Over 1 million tech questions and answers.

Possible crcss.exe trojan? Little to no admin privledges? Hotmail Account Hijacked as well as bank account

Q: Possible crcss.exe trojan? Little to no admin privledges? Hotmail Account Hijacked as well as bank account

Hello All, This is my first post here and I hope that you all are willing to help out a "newbie" of the forum, because as of right now I am getting fed up with my BLEEPING COMPUTER!!!My computer has been acting a little funny lately...I'm not sure what the issue is, but a lot of my administrative privileges seem to have been changed, ie "You do not have permission to (fill in blank)" If anyone has time to take a look at my hijackthis logfile as well as the adsspy logfile to see if there is anything that looks a little fishy. I have had THREE different instances of my bank account info being exploited and just recently my Hotmail account was hijacked and used as a "mass SPAM sender". Also, the last logfile is from a program called IOBit, which has a HijackScan tool as well. Any help would be greatly appreciated!HIJACK THIS LOGFILELogfile of Trend Micro HijackThis v2.0.4Scan saved at 12:55:31 PM, on 5/3/2011Platform: Windows Vista SP2 (WinNT 6.00.1906)MSIE: Internet Explorer v9.00 (9.00.8112.16421)Boot mode: NormalRunning processes:C:\Windows\system32\Dwm.exeC:\Windows\Explorer.EXEC:\Windows\system32\taskeng.exeC:\Windows\System32\igfxtray.exeC:\Windows\System32\hkcmd.exeC:\Windows\system32\igfxsrvc.exeC:\Windows\System32\igfxpers.exeC:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exeC:\Program Files\Toshiba\Power Saver\TPwrMain.exeC:\Program Files\Toshiba\SmoothView\SmoothView.exeC:\Program Files\Toshiba\FlashCards\TCrdMain.exeC:\Program Files\Toshiba\ConfigFree\NDSTray.exeC:\Program Files\Toshiba\TOSHIBA Service Station\ToshibaServiceStation.exeC:\Program Files\Google\Google Desktop Search\GoogleDesktop.exeC:\Program Files\AVG\AVG10\avgtray.exeC:\Program Files\Bradford Networks\Persistent Agent\bncsaui.exeC:\Program Files\McAfee\Common Framework\UdaterUI.exeC:\Program Files\Microsoft IntelliType Pro\itype.exeC:\Program Files\Microsoft IntelliPoint\ipoint.exeC:\Program Files\Common Files\Java\Java Update\jusched.exeC:\Program Files\IObit\IObit Security 360\is360tray.exeC:\Program Files\Toshiba\TOSCDSPD\TOSCDSPD.exeC:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exeC:\Windows\ehome\ehtray.exeC:\Program Files\Spybot - Search & Destroy\TeaTimer.exeC:\Program Files\OpenDNS Updater\OpenDNSUpdater.exeC:\Program Files\McAfee Security Scan\2.1.121\SSScheduler.exeC:\Program Files\Windows Media Player\wmpnscfg.exeC:\Windows\ehome\ehmsas.exeC:\Program Files\Microsoft IntelliType Pro\dpupdchk.exeC:\Windows\system32\igfxext.exeC:\Program Files\Toshiba\ConfigFree\CFSwMgr.exeC:\Program Files\McAfee\Common Framework\McTray.exeC:\Program Files\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\Lavasoft\Ad-Aware\AAWTray.exeC:\Program Files\Mozilla Firefox\plugin-container.exeC:\Windows\notepad.exeC:\Users\jbradford328\Downloads\HijackThis.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R1" target="_blank" class="wLink">http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhostO2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dllO2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: StumbleUpon Launcher - {145B29F4-A56B-4b90-BBAC-45784EBEBBB7} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dllO2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dllO2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dllO2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dllO2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan Enterprise\scriptsn.dllO2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dllO2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dllO2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dllO2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dllO2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dllO2 - BHO: Bing Bar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dllO2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dllO2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dllO3 - Toolbar: StumbleUpon Toolbar - {5093EB4C-3E93-40AB-9266-B607BA87BDC8} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dllO3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dllO3 - Toolbar: @C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dllO4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exeO4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exeO4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exeO4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exeO4 - HKLM\..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXEO4 - HKLM\..\Run: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exeO4 - HKLM\..\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exeO4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exeO4 - HKLM\..\Run: [cfFncEnabler.exe] cfFncEnabler.exeO4 - HKLM\..\Run: [ToshibaServiceStation] "C:\Program Files\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startupO4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE" /STANDALONEO4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exeO4 - HKLM\..\Run: [bncsaui.exe] %ProgramFiles%\Bradford Networks\Persistent Agent\bncsaui.exeO4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\McAfee\Common Framework\udaterui.exe" /StartedFromRunKeyO4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe"O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"O4 - HKLM\..\Run: [IObit Security 360] "C:\Program Files\IObit\IObit Security 360\IS360tray.exe" /autostartO4 - HKCU\..\Run: [TOSCDSPD] TOSCDSPD.EXEO4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exeO4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exeO4 - HKCU\..\Run: [Uniblue Quick Access] "C:\Program Files\Uniblue\ProcessLibrary\qaccess.exe" /startupO4 - HKCU\..\Run: [OpenDNS Updater] "C:\Program Files\OpenDNS Updater\OpenDNSUpdater.exe" /autostartO4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exeO4 - Global Startup: McAfee Security Scan Plus.lnk = ?O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dllO9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dllO9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dllO9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dllO9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dllO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLLO9 - Extra button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dllO9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dllO9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dllO11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphicsO16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cabO16 - DPF: {A3256902-51FA-45A0-8A97-FC1143C169D9} (Diagnostics ActiveX WebControl) - http://support.microsoft.com/mats/DiagWebControl.cabO16" target="_blank" class="wLink">http://support.microsoft.com/mats/DiagWebControl.cabO16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{1CB09FDE-4DC1-49EF-924B-AB9D0FE425BB}: NameServer = 208.67.222.222,208.67.220.220O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dllO18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dllO18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLLO18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dllO20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLLO22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dllO23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exeO23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exeO23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\avgwdsvc.exeO23 - Service: Bradford Persistent Agent Service (BNPagent) - Bradford Networks - C:\Program Files\Bradford Networks\Persistent Agent\bndaemon.exeO23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exeO23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\TOSHIBA Games\TOSHIBA Game Console\GameConsoleService.exeO23 - Service: Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exeO23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exeO23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exeO23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exeO23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exeO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exeO23 - Service: IS360service - IObit - C:\Program Files\IObit\IObit Security 360\IS360srv.exeO23 - Service: Lavasoft Ad-Aware Service - Lavasoft Limited - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exeO23 - Service: McAfee Engine Service (McAfeeEngineService) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan Enterprise\EngineServer.exeO23 - Service: McAfee Framework Service (McAfeeFramework) - McAfee, Inc. - C:\Program Files\McAfee\Common Framework\FrameworkService.exeO23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\2.1.121\McCHSvc.exeO23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exeO23 - Service: McAfee Task Manager (McTaskManager) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exeO23 - Service: McAfee Validation Trust Protection Service (mfevtp) - McAfee, Inc. - C:\Windows\system32\mfevtps.exeO23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exeO23 - Service: SmartFaceVWatchSrv - Toshiba - C:\Program Files\Toshiba\SmartFaceV\SmartFaceVWatchSrv.exeO23 - Service: StumbleUponUpdateService - stumbleupon.com - C:\Program Files\StumbleUpon\StumbleUponUpdateService.exeO23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exeO23 - Service: TOSHIBA Navi Support Service (TNaviSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exeO23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\Windows\system32\TODDSrv.exeO23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exeO23 - Service: TOSHIBA SMART Log Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exeO23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe--End of file - 14202 bytesADSSPY LOG FILE (FROM HIJACK THIS PROGRAM AS WELL)C:\ProgramData\AVG10\Chjw\2e041b54041b1e81.dat : 00aa125e-33db-4a26-b2e5-131754488861 (1437696 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\ProgramData\AVG10\Chjw\2e041b54041b1e81.dat : 40c35875-1b9d-4969-a215-2a74788ae537 (1486848 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\ProgramData\AVG10\Chjw\2e041b54041b1e81.dat : 5f425952-a1b5-4268-be32-4f4f40751f48 (1437696 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\ProgramData\TEMP : 0B4227B4 (142 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\ProgramData\TEMP : 0B4227B4 (142 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\All Users\AVG10\Chjw\2e041b54041b1e81.dat : 00aa125e-33db-4a26-b2e5-131754488861 (1437696 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\All Users\AVG10\Chjw\2e041b54041b1e81.dat : 40c35875-1b9d-4969-a215-2a74788ae537 (1486848 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\All Users\AVG10\Chjw\2e041b54041b1e81.dat : 5f425952-a1b5-4268-be32-4f4f40751f48 (1437696 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\All Users\TEMP : 0B4227B4 (142 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\All Users\TEMP : 0B4227B4 (142 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Clemson\3EF60822-00000001.eml : OECustomProperty (1314 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Clemson\409D12E1-00000002.eml : OECustomProperty (1014 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Clemson\798B121F-00000003.eml : OECustomProperty (970 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\0FBF2F14-00000010.eml : OECustomProperty (1172 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\139D7049-00000006.eml : OECustomProperty (1130 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\13E94080-0000000B.eml : OECustomProperty (1074 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\16AE76C2-00000030.eml : OECustomProperty (922 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\187E16C5-00000009.eml : OECustomProperty (1158 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\23C948CC-0000000D.eml : OECustomProperty (1088 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\2EB02835-0000002F.eml : OECustomProperty (1042 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\2FFF6C69-00000015.eml : OECustomProperty (1254 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\368E0D66-00000014.eml : OECustomProperty (1256 