Computer keeps freezing up
9 min read
Don't leave the side of your case open unless you have an excellent desk fan directed into the case to compensate.
What "Error Message" do you see when things freeze?
What application/activity are you involved with when it freezes?
How much "free space" do you have on your C:\ drive?
If you run applications/like games from other drives, how much "free space" do you have on those drives?
Is this the machine from which you recently removed Norton?
Have you run any online scans recently?
HouseCall
http://housecall.trendmicro.com
Panda ActiveScan
http://www.pandasoftware.com/products/acti…CACHEHINT=Guest
Ewido
http://www.ewido.net/en/onlinescan/
Have you cleared out your "junk files" recently?
Clean up your temporary and temporary internet files.
QUOTE
Here's a complete routine to manually do that:
To clean out all the temporary files and cookies on your system.
Go to
Start - Run - (type) "cleanmgr" without the quotes.
Let it scan your system for files to remove.
Check these three boxes and then press ok to remove:
Temporary Files,
Temporary Internet Files,
Recycle Bin.
Then GoTo:
Start - Find/search - Files or folders - in the named box, type: *.tmp
When the list is generated, choose
Edit - select all - File - delete.
Note: If you cannot delete them all at once because you have too many, then click and hold ctrl and highlight a batch of them at a time. Once highlighted, R-click over the highlight and select delete.
Then use
Start - Run - (type) "%temp%" (without the quotes).
Delete the entire contents of that "temp" folder
(use Edit - Select All - press "Delete", click "Yes").
Then,
Empty your Temporary Internet Cache completely.
Close all instances of Outlook and Internet Explorer,
then use "Control Panel - Internet Options - General tab and click the "Delete File" button.
When prompted place a check in: "Delete all offline content", then click OK.
Then, use Windows Explorer to clean out ALL the other temp folders on your system
(navigate to the folder, (as listed below)
use "Edit - Select All", press "Delete", click "Yes"
* C:\Documents and Settings\\Local Settings\Temp\
* C:\Documents and Settings\\Local Settings\Temporary Internet Files\
* C:\Documents and Settings\\Local Settings\Temp\
* C:\Windows\Prefetch\
* Empty your "Recycle Bin".
Note: This is a long manual way to clear out .tmp files. It is safe and highly recommended.
Eventually you may wish to use a "tool" to do this procedure for you on a regular basis.
Download: CleanUp! 4.50 from http://www.stevengould.org
Read about all the options for using this device and use it only after you are satisfied that you understand what it will do for you. I use it regularly, and have a squeaky clean computer as a result. I recommend the default setting that are set during installation.
After doing the above routines, do this separate cleaning of your ActiveX, applets and Java routines:
GoTo:
Control Panel - JAVA - (this will open your JAVA Control Panel)
(in some cases the steps might be Control Panel - JAVA plugins)
Once your JAVA Control Panel is open, you will see a Button down toward the bottom of that panel labeled "Delete Files"
Click - Delete Files - OK, Then close your JAVA Control Panel and Reboot.
Note: The current version of JAVA Runtime Environment is Version 8. If you are running an older version, there are specific "vulnerabilities" that have corrected in Version 8. Recommended: Use Add/Remove to "completely" uninstall your Current JAVA Runtime Environment. Then go to C:\Program Files and Delete the entire Folder of JAVA. Then install the newest version of JAVA Runtime Environment. Get it here:
http://www.java.com/en/download/manual.jsp
Please note that in doing the above routines, you will "lose" any auto-login settings that Window has saved for you regarding Websites that you visit that require Username and Password to access the site, and any ActiveX scripts necessary to interact with the Website.
This is not a problem, since you will merely be required to "re-enter" your Username and Password the next time you visit any such site. (for instance, Here at TomCoyote) Or you will be asked to download a fresh copy of any required ActiveX. After that, Windows will again remember the settings for you and you will be able to auto-login again.
It's a good idea to clear up these features on a fairly regular basis, for a couple of reasons. First, ActiveX and applet routines occasionally become corrupted and can be infected with some malwares. Second, temporary internet files are often the first entry point of spyware/malware.
Yep. Worrisome. I'd first suspect Malware for the internet navigation problem.I have been unable to visit here and many other web pages like google that I use until just now when it started working out of the blue again. Very weird.
Run a couple of online scans (as per my prior reply) and post the Logs from them, back into this post.
We may need to send you over to the Malware Remove Forum, depending on what the logs indicate, and the persistence of problems with navigating to ordinary sites like TC and Google.
The built in desk "cupboard" style slots for computer towers are/were an interesting innovation from people who work with wood, offering a convenience/appearance feature to people who work with electronic equipment. There just isn't a good translation between woodworkers and electronic equipment that they build stylish spaces to box in that electronic equipment.
The worst feature of some of those "cupboards" is that the back is "boxed in".
