Hi all,
I had a trojan 3 weeks ago, avast detected it, but don’t know whether it removed/quarantined or what.
I have messed my security settings, took over C drive ownership few months back. now I have lots of repeated folders under my C drive like, local settings, my doc, my pictures, my music, my videos and, as I try open them gives me access denied.
These are old folders I don’t use, where the laptop had different pc name, different user name, different password.
I had 3 factory restores via F8, and have no external back up. Laptop use 3 years - homepremium win 7 - sony vaio nw26m.
I ran ComboFix but have no idea on what to do next. I have deleted some registry keys as I felt Google chrome was infected. then re-downloaded chrome, after deleting all keys for chrome. and deleted some keys under HKLM & HKeyusers from 3rd party software.
I read that kanji_1.uce is harmful and found it located under C , so I deleted that too.
I also have a QOOBOX folder under C drive which contains the ComboFix files and quarantined items. I had to run ComboFix twice as the first time it downloaded to download folder. it should have downloaded to desktop. and then re-ran it. I also, have 2 files on desktop named - Desktop.ini, same file listed under Users. Also, under Users appeared some old accounts named - Users- All Users-Default User. All these folders give me denied access, I kept them on Recycle bin.
I think my permissions have also messed up the laptop, together with the Trojan I had, or still have somewhere.
HERE’S THE LOG FROM COMBO FIX
ComboFix 15-04-19.01 - ROSHNI 23/04/2015 1:17.2.2 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.3935.2257 [GMT 1:00]
Running from: c:\users\ROSHNI\Desktop\ComboFix.exe
AV: avast! Antivirus Disabled/Updated {17AD7D40-BA12-9C46-7131-94903A54AD8B}
FW: avast! Antivirus Disabled {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
SP: avast! Antivirus Disabled/Updated {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender Enabled/Updated {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Files Created from 2015-03-23 to 2015-04-23 )))))))))))))))))))))))))))))))
.
.
2015-04-23 00:27 . 2015-04-23 00:27 -------- d-----w- c:\users\Guest\AppData\Local\temp
2015-04-23 00:27 . 2015-04-23 00:27 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-04-21 22:42 . 2015-04-21 22:43 264846772 ----a-w- C:\registrybackupapriltwentieth.reg
2015-04-21 22:28 . 2015-04-04 06:25 12032440 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates{34EA1EA9-9529-4440-ADA8-9FDAB2E252A9}\mpengine.dll
2015-04-21 13:33 . 2015-04-21 13:43 -------- d-----w- c:\users\ROSHNI\AppData\Local\Google
2015-04-21 13:33 . 2015-04-21 13:33 -------- d-----w- c:\program files (x86)\Google
2015-04-21 00:34 . 2015-04-21 00:34 -------- d-----w- c:\programdata\FreeDownloadManager.ORG
2015-04-21 00:34 . 2015-04-21 00:34 -------- d-----w- c:\programdata\Free Download Manager
2015-04-16 02:38 . 2015-04-16 02:38 -------- d-s—w- c:\windows\system32\CompatTel
2015-04-16 02:38 . 2015-04-16 02:38 -------- d-----w- c:\windows\system32\appraiser
2015-04-15 15:36 . 2015-03-25 03:24 3298816 ----a-w- c:\windows\system32\wucltux.dll
2015-04-15 15:30 . 2015-03-23 03:25 726528 ----a-w- c:\windows\system32\generaltel.dll
2015-04-15 15:30 . 2015-03-23 03:24 419840 ----a-w- c:\windows\system32\devinv.dll
2015-04-15 15:30 . 2015-03-23 03:24 30720 ----a-w- c:\windows\system32\acmigration.dll
2015-04-15 15:30 . 2015-01-27 23:36 1239720 ----a-w- c:\windows\system32\aitstatic.exe
2015-04-15 15:30 . 2015-03-23 03:25 769536 ----a-w- c:\windows\system32\invagent.dll
2015-04-15 15:30 . 2015-03-23 03:24 192000 ----a-w- c:\windows\system32\aepic.dll
2015-04-15 15:30 . 2015-03-23 03:17 1111552 ----a-w- c:\windows\system32\aeinv.dll
2015-04-15 15:30 . 2015-03-23 03:24 227328 ----a-w- c:\windows\system32\aepdu.dll
2015-04-15 15:01 . 2015-03-05 05:12 404480 ----a-w- c:\windows\system32\gdi32.dll
2015-04-15 15:01 . 2015-03-05 04:05 311808 ----a-w- c:\windows\SysWow64\gdi32.dll
2015-04-15 14:54 . 2015-02-25 03:18 754688 ----a-w- c:\windows\system32\drivers\http.sys
