I've noticed lately that when I have IE open, multiple instances of it show up in my task manager. Then, when I close it, they stay up there-taking up a considerable amount of RAM. When I try to end the task tree, it tells me that access is denied, even though there's only one account on the computer (so I'm the admin). AVG, AdAware, and Spybot didn't pick anything up. My computer seems to be slowing down. I don't know what to do about this. It's never happened before.
System info:
windows vista home premium
4 gb of ram
64 bit
AMD Athlon Dual Core processor 4850e 2.5GHZ
I will be helping you on removing malwares on your computer. Log research takes time, so please be patient and I'd be grateful if you would note the following:
The fixes are specific to your problem and should only be used for the issues on this machine.
Do not install/uninstall anything on your computer unless advised.
Do not run any other scanning tools other than those instructed for you to use.
Follow the instructions on the order they are given.
Stay with this thread until advised when your computer is clean. Absence of symptoms does not necessarily mean a clean computer.
If you are being helped regarding this problem on another forum please advice us so that we can close this thread.
If you do not reply within 3 days after my last response, I will be asking you whether you still need assistance and if you still don't reply within 48 hours then the topic will be closed.
And lastly, if you have any questions, please ask before proceeding with any of the advised fixes.
_________________________________________________
You will need to right click and choose "Run as Administrator" to run the tools we will use.
Let's start with these:
OTL:
Download OTL to your desktop.
Right click on OTL.exe then choose "Run as Administrator" to run it. Make sure all other windows are closed and to let it run uninterrupted.
When the window appears, underneath Output at the top change it to Minimal Output
Check the boxes beside LOP Check and Purity Check.
Copy and paste the following bold text into the box under Custom Scan
Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
Please copy (Edit->Select All, Edit->Copy) the contents of the OTL.txt and post it with your next reply along with the Extras.txt log.
–Next–
[external image: Posted Image]
Download the GMER Rootkit Scanner. Unzip it to your Desktop.
Before scanning, make sure all other running programs are closed and no other actions like a scheduled antivirus scan will occur while the scan is being performed. Do not use your computer for anything else during the scan.
Right click GMER.exe then choose "Run as Administrator" to run the tool. [external image: Posted Image]
If it gives you a warning about rootkit activity and asks if you want to run a full scan…click on NO, then use the following settings for a more complete scan..
In the right panel, you will see several boxes that have been checked. Ensure the following are UNCHECKED …
IAT/EAT
Drives/Partition other than Systemdrive (typically C:\)
Show All (don't miss this one) [external image: Posted Image] Click the image to enlarge it
Then click the Scan button & wait for it to finish.
Once done click on the [Save..] button, and in the File name area, type in "ark.txt"
Save the log where you can easily find it, such as your desktop.
**Caution**
Rootkit scans often produce false positives. Do NOT take any action on any "<— ROOKIT" entries
Please copy and paste the report into your Post.
To post in your next reply:
1. OTL logs.
2. GMER log.