Black screen for a few minutes on startup. [Closed]

Report
-
Posts
48725
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
June 23, 2020
-
Hello,

I have a desktop computer. Whenever I turn it on, the screen remains black for about 5 minutes before showing me the desktop. It started doing it a few days ago and I haven't installed anything new recently.

I know that the computer is ready to use because I can even see the desktop on my mobile phone using TeamViewer while the screen is black...

Any ideas?

Thank you!

13 replies

Posts
48725
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
June 23, 2020
15,237
Hello

Have you tried another monitor?
1
Thank you

A few words of thanks would be greatly appreciated. Add comment

CCM 3149 users have said thank you to us this month

Posts
48725
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
June 23, 2020
15,237
I just re-read your initial message.

So your computer actually works after the 5 minute wait for the desktop to show.

You may be confronted with a malware.

To help you and prescribe the remedy, I must make a diagnostic and to do so, I require a report.

1. Open this link and download ZHPDiag :
https://www.nicolascoolman.com/fr/download/zhpdiag/
(Don't be alarmed is the site is in French, it sometimes happens, the tool will take your system language and allow the download if you get a warning message, ignore it.) Click on the download button

2. Save the file on your Desktop.

3. Double click on ZHPDiag.exe and follow the installation instructions.

(For Vista, Win 7 and 8 users, click right to ensure you execute with admin right)

4. Double click on the short cut ZHPDiag on your Destktop.

5 Click on scan
Wait for the tool to finished (maybe a long time)

6. Close ZHPDiag.

7. To transmit the report, click on this link :

http://www.tinyupload.com/index.php

8. Search the directory where you installed ZHPDiag (usually C:\desktop\zhpdiag.txt).
9. Copy the url link obtained from tinyupload and paste it here in your reply.

Ambucias
Moderator and Virus/Security Contributor
1
Thank you

A few words of thanks would be greatly appreciated. Add comment

CCM 3149 users have said thank you to us this month

Posts
48725
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
June 23, 2020
15,237
Thank you, stand by.
1
Thank you

A few words of thanks would be greatly appreciated. Add comment

CCM 3149 users have said thank you to us this month

Posts
48725
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
June 23, 2020
15,237
Hi again,

I analyzed the report you have submitted and as I suspected your computer is badly infected by 48 malware and viruses.

Here is how to eradicate all 48 viruses:

1. Download ZHPFix here

https://www.nicolascoolman.com/fr/download/zhpfix/

(click on "télécharger")

2. Select and copy all of the following bold lines.

Script ZHPFix
FirewallRaz
EmptyPrefetch
EmptyTemp
EmptyFlash
O23 - Service: Service KMSELDI (Service KMSELDI) . (.@ByELDI - Service_KMS.) - C:\Program Files\KMSpico\Service_KMS.exe
SR - Auto [04/12/2014] [ 966336] Service KMSELDI (Service KMSELDI) . (.@ByELDI.) - C:\Program Files\KMSpico\Service_KMS.exe
[MD5.29B81898034EF7692A242E49310E0411] [APT] [Trigger KMS Activation] (.Copyright © 2013.) -- C:\Users\Allen\Downloads\en_windows_8_x64_dvd_915440\Activation\KMSnanov20.1\TriggerKMS.exe [54784] (.Activate.)
O39 - APT: Trigger KMS Activation - (.Copyright © 2013.) -- C:\WINDOWS\System32\Tasks\Trigger KMS Activation [2964]
[MD5.150C1970816E7B0668F7459109A2AE23] - (.@ByELDI - Service_KMS.) -- C:\Program Files\KMSpico\Service_KMS.exe [966336] [PID.2180]
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://astromenda.com/
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Itibiti RTC - (.Itibiti Inc.) [HKLM][64Bits] -- {730E03E4-350E-48E5-9D3E-4329903D454D}
O42 - Logiciel: KMSpico - (...) [HKLM][64Bits] -- {8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1
O42 - Logiciel: PermissionResearch - (.TMRG, Inc..) [HKLM][64Bits] -- {42cd067f-d483-428d-83bc-437211349927}
3 - CFD: 02/03/2016 - [] AD -- C:\Program Files\KMSpico
3 - CFD: 30/04/2013 - [] D -- C:\Program Files (x86)\QuickTime
3 - CFD: 02/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
3 - CFD: 29/03/2016 - [0] D -- C:\Users\Allen\AppData\Roaming\HMYGSetting
3 - CFD: 07/04/2016 - [] D -- C:\Users\Allen\AppData\Roaming\Hola
3 - CFD: 04/03/2016 - [] D -- C:\Users\Allen\AppData\Local\Hola
3 - CFD: 30/04/2013 - [] D -- C:\Users\Allen\AppData\Local\Microsoft Toolkit
3 - CFD: 02/10/2016 - [] D -- C:\Users\Allen\AppData\Local\MSfree Inc
O87 - FAEL: "TCP Query User{52EDAFC4-CDEA-4E76-9F0D-81AF4E25AC1E}C:\program files (x86)\permissionresearch\prmrsr.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\permissionresearch\prmrsr.exe (.not file.)
O87 - FAEL: "UDP Query User{AC73823D-D650-42B3-A83E-049FDEA8C03C}C:\program files (x86)\permissionresearch\prmrsr.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\permissionresearch\prmrsr.exe (.not file.)
O87 - FAEL: "{4577EFFD-A301-4317-907C-5B2A54571AB8}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\PermissionResearch\prmrsr.exe (.not file.)
O87 - FAEL: "{2325479F-39F8-4B64-A2C0-B688F4434899}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\PermissionResearch\prmrsr.exe (.not file.)
O90 - PUC: "4E30E037E0535E84D9E3349209D354D4" . (.Itibiti RTC.)
HKLM\SYSTEM\CurrentControlSet\Services\Service KMSELDI
C:\Program Files\KMSpico\Service_KMS.exe
C:\Users\Allen\Downloads\en_windows_8_x64_dvd_915440\Activation\KMSnanov20.1\TriggerKMS.exe
C:\WINDOWS\System32\Tasks\Trigger KMS Activation
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{730E03E4-350E-48E5-9D3E-4329903D454D}
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{730E03E4-350E-48E5-9D3E-4329903D454D}
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
C:\Program Files\KMSpico
C:\Program Files (x86)\QuickTime
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
C:\Users\Allen\AppData\Roaming\HMYGSetting
C:\Users\Allen\AppData\Roaming\Hola
C:\Users\Allen\AppData\Local\Hola
C:\Users\Allen\AppData\Local\Microsoft Toolkit
C:\Users\Allen\AppData\Local\MSfree Inc
HKLM\Software\Classes\Installer\Products\4E30E037E0535E84D9E3349209D354D4
HKLM\Software\Classes\Installer\Features\4E30E037E0535E84D9E3349209D354D4
C:\Users\Allen\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage
C:\Users\Allen\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal
C:\Users\Allen\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage
C:\Users\Allen\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage-journal


3 Close all applications and open ZHP Fix

4. Click on the Import button and the lines will automatically paste themselves.

5. Click on the Go button to clean

6. Confirm by clicking OK

7. ZHP Fix will ask if you wish to empty the bin, click on your choice...it may take time

8. A report will appear on your desktop and on C:\ZHP\ZHPFix[R1].txt which you can copy and paste in your reply.

Good luck
1
Thank you

A few words of thanks would be greatly appreciated. Add comment

CCM 3149 users have said thank you to us this month

Posts
48725
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
June 23, 2020
15,237
Just great, your computer is now virus free and should work faster now.

However, when your Malwarebyte antivirus trial is over, you will need to purchase it or replace it. I would not delay as you will not have any protection.
1
Thank you

A few words of thanks would be greatly appreciated. Add comment

CCM 3149 users have said thank you to us this month

I do not own another monitor.

Thank's again for your help. Here is the report:

Rapport de ZHPFix 2015.10.19.9 par Nicolas Coolman, Update du 19/10/2015
Fichier d'export Registre :
Run by Allen at 2016-10-25 7:46:19 AM
High Elevated Privileges : OK
Windows 8 Business Edition, 64-bit Service Pack 1 (10586)

Corbeille vidée (04mn AMs)
Dossier Prefetcher vidé

========== Logiciels ==========
SUPPRIMÉ: Google Update Helper
SUPPRIMÉ: Itibiti RTC
ABSENT Uninstall Process: c:\program files (x86)\permissionresearch\prmrsr.exe

========== Processus mémoire ==========
SUPPRIMÉ Redémarrage: Memory Process: C:\Program Files\KMSpico\Service_KMS.exe
SUPPRIMÉ: Memory Process: C:\Program Files\KMSpico\Service_KMS.exe
SUPPRIMÉ: Memory Process: C:\Users\Allen\Downloads\en_windows_8_x64_dvd_915440\Activation\KMSnanov20.1\TriggerKMS.exe
SUPPRIMÉ: Memory Process: C:\Users\Allen\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage
SUPPRIMÉ: Memory Process: C:\Users\Allen\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal
SUPPRIMÉ: Memory Process: C:\Users\Allen\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage
SUPPRIMÉ: Memory Process: C:\Users\Allen\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage-journal

========== Clés du Registre ==========
SUPPRIMÉ: [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}]
SUPPRIMÉ: [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{730E03E4-350E-48E5-9D3E-4329903D454D}]
SUPPRIMÉ Logiciel Key: [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{42cd067f-d483-428d-83bc-437211349927}]
SUPPRIMÉ: Service: Service KMSELDI

========== Valeurs du Registre ==========
Aucune Valeur Standard Profile: FirewallRaz :
Aucune Valeur Domain Profile: FirewallRaz :
SUPPRIMÉ: FirewallRaz (None) : MCX-Prov-Out-TCP
SUPPRIMÉ: FirewallRaz (None) : MCX-McrMgr-Out-TCP
SUPPRIMÉ: FirewallRaz (None) : VIRT-VMMS-RPC-EPMAP-In-NoScope
SUPPRIMÉ: FirewallRaz (None) : VIRT-VMMS-RPC-In-NoScope
SUPPRIMÉ: FirewallRaz (None) : VIRT-HVRHTTPL-In-TCP-NoScope
SUPPRIMÉ: FirewallRaz (None) : VIRT-HVRHTTPSL-In-TCP-NoScope
SUPPRIMÉ: FirewallRaz (Private) : UDP Query User{E81A854E-6451-4E95-B81D-284B17A4068A}C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe
SUPPRIMÉ: FirewallRaz (Private) : TCP Query User{18F9E560-66C3-488A-9172-AFF30AFA023B}C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe
SUPPRIMÉ: FirewallRaz (Private) : {7138DEDD-0440-4E13-8C9D-C11EAFB60016}
SUPPRIMÉ: FirewallRaz (Private) : {22A72FA4-0EB6-4E6B-A7AA-2A32F06F87CA}
SUPPRIMÉ: FirewallRaz (Private) : {F841F43C-C4A5-4C9A-9AC0-AA35ABDB4CD9}
SUPPRIMÉ: FirewallRaz (Private) : {6AEBF7BD-5B61-4943-BE6B-DBD12156CED4}
SUPPRIMÉ: FirewallRaz (Private) : {24FC75A7-8715-4DF6-A5F4-FF756405CA4A}
SUPPRIMÉ: FirewallRaz (Private) : {4AA17C5C-B777-474F-B247-A5FF34FE247E}
SUPPRIMÉ: FirewallRaz (Domain) : {891AE313-16DF-47BA-B431-5D865F3F18E6}
SUPPRIMÉ: FirewallRaz (Domain) : {A29DE0AF-7C2E-46C9-B96E-0B14B9E1544A}
SUPPRIMÉ: FirewallRaz (Domain) : {3B3CEB44-9C29-4E34-861C-8C05C79F176C}
SUPPRIMÉ: FirewallRaz (Domain) : {CFEE4A5D-B19D-46A4-9883-0E4B9241BF66}
SUPPRIMÉ: FirewallRaz (Private) : TCP Query User{651732B4-49E7-4F00-9126-7016F5147306}C:\program files (x86)\mirc\mirc.exe
SUPPRIMÉ: FirewallRaz (Private) : UDP Query User{CCB2E668-D01B-4E6F-BA6E-1628D5682375}C:\program files (x86)\mirc\mirc.exe
SUPPRIMÉ: FirewallRaz (Public) : TCP Query User{52EDAFC4-CDEA-4E76-9F0D-81AF4E25AC1E}C:\program files (x86)\permissionresearch\prmrsr.exe
SUPPRIMÉ: FirewallRaz (Public) : UDP Query User{AC73823D-D650-42B3-A83E-049FDEA8C03C}C:\program files (x86)\permissionresearch\prmrsr.exe
SUPPRIMÉ: FirewallRaz (Private) : {4577EFFD-A301-4317-907C-5B2A54571AB8}
SUPPRIMÉ: FirewallRaz (Private) : {2325479F-39F8-4B64-A2C0-B688F4434899}
SUPPRIMÉ: FirewallRaz (Private) : TCP Query User{190AAFE9-D526-4296-8312-3EAB86D2FA12}C:\users\allen\appdata\roaming\spotify\spotify.exe
SUPPRIMÉ: FirewallRaz (Private) : UDP Query User{F35052D7-2419-4A7A-AD84-12E68E2D7CE1}C:\users\allen\appdata\roaming\spotify\spotify.exe
SUPPRIMÉ: FirewallRaz (Public) : TCP Query User{5A75CD08-1E2D-40A9-BEC2-F618465E4684}C:\users\allen\appdata\roaming\spotify\spotify.exe
SUPPRIMÉ: FirewallRaz (Public) : UDP Query User{2BD2151D-9A5F-4143-AF78-D31C17373700}C:\users\allen\appdata\roaming\spotify\spotify.exe
SUPPRIMÉ: FirewallRaz (Public) : {BF4FCF1C-CD57-4574-BE44-3605178B2C90}
SUPPRIMÉ: FirewallRaz (Public) : {CE08F310-F0EE-47BF-9AD3-4593F11F9F03}
SUPPRIMÉ: FirewallRaz (Public) : {5D4AE996-7A92-4621-BDAD-462B116C81B2}
SUPPRIMÉ: FirewallRaz (Public) : {3580CAA8-ED04-42A2-9B63-AD475CFAA9FE}

