I have attached logs. Please help, computer is in dire straits!!
thank you,
Steve
hi wilky,
Thanks for the logs. Only one more log required: aswMBR.exe here: http://forum.avast.com/index.php?topic=53253.0
A certified malware removal expert has been notified. Please be patient, help is coming aboard.
[EDIT:] Corrected error.
Hi,
OTL log shows you have been run Combofix. Who told you to run CF? Please attach Combofix.txt logreport. You shall find CF report on root of systemdrive ( C: ) partition.
Re-run OTL.exe.
[*]Copy and paste the following text written inside of the quote box into the Custom Scans/Fixes box.
:OTL
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = Reg Error: Value error.
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = Reg Error: Value error.
FF - prefs.js..browser.search.defaultengine: "Ask Search"
FF - prefs.js..browser.search.order.1: "Ask Search"
O2 - BHO: (Search Assistant BHO) - {15da6705-4bfa-47c3-95fa-955b71d8f9e1} - C:\Program Files\ReferenceBoss_1p\bar\1.bin\1pSrcAs.dll (MindSpark)
O2 - BHO: (Toolbar BHO) - {1e91a655-bb4b-4693-a05e-2edebc4c9d89} - C:\PROGRA~1\MAPSGA~3\bar\1.bin\39bar.dll File not found
O2 - BHO: (Ask Toolbar) - {42435041-3300-A76A-76A7-7A786E7484D7} - "C:\Program Files\AskPartnerNetwork\Toolbar\BCPA3\Passport.dll" File not found
O2 - BHO: (Search Assistant BHO) - {58376892-60e7-4f63-aca0-0f686af554d6} - C:\Program Files\DictionaryBoss\bar\1.bin\v4SrcAs.dll (MindSpark)
O2 - BHO: (ShopAtHome.com Cash Back Helper) - {66516A07-F617-488A-90CF-4E690CFB3C5F} - C:\Users\Owner\AppData\Roaming\ShopAtHome\ShopAtHomeToolbar\tbcore3U.dll File not found
O2 - BHO: (Toolbar BHO) - {6eb534fb-2001-45c4-b860-bc904865a379} - C:\Program Files\DictionaryBoss\bar\1.bin\v4bar.dll (MindSpark)
O2 - BHO: (Search Assistant BHO) - {71c1d63a-c944-428a-a5bd-ba513190e5d2} - C:\Program Files\MapsGalaxy_39\bar\1.bin\39SrcAs.dll File not found
O2 - BHO: (Search Assistant BHO) - {9359da42-06fb-46f2-9e4a-05c05b98a5ef} - C:\Program Files\InboxAce_1g\bar\1.bin\1gSrcAs.dll (MindSpark)
O2 - BHO: (Search Assistant BHO) - {9641d095-2c78-400e-bbb0-c20f3108358b} - C:\Program Files\GasGlance_5i\bar\1.bin\5iSrcAs.dll (MindSpark)
O2 - BHO: (Toolbar BHO) - {d5a1d22b-9e17-454f-8ecd-83c578fb3983} - C:\Program Files\InboxAce_1g\bar\1.bin\1gbar.dll (MindSpark)
O2 - BHO: (Toolbar BHO) - {e1bfc11e-a392-4575-9ee7-27a96eb0db90} - C:\Program Files\GasGlance_5i\bar\1.bin\5ibar.dll (MindSpark)
O3 - HKLM\..\Toolbar: (DictionaryBoss) - {3042df7a-e900-4389-9b94-923df0daa57e} - C:\Program Files\DictionaryBoss\bar\1.bin\v4bar.dll (MindSpark)
O3 - HKLM\..\Toolbar: (ShopAtHome.com Toolbar) - {311B58DC-A4DC-4B04-B1B5-60299AD3D803} - C:\Users\Owner\AppData\Roaming\ShopAtHome\ShopAtHomeToolbar\tbcore3U.dll File not found
O3 - HKLM\..\Toolbar: (InboxAce) - {3775afd7-5921-4571-968f-85a631203d1c} - C:\Program Files\InboxAce_1g\bar\1.bin\1gbar.dll (MindSpark)
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {42435041-3300-A76A-76A7-7A786E7484D7} - "C:\Program Files\AskPartnerNetwork\Toolbar\BCPA3\Passport.dll" File not found
O3 - HKLM\..\Toolbar: (GasGlance) - {865fc489-56eb-41fa-bb25-027900188070} - C:\Program Files\GasGlance_5i\bar\1.bin\5ibar.dll (MindSpark)
O3 - HKLM\..\Toolbar: (ReferenceBoss) - {c4676d53-fce5-4a19-be4d-97e6eaf7e19a} - C:\Program Files\ReferenceBoss_1p\bar\1.bin\1pbar.dll (MindSpark)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-1436106380-1174917673-3105671344-1001\..\Toolbar\WebBrowser: (DictionaryBoss) - {3042DF7A-E900-4389-9B94-923DF0DAA57E} - C:\Program Files\DictionaryBoss\bar\1.bin\v4bar.dll (MindSpark)
O3 - HKU\S-1-5-21-1436106380-1174917673-3105671344-1001\..\Toolbar\WebBrowser: (ShopAtHome.com Toolbar) - {311B58DC-A4DC-4B04-B1B5-60299AD3D803} - C:\Users\Owner\AppData\Roaming\ShopAtHome\ShopAtHomeToolbar\tbcore3U.dll File not found
O3 - HKU\S-1-5-21-1436106380-1174917673-3105671344-1001\..\Toolbar\WebBrowser: (InboxAce) - {3775AFD7-5921-4571-968F-85A631203D1C} - C:\Program Files\InboxAce_1g\bar\1.bin\1gbar.dll (MindSpark)
O3 - HKU\S-1-5-21-1436106380-1174917673-3105671344-1001\..\Toolbar\WebBrowser: (Ask Toolbar) - {42435041-3300-A76A-76A7-7A786E7484D7} - "C:\Program Files\AskPartnerNetwork\Toolbar\BCPA3\Passport.dll" File not found
O3 - HKU\S-1-5-21-1436106380-1174917673-3105671344-1001\..\Toolbar\WebBrowser: (GasGlance) - {865FC489-56EB-41FA-BB25-027900188070} - C:\Program Files\GasGlance_5i\bar\1.bin\5ibar.dll (MindSpark)
O3 - HKU\S-1-5-21-1436106380-1174917673-3105671344-1001\..\Toolbar\WebBrowser: (Norton Identity Safe Toolbar) - {A13C2648-91D4-4BF3-BC6D-0079707C4389} - C:\Program Files\Norton Safe Web Lite\Engine\2013.3.3.19\CoIEPlg.dll (Symantec Corporation)
O3 - HKU\S-1-5-21-1436106380-1174917673-3105671344-1001\..\Toolbar\WebBrowser: (ReferenceBoss) - {C4676D53-FCE5-4A19-BE4D-97E6EAF7E19A} - C:\Program Files\ReferenceBoss_1p\bar\1.bin\1pbar.dll (MindSpark)
O4 - HKU\.DEFAULT..\Run: [DictionaryBoss] rundll32 "C:\Users\Owner\AppData\Local\RadioRage_4j\DictionaryBoss\gcmajn.dll",DllRegisterServer File not found
O4 - HKU\.DEFAULT..\Run: [Norton Download Manager{NSME22-B22-4abb-B07C-C084B04B4F12}] C:\Users\Public\Downloads\Norton\{NSME22-B22-4abb-B07C-C084B04B4F12}\ccSvcHst.exe /m File not found
O4 - HKU\S-1-5-18..\Run: [DictionaryBoss] rundll32 "C:\Users\Owner\AppData\Local\RadioRage_4j\DictionaryBoss\gcmajn.dll",DllRegisterServer File not found
O4 - HKU\S-1-5-18..\Run: [Norton Download Manager{NSME22-B22-4abb-B07C-C084B04B4F12}] C:\Users\Public\Downloads\Norton\{NSME22-B22-4abb-B07C-C084B04B4F12}\ccSvcHst.exe /m File not found
O4 - HKU\S-1-5-19..\Run: [DictionaryBoss] rundll32 "C:\Users\Owner\AppData\Local\RadioRage_4j\DictionaryBoss\gcmajn.dll",DllRegisterServer File not found
O4 - HKU\S-1-5-20..\Run: [DictionaryBoss] rundll32 "C:\Users\Owner\AppData\Local\RadioRage_4j\DictionaryBoss\gcmajn.dll",DllRegisterServer File not found
O4 - HKU\S-1-5-21-1436106380-1174917673-3105671344-1003..\Run: [DictionaryBoss] rundll32 "C:\Users\Owner\AppData\Local\RadioRage_4j\DictionaryBoss\gcmajn.dll",DllRegisterServer File not found
