1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Inactive [InActive] Dell Dimension 4600 very slow...

Discussion in 'Malware and Virus Removal Archive' started by Ingeniero1, 2009/03/15.

Thread Status:
Not open for further replies.
  1. 2009/03/15
    Ingeniero1 Contributing Member

    Ingeniero1 Inactive Thread Starter

    Joined:
    2004/05/27
    Messages:
    173
    Likes Received:
    0
    (Reposted here with DDS data per Arie's instruction.)

    Our 4-year old Dell Dimension 4600 computer, running XP/home and Office 2003 has slowed down to molasses-in-January speed. This is the computer that my wife uses.

    We don't get pop-ups, and everything works, but it takes minutes to do what used to be immediate or at worse just a few seconds to do.

    About a year ago we changed the hard drive and I reinstalled Office 2003, and everything worked fine for many months after that. However, starting a couple of weeks ago, it has gotten slower, and slower.

    I just noticed that I do not have Hijack this anymore, and wondered whether that still is the software that I should load and use for diagnostics.

    Please let me know where I should start to fix this problem.

    Thanks!

    Alex

    DDS data (two txt files follow)
    #####################################

    DDS (Ver_09-02-01.01) - NTFSx86
    Run by Owner at 10:08:05.76 on Sun 03/15/2009
    Internet Explorer: 6.0.2900.2180
    Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.510.176 [GMT -5:00]

    AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated)

    ============== Running Processes ===============

    F:\WINDOWS\system32\svchost -k DcomLaunch
    svchost.exe
    F:\WINDOWS\System32\svchost.exe -k netsvcs
    svchost.exe
    svchost.exe
    F:\WINDOWS\system32\spoolsv.exe
    F:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
    F:\Program Files\Java\jre6\bin\jqs.exe
    F:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    F:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    F:\PROGRA~1\AVG\AVG8\avgrsx.exe
    F:\WINDOWS\System32\tcpsvcs.exe
    F:\WINDOWS\System32\snmp.exe
    F:\WINDOWS\System32\svchost.exe -k imgsvc
    F:\PROGRA~1\AVG\AVG8\avgemc.exe
    F:\Program Files\AVG\AVG8\avgcsrvx.exe
    F:\PROGRA~1\AVG\AVG8\avgnsx.exe
    F:\WINDOWS\Explorer.EXE
    F:\PROGRA~1\AVG\AVG8\avgtray.exe
    F:\WINDOWS\BCMSMMSG.exe
    F:\Program Files\Internet Explorer\iexplore.exe
    F:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
    F:\Program Files\Java\jre6\bin\jusched.exe
    F:\WINDOWS\system32\ctfmon.exe
    F:\Documents and Settings\Owner\Desktop\dds.scr

    ============== Pseudo HJT Report ===============

    uStart Page = hxxp://www.google.com/
    BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - f:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
    BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - f:\program files\avg\avg8\avgssie.dll
    BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - f:\program files\microsoft\search enhancement pack\search helper\SearchHelper.dll
    BHO: AVG Security Toolbar: {a057a204-bacc-4d26-9990-79a187e2698e} - f:\progra~1\avg\avg8\AVGTOO~1.DLL
    BHO: MSN Toolbar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - f:\program files\msn\toolbar\3.0.1125.0\msneshellx.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - f:\program files\java\jre6\bin\jp2ssv.dll
    BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - f:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    TB: AVG Security Toolbar: {a057a204-bacc-4d26-9990-79a187e2698e} - f:\progra~1\avg\avg8\AVGTOO~1.DLL
    TB: MSN Toolbar: {1e61ed7c-7cb8-49d6-b9e9-ab4c880c8414} - f:\program files\msn\toolbar\3.0.1125.0\msneshellx.dll
    TB: {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
    EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
    uRun: [ctfmon.exe] f:\windows\system32\ctfmon.exe
    mRun: [IgfxTray] f:\windows\system32\igfxtray.exe
    mRun: [HotKeysCmds] f:\windows\system32\hkcmd.exe
    mRun: [AVG8_TRAY] f:\progra~1\avg\avg8\avgtray.exe
    mRun: [BCMSMMSG] BCMSMMSG.exe
    mRun: [Adobe Reader Speed Launcher] "f:\program files\adobe\reader 9.0\reader\Reader_sl.exe "
    mRun: [SunJavaUpdateSched] "f:\program files\java\jre6\bin\jusched.exe "
    mRun: [Microsoft Default Manager] "f:\program files\microsoft\search enhancement pack\default manager\DefMgr.exe" -resume
    IE: E&xport to Microsoft Excel - f:\progra~1\micros~3\office11\EXCEL.EXE/3000
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - f:\program files\messenger\msmsgs.exe
    IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - f:\progra~1\micros~3\office11\REFIEBAR.DLL
    DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1215575882140
    DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1215576337859
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_12-windows-i586.cab
    DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
    DPF: {CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_12-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_12-windows-i586.cab
    Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - f:\program files\avg\avg8\avgpp.dll
    Notify: avgrsstarter - avgrsstx.dll
    Notify: igfxcui - igfxsrvc.dll

    ============= SERVICES / DRIVERS ===============

    R1 AvgLdx86;AVG Free AVI Loader Driver x86;f:\windows\system32\drivers\avgldx86.sys [2008-7-9 325128]
    R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86;f:\windows\system32\drivers\avgmfx86.sys [2008-7-9 27656]
    R1 AvgTdiX;AVG Free8 Network Redirector;f:\windows\system32\drivers\avgtdix.sys [2008-7-9 107272]
    R2 avg8emc;AVG Free8 E-mail Scanner;f:\progra~1\avg\avg8\avgemc.exe [2008-7-9 903960]
    R2 avg8wd;AVG Free8 WatchDog;f:\progra~1\avg\avg8\avgwdsvc.exe [2008-7-9 298264]
    R2 SeaPort;SeaPort;f:\program files\microsoft\search enhancement pack\seaport\SeaPort.exe [2009-1-14 226656]