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\36990902-00000002.eml : OECustomProperty (1006 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\36D16320-0000001B.eml : OECustomProperty (1014 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\38077F88-00000025.eml : OECustomProperty (1140 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\38DF6A09-0000001E.eml : OECustomProperty (1176 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\422D54DC-00000012.eml : OECustomProperty (1038 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\4D2D7482-00000029.eml : OECustomProperty (1166 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\52C86131-00000027.eml : OECustomProperty (1178 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\575360BF-0000000E.eml : OECustomProperty (990 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\5C673CD6-0000000F.eml : OECustomProperty (966 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\5DB233EA-0000000C.eml : OECustomProperty (1070 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\679308A4-00000017.eml : OECustomProperty (1188 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\68993CD5-0000000A.eml : OECustomProperty (1186 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\692C4A80-00000008.eml : OECustomProperty (818 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\69D7004D-0000002B.eml : OECustomProperty (1030 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\6AD6047E-00000011.eml : OECustomProperty (918 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\703A0278-0000002C.eml : OECustomProperty (1176 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\71DF0CB8-0000002D.eml : OECustomProperty (1030 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\73DA58B0-00000001.eml : OECustomProperty (982 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Inbox\7BB95772-00000003.eml : OECustomProperty (1030 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Junk E-mail\388E7F37-00000002.eml : OECustomProperty (161 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Sent Items\617C16ED-00000002.eml : OECustomProperty (1137 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\Sent Items\798375EF-00000001.eml : OECustomProperty (1165 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\02AA745A-00000072.eml : OECustomProperty (922 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\030A301C-00000049.eml : OECustomProperty (1070 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\07320120-0000004B.eml : OECustomProperty (990 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\0BDB56AE-0000004A.eml : OECustomProperty (1088 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\11D20094-0000005D.eml : OECustomProperty (1176 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\12383B25-00000029.eml : OECustomProperty (1138 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\1A495F32-00000051.eml : OECustomProperty (1256 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\1AD463CB-0000002B.eml : OECustomProperty (818 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\1E1F6E5D-0000002A.eml : OECustomProperty (970 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\22EE4B40-0000004D.eml : OECustomProperty (1172 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\259F79F3-00000073.eml : OECustomProperty (1208 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\260D6B89-00000048.eml : OECustomProperty (1074 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\26A6701F-00000005.eml : OECustomProperty (1014 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\2C493C61-00000054.eml : OECustomProperty (1254 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\2D12074D-00000002.eml : OECustomProperty (1006 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\323B2213-00000047.eml : OECustomProperty (1186 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\331C6CAB-00000071.eml : OECustomProperty (1042 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\3BF63A9E-00000053.eml : OECustomProperty (1165 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\422D21F7-00000065.eml : OECustomProperty (1140 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\44537D62-0000006E.eml : OECustomProperty (1176 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\4DC86443-00000003.eml : OECustomProperty (1030 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\4E817B2D-0000005A.eml : OECustomProperty (1014 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\54DE39B3-00000001.eml : OECustomProperty (982 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\58786B36-0000004E.eml : OECustomProperty (918 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\5B373F10-00000052.eml : OECustomProperty (1186 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\5CFD3E12-0000004F.eml : OECustomProperty (1038 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\5D037A5A-00000021.eml : OECustomProperty (1118 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\5E467596-00000069.eml : OECustomProperty (1178 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\612F0D8B-0000006F.eml : OECustomProperty (1030 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\66BB428B-00000004.eml : OECustomProperty (1314 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\6A461A05-00000067.eml : OECustomProperty (1158 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\6BFC7F96-00000032.eml : OECustomProperty (1158 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\70901915-0000006B.eml : OECustomProperty (1166 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\71B6730A-00000068.eml : OECustomProperty (1137 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\759A2350-0000004C.eml : OECustomProperty (966 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\767D4509-00000022.eml : OECustomProperty (1130 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\7D0C504F-00000056.eml : OECustomProperty (1188 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\7E996E84-0000006D.eml : OECustomProperty (1030 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\All Mail\7FF54E45-00000046.eml : OECustomProperty (1186 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Sent Mail\49442E40-00000004.eml : OECustomProperty (1186 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Sent Mail\4CAD314F-00000002.eml : OECustomProperty (1138 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Sent Mail\51307E2E-00000005.eml : OECustomProperty (1158 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Sent Mail\5E144DF2-00000003.eml : OECustomProperty (1186 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Sent Mail\797D5F49-00000001.eml : OECustomProperty (1118 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Starred\13661CD0-00000001.eml : OECustomProperty (1314 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Starred\66C44230-00000002.eml : OECustomProperty (970 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Starred\7EB76032-00000003.eml : OECustomProperty (1014 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Trash\0029761E-00000013.eml : OECustomProperty (1448 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Trash\04E40CD1-0000000A.eml : OECustomProperty (1140 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Trash\05F37FCA-00000007.eml : OECustomProperty (1128 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Trash\09F131E8-00000008.eml : OECustomProperty (1006 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Trash\1E74446B-00000009.eml : OECustomProperty (1380 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Trash\20162DBA-0000000E.eml : OECustomProperty (1276 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Trash\29504EF0-00000012.eml : OECustomProperty (1360 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Trash\309136AE-00000011.eml : OECustomProperty (1316 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Trash\37B0530A-0000000B.eml : OECustomProperty (1076 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Trash\3F88015A-0000000D.eml : OECustomProperty (1328 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Trash\41473923-0000000C.eml : OECustomProperty (1336 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Trash\43385FB9-00000005.eml : OECustomProperty (1400 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Trash\43F80DB1-0000000F.eml : OECustomProperty (1112 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Trash\6D5E313F-00000010.eml : OECustomProperty (1260 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Trash\71033415-00000004.eml : OECustomProperty (1400 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\imap.gmail.com\[Gmail]\Trash\73AE65D7-00000006.eml : OECustomProperty (1236 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\Local Folders\Deleted Items\15641647-00000001.eml : OECustomProperty (1165 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\Local Folders\Deleted Items\79931163-00000002.eml : OECustomProperty (1165 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\Local Folders\Inbox\76531A31-00000001.eml : OECustomProperty (916 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\AppData\Local\Microsoft\Windows Mail\Local Folders\Outbox\0DC530CA-00000005.eml : OECustomProperty (893 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Downloads\Firefox Setup 4.0.exe : ZONE.IDENTIFIER (76 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Downloads\GoogleEarthPluginSetup(1).exe : ZONE.IDENTIFIER (76 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Downloads\GoogleEarthPluginSetup.exe : ZONE.IDENTIFIER (76 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Downloads\OpenDNS-Updater-2.2.1.exe : ZONE.IDENTIFIER (76 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Downloads\spybotsd162.exe : ZONE.IDENTIFIER (76 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\BIOTECH\ncbi.url : favicon (318 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Chemistry\chemistry Predicting Reaction Products ? Infoplease.com.url : favicon (894 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Chemistry\Electrochemistry, All information about Electrochemistry TutorVista.com.url : favicon (894 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Chemistry\Rules for Assigning Oxidation Numbers.url : favicon (1150 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\FOOD FOOD FOOD\12 Foods With Super-Healing Powers -1 - MSN Health & Fitness - Nutrition Slide Show.url : favicon (22486 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\FOOD FOOD FOOD\Caramel Apple Cheescake Pie ? Annie?s Eats.url : favicon (1150 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\FOOD FOOD FOOD\It's the Great Pumpin Recipe Roundup - San Francisco Blog Posts - Foodbuzz.url : favicon (1150 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\FOOD FOOD FOOD\Quick Guide to Every Herb and Spice in the Cupboard Apartment Therapy The Kitchn.url : favicon (3638 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\GEOCACHING\Geocaching - The Official Global GPS Cache Hunt Site.url : favicon (7886 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Links\ieonline.microsoft.com-#ieslice.url : favicon (894 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\POETRY PAPER\Helium - Where Knowledge Rules POE PAPER.url : favicon (1150 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\POETRY PAPER\Literary Analysis of the Raven Bookstove.url : favicon (894 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\POETRY PAPER\Meaning of The Raven Symbolism in The Raven with a Poe Poetry Analysis.url : favicon (1406 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\POETRY PAPER\That Imp Bird Pursues Me Perpetually Edgar Poe?s Application of Poetic Metaphor in the Raven Bookstove.url : favicon (894 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\POETRY PAPER\The Philosophy of Composition.url : favicon (1406 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\POETRY PAPER\The Raven (Poem Summary) Information from Answers.com.url : favicon (1150 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\POETRY PAPER\The Raven - Wikipedia, the free encyclopedia.url : favicon (318 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\PSYCH PAPER\CDC - ADHD, Data and Statistics - NCBDDD.url : favicon (1406 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\PSYCH PAPER\SIRS Knowledge Source Search Results.url : favicon (22486 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Random\aM laboratory.url : favicon (3638 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Random\Ballistic Helmet.url : favicon (212 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Random\Dangerously Fun.url : favicon (1150 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Random\Gnovies - Discover new Movies.url : favicon (3638 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Random\Hacked Gadgets - DIY Tech Blog.url : favicon (3638 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Random\ilictronix - neon disco.url : favicon (4470 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Random\inudge.net - Nudge.url : favicon (568 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Random\mental_floss Blog ? 