O15 - HKU\.DEFAULT\..Trusted Ranges: Range1 ([http] in Local intranet)
O15 - HKU\S-1-5-18\..Trusted Ranges: Range1 ([http] in Local intranet)
O15 - HKU\S-1-5-21-1436106380-1174917673-3105671344-1001\..Trusted Domains: real.com ([rhap-app-4-0] https in Trusted sites)
O15 - HKU\S-1-5-21-1436106380-1174917673-3105671344-1001\..Trusted Domains: real.com ([rhapreg] https in Trusted sites)
O15 - HKU\S-1-5-21-1436106380-1174917673-3105671344-1001\..Trusted Domains: rhapsody.com ([rhap-app-4-0] https in Trusted sites)
O15 - HKU\S-1-5-21-1436106380-1174917673-3105671344-1001\..Trusted Domains: rhapsody.com ([rhapreg] https in Trusted sites)
O15 - HKU\S-1-5-21-1436106380-1174917673-3105671344-1003\..Trusted Ranges: Range1 ([http] in )
O32 - AutoRun File - [2007/05/24 20:27:07 | 000,000,074 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2007/05/24 20:27:07 | 000,000,074 | ---- | M] () - E:\autoexec.bat -- [ NTFS ]
[1 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
:FILES
ipconfig /flushdns /c
C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\elr8tv5v.default\extensions\{9B3A8813-5583-41AB-B66E-2A8BCB58B0B3}
C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\elr8tv5v.default\extensions\crossriderapp21058@crossrider.com
C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\elr8tv5v.default\extensions\taahenxxmj@taahenxxmj.org.xpi
C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\elr8tv5v.default\extensions\toolbar_BCPA3@apn.ask.com.xpi
C:\Program Files\GasGlance_5i
C:\Program Files\InboxAce_1g
:COMMANDS
[CREATERESTOREPOINT]
[EMPTYTEMP]
[*]Then click the Run Fix button at the top.
[*]Let the program run unhindered; it will reboot the system when it is done and open notepad with logreport. Attach here that logreport.[/list]
If the log doesn’t appear, it can be found here:
c:_OTL\MovedFiles\mmddyyyy_hhmmss.log
----- Next -----
Please download zoek.zip (
http://www.mcshield.net/personal/magna86/Images/Zoek_icon.png
) from here or here and save it to your Desktop.
Unpack the archive…
[list]
[*]Close any open browsers
[*] Temporarily disable your AntiVirus program. (If necessary)
If you are unsure how to do this please read this or this Instruction.
[*]Double click on zoek.exe to run the tool .
Please wait while the tool does not start…
[*]Copy the text present inside the code box below and paste it into the large window in the zoek tool:
createsrpoint;
StandardSearch;
installer-list;
installedprogs;
uninstall-list;
[*] Click on
http://www.mcshield.net/personal/magna86/Images/Run%20Script%20by%20zoek.png
button.
Please wait until a logreport will open (this can be after reboot)
[*]Save notepad to your Desktop and attach here zoek-results.log
Note: It will also create a log in the C:\ directory named “zoek-results.log”
Combofix was run 6 months ago on a separate issue and I deleted the log thinking it was not revelant.
Attached are the other logs you requested.
Combofix was run 6 months ago on a separate issue and I deleted the log thinking it was not revelant.
Yup my bad. CF has been run 2012/03/22. But again, CF should be uninstalled, not be deleted.
Your avast AntiVirus is outdated. You need to update avast for latest definitions.
Your system is full of crapware and adware software. We need to remove all of that junk …
[*]Close any open browsers
[*] Temporarily disable your AntiVirus program. (If necessary)
If you are unsure how to do this please read this or this Instruction.
[*]Double click on zoek.exe to run the tool .
Please wait while the tool does not start…
[*]Copy the text present inside the code box below and paste it into the large window in the zoek tool:
emptyclsid;
Ask Toolbar;u
GasGlance Toolbar;u
InboxAce Toolbar;u
MapsGalaxy Toolbar Chrome Extension;u
ShopAtHome.com Toolbar;u
C:\Users\Owner\AppData\Local\Temp\tbBeg0.dll;f
C:\Users\Owner\AppData\Local\Temp\tmp8508.vbs;f
[HKEY_USERS\S-1-5-21-1436106380-1174917673-3105671344-1001\Software\Classes\Software\Microsoft\Windows\CurrentVersion\Run];r
"DictionaryBoss"=-;r
[HKEY_USERS\S-1-5-21-1436106380-1174917673-3105671344-1001_Classes\Software\Microsoft\Windows\CurrentVersion\Run];r
"DictionaryBoss"=-;r
[HKEY_USERS\S-1-5-21-1436106380-1174917673-3105671344-1003\Software\Classes\Software\Microsoft\Windows\CurrentVersion\Run];r
"DictionaryBoss"=-;r
[HKEY_USERS\S-1-5-21-1436106380-1174917673-3105671344-1003_Classes\Software\Microsoft\Windows\CurrentVersion\Run];r
"DictionaryBoss"=-;r
C:\Users\Owner\AppData\Local\RadioRage_4j\DictionaryBoss;fs
oobefldr.dll;z
1gffxtbr@InboxAce_1g.com;ff
1pffxtbr@ReferenceBoss_1p.com;ff
5iffxtbr@GasGlance_5i.com;ff
v4ffxtbr@DictionaryBoss.com;ff
QuickShare Widget;ff
C:\Program Files\DictionaryBoss;fs
C:\Program Files\ReferenceBoss_1p;fs
FFdefaults;
aaaamkngpohceidkefhicjjcedfcidai;chr
dionlkleedadoocjgnjaijelhnmbbkep;chr
gipmblamjgodbimgeafaiegdpfbaeihe;chr
idhngdhcfkoamngbedgpaokgjbnpdiji;chr
klibnahbojhkanfgaglnlalfkgpcppfi;chr
leekjehlgnlhiodjnajdmfkgmoblhadm;chr
npffmjkglbnioaoncpfmdbmehnbcldfh;chr
gipmblamjgodbimgeafaiegdpfbaeihe;chr
klibnahbojhkanfgaglnlalfkgpcppfi;chr
dionlkleedadoocjgnjaijelhnmbbkep;chr
gkchbifjjnafgoolbibfmgkibbngknkk;chr
idhngdhcfkoamngbedgpaokgjbnpdiji;chr
C:\ProgramData\AskPartnerNetwork;fs
C:\Program Files\MapsGalaxy_39 Chrome Extension;fs
C:\Users\Owner\AppData\Local\CRE\gipmblamjgodbimgeafaiegdpfbaeihe.crx;f
C:\ProgramData\RealNetworks;fs
C:\Users\Owner\AppData\Local\CRE\klibnahbojhkanfgaglnlalfkgpcppfi.crx;f
C:\Program Files\OApps;fs
C:\Program Files\LyricSing;fs
C:\Users\Owner\AppData\Local\CRE\gipmblamjgodbimgeafaiegdpfbaeihe.crx;f
C:\Users\Owner\AppData\Local\CRE\klibnahbojhkanfgaglnlalfkgpcppfi.crx;f
CHRdefaults;
LyricsSing;u
ReferenceBoss Toolbar;u
SelectionLinks;u
ShopAtHome.com Helper;u
ShopAtHome.com Toolbar;u
{A13C2648-91D4-4bf3-BC6D-0079707C4389};c
shortcutfix;
resetIEproxy;
netsh int ip reset >> %temp%\log.txt;b
ipconfig /flushdns >> %temp%\log.txt;b
resethosts;
emptyalltemp;
autoclean;
[*] Click on
http://www.mcshield.net/personal/magna86/Images/Run%20Script%20by%20zoek.png
button.
Please wait until a logreport will open (this can be after reboot)
[*]Save notepad to your Desktop and attach here zoek-results.log
Note: It will also create a log in the C:\ directory named “zoek-results.log”
here is the log for 2nd run of zoek
Zoek did a an excellent job. We shall run Combofix now to see from another point of what is happening and thereafter we shall re-run zoek for re-check.
- Please download ComboFix from here and save it to your Desktop.
If you are unsure how ComboFix works please read this guide carefully.
note: ComboFix must be downloaded to your Desktop.
- Temporarily disable your AntiVirus program.
If you are unsure how to do this please read this or this Instruction.
Instructions how to disable avast:
[*]Right-click on the avast! icon in the lower right corner of the screen and choose Open Avast! User Interface.
[*]In the window that opens on the top right corner, click Settings.
[*]In a new window that opens, choose the option Troubleshooting, Uncheck Enable avast! self-defense, and click OK.
[*]=> Again, right-click on the avast! icon in the lower right corner of the screen and select avast! shield controls .
[*]In the menu that appears, choose Disable Permanently. When you are prompted to turn off security, click Yes.
Note: Do not forget to turn on this option after the cleaning.
- Run ComboFix. Click on I Agree!
ComboFix will check if there is a newer version of ComboFix available.
Click Yes if prompted to download.
ComboFix will display DISCLAIMER OF WARRANTY ON SOFTWARE.
Click Yes to allow ComboFix to continue.
If Recovery Console is not installed, ComboFix will offer download & installation.
Click Yes to allow ComboFix to install Recovery Console.
Note:Do not mouse-click Combofix’s window while it is running.
If you see a message like “Illegal operation attempted on a registry key that has been marked for deletion” just restart computer once more.
- When the tool is finished, it will produce a log report for you. (typical location: C:[b]ComboFix.txt[/b] )
Attach log reports ( ComboFix.txt) back to topic.
----- Next -----
Re-run zoek.exe as you did before with this script and when it finished post me fresh created zoek log.
filesrcm;
startupall;
firefoxlook;
chromelook;
thanks for your help. I have an issue with disabling Avast to run combofix.
first, i forgot to do that for the 2nd run of zoek, but more importantly, I am getting hammered with
malicious url blockings from Avast. They are constant and I just ignore them running these tools, but
I don’t think disabling Avast is a good idea right now. I will run combofix without disabling Avast unless
you tell me otherwise.
thanks again
Forgot, I had to disable avast or combofix claims bad things happen, so I did. I got two straight blue screens, both around stage 4. I have attached the dump log if that helps any.
Should I proceed for third time??
thanks
3rd time I “ran as administrator” and it finished, log attached. Also the 3rd run of zoek log is attached.
things are looking better from this end,
thanks for your help
Hi,
You have too many adware on your system. This is what causes the avast warnings.
I want you to fully uninstall Firefox and Chrome browser from your system. If there’s something you want to save it then let it be bookmarks but nothing else.
Download fresh Firefox and Chrome browsers and install them. Then, re-run zoek with this script.
StandardSearch;
Mozilla Firefox won’t uninstall, no errors or messages, just nothing when you click you uninstall. Their uninstall program “helper” is the same, you get UAC dialog box asking permission and then nothing happens.
Restarted, same thing, restarted in safe mode, same thing.
Do you know a way around or a third party utility to remove this?? I ask you because I’m in the middle of this cleanup process and don’t want to introduce another program without you knowing.
Safari gives me an error, stating my uninstall service is causing the problem.
Chrome went away like it should.
Some of those adware/malware toolbars and such cause an immediate shutdown when removing them, such as Pokki.
this is a disaster…
Do you know a way around or a third party utility to remove this??They are few.
GeekUninstall
http://www.geekuninstaller.com/
RevoUninstall <= recommend
http://www.revouninstaller.com/
YourUninstall <= the best one but it’s not free
http://www.ursoftware.com/
Revo will do the job.
Remove & Uninstall everything you don’t need. All junk needs to be removed …
;D
Revo did a great job.
Zoek log attached, I noticed it listed Avast as having some scanners outdated or disabled and I don’t think that is correct.
Still getting the same 10-12 malicious url blocked warnings in a loop, thought that might have been fixed with removing firefox, but no.
thanks for your help
I noticed it listed Avast as having some scanners outdated or disabled and I don't think that is correct.
Hm…tools should not lie. We shall re-check what zoek says about AV ( and malware check ) with FRST.
Re-run zoek.exe with this script. This should be finished quickly.
{26AFFBE3-AA93-41DF-95B2-A5FC4C802D50};c
{75F75A38-7981-435C-B054-1B8269B2A1EF};c
Next we shall run additional adware check with JRT scanner.
http://imageshack.us/a/img841/7292/thisisujrt.gif
Please download Junkware Removal Tool to your desktop.
[]Shut down your protection software now to avoid potential conflicts.
[]Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select “Run as Administrator”.
[]The tool will open and start scanning your system.
[]Please be patient as this can take a while to complete depending on your system’s specifications.
[]On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
[]Post the contents of JRT.txt into your next message.
---- Next -----
System re-check to see what is going on.
Please download Farbar Recovery Scan Tool and save it to your desktop.
Note: You need to run the version compatibale with your system. If you are not sure which version applies to your system download both of them and try to run them.
Only one of them will run on your system, that will be the right version.
[*]Double-click to run it. When the tool opens click Yes to disclaimer.
[*]Under Optional Scan ensure “List BCD” and “Driver MD5” are ticked.
[*]Press Scan button.
[*]It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your reply.
[*]The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.
Another bit of info, it has been rejecting windows security update kb2859537 since aug, that update had a big issue with causing bsod, but not one person having a machine that rejected it, so i assumed it would fix itself after this cleanup, but now I’m thinking it might related.
Logs attached.
thanks
1. Open notepad and copy/paste the text present inside the code box below.
To do this highlight the contents of the box and right click on it. Paste this into the open notepad.
NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to the operating system
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
S2 DictionaryBossService; C:\PROGRA~1\DICTIO~2\bar\1.bin\v4barsvc.exe [x]
S2 GasGlance_5iService; C:\PROGRA~1\GASGLA~2\bar\1.bin\5ibarsvc.exe [x]
S2 InboxAce_1gService; C:\PROGRA~1\INBOXA~2\bar\1.bin\1gbarsvc.exe [x]
C:\PROGRA~1\DICTIO~2
C:\PROGRA~1\GASGLA~2
C:\PROGRA~1\INBOXA~2
2. Save notepad as fixlist.txt to your Desktop.
NOTE: => It’s important that both files, FRST and fixlist.txt are in the same location or the fix will not work.
3. Run FRST/FRST64 and press the Fix button just once and wait.
If the tool needed a restart please make sure you let the system to restart normally and let the tool completes its run after restart.
The tool will make a log on the Desktop (Fixlog.txt). Please attach it to your reply.
Note: If the tool warned you about the outdated version please download and run the updated version.
How’s your computer running now?
Log is attached.
I think the only issue I have now is the blocked malicious url warnings from Avast, still the same ones popping up over and over until I take the ethernet cable out.
One thing I didn’t do, Malwarebytes told me to run a full scan after the quick scan and I never did, so I am running that now.
thanks for your help
Ok, let’s re-check all then:
-
Re-run FRST, hit Scan button and post me fresh created log.
-
Please download fresh copy of zoek.exe. Delete old ones. Re-run zoek.exe as you did before with this script:
StandardSearch;
Post me fresh created logreport.