# Need an activity tracker

Q: Need an activity tracker

Need a software which can record files and folders accessed recently....
(other than the windows recently accessed programs/documents)..

A: Need an activity tracker

This might work:

Recent Files Shell Extension

A Guy

Hello there all this is my first time trying to troubleshoot my own computer so I figure that lights activity? no up, LED other in front I would try to head to this forum for some assistance The other day there was what I think was a power surge through the lines which fried my router which now just turns on but cant transmit the internet signals through it because my computer shows a connection but just sits at limited connectivity and destroyed something with my desktop I am much more concerned with my desktop currently and I am wondering what the problem might be When the power is turned on to the computer the LED in the front lights up on the power button but there is absolutely no activity for the computer what so ever This leads me to believe that the motherboard is fried Am I correct in this assumption The motherboard is a Foxconn M PMV if that helps anyone Thanks so much if you can help with this Nix nbsp

A:LED in front lights up, no other activity?

Swap out the power supply first, before the motherboard. Open the computer case and check and smell for burned components. If you don't see or smell anything, hopefully its only the power supply. Just because you have a power light, this doesn't mean that the power supply is putting out all the necessary voltages that a computer needs

Could somebody help me with a quick batch program to remove, network addresses, gateway, broadcast, etc.? Also include cookies, browser history and that sort of thing but really I want the network code if you could help out with that.

I know I could just use ccleaner but this is something that will be constantly worked on until all the functions I want will be in this one batch file instead of possibly running a couple programs.

Used these two but need to know from the experts!!

ipconfig /release
ipconfig /flushdns

Also when the the wireless card is pulled from the pcmcia slot, like to know what wipes any trace of the hard coded ip, mac ip.

A:Create a batch file to remove network activity

any help putting this code together for me. windows 7

Ok I recently Installed everything fresh and a posibility of a virus or spyware is minimal, I have Kaspersky installed and a few applications I need, such as clone dvd, any dvd, Nero, Office 2007, all drivers and a few more small programs.

I have Windows Vista Home Premium 64 bit and I'm concerned my Hard drive is always on activity, I can hear it spinning and the led is blinking all the time.

What could be the causes of this? if it's a software program reding/writing on HDD, how can I spot it? Thanks!

A:Always Activity on Hard Drive, Why?

Likely Vista Defrag
It's running as a task in the background

By the way, you can turn off many not required startups with this tool: http://www.mlin.net/StartupCPL.shtml

Kaspersky is also high on resource so there's nothing you can do about that except replace it (I use free Avira Antivirus)

When I shut down my system there is audible disc activity and a flickering HD LED at, and immediately after, the point at which the machine turns off. This is scary because I have always understood that turning off power while a HD is active is more than likely to kill it, and I haven't noticed this on other machines. The mainboard is a QDI Advance 5-133E and the O/S Windows 2000 Pro.

Is this dangerous? Is there any way I can get back the good old "It is now safe to turn off your computer" message?

I would like to get the message back anyway, because I always turn off at the mains socket immediately I shut down, but all I can find online is questions from people trying to get rid of the message!

A:Hard Drive activity AFTER machine shuts down

That's a Power Management issue
The computer should really just fully shutdown (unless really old)

Try running Bios setup defaults (usually press DEL or F2 or some other key to get into bios setup screen, when the computer first turns on)

i have a home built computer that is about yrs old now but never given me any problems i just recently bought a gig of ram and after i installed it i tried to turn on the pc and nothing happened i took out the new gig to see if that was it but it wasnt still nothing the mobo light is on and ive checked all cables and tried swapping out the power supply or wont light any on, no other but power PC beeps, fans, activity mobo up, and still nothing i have no idea what to do and complettely stumped i did smell smoke but i thott it might have just been dust lol its been a few weeks since it happened but i work a lot and havent had the time PC wont power up, mobo light on, but no fans, beeps, or any other activity im running a socket soyo MoBo an OC d intel p processor a watt PS gigs of ddr ram stick pc and the other pc a geforce gt or gs forgot and windows HDD s a normal and a slave and another external nbsp

A:PC wont power up, mobo light on, but no fans, beeps, or any other activity

what brand of psu? on a 5 year old computer that is always a question, and because the mobo light is on does not mean the power is good.

I have a network problem and it may be a bit hard to explain my situation fully but I ll try to cover the pertinent information Basically when I do anything network intensive like a file transfer the file transfer will work but it will kill all other network activities I can t browse the web or IM during this time as Firefox will say that it s timed out and IM will drop off and disconnect The network setup I m using is hard to explain fully but the basic core of it is a router with an access point linked via WDS The router provides wifi through the house and also connects to the AP with WDS full g signal The AP basically just gives me hardwired Ethernet ports for my equipment which is in a location where it would be very difficult to hardwire Both the router and AP are running the latest quot tomato quot aftermarket firmware FWIW Almost all of my transfers involve going from wired to wireless I tested my transfer network stops other network Wireless activity? file all transfer speed during several file transfers and got just a tad over MB s mbit s which seems ok to me since it s going from wired Wireless network file transfer stops all other network activity? to wireless g If I do a transfer over Wireless network file transfer stops all other network activity? ethernet to ethernet no wireless it does not seem to cause the problem Basically it seems like the router is not dividing up wireless bandwidth as it should It seems to be only allowing the one transfer to use the wireless at any given time Is there a setting that might help me I was thinking maybe a QOS setting might help but I m not really sure what I m doing in that respect This is what my QOS menus look like if that helps Any help is appreciated I m no network whiz so take it easy on me Thanks nbsp

A:Wireless network file transfer stops all other network activity?

Have you tried another router or changed the routers location?

Hello everyone, does anybody know how many volts or watts does the hdd activity led needs? I need to connect it to the smallest battery which has enough power & its needs to be on a bicycle pedal. I have no clue about electrical,circuitry stuff. thanks.

A:HDD activity led

Although this circuit states 9V it's more likely 3.5Volts

I found this really easy page to understand here: http://www.kpsec.freeuk.com/components/led.htm

Have fun making your circuit

Apologies if this is in the wrong forum, but it seemed most relevant here.

I had an old Dell Optiplex 150 donated to a student organization. It was stripped down to the motherboard, power supply, and video card. I connected a hard drive and threw in some RAM and am trying to get it to start (unsuccessfully).

When plugged in, there is a yellow light on the motherboard. When the power button is depressed, nothing happens. No lights, no wirs, no fans, no hard drive, nothing. I just got the skeleton two days ago, and the department that gave it left it outside the office. It is an upgrade from the board we had, despite my lack of details of model numbers.

Any ideas as to what I should try to get it running?

A:Computer Power and Activity

Replace the power supply. About $35... or lower if you go to www.pcsurplusonline.com They deal in Dell Optiplex units and often have power supplies for sale cheap. Better yet, buy a new ATX for about$34. If you don't put a power hungry video graphics card, you may have a winner.

Or you can buy a power supply tester for $10 to$30 which will tell you what you want to know... one of the three rails has gone bad.

Other than the power supply, it is a pretty rugged unit.

K another broken comp thing, but found excellent help here before so thought id try before buying replacement parts

Got a 8800gt 512 "GS" and a 400w PSU to replace a 7600gt and 300w PSU.
after replacing both the monitors fail to get a signal and drives dont boot.
the mouse and keyboard also only light for about a sec.
The 8800 needs 450w min though..*****ic me. so replaced again with originals,
but the problem remains,HDDs,monitors and keyboard all work fine on other machines.
tried both cards,both PSUs,both pci-e ports,both pci-e power connections,different monitor and hdd.totally stuck right now and desperately need it working at the moment.

any help or advice from the superior knowledge here would be extremely appreciated, thanks

PSUs are Fortron 300W +12v=16a / NorthQ 400W +12v=18a ..i think

A:Desperately needing help, possible psu/mobo issue disabling all gpu activity

Neither of your power supplies have enough amperage to feed the 8800 GT. You need at 450 watts with at least 30 amps combined in the 12 volt section. Go a little over that if you can to be sure other devices have enough. This will fix this issue.

Hello,
I have a BIOSTAR U8668-D Mobo and is not working at all... now.
I turn it on, and nothing hapens but the power is OK, the procesor's fan cooler turn on and the Harddrives feels like is doing something for one moment... but then nothing...

After this I turned off the power and installed a POST Card on the MOBO and saw that the LED for BIOS was not on.. like it hasn't a BIOS at all thi mobo...

what to do?

A:Mobo with no POST test (No BIOS activity)

I guess it is the BIOS ... try the process where you remove the BIOS chip and fix it with another similar motherboard (while turned on).

I am not sure though, and am a starter just .... sorry couldn't find the links for you at the moment.

I hope others will have a better reply for you.

Hello:

I just bought a new ASUS M2N-LR motherboard. It works fine except for one item: The Hard Drive LED doesn't flash or blink hard drive activity.
The HD LED is always off.

This seems trivial but at the same time I would like to fix it. Maybe I'm being too much of a geek.

The LED on the computer case works fine. I stretched the cable and connected it to another computer and it worked like it's suppose too.

I already talked with ASUS tech support, and the motherboard was replaced
,but I still have the same issue.

Here is the model of my hard drive:
Western Digital Caviar SE WD2500JS 250GB 7200 RPM 8MB Cache SATA 3.0Gb/s Hard Drive - OEM

Any recommendations would be greatly appreciated. Thank You all.
RomeroRS

A:ASUS motherboard - no HD LED activity

Switch pins on the LED header, because you have the light plugged-in backwards. Current flows in only one direction with an LED.

I have been looking for a monitor to show my GPU temp at all times. I use "PC Wizard" for temp checks. I found that if I choose the temp tab on PC Wizard then minimize the display into your taskbar, everything that I want appears on the desktop. Both cores of the cpu are monitored, GPU temp in realtime with CPU temp and voltage. I hope this helps someone running an Nvidia 8800GTS SC like I am. pdyckman

Replaced Screen, Windows Xp Logo briefly appears then nothing?

Hi.

We have had a compaq r4000, where we have replaced the screen, cable and inverter.

When we power on the PC, we see no bios/starup text only the windows xp logo for a short period (looks in limited colours also) then all goes black.

If we connect a monitor to the vga port the PC seems to work okay, with all bios screens and windows loading properly.

I have tried updating the bios (just to rule it out), resetting the bios etc. But am now stuck on what else we can do.

Tried putting in the old cable, screen and inverter in different combinations and still no luck.

I would think it was the graphics card if, but then I cant understand how the external screen would then work.

Now banging head against hard door

Stef

A:strange activity with new laptop screen

The video drivers are set to a resolution/refresh that the internal screen cannot handle (while the external one can)? Or, the video drivers are set to disable the internal display? Or, the video drivers are FUBAR and you should reinstall them?

I dont know if this is normal or not but I noticed it a couple of weeks ago and it is bugging me...When i am not using my pc, even while sitting here looking at this web page, the hd sounds like it is doing something (few clicks every couple seconds), it does this but the hd indicator light does not blink. There is no antivirus running, so no scanning, only yahoo widgets and zonealarm. I am worried it is a virus or some other unwanted problem. Should I be concerned about this?

A:HD Activity When Idle

I fully understand -- this is my reaction too.

First, set your VM size to a FIXED value; eg 2x your real RAM. This will
stop XP from expanding it and make your system more responsive too.

Second, make user you have the default setting for Prefetch; if you've never
heard of this -- GOOD, just leave it alone.