7 College Cheating Scandals.url : favicon (2841 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Random\Ong's Hat Gateway to the Dimensions!.url : favicon (318 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Random\Opi Favorite.url : favicon (678 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Random\PolitiFact The Obameter Tracking Barack Obama's Campaign Promises.url : favicon (1150 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Random\snopes.com Urban Legends Reference Pages.url : favicon (318 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Random\The Straight Dope - Fighting Ignorance Since 1973.url : favicon (3638 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\Random\Thomas Fink's Homepage.url : favicon (1406 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\RESEARCH PAPER\Edgar Allan Poe - Biography and Works.url : favicon (25214 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\RESEARCH PAPER\Neurotic Poets - Edgar Allan Poe.url : favicon (1406 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\RESEARCH PAPER\The Poe Decoder - A Fissure of Mind.url : favicon (1406 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\SpeedGuide.net Windows Vista - 2008 Tweaks.url : favicon (318 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)C:\Users\jbradford328\Favorites\TV\Clicker.com - Watch TV and Movies Online.url : favicon (1150 bytes, MD5 D41D8CD98F00B204E9800998ECF8427E)Logfile of IObit HijackScan v1.0.2.0Scan saved at 11:51:41, on 2011-5-3Running processes:C:\Windows\System32\smss.exeC:\Program Files\AVG\AVG10\avgchsvx.exeC:\Windows\system32\csrss.exeC:\Windows\system32\wininit.exeC:\Windows\system32\csrss.exeC:\Windows\system32\services.exeC:\Windows\system32\winlogon.exeC:\Windows\system32\lsass.exeC:\Windows\system32\lsm.exeC:\Windows\system32\svchost.exeC:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exeC:\Windows\system32\svchost.exeC:\Windows\System32\svchost.exeC:\Windows\System32\svchost.exeC:\Windows\system32\svchost.exeC:\Windows\system32\svchost.exeC:\Windows\system32\SLsvc.exeC:\Windows\system32\svchost.exeC:\Windows\system32\svchost.exeC:\Windows\System32\spoolsv.exeC:\Windows\system32\svchost.exeC:\Windows\system32\agrsmsvc.exeC:\Program Files\AVG\AVG10\avgwdsvc.exeC:\Program Files\Bradford Networks\Persistent Agent\bndaemon.exeC:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exeC:\Windows\system32\svchost.exeC:\Program Files\IObit\IObit Security 360\IS360srv.exeC:\Program Files\McAfee\VirusScan Enterprise\EngineServer.exeC:\Program Files\McAfee\Common Framework\FrameworkService.exeC:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exeC:\Windows\system32\mfevtps.exeC:\Windows\System32\svchost.exeC:\Program Files\AVG\AVG10\avgnsx.exeC:\Windows\System32\svchost.exeC:\Windows\system32\svchost.exeC:\Program Files\AVG\AVG10\avgemcx.exeC:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exeC:\Windows\system32\svchost.exeC:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exeC:\Windows\system32\TODDSrv.exeC:\Program Files\Toshiba\Power Saver\TosCoSrv.exeC:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exeC:\Program Files\McAfee\Common Framework\naPrdMgr.exeC:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exeC:\Windows\System32\svchost.exeC:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXEC:\Windows\system32\SearchIndexer.exeC:\Windows\system32\taskeng.exeC:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exeC:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exeC:\Windows\system32\wbem\wmiprvse.exeC:\Program Files\McAfee\VirusScan Enterprise\mfeann.exeC:\Program Files\SpybotC:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exeC:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exeC:\Windows\system32\svchost.exeC:\Program Files\Toshiba\SmartFaceV\SmartFaceVWatchSrv.exeC:\Windows\system32\svchost.exeC:\Program Files\Windows Media Player\wmpnetwk.exeC:\Windows\system32\Dwm.exeC:\Windows\system32\taskeng.exeC:\Windows\Explorer.EXEC:\Windows\system32\taskeng.exeC:\Program Files\Uniblue\RegistryBooster\rbmonitor.exeC:\Program Files\IObit\Advanced SystemCare 3\AWC.exeC:\Windows\System32\igfxtray.exeC:\Windows\System32\hkcmd.exeC:\Windows\system32\igfxsrvc.exeC:\Windows\System32\igfxpers.exeC:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exeC:\Program Files\Toshiba\Power Saver\TPwrMain.exeC:\Program Files\Toshiba\SmoothView\SmoothView.exeC:\Program Files\Toshiba\FlashCards\TCrdMain.exeC:\Program Files\Toshiba\ConfigFree\NDSTray.exeC:\Program Files\Toshiba\TOSHIBA Service Station\ToshibaServiceStation.exeC:\Program Files\Google\Google Desktop Search\GoogleDesktop.exeC:\Program Files\AVG\AVG10\avgtray.exeC:\Program Files\Bradford Networks\Persistent Agent\bncsaui.exeC:\Program Files\McAfee\Common Framework\UdaterUI.exeC:\Program Files\Microsoft IntelliType Pro\itype.exeC:\Program Files\Microsoft IntelliPoint\ipoint.exeC:\Program Files\Common Files\Java\Java Update\jusched.exeC:\Program Files\IObit\IObit Security 360\is360tray.exeC:\Program Files\Toshiba\TOSCDSPD\TOSCDSPD.exeC:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exeC:\Windows\ehome\ehtray.exeC:\Program Files\SpybotC:\Program Files\OpenDNS Updater\OpenDNSUpdater.exeC:\Program Files\McAfee Security Scan\2.1.121\SSScheduler.exeC:\Program Files\Windows Media Player\wmpnscfg.exeC:\Windows\ehome\ehmsas.exeC:\Windows\system32\wbem\wmiprvse.exeC:\Program Files\Microsoft IntelliType Pro\dpupdchk.exeC:\Windows\system32\igfxext.exeC:\Program Files\Toshiba\ConfigFree\CFSwMgr.exeC:\Program Files\McAfee\Common Framework\McTray.exeC:\Program Files\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exeC:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exeC:\Program Files\AVG\AVG10\avgrsx.exeC:\Program Files\AVG\AVG10\avgcsrvx.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\Microsoft Office\Office12\WINWORD.EXEC:\Program Files\AVG\AVG10\avgcsrvx.exeC:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXEC:\Program Files\Lavasoft\Ad-Aware\AAWService.exeC:\Windows\system32\wbem\unsecapp.exeC:\Program Files\Lavasoft\Ad-Aware\AAWTray.exeC:\Program Files\IObit\IObit Security 360\is360.exeC:\Program Files\IObit\IObit Security 360\a_hijackscan.exeC:\Windows\system32\NOTEPAD.EXEO2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dllO2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: StumbleUpon Launcher - {145B29F4-A56B-4b90-BBAC-45784EBEBBB7} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dllO2 - BHO: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dllO2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dllO2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan Enterprise\scriptsn.dllO2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dllO2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dllO2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dllO2 - BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dllO2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dllO2 - BHO: Bing Bar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dllO2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dllO2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dllO3 - Toolbar: StumbleUpon Toolbar - {5093EB4C-3E93-40AB-9266-B607BA87BDC8} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dllO3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dllO3 - Toolbar: @C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dllO4 - HKLM|\Software\Microsoft\Windows\CurrentVersion\Run\: [IgfxTray] C:\Windows\system32\igfxtray.exeO4 - HKLM|\Software\Microsoft\Windows\CurrentVersion\Run\: [HotKeysCmds] C:\Windows\system32\hkcmd.exeO4 - HKLM|\Software\Microsoft\Windows\CurrentVersion\Run\: [Persistence] C:\Windows\system32\igfxpers.exeO4 - HKLM|\Software\Microsoft\Windows\CurrentVersion\Run\: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exeO4 - HKLM|\Software\Microsoft\Windows\CurrentVersion\Run\: [NDSTray.exe] NDSTray.exeO4 - HKLM|\Software\Microsoft\Windows\CurrentVersion\Run\: [cfFncEnabler.exe] cfFncEnabler.exeO4 - HKLM|\Software\Microsoft\Windows\CurrentVersion\Run\: [ToshibaServiceStation] "C:\Program Files\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60O4 - HKLM|\Software\Microsoft\Windows\CurrentVersion\Run\: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startupO4 - HKLM|\Software\Microsoft\Windows\CurrentVersion\Run\: [ShStatEXE] "C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE" /STANDALONEO4 - HKLM|\Software\Microsoft\Windows\CurrentVersion\Run\: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"O4 - HKLM|\Software\Microsoft\Windows\CurrentVersion\Run\: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exeO4 - HKLM|\Software\Microsoft\Windows\CurrentVersion\Run\: [McAfeeUpdaterUI] "C:\Program Files\McAfee\Common Framework\udaterui.exe" /StartedFromRunKeyO4 - HKLM|\Software\Microsoft\Windows\CurrentVersion\Run\: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe"O4 - HKLM|\Software\Microsoft\Windows\CurrentVersion\Run\: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"O4 - HKLM|\Software\Microsoft\Windows\CurrentVersion\Run\: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"O4 - HKLM|\Software\Microsoft\Windows\CurrentVersion\Run\: [IObit Security 360] "C:\Program Files\IObit\IObit Security 360\IS360tray.exe" /autostartO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000O8 - Extra context menu item: StumbleUpon PhotoBlog It! - res://StumbleUponIEBar.dll/blogimageO9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLLO9 - Extra button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLLO9 - Extra button: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLLO16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B}QuickTime.QuickTime.9 - http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cabO16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}Java Plug-in 1.6.0_24 - http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cabO16 - DPF: {A3256902-51FA-45A0-8A97-FC1143C169D9}Diagnostics.WebControl.1 - http://support.microsoft.com/mats/DiagWebControl.cabO16 - DPF: {CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA}Java Plug-in 1.6.0_06 - http://java.sun.com/update/1.6.0/jinstall-1_6_0_06-windows-i586.cabO16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}Java Plug-in 1.6.0_24 - http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cabO16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}Java Plug-in 1.6.0_24 - http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cabO23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exeO23 - Service: AVGIDSAgent (AVGIDSAgent) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exeO23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\avgwdsvc.exeO23 - Service: Bradford Persistent Agent Service (BNPagent) - Bradford Networks - C:\Program Files\Bradford Networks\Persistent Agent\bndaemon.exeO23 - Service: ConfigFree Service (ConfigFree Service) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exeO23 - Service: Windows Media Center Service Launcher (ehstart) - Unknown - %windir%\system32\svchost.exeO23 - Service: GameConsoleService (GameConsoleService) - WildTangent, Inc. - C:\Program Files\TOSHIBA Games\TOSHIBA Game Console\GameConsoleService.exeO23 - Service: Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exeO23 - Service: Group Policy Client (gpsvc) - Unknown - %windir%\system32\svchost.exeO23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exeO23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc.

