New
#41
These are what Adw picked up
Attachment 331409
Attachment 331410
Attachment 331411
These are what Adw picked up
Attachment 331409
Attachment 331410
Attachment 331411
Did you remove them? The last one (Trovi.com) is a known source for malware and root kits. AZ can also install malware. I have no idea what "updater" might be doing.
Re-run MBAM, EEK and now add TDSSKiller from here: Anti-rootkit utility TDSSKiller
Where's the file from Autoruns?
I've been working on getting rid of the Trovi
Here is the Autoruns
Attachment 331433
Recent BSOD
Attachment 331486
Last edited by mmurray1988; 01 Sep 2014 at 01:31. Reason: New BSOD
BugCheck D1, {ffffea801bae3030, 6, 0, fffff8800f6b9558}
Code:Unable to load image nvlddmkm.sys, Win32 error 0n2 *** WARNING: Unable to verify timestamp for nvlddmkm.sys *** ERROR: Module load completed but symbols could not be loaded for nvlddmkm.sys Probably caused by : nvlddmkm.sys ( nvlddmkm+1d4558 ) Followup: MachineOwner --------- SYMBOL_NAME: nvlddmkm+1d4558 FOLLOWUP_NAME: MachineOwner MODULE_NAME: nvlddmkm IMAGE_NAME: nvlddmkm.sys DEBUG_FLR_IMAGE_TIMESTAMP: 53b4446a FAILURE_BUCKET_ID: X64_0xD1_nvlddmkm+1d4558 BUCKET_ID: X64_0xD1_nvlddmkm+1d4558 Followup: MachineOwner --------- 0: kd> lmvm nvlddmkm start end module name fffff880`0f4e5000 fffff880`10173000 nvlddmkm T (no symbols) Loaded symbol image file: nvlddmkm.sys Image path: nvlddmkm.sys Image name: nvlddmkm.sys Timestamp: Wed Jul 02 12:42:02 2014 (53B4446A) CheckSum: 00C4C7C9 ImageSize: 00C8E000 Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
What's all that say?
Here's the scans
Attachment 331634
Still with me?