========== Préférences navigateur ==========
PRESENT Chrome File: C:\Users\Allen\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
SUPPRIMÉ Chrome Site: http://astromenda.com/

========== Dossiers ==========
SUPPRIMÉS Temporaires Windows (916)
SUPPRIMÉS Flash Cookies (0)
SUPPRIMÉ: c:\program files\kmspico
SUPPRIMÉ: c:\program files (x86)\quicktime
SUPPRIMÉ: c:\programdata\microsoft\windows\start menu\programs\kmspico
SUPPRIMÉ: c:\users\allen\appdata\roaming\hmygsetting
SUPPRIMÉ: c:\users\allen\appdata\roaming\hola
SUPPRIMÉ: c:\users\allen\appdata\local\hola
SUPPRIMÉ: c:\users\allen\appdata\local\microsoft toolkit
SUPPRIMÉ: c:\users\allen\appdata\local\msfree inc

========== Fichiers ==========
SUPPRIMÉS Temporaires Windows (3074) (1,081,486,665 octets)
SUPPRIMÉS Flash Cookies (0) (0 octets)
SUPPRIMÉ: c:\program files\kmspico\service_kms.exe

========== Tache planifiée ==========
SUPPRIMÉ: Trigger KMS Activation

========== Autre ==========
NON TRAITÉ 3 - CFD: 02/03/2016 - [] AD -- C:\Program Files\KMSpico
NON TRAITÉ 3 - CFD: 30/04/2013 - [] D -- C:\Program Files (x86)\QuickTime
NON TRAITÉ 3 - CFD: 02/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
NON TRAITÉ 3 - CFD: 29/03/2016 - [0] D -- C:\Users\Allen\AppData\Roaming\HMYGSetting
NON TRAITÉ 3 - CFD: 07/04/2016 - [] D -- C:\Users\Allen\AppData\Roaming\Hola
NON TRAITÉ 3 - CFD: 04/03/2016 - [] D -- C:\Users\Allen\AppData\Local\Hola
NON TRAITÉ 3 - CFD: 30/04/2013 - [] D -- C:\Users\Allen\AppData\Local\Microsoft Toolkit
NON TRAITÉ 3 - CFD: 02/10/2016 - [] D -- C:\Users\Allen\AppData\Local\MSfree Inc
NON TRAITÉ [HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1]


========== Récapitulatif ==========
7 : Processus mémoire
4 : Clés du Registre
34 : Valeurs du Registre
10 : Dossiers
3 : Fichiers
3 : Logiciels
2 : Préférences navigateur
1 : Tache planifiée
9 : Autre


End of clean in 43mn AMs

========== Chemin de fichier rapport ==========
C:\Users\Allen\AppData\Roaming\ZHP\ZHPFix[R1].txt - 2016-10-25 7:46:24 AM [6858]
Thank you. Not only is it faster and clean, there's no 5 min of black screen on startup.
Posts
48725
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
June 23, 2020
15,237
Great, glad to help.
Everything was working fine yesterday. I rebooted my computer a few times to make sure it was alright and it was. But this morning I get that black screen again for a few minutes while the computer is fully loaded.
Posts
48725
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
June 23, 2020
15,237
Please, lets go over the ZHP Diag step again for me to analyze your report
>
Posts
48725
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
June 23, 2020

http://s000.tinyupload.com/?file_id=89721577808501015940
Posts
48725
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
June 23, 2020
15,237
Yep, infected again !

Here is your ZHPFix script:

Script ZHPFix
FirewallRaz
EmptyPrefetch
EmptyTemp
EmptyFlash
O42 - Logiciel: KMSpico - (...) [HKLM][64Bits] -- {8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1
3 - CFD: 26/10/2016 - [] D -- C:\Users\Allen\AppData\Roaming\Hola
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1
C:\Users\Allen\AppData\Roaming\Hola


Further more I would recommend that you delete:

C:\Program Files\Hola\app\hola

The above often contains trojans.

Important question !

Have you purchased the license for your Microsoft Office Software ?

Let me know
I just did the ZHPFix. Report is down there. I did uninstall Hola and deleted the hola folder as well. I'm not even using it anymore.

I've run another ZHPDiag and a dialog box pops at the end:

Items found on your station: 6
- HackTool.KMSpico
Superfluous.DriverToolkit
Superfluous.OnlineGames
Superfluous.Orphan
Toolbar.Graal
Superfluous.AudienceInsights

Here's the link for the new ZHPDiag Report:

http://s000.tinyupload.com/?file_id=23040175384429743736


Important answer !


I have not. Wanted to try it first.

Thank you for your help!

________________________________________________________

Rapport de ZHPFix 2015.10.19.9 par Nicolas Coolman, Update du 19/10/2015
Fichier d'export Registre :
Run by Allen at 2016-10-27 7:52:39 AM
High Elevated Privileges : OK
Windows 8 Business Edition, 64-bit Service Pack 1 (10586)

Corbeille vidée (01mn AMs)
Dossier Prefetcher vidé

========== Valeurs du Registre ==========
Aucune Valeur Standard Profile: FirewallRaz :
Aucune Valeur Domain Profile: FirewallRaz :

========== Dossiers ==========
SUPPRIMÉS Temporaires Windows (21)
SUPPRIMÉS Flash Cookies (0)
SUPPRIMÉ: c:\users\allen\appdata\roaming\hola

========== Fichiers ==========
SUPPRIMÉS Temporaires Windows (66) (5,318,371 octets)
SUPPRIMÉS Flash Cookies (0) (0 octets)

========== Autre ==========
NON TRAITÉ 3 - CFD: 26/10/2016 - [] D -- C:\Users\Allen\AppData\Roaming\Hola
NON TRAITÉ [HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1]


========== Récapitulatif ==========
2 : Valeurs du Registre
3 : Dossiers
2 : Fichiers
2 : Autre


End of clean in 07mn AMs

========== Chemin de fichier rapport ==========
C:\Users\Allen\AppData\Roaming\ZHP\ZHPFix[R1].txt - 2016-10-25 6:46:24 AM [6940]
C:\Users\Allen\AppData\Roaming\ZHP\ZHPFix[R2].txt - 2016-10-27 7:52:41 AM [1195]
Posts
48725
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
June 23, 2020
15,237
Allen,

You have not seen the end, your computer will get infected again soon and will get slow.

Unfortunately, I will not be allowed to help you any further because you are hacking.

Good luck in the future
How is that considered hacking? I'm using the free trial to evaluate if I will buy it or not. I already have a paid licensed for Office 2013...

Anyway thank's for your help.
Posts
48725
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
June 23, 2020
15,237 > allenz0rz
Allen

Explain:

HackTool.KMSpico it's in your computer ! It does not install by itself, it has to be downloaded and installed, it is only for Microsoft Office software.

P.S. It's also a trojan...beware
I honestly have no idea what it's doing on my computer. I don't want to have it and I don't need it at all...

Can't you help me?
Posts
48725
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
June 23, 2020
15,237
Do a search on your computer for kmspico and delete what is found. It should do the trick.

Cheers
That's how you're gonna help me, right? Wow... thank's.

I already told you: I don't want nor need this program. I am not a hacker. Can't you help me with that?
I think I've managed to get rid of KMSpico and a few other detected elements. Still stuck with Superfluous.Orphan. Could you please help me?
Posts
48725
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
June 23, 2020
15,237 > allenz0rz
I have managed to get rid of it on my own. Thanks for your help and time.
Posts
48725
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
June 23, 2020
15,237 > allenz0rz
Great, and you are welcome