RELEVANCY SCORE 200
Preferred Solution: Possible crcss.exe trojan? Little to no admin privledges? Hotmail Account Hijacked as well as bank account

I recommend downloading and running DAP. It can help sort out any driver and firmware related issues on your system

It's worked out well for many of us in the past.

You can download it direct from this link http://downloaddap.org. (This link will open the download page of DAP so you can save a copy to your computer.)

A: Possible crcss.exe trojan? Little to no admin privledges? Hotmail Account Hijacked as well as bank account

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you are unable to create a log because your computer cannot start up successfully please provide detailed information about the Windows version you are using: What we in particular need to know is version, edition and if it is a 32bit or a 64bit system. [/b]If you are unsure about any of these caracteristics, just let us know and we'll help you figuring it out. Please also tell us if you have your Windows CD/DVD handy.Please include a clear description of the problems you're having, along with any steps you may have performed so far.Please refrain from running tools or applying updates other than those we suggest while we are cleaning up your computer. The reason for this is so we know what is going on with the machine at any time. Some programs can interfere with others and hamper the recovery process.Even if you have already provided information about your PC, we need a new log to see what has changed since you originally posted your problem.We need to create an OTL ReportPlease download OTL from one of the following mirrors:This is THE MirrorSave it to your desktop.Double click on the icon on your desktop.Click the "Scan All Users" checkbox.In the custom scan box paste the following:

msconfig
safebootminimal
activex
drivers32
netsvcs
%SYSTEMDRIVE%\*.exe
/md5start
explorer.exe
winlogon.exe
wininit.exe
hlp.dat
/md5stopPush the button.Two reports will open, copy and paste them in a reply here:OTL.txt <-- Will be openedExtra.txt<--Will be minimizedIn the upper right hand corner of the topic you will see a button called Watch Topic.I suggest you click it and select Immediate E-Mail notification and click on Proceed. This way you will be advised when we respond to your topic and facilitate the cleaning of your machine.After 5 days if a topic is not replied to we assume it has been abandoned and it is closed.regards myrti

Read other 2 answers
RELEVANCY SCORE 96

Since early January I've had an identical problem on a desktop running Windows 7 and on a laptop running Vista. The anomaly appeared on both machines within a narrow time frame, so I think they're related.

When I click any Program icon on the desktop with Right-Click/"Run as Administrator," the error message "Windows Explorer has stopped working" pops up, followed by "Windows Explorer is restarting" and Explorer restarts. They'll open and run normally if I do the ordinary left-click, or if I right-click and "Run As Admin" from the Start menu.

This morning my bank's card fraud department called and informed me that some %!#&*%!#& had lifted my debit card info and signed onto a bunch of online dating services, to the tune of roughly $300, before the bank's suspicious activity software caught the anomaly and froze the card. That may or may not be related to the problem, but since I never use my card as a bar tab and the like, but use it regularly for 'Net purchases, I'm suspecting some kind of malware, keylogger, whatever.

On both systems there's also been a marked delay time in program initiation (when they start at all.)

The usual malware/spyware detection programs such as MalwareBytes, SuperAntiSpyware, Spybot S&D, etc., come up empty except the occasional cookie; the same with virus scans including AVG, Avast! and TrendMicro's HouseCall.

Thanks for any help anyone can offe... Read more

A:Windows Explorer restarts on two systems; Bank account hijacked

Read other 11 answers
RELEVANCY SCORE 91.6

A Pennsylvania organization that helps develop affordable housing learned a painful lesson about the hazards of online banking using the Windows operating system when a notorious trojan siphoned almost $480,000 from its account.



Trojan plunders $480k from online bank account ? The Register

Read other answers
RELEVANCY SCORE 91.6

Looking at the 1st link below, Montp represents one of the most advanced keylogging trojans I've seen (based on the # of banks it can track). It is designed specifically to intercept bank transaction information and transmitting it to a special website. While I'm hopeful authorities can shut this down, please encourage users to be careful with email and the web site links. Montp Trojan - Designed to compromise Bank Accountshttp://www.f-secure.com/v-descs/montp.shtmlhttp://www.f-secure.com/weblog/http://secunia.com/virus_information/9923/Montp spying trojan was first discovered in April 2004. The last, Montp.F variant was found on 6-7th of June 2004. The Montp trojan has powerful spying features: it collects information from users of numerous on-line banks and sends collected data to a hacker by uploading specially created files to an ftp server. The trojan can also download and run additional files from ftp and http servers. Additionally the trojan utilizes stealth techniques.

Read other answers
RELEVANCY SCORE 91.2

Hi,

I think I may have a spyware on my computer as someone recently sent a series of spam e-mails (Viagra and the likes) from my Hotmail account. I have changed my password and run a full scan with Kaspersky Internet Security 2010 and Malwarebytes' Anti-Malware, but did not find anything. My internet explorer seems to be crashing quite often also.

I am worried that the same spyware used to get my Hotmail password could capture other data such as my financial passwords.

How can I tell if I am or not infected?

Thanks,

Thomas

A:Hijacked Hotmail Account

Welcome aboard Download Security Check from HERE, and save it to your Desktop. * Double-click SecurityCheck.exe * Follow the onscreen instructions inside of the black box. * A Notepad document should open automatically called checkup.txt; please post the contents of that document.=============================================================================Please download MiniToolBox and run it.Checkmark following boxes:Report IE Proxy SettingsReport FF Proxy SettingsList content of HostsList IP configurationList last 10 Event Viewer logList Users, Partitions and Memory sizeClick Go and post the result.=============================================================================Download Malwarebytes' Anti-Malware (aka MBAM): http://www.malwarebytes.org/products/malwarebytes_free to your desktop. * Double-click mbam-setup.exe and follow the prompts to install the program. * At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish. * If an update is found, it will download and install the latest version. * Once the program has loaded, select Perform quick scan, then click Scan. * When the scan is complete, click OK, then Show Results to view the results. * Be sure that everything is checked, and click Remove Selected. * When completed, a log will open in Notepad. * Post the log back here.Be sure to restart the computer.The log can also be found here:C... Read more

Read other 9 answers
RELEVANCY SCORE 91.2

My partner's parents have a hotmail account that appears to have been hijacked as there messages in there sent items that they have not sent and people are receiving spam supposedly sent by them. They recently upgraded to a new computer so we are not sure if their new PC or their old one may have been infected with some malware that allowed someone to steal their password. please see attached logs and tell me if we have anything to worry about in there current PC. Thanks.DDS (Ver_09-12-01.01) - NTFSx86 Run by Jean & Kelvin at 11:45:24.48 on Tue 19/01/2010Internet Explorer: 8.0.6001.18702Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2039.1371 [GMT 13:00]AV: ESET NOD32 Antivirus 4.0 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}============== Running Processes ===============C:\WINDOWS\system32\svchost -k DcomLaunchsvchost.exeC:\WINDOWS\System32\svchost.exe -k netsvcssvchost.exesvchost.exeC:\WINDOWS\system32\brsvc01a.exeC:\WINDOWS\system32\spoolsv.exec:\program files\idt\wdm\STacSV.exeC:\WINDOWS\system32\brss01a.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\system32\AESTFltr.exeC:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exeC:\Program Files\Synaptics\SynTP\SynTPEnh.exeC:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exeC:&... Read more

A:Hotmail account hijacked

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine.??If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.If you have already posted a DDS log, please do so again, as your situation may have changed.Use the 'Add Reply' and add the new log to this thread.Thanks and again sorry for the delay.We need to see some information about what is happening in your machine.??Please perform the following scan:Download DDS by sUBs from one of the following links.??Save it to your desktop.DDS.scrDDS.pifDouble click on the DDS icon, allow it to run.A small box will open, with an explanation about the tool.??No input is needed, the scan is running.Notepad will open with the results.Follo... Read more

Read other 16 answers
RELEVANCY SCORE 91.2

I have Windows XP and Windows Explorer 7. My Hotmail account seems to have been hi-jacked. About a week ago I started to receive Delivery Status Notifications (Delay) from many unknown accounts and I discovered that my account had been sending out automated vacation replies with a message publicising an unknown website www.welt188.com. I junked these and used Superantispyware to find what was running on my computer. One programme was found that was not listed in my control panel or my screen list. This was from B's Recorder Gold Service Library and is a program called BGSVCGEN.EXE The messages are now going to all my contacts with a different advert. I have done a BITDefender scan today, which found and deleted 2 adware files: Gen Adware Heur 80C43B3B3B. Can anyone help?

A:Hijacked Hotmail account?

Hi,First, change your hotmail password on ANOTHER, clean, computer.Then, do this:Please download Malwarebytes Anti-Malware and save it to your desktop.alternate download link 1alternate download link 2Make sure you are connected to the Internet.Double-click on Download_mbam-setup.exe to install the application.When the installation begins, follow the prompts and do not make any changes to default settings.When installation has finished, make sure you leave both of these checked:Update Malwarebytes' Anti-MalwareLaunch Malwarebytes' Anti-MalwareThen click Finish.MBAM will automatically start and you will be asked to update the program before performing a scan. If an update is found, the program will automatically update itself. Press the OK button to close that box and continue. If you encounter any problems while downloading the updates, manually download them from here and just double-click on mbam-rules.exe to install.On the Scanner tab:Make sure the "Perform Quick Scan" option is selected.Then click on the Scan button.If asked to select the drives to scan, leave all the drives selected and click on the Start Scan button. The scan will begin and "Scan in progress" will show at the top. It may take some time to complete so please be patient.When the scan is finished, a message box will say "The scan completed successfully. Click 'Show Results' to display all objects found".Click OK to close the message box and continue with the re... Read more

Read other 13 answers
RELEVANCY SCORE 91.2

I used Hotmail last night to send a link to an MSN story and this morning a pornographic video as sent to everyone on my Hotmail address book. I am including a copy of my HJT log. What has happened and what can I do to stop this and notify everyone else what to do. I'm guessing that I have sent a very bad virus to many, people including some business contacts. Thanks

Update: Three friends have totally unuseable computers at the moment - please help - I feel so responsible for this!

Logfile of HijackThis v1.99.1
Scan saved at 1:08:40 PM, on 5/18/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Yahoo!\Antivirus\ISafe.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program F... Read more

A:hijacked hotmail account

Read other 15 answers
RELEVANCY SCORE 91.2

An email was sent from my hotmail account with the following message:

__________________________________________________________
Hey,
how are you doing recently?
I would like to introduce you a very good company and its website is ele-eachnet.com It can offer you all kinds of electronic products that you may be in need,such as laptops ,gps ,TV LCD,cell phones,ps3,MP3/4,motorcycles and etc........
You can take some time to have a check ,there must be something interesting you 'd like to purchase .
The contact email: [email protected] MSN: [email protected]
TEL: 0086+137 1783 2610
Hope you can enjoy yourself in shopping from that company !

Regards

____________________________________________________________

I know other people have had this before; is there anything that I can do to save my account?

Thanks.

A:Can I fix a Hijacked Hotmail account?

are they just spamming your inbox or do they actually have your password? because if they are spamming your inbox NEVER reply to them as when you email them back or click on a link that goes to their webpage it probably tells the spammers that your email is active and they will spam you some more :\

Read other 7 answers
RELEVANCY SCORE 91.2

Hi,

My hotmail account was hijacked. The message below was sent to everybody in my address book and if I want to send a new message it comes up. Under that is your requested log. I have an HP computer bought in the last year and Vista at work where I suspect I picked this up.

Any help would be most appreciated.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 3:24:12 PM, on 3/4/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\svchost.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\RtHDVCpl.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\HP\HP Software U... Read more

A:Hotmail account hijacked

Have you changed your e-mail password? If not you should do that ASAP!
http://www.microsoft.com/protect/yourself/password/create.mspx
Please download ATF Cleaner by Atribune.
Double-click ATF-Cleaner.exe to run the program.
Under Main choose: Select All
Click the Empty Selected button.

Click Exit on the Main menu to close the program.


Please download Malwarebytes Anti-Malware and save it to your desktop. alternate link 1 alternate link 2
Make sure you are connected to the Internet.
Double-click on Download_mbam-setup.exe to install the application.
When the installation begins, follow the prompts and do not make any changes to default settings.
When installation has finished, make sure you leave both of these checked:
Update Malwarebytes' Anti-Malware
Launch Malwarebytes' Anti-Malware

Then click Finish.
MBAM will automatically start and you will be asked to update the program before performing a scan. If an update is found, the program will automatically update itself. Press the OK button to close that box and continue. If you encounter any problems while downloading the updates, manually download them from here and just double-click on mbam-rules.exe to install.
On the Scanner tab:
Make sure the "Perform Quick Scan" option is selected.
Then click on the Scan button.

If asked to select the drives to scan, leave all the drives selected and click on the Start Scan button.
The scan will begin and "Scan in progress" will show at the t... Read more

Read other 3 answers
RELEVANCY SCORE 91.2

I opened an email that appeared to be from a friend. However, it contained this spam message, word for word (Don't worry; this is NOT a copy-and-paste; I transcribed it by hand so as not to pass the cooties on):

"Hey friend, I find a site to sell electronic products with very good price. Laptop, iPhone even Motorcycle are very popular. and their products are original quality with very low price as wholesale business supplier. They also can do retail business for end user now, maybe it is fit for your business. If you like you can contact them:
www.wholesalers-electronic.com
E-mail: [email protected]
Msn: [email protected]"

I immediately deleted it, then got a prompt saying that my auto-vacation reply was on! I went in, saw that it was, then turned it off.

I answered another email, and when I hit "reply," that SAME SPAM MESSAGE appeared in the message box. I tried closing and opening different messages, and every time I hit reply, the same thing would happen. I sent no messages to anyone.

I ran AVAST! which found one virus, and I deleted it. I rebooted, then ran Spybot and Ad-Aware back to back (Spybot found then fixed 7 problems), then rebooted again. But my Hotmail account still has the same problem. If I try to reply to a message, that !@#$%^&!! spam message pops right up. I am at my wit's end!

I tried googling that message and found that while other people have had the same problem, no solutio... Read more

Read other answers
RELEVANCY SCORE 90

I'm really worried. I've tried to log into my hotmail account and my password doesn't work (it has been a little over a week since I have last successfully logged in, if that matters). When I go to the secret question, it gives me a question that I KNOW I didn't put there (the question is "is it true?" and the only possible answers--yes or no--are both wrong). I only ever log into my account at home and at work (in my office at a university). Also, on my eBay account there is a notation that I am "no longer a registered user" even though I never requested this action and my account is in good standing.

My questions are then: (a) has my account been hacked and hijacked?, (b) if "yes" to the above, what do I do about it?, and (c) if "yes" to the above, how did it happen and what do I do to prevent it in the future?

What can I do to get in touch with the hotmail staff and how do I prove I am who I say I am with them?

Thank you for your help.
 

A:hotmail account hacked/hijacked?

Just contact them via contact support or call microsoft direct and get a direct# they most generally don't give you a problem! EBAY would be a bit harder contact them via ebay home pg.Live help.
 

Read other 1 answers
RELEVANCY SCORE 90

Dear all,yesterday the following message was sent through my hotmail account (obviously unknown to me until friends contacted me to inform me) to all my contacts in hotmail" Heya,how are you doing recently ? I would like to introduce you a very good company which i knew.Their website is www.sumwes.com .They can offer you all kinds of electronical products which you need like laptops ,gps ,TV LCD,cell phones,ps3,MP3/4,motorcycles etc........Please take some time to have a check ,there must be somethings you 'd like to purchase .Their contact email: [email protected] MSN:[email protected] you have a good mood in shopping from their company !Regards "I have since then taken the following actions:full Norton Anti virus scan (which has been installed on my computer before the problem occured btw): no hitsinstalled and ran a full scan with malwarebytes: no hitsinstalled and ran a full scan with spybot; no hitsran a MSNfix scan: no hitsinstalled and ran a scan with trojanremover: no hitsI have also checked my msn account option and did not notice anything untowards;i checked the sent message box and all messages sent were indeed in thereno electronic signature addedno automatic replied addedi have unchecked the remember me option on the msn loggin box (which I had checked myself sometime ago)Finally i would like to report that the Phishing protection option of my norton anti virus regularly "switch off" but this has been ongoing for quite some time..... Read more

A:Hijacked Hotmail Account by Sumwes

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.If you have already posted a DDS log, please do so again, as your situation may have changed.Use the 'Add Reply' and add the new log to this thread.Thanks and again sorry for the delay.We need to see some information about what is happening in your machine. Please perform the following scan:Download DDS by sUBs from one of the following links. Save it to your desktop.DDS.scrDDS.pifDouble click on the DDS icon, allow it to run.A small box will open, with an explaination about the tool. No input is needed, the scan is running.Notepad will open with the results.Foll... Read more

Read other 2 answers
RELEVANCY SCORE 89.2

Hi,
My uncle received an email with this link and he clicked on it.

THIS IS THE LINK he clicked on
(I removed http at the beginning and his email address at the end of the link
also I put a space after ".me" to make the link invalid)
://7falmeidaaruththaan.x9m.me /eN/?msg=addtransactionansticefp5t5&p=MrXXXXXXX%40hotmail.com

His hotmail account started sending email to all his contacts with a similar link.
We can see in his sent folder the email sent.
He changed his password in his hotmail account and no other email seem to have been sent since.
Is he okay or should he do anything else to check his hotmail account. He sent an email to all his contact to warn them.

I scanned his pc with norton 360 and with malware bytes but the scans found nothing.
Is it possible that his pc is infected even if nothing seems to have been found?
What else can I do to check his pc
Thank you

.
 

A:How to make sure Hotmail account is not Hijacked anymore?

Can somebody guide me here on what happened and the proper procedure to make sure that my uncle hotmail is not hacked anymore? What is this virus or hijacked is called ? thank you
 

Read other 1 answers
RELEVANCY SCORE 89.2

Hi,

This is the first time posting to this forum and would really appreciate some guidance to help flush out the malware that has currently hijacked my hotmail address and blasting out spam to all of my contacts.

To provide context, I've run Super anti-spyware and malware bytes and they have not detected the issue. Also, I've run Microsoft Safety Scanner as a shot in the dark as I am fairly certain that SAS and MB are pretty good anti-malware programs. MSS also did not come up with anything.

So I turned to Majorgeeks.com as a source of direction to help locate/eradicate the current infection, and was directed to bleepingcomputer.com as a first step.

Thus, I'm posting now to source some suggestions.

Thanks

A:Malware/spyware has hijacked my hotmail account

Hello,Now that you have posted a log here: http://www.bleepingcomputer.com/forums/topic423967.html you should NOT make further changes to your computer (install/uninstall programs, use special fix tools, delete files, edit the registry, etc) unless advised by a MRT Team member, nor should you ask for help elsewhere. Doing so can result in system changes which may not show in the log you already posted. Further, any modifications you make on your own may cause confusion for the helper assisting you and could complicate the malware removal process which would extend the time it takes to clean your computer.From this point on the MRT Team should be the only members that you take advice from, until they have verified your log as clean.Please be patient. It may take a while to get a response because the MRT Team members are EXTREMELY busy working logs posted before yours. They are volunteers who will help you out as soon as possible. Once you have made your post and are waiting, please DO NOT make another reply until it has been responded to by a member of the MRT Team. Generally the staff checks the forum for postings that have 0 replies as this makes it easier for them to identify those who have not been helped. If you post another response there will be 1 reply. A team member, looking for a new log to work may assume another MRT Team member is already assisting you and not open the thread to respond.Please be patient. It may take several days to get a response but your log will... Read more

Read other 1 answers
RELEVANCY SCORE 89.2

Hi,

Apologies, I'm re-posting this message that was originally posted in the 'Am I infected' forum.

This is the first time posting to this forum and would really appreciate some guidance to help flush out the malware that has currently hijacked my hotmail address and blasting out spam to all of my contacts.

To provide context, I've run Super anti-spyware and malware bytes and they have not detected the issue. Also, I've run Microsoft Safety Scanner as a shot in the dark as I am fairly certain that SAS and MB are pretty good anti-malware programs. MSS also did not come up with anything.

So I turned to Majorgeeks.com as a source of direction to help locate/eradicate the current infection, and was directed to bleepingcomputer.com as a first step.

Thus, I'm posting now to source some suggestions.

I've run DDS and GMER as per the instructions provided and will include the corresponding logs here.

Thanks

.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_26
Run by PERKAS at 20:54:44 on 2011-10-17
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2022.543 [GMT -4:00]
.
AV: McAfee VirusScan Enterprise *Enabled/Updated* {918A2B0B-2C60-4016-A4AB-E868DEABF7F0}
.
============== Running Processes ===============
.
C:\WINDOWS\system32\ibmpmsvc.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\... Read more

A:Malware/spyware has hijacked my hotmail account

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you are unable to create a log because your computer cannot start up successfully please provide detailed information about the Windows version you are using: What we in particular need to know is version, edition and if it is a 32bit or a 64bit system. [/b]If you are unsure about any of these caracteristics, just let us know and we'll help you figuring it out. Please also tell us if you have your Windows CD/DVD handy.Please include a clear description of the problems you're having, along with any steps you may have performed so far.Please refrain from running tools or applying updates other than those we suggest while we are cleaning up your computer. The reason for this is so we know what is going on with the machine at any time. Some programs can interfere with others and hamper the recovery process.As a first step please get to a known clean PC and ch... Read more

Read other 4 answers
RELEVANCY SCORE 89.2

I just made a non admin user account on my Dell Inspiron (windows xp) laptop. When I went online to sign in under my account (admin) it is no longer there. My name (Penne) is there (and so is my daughters). I click on my name, put my password in and it takes me to the desktop for my daughter and ALL my stuff is gone. PLEASE HELP!!!
I have googled this and the only thing I am seeing is that you need to sign in under an Admin user account to fix this and get my stuff back. THere is NO admin user account so how can I get it all back? I did the F8 and went to restore to previous point and that didnt work. I know there is a way to go to the restore calendar and find a day that her user account was not on there (like last week) so this might work, but I dont know how to find this.
PLEASE help as all of my EVERYTHING is on my user account and I am lost without it all (have a retreat this weekend and I need all of my sheet music and my songs)
Thanks so much,
PENNE
 

A:Lost Admin user account when made non admin account

Read other 7 answers
RELEVANCY SCORE 88.4

Hi,

I was just wondering if you could have a Paypal account without a credit card/ bank account?

Is it possble to sell things on eBay, get the money in you PayPal account and then transfer that money to another PayPal user/account without a credit card?
Need answer quickly!!!
Thanks,
Ted
 

A:Need Bank account for PapPal account?

Tedwinder, you can probably get the best answer from Paypal UK. https://www.paypal.com/uk/cgi-bin/webscr?cmd=_contact-phone
 

Read other 2 answers
RELEVANCY SCORE 87.6

I've been trying to install Palo Altos Software Application Manager 8.2, the problem is...

When using an Administrator Account or Limited Account, the installer will say installation has been interrupted and cancel while loading the installer. I've been talking with their tech support for 2 days now, and have tried about everything.

I just enabled the Guest Account though, and tried to install it there. And it actually works, installs the files, however because it's a Guest Account it can not modify 4 system files, and can not modify the registry.

I am curious if there is a way to give the Guest Account privledges to modify those files and registry entires. This is really my only hope at the time.

Thanks in advance.
 

A:Giving Guest Account Privledges?

Read other 6 answers
RELEVANCY SCORE 87.2

Hi,

I suspect that there is some form of malware on my laptop. The problem began after I was notified that my rarely used hotmail account was sending spam email to contacts. My laptop has been running slow ever since (constant high RAM usage?). I have followed the instructions within the "NEW INSTRUCTIONS - Read This Before Posting For Malware Removal Help" thread. The DDS report is pasted below, and Attach.txt and ARK.txt have been zipped and attached. My laptop was purchased with Windows Vista and I do not have access to the installation or boot discs. Thanks in advance for any help in resolving this issue.


DDS (Ver_10-12-12.02) - NTFSx86
Run by Kwong at 21:37:15.05 on Thu 16/12/2010
Internet Explorer: 8.0.6001.18975
Microsoft? Windows Vista? Ultimate 6.0.6002.2.1252.61.1033.18.2047.942 [GMT 11:00]

AV: AVG Anti-Virus Free *Disabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
SP: AVG Anti-Virus Free *Disabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ZoneAlarm Firewall *Disabled* {D17DF357-CFF5-F001-D1C1-FCD21DFE3D5E}

============== Running Processes ===============

C:\Windows\system32\wininit.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost... Read more

A:Suspected malware - Hotmail account hijacked and slow computer

Bump, please.

Read other 2 answers
RELEVANCY SCORE 87.2

Hello,

Twice a day someone or something is using my email account (I use Live Mail 2011 to access my Hotmail account) to send emails to everyone in my contacts list. Up until recently these emails had a blank subject line and in the body of the email had only a link (different each time) leading to various sites (most of which were dead/invalid). As of yesterday, however, people are telling me that I've been emailing them regular looking emails inviting them to join me in some social networking site, or health club site, or genealogy site etc. My main Internet Security Software is McAfee (it came preloaded with the computer) and Spybot Search and Destroy. Since those programs didn't detect anything I also downloaded and installed MalwareBytes Anti-Malware, SpywareBlaster, Lavasoft Ad-Aware (which I recently uninstalled because of compatibility issues), and HijackThis. Some of these programs found several occurrences of malware, but the problem persists nonetheless.

I followed all the instructions on the tutorial here, but gmer is crashing my computer. The first time I ran it it scanned for about 5 minutes before the screen turned blue and gave me a long message I didn't have time to copy down except for this : "A Problem has been detected and Windows had to shut down to prevent loss of data." Under that it said : "PFN_LIST_CORRUPT"

I restarted the computer and tried gmer again, only this time the computer crashed before I eve started the sca... Read more

A:Windows Live Mail 2011/Hotmail Account Hijacked

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.Please take note:If you have since resolved the original problem you were having, we would appreciate you letting us know. If you are unable to create a log because your computer cannot start up successfully please provide detailed information about your installed Windows Operating System including the Version, Edition and if it is a 32bit or a 64bit system.
If you are unsure about any of these characteristics just post what you can and we will guide you.Please tell us if you have your original Windows CD/DVD available.If you are unable to perform the steps we have recommended please try one more time and if unsuccessful alert us of such and we will design an alternate means of obtaining the necessary information.If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Upon completing the steps below another staff member will review your topic an do their best to resolve your issues.If you have already posted a DDS log, please do so again, as your situation may have changed.Use the 'Add Reply'... Read more

Read other 2 answers
RELEVANCY SCORE 86.4

I have a new computer.  I just noticed an old picture, which is not in my new computer saved, is STILL showing up as profile picture on emails I send.  I put a new picture up, BUT the old picture is still showing up on emails I forward.  HOW
CAN I DELETE THIS?
I have no pictures saved on my new computer in C drive, public folders.

Read other answers
RELEVANCY SCORE 86.4

It used to be not connected to any email account but when it updated to 8.1 I chose to get an email address for it, so now as a result, the password has to be 8 characters long and I have to use a PIN number , but that's still 4 characters, and I usually use one character password.

So how do I go back to the normal type of user account to use the 1 character password?

A:My user account changed to an hotmail-email account connec

Local Account - Switch to in Windows 8

Local Account Password - Change or Remove in Windows 8

Read other 2 answers
RELEVANCY SCORE 86.4

hi,

<g class="gr_ gr_22 gr-alert gr_tiny gr_spell gr_inline_cards gr_run_anim ContextualSpelling multiReplace" data-gr-id="22" id="22">i</g> need help.
I <g class="gr_ gr_28 gr-alert gr_spell gr_inline_cards gr_run_anim ContextualSpelling ins-del multiReplace" data-gr-id="28" id="28">dont</g> know why my user became not admin. 
<g class="gr_ gr_111 gr-alert gr_tiny gr_spell gr_inline_cards gr_run_anim ContextualSpelling multiReplace" data-gr-id="111" id="111">i</g> know my password. <g class="gr_ gr_132 gr-alert gr_tiny gr_spell
gr_inline_cards gr_run_anim ContextualSpelling multiReplace" data-gr-id="132" id="132">i</g> entered to my account normal but when <g class="gr_ gr_184 gr-alert gr_spell gr_inline_cards gr_run_anim ContextualSpelling
multiReplace" data-gr-id="184" id="184">its</g> about to install, <g class="gr_ gr_261 gr-alert gr_tiny gr_spell gr_inline_cards gr_run_anim ContextualSpelling multiReplace" data-gr-id="261" id="261">i</g>
have a window that shows i cannot install cause not admin

Read other answers
RELEVANCY SCORE 86.4

Hey, I'm using Windows 7 Home Premium on my HP Pavilion Slimline Desktop and I need help getting my Standard user account back to Administrator. I can't run certain programs and I also can't install and uninstall anything. I don't have the Windows 7 Installation Disk to do restore. I have already tried Safe Mode and I can't enable and built in admin either. Please help me! Thank you!

A:How can I put my Standard user account back to Administrator when the ASP.NET Machine account is admin?

How are you trying to change the type of account?I don't have the Windows 7 Installation Disk to do restoreDo you mean System Restore? If you are, you don't need the installation disk to do this.To use System Restore click on the start orb. In the search box type in System Restore. In the list of results click on System Restore, if you are prompted for an administrator password type it in.Follow the prompts to choose a restore point and restore your computer.

Read other 1 answers
RELEVANCY SCORE 86.4

I'm the only user on this laptop and my admin account was called "HybridPC" and I disabled the windows login screen. (Turn computer on and goes right to desktop). One day the welcome screen popped up out of nowhere and I had to login. I tried disabling the login screen to where it was before and now I've screwed things up royally. I cannot login to my original admin account or find it. All the files are still there on my C:\Users\HybridPC folder, but I've lost the profile and user.
I think I messed things up further by trying to create/delete other new user accounts. I've attached 3 screenshots showing my C:users folder, User account screen and the netplwiz.exe profiles.

I've been adding/deleting and can't get back to square one. I don't see my user at all on the welcome screen.
Thanks for your help!

Top User Folder is new today and odd looking as I was attempting to fix on my own.

A:User Profile/Account problem (can't login to original admin account)

Hello tytlyf, and welcome to Seven Forums.

Let's start to see if you disabled or deleted your "HybridPC" by using the tutorial below to get details about all accounts on your computer while you are logged in to your "Admin" account, then post back with them. Afterwards, we can go from there.

User Accounts - View Detailed Information About in Windows

Read other 7 answers
RELEVANCY SCORE 86

This is very strange. A few weeks ago someone in my household created a user account with administrative privileges and changed the other accounts to standard users. Problem is that now we can not log on to the account. It isn't on the log in screen. All I can do it see it through the manage accounts option in the control panel. From here I can attempt to add a password among other things. Since the account I do have access to is standard. What I want to do is, get on the account or get rid of the account. I need administrative privileges on an account I can access. Why can't I see this account on the log in screen?

A:Weird account problem Admin account not at login screen

Hello and welcome Chas mate I would find the culprit and recover the password for that account from whoever it is and change the admin back to what it was previously.

Now given you state it is someone within your household I am thinking this person or persons need a good talking to if that person is still there of course if not then you have a problem.

I don't think even a system restore will do it either.

The alternative is to back up all your data and reinstall.

Read other 3 answers
RELEVANCY SCORE 86

Hi, I basically had 3 accounts on my computer, one being "Administrator" (w Admin rights), one "test" (Standard User rights) and one more "User" that is the one I use most frequently (with Admin rights). When I last used it last Friday the User account was still present and all my programs were working fine.

However, when I came back to office today, I found that the User account was missing from the welcome screen, and only the "Administrator" and "test" account were there. Somehow, I could not login to the "Administrator" account. When I logged into the "test" account, all the program shortcuts were blank (Firefox, Adobe Reader Etc) and only IE and the default windows programs would work. I suspected that there might be a virus, but I couldn't install anything because I did not have the admin priviledges.

My question is:

1. How do I get back into my admin account?
2. is there any way to install anti-virus programs (by going around the admin account) to help solve this issue?

In a nutshell, I'm basically stuck with a standard user account and I can't do anything with it. Any help would really be greatly appreciated.

Thanks

*Just to add, I tried using System Restore on the Standard account, but when I click "Open System Restore" nothing happens.

A:Windows 7 admin account is locked, on;y stuck with a standard account.

First off if you actually named your accounts Administrator and User then that may be part of your problem (Maybe not with the account named User but certainly with the one named Administrator).

Windows already has a built in account named Administrator, even though it is normally disabled by default. Creating a NAMED account using the name Administrator is not a good Idea.

Start by booting into Safe Mode and see if the system boots to the built in, but normally disable, Administrator account. If it does create New Admin rights NAMED account, using some other name then Administrator. From that boot normally and log into that new account and see if you can access your files from the other accounts. You may need to take ownership of those other accounts.

Read other 1 answers
RELEVANCY SCORE 86

Hi, does anyone know what happens if I mistakenly deleted a user account?

When I open my computer, then right click on the "This pc" there is a option called "Manage". Then under manage, there are user accounts. I mistakenly deleted the "Administrators" group from my current account. Only left is standard user group.

The admin account is password protected and I have the password. Is it possible to log into the admin account and change promote back my current account?

I did try to right click "manage", but I get this window (attached file) with no place to put the password. That is slightly annoying. I was trying to reassign myself back in the admin group.

I was thinking of making an account which can modify all items, such adding hardware and items under "Device manager" etc but just limit to not being able to just make a new admin full access account. Seems that deleting the admin solves the not being able to make a new account, but in the process I'm locked out from the admin settings.

Is it possible to create a super-user account just limiting not being able to make new user accounts and have access to all such as device manager? It would be nice to not have to log into admin account just to check newly installed hardware.

Currently, on standard user, I am unable to go to "device manager" and other admin based stuff (with that admin shield logo).

Thanks

A:Accidentaly changed admin account to standard user account

From desktop, hold CTRL+ALT then press DEL keyClick on Switch UserType: Administrator and enter the passwordOnce you are in, Win+X->Command Prompt(Admin)Type: net localgroup administrators username /add <======== replace username with your namesign out and sign back in with your name.

NOTE: In step 3, I Assume that you have the built in Admin turned on and you said you have the password.

Read other 4 answers
RELEVANCY SCORE 86

We have a new dell business computer (don't have model with me now, but its an optiplex with serial and ps2 ports in the back, purchased a few months ago with i5 processor + 8 gigs ram) and our hard drive went bad and dell replaced it. Then a little later we had an issue with our windows genuine activation saying its not genuine when we had windows 7 and it blocked the admin account on the sign in screen (only account). Meaning you can't do anything, there are no other options, no option to enter key code or make genuine or anything like that. 
So I reinstalled Windows 7 (Dell CD) + downloaded drivers (except sata drivers which it didn't show it needed in device manager and I was pushed to finish quickly) from dell  today, thought all was well. It showed genuine and activated, etc... 
Employee upgraded to windows 10. Guess what? The login screen when you turn on the computer has once again blocked the admin account which is the only account. What is going on and how do I fix it? This is ridiculous. I can't even login to try to fix it.

edit: forgot to mention that this computer was added to a domain at work, not sure if that makes a difference or not

Read other answers
RELEVANCY SCORE 86

Hello everybody,

I have realized that all the laptops I installed Windows 10 in the last year (several family laptops) are running with Microsoft-Accounts which are Admin-Accounts. Now I read that this is a serious security issue. I would like to change these MS-Admin-Accounts into MS-Limited-User-Accounts?

But how?

And next question: Should I set up for every laptop then a local admin-account?

Thanks a lot for your help.

Hutson

A:Windows 10: How change account from admin into limited user account?

As long as you have not disabled UAC, User Account Control, or invoked the hidden full administrator, then your users are actually running as standard users and will be prompted before performing any Admin level tasks - you can if you wish create a standard user on each of the systems in addition to the administrator, but this will not provide much better security and is likely to generate complaints from the users as they will have to set-up the accounts again to how they want them.

If you have any youngsters that you wish to protect further there is Microsoft Family Safety as an option

Read other 1 answers
RELEVANCY SCORE 86

I have a set of folder I encrypted from my user account. I haven't figured out how to access them from my admin account.

In reverse, while logged on my admin account, I droppped some files into folder encrypted by my user account. I can't access those files when I log on as a user.

How can I get access to all my encrypted files regardless of which logon I use?

A:Access my user account encrypted files from my admin account?

Umm...if you could access encrypted files from another user that would remove the whole point of encrypting the files to begin with.

Read other 6 answers
RELEVANCY SCORE 86

I've just installed a new copy of Windows 7 Ultimate. By default the 'first' user account (as declared in windows setup), is set at administrator level.
I want to run this 'main' account as a standard user, but when I went to change this in account settings, the option to change the account to standard was greyed out.

I decided to enable the administrator account to change this (computer management/local users and groups, un-ticked 'account is disabled'). I logged on as administrator, then changed the main account to standard.

As the Administrator account is now 'enabled', it shows on the welcome screen. I don't want this.
I went back and disabled it (running computer management as admin, in the now standard account, and re-ticked 'account is disabled').
technically, this should be how it was before I touched it, except, the 'main' account is now at standard user level, rather than administrator level.

The problem i have now, is when trying to run anything on the standard account, that needs admin rights, i get the UAC box, asking to enter admin password (which is blank), but there is no 'administrator' icon or password field, and the 'yes' button is greyed out.

How can I have my main account as standard user, the administrator account not showing on welcome screen, but allowing it (admin) to authorise actions on the standard account that required admin rights via UAC? i.e when UAC comes up, I can cl... Read more

Read other answers
RELEVANCY SCORE 85.6

i got this surprise when i was unable to log in into skype then i when to my email and i got this
and after several emails to support i got an answer saying that
 
"ve verified that a serious violation of the Microsoft Services Agreement occurred on your account .......................   Due to the nature of this violation, and pursuant to the terms of the Microsoft Services Agreement, Microsoft can neither grant you access to the contents of your account,..."
whats next now?
i want to know what happened exactly, and can that be appealed?
 

A:Problem with hotmail account, account temporarily suspended)

Ask them for a appeal? The only ones who will know what happened is them. Do you happen to use Skype to send adult content? I hear they have been cracking down on that more.

Read other 6 answers
RELEVANCY SCORE 85.6

i got this surprise when i was unable to log in into skype then i when to my email and i got this
and after several emails to support i got an answer saying that
 
"ve verified that a serious violation of the Microsoft Services Agreement occurred on your account .......................   Due to the nature of this violation, and pursuant to the terms of the Microsoft Services Agreement, Microsoft can neither grant you access to the contents of your account,..."
whats next now?
i want to know what happened exactly, and can that be appealed?
 

A:Problem with hotmail account, account temporarily suspended)

Ask them for a appeal? The only ones who will know what happened is them. Do you happen to use Skype to send adult content? I hear they have been cracking down on that more.

Read other 1 answers
RELEVANCY SCORE 85.2

Pretty basic question (I think). Is the built-in administrator's account exactly the same as a manually created local administrator's account privilege wise? Or does the built-in possess inherently elevated privileges?

I have googled around, however, I can't find a clear answer for this.

Thank you

A:built-in admin account vs regular admin account

Hello Spurcell, and welcome to Seven Forums.

They are basically the same, except that the built-in possess inherently elevated privileges, and the other doesn't until approved through UAC to elevate the action.

Hope this helps,
Shawn

Read other 4 answers
RELEVANCY SCORE 85.2

After a power failure , I could not have access to my only account (Ron Wolpa) which was administrator (DETAIL : I CAN?T REMEMBER THE PASSWORD I USED DURING INSTALLATION) .
After booting and rebooting many times I could load an empty desktop screen.
I remember to have read an error message stating that the info on my profile could not be found , the exact words I can?t remember :

C:\windows\system32\config\systemprofile\desktop refers to an unavailable location. ?..
IT WAS NOT POSSIBLE TO CONNECT WINDOWS TO THE EVENT NOTIFICATION SERVICE , THIS PROBLEM PREVENTS THE ACCESS TO THE STANDARD USERS?.

Once in the corrupt desktop (none of my icons loaded, nothing at all ) by luck I gained access to the control panel through an icon on the task bar icon tray.
This enabled me to create a new account , named Emergency , that is where I am now writing this message.
I wished I could repair my old administrator account and spare me the work of reconfiguring everything on my new account that has not admin privileges.
At the point I am , without the admn password , what is the best that could I do ?

Thanks.

A:Admin account profile corrupted , created a new account..

http://cdslow.webhost.ru/files/ntpwedit/ntpwed05.zip

Read other 5 answers
RELEVANCY SCORE 85.2

I've been to help my mum fix her computer since yesterday, after she had a power cut and the computer wasn't turned off correctly.  When she tried to log back in she found her administration account wasn't working or was corrupted.  In investigating and trying to sort the problem I have found numerous other problems.

A:Admin account unreacable and account management not workig

Try enabling the hidden Administrator Account using this utility. You will need to create a bootable disk. The iso file can be burned to a disk in Windows 7 by right clicking and selecting Burn Disk Image. You can also burn the iso image using Imgburn. If using it make sure you opt out of any optional programs.

Read other 7 answers
RELEVANCY SCORE 85.2

My computer was set up using a single user account with admin privileges and all apps have been installed. In order to minimize the virus threat I now want to create a user account without admin privileges, but be able to access all apps and itunes library that I have already installed using the admin account.

Please let me have a step by step method how I should set about doing this

My system : i3 windows 8.1 4GB RAM 500GB HD

Thankyou

A:How 2 transfer apps from Admin account to ltd user account

I'd go to Control Panel, Users Account and add a new Standard account. The new name only has to be one character different. The new account should be able to do most things but will be quite limited in making changes to the computer.
How Microsoft Overhauled User Accounts In Windows 8
I'd leave the existing account alone, should always have at least one that has administrative rights. There is an actual Administrator account but it is hidden on purpose.

Read other 1 answers
RELEVANCY SCORE 85.2

Hi guys, 
 
Well I have recently created a new Admin and new Standard account as the last two were having issues. However when I opened up an APP on my Standard Account yesterday which was Login Studios and clicked the download link to search for new login screens, as well as opening up the login studio site it also opened up a Tab that I already had on my Admin account. And I could see the history from that one too. It was like I was back at my Admin account without even logging on or off or switching user accounts. I also tried this with another application and the same thing happened. 
 
Can anyone explain what this means please?
 
 
Thanks.

A:History From Admin Account Appeared in Standard Account

See if this helps.

Read other 15 answers
RELEVANCY SCORE 85.2

After installing windows 10 home, I logged in with whatever default account there is. I then logged in with my Microsoft account to pull down some settings but then switched over to a local account so nothing else gets synced. Things have since been working fine until this morning.

Now for some reason, my user account is recognized as the built-in admin account and I can not longer run any of the modern apps that I downloaded or those that come preinstalled (including edge). the cmd command

`net users` lists my account as the defaultAccount so at least that's consistent.

I have tried the solution offered here:

Settings can't be opened using the Built-in Administrator account in Windows 10 - Super User

to no success.

I am unable to begin the prompt to create a new user account located in settings > accounts > Family & Other Users

Which brings the to point of me having no idea what to do. I can't create a new account to transition to. I can't give my account the ability to run these apps (which is preferred).

A:My user account now qualifies as the built in admin account

Hi, press the win + r key's together in the run dialogue box type:- lusrmgr.msc press OK, expand Users find your account and right click, select properties, what is it a member of? Do you have other accounts?

Read other 2 answers
RELEVANCY SCORE 85.2

I've been to help my mum fix her computer since yesterday, after she had a power cut and the computer wasn't turned off correctly.  When she tried to log back in she found her administration account wasn't working or was corrupted.  In investigating and trying to sort the problem I have found numerous other problems.
The account management section of the control panel isn't accessable, it does nothing when clicked, so she can't create a new account and migrate her information.  There is another admin account, which does work, but the account management section can't be accessed through there either, nor can it be accessed in safe mode.  We disabled startup programs, except Windows, but this did not help, and now can't access msconfig to turn those programs back on.
 
Command prompt will not allow itself to be used at an administrator level, an error occurs, and when using it normally scf /scannow doesn't work either, the message claims this isn't a known command.  At this point command prompt no longer works.
 
I have tried using TeamViewer to help but cannot get access to the start menu, it simply won't allow it.
 
System restore can't be used as there are no restore points.
 
I attempted to run the windows anti virus you can get for free if you own a Microsoft product, but it would not initiate the scan.
 
I'm wondering if the computer has a virus, as my mum is not very good about regularly running checks.
 
While I cou... Read more

A:Admin account unreacable and account management not workig

Try enabling the hidden Administrator Account using this utility. You will need to create a bootable disk. The iso file can be burned to a disk in Windows 7 by right clicking and selecting Burn Disk Image. You can also burn the iso image using Imgburn. If using it make sure you opt out of any optional programs.
 
See this guide. The utility shown has been updated from that shown in the guide.
 
Reboot and you should be able to access the computer using "Administrator"
 
Edit: Here is a video that will help
 
Edit Edit: Because Vista users cannot update to Windows 10 and end of life for Vista is April 2017 I strongly suggest you move to a different OS especially if your mother only does some browsing, email, and banking. You can check out the following linux distros. Mint and Ubuntu.
 
Once you set up either distros with a strong password it is basically set and forget. You would only need to check monthly for any security updates. Your chances of getting malware are slim and none.
 
You can boot the distros as a live disk and see which one you prefer. There is a linux section at Bleeping Computer that would be able answer any question you may have. You would need to backup any personal data including bookmarks and any email before installing linux.

Read other 1 answers
RELEVANCY SCORE 85.2

Hi, I only have one account in my Win8.1x64 PC. It was "Admin" (Standard user was not available, grayed). I tried to change it to "Standard" using Local Policy Group and now the account changed to "Local Account" and whatever I want to do (Change UAC settings, open Local Policy Group,check disk for errors, etc etc) I get the attached message below.I can't even press "YES" as it's grayed. How can I disable UAC and return my account to Administrator? Thanks

A:Admin account changed to Local Account/Can't disable UAC

Please follow the steps in this thread:
Accidentally changed the admin account to a local account

Read other 21 answers
RELEVANCY SCORE 85.2

Hi I have accidentally changed the admin account to a local user and now cannot make any changes to my laptop. I am using an ASUS brand and when I click on manage user accounts it pops up with a screen "connect smart card". Kindly help, thanks in advance.

A:Accidentally changed the admin account to a local account

Read other 5 answers
RELEVANCY SCORE 85.2

hello every one
I was hoping if some one could help me at this.
I had created a local account in my machine which is a part of a small office network. and given it administrative rights. every once in a while the account gets downgraded to a limited user account and a I had to go all the way to control panel to reset the settings for that specific user account. I tried background check on the machine to check it for possible malware or virus infection but couldn't find anything.
could it be the user profile settings getting changed athomatically due several usages or could it be log file getting full or needs to be cleared?
so much in need for help

A:admin account gets downgraded to limited user account

possibly because that comp didnt come with Ultimate and when it re-activates, it uses the true Admin account and resets the others.

Roy

Read other 1 answers
RELEVANCY SCORE 85.2

Hey Folks!
I'm running XP Service pak 2. I have three user accounts..Me as 'Administrator', and two 'Limited Accounts' for my wife and son.
My son is a gamer. I installed 'Call of Duty 2' from my account, and it shows up on my sons desktop, but he can ONLY play it on MY desktop! I know it has to do with administrator access, but what the hell? One can only play games/online games on Windows XP if he/she is a System Admin?!
Is there a way to modify my sons account so that he can play this game on his own desktop?
Thanks!
 

A:Playing Games on 'Limited Account' VS. 'Admin Account'

Read other 16 answers