2015-04-15 14:49 . 2015-03-04 04:55 367552 ----a-w- c:\windows\system32\clfs.sys
2015-04-15 14:49 . 2015-03-04 04:41 79360 ----a-w- c:\windows\system32\clfsw32.dll
2015-04-15 14:49 . 2015-03-04 04:10 58880 ----a-w- c:\windows\SysWow64\clfsw32.dll
2015-04-10 17:41 . 2015-04-10 17:41 -------- d-----w- c:\program files (x86)\WinPcap
2015-04-05 22:58 . 2015-04-05 22:59 260181148 ----a-w- C:\registrybackupapril15.reg
2015-04-05 01:52 . 2015-04-05 01:52 -------- d-----w- C:\Downloads
2015-04-05 01:38 . 2015-04-21 01:35 -------- d-----w- c:\users\ROSHNI\AppData\Roaming\Free Download Manager
2015-04-05 01:38 . 2015-04-05 01:38 -------- d-----w- c:\users\ROSHNI\AppData\Roaming\FreeDownloadManager.ORG
2015-04-05 01:37 . 2015-04-05 01:37 -------- d-----w- c:\program files (x86)\Free Download Manager
2015-04-05 01:09 . 2015-04-05 01:09 -------- d-s—w- c:\windows\SysWow64\GWX
2015-04-05 01:09 . 2015-04-05 01:09 -------- d-s—w- c:\windows\system32\GWX
2015-04-05 00:59 . 2015-04-05 01:00 -------- d-----w- c:\programdata\Package Cache
2015-04-04 22:45 . 2015-04-04 22:45 -------- d-sh–w- c:\users\Guest\AppData\Local\EmieUserList
2015-04-04 22:45 . 2015-04-04 22:45 -------- d-sh–w- c:\users\Guest\AppData\Local\EmieSiteList
2015-04-04 22:45 . 2015-04-04 22:45 -------- d-sh–w- c:\users\Guest\AppData\Local\EmieBrowserModeList
2015-04-04 22:32 . 2015-04-04 22:32 -------- d-----w- c:\users\Guest\AppData\Local\Apple Computer
2015-04-04 22:32 . 2015-04-04 22:35 -------- d-----w- c:\users\Guest\AppData\Roaming\Apple Computer
2015-04-03 01:17 . 2015-04-04 22:34 -------- d-----w- c:\program files (x86)\iTunes
2015-04-03 01:17 . 2015-04-03 01:17 -------- d-----w- c:\program files\iPod
2015-04-03 01:17 . 2015-04-03 01:17 -------- d-----w- c:\program files\iTunes
2015-03-30 18:12 . 2015-04-16 21:15 -------- d-----w- c:\users\ROSHNI\AppData\Local\ElevatedDiagnostics
2015-03-29 23:25 . 2015-03-29 23:25 -------- d-----w- C:\SPLASH.SYS
2015-03-24 02:06 . 2015-03-24 02:06 -------- d-----w- c:\users\ROSHNI\AppData\Local\Programs
2015-03-24 01:32 . 2015-03-24 01:34 -------- d-----w- C:\Jumpshot
2015-03-24 01:22 . 2015-03-26 17:13 -------- d-----w- c:\windows\jumpshot.com
2015-03-24 01:14 . 2015-03-24 01:14 -------- d-----w- c:\program files (x86)\Common Files\Java
2015-03-24 00:57 . 2015-03-24 00:57 364472 ----a-w- c:\windows\system32\aswBoot.exe
2015-03-24 00:57 . 2015-03-24 00:57 43112 ----a-w- c:\windows\avastSS.scr
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-04-21 13:02 . 2014-04-17 02:45 895088 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2015-04-21 13:02 . 2014-04-17 02:45 42168 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll
2015-04-21 13:02 . 2014-04-24 02:17 710992 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2015-04-18 14:45 . 2014-04-24 02:17 895088 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\markup.dll
2015-04-18 14:43 . 2014-04-24 02:17 42168 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM-2\StartResources.dll
2015-04-17 15:43 . 2014-04-17 02:45 710992 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2015-04-16 02:05 . 2014-11-24 02:03 128913832 ----a-w- c:\windows\system32\MRT.exe
2015-03-24 01:13 . 2014-08-16 15:50 98216 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2015-03-24 00:57 . 2014-05-13 23:27 29168 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2015-03-24 00:57 . 2014-04-14 01:27 93528 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2015-03-24 00:57 . 2014-04-14 01:27 88408 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2015-03-24 00:57 . 2014-04-14 01:27 65736 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2015-03-24 00:57 . 2014-04-14 01:27 442264 ----a-w- c:\windows\system32\drivers\aswSP.sys
2015-03-24 00:57 . 2014-04-14 01:27 271200 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2015-03-24 00:57 . 2014-04-14 01:27 136752 ----a-w- c:\windows\system32\drivers\aswStm.sys
2015-03-24 00:57 . 2014-04-14 01:27 1047320 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2015-03-24 00:01 . 2014-10-01 10:50 778928 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2015-03-24 00:01 . 2014-10-01 10:50 142512 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2015-03-17 04:56 . 2015-04-15 14:56 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2015-02-27 13:59 . 2015-02-27 13:59 194048 ----a-w- c:\windows\SysWow64\elshyph.dll
2015-02-27 13:58 . 2015-02-27 13:58 71680 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2015-02-27 13:58 . 2015-02-27 13:58 645120 ----a-w- c:\windows\SysWow64\jsIntl.dll
2015-02-27 13:58 . 2015-02-27 13:58 235008 ----a-w- c:\windows\system32\elshyph.dll
2015-02-27 13:58 . 2015-02-27 13:58 182272 ----a-w- c:\windows\SysWow64\msls31.dll
2015-02-27 13:58 . 2015-02-27 13:58 62464 ----a-w- c:\windows\SysWow64\tdc.ocx
2015-02-27 13:58 . 2015-02-27 13:58 24576 ----a-w- c:\windows\SysWow64\licmgr10.dll
2015-02-27 13:58 . 2015-02-27 13:58 74240 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2015-02-27 13:58 . 2015-02-27 13:58 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2015-02-27 13:58 . 2015-02-27 13:58 36352 ----a-w- c:\windows\SysWow64\imgutil.dll
2015-02-27 13:58 . 2015-02-27 13:58 151552 ----a-w- c:\windows\SysWow64\iexpress.exe
2015-02-27 13:58 . 2015-02-27 13:58 139264 ----a-w- c:\windows\SysWow64\wextract.exe
2015-02-27 13:58 . 2015-02-27 13:58 13312 ----a-w- c:\windows\SysWow64\mshta.exe
2015-02-27 13:58 . 2015-02-27 13:58 111616 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2015-02-27 13:58 . 2015-02-27 13:58 86016 ----a-w- c:\windows\SysWow64\iesysprep.dll
2015-02-27 13:58 . 2015-02-27 13:58 942592 ----a-w- c:\windows\system32\jsIntl.dll
2015-02-27 13:58 . 2015-02-27 13:58 90112 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2015-02-27 13:58 . 2015-02-27 13:58 86016 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2015-02-27 13:58 . 2015-02-27 13:58 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2015-02-27 13:58 . 2015-02-27 13:58 48640 ----a-w- c:\windows\system32\mshtmler.dll
2015-02-27 13:58 . 2015-02-27 13:58 247808 ----a-w- c:\windows\system32\msls31.dll
2015-02-27 13:58 . 2015-02-27 13:58 13312 ----a-w- c:\windows\system32\msfeedssync.exe
2015-02-27 13:58 . 2015-02-27 13:58 131072 ----a-w- c:\windows\system32\IEAdvpack.dll
2015-02-27 13:58 . 2015-02-27 13:58 105984 ----a-w- c:\windows\system32\iesysprep.dll
2015-02-27 13:58 . 2015-02-27 13:58 81408 ----a-w- c:\windows\system32\icardie.dll
2015-02-27 13:58 . 2015-02-27 13:58 77312 ----a-w- c:\windows\system32\tdc.ocx
2015-02-27 13:58 . 2015-02-27 13:58 616104 ----a-w- c:\windows\system32\ieapfltr.dat
2015-02-27 13:58 . 2015-02-27 13:58 30208 ----a-w- c:\windows\system32\licmgr10.dll
2015-02-27 13:58 . 2015-02-27 13:58 243200 ----a-w- c:\windows\system32\webcheck.dll
2015-02-27 13:58 . 2015-02-27 13:58 235520 ----a-w- c:\windows\system32\url.dll
2015-02-27 13:58 . 2015-02-27 13:58 167424 ----a-w- c:\windows\system32\iexpress.exe
2015-02-27 13:58 . 2015-02-27 13:58 143872 ----a-w- c:\windows\system32\wextract.exe
2015-02-27 13:58 . 2015-02-27 13:58 101376 ----a-w- c:\windows\system32\inseng.dll
2015-02-27 13:58 . 2015-02-27 13:58 774144 ----a-w- c:\windows\system32\jscript.dll
2015-02-27 13:58 . 2015-02-27 13:58 62464 ----a-w- c:\windows\system32\pngfilt.dll
2015-02-27 13:58 . 2015-02-27 13:58 48128 ----a-w- c:\windows\system32\imgutil.dll
2015-02-27 13:58 . 2015-02-27 13:58 147968 ----a-w- c:\windows\system32\occache.dll
2015-02-27 13:58 . 2015-02-27 13:58 13824 ----a-w- c:\windows\system32\mshta.exe
2015-02-27 13:58 . 2015-02-27 13:58 135680 ----a-w- c:\windows\system32\iepeers.dll
2015-02-27 13:44 . 2015-02-27 13:44 9728 —ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 9728 —ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 5632 —ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 5632 —ha-w- c:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 5632 —ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 5632 —ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 522752 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2015-02-27 13:44 . 2015-02-27 13:44 4096 —ha-w- c:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 4096 —ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 364544 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll
2015-02-27 13:44 . 2015-02-27 13:44 363008 ----a-w- c:\windows\system32\dxgi.dll
2015-02-27 13:44 . 2015-02-27 13:44 3584 —ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 3584 —ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 3072 —ha-w- c:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 3072 —ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 3072 —ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 3072 —ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 2560 —ha-w- c:\windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 2560 —ha-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 220160 ----a-w- c:\windows\SysWow64\d3d10core.dll
2015-02-27 13:44 . 2015-02-27 13:44 1682432 ----a-w- c:\windows\system32\XpsPrint.dll
2015-02-27 13:44 . 2015-02-27 13:44 1158144 ----a-w- c:\windows\SysWow64\XpsPrint.dll
2015-02-27 13:44 . 2015-02-27 13:44 10752 —ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 10752 —ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-02-27 13:44 . 2015-02-27 13:44 1080832 ----a-w- c:\windows\SysWow64\d3d10.dll
2015-02-27 13:44 . 2015-02-27 13:44 648192 ----a-w- c:\windows\system32\d3d10level9.dll
2015-02-27 13:44 . 2015-02-27 13:44 604160 ----a-w- c:\windows\SysWow64\d3d10level9.dll
2015-02-27 13:44 . 2015-02-27 13:44 333312 ----a-w- c:\windows\system32\d3d10_1core.dll
2015-02-27 13:44 . 2015-02-27 13:44 296960 ----a-w- c:\windows\system32\d3d10core.dll
2015-02-27 13:44 . 2015-02-27 13:44 293376 ----a-w- c:\windows\SysWow64\dxgi.dll
2015-02-27 13:44 . 2015-02-27 13:44 249856 ----a-w- c:\windows\SysWow64\d3d10_1core.dll
2015-02-27 13:44 . 2015-02-27 13:44 245248 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2015-02-27 13:44 . 2015-02-27 13:44 221184 ----a-w- c:\windows\system32\UIAnimation.dll
2015-02-27 13:44 . 2015-02-27 13:44 207872 ----a-w- c:\windows\SysWow64\WindowsCodecsExt.dll
2015-02-27 13:44 . 2015-02-27 13:44 194560 ----a-w- c:\windows\system32\d3d10_1.dll
2015-02-27 13:44 . 2015-02-27 13:44 187392 ----a-w- c:\windows\SysWow64\UIAnimation.dll
2015-02-27 13:44 . 2015-02-27 13:44 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll
2015-02-27 13:44 . 2015-02-27 13:44 1238528 ----a-w- c:\windows\system32\d3d10.dll
2015-02-27 13:44 . 2015-02-27 13:44 1175552 ----a-w- c:\windows\system32\FntCache.dll
2015-02-26 03:28 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2015-02-26 03:28 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2015-02-26 03:25 . 2015-03-11 16:22 3204096 ----a-w- c:\windows\system32\win32k.sys
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
Note empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@=“{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}”
[HKEY_CLASSES_ROOT\CLSID{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2015-02-11 01:12 152544 ----a-w- c:\users\ROSHNI\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@=“{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}”
[HKEY_CLASSES_ROOT\CLSID{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2015-02-11 01:12 152544 ----a-w- c:\users\ROSHNI\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@=“{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}”
[HKEY_CLASSES_ROOT\CLSID{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2015-02-11 01:12 152544 ----a-w- c:\users\ROSHNI\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“RocketDock”=“c:\program files (x86)\RocketDock\RocketDock.exe” [2007-09-02 495616]
“GoogleChromeAutoLaunch_4C3BB2366B1390516BD41322EAC3CAFB”=“c:\program files (x86)\Google\Chrome\Application\chrome.exe” [2015-04-13 866120]
“iCloudServices”=“c:\program files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe” [2014-08-07 43816]
Thank you in advance for your time, it is very much appreciated. The log is incomplete as it was not allowing me to post it full
rosh19