If yours is only open from the front, and is boxed-in at the back, use a jigsaw to cut out the entire back wall so that there is free and generous airflow from front-exhausted-to-open-space in the back. Otherwise you're going to be circulating heated air back into your machine. Then, replace the side of your tower case and let the case fans do what they were designed for.
Your temperatures are higher than I'd like, but probably aren't terrible.
Again, how much "free space" on your Hard Drive? (expressed as Meg/Gig bytes, and as % of Hard Drive free space)
Best Regards
JAVA_BYTEVER.AN - 3 Infections
JAVA_BYTEVER.Q - 1 Infection
HKTL_EVID.A - 1 Infection
ADWARE_CASINOONNET - 1 Infection
SPYWARE_TRACK_VISLOG.210 - 1 Infection
TSPY_ANALOGXPROXY - 1 Infection
TSPY_LDPINCH - 1 Infection
HTTP COOKIES - 2 Detected
(MS05-004) ASP.NET Path Validation Vunerability (887219)
It has deleted all the above files but the vunerability message remained.
Panda Activescan report:
Incident Status Location
Spyware:Spyware/BetterInet Not disinfected C:\WINDOWS\inf\banner.inf
Spyware:Cookie/Xmts Not disinfected C:\Documents and Settings\Phil\Cookies\phil@xmts[2].txt
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Phil\Cookies\[removed][2].txt
Spyware:Cookie/Ccbill Not disinfected C:\Documents and Settings\Phil\Cookies\phil@ccbill[2].txt
Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Phil\Application
Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\count4.jar-4a5f2737-5f74a834.zip[Beyond.class]
Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Phil\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\nocheat.jar-11f63847-3a0ccec4.zip[Counter.class]
Virus:Trj/ClassLoader.AB Disinfected C:\Documents and Settings\Phil\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\ar3.jar-684ecb1c-3d802612.zip[Beyond.class]
Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Phil\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\demo.jar-5821a090-54463388.zip[BlackBox.class]
Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Phil\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\demo.jar-5821a090-54463388.zip[Beyond.class]
Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Phil\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\demo.jar-726cd267-2ce47081.zip[BlackBox.class]
Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Phil\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\demo.jar-726cd267-2ce47081.zip[Beyond.class]
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[ad.yieldmanager.com/]
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.serving-sys.com/]
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.bs.serving-sys.com/]
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.serving-sys.com/]
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.realmedia.com/]
Spyware:Cookie/Itrack Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[ilead.itrack.it/]
Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.zedo.com/]
Spyware:Cookie/MediaTickets Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.kinghost.com/]
Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.statcounter.com/]
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.adrevolver.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.casalemedia.com/]
Spyware:Cookie/AspinallsOnlineCasino Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.pacificpoker.com/]
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.drivecleaner.com/]
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[stats.drivecleaner.com/]
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[www.drivecleaner.com/.freeware/]
Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.go.com/]
Spyware:Cookie/NewMedia Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.anm.co.uk/]
Spyware:Cookie/Maxserving Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.maxserving.com/]
Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.bravenet.com/]
Spyware:Cookie/Searchportal Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[searchportal.information.com/]
Potentially unwanted tool:Application/PRScheduler Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\2D5370A0-35DE-4C08-BDB7-44FD9B\5C2901D4-0A1E-4954-AC36-C6ACDA
Potentially unwanted tool:Application/PRScheduler Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\AC3878A7-E1E9-4EC7-B07E-110347\54B044F5-0CF0-425F-9BBB-10AAD1
Hacktool:HackTool/EvID Not disinfected C:\Program Files\PPLive TV\SynaLiveSetup.exe[EvID4226Patch.exe]
Ewido Report
ewido anti-spyware online scanner
http://www.ewido.net
__________________________________________________
Name: TrackingCookie.Masterstats
Path: C:\Documents and Settings\Phil\Cookies\[removed][1].txt
Risk: Medium
Name: TrackingCookie.Yieldmanager
Path: C:\Documents and Settings\Phil\Cookies\[removed][2].txt
Risk: Medium
Name: TrackingCookie.Esomniture
Path: C:\Documents and Settings\Phil\Cookies\[removed][1].txt
Risk: Medium
Name: TrackingCookie.Esomniture
Path: C:\Documents and Settings\Phil\Cookies\[removed][2].txt
Risk: Medium
Name: TrackingCookie.Esomniture
Path: C:\Documents and Settings\Phil\Cookies\[removed][1].txt
Risk: Medium
Name: TrackingCookie.Adrevolver
Path: C:\Documents and Settings\Phil\Cookies\[removed][1].txt
Risk: Medium
Name: TrackingCookie.Esomniture
Path: C:\Documents and Settings\Phil\Cookies\[removed][2].txt
Risk: Medium
Name: TrackingCookie.Esomniture
Path: C:\Documents and Settings\Phil\Cookies\[removed][2].txt
Risk: Medium
Name: TrackingCookie.Euroclick
Path: C:\Documents and Settings\Phil\Cookies\[removed][1].txt
Risk: Medium
Name: Not-A-Virus.Monitor.Win32.NetMon.a
Path: C:\Documents and Settings\Phil\My Documents\DOWNLOADS\New Folder\DCPlusPlus.exe
Risk: Low
Name: TrackingCookie.Yieldmanager
Path: :mozilla.31:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Yieldmanager
Path: :mozilla.32:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Yieldmanager
Path: :mozilla.33:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Serving-sys