Try using the Taskmgr, Processes tab and click on the CPU usage heading twice
to show System Idle Process at the top. Now you can monitor which process
is active when you observe the symptom. If there's nothing obvious,
click on the Networking tab and monitor for internet access; someone
may be 'calling home' for updates.

http://www.techspot.com/community/topics/hd-activity-when-idle.72891/
Relevancy 30.53%

Hi all Basically my computer has started acting very strangly over the last couple of days Boots up as normal and even works fine for varying amounts of time anything from mins to a few hours But all of a sudden the HDD will start going mental and the whole ststem will slow to a crawl with the only way of correcting the problem being a going Whats on activity?! HDD with my reset I have checked all the classic things such as task man and there does not seem to be any programs running that shouldnt be and the CPU usage is low also only a few I have also run a spyware sweep Spybot S amp Whats going on with my HDD activity?! D said everyting was fine and even disconnected from the network when Whats going on with my HDD activity?! the problem occured was worried someone was having a look around my computer but none of this seems to help Was wondering if anyone had any other ideas of what it could be or a way of finding out as it is really starting to annoy me Thanks for your time amp any comments u might have btw its a Whats going on with my HDD activity?! partitioned Gb maxator HDD and is only about a year old it is quite full only about Gig free but i dont see why it would suddenly start behaving like it is Cheers ash nbsp

A:Whats going on with my HDD activity?!

How about memory usage? Bad sectors can cause this too, you should scan the drive with the Maxblast utility.

I have an Asus motherboard with a Western Digital harddrive (all listed in my profile) that apparently doesn't get past the POST. The monitor never flickers on and there are no beeps from the board. I have even removed the RAM and the exact same thing happened. It apparently didn't even notice the RAM missing. I tried known working RAM in it and same effect. I even unplugged the graphics card and the same thing; its like it doesn't even get to the stage of checking the video or RAM. The keyboard never initializes either. The harddrive is okay, I checked it in another computer. I have also reset the BIOS both by removing the battery and the jumper settings. Any help would be greatly appreciated! :grinthumb

A:No POST or other motherboard activity

hate to say it but it is sounding like a mobo/PSU/processor problem

Howdie I hope that one of you more-tech-savy-than-I people can help me out When I power on my computer lights flash and the drives HDDs fans spin However that s as far as it goes Neither of my monitors displays an image nor do I get any of the normal problem activity no Computer on, Turns but - beeps or other sounds associated with a normal startup After a few minutes of just nothing the system turns off and cannot be turned on again unless I unplug the cord for a few Computer problem - Turns on, but no activity minutes Computer problem - Turns on, but no activity In the very recent past the system has randomly powered itself off a few times I assume it was because there s a lot of heat It s been over for the past weeks and my room doubles as a brick oven in the sun I ve been meaning to get a new case with a better cooling system never trust CompUSA to build your computer but money seems to be going to other less important things like food and clothing I think the motherboard maybe fried but I d like your opinion nbsp

A:Computer problem - Turns on, but no activity

Most likely it's something related to heat. Bring it to a PC repair shop and get them to look at it

I have an ECS N2U400A-Ultra mobo and a BUSlink Seria ATA Controller card controlling a Raptor. What I cant figure out is how to make the Hard Drive activity led work.

A:Motherboard Hard Drive Activity Led problem

As that is a PCI card, it does not have a connection to the control-light that connects to the motherboard's IDE controller.
Unless there is a LED-connector on that BUSlink card, you'll have to live without it.

http://www.techspot.com/community/topics/motherboard-hard-drive-activity-led-problem.24894/
Relevancy 30.53%

:-(

A:This forum needs more activity...

Sorry if our computer's are not breaking at a fast enough rate for you cryo.

I've used Excite.com for years but with in the last few days I have noticed that a feature of theirs Stock Tracked is missing! Anyone happen to know if this is permanent?

Hey guys I ve had a look around the forums and haven t seen anything activity graphic randomly with and intensive restarts freezes Desktop like Desktop freezes and randomly restarts with graphic intensive activity my issue so I hope it s okay to post this I build a custom computer about a year ago and everything has years warranty About a month ago my computer started blue screening when I tried to play any games and if I accidentally knocked the desk it would freeze It then completely stopped turning on even though the actual computer was running nothing was showing on the monitor However when the graphics card was taken out it started up fine So my mate put it down to a faulty graphics card and we got it replaced I got said graphics card back yesterday put it back in and re installed the necessary driver and hey presto it worked for a while I started playing assassins creed and min into the game my computer crashed I decided to reformat my computer to ensure there isn t any undetected virus or software faults but the freezes and random restarts continue to happen afterwards So I ve used my computer today for about an hour just browsing the internet and no problems As soon as I run skype it randomly restarts again I checked the hardware with HWMonitor and everything is running fine This is my build Corsair Vengeance CMZ GX M A C GB x GB DDR BitFenix Spectre mm Black Tinted Blue LED Fan Arctic Cooling MX- Thermal Compound g BitFenix Sleeved Molex to x pin V Power Cable Black Corsair GS- V Power Supply BitFenix Spectre mm Black Tinted Green LED Fan ASUS P H -M Motherboard Intel Core i BitFenix Shinobi Black Case with Window Gigabyte GeForce GTX OC with METRO Not sure what else you guys need info wise im not very tech savvy But anyone got any ideas From what I ve read it could be a faulty power supply or issues with the RAM but I have no way of testing that without spending for some quot pro quot to diagnose it for me nbsp

A:Desktop freezes and randomly restarts with graphic intensive activity

Update:
fresh reformat complete - all ok
hw monitor test complete - all ok
chkdsk complete - no errors
memtest complete - no errors

Issues:
Takes forever to load on start up now
Random restarts
Random freezes
** CD rom drive now stutters/makes clicking noises when CD inserted
** Games no longer start, I.e LoL/steam

http://www.techspot.com/community/topics/desktop-freezes-and-randomly-restarts-with-graphic-intensive-activity.206513/
Relevancy 41.28%

Need help! I have a advantage database program called Manheim tracker 3.097..been working fine until restart on 1/27. Program wouldn"t start up . A ( COMPANY ADT) file error.What is this?Where did it go? Any one fimiliar with this program.?

A:Manheim tracker data problem

Does this link help?
Recovery Toolbox

Is there a way to examine what has happened during a boot of a computer? Does XP keep a "boot log" ?

I know my CPU is looking for some sort of driver or trying to start a service because all of a sudden boots take forever, and in the middle of them the floppy and CD-ROM drives come on as if WinXP Pro ( 32 bit) is looking for a driver or can't start a service correctly, but I can't figure out what the problem is.

Thanks for any help.

A:Is There A Way To Trace Activity During Boot Up?

This may be the log you're looking for?
Type MSINFO32.EXE in Start, Run dialog
Click the (+) sign in Software Environment category
Select Startup Programs. System Information will now generate the list of startup entries.
Once the right-pane is populated, click the File menu and choose Export
Type-in a file name (example: startuplog.txt) and choose a location to save the file.
Close MSINFO32 utility.

Hi guys,

i'm looking for advice on appropriate software that will effectively spy on a users terminal services account on win server 2003). I need to track how often, what sites and how long he spends on the internet per working day.
Our HR has sanctioned this.
Could it be done via group policy or does it need specific software?
I found win-spy which seemed really good and do what i want, but whilst running it, i found i could no longer log into the server by RDP, so that was uninstalled, shame!

Cheers

A:Internet activity monitoring in terminal services

You're talking some pretty serious 'stuff' here. IF this is a work environment, the IT in charge should handle this. I don't know what an 'HR' is, but even it that person 'sanctioned' it, the "spying" should be in the hands of someone who both knows how and is authorized to carry it out.

I don't want to get up on a soap box here, but this is holding an employee's job and future in jeopardy. It shouldn't be in the hands of someone who has to 'ask' how to do it!

I ve been noticing some strange behavior lately which I think may be tied to low performing files and or disk clutter Sometimes when I open up a new folder with many items inside I see that the icons on the desktop refresh Icons with HDD Desktop Activity Refreshing slowly and the hard drive is constantly accessed until it s done This keeps happening on a regular basis so I m trying to figure out what exactly is causing it I ve defragmented my system drive and Desktop Icons Refreshing with HDD Activity secondary drive which sped things up a bit but that didn t really fix the problem I also ran a disk cleanup and I m wondering if I should do a registry scan or something I also have a similar problem with a folder full of application files The system seems to quot struggle quot when trying to fetch the icons for there are a lot of them in there I ve had Windows XP installed on this computer for Desktop Icons Refreshing with HDD Activity over a year so perhaps it needs a tuneup The problem isn t so severe that it renders the machine useless or anything it s more of an annoyance Anyways I d appreciate anyone s input on this Thanks in advance nbsp

A:Desktop Icons Refreshing with HDD Activity

Run CCleaner fully
Then Disable icon refresh

Disable icon refresh: http://www.kellys-korner-xp.com/regs_edits/disablerefresh.reg
Re-Enable icon refresh (if you want it back): http://www.kellys-korner-xp.com/regs_edits/enableiconrefresh.reg
This information was found here: http://www.kellys-korner-xp.com/xp_tweaks.htm (No. 157)

Then restart

Hi My PC seems be slowing down a lot lately Like after I finish playing a game the computer will be slow in responding to usual stuff like bringing up the menu on right clicking on the desktop Once or twice Windows has even told me that the computer is performing slowly and that I should disable Aero and this was while I was in the middle of a game which I know a activity down Computer after of while slows is a bad sign The mouse will also start skipping from one point to another for a second or two sometimes when I move it e g when I try to open something while files are being transferred Games also seem to stutter quite a lot in the beginning when I load up a level though the stuttering lag stops after a while All Computer slows down after a while of activity this has just started happening over the last weeks or so wasn t the case before that One thing I ve noticed is that RAM slot temperature is around C which I m guessing is due Computer slows down after a while of activity to the proximity of either the RAM slot or the RAM temp sensor to the CPU not sure though This usually happens after a while of using the computer and mostly after I close a game after playing it for a while Restarting the PC makes it normal again for a while Also when the PC boots up it shows a black screen with the mouse first then the blue Welcome screen comes up Here I first get Please Wait for a second then it seems to hang stutter for a second as it changes to Welcome I m pretty sure this hang isn t supposed to happen Actually I don t think even the Please Wait message should come up in normal operation Here s what I ve done till now to try and solve it Formatted and re-installed Windows on multiple HDDs Defragmented regularly Updated drivers updated Windows to SP Checked the temperatures everything is normal HDD goes up to - C CPU goes to a max of C while gaming hangs around - C in general usage GPU temperatures are extremely normal as well except the RAM temp mentioned above Reconnected all components etc Installed a new GPU as well so that rules out the possibility of a bad GPU though i m not sure if GPU was ever responsible for all this So what can the problem be Hardware or software Help me out here guys I m really going nuts not being able to pinpoint the problem Update I ran Memtest for passes no errors found My specs Core i - GHz GB MHz RAM DDR Asus P H -M LX Motherboard GB MB Cache WDC Caviar Green HDD Geforce GTX Ti W PSU W total output Windows SP -bit nbsp

A:Computer slows down after a while of activity

What program are you using to monitor the temps? Have you run diagnostics or run a disk check on the C drive? Defragging a hard drive often is not a good practice and it is not a substitute for running chkdsk or health diagnostics

Does anybody here know any program thrt can track system events, for example i want to run a virus on my test system and see what the virus does (track its activity). Thanks

Setup We have a server running Win server and each user has an account so they can log into their account using any computer I installed reinstalled Windows XP pro on a computer and installed all the drivers Everything looks okay in device manager but when I connect an ethernet cable I have no internet and it says quot limited address" valid and doesn't Network IP Limited/No "Local a activity Area have no activity quot and I can't access the internet I tried to have windows repair it but then it says quot local area network doesn't have a valid IP address Do I need to be part of the domain and logged in to use the internet Limited/No activity and "Local Area Network doesn't have a valid IP address" Anyways I went into ethernet properties and IPv is not checked V is checked and in the properties for it its set to obtain the IP and DNS server address automatically All the computers are set the same I tried entering the domain information and all that but it doesn't work I took pics of the settings before and it doesn't work when I put it in So I have a couple questions Do I need to be logged in or any computer I plug in should be able to access the internet How do I fix it so I can enter the domain information so I can set it up where I can log into any user from this computer

A:Limited/No activity and "Local Area Network doesn't have a valid IP address"

I want to apologize in advance that I can't get the ipconfig /all information for you right now, since I am away from work for the weekend. Anyway to troubleshoot or give me some ideas to try before I go back into work?

Relevancy 30.1%

A:Typical adware / malware activity

Hello and Welcome to TSF.

If you haven't already, please Subscribe to this Thread to get immediate notification of replies as soon as they are posted. To do this click Thread Tools, then click Subscribe to this Thread. Make sure it is set to Instant notification by email, then click Add Subscription.

Please note that the forum is very busy and if I don't hear from you within three days this thread will be closed.

------------------------------------------------------

Please note that these fixes are not instantaneous. Most infections require more than one round to properly eradicate.

Please stay with me until given the 'all clear' even if symptoms seemingly abate.

If there are any personal files, pics, etc. on your computer you cannot live without, back them up now just as a precaution.

Emergency Backup Procedure - Tech Support Forum

Also, if you haven't done so already, create a system repair disc. It's really easy and quick.

How To Create a Windows 7 System Repair Disc [Easy]

------------------------------------------------------

Click the blue 'Download now @bleepingcomputer' button.
Run AdwCleaner and select Scan
Once the Scan is done, select Cleaning
Once done it will ask to reboot, please allow the reboot.
On reboot, a log will be produced. It can also be found at C:\AdwCleaner\AdwCleaner[S#].txt
------------------------------------------------------

**Note: It is important that it is saved directly to your desktop**

* Ensure you have disabled all antivirus and antimalware programs so they do not interfere with the running of ComboFix.

Get help here

Double-click ComboFix.exe and follow the prompts to run it.

Your desktop may go blank. This is normal. It will return when ComboFix is done. ComboFix may reboot your machine. This is normal.

When finished, it shall produce a log for you. Please post that log, C:\ComboFix.txt, in your next reply.

Please re-enable your antivirus before posting the ComboFix.txt log.

Note: If you get an 'Illegal operation attempted on a Registry key which has been marked for deletion' error message, please open Task Manager and 'End Process' on explorer.exe

Next, go File > New Task(Run...) and type explorer then press 'Enter'.

------------------------------------------------------

Relevancy 30.1%

Hey there I Suspicious /: activity. bandwidth exlporer.exe m in a hurry right now so I wanna keep it kinda brief while covering all the bases I can to hopefully get this solved First off I don t use an anti virus nada not even a free one why No reason for me in my opinion don t feel the need yes I know ironically here I am Anyway I never run into viruses but about a week ago I noticed Suspicious exlporer.exe bandwidth activity. /: some laggy performance in games so did some digging found out multiple instances of explorer exe and iexplorer were running and slowing hogging more and more of my memory and cpu usage After some digging and some cleaning Safe mode ran several anti viruses from a flash drive all updated databases Malwarebytes Adwcleaner RKill TDSSKiller Combofix etc I caught several bugs got rid of it all Which fixed my problems now all thats left is my explorer randomly uses bandwidth it starts out with just a little and slowly builds up until my latency for everything is Suspicious exlporer.exe bandwidth activity. /: ridiculous and bandwidth is completely hogged I can stop explorer exe and just not have it open and everything is fine but when I start explorer back up it will eventually come back It doesn t always come back right away Sometimes it won t show Suspicious exlporer.exe bandwidth activity. /: up for like an hour or two after restarting explorer I ve used ProcessExplorer to try and find out if something is using explorer exe directly but I got nothing Anyway I d appreciate any help you guys could offer I m gonna leave a couple more details below that might help PC Specs Built - years ago I think AMD Phenom II X Stock ghz Radeon HD gb RAM tb HDD MSI Mobo Or something like that Windows I don t have the CD anymore Asus AC PCI-E wifi adapter Asus RT-AC U Router I ve uploaded http I imgur com uVa Bn png a picture of my Task Manager and Resource Monitor that shows the explorer using bandwidth explorer was probably open for a couple minutes before taking this shot Thanks in advance nbsp

A:Suspicious exlporer.exe bandwidth activity. /:

Please, complete all steps listed here: http://www.techspot.com/vb/topic58138.html
Make sure, you PASTE all logs. If some log exceeds 50,000 characters post limit, split it between couple of replies.
Attached logs won't be reviewed.

Please, observe following rules:

Read all of my instructions very carefully. Your mistakes during cleaning process may have very serious consequences, like unbootable computer.
If you're stuck, or you're not sure about certain step, always ask before doing anything else.
Please refrain from running any tools, fixes or applying any changes to your computer other than those I suggest.
Never run more than one scan at a time.
Keep updating me regarding your computer behavior, good, or bad.
The cleaning process, once started, has to be completed. Even if your computer appears to act better, it may still be infected. Once the computer is totally clean, I'll certainly let you know.
If you leave the topic without explanation in the middle of a cleaning process, you may not be eligible to receive any more help in malware removal forum.
I close my topics if you have not replied in 5 days. If you need more time, simply let me know. If I closed your topic and you need it to be reopened, simply PM me.

====================================

NOTE. I'll not continue unless you install one of AV programs recommended in step 1 of our preliminaries.

May sound like i'm looking for a keylogger.. Well why not, since i'm for myself xD I do too many things at a time and often my computer will crash when going to sleep.

When i reboot it i have no traces of what i was doing and i can't recall all.. Sometimes i totally forget important things, which leads to trouble!

Windows doesn't have the MAC features to reopen everything in the exact state it was when you closed it sadly. Any free app to recommend? Thanks.

A:Monitor computer activity in details..

You would be better off spending your labor on stopping the computer crashes.

You should also complete your system specs in the forum:
System Info - See Your System Specs
See step 5.

http://www.sevenforums.com/software/376633-monitor-computer-activity-details.html
Relevancy 29.67%

I should begin this by stating that I know I've got security issues For instance My BIOS password was changed and even Dell Tech Support couldn't reset it the user-side password to access the browser-based settings console to my Linksys router was changed locking me out I've quit using the router for now the built-in Administrator account has been logged into and a password set and many other events but right now I just have a specific question I'm on a home PC Dell L X running Windows SP and am not knowingly connected to any network though various monitoring apps on my system are telling me otherwise I use Firefox never IE but just on a hunch I thought I'd take a look at IE's history It showed the browser as having visited certain security-related sites which I'd been to it had been to the IP address of my router console specifically the wireless security page where I'd disabled the device's wireless capability and has also accessed certain documents on log it system activity/contents? Is for normal IE history to my Is it normal for IE history to log system activity/contents? system typically saved logs and other files related to my attempts at security forensics The day after I found this suspicious activity in the IE history I noticed that IE had switched to private browsing Some people with whom I've shared this are speculating that this is probably just one way Windows natively logs certain types of activity but given what's shown up there I find this suggestion less than tenable Is this likely to be the case or not Thank you

A:Is it normal for IE history to log system activity/contents?

Who else shares this particular computer with you?

Who else shares your Internet connection in your home? (other computers?)

http://www.sevenforums.com/system-security/379017-normal-ie-history-log-system-activity-contents.html
Relevancy 29.67%

Hello First I'm afraid that Norton deleted Farbar Recovery Scan Tool as soon as it was saved to the desktop Suggestions for workaround I should begin this by stating that I know I've got security issues For instance My BIOS password was changed and even Dell Tech Support couldn't reset it the user-side password to access the browser-based settings console to my Linksys router was changed locking me out I've quit using the router for now the built-in Administrator account has been logged into and a password set and many other events but right now I just have a specific question I'm on a home PC Dell L X running Windows SP and am not knowingly connected to any network though various monitoring apps on my system are telling me otherwise Nobody else uses my computer nor has physical access to it I use Firefox never IE but just on a hunch I thought I'd take a look at IE's history It showed the browser as having visited IE for Is history normal to log it system activity/contents? certain security-related sites which I'd been to it had been to the IP address of my router console specifically the wireless security page where I'd disabled the device's wireless capability and has also accessed certain documents on my system Is it normal for IE history to log system activity/contents? typically saved logs and other files related to my attempts at security forensics The day after I found this suspicious activity in the IE history I noticed that Is it normal for IE history to log system activity/contents? IE had switched to private browsing Some people with whom I've shared this including a retired computer programmer are speculating that this is probably just one way Windows natively logs certain types of activity but given what's shown up there I find this suggestion less than tenable Is this likely to be the case or not Thank you

A:Is it normal for IE history to log system activity/contents?

Suspicious activity detected. Your account is locked.
This will not allow me to access my Hotmail or live accounts.
It ask me to change my password, then ask for credit card information.
I did not do that. I can access these accounts on any other device with no problems.
I have having the same problem in Internet Explorer, Google Chrome, and Firefox.

I am running windows7 64bit on an HP Pavilion desktop.
I cannot run McAfee, Rkill, or Malwarebytes, even in safemode.
I ran FRST but it will not allow me to copy and paste into my browser so I attached the FRST and Addition files.

My internet explorer only seems to work in safemode.
Thnak you.

A:Suspicious activity is detected. Your Account is locked

A:Google says unusual activity from my IP. Browser not rendering correctly

At the end, be sure a checkmark is placed next to the following:

Launch Malwarebytes Anti-MalwareA 14 day trial of the Premium features is pre-selected. You may deselect this if you wish, and it will not diminish the scanning and removal capabilities of the program.
Click Finish.On the Dashboard, click the 'Update Now >>' linkAfter the update completes, click the 'Scan Now >>' button.
Or, on the Dashboard, click the Scan Now >> button.If an update is available, click the Update Now button.
A Threat Scan will begin.When the scan is complete, if there have been detections, click Apply Actions to allow MBAM to clean what was detected.In most cases, a restart will be required.Wait for the prompt to restart the computer to appear, then click on Yes.If you already have MBAM 2.0 installed:On the Dashboard, click the 'Update Now >>' linkAfter the update completes, click the 'Scan Now >>' button.
Or, on the Dashboard, click the Scan Now >> button.If an update is available, click the Update Now button.

Relevancy 28.81%

Mod Edit: Moved to proper forum ~~ boopme
Hi, I have a yahoo email acount, and every time I try to reply to someone or send out an email I get the following message: "Error code 475: Suspicious activity was detected on your account".

I have not sent out any bulk emails at all. I have not done anything different than what I have been doing for several years of having the account. At times the email will close out on it's own, and I keep getting a request from yahoo to change my email address.

The google chrome browsing experiences has been much slower as well. I get a stall often time when I am trying to go to a website online from search and from the address bar.

Does anyone have a solution to this problem?

A:Yahoo Email Account Error Message 475: Suspicious activity detected

It appears if you have web links to other sites in your email signature, Yahoo Mail will flag it.

Also, if you log in from a location different from the one you normally use, especially if it's outside your home country, or if you recently changed ISP providers, that can trigger it as well.

A third possibility is that your username and password have been compromised, and someone else is logging in and using the account to send spam.

http://www.bleepingcomputer.com/forums/t/580752/yahoo-email-account-error-message-475-suspicious-activity-detected/
Relevancy 30.53%

Hey New Boy be gentle

I have a client who wants me to record an on screen tutorial as part of a training DVD. Is there an easy way of doing this apart from just setting up the camera on a tripod? Or do I have buy special software? I use Premier Pro to edit video but I don't know if it has the capability to record on screen stuff.

Can anyone help please?

Thanx

A:Record Screen Activity

I think Windows Media Encoder has an option for screen capture.

I can't find my last post regarding this, so apologies if this is a double up...

Other than disliking the OS 8.1 with its  OVERLY ANNOYING start screen/"charms" appearing whenever THEY wish, this appears to be a great little Laptop!

Reasonable specs for my needs, not unlike my 'Vista girl', but with a 750Gb hdd....

but.......... other than the A/C and WiFi lights at the front right, I don't see any others?

CPU activity in particular... so how do I know when it's running/struggling/etc???

A:CPU activity light on Toshiba Satellite C50-B series....?????

Hi OliviaITlover Depending on the laptop/computer brand and model you have, you won't have the same lights as others. Some offers light for the A/C, network (WiFi), network (Ethernet), disk usage, etc. while others only offers light for the A/C. Personally, I've never seen a light for the CPU usage. If you want to know your CPU usage (and if it's struggling), right-click on the taskbar and select Open Task Manager. From there, you'll see your CPU usage and if it's struggling or not.

http://www.bleepingcomputer.com/forums/t/581254/cpu-activity-light-on-toshiba-satellite-c50-b-series/
Relevancy 29.24%

A:Bugcheck code: 0x9F + 100% disk activity

Hi, your issue is similar to another users that I am currently helping :http://www.bleepingcomputer.com/forums/t/532429/ntkmlpaexekidispatchinterrupt0x5a4-is-using-too-much-cpu/#entry3372944

Note the similarity in the active processes: ntkrnlmp.exe/ ntoskrnl.exe

I strongly suggest you take a backup of all your data before proceeding with any of the following steps:
Most likely the above error is caused by outdated drives, try updating your drivers especially the Realtek drivers.
Also, make sure your BIOS is updated (ensure you do this step by step as per instructions from the manufacturers website)

Let me know if you need detailed instructions on any of the above. Let me know how it goes.

A:Exe files, browers crashing after prolonged activity

Hi Ratheyan, and welcome to Bleeping Computer

You cannot post a Combofix log in this forum.  The only forum you can post one in is the Virus, Trojan, Spyware, and Malware Removal Logs forum.

Please run the ESET OnlineScan
Hold down Control and click on this link to open ESET OnlineScan in a new window.
Click the button.
For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
Double click on the icon on your desktop.

Click the Start button.
Accept any security warnings from your browser.
Under scan settings, check "Scan Archives" and "Remove found threats"
Click Advanced settings and select the following:
Scan potentially unwanted applications
Scan for potentially unsafe applications
Enable Anti-Stealth technology

ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
When the scan completes, click List Threats
Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
Click the Back button.
Click the Finish button.

1)  Double-click on mbam-setup.exe, then click on Run to install the application, follow the prompts through the installation.

2)  Malwarebytes will automatically open.  If this is the first time you have run this version of Malwarbytes you will see an image like the one below.

Click on Update Now, after Malwarebytes is updated click on Scan.

If this isn't the first time you have run this version, then you will see an image like the one below.  Click on Scan

You will be prompted to update Malwarebytes, to do so click on Update Now.

3)  The scan will automatically run now.

4)  When the scan is complete the results will be displayed.  Click on Quarantine All, then click on Apply Actions

5)  To complete any actions taken you will be asked if you want to restart your computer, click on Yes

6)  Please post the Malwarebytes log.

To find your Malwarebytes log,download mbam-check.exe from here and save it to your desktop.

To open the log double click on mbam-check.exe on your desktop.  When the log opens, scroll down toward the bottom of the log to Quarantined Items.  Copy and paste this in your next post.

Currently running Windows 7 Professional 64 bit on an HP computer purchased several months ago.

The Wireless Network Connection Status popup window Activity shows the following:
Bytes Sent:        28,853,819

What is causing the high number of bytes being sent, and where are they going?

Thanks in advance for any assistance in resolving this issue.

JohnPaulHelp
2015-08-28

A:Wireless Network or Internet Activity Issue

Is this soon after you turn on the machine? If not, this is perfectly normal behaviour.

http://www.bleepingcomputer.com/forums/t/584386/wireless-network-or-internet-activity-issue/
I have noticed a strange behavior in my computer since the last few days

When i start the computer the 1st time in the morning, the HDD activity light keeps running continuously and does not even blink for a second non stop

However, if shutdown and restart, the HDD activity stops after a couple of minutes as it should be !

Can i just  ignore  the HDD activity light and go on with my normal work ?

I am worried that in case the computer is going in some loop and accessing the HDD endlessly, it will reduce the life of the HDD and may cause early failure of the same .

Am I paranoid for nothing ?
Any recommendations on the same ?

My configuration is as follows:

AMD 1090T
Crosshair IV Formula
2X4 GB Corsair RAM 1600 Mhz
Corsair HX 620 SMPS
WD500 Blue HDD
250GB Seagate HDD
Windows 7 ultimate 64 bit updated everyday
Microsoft security essential
MBAM paid version

A:HDD activity Light runs continuously after starting computer

Hi,
Have you checked both of your security programs to see when they run their scans and if they have found anything?
Just before the change you report did you download anything or install any updates?

Dick

http://www.bleepingcomputer.com/forums/t/565246/hdd-activity-light-runs-continuously-after-starting-computer/
Relevancy 29.67%

A:Lots of "(not responding)" and continuous disc activity . . .

Checkmark the following checkboxes:  List last 10 Event Viewer log  List Installed Programs  List Users, Partitions and Memory size.
Click Go and paste the content into your next post.
Also...please Publish a Snapshot using Speccy - http://www.bleepingcomputer.com/forums/topic323892.html/page__p__1797792#entry1797792 , taking care to post the link of the snapshot in your next post.

Louis

A:Disk Activity Almost 100% All the Time

Well...sounds to me as whatever you are using to install Win 7...may be the problem.

Or...some other hardware item other than the replaced hard drive.

IMO, cloning a problematical hard drive...to a good hard drive...is likely not to produce a relieable, useful Windows install.  Garbage in, garbage out.

I don't know much about a damaged NTFS, other than to say that cloning it does not make it a better file system.

You have a number of possibilities...including the unspoken one, malware...a clean install is the way that I would narrow the suspects.

Louis

Hi I am troubleshooting something Vista Activity HDD that has me stumped Windows Vista Vista HDD Activity Home Premium SP Bit on a Toshiba A The HDD light seems to be flashing more than I think it should be while the PC is idle The original symptom was intermittent performance issues I have used Process Monitor and Activity Indicator to see what is reading writing to from the HDD To be honest I don't see anything really odd When the led is flashing the virtual LED in Activity Indicator is not in synch which makes me wonder what's going on I have scanned for Malware with a litany of tools and found very little and cleaned what they did find Malwarebytes MSE Super Anti SpyWare ADWCleaner TDSS Killer etc I have defragged the HDD and PST files from Outlook when loading web pages from MSN it seems slow in both Chrome and IE This occurs while the HDD LED is indicating disk activity Again ProcMon and AI don't show any significant utilization disk or CPU while the LED is blinking What the heck could be causing the disk to be accessed but not show in these tools OR is there a better tool to use to find out what is chugging away on the disk I also disabled all of the Toshiba bloat utilities and am running with minimal startup items and services Thanks in advance Kurt

A:Vista HDD Activity

have you checked out windows Task manager processes  cpu and performance issues.

may lead to an indication of hdd activity

Windows XP home SP3, the hard drive activity indicator light stays on constantly, the computer runs and I can access all programs but I had trouble booting it yesterday so I'm afraid to shut it down,would appreciate some ideas on what would have caused this.
Thank you.

A:HD activity indicator

Hard disk activity occurs for various reasons.

I would run the chkdsk /r command...then follow that with a defrag of the Windows partition.

Louis

A:bitdefender firewall blocks all ethernet activity

Well...it's possible that you only have 1 problem...the fact that the adapter doesn't appear in Device Manager has nothing to do with the firewall.
Click Go and paste the content into your next post.
Also...please Publish a Snapshot using Speccy - http://www.bleepingcomputer.com/forums/topic323892.html/page__p__1797792#entry1797792 , taking care to post the link of the snapshot in your next post.

Louis

Hi,
I am running win xp pro sp3 and have noticed of late that lsass.exe is beating quite a lot on the hdd.  Is is normal for it to to make about 350 I/O reads and 320 writes in one minute?  They are reported by task manager in high update rate in increments of three usually.  At times it appears to prevent sleep mode.  csrss.exe is equally or more active but only with reads.

Thanks, John.

A:lsass.exe activity

Well...I don't monitor or concern myself with input/ouput reads and writes...I only become conerned with CPU usage or memory usage seems out of line.

But, for comparative purposes only...my lsass reflects I/O reads of over 1.5 million, while my writes are over 700,000.

I have no concerns, no system problems at all.

Louis

why flashing a lot

A:Activity light

It indicates that something is accessing your hard drive(s). This could be the operating system, applications you are running, your wi-fi connection doing some hand-shaking, or even malware.

It normally flickers fairly regularly if you are not doing very much, but if you are concerned, download a copy of Malwarebytes from here :

Malwarebytes Anti-Malware

install it, follow the on screen instructions, run a quick scan and see what it says. Should it show up any problems you can't solve yourself, post back here in the 'Am I infected' section of the site.

Chris Cosgrove

A:Strange Computer Activity, Login Attempts

Hello, Welcome to BleepingComputer.I'm nasdaq and will be helping you.If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps in the order listed.===Press the windows key + r on your keyboard at the same time. This will open the RUN BOX.Type Notepad and and click the OK key.Please copy the entire contents of the code box below to the a new file.

start

CreateRestorePoint:
EmptyTemp:
CloseProcesses:

() C:\Users\Cameron\Desktop\05gcgizk.exe
Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X]
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
U0 pkkycy; C:\WINDOWS\System32\drivers\mwntpmtn.sys [52440 2015-08-14] (Malwarebytes Corporation)
U3 kxddafog; C:\Users\Cameron\AppData\Local\Temp\kxddafog.sys [104960 2015-08-14] (GMER) [File not signed]
U3 idsvc; no ImagePath
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
U3 wpcsvc; no ImagePath[/B]
C:\Users\Cameron\Desktop\05gcgizk.exe
C:\WINDOWS\System32\drivers\mwntpmtn.sys

End
Hello, I believe I have this on my computer and not sure how to remove.  I am running Windows 8.1 64 and using Norton 360.   Any help in getting this removed would be awesome.  For some reason unable to download the FRST.  Tells me that my security will not allow me to download

A:Trojan Zbot activity 15

Hi & to Bleeping Computer Forums!
My name is Jürgen and I will be assisting you with your Malware related problems.
Before we move on, please read the following points carefully:
My native language isn't English. So please do not use slang or idioms. It could be hard for me to read. Thanks for your understanding.
Please read my instructions completely. If there is anything that you do not understand kindly ask before proceeding.
Perform everything in the correct order. Sometimes one step requires the previous one.
If you have any problems while you are follow my instructions, Stop there and tell me the exact nature of your problem.
If you have illegal/cracked software, cracks, keygens, etc. on the system, please remove or uninstall them now!
Do not run any other scans without instruction or Add/ Remove Software unless I tell you to do so. This would change the output of our tools and could be confusing for me.
Post all Logfiles as a reply rather than as an attachment unless I specifically ask you. If you can not post all logfiles in one reply, feel free to use more posts.
If I don't hear from you within 5 days from this initial or any subsequent post, then this thread will be closed.
If I don't reply within 24 hours please PM me!
Stay with me. I will give you some advice about prevention after the cleanup process. Absence of symptoms does not always mean the computer is clean.
Temporary disable your AntiVirus and Windows Smart Screen - instructions here and here.Step 1
Please run a FRST scan. This will help us diagnose your problem.
(If you are not sure which version (32-/64-bit) applies to your system, download and try to start both of them as just the right one will run.)
Start FRST with administator privileges.
Make sure the option Addition.txt is checked and press the Scan button.
When finished, FRST will produce two logs (FRST.txt and Addition.txt) in the same directory the tool was run from.
Please copy and paste these logs in your next reply.

Hi guys I would really appreciate your help with this My antivirus notified of malware yesterday I failed to take note of malware name Also scanned with WIN defender at the time and noticed BrowserModifier Win DefaultTab in history but I think my antivirus found something else too I proceeded with cleaning quarantining etc but I lost internet connection afterwards displays as connected HDD / Internet WIN10 100% Possibly No Connection Activity / Malware to wifi router but internet connection not available I followed multiple online guides to fix it but no luck I also performed system restore I know I probably shouldn't have done that but again no luck Also the fan is constantly very loud HDD activity No Internet Connection / HDD 100% Activity / Possibly Malware WIN10 is at and it takes a good while to boot up and when it does it is terribly slow mins to open ccleaner for example Attached is FRST log amp additon Hope you don't mind that I'm attaching both as it's huge Laptop details Make Acer V - g i GB RAM - shouldn't be slow at all OS WIN Thank you in advance

A:No Internet Connection / HDD 100% Activity / Possibly Malware WIN10

UPDATE: I could not afford to wait long so after multiple unsuccessful attempts decided to reset windows which did the trick and all seems to be working perfectly. Please close the topic. Thank you.

A:Norton Blocks Adware Installer Activity 7

Hello, Welcome to BleepingComputer.I'm nasdaq and will be helping you.If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps in the order listed.===Open notepad (Start =>All Programs => Accessories => Notepad). Please copy the entire contents of the code box below.
start

CreateRestorePoint:
EmptyTemp:
CloseProcesses:

HKLM\...\Run: [hpqSRMon] => [X]
HKLM\...\Run: [SearchProtection] => C:\ProgramData\Search Protection\_run.bat
HKU\S-1-5-21-2268045312-3402110376-3729890785-1000\...\Winlogon: [Shell] C:\Windows\explorer.exe [2926592 2009-04-11] (Microsoft Corporation) <==== ATTENTION
ShortcutTarget: Monitor Ink Alerts - HP Photosmart C7200 series.lnk -> (No File)
ProxyEnable: [S-1-5-21-2268045312-3402110376-3729890785-1000] => Internet Explorer proxy is enabled
ProxyServer: [S-1-5-21-2268045312-3402110376-3729890785-1000] => http=127.0.0.1:51040;https=127.0.0.1:51040
cmd: ipconfig /flushdns
URLSearchHook: HKU\S-1-5-21-2268045312-3402110376-3729890785-1000 - (No Name) - {339a0dff-d9af-439b-92bc-636220fb3dae} - C:\Program Files\SmileyCentralIE_1w\bar\1.bin\1wSrcAs.dll No File
SearchScopes: HKLM -> {8b0d31e7-0331-43cc-87cd-a472317f1305} URL = http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=ZNzfb010YYus_ZJxdm128YYus&ptb=6F2193AA-F0B5-4502-8CD7-19FDAD23B357&psa=&ind=2011011522&ptnrS=ZNzfb010YYus_ZJxdm128YYus&si=&st=sb&n=77dd99c2&searchfor={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\.DEFAULT -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-21-2268045312-3402110376-3729890785-1000 -> {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = http://safesearchr.lavasoft.com/?source=3336ca5f&tbp=rbox&toolbarid=adawaretb&u=B4C9CBA96011EDD10DECC650B054A157&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2268045312-3402110376-3729890785-1000 -> {70D46D94-BF1E-45ED-B567-48701376298E} URL = http://127.0.0.1:4664/search&s=LdXP06obeAcVcbIdveDe_C7viK0?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2268045312-3402110376-3729890785-1000 -> {8b0d31e7-0331-43cc-87cd-a472317f1305} URL = http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=ZNzfb010YYus_ZJxdm128YYus&ptb=6F2193AA-F0B5-4502-8CD7-19FDAD23B357&psa=&ind=2011011522&ptnrS=ZNzfb010YYus_ZJxdm128YYus&si=&st=sb&n=77dd99c2&searchfor={searchTerms}
SearchScopes: HKU\S-1-5-21-2268045312-3402110376-3729890785-1000 -> {D002E040-8BCB-42B2-8BC2-BE924ACBA8CB} URL = https://duckduckgo.com/?q={searchTerms}
BHO: No Name -> {02478D38-C3F9-4efb-9B51-7695ECA05670} -> No File
BHO: mefeediaTest -> {154d932f-dc51-4a4f-9d52-b78b1419d3b4} -> C:\Program Files\mefeediatest\w3itemplateX.dll [2011-05-04] ()
BHO: Search Assistant BHO -> {5ed22e89-62fa-47ec-bd8d-374d849d436c} -> C:\Program Files\SmileyCentralIE_1w\bar\1.bin\1wSrcAs.dll No File
Toolbar: HKLM - mefeediaTest - {154d932f-dc51-4a4f-9d52-b78b1419d3b4} - C:\Program Files\mefeediatest\w3itemplateX.dll [2011-05-04] ()
FF Plugin: @DailyBibleGuide.com/Plugin -> C:\Program Files\DailyBibleGuide\bar\1.bin\NP2vStub.dll No File
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\DailyBibleGuide\bar\1.bin
FF Extension: DailyBibleGuide - C:\Program Files\DailyBibleGuide\bar\1.bin [2011-10-22]
CHR Extension: (MySearchDial) - C:\Users\tytruax\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflpha... Read more

Relevancy 29.67%

Running W7 SP1 64-bit.  Norton 360 v 22.5.0.124 (recently auto-updated) has started reporting multiple intrusion preventions, citing Trojan Zbot Activity 15.  We've not used your website before but Norton Community thread 6145291 recommended this site, among others.  We are retired software engineers, so we've been out of the loop for awhile, but we can follow technical directions and report back with great detail!

Can you help us getting this malware removed?

A:W7 SP1 64-bit Trojan.Zbot Activity 15 reported by Norton 360

Greetings and to BleepingComputer,
My name is xXToffeeXx, but feel free to call me Toffee if it is easier for you. I will be helping you with your malware problems.

A few points to cover before we start:
Do not run any tools without being instructed to as this makes my job much harder in trying to figure out what you have done.
Make sure to read my instructions fully before attempting a step.
If you have problems or questions with any of the steps, feel free to ask me. I will be happy to answer any questions you have.
Please follow the topic by clicking on the "Follow this topic" button, and make sure a tick is in the "receive notifications" and is set to "Instantly". Any replies should be made in this topic by clicking the "Reply to this topic" button.
Important information in my posts will often be in bold, make sure to take note of these.
I will attempt to reply as soon as possible, and normally within 24 hours of your reply. If this is not possible or I have a delay then I will let you know.
I will bump a topic after 3 days of no activity, and then will give you another 2 days to reply before a topic is closed. If you need more time than this please let me know.
Let's get going now
==========================

Hi MountainDogs,

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system, download both of them and try to run them. Only one of them will run on your system, that will be the right version.
Right-click FRST then click "Run as administrator" (XP users: click run after receipt of Windows Security Warning - Open File).
When the tool opens, click Yes to disclaimer.
Press the Scan button.
When finished, it will produce a log called FRST.txt in the same directory the tool was run from.
Note 2: The first time the tool is run it generates another log (Addition.txt - also located in the same directory the tool was run from). Please also paste that, along with the FRST.txt into your next reply.

--------------

To recap, in your next reply I would like to see the following. Make sure to copy & paste them unless I ask otherwise:
FRST.txt
xXToffeeXx~

http://www.bleepingcomputer.com/forums/t/582319/w7-sp1-64-bit-trojanzbot-activity-15-reported-by-norton-360/
Relevancy 30.53%

Hello all i am running windows 7 and norton keeps popping up blocking trojan.zbot activity 15. I was directed to you guys from the norton forums. I am hoping that someone is able to help me get rid of this.

A:W 7 Trojan.zbot activity 15

Hi rgxrant,

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system, download both of them and try to run them. Only one of them will run on your system, that will be the right version.
Right-click FRST then click "Run as administrator" (XP users: click run after receipt of Windows Security Warning - Open File).
When the tool opens, click Yes to disclaimer.
Press the Scan button.
When finished, it will produce a log called FRST.txt in the same directory the tool was run from.
Note 2: The first time the tool is run it generates another log (Addition.txt - also located in the same directory the tool was run from). Please also paste that, along with the FRST.txt into your next reply.

--------------

To recap, in your next reply I would like to see the following. Make sure to copy & paste them unless I ask otherwise:
FRST.txt
xXToffeeXx~

http://www.bleepingcomputer.com/forums/t/582092/w-7-trojanzbot-activity-15/
Relevancy 29.24%

A:HDD activity constant, bad guys detected but unsure of removal

Hello, Welcome to BleepingComputer.I'm nasdaq and will be helping you.If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps in the order listed.===Open notepad (Start =>All Programs => Accessories => Notepad). Please copy the entire contents of the code box below.

start

CreateRestorePoint:
EmptyTemp:
CloseProcesses:

CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKU\S-1-5-21-14775525-2439065268-141108290-1000\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKU\S-1-5-21-14775525-2439065268-141108290-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled
ProxyServer: [.DEFAULT] => http=127.0.0.1:51185;https=127.0.0.1:51185
cmd: ipconfig /flushdns
URLSearchHook: HKLM-x32 - (No Name) - {9dbb9aeb-5a16-4989-a66f-c0f1c909d647} - No File
URLSearchHook: HKLM-x32 - (No Name) - {54d0da58-64e7-4408-be1f-72659f70fcbe} - No File
URLSearchHook: HKLM-x32 - (No Name) - {f7e4b48a-9940-48d8-a732-246a2fdb7b40} - No File
URLSearchHook: HKLM-x32 - (No Name) - {9427041a-a8dc-4d06-9a68-93873486e957} - No File
SearchScopes: HKU\S-1-5-21-14775525-2439065268-141108290-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
Toolbar: HKU\S-1-5-21-14775525-2439065268-141108290-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\new_plugin\npjp2.dll No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File
CHR HKLM-x32\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Chrome\Ext\rphtml5video.crx [Not Found]
S0 hitmanpro37duringboot; system32\drivers\hitmanpro37.sys [X]

End
Save the files as fixlist.txt in the same folder where the Farbar tool is running from.The location is listed in the 3rd line of the Farbar log you have submitted.Run FRST and click Fix only once and wait.Restart the computer normally to reset the registry.The tool will create a log (Fixlog.txt) please post it to your reply.===How is the computer running now?

Hi S-Works,
Welcome to BleepingComputer. My name is dbrisendine and I'll be helping you with this problem. Before I get into the removal of malware / correction of your problem, I need you to be aware of the following:
Please read all of my response through at least once before attempting to follow the procedures described.I would recommend printing them out, if you can, as you can check off each step as you complete it. Also, as some of the cleaning may be done in Safe Mode and there will be no internet connection then, you will find that having the steps printed for reference speeds the cleaning process along. If there's anything you don't understand or isn't totally clear to you, please come back to me for clarification before you start those steps.
All of the assistants and staff at BleepingComputer are here on a volunteer basis; please respect our time given to the cause of helping others.If you are going to be away for more than 4 days, please let me know here. (I will do the same for you.) We do realize that 'life happens' and situations arise unexpectedly; we just ask that you keep us up to date.
Malware removal is a complex, multiple step process; please stay with me on this thread (don't start another thread) until I declare that your logs are clean and you are good to go. The absence of apparent issues does not mean your system is clean; I will tell you when everything looks good for you to go and help you remove the tools we have used.
If any of the security programs on your system should give any warnings about the software tools I ask you to download and use, please do not be alarmed.All of the tools I will have you use are safe to use (as instructed) and malware free.
While we strive to disrupt your system as little as possible, things happen.If you can, it would be best to back up your personal files now (if you do not already have a backup). You can store these on a CD/DVD, USB drive or stick, anywhere but on your same system. This will save you from possible anguish later if something unforeseen happens.
Please do not run any other tools or scanners than what I ask you to.Some of the openly available software made for malware removal can make changes to your system that interfere with the cleaning of the malware, or even destroy your system. I will use only what the situation calls for and direct you in the proper use of that software.
Please do not attach any log files to your replies unless I specifically ask you.Instead please copy and paste so as to include the log in your reply. You can do this in separate posts if it's easier for you.- Save ALL Tools to your Desktop-
All the tools that I will have you download should be placed on the desktop unless otherwise stated. If you are familiar with how to save files to the desktop then you can skip this step.
Since you are continuing with this step then I assume you are unfamiliar with saving files to your desktop. As a result it's easiest if you configure your browser(s) to download any tools to the desktop by default. Please use the appropriate instructions below depending on the browser you are using.Google Chrome - Click the "Customize and control Google Chrome" button in the upper right-corner of the browser. Choose Settings. at the bottom of the screen click the
"Show advanced settings..." link. Scroll down to find the Downloads section and click the Change... button. Select your desktop and click OK.Mozilla Firefox - Click the "Open Menu" button in the upper right-corner of the browser. Choose Options. In the downloads section, click the Browse button, click on the Desktop folder
and the click the "Select Folder" button. Click OK to get out of the Options menu.Internet Explorer - Click the Tools menu in the upper right-corner of the browser. Select View downloads. Select the Options link in the lower left of the window. Click Browse and
select the Desktop and then choose the Select Folder button. Click OK to get out of the download options screen and ... Read more

A:MBAM cleaned 49 probs. Suspicious activity on pc...so am checking

Hello, Welcome to BleepingComputer.I'm nasdaq and will be helping you.If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps in the order listed.===Open notepad (Start =>All Programs => Accessories => Notepad). Please copy the entire contents of the code box below.
start

CreateRestorePoint:
CloseProcesses:

GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
BHO: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll No File
Toolbar: HKLM-x32 - No Name - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
Toolbar: HKU\S-1-5-21-3319947538-3514491334-2625519159-1000 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Toolbar: HKU\S-1-5-21-3319947538-3514491334-2625519159-1000 -> No Name - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
Toolbar: HKU\S-1-5-21-3319947538-3514491334-2625519159-1000 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
Toolbar: HKU\S-1-5-21-3319947538-3514491334-2625519159-1000 -> No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF SearchPlugin: C:\Users\Office Manager 2\AppData\Roaming\Mozilla\Firefox\Profiles\jezwolep.default\searchplugins\askcom.xml [2013-02-08]
CHR HKLM\...\Chrome\Extension: [olmajmomenlhgihenlbjcfbopoghpckg] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [bmiabdepfhhiieiipmeecdmeljggmfee] - No Path Or update_url value
CHR HKLM-x32\...\Chrome\Extension: [dflinnddekagfkncpgojoppgnppfkbkj] - No Path Or update_url value
CHR HKLM-x32\...\Chrome\Extension: [idkknaphebegndgimgdpfnconcickdfn] - No Path Or update_url value
CHR HKLM-x32\...\Chrome\Extension: [ohhcpmplhhiiaoiddkfboafbhiknefdf] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [olmajmomenlhgihenlbjcfbopoghpckg] - https://clients2.google.com/service/update2/crx
R2 Amsp; "C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe" coreFrameworkHost.exe -m=rb -dt=60000 -ad -bt=0 [X]
S3 AVG Security Toolbar Service; C:\Program Files (x86)\AVG\AVG10\Toolbar\ToolbarBroker.exe [X]
U2 TMAgent; No ImagePath
C:\Users\Office Manager 2\AppData\Local\Temp\vlc-2.1.5-win32.exe
C:\Users\Staff\AppData\Local\Temp\jre-6u26-windows-i586-iftw-rv.exe

End

Don't know how to remove it.  Have run Norton Power Eraser as well as scans.  It continues to try to attack but is (so far) always blocked by Norton.  Box says system is infected but I need to do nothing.  Thanks

A:Adware Installer Activity 7 infection

Hello, Welcome to BleepingComputer.I'm nasdaq and will be helping you.If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps in the order listed.===These proxy settings are suspicious. If you did not set them I suggest you remove the lines in bold from the fix below before saving the Fixlist.txt file.ProxyEnable: [S-1-5-21-2926960347-1281131932-2454002305-1001] => Internet Explorer proxy is enabled.ProxyServer: [S-1-5-21-2926960347-1281131932-2454002305-1001] => http=127.0.0.1:49212;https=127.0.0.1:49212Open notepad (Start =>All Programs => Accessories => Notepad). Please copy the entire contents of the code box below.

start

CreateRestorePoint:
CloseProcesses:

() C:\Program Files (x86)\user extensions\Client.exe
() C:\Program Files (x86)\user extensions\Client.exe
HKLM-x32\...\Run: [] => [X]
AppInit_DLLs-x32: C:\PROGRA~3\{C6D52~1\1170~1.1\loli.dll => "C:\PROGRA~3\{C6D52~1\1170~1.1\loli.dll" File Not Found
ProxyEnable: [S-1-5-21-2926960347-1281131932-2454002305-1001] => Internet Explorer proxy is enabled.
ProxyServer: [S-1-5-21-2926960347-1281131932-2454002305-1001] => http=127.0.0.1:49212;https=127.0.0.1:49212
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://taplika.com/results.php?f=4&q={searchTerms}&a=tpl_tight25&cd=2XzuyEtN2Y1L1QzuyByE0EyDtD0ByDyDtDtDyBtCyByE0CyCtN0D0Tzu0StCtBtByEtN1L2XzutAtFtCtDtFtBtFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2SyC0A0ByEzy0A0BtAtGyDyD0DyBtGzztC0A0EtGtD0ByD0EtGtC0DyEtBtC0D0CtCyE0FyCyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyD0ByDzy0AtBzz0DtGyEyEzztAtGyE0F0F0EtG0ByD0CzytGtA0EtAtA0ByEtD0FyCyCzz0D2QtN0A0LzuyE&cr=1258636553&ir=
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://taplika.com/results.php?f=4&q={searchTerms}&a=tpl_tight25&cd=2XzuyEtN2Y1L1QzuyByE0EyDtD0ByDyDtDtDyBtCyByE0CyCtN0D0Tzu0StCtBtByEtN1L2XzutAtFtCtDtFtBtFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2SyC0A0ByEzy0A0BtAtGyDyD0DyBtGzztC0A0EtGtD0ByD0EtGtC0DyEtBtC0D0CtCyE0FyCyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyD0ByDzy0AtBzz0DtGyEyEzztAtGyE0F0F0EtG0ByD0CzytGtA0EtAtA0ByEtD0FyCyCzz0D2QtN0A0LzuyE&cr=1258636553&ir=
SearchScopes: HKLM -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://search.ask.com/web?q={searchterms}&l=dis&o=HPNTDF
SearchScopes: HKLM -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = http://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
SearchScopes: HKLM -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = http://en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM-x32 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://search.ask.com/web?q={searchterms}&l=dis&o=HPNTDF
SearchScopes: HKLM-x32 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = http://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
SearchScopes: HKLM-x32 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = http://en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKU\S-1-5-21-2926960347-1281131932-2454002305-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://taplika.com/results.php?f=4&q={searchTerms}&a=tpl_tight25&cd=2XzuyEtN2Y1L1QzuyByE0EyDtD0ByDyDtDtDyBtCyByE0CyCtN0D0Tzu0StCtBtByEtN1L2XzutAtFtCtDtFtBtFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2SyC0A0ByEzy0A0BtAtGyDyD0DyBtGzztC0A0EtGtD0ByD0EtGtC0DyEtBtC0D0CtCyE0FyCyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyD0ByDzy0AtBzz0DtGyEyEzztAtGyE0F0F0EtG0ByD0CzytGtA0EtAtA0ByEtD0FyCyCzz0D2QtN0A0LzuyE&cr=1258636553&ir=
SearchScopes: HKU\S-1-5-21-2926960347-1281131932-2454002305-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://taplika.com/results.php?f=4&q={searchTerms}&a=tpl_tight25&cd=2XzuyEtN2Y1L1QzuyByE0EyDtD0ByDyDtDtDyBtCyByE0CyCtN0D0Tzu0StCtBtByEtN1L2XzutAtFtCtDtFtBtFtDtN1L1CzutN1L1... Read more

A:I have some kind of virus: system infected: Fake Plugin Activity 2

Hi aircap63,
Your report analysis  on other Forum  continues.
Therefore this topic is closed. Sorry.

My Win 7 computer is just frustrating me.  It was one of my zippiest machines but now it just seems to be constantly hitting the disk.  I've tried everything I know but I've failed to figure it out. Any help would be appreciated.

Relevancy 30.53%

how I delete this Fake Plugin activity 2 ?????

A:Fake Plugin activity 2

So I Hosts network activity running my Multiple DLL on am quite new today Sorry if this is sudden I got this laptop not too long ago I was browsing through the internet to figure out what this could be and it may be possible that my computer is infected I have not had a chance to reinstall norton since it had caused some lag issue Multiple DLL Hosts running on my network activity with my laptop which was resolved when it was uninstalled Since I've been very busy I'm rarely on my computer However I noticed that when I got on my internet got slower I figured it may have been windows update but decided to look Multiple DLL Hosts running on my network activity through the network stuff on task manager which led to looking at resource manager and I saw a lot of dll hosts possibly Multiple DLL Hosts running on my network activity or more running on the background I think this may be the cause of my internet issues I am running on Window's and using a Sony VAIO E Series I have attached the FRST logs as well

Relevancy 29.67%

A:Continuous Activity in HDD; Applications Hang or Run Slowly

Update
Since no one has had the chance to respond to my topic, let me post this update.

I belive the problem has been found:  In recent days, upon launching Microsoft Outlook (my e-mail client), the loading of the Norton Anti-Spam Outlook Plugin has taken an unusually long time.  Today, upon launching Outlook an error message was received regarding the plugin and I was offered the opportunity to disable it, which I did.  The high HDD activity stopped and the computer has been running normally ever since.

I ask that a helper comment on my FRST log if there are things that need to be addressed and I will follow the helper's instructions.  Otherwise, please feel free to close the topic as the problem does not appear to be malware related.

Thank you.

I believe I have Trojan.Zbot 15 on my notebook computer and would appreciate help removing it.  Norton Antivirus repeatedly gives the warning: “An intrusion attempt was blocked.  System Infected: Trojan.Zbot Activity 15”.  Norton forums referred me here for help with removal.  The infected computer is a Dell notebook running Windows 7 Home Premium, 64-bit, Service Pack 1.

I have not yet attempted any scans or removal other than Norton Antivirus.  Thank you for any help you can provide!

A:Trojan.Zbot Activity 15, Need Help Removing

Before we move on, please read the following points carefully:
My native language isn't English. So please do not use slang or idioms. It could be hard for me to read. Thanks for your understanding.
Please read my instructions completely. If there is anything that you do not understand kindly ask before proceeding.
Perform everything in the correct order. Sometimes one step requires the previous one.
If you have any problems while you are follow my instructions, Stop there and tell me the exact nature of your problem.
Do not run any other scans without instruction or Add/ Remove Software unless I tell you to do so. This would change the output of our tools and could be confusing for me.
Post all Logfiles as a reply rather than as an attachment unless I specifically ask you. If you can not post all logfiles in one reply, feel free to use more posts.
If I don't hear from you within 5 days from this initial or any subsequent post, then this thread will be closed.
If I don't reply within 24 hours please PM me!
Stay with me. I will give you some advice about prevention after the cleanup process. Absence of symptoms does not always mean the computer is clean.
Step 1
Double-click the to start the tool.
Read the terms of the End-user license agreement and click Agree if you agree to them.
The tool will run automatically. If the cleaner finds a Poweliks infection, press the Y key on your keyboard to remove it.
If Poweliks was detected "Win32/Poweliks was successfully removed from your system" will be displayed. Press any key to exit the tool and reboot your PC.
The tool will produce a log in the same directory the tool was run from.
Step 2
Please run a FRST scan. This will help us diagnose your problem.
(If you are not sure which version (32-/64-bit) applies to your system, download and try to start both of them as just the right one will run.)
Start FRST with administator privileges.
Make sure the option Addition.txt is checked and press the Scan button.
When finished, FRST will produce two logs (FRST.txt and Addition.txt) in the same directory the tool was run from.
Please copy and paste these logs in your next reply.

I need help removing this virus from my computer. I have Norton & it  blocks it, but when I run scans doesn't remove it. Any help would be appreciated.

A:Trojan.Zbot Activity 15

Hi & to Bleeping Computer Forums!
My name is Jürgen and I will be assisting you with your Malware related problems.
Before we move on, please read the following points carefully:
My native language isn't English. So please do not use slang or idioms. It could be hard for me to read. Thanks for your understanding.
If you have any problems while you are follow my instructions, Stop there and tell me the exact nature of your problem.
Do not run any other scans without instruction or Add/ Remove Software unless I tell you to do so. This would change the output of our tools and could be confusing for me.
Post all Logfiles as a reply rather than as an attachment unless I specifically ask you. If you can not post all logfiles in one reply, feel free to use more posts.
If I don't hear from you within 5 days from this initial or any subsequent post, then this thread will be closed.
If I don't reply within 24 hours please PM me!
Stay with me. I will give you some advice about prevention after the cleanup process. Absence of symptoms does not always mean the computer is clean.
Step 1
Double-click the to start the tool.
Read the terms of the End-user license agreement and click Agree if you agree to them.
The tool will run automatically. If the cleaner finds a Poweliks infection, press the Y key on your keyboard to remove it.
If Poweliks was detected "Win32/Poweliks was successfully removed from your system" will be displayed. Press any key to exit the tool and reboot your PC.
The tool will produce a log in the same directory the tool was run from.
Step 2
Please run a FRST scan. This will help us diagnose your problem.
(If you are not sure which version (32-/64-bit) applies to your system, download and try to start both of them as just the right one will run.)
Start FRST with administator privileges.
Make sure the option Addition.txt is checked and press the Scan button.
When finished, FRST will produce two logs (FRST.txt and Addition.txt) in the same directory the tool was run from.
Please copy and paste these logs in your next reply.
Step 3
Temporary disable your AntiVirus and AntiSpyware protection - instructions here.

Please download ZOEK by Smeenk and save it to your desktop (preferred version is the *.exe one)

In the main box please paste in the following script:
process;
services-list;
systemspecs;
startupall;
filesrcm;
Make sure that Scan All Users option is checked.
Push Run Script and wait patiently. The scan may take a couple of minutes.
When the scan completes, a zoek-results logfile should open in notepad.
If a reboot is needed, it will be opened after it. You may also find it at your main drive (usually C:\ drive)
Post its content into your next reply.

http://www.bleepingcomputer.com/forums/t/564910/trojanzbot-activity-15/
Relevancy 30.1%

Relevancy 30.53%

Hi, I for the last several weeks I have been getting repeated blocks by my Norton antivirus for Trojan.zbot activity 15.  This is happening many times a day.  I have googled this topic and it seems a lot of people are having this issue.  On several sites it says to contact you guys for help, so here I am.  My computer is acting a little funny but isn't particularly slow.  I hope that I have become aware of this infection in time to get rid of it.  Any help would be greatly appreciated!  Thank you!

A:Trojan.zbot activity 15

Hello I'm new to this forum and was hoping to get some help regarding my problem.

So for about two weeks now I've been getting constant notifications from Norton Security Suite that it has blocked System Infected: Trojan.Zbot Activity 15, saying on the Alert Summary that an intrusion attempt by C71585.com was blocked. I've tried using a few programs making sure they're all up to date to stop the constant notifications but none of them get the job done. I'd estimate that it would tell me at least 5 times a day that it has blocked Trojan.Zbot Activity 15.

Here's a list of the programs I used:
Norton Power Eraser
Norton FixNecurs64bit.exe removal tool
Malwarebytes Anti-Malware
SUPERAntispyware

I appreciate any help, thank you.

A:System Infected: Trojan.Zbot Activity 15

services-list;
systemspecs;
startupall;
filesrcm;
Make sure that Scan All Users option is checked.Push Run Script and wait patiently. The scan may take a couple of minutes.When the scan completes, a zoek-results logfile should open in notepad.If a reboot is needed, it will be opened after it. You may also find it at your main drive (usually C:\ drive)Post its content into your next reply.

http://www.bleepingcomputer.com/forums/t/563862/system-infected-trojanzbot-activity-15/
Relevancy 30.1%

A:Infected with Trojan.Zbot Activity 15

Once complete, a log will be produced at the root drive which is typically C:\ ,for example, C:\TDSSKiller.<version_date_time>log.txtPlease attach this file to your next reply.

http://www.bleepingcomputer.com/forums/t/562197/infected-with-trojanzbot-activity-15/
Relevancy 29.67%

I suspected a rootkit issue, but scans with tdsskiller and spybot s&d av and McAfee show nothing. I am having to leave internet disconnected as it generates 10 of thousands of temp files in just a short period of time. Also I have lost all admin rights to uninstall applications. Not sure if its related to the same issue or not. Any help would be appreciated.

A:Av automatically being disabled and hyper network activity

Relevancy 29.67%

A:Norton Blocks Adware Installer Activity 7

Shut off Norton. Download and run FRST. Start the new topic .. Add the FRST log.Turn On Norton.Let me know if that went well.

Relevancy 30.1%

Hi

My Norton 360 keeps blocking "Adware Installer Activity 7."  Additionally, I found that my IE browser now has a proxy setting tied to my localhost IP of 127.0.0.1 and whenever I uncheck the proxy, it comes back on browser restart.  Naturally, I'm getting "Page cannot be displayed" errors from my browser.  How do I get rid of this pesky thing?  I've tried Malwarebytes, Superantispyware as well as Norton.  Nothing is working.

Thanks
Daryl

A:"Adware Installer Activity 7" infection

Hello DarylThis attack could pose a serious security threat. You should take immediate action to stop any damage or prevent further damage from happening.We should get a deeper look. Please follow this Preparation Guide, do steps 6,7 and 8 and post in a new topic.Let me know if all went well.

Relevancy 30.53%

Lately I have found that my computer has been running slower and random audio of Advertisements have been playing however not till today I have discovered that Inter Explorer was open in task manager but not on my desktop. Task manager was showing Internet Explorer opening multiple websites such as "whatismyIp" as soon as I saw this I panicked and am now wondering how may I stop/Solve this from continuing

A:IE Open with Suspicious activity

FWIW:  One instance of iexplore.exe is displayed in Task Manager as a process...always.  For every window/tab opened, 1 additional process appears in Task Manager.

Louis

http://www.bleepingcomputer.com/forums/t/578027/ie-open-with-suspicious-activity/
Relevancy 30.1%

over the last week or so, the activity lights on our modem are almost always flashing and the microsoft resource monitor definitely indicates some kind of network/internet activity is occurring and that's the case even when no one is using the laptop; I'm not entirely sure what to make of it, though. I think it started after I downloaded and installed the latest windows updates; uninstalling the ones that could be uninstalled hasn't helped. and I've done full scans with both windows defender and malwarebytes and they did not find anything
any help provided will be totally appreciated
thanks

A:there's almost constant internet/network activity

You may have a fair number of programs constantly checking for updates, "phoning" home, etc.  I think System Internals and Windows OS has a utility that can give you an idea of what is running; can't remember the name.

http://www.bleepingcomputer.com/forums/t/576279/theres-almost-constant-internetnetwork-activity/
Relevancy 30.1%

OS: windows 8.1
Laptop: Lenovo G40-70

Can you please check if my laptop is compromised. Because these past weeks, I have a very bad feeling that acertain hacker knows all my google searches/yahoo searches. I only use google chrome for my researching/searching. Possibly a keylogger or some spyware might be installed on my system.

A:A hacker might be monitoring my internet activity

As well as displaying unusual and slow activity Gmer reports rootkit activity even after a fresh reinstall After flashing the bios and restarting the computer displays only a black screen for approx minutes when turned on then boots as normal This only happens directly after a bios flash and it seems suspicious At this point I am beginning to format, and a activity flash, mbr despite a clean complete bios Apparent rootkit doubt the results and am suspicious of a hardware issue but gmer has never failed me before and the computer was definitely Apparent rootkit activity despite a complete format, bios flash, and a clean mbr infected when I started working on it Malwarebytes removed trojans but the infection persisted when I first received it so I wiped the hard drive On reinstall Gmer reported suspected rootkit activity so I booted up on a linux Apparent rootkit activity despite a complete format, bios flash, and a clean mbr cd and wiped the mbr and the whole drive then reinstalled with the same results in gmer I then flashed the mouse bios and cd drive firmware wiped the mbr Apparent rootkit activity despite a complete format, bios flash, and a clean mbr and the drive and reinstalled again The PC bluescreened when i ran gmer again and displayed warnings about hard disk integrity I shut off the computer then entered dell's diagnostic tool from the f boot menu but the built in hard drive diagnostic tool never advanced past despite running it times for an hour each PC is a dell studio hybrid g running windows vista I have formatted the hard drive and wiped the mbr times now trying different things An issue is that the bios updates can only be run in a windows environment so I can't be certain they are actually working since I am running it in a possibly infected environment It's my mothers computer and I'd really appreciate assistance in figuring out what to do next I am completely lost at this point Thank you

A:Apparent rootkit activity despite a complete format, bios flash, and a clean mbr

http://www.bleepingcomputer.com/forums/t/572553/apparent-rootkit-activity-despite-a-complete-format-bios-flash-and-a-clean-mbr/
Relevancy 30.53%

I've been getting a message from norton that it has blocked trojan.zbot activity 15. but after checking their forums norton doesn't see it when you scan and it may be on my computer. I have had a problem twice now with windows not booting on start up since I've been getting the message from norton. I'm a beginer at this never had one hit me before. How can I find out if I'm infected and if so how do I safely remove it.

Thanks.

A:Help with trojan.zbot activity 15.

Hello and Welcome.
If you are sure the problem is due to trojan.zbot activity, please follow these instructions so that the Malware Removal team ONLY will help you.

If you have an old version, please delete it first
Right click on the new Red icon and select Run as Administrator
A black DOS box will appear for a short time and then disappear.
This is normal and indicates the tool ran successfully.
At most the tool will usually run for about 2 minutes
Please Copy and Paste the small log back here.

Please follow the instructions in the Malware Removal and Log Section Preparation Guide .
If you cannot complete a step, then skip it and continue with the next.
In Step 6 there are instructions for downloading and running "FRST" which will create two logs.
When you have done that, Post your logs (as directed) in the Virus, Trojan, Spyware, and Malware Removal Logs forum, NOT here, for assistance by the Malware Response Team.Start a new topic, give it a relevant title and post your log(s) along with a brief description of your problem, a summary of any anti-malware tools you have used and a summary of any steps that you have performed on your own. If you cannot produce any of the required logs , then still start the new topic and explain that you followed the Prep. Guide, were unable to create the logs, and describe what happened when you tried to create them.
A member of the Malware Removal Team will walk you through, step by step, on how to clean your computer.
After doing this, please reply back in this thread with a link to the new topic so we can close this one, to prevent others answering incorrectly.

http://www.bleepingcomputer.com/forums/t/569070/help-with-trojanzbot-activity-15/
Relevancy 29.24%

Hello,

After reading the original post on this subject, I ran the antivirus programs recommended to no avail.

Malwarebytes Anti-Malware (Trial) 1.65.1.1000
www.malwarebytes.org

Database version: v2012.10.24.05

Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 8.0.6001.18975

Protection: Enabled

10/24/2012 5:14:04 PM
mbam-log-2012-10-24 (17-14-04).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 286326
Time elapsed: 13 minute(s), 4 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 1
C:\Users\German Delgado\Local Settings\Temporary Internet Files\Content.IE5\8GJ83O0Q\freeeditor_1787[1].exe (PUP.BundleOffers.IIQ) -> Quarantined and deleted successfully.

(end)

A:Ebay: Detected Suspicious Activity. Your account has been blocked

We started getting messages from our Norton software telling us "system infected: Trojan.Zbot Activity 15" a few weeks ago.  Unlike a recent Trojan Poweliks infection we have not noticed a significant slow up in our computer with this one.  Our operating system is Windows 7 Pro.  I have seen instructions for manual removal but do not have the kind of knowledge necessary to be comfortable with pulling that off on my own.  Any guidance we could receive on how to rid our computer of this Trojan would be greatly appreciated.  Since this is the second Trojan we have been hit with in the last couple of months, is there a way to try to protect us from future attacks?  Thank you.

A:Trojan.Zbot Activity 15 infection

At the end, be sure a checkmark is placed next to the following:

Launch Malwarebytes Anti-MalwareA 14 day trial of the Premium features is pre-selected. You may deselect this if you wish, and it will not diminish the scanning and removal capabilities of the program.
Click Finish.On the Dashboard, click the 'Update Now >>' linkAfter the update completes, click the 'Scan Now >>' button.
Or, on the Dashboard, click the Scan Now >> button.If an update is available, click the Update Now button.
A Threat Scan will begin.When the scan is complete, if there have been detections, click Apply Actions to allow MBAM to clean what was detected.In most cases, a restart will be required.Wait for the prompt to restart the computer to appear, then click on Yes.If you already have MBAM 2.0 installed:On the Dashboard, click the 'Update Now >>' linkAfter the update completes, click the 'Scan Now >>' button.
Or, on the Dashboard, click the Scan Now >> button.If an update is available, click the Update Now button.

I have gotten this message several times in the past few days from my Norton Internet Security An instrusion attempt by c com was blocked IPS Alert Name Sysem Infected Trojan Zbot Activity Default Action No Action Required Action Taken No Action Required Attacking Computer c com Attacker URL c com z Destination Address Becky-PC Source Address Traffic Description TCP www-http Network traffic from c com z matches the signature of a known attack The attack was resulted from Device Harddiskvolume Windows Syswow dllhost exe Also I've noticed in Task Manager that an instance of a process called dllhost exe using K - of memory that when I right-click I can't open properties or open file location Also instance of csrss exe that Sysem 15 Zbot Trojan. Infected: Activity I can't open any right-click Sysem Infected: Trojan. Zbot Activity 15 options Also instance of winlogon exe that I can't open any right-click options I'm not sure if that's normal or not - I can access all the right click options on all other processes that are running I run Windows Home Premium on a HP s AMD Sempron Processor GHz on a -bit operating system I'd love to get rid of this if my system is truly infected Many thanks

A:Sysem Infected: Trojan. Zbot Activity 15

Use the programs below to find and remove adware and malware.

Double-click mbam-setup-2.X.X.XXXX.exe to install the application (X's are the current version number).
Make sure a checkmark is placed next to Launch Malwarebytes' Anti-Malware, then click Finish.
Once MBAM opens, when it says Your databases are out of date, click the Fix Now button.
Click the Settings tab at the top, and then in the left column, select Detections and Protections, and if not already checked place a checkmark in the selection box for Scan for rootkits.
Click the Scan tab at the top of the program window, select Threat Scan and click the Scan Now button.
If you receive a message that updates are available, click the Update Now button (the update will be downloaded, installed, and the scan will start).
The scan may take some time to finish,so please be patient.
If potential threats are detected, ensure that Quarantine is selected as the Action for all the listed items, and click the Apply Actions button.
While still on the Scan tab, click the link for View detailed log, and in the window that opens click the Export button, select Text file (*.txt), and save the log to your Desktop.
The log is automatically saved by MBAM and can also be viewed by clicking the History tab and then selecting Application Logs.
POST THE MBAM LOG FOR REVIEW.

Use CCleaner to remove Temporary files, program caches, cookies, logs, etc. Use the Default settings. No need to use the
Registry Cleaning Tool...risky. Pay close attention while installing and UNcheck offers of toolbars....especially Google.
After install, open CCleaner and run by clicking on the Run Cleaner button in the bottom right corner.
CCleaner - PC Optimization and Cleaning - Free Download
Double-click on AdwCleaner.exe to run the tool.Vista/Windows 7/8 users right-click and select Run As Administrator.
Click on the Scan button.
AdwCleaner will begin...be patient as the scan may take some time to complete.
After the scan has finished, click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
After reviewing the log, click on the Clean button.
Press OK when asked to close all programs and follow the onscreen prompts.
Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
After rebooting, a logfile report (AdwCleaner[S0].txt) will open automatically.
Copy and paste the contents of that logfile in your next reply.
A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.
Shut down your protection software now to avoid potential conflicts.
Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
The tool will open and start scanning your system.
Please be patient as this can take a while to complete depending on your system's specifications.
On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
Post the contents of JRT.txt into your next message.
Hold down Control and click on this link to open ESET OnlineScan in a new window. (Eset can take more than an hour to run so plan accordingly)
Click the button.
For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
Double click on the icon on your desktop.
Click the Start button.
Accept any security warnings from your browser.
Under scan settings, check "Scan Archives" and "Remove found threats"
Click Advanced settings and select the following:
Scan potentially unwanted applications
Scan for potentially unsafe applications
Enable Anti-Stealth technology

http://www.bleepingcomputer.com/forums/t/563505/sysem-infected-trojan-zbot-activity-15/
Relevancy 29.24%

A:Network activity in Rainmeter but not Task Manager; IP blocked from some sites

I have just setup ATA on a 5 node hyper-v cluster...
The DC and ATA VMs are spread across nodes.
I have configured all the mirroring etc... however when I open ATA Center and search for user, the user appears but there is no activity for logon etc...

Hi, I have an Acer Aspire, model #AXC-703G-UW51 running windows 8.1, 4 gig memory, 500 gig HD and there does not appear to be a hard drive activity light, just wondering if this is normal with a sata drive.

Thank you

Moe

Relevancy 28.81%

Note Originally posted in the General section - reposted here by suggestion Every time I restart Windows and after logging in the hard drive light comes on Constant Hard - Respond Windows Slow Activity to Computer 7 Drive indicating continuing constant disk Windows 7 Constant Hard Drive Activity - Computer Slow to Respond activity The hard drive light is on solidly no blinking This condition persists for - minutes during which time all applications are extremely slow to respond I have tried pausing the search indexer and have also tried pausing my anti-virus software Kaspersky Internet Security Neither of these appear to have any effect Once the constant hard drive activity has completed the system operates normally however I would much prefer to begin using the system soon after startup without having to wait for whatever is causing the hard drive activity to complete I have looked at Windows Task Manager Windows 7 Constant Hard Drive Activity - Computer Slow to Respond and find no applications running other than THX True Studio PC by Creative Systems Under task Manager processes quot System Idle Process quot is shown with - CPU Windows 7 Constant Hard Drive Activity - Computer Slow to Respond usage Many thanks in advance for any suggestions about how to track down what is happening and potentiall fix Quote If nothing there can seem to help then you could post in the Performance amp Maintenance thread Also use this tool and post your results SF Diag Tool Diagnostic file clw zip attached Thx C

A:Windows 7 Constant Hard Drive Activity - Computer Slow to Respond

Task Manager > Performance tab > Resource Monitor > Disk tab

You should be able to press the READ and WRITE columns to see which process / app is using the disk the most at the time of slowdown

Also running a disk check would be advised, right click HDD icon > properties > tools > error checking > check now > agree to schedule a disk check at next boot

Also things like this disk check software can show any faults with the drive
CrystalDiskInfo - Software - Crystal Dew World

Check Event Log too to see if there is a problem with windows

Having somewhat random issues where the PC blue screens or complete freezes up and requires a hard reboot when I step away from the PC for a few hours or overnight.

Ive tried to upgrade the video drivers, this has only delayed the BS for some time.

Looking at the dump files is not telling me anything but that seems to be a little beyond my expertise.

I can see that the BS seem to have been a different cause each time for the 9 dumps that have been captured.

Anyway I ran the tool as instructed and hope that someone can help me pinpoint the issues with this PC.

Relevancy 29.24%

Hello --
We got the following ATA alert on a Windows 10 Enterprise Direct Access Enabled laptop which was doing a FAST ring build over build upgrade to Windows 10 Enterprise 10122 this morning:
X.X.X.X (ATA Management Server IP)/suspiciousActivity/376844bd2334dcaab3034733
W10LAPTOP (X.X.X.X)'s Kerberos tickets were stolen from DASERVER (X.X.X.X) to W10LAPTOP (X.X.X.X) and used to access ldap/DC.domain.local/domain.local.

Laptop is: W10LAPTOP. Windows 2012 R2 Domain Controller is DC.domain.local. Windows 2012 R2 Direct Access Server is DASERVER.
We guess this may be a false positive and want to confirm if we need to add ATA exceptions in a Windows 2012 R2 Environment with a Direct Access Server? If so, please explain exactly the exceptions needed. If not, we can provide all requested log files
as needed.
Thank You

Relevancy 28.81%

Hey, I'm looking for a software that does what the task manager in Windows 8 and 10 does for monitoring disk activity which is basically just to break down disk read\write or i\o usage down by the individual hard drives.

I spent a while searching for such a software on google and downloaded and installed over 10 applications including Microsoft's Sysinternals Suite, Crystal disk info, IOmeter, OpenHardwareMonitor, Process Explorer, and several more, and none of them seem to have this function. I was surprised that I wasn't able to find any such function over many google searches but it's possible I was just using poor search terms.

Does anyone know such a software\program\utility that will monitor my disk read\write usage and break it down per drive so I can monitor it during backups, transfers and other disk operations?

Ok my st time here seemed like a good place for some advice My basic problem i m connected to a network and it seems to be changing its security type jumping from WPA -PSK to WEP I m using this same wifi Activity Weird Wifi antenna What s weird is no other detectable network does this my pc s network access menu only rarely shows the change from wpa -psk to wep but I did get inSSIDer for checking this thing and it does show its changing security types about every minute or so The other strange thing it would never let me Weird Wifi Activity connect at all with just entering the key only by manually making a network sometimes it shows full bars others like now when i m typing it shows a red X over the icon I went and checked for any strangeness but can t find anything in there but it is broadcasting separate frequencies and GHz at the same time I can see that both frequencies are set to use WPA -PSK with the same password but different SSIDs The noticeable thing is when it has the red X the internet seems slower and tends to just not let anything after the st few minutes of using the net Any ideas what s going on with this stuff i ve never seen any network do this And yes i m on neighbors wifi and they do know i m poking around any help would be appreciated P S I can do screenshots if needed appropriate nbsp

A:Weird Wifi Activity

howdy and welcome. Whether or not the neighbor knows about your using their wifi is immaterial, as it's the ISP that makes the call as to whether or not it's legal. And ISP's do not allow that, unfortunately, so I'm going to have to close this one up.

v