    =============== Created Last 30 ================


    ==================== Find3M ====================

    2009-02-09 05:19 1,846,272 a------- f:\windows\system32\win32k.sys
    2009-02-04 09:35 10,520 a------- f:\windows\system32\avgrsstx.dll
    2009-02-04 09:35 325,128 a------- f:\windows\system32\drivers\avgldx86.sys
    2009-02-04 09:35 107,272 a------- f:\windows\system32\drivers\avgtdix.sys

    ============= FINISH: 10:08:37.27 ===============

    ############################################
    Also, per "The scan will instruct you to post Attach.txt as an attachment. No need for that though ..... just post it's contents as you would any other log. " >>>
    ############################################

    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT

    DDS (Ver_09-02-01.01)

    Microsoft Windows XP Home Edition
    Boot Device: \Device\HarddiskVolume1
    Install Date: 7/8/2008 9:25:01 PM
    System Uptime: 3/11/2009 2:11:59 AM (104 hours ago)

    Motherboard: Dell Computer Corp. | | 0N2828
    Processor: Intel(R) Pentium(R) 4 CPU 2.66GHz | Microprocessor | 2660/533mhz

    ==== Disk Partitions =========================

    A: is Removable
    D: is CDROM ()
    E: is CDROM ()
    F: is FIXED (NTFS) - 75 GiB total, 64.727 GiB free.

    ==== Disabled Device Manager Items =============

    Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
    Description: Camera
    Device ID: USB\VID_046D&PID_092E\5&222F862C&0&1
    Manufacturer:
    Name: Camera
    PNP Device ID: USB\VID_046D&PID_092E\5&222F862C&0&1
    Service:

    ==== System Restore Points ===================

    RP203: 1/14/2009 3:01:04 AM - Software Distribution Service 3.0
    RP204: 1/15/2009 3:06:12 AM - System Checkpoint
    RP205: 1/16/2009 3:54:12 AM - System Checkpoint
    RP206: 1/17/2009 4:23:35 AM - System Checkpoint
    RP207: 1/18/2009 5:23:39 AM - System Checkpoint
    RP208: 1/19/2009 6:49:19 AM - System Checkpoint
    RP209: 1/20/2009 7:15:29 AM - System Checkpoint
    RP210: 1/21/2009 8:16:31 AM - System Checkpoint
    RP211: 1/22/2009 9:15:26 AM - System Checkpoint
    RP212: 1/23/2009 10:15:28 AM - System Checkpoint
    RP213: 1/24/2009 10:54:10 AM - System Checkpoint
    RP214: 1/25/2009 11:27:12 AM - System Checkpoint
    RP215: 1/26/2009 12:25:10 PM - System Checkpoint
    RP216: 1/27/2009 12:26:07 PM - System Checkpoint
    RP217: 1/28/2009 1:26:09 PM - System Checkpoint
    RP218: 1/29/2009 2:26:08 PM - System Checkpoint
    RP219: 1/30/2009 3:26:11 PM - System Checkpoint
    RP220: 1/31/2009 4:43:44 PM - System Checkpoint
    RP221: 2/1/2009 5:25:05 PM - System Checkpoint
    RP222: 2/2/2009 5:35:58 PM - System Checkpoint
    RP223: 2/3/2009 8:36:02 AM - Avg8 Update
    RP224: 2/4/2009 8:36:02 AM - Avg8 Update
    RP225: 2/5/2009 9:24:00 AM - System Checkpoint
    RP226: 2/6/2009 9:25:04 AM - System Checkpoint
    RP227: 2/7/2009 9:29:49 AM - System Checkpoint
    RP228: 2/8/2009 9:41:28 AM - System Checkpoint
    RP229: 2/9/2009 10:28:04 AM - System Checkpoint
    RP230: 2/10/2009 11:28:02 AM - System Checkpoint
    RP231: 2/11/2009 3:00:39 AM - Software Distribution Service 3.0
    RP232: 2/12/2009 3:28:02 AM - System Checkpoint
    RP233: 2/13/2009 4:28:03 AM - System Checkpoint
    RP234: 2/14/2009 5:28:02 AM - System Checkpoint
    RP235: 2/14/2009 8:40:21 PM - Avg8 Update
    RP236: 2/15/2009 9:35:21 PM - System Checkpoint
    RP237: 2/16/2009 9:30:40 AM - Avg8 Update
    RP238: 2/17/2009 9:40:58 AM - System Checkpoint
    RP239: 2/18/2009 10:40:58 AM - System Checkpoint
    RP240: 2/19/2009 11:40:58 AM - System Checkpoint
    RP241: 2/20/2009 12:40:59 PM - System Checkpoint
    RP242: 2/21/2009 1:45:02 PM - System Checkpoint
    RP243: 2/22/2009 2:40:57 PM - System Checkpoint
    RP244: 2/23/2009 3:40:56 PM - System Checkpoint
    RP245: 2/24/2009 4:41:00 PM - System Checkpoint
    RP246: 2/25/2009 3:00:26 AM - Software Distribution Service 3.0
    RP247: 2/26/2009 3:14:18 AM - System Checkpoint
    RP248: 2/27/2009 3:00:27 AM - Software Distribution Service 3.0
    RP249: 2/28/2009 3:11:37 AM - System Checkpoint
    RP250: 3/1/2009 4:11:36 AM - System Checkpoint
    RP251: 3/2/2009 4:25:37 AM - System Checkpoint
    RP252: 3/3/2009 5:26:06 AM - System Checkpoint
    RP253: 3/4/2009 6:12:42 AM - System Checkpoint
    RP254: 3/4/2009 9:50:41 AM - Avg8 Update
    RP255: 3/5/2009 10:11:36 AM - System Checkpoint
    RP256: 3/6/2009 11:11:36 AM - System Checkpoint
    RP257: 3/7/2009 11:12:41 AM - System Checkpoint
    RP258: 3/8/2009 8:27:03 AM - Installed Java(TM) 6 Update 12
    RP259: 3/8/2009 8:31:42 AM - Installed MSN Toolbar Setup
    RP260: 3/9/2009 8:44:28 AM - System Checkpoint
    RP261: 3/10/2009 9:44:33 AM - System Checkpoint
    RP262: 3/11/2009 2:00:43 AM - Software Distribution Service 3.0
    RP263: 3/12/2009 2:19:12 AM - System Checkpoint
    RP264: 3/13/2009 2:00:25 AM - Software Distribution Service 3.0
    RP265: 3/14/2009 2:19:06 AM - System Checkpoint
    RP266: 3/15/2009 4:33:05 AM - System Checkpoint

    ==== Installed Programs ======================

    Acrobat.com
    Adobe AIR
    Adobe Flash Player ActiveX
    Adobe Reader 9
    AVG Free 8.0
    BCM V.92 56K Modem
    Dell ResourceCD
    Google Earth
    Hotfix for Windows XP (KB952287)
    InstallMgr
    Intel(R) Extreme Graphics Driver
    Intel(R) PRO Network Adapters and Drivers
    IrfanView (remove only)
    Java(TM) 6 Update 12
    Microsoft .NET Framework (English)
    Microsoft .NET Framework (English) v1.0.3705
    Microsoft .NET Framework 1.0 Hotfix (KB928367)
    Microsoft Default Manager
    Microsoft Office Standard Edition 2003
    Microsoft Search Enhancement Pack
    Microsoft Silverlight
    Microsoft Streets and Trips 2002
    Microsoft Visual C++ 2005 Redistributable
    MSN Toolbar
    Security Update for Windows Media Player (KB911564)
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player 6.4 (KB925398)
    Security Update for Windows Media Player 9 (KB911565)
    Security Update for Windows Media Player 9 (KB936782)
    Security Update for Windows XP (KB890046)
    Security Update for Windows XP (KB893756)
    Security Update for Windows XP (KB896358)
    Security Update for Windows XP (KB896423)
    Security Update for Windows XP (KB896424)
    Security Update for Windows XP (KB896428)
    Security Update for Windows XP (KB899587)
    Security Update for Windows XP (KB899591)
    Security Update for Windows XP (KB900725)
    Security Update for Windows XP (KB901017)
    Security Update for Windows XP (KB901214)
    Security Update for Windows XP (KB902400)
    Security Update for Windows XP (KB904706)
    Security Update for Windows XP (KB905414)
    Security Update for Windows XP (KB905749)
    Security Update for Windows XP (KB908519)
    Security Update for Windows XP (KB911562)
    Security Update for Windows XP (KB911927)
    Security Update for Windows XP (KB912919)
    Security Update for Windows XP (KB913580)
    Security Update for Windows XP (KB914388)
    Security Update for Windows XP (KB914389)
    Security Update for Windows XP (KB917344)
    Security Update for Windows XP (KB917422)
    Security Update for Windows XP (KB917953)
    Security Update for Windows XP (KB918118)
    Security Update for Windows XP (KB918439)
    Security Update for Windows XP (KB919007)
    Security Update for Windows XP (KB920213)
    Security Update for Windows XP (KB920670)
    Security Update for Windows XP (KB920683)
    Security Update for Windows XP (KB920685)
    Security Update for Windows XP (KB921398)
    Security Update for Windows XP (KB921883)
    Security Update for Windows XP (KB922616)
    Security Update for Windows XP (KB922819)
    Security Update for Windows XP (KB923191)
    Security Update for Windows XP (KB923414)
    Security Update for Windows XP (KB923789)
    Security Update for Windows XP (KB923980)
    Security Update for Windows XP (KB924191)
    Security Update for Windows XP (KB924270)
    Security Update for Windows XP (KB924496)
    Security Update for Windows XP (KB924667)
    Security Update for Windows XP (KB925902)
    Security Update for Windows XP (KB926247)
    Security Update for Windows XP (KB926255)
    Security Update for Windows XP (KB926436)
    Security Update for Windows XP (KB927779)
    Security Update for Windows XP (KB927802)
    Security Update for Windows XP (KB928255)
    Security Update for Windows XP (KB928843)
    Security Update for Windows XP (KB929123)
    Security Update for Windows XP (KB930178)
    Security Update for Windows XP (KB931261)
    Security Update for Windows XP (KB931784)
    Security Update for Windows XP (KB932168)
    Security Update for Windows XP (KB933729)
    Security Update for Windows XP (KB935839)
    Security Update for Windows XP (KB935840)
    Security Update for Windows XP (KB936021)
    Security Update for Windows XP (KB938127)
    Security Update for Windows XP (KB938464)
    Security Update for Windows XP (KB941202)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB941693)
    Security Update for Windows XP (KB943055)
    Security Update for Windows XP (KB943460)
    Security Update for Windows XP (KB943485)
    Security Update for Windows XP (KB944338)
    Security Update for Windows XP (KB944653)
    Security Update for Windows XP (KB945553)
    Security Update for Windows XP (KB946026)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB948590)
    Security Update for Windows XP (KB950749)
    Security Update for Windows XP (KB950759)
    Security Update for Windows XP (KB950760)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951698)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB953838)
    Security Update for Windows XP (KB953839)
    Security Update for Windows XP (KB954211)
    Security Update for Windows XP (KB954600)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956390)
    Security Update for Windows XP (KB956391)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956841)
    Security Update for Windows XP (KB957095)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958215)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB958690)
    Security Update for Windows XP (KB960225)
    Security Update for Windows XP (KB960714)
    Security Update for Windows XP (KB960715)
    Update for Windows XP (KB894391)
    Update for Windows XP (KB898461)
    Update for Windows XP (KB900485)
    Update for Windows XP (KB908531)
    Update for Windows XP (KB910437)
    Update for Windows XP (KB911280)
    Update for Windows XP (KB916595)
    Update for Windows XP (KB920872)
    Update for Windows XP (KB922582)
    Update for Windows XP (KB927891)
    Update for Windows XP (KB930916)
    Update for Windows XP (KB936357)
    Update for Windows XP (KB938828)
    Update for Windows XP (KB942763)
    Update for Windows XP (KB951072-v2)
    Update for Windows XP (KB955839)
    Update for Windows XP (KB967715)
    WebFldrs XP
    Windows Genuine Advantage Validation Tool (KB892130)
    Windows Installer 3.1 (KB893803)
    Windows XP Hotfix - KB873333
    Windows XP Hotfix - KB873339
    Windows XP Hotfix - KB885835
    Windows XP Hotfix - KB885836
    Windows XP Hotfix - KB886185
    Windows XP Hotfix - KB887472
    Windows XP Hotfix - KB888302
    Windows XP Hotfix - KB890859
    Windows XP Hotfix - KB891781
    Windows XP Service Pack 2

