may not work. If you accept cookies from this site, you will only be shown this dialog once!You can press escape or click on the X to close this box.

A case like this could easily cost hundreds of thousands of dollars. Pro VPN\bin\ForceInterfaceLSP.dll [105696] () Winsock: Catalog9 02 C:\Program Files (x86)\HMA! Pro VPN\bin\ForceInterfaceLSP.dll [105696] () Tcpip\Parameters: [DhcpNameServer] 10.0.1.1 FireFox: ======== FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll () FF Plugin: @lastpass.com/NPLastPass -> C:\Program Files (x86)\LastPass\nplastpass64.dll (LastPass) FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Here's the requested text files: FRST: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-09-2014 Ran by Stephen (administrator) on STEPHEN-PC on 15-09-2014 05:54:59 Running from C:\Users\Stephen\Desktop Platform:

Pro VPN\bin\ForceInterfaceLSP.dll [105696] () Winsock: Catalog9 04 C:\Program Files (x86)\HMA! Please re-enable javascript to access full functionality. R2 CLKMSVC10_9EC60124;CyberLink Product - 2013/02/14 06:09;c:\program files (x86)\CyberLink\PowerDVD9\NavFilter\kmsvc.exe;c:\program files (x86)\CyberLink\PowerDVD9\NavFilter\kmsvc.exe [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R3 AppleChargerSrv;AppleChargerSrv;c:\windows\system32\AppleChargerSrv.exe;c:\windows\SYSNATIVE\AppleChargerSrv.exe [x] R3 BTCFilterService;USB Networking Driver Filter Service;c:\windows\system32\DRIVERS\motfilt.sys;c:\windows\SYSNATIVE\DRIVERS\motfilt.sys [x] R3 HtcVCom32;HTC Diagnostic Register a free account to unlock additional features at BleepingComputer.com Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers.

Gamehoarbor.org Started by dedworld , Sep 14 2014 08:01 PM This topic is locked 6 replies to this topic #1 dedworld dedworld Members 3 posts OFFLINE Local time:09:59 AM Posted The file will not be moved.) (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (NVIDIA Corporation) C:\Program Click here to Register a free account now! Your cache administrator is webmaster.

Please try the request again. Inc.) FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF The system returned: (22) Invalid argument The remote host or network may be down. Pro VPN\bin\ForceInterfaceLSP.dll TCP: DhcpNameServer = 10.0.1.1 . . --------------------- LOCKED REGISTRY KEYS --------------------- . [HKEY_USERS\S-1-5-21-533942187-2008812399-1407026884-1000\Software\SecuROM\License information*] "datasecu"=hex:07,3a,3b,a5,f4,2b,1d,94,0a,e7,bf,05,74,d9,d0,68,b2,d5,d1,9a,3f, 9c,f7,96,56,7a,5c,f4,07,31,b8,d3,0b,5a,c4,48,72,cd,aa,00,44,ce,f6,88,16,85,\ "rkeysecu"=hex:2f,0f,d5,3e,02,2b,06,63,b1,0b,dd,b6,71,e2,54,98 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_15_0_0_152_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation] "Enabled"=dword:00000001

Pre-Run: 559,247,638,528 bytes free Post-Run: 559,566,299,136 bytes free . - - End Of File - - E8EFDBBA68609F8C967BF7AB1C4BE46E A36C5E4F47E84449FF07ED3517B43A31 Back to top BC AdBot (Login to Remove) BleepingComputer.com Register to remove Generated Tue, 24 Jan 2017 16:58:45 GMT by s_hp107 (squid/3.5.23) ERROR The requested URL could not be retrieved The following error was encountered while trying to retrieve the URL: http://0.0.0.8/ Connection uLocal Page = c:\windows\system32\blank.htm uStart Page = https://us-mg6.mail.yahoo.com/neo/launch?.rand=5oqnthpqeamjh mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = *.local;192.168.*.* IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~2\OFFICE11\EXCEL.EXE/3000 IE: LastPass - file://c:\users\Stephen\AppData\LocalLow\LastPass\context.html?cmd=lastpass IE: LastPass Fill Forms To learn more and to read the lawsuit, click here.