James Howell
DoubleClickItToFixIt.com
7472 Nashville Street
Ringgold, GA 30736
706-307-9689
http://applelogicboardrepairservice.com
Mike,
This email will serve as an update on the status and repair of your systems sent in.
Currently I have listed the following machines sent in for repair by you:
Toshiba A305 with the serialization of Unknown
As agreed your system is billed at $75.00 per system.
Now, with the Toshiba A305 with the serialization of Unknown has been repaired and is ready for return.
The system had a number of viruses on it.
Your system was cleaned; antivirus was replaced; updated and scanned. The antivirus was configured for daily updates and to have on access scanning. Your operating system is Windows 7 Home Premium. All updates were applied via AutoPatcher dated for 04/01/2011.
A copy of the repair log is posted below:
cleanerOptions version scanGUID scanDescription threatDefinitionVersion errors found ignored deleted quarantined reportonly total cookies registry files folders processes archives procModule procMemory threads sysModules ssdt ntdllExport ntosExport hookIAT hookIDT scanSysEnter hookDevice hookCodeSectionRing0 hookCodeSectionRing3 MBR total cookies registry files folders processes archives procModule procMemory threads sysModules ssdt ntdllExport ntosExport hookIAT hookIDT scanSysEnter hookDevice hookCodeSectionRing0 hookCodeSectionRing3 MBR total start end errors found ignored deleted quarantined reportonly total start end userIncludedPaths userExcludedPaths ignoredThreats scanAllLocalDrives excludeRemovableDrives scanFiles scanCookies scanProcesses scanProcessThread scanRegistry scanProcessesDeep suspendActiveThreats scanAllUsers useFileNameAndCRC8 dontCalcCRC8 scanCommonTactics scanArchives scanKnownFileTypes recursiveFileScan findLowRiskThreats keepScanRecord maxCheckFileLen minCheckFileLen scanVipreSuspicious scanDerivatives scanRootkits scanProcessMemory scanSystemModule ssdt ntdllExport ntosExport hookIAT scanIDT scanSysEnter scanDevice scanCodeSectionRing0 scanCodeSectionRing3 scanMBR authorURL desc threatAdviceDetails customData id name level category type quarantineId adviseType canQuarantine author optionalScan actionRequested cleanerResult type dispValue n v
4.0.3904
{324D1989-A223-4C4B-8C62-CC48ED091E45} 8925
6 0
0 30805 121497 20170 73 0 3211 0 0 150 391 1824 1959 183 244 1 1 0 0 0 180509
0 18 10 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 30
2011-04-05T20:35:35 2011-04-05T22:40:34
2 0 4 0 6
2011-04-05T22:40:35 2011-04-05T22:40:44
true true true false true true true true true true true false true false false true true true 6291456 0 false true true true true true true true true true true true true true true
453searches.com A Toolbar is a type of browser plug-in that adds a third-party utility bar to the web browser, usually just below or next to the browser’s address bar. A Toolbar typically has a search function and provides search results for paid advertisers. It often has buttons that are links to advertisers’ web pages. An advertising toolbar may track browsing and search queries in order to display contextually relevant search results and ads. This is an elevated risk and should be removed or quarantined as it may compromise your privacy and security, make unwanted changes to your computer’s settings, and negatively impact your computer’s performance and stability. 10899 UpMedia.Search ToolBar 3 Toolbar Adware {1F20ED64-7625-432A-B773-C016FEE4833E} 3 true 0 -1 3
3 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar -1
hive HKEY_LOCAL_MACHINE
key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar
valueType -1
valueName
3 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar\DisplayIcon 1
hive HKEY_LOCAL_MACHINE
key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar
valueType 1
valueName DisplayIcon
3 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar\DisplayName 1
hive HKEY_LOCAL_MACHINE
key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar
valueType 1
valueName DisplayName
3 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar\DisplayVersion 1
hive HKEY_LOCAL_MACHINE
key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar
valueType 1
valueName DisplayVersion
3 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar\EstimatedSize 4
hive HKEY_LOCAL_MACHINE
key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar
valueType 4
valueName EstimatedSize
3 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar\NoModify 4
hive HKEY_LOCAL_MACHINE
key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar
valueType 4
valueName NoModify
3 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar\NoRepair 4
hive HKEY_LOCAL_MACHINE
key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar
valueType 4
valueName NoRepair
3 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar\Publisher 1
hive HKEY_LOCAL_MACHINE
key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar
valueType 1
valueName Publisher
3 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar\UninstallString 1
hive HKEY_LOCAL_MACHINE
key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar
valueType 1
valueName UninstallString
3 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar\URLInfoAbout 1
hive HKEY_LOCAL_MACHINE
key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Toolbar
valueType 1
valueName URLInfoAbout
3 HKEY_LOCAL_MACHINE\SOFTWARE\Search Toolbar -1
hive HKEY_LOCAL_MACHINE
key SOFTWARE\Search Toolbar
valueType -1
valueName
3 HKEY_LOCAL_MACHINE\SOFTWARE\Search Toolbar\UpdatePage 1
hive HKEY_LOCAL_MACHINE
key SOFTWARE\Search Toolbar
valueType 1
valueName UpdatePage
Trojan is a general term for malicious software that is installed under false or deceptive pretenses or is installed without the user’s full knowledge and consent. Most Trojans exhibit some form of malicious, hostile, or harmful functionality or behavior. This is a high risk and should be removed immediately as it may compromise your privacy and security, make dangerous changes to your computer’s settings without your knowledge and consent, or severely degrade your computer’s performance and stability. 4657539 Trojan.Win32.Generic.pak!cobra 2 Trojan Malware {A9E69155-113F-4C5E-983F-4E14E4E1CBD0} 3 true 0 -1 3
4 C:\Users\MIKE\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U5BIDD3Y\load[1].htm
hidden true
path C:\Users\MIKE\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\U5BIDD3Y\load[1].htm
fileSize 556032
crc8 89951782157A0000
md5 2F277F7AE23CD1DBBDB4ED65ADD8A73E
2 4052, c:\Users\MIKE\AppData\Roaming\gog.exe
pid 4052
procPath c:\Users\MIKE\AppData\Roaming\gog.exe
imageType 0
crc8 89951782157A0000
md5 2F277F7AE23CD1DBBDB4ED65ADD8A73E
Adware, also known as advertising software, displays third-party advertising on the computer. The ads can take several forms, including pop-ups, pop-unders, banners, or links embedded within web pages or parts of the Windows interface. Some adware advertising might consists of text ads shown within the application itself or within side bars, search bars, and search results. Adware is often contextually or behaviorally based and tracks browsing habits in order to display ads that are meant to be relevant to the user. This is a moderate risk and should be removed or quarantined as it may negatively impact your privacy and security or make unwanted changes to your computer’s settings. 4722231 Zugo Ltd (v) 4 Adware (General) Adware {58C1D87E-2F26-4308-8B63-AF1F709F57C0} 3 true 0 -1 3
4 C:\Program Files\Search Toolbar\SearchToolbarUninstall.exe
hidden true
path C:\Program Files\Search Toolbar\SearchToolbarUninstall.exe
fileSize 110376
crc8 8C19AA6A6D490000
md5 B98F9313397205F429A844F3BE608DFD
detectionType 4
4 C:\Program Files\Search Toolbar\SearchToolbarUpdater.exe
hidden true
path C:\Program Files\Search Toolbar\SearchToolbarUpdater.exe
fileSize 45744
crc8 B4C544D62E110000
md5 153BE992335531D06FE3718B5645C35D
detectionType 4
Adware, also known as advertising software, displays third-party advertising on the computer. The ads can take several forms, including pop-ups, pop-unders, banners, or links embedded within web pages or parts of the Windows interface. Some adware advertising might consists of text ads shown within the application itself or within side bars, search bars, and search results. Adware is often contextually or behaviorally based and tracks browsing habits in order to display ads that are meant to be relevant to the user. This is a moderate risk and should be removed or quarantined as it may negatively impact your privacy and security or make unwanted changes to your computer’s settings. 4725406 Zugo 4 Adware (General) Adware {0A1388C6-DFF8-4DF8-9580-3BDFD8747C70} 3 true 0 -1 3
3 HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\toolbar\{9D425283-D487-4337-BAB6-AB8354A81457} 1
hive HKEY_LOCAL_MACHINE
key software\microsoft\internet explorer\toolbar
valueType 1
valueName {9D425283-D487-4337-BAB6-AB8354A81457}
3 HKEY_USERS\S-1-5-21-3917053551-177705408-305834002-1000\software\microsoft\internet explorer\toolbar\webbrowser\{9D425283-D487-4337-BAB6-AB8354A81457} 3
hive HKEY_USERS
key S-1-5-21-3917053551-177705408-305834002-1000\software\microsoft\internet explorer\toolbar\webbrowser
valueType 3
valueName {9D425283-D487-4337-BAB6-AB8354A81457}