    ==== End Of File ===========================

    ###########################################
    Thanks for your time,
    Alex
     
  2. 2009/03/19
    Juliet

    Juliet Well-Known Member

    Joined:
    2008/09/15
    Messages:
    976
    Likes Received:
    6
    Hi and welcome, sorry for the wait.

    Nothing obvious in logs that would suggest malware.
    What we can do is run checks to see if we can catch anything.


    Print this topic or save to notepad, it will make it easier for you to follow the instructions and complete all of the necessary steps as we will need to close all windows that are open later in the fix.



    Please download ATF Cleaner by Atribune From Here and save it to your Desktop.
    Follow the instructions for the browser you use.
    Read the instructions about the cookies. Delete what you do not need.

    Double click ATF-Cleaner.exe to run the program.
    Check the boxes to the left of:
    Windows Temp
    Current User Temp
    All Users Temp
    Temporary Internet Files
    Java Cache

    The rest are optional - if you want to remove the lot, check "Select All ".
    Finally click Empty Selected. When you get the "Done Cleaning " message, click OK.
    If you use the Firefox or Opera browsers, you can use this program
    as a quick way to tidy those up as well.
    When you have finished, click on the Exit button in the Main menu.
    ========================




    Please download Malwarebytes' Anti-Malware to your desktop

    Additional Link

    * Double-click mbam-setup.exe and follow the prompts to install the program.
    * Be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
    * If an update is found, it will download and install the latest version.
    * Once the program has loaded, select Perform quick scan, then click Scan.
    * When the scan is complete, click OK, then Show Results to view the results.
    * Be sure that everything is checked, and click Remove Selected.
    * When completed, a log will open in Notepad. Please save it to a convenient location.
    * You can also access the log by doing the following:

    o Click on the Malwarebytes' Anti-Malware icon to launch the program.
    o Click on the Logs tab.
    o Click on the log at the bottom of those listed to highlight it.
    o Click Open.

    Tutorial if needed
    http://thespykiller.co.uk/index.php/topic,5946.0.html

    Extra Note:
    If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediatly.



    In your next reply post:
    Malwarebytes' Anti-Malware log
    New DDS log


    You may need several replies to post the requested logs, otherwise they might get cut off.
     

  3. to hide this advert.

  4. 2009/03/21
    Ingeniero1 Contributing Member

    Ingeniero1 Inactive Thread Starter

    Joined:
    2004/05/27
    Messages:
    173
    Likes Received:
    0
    Juliet,

    (1) Ran ATF Cleaner as you indicated and it cleaned up 581 MB.

    (2) Ran Malawarebyte's Anti-Malaware as you indicated and when done it said:
    "The scan completed successfully. No malicious items detected. Click Main Menu. "

    Q1. Should I still run and post a new DDS log?

    The computer still is acting the same, but I have noticed that sometimes it appears to run at normal speed (as it did several weeks ago) and other times it is very slow. By slow I mean that instead of opening the IE Browser in a second or so, it may take it 30 seconds, and the same to start running MS XL or Word, for example. But once the programs start running, they run fine.

    Q2: Could it be AVG scanning that is slowing things down?
    We have two AVG icons at the bottom right hand side. One says "AVG running scans" and the other "AVG antivirus Free ". I have tried clicking on the "Stop all Scans" of the former, but cannot detect any difference in rrunning speed, nor is there any indication that anything changed, and the icon still says "AVG running scans ".

    Thank you very much for your help.

    Alex
     
  5. 2009/03/21
    Juliet

    Juliet Well-Known Member

    Joined:
    2008/09/15
    Messages:
    976
    Likes Received:
    6
    It's possible.

    I think you will either have to open the AVG control panel and stop the scan, or open taskmanager and find the one of the AVG.exe's thats running and end stop.

    Or, reboot the computer but they may just send it back into scanning.
    Might be your AVG has gone just a tiddle bit bonkers.

    Thats really not a big issue, there are other free Antivirus you can replace it with ..IF..you can't get it under control.
     
  6. 2009/03/23
    Ingeniero1 Contributing Member

    Ingeniero1 Inactive Thread Starter

    Joined:
    2004/05/27
    Messages:
    173
    Likes Received:
    0
    Hey Juliet,
    I took the afternoon off work to work on this and ran into a brick wall. I tried to remove AVG using 'Remove Programs' from the 'Control Panel', but after waiting 30 seconds for the control panel alone to display (used to be immediate) I waited minutes for the list of installled programs, and it never showed up.

    I rebooted twice and it did the same thing each time; no show. So I Ctrl-Alt-Del to see the Applications and Processes running, and there appeared to be way too many processes. So I ran DDS again and to post it - below.

    If you cannot detect a problem, I wonder if it is not malaware or virus but something else that is the culprit, and whether someone in the Windows XP section would have an idea? For all I know it may even be something like the Windows updater that is causing the problems...

    Thank you for your help!
    Alex

    DDS Logs:

    DDS (Ver_09-02-01.01) - NTFSx86
    Run by Owner at 12:21:11.12 on Mon 03/23/2009
    Internet Explorer: 6.0.2900.2180
    Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.510.274 [GMT -5:00]

    AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated)

    ============== Running Processes ===============

    F:\WINDOWS\system32\svchost -k DcomLaunch
    svchost.exe
    F:\WINDOWS\System32\svchost.exe -k netsvcs
    svchost.exe
    svchost.exe
    F:\WINDOWS\system32\spoolsv.exe
    F:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
    F:\Program Files\Java\jre6\bin\jqs.exe
    F:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    F:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    F:\WINDOWS\System32\tcpsvcs.exe
    F:\WINDOWS\System32\snmp.exe
    F:\WINDOWS\System32\svchost.exe -k imgsvc
    F:\PROGRA~1\AVG\AVG8\avgemc.exe
    F:\PROGRA~1\AVG\AVG8\avgrsx.exe
    F:\PROGRA~1\AVG\AVG8\avgnsx.exe
    F:\Program Files\AVG\AVG8\avgcsrvx.exe
    F:\WINDOWS\Explorer.EXE
    F:\PROGRA~1\AVG\AVG8\avgtray.exe
    F:\WINDOWS\BCMSMMSG.exe
    F:\Program Files\Java\jre6\bin\jusched.exe
    F:\WINDOWS\system32\ctfmon.exe
    F:\WINDOWS\system32\wuauclt.exe
    F:\Documents and Settings\Owner\Desktop\dds.scr

    ============== Pseudo HJT Report ===============

    uStart Page = hxxp://www.google.com/
    BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - f:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
    BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - f:\program files\avg\avg8\avgssie.dll
    BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - f:\program files\microsoft\search enhancement pack\search helper\SearchHelper.dll
    BHO: AVG Security Toolbar: {a057a204-bacc-4d26-9990-79a187e2698e} - f:\progra~1\avg\avg8\AVGTOO~1.DLL
    BHO: MSN Toolbar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - f:\program files\msn\toolbar\3.0.1125.0\msneshellx.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - f:\program files\java\jre6\bin\jp2ssv.dll
    BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - f:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    TB: AVG Security Toolbar: {a057a204-bacc-4d26-9990-79a187e2698e} - f:\progra~1\avg\avg8\AVGTOO~1.DLL
    TB: MSN Toolbar: {1e61ed7c-7cb8-49d6-b9e9-ab4c880c8414} - f:\program files\msn\toolbar\3.0.1125.0\msneshellx.dll
    TB: {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
    EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
    uRun: [ctfmon.exe] f:\windows\system32\ctfmon.exe
    mRun: [IgfxTray] f:\windows\system32\igfxtray.exe
    mRun: [HotKeysCmds] f:\windows\system32\hkcmd.exe
    mRun: [AVG8_TRAY] f:\progra~1\avg\avg8\avgtray.exe
    mRun: [BCMSMMSG] BCMSMMSG.exe
    mRun: [Adobe Reader Speed Launcher] "f:\program files\adobe\reader 9.0\reader\Reader_sl.exe "
    mRun: [SunJavaUpdateSched] "f:\program files\java\jre6\bin\jusched.exe "
    mRun: [Microsoft Default Manager] "f:\program files\microsoft\search enhancement pack\default manager\DefMgr.exe" -resume
    IE: E&xport to Microsoft Excel - f:\progra~1\micros~3\office11\EXCEL.EXE/3000
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - f:\program files\messenger\msmsgs.exe
    IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - f:\progra~1\micros~3\office11\REFIEBAR.DLL
    DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1215575882140
    DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1215576337859
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_12-windows-i586.cab
    DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
    DPF: {CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_12-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_12-windows-i586.cab
    Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - f:\program files\avg\avg8\avgpp.dll
    Notify: avgrsstarter - avgrsstx.dll
    Notify: igfxcui - igfxsrvc.dll

    ============= SERVICES / DRIVERS ===============

    R1 AvgLdx86;AVG Free AVI Loader Driver x86;f:\windows\system32\drivers\avgldx86.sys [2008-7-9 325128]
    R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86;f:\windows\system32\drivers\avgmfx86.sys [2008-7-9 27656]
    R1 AvgTdiX;AVG Free8 Network Redirector;f:\windows\system32\drivers\avgtdix.sys [2008-7-9 107272]
    R2 avg8emc;AVG Free8 E-mail Scanner;f:\progra~1\avg\avg8\avgemc.exe [2008-7-9 903960]
    R2 avg8wd;AVG Free8 WatchDog;f:\progra~1\avg\avg8\avgwdsvc.exe [2008-7-9 298264]
    R2 SeaPort;SeaPort;f:\program files\microsoft\search enhancement pack\seaport\SeaPort.exe [2009-1-14 226656]

    =============== Created Last 30 ================

    2009-03-21 07:50 <DIR> --d----- f:\docume~1\owner\applic~1\Malwarebytes
    2009-03-21 07:50 15,504 a------- f:\windows\system32\drivers\mbam.sys
    2009-03-21 07:50 38,496 a------- f:\windows\system32\drivers\mbamswissarmy.sys
    2009-03-21 07:50 <DIR> --d----- f:\docume~1\alluse~1\applic~1\Malwarebytes
    2009-03-21 07:50 <DIR> --d----- f:\program files\Malwarebytes' Anti-Malware
    2009-03-08 09:49 <DIR> --d----- f:\program files\Microsoft
    2009-03-08 09:27 73,728 a------- f:\windows\system32\javacpl.cpl
    2009-03-08 09:27 410,984 a------- f:\windows\system32\deploytk.dll

    ==================== Find3M ====================

    2009-02-09 05:19 1,846,272 a------- f:\windows\system32\win32k.sys
    2009-02-04 09:35 10,520 a------- f:\windows\system32\avgrsstx.dll
    2009-02-04 09:35 325,128 a------- f:\windows\system32\drivers\avgldx86.sys
    2009-02-04 09:35 107,272 a------- f:\windows\system32\drivers\avgtdix.sys

    ============= FINISH: 12:21:39.83 ===============


    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT

    DDS (Ver_09-02-01.01)

    Microsoft Windows XP Home Edition
    Boot Device: \Device\HarddiskVolume1
    Install Date: 7/8/2008 9:25:01 PM
    System Uptime: 3/23/2009 12:05:41 PM (0 hours ago)

    Motherboard: Dell Computer Corp. | | 0N2828
    Processor: Intel(R) Pentium(R) 4 CPU 2.66GHz | Microprocessor | 2660/533mhz

    ==== Disk Partitions =========================

    A: is Removable
    D: is CDROM ()
    E: is CDROM ()
    F: is FIXED (NTFS) - 75 GiB total, 65.145 GiB free.

    ==== Disabled Device Manager Items =============

    Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
    Description: Camera
    Device ID: USB\VID_046D&PID_092E\5&222F862C&0&1
    Manufacturer:
    Name: Camera
    PNP Device ID: USB\VID_046D&PID_092E\5&222F862C&0&1
    Service:

    ==== System Restore Points ===================

    RP203: 1/14/2009 3:01:04 AM - Software Distribution Service 3.0
    RP204: 1/15/2009 3:06:12 AM - System Checkpoint
    RP205: 1/16/2009 3:54:12 AM - System Checkpoint
    RP206: 1/17/2009 4:23:35 AM - System Checkpoint
    RP207: 1/18/2009 5:23:39 AM - System Checkpoint
    RP208: 1/19/2009 6:49:19 AM - System Checkpoint
    RP209: 1/20/2009 7:15:29 AM - System Checkpoint
    RP210: 1/21/2009 8:16:31 AM - System Checkpoint
    RP211: 1/22/2009 9:15:26 AM - System Checkpoint
    RP212: 1/23/2009 10:15:28 AM - System Checkpoint
    RP213: 1/24/2009 10:54:10 AM - System Checkpoint
    RP214: 1/25/2009 11:27:12 AM - System Checkpoint
    RP215: 1/26/2009 12:25:10 PM - System Checkpoint
    RP216: 1/27/2009 12:26:07 PM - System Checkpoint
    RP217: 1/28/2009 1:26:09 PM - System Checkpoint
    RP218: 1/29/2009 2:26:08 PM - System Checkpoint
    RP219: 1/30/2009 3:26:11 PM - System Checkpoint
    RP220: 1/31/2009 4:43:44 PM - System Checkpoint
    RP221: 2/1/2009 5:25:05 PM - System Checkpoint
    RP222: 2/2/2009 5:35:58 PM - System Checkpoint
    RP223: 2/3/2009 8:36:02 AM - Avg8 Update
    RP224: 2/4/2009 8:36:02 AM - Avg8 Update
    RP225: 2/5/2009 9:24:00 AM - System Checkpoint
    RP226: 2/6/2009 9:25:04 AM - System Checkpoint
    RP227: 2/7/2009 9:29:49 AM - System Checkpoint
    RP228: 2/8/2009 9:41:28 AM - System Checkpoint
    RP229: 2/9/2009 10:28:04 AM - System Checkpoint
    RP230: 2/10/2009 11:28:02 AM - System Checkpoint
    RP231: 2/11/2009 3:00:39 AM - Software Distribution Service 3.0
    RP232: 2/12/2009 3:28:02 AM - System Checkpoint
    RP233: 2/13/2009 4:28:03 AM - System Checkpoint
    RP234: 2/14/2009 5:28:02 AM - System Checkpoint
    RP235: 2/14/2009 8:40:21 PM - Avg8 Update
    RP236: 2/15/2009 9:35:21 PM - System Checkpoint
    RP237: 2/16/2009 9:30:40 AM - Avg8 Update
    RP238: 2/17/2009 9:40:58 AM - System Checkpoint
    RP239: 2/18/2009 10:40:58 AM - System Checkpoint
    RP240: 2/19/2009 11:40:58 AM - System Checkpoint
    RP241: 2/20/2009 12:40:59 PM - System Checkpoint
    RP242: 2/21/2009 1:45:02 PM - System Checkpoint
    RP243: 2/22/2009 2:40:57 PM - System Checkpoint
    RP244: 2/23/2009 3:40:56 PM - System Checkpoint
    RP245: 2/24/2009 4:41:00 PM - System Checkpoint
    RP246: 2/25/2009 3:00:26 AM - Software Distribution Service 3.0
    RP247: 2/26/2009 3:14:18 AM - System Checkpoint
    RP248: 2/27/2009 3:00:27 AM - Software Distribution Service 3.0
    RP249: 2/28/2009 3:11:37 AM - System Checkpoint
    RP250: 3/1/2009 4:11:36 AM - System Checkpoint
    RP251: 3/2/2009 4:25:37 AM - System Checkpoint
    RP252: 3/3/2009 5:26:06 AM - System Checkpoint
    RP253: 3/4/2009 6:12:42 AM - System Checkpoint
    RP254: 3/4/2009 9:50:41 AM - Avg8 Update
    RP255: 3/5/2009 10:11:36 AM - System Checkpoint
    RP256: 3/6/2009 11:11:36 AM - System Checkpoint
    RP257: 3/7/2009 11:12:41 AM - System Checkpoint
    RP258: 3/8/2009 8:27:03 AM - Installed Java(TM) 6 Update 12
    RP259: 3/8/2009 8:31:42 AM - Installed MSN Toolbar Setup
    RP260: 3/9/2009 8:44:28 AM - System Checkpoint
    RP261: 3/10/2009 9:44:33 AM - System Checkpoint
    RP262: 3/11/2009 2:00:43 AM - Software Distribution Service 3.0
    RP263: 3/12/2009 2:19:12 AM - System Checkpoint
    RP264: 3/13/2009 2:00:25 AM - Software Distribution Service 3.0
    RP265: 3/14/2009 2:19:06 AM - System Checkpoint
    RP266: 3/15/2009 4:33:05 AM - System Checkpoint
    RP267: 3/16/2009 5:19:04 AM - System Checkpoint
    RP268: 3/17/2009 6:20:10 AM - System Checkpoint
    RP269: 3/18/2009 9:29:25 AM - Avg8 Update
    RP270: 3/19/2009 9:05:24 PM - System Checkpoint
    RP271: 3/20/2009 9:12:02 PM - System Checkpoint
    RP272: 3/22/2009 7:19:03 AM - System Checkpoint

    ==== Installed Programs ======================

    Acrobat.com
    Adobe AIR
    Adobe Flash Player ActiveX
    Adobe Reader 9
    AVG Free 8.0
    BCM V.92 56K Modem
    Dell ResourceCD
    Google Earth
    Hotfix for Windows XP (KB952287)
    InstallMgr
    Intel(R) Extreme Graphics Driver
    Intel(R) PRO Network Adapters and Drivers
    IrfanView (remove only)
    Java(TM) 6 Update 12
    Malwarebytes' Anti-Malware
    Microsoft .NET Framework (English)
    Microsoft .NET Framework (English) v1.0.3705
    Microsoft .NET Framework 1.0 Hotfix (KB928367)
    Microsoft Default Manager
    Microsoft Office Standard Edition 2003
    Microsoft Search Enhancement Pack
    Microsoft Silverlight
    Microsoft Streets and Trips 2002
    Microsoft Visual C++ 2005 Redistributable
    MSN Toolbar
    Security Update for Windows Media Player (KB911564)
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player 6.4 (KB925398)
    Security Update for Windows Media Player 9 (KB911565)
    Security Update for Windows Media Player 9 (KB936782)
    Security Update for Windows XP (KB890046)
    Security Update for Windows XP (KB893756)
    Security Update for Windows XP (KB896358)
    Security Update for Windows XP (KB896423)
    Security Update for Windows XP (KB896424)
    Security Update for Windows XP (KB896428)
    Security Update for Windows XP (KB899587)
    Security Update for Windows XP (KB899591)
    Security Update for Windows XP (KB900725)
    Security Update for Windows XP (KB901017)
    Security Update for Windows XP (KB901214)
    Security Update for Windows XP (KB902400)
    Security Update for Windows XP (KB904706)
    Security Update for Windows XP (KB905414)
    Security Update for Windows XP (KB905749)
    Security Update for Windows XP (KB908519)
    Security Update for Windows XP (KB911562)
    Security Update for Windows XP (KB911927)
    Security Update for Windows XP (KB912919)
    Security Update for Windows XP (KB913580)
    Security Update for Windows XP (KB914388)
    Security Update for Windows XP (KB914389)
    Security Update for Windows XP (KB917344)
    Security Update for Windows XP (KB917422)
    Security Update for Windows XP (KB917953)
    Security Update for Windows XP (KB918118)
    Security Update for Windows XP (KB918439)
    Security Update for Windows XP (KB919007)
    Security Update for Windows XP (KB920213)
    Security Update for Windows XP (KB920670)
    Security Update for Windows XP (KB920683)
    Security Update for Windows XP (KB920685)
    Security Update for Windows XP (KB921398)
    Security Update for Windows XP (KB921883)
    Security Update for Windows XP (KB922616)
    Security Update for Windows XP (KB922819)
    Security Update for Windows XP (KB923191)
    Security Update for Windows XP (KB923414)
    Security Update for Windows XP (KB923789)
    Security Update for Windows XP (KB923980)
    Security Update for Windows XP (KB924191)
    Security Update for Windows XP (KB924270)
    Security Update for Windows XP (KB924496)
    Security Update for Windows XP (KB924667)
    Security Update for Windows XP (KB925902)
    Security Update for Windows XP (KB926247)
    Security Update for Windows XP (KB926255)
    Security Update for Windows XP (KB926436)
    Security Update for Windows XP (KB927779)
    Security Update for Windows XP (KB927802)
    Security Update for Windows XP (KB928255)
    Security Update for Windows XP (KB928843)
    Security Update for Windows XP (KB929123)
    Security Update for Windows XP (KB930178)
    Security Update for Windows XP (KB931261)
    Security Update for Windows XP (KB931784)
    Security Update for Windows XP (KB932168)
    Security Update for Windows XP (KB933729)
    Security Update for Windows XP (KB935839)
    Security Update for Windows XP (KB935840)
    Security Update for Windows XP (KB936021)
    Security Update for Windows XP (KB938127)
    Security Update for Windows XP (KB938464)
    Security Update for Windows XP (KB941202)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB941693)
    Security Update for Windows XP (KB943055)
    Security Update for Windows XP (KB943460)
    Security Update for Windows XP (KB943485)
    Security Update for Windows XP (KB944338)
    Security Update for Windows XP (KB944653)
    Security Update for Windows XP (KB945553)
    Security Update for Windows XP (KB946026)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB948590)
    Security Update for Windows XP (KB950749)
    Security Update for Windows XP (KB950759)
    Security Update for Windows XP (KB950760)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951698)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB953838)
    Security Update for Windows XP (KB953839)
    Security Update for Windows XP (KB954211)
    Security Update for Windows XP (KB954600)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956390)
    Security Update for Windows XP (KB956391)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956841)
    Security Update for Windows XP (KB957095)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958215)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB958690)
    Security Update for Windows XP (KB960225)
    Security Update for Windows XP (KB960714)
    Security Update for Windows XP (KB960715)
    Update for Windows XP (KB894391)
    Update for Windows XP (KB898461)
    Update for Windows XP (KB900485)
    Update for Windows XP (KB908531)
    Update for Windows XP (KB910437)
    Update for Windows XP (KB911280)
    Update for Windows XP (KB916595)
    Update for Windows XP (KB920872)
    Update for Windows XP (KB922582)
    Update for Windows XP (KB927891)
    Update for Windows XP (KB930916)
    Update for Windows XP (KB936357)
    Update for Windows XP (KB938828)
    Update for Windows XP (KB942763)
    Update for Windows XP (KB951072-v2)
    Update for Windows XP (KB955839)
    Update for Windows XP (KB967715)
    WebFldrs XP
    Windows Genuine Advantage Validation Tool (KB892130)
    Windows Installer 3.1 (KB893803)
    Windows XP Hotfix - KB873333
    Windows XP Hotfix - KB873339
    Windows XP Hotfix - KB885835
    Windows XP Hotfix - KB885836
    Windows XP Hotfix - KB886185
    Windows XP Hotfix - KB887472
    Windows XP Hotfix - KB888302
    Windows XP Hotfix - KB890859
    Windows XP Hotfix - KB891781
    Windows XP Service Pack 2

    ==== End Of File ===========================
     
  7. 2009/03/23
    Juliet

    Juliet Well-Known Member

    Joined:
    2008/09/15
    Messages:
    976
    Likes Received:
    6
    Welcome back

    AVG has a removal tool
    http://www.avg.com/download-tools

    Please have another antivirus in place and ready to install if removing.


    **
    Let's try an online scan before we say no malware.

    Please download ATF Cleaner by Atribune From Here and save it to your Desktop.
    Follow the instructions for the browser you use.
    Read the instructions about the cookies. Delete what you do not need.

    Double click ATF-Cleaner.exe to run the program.
    Check the boxes to the left of:
    Windows Temp
    Current User Temp
    All Users Temp
    Temporary Internet Files
    Java Cache

    The rest are optional - if you want to remove the lot, check "Select All ".
    Finally click Empty Selected. When you get the "Done Cleaning " message, click OK.
    If you use the Firefox or Opera browsers, you can use this program
    as a quick way to tidy those up as well.
    When you have finished, click on the Exit button in the Main menu.
    ========================



    NEXT**
    I'd like for you to run this next online scan to check for remnants or anything that might be hidden.
    The below scan can take up to an hour or longer, please be patient.

    *Note
    It is recommended to disable onboard antivirus program and antispyware programs while performing scans so no conflicts and to speed up scan time.
    Please don't go surfing while your resident protection is disabled!
    Once scan is finished remember to re-enable resident antivirus protection along with whatever antispyware app you use.


    Using Internet Explorer, visit http://www.kaspersky.com/service?chapter=161739400

    Other available links
    Kaspersky Online Scanner or from here
    http://www.kaspersky.com/virusscanner

    Note: If you are using Windows Vista, open your browser by right-clicking on its icon and select 'Run as administrator' to perform this scan.

    Click on the Accept button and install any components it needs.

    • The program will install and then begin downloading the latest definition
      files.
    • After the files have been downloaded on the left side of the page in the Scan section select My Computer.
    • This will start the program and scan your system.
    • The scan will take a while, so be patient and let it run. (At times it may appear to stall)
      * Once the update is complete, click on My Computer under the green Scan bar to the left to start the scan.
      * Once the scan is complete, it will display if your system has been infected. It does not provide an option to clean/disinfect. We only require a report from it.
      * Do NOT be alarmed by what you see in the report. Many of the finds have likely been quarantined.
    • Once the scan is complete, click on View scan report To obtain the report:
    Click on: Save Report As
    Next, in the Save as prompt, Save in area, select: Desktop
    In the File name area, use KScan, or something similar In Save as type, click the drop arrow and select:
    Text file [*.txt]
    Then, click: Save
    Please post the Kaspersky Online Scanner Report in
    your reply.

    Animated tutorial
    http://i275.photobucket.com/albums/jj285/Bleeping/KAS/KAS9.gif

    (Note.. for Internet Explorer 7 users:
    If at any time you have trouble with the "Accept" button of the license, click on the "Zoom" tool located at the bottom right of the IE window and set the zoom to 75 %. Once the license has been accepted, reset to 100%
    .)
    Or use Firefox with IE-Tab plugin
    https://addons.mozilla.org/en-US/firefox/addon/1419

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

    NEXT**
    Download Trend Micro Hijack Thisâ„¢ and save to desktop.
    It is important that you uninstall any previous versions by using Add/Remove programs in your control panel before installing a newer version.
    Doubleclick the HJTInstall.exe to start it.
    By default it will install HijackThis in the Program Files\Trendmicro folder and create a desktop shortcut.


    Accept the license agreement by clicking the "I Accept" button.
    Click on the "Do a system scan and save a log file button. It will scan and then ask you to save the log.
    Click "Save log" to save the log file and then the log will open in Notepad.
    Click on Edit-> Select All then click on "Edit -> Copy " to copy the entire contents of the log.







    In your next reply post:
    Kaspersky log
    New HJT log taken after the above scans have run


    You may need several replies to post the requested logs, otherwise they might get cut off.
     
Thread Status:
Not open for further replies.

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.