Path: :mozilla.38:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Serving-sys
Path: :mozilla.39:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Serving-sys
Path: :mozilla.40:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Serving-sys
Path: :mozilla.41:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Serving-sys
Path: :mozilla.42:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Serving-sys
Path: :mozilla.43:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Adbrite
Path: :mozilla.77:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Adbrite
Path: :mozilla.80:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Clickhype
Path: :mozilla.86:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Itrack
Path: :mozilla.150:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Zedo
Path: :mozilla.151:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Zedo
Path: :mozilla.152:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Zedo
Path: :mozilla.153:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Statcounter
Path: :mozilla.244:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Tacoda
Path: :mozilla.246:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Tacoda
Path: :mozilla.247:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Tacoda
Path: :mozilla.248:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Adrevolver
Path: :mozilla.259:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Adrevolver
Path: :mozilla.260:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Adrevolver
Path: :mozilla.261:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Adrevolver
Path: :mozilla.262:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Adrevolver
Path: :mozilla.263:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Adrevolver
Path: :mozilla.275:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Adrevolver
Path: :mozilla.276:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Adrevolver
Path: :mozilla.277:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Adrevolver
Path: :mozilla.278:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Casalemedia
Path: :mozilla.325:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Casalemedia
Path: :mozilla.326:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Casalemedia
Path: :mozilla.327:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Adrevolver
Path: :mozilla.381:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Clickzs
Path: :mozilla.504:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Clickzs
Path: :mozilla.505:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Googleadservices
Path: :mozilla.517:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Euroclick
Path: :mozilla.810:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Euroclick
Path: :mozilla.811:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Starware
Path: :mozilla.824:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Starware
Path: :mozilla.825:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Starware
Path: :mozilla.826:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Liveperson
Path: :mozilla.840:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Liveperson
Path: :mozilla.841:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium
Name: Backdoor.Virkel.A
Path: C:\System Volume Information\_restore{B1AF6306-70F0-4416-91D0-2A49F3B95B86}\RP962\A0162286.exe
Risk: High
Name: TrackingCookie.Yieldmanager
Path: :mozilla.11:C:\System Volume Information\_restore{B1AF6306-70F0-4416-91D0-2A49F3B95B86}\RP920\A0137725.lnk
Risk: Medium
Name: TrackingCookie.Yieldmanager
Path: :mozilla.12:C:\System Volume Information\_restore{B1AF6306-70F0-4416-91D0-2A49F3B95B86}\RP920\A0137725.lnk
Risk: Medium
All infections were removed.
Why not?
Well, because it seems to me that earlier in this thread, you used the cleanup protocol that that I posted, including clearing of your JAVA Cache, yet there are a plethora of Java script items being identified and supposedly removed (again?) by these good quality automated tools.
Additionally, the majority of the remaining Malware items were also found in Temporary Internet Files and Temporary Files, as well as FireFox temporary internet files, all of which (except maybe the Mozilla files which I neglected) have re-appeared to be detected and removed.
So I wonder if there is something, that we can't see that is "re-installing the Malware as fast as your cleanup protocol can delete them?
Please Post a HighJackThis Log over in our Malware Removal Forum, as soon as possible!
If you decide not to post HighJackThis Log, then please at least run the CleanUp protocol again, and this time also do a manual deletion of temporary files in FireFox/Mozilla.
Then Run the Online scans again. If they Do Not turn out to be "absolutely" clean this next time, then your best recourse would be to seek expert assistance via HJT Log in the Malware Forum.
Sorry you're having difficulty with this. But the experts over in Malware Removal will give the best help possible.
Best Regards
I'm quite suspicious of this item:
Name: Not-A-Virus.Monitor.Win32.NetMon.a
Path: C:\Documents and Settings\Phil\My Documents\DOWNLOADS\New Folder\DCPlusPlus.exe
If you find a program named dcplusplus.exe on your computer, your computer could be infected with a worm that goes by the name of ogid.
dcplusplus.exe is considered to be a security risk, not only because antivirus programs flag Ogid Worm as a virus, but also because a number of users have complained about its performance.
Ogid Worm is likely a virus and as such, presents a serious vulnerability which should be fixed immediately! Delaying the removal of dcplusplus.exe may cause serious harm to your system and will likely cause a number of problems, such as slow performance, loss of data or leaking private information to websites.
Ask AI
AI can make mistakes. Check the cited posts. Archived advice can be out-of-date
Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI