This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Slow Computer Keeping 'The Man' down! Please Help! [So

19 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Do you know how that became so full so quickly?

This was from your OTL log on the 16th August:

Drive D: | 331.01 Gb Total Space | 84.69 Gb Free Space | 25.59% Space Free | Partition Type: NTFS
I don't know how it became so full so quickly. I'm also running another ESET scan because after 6 hours and 19 threats, I didn't see a List Found Threats or Push…
Here is the ESET Scan: C:\ProgramData\Microsoft\Windows\DRM\4B62.tmp.dat a variant of Win32/Kryptik.AKON trojan C:\Qoobox\Quarantine\C\Windows\Installer\{cbcbd993-506d-96b9-6602-879c2385f055}\U\00000008.@.vir Win64/Agent.BA trojan C:\Qoobox\Quarantine\C\Windows\Installer\{cbcbd993-506d-96b9-6602-879c2385f055}\U\000000cb.@.vir Win64/Conedex.B trojan C:\Qoobox\Quarantine\C\Windows\Installer\{cbcbd993-506d-96b9-6602-879c2385f055}\U\80000000.@.vir Win64/Sirefef.AP trojan C:\Qoobox\Quarantine\C\Windows\Installer\{cbcbd993-506d-96b9-6602-879c2385f055}\U\80000032.@.vir a variant of Win32/Sirefef.FD trojan C:\Users\All Users\Microsoft\Windows\DRM\4B62.tmp.dat a variant of Win32/Kryptik.AKON trojan D:\BYRON-PC\Backup Set 2012-04-22 220444\Backup Files 2012-04-22 220444\Backup files 1.zip JS/TrojanClicker.Agent.NCX.Gen trojan D:\BYRON-PC\Backup Set 2012-04-22 220444\Backup Files 2012-04-22 220444\Backup files 6.zip multiple threats D:\BYRON-PC\Backup Set 2012-05-13 191827\Backup Files 2012-05-13 191827\Backup files 1.zip JS/TrojanClicker.Agent.NCX.Gen trojan D:\BYRON-PC\Backup Set 2012-05-13 191827\Backup Files 2012-05-13 191827\Backup files 6.zip multiple threats D:\BYRON-PC\Backup Set 2012-05-27 190003\Backup Files 2012-05-27 190003\Backup files 1.zip JS/TrojanClicker.Agent.NCX.Gen trojan D:\BYRON-PC\Backup Set 2012-05-27 190003\Backup Files 2012-05-27 190003\Backup files 6.zip multiple threats D:\BYRON-PC\Backup Set 2012-06-17 191836\Backup Files 2012-06-17 191836\Backup files 1.zip JS/TrojanClicker.Agent.NCX.Gen trojan D:\BYRON-PC\Backup Set 2012-06-17 191836\Backup Files 2012-06-17 191836\Backup files 2.zip multiple threats D:\BYRON-PC\Backup Set 2012-06-17 191836\Backup Files 2012-06-24 190011\Backup files 5.zip multiple threats D:\BYRON-PC\Backup Set 2012-07-01 190044\Backup Files 2012-07-01 190044\Backup files 1.zip JS/TrojanClicker.Agent.NCX.Gen trojan D:\BYRON-PC\Backup Set 2012-07-01 190044\Backup Files 2012-07-01 190044\Backup files 6.zip multiple threats D:\BYRON-PC\Backup Set 2012-07-22 192250\Backup Files 2012-07-22 192250\Backup files 8.zip multiple threats D:\BYRON-PC\Backup Set 2012-08-12 191421\Backup Files 2012-08-12 191421\Backup files 7.zip multiple threats
Sorry for the delay but I've been a bit busy today.

Download TFC to your desktop
  • close any open windows.
  • double click the TFC icon to run the program
  • TFC will close all open programs itself in order to run,
  • click the Start button to begin the process.
  • allow TFC to run uninterrupted.
  • the program should not take long to finish it's job
  • once its finished it should automatically reboot your machine,
  • if it doesn't, manually reboot to ensure a complete clean
==================================================

You could do with deleting all the back-up files that were found by Eset and do a current backup.

With your D drive being so full, you'll need to have a look at it and clear out stuff you no longer want.

Can you tell me if the blue screen is happening since the Eset scan.

Satchfan
I'd like a final security check before tidying up and giving my recommendations for security and staying clean.

Run Security Check
  • double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • a Notepad document should open automatically called checkup.txt; please post the contents of that document.
Can you tell me if there are any outstanding problems

Satchfan
Satchfan, there are no more obvious problems with my computer. By the way, did we delete all those threats found by the ESET scan?



Results of screen317's Security Check version 0.99.49
Windows 7 Service Pack 1 x64 (UAC is enabled)
Internet Explorer 9
``````````````Antivirus/Firewall Check:``````````````
Windows Firewall Enabled!
WMI entry may not exist for antivirus; attempting automatic update.
`````````Anti-malware/Other Utilities Check:`````````
Secunia PSI (2.0.0.4003)
Malwarebytes Anti-Malware version 1.62.0.1300
TuneUp Utilities Language Pack (en-US)
JavaFX 2.1.1
Javaâ„¢ 6 Update 31
Javaâ„¢ 7 Update 5
Java version out of Date!
Adobe Flash Player 11.3.300.271 Flash Player out of Date!
Adobe Reader X (10.1.4)
Mozilla Firefox (15.0)
````````Process Check: objlist.exe by Laurent````````
`````````````````System Health check`````````````````
Total Fragmentation on Drive C: 2%
````````````````````End of Log``````````````````````
Hi

did we delete all those threats found by the ESET scan?

the ones that were not on the "D" drive were in quarantine which means that they were no threat and will go when we clean up.

Good job, it appears that your computer is clean.

Now that you’re free from malware, as long as your computer seems to be running well, please follow these simple steps to tidy up you computer and decrease the likelihood of getting infected again:

Uninstall Combofix

Follow these steps to uninstall Combofix
  • click START then RUN
  • now type Combofix /uninstall in the runbox and click OK.
Note the space between the X and the /, it needs to be there.
🖼Click to load external image (Posted Image)
  • please follow the prompts to uninstall Combofix.
  • once it's finished uninstalling itself you will receive a message saying Combofix was uninstalled successfully.
===================================================

Uninstall OTL
  • double-click OTL.exe
  • click the CleanUp! button.
  • select Yes when the Begin cleanup Process? prompt appears.
  • if you are prompted to reboot during the cleanup, select Yes.
  • the tool will delete itself once it finishes, if not delete it by yourself.
NOTE: If you receive a warning from your firewall or other security programs regarding OTL attempting to contact the internet, please allow it to do so.

You can delete all other logs and programs we’ve used that are on your desktop. Just click on them and press Delete.

===================================================

Antivirus

You have no active antivirus on your computer. If you use the Internet without an antivirus your computer will certainly become infected again. It is also imperative that you update your Antivirus software at least once a week, (even more if you wish). If you do not update it, it will not be able to catch any of the new variants of malware that come out on a daily basis.

Do NOT install more than one or they will fight against each other and render both ineffective.

Here are some of the better AV products.

Download and install one of these free antivirus programs:

Free Avast Home Edition
Avira AntiVir® Personal Edition Classic
Microsoft Security Essentials

===================================================

Windows updates

I notice that Windows updates are waiting to be installed. Click here for information on how to get the latest Windows updates:

===================================================

Update installed programs

You have old versions on your computer which are vulnerable to infections.

Java & Flash
  • from the Start menu, select Control Panel.
  • in Large or Small icon view, click Programs and Features. If you're using Category view, under "Programs", click Uninstall a program.
  • select Javaâ„¢ 6 Update 31 and Adobe Flash Player then click Uninstall.
Install the latest version of and Adobe Flash Player:

Flash

===================================================

Update and run Malwarebytes. This really is an excellent program that you should also update and run on a regular basis, probably weekly.

===================================================

It’s important to keep programs up to date so that malware doesn't exploit any old security flaws.

FileHippo Update Checker is an extremely helpful program that will tell you which of your programs need to be updated.

===================================================

MVPS Hosts file replaces your current HOSTS file with one containing well known ad sites and other bad sites. Basically, this prevents your computer from connecting to those sites by redirecting them to 127.0.0.1 which is your local computer, meaning it will be difficult to infect yourself in the future.

===================================================

I also recommend that you read the following:

How to prevent malware by miekiemoes


I will keep this open for 24 hours in case you have any problems, after which I’ll close the topic.

Safe computing

Satchfan
You're welcome. :) I'll leave it open for another 24 hours to give you the chance to clean up just in case there is a problem Take care Satchfan
Great. Thanks!

On another note, I want to share with you an opportunity that's blowing up in the UK. It's an incredible opportunity that's helping a lot of people and taking many to financial freedom.

Link removed

This opportunity has helped so many people that I'd feel like i was letting you down if I didn't share it. Just click on the 'Opportunity' button, then click on 'Videos.'

Thanks so much for your help, Satchfan!

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI