This is a read-only archive. No new posts or registrations. Privacy Page
Software

Computer keeps freezing up

9 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Hi all, My computer has started freezing about 2-3 times each day, I have run Disk Keeper Lite a few times and cleaned out the inside of the machine (even left the side off) but it is still happening. The only recent software/hardware changes are the Belkin wireless network I have installed. Everest results: Temperatures: Motherboard 32 (90 ) CPU 56 (133 ) Seagate ST3160021A 42 (108 ) Cooling Fans: CPU 4623 RPM Chassis 2860 RPM Voltage Values: CPU Core 1.66 V +3.3 V 3.30 V +5 V 4.87 V +12 V 11.92 V -12 V -12.69 V -5 V -5.10 V +5 V Standby 5.07 V VBAT Battery 3.46 V Debug Info F 92 EC FF Debug Info T 32 56 255 Debug Info V 68 00 CE B5 C4 1B 34 (01) Any help would be greatly appreciated, thanks in advance, Phil
Your Tower Case is designed to provide optimal airflow for cooling, and in most situations does a fair job.
Don't leave the side of your case open unless you have an excellent desk fan directed into the case to compensate.

What "Error Message" do you see when things freeze?
What application/activity are you involved with when it freezes?

How much "free space" do you have on your C:\ drive?
If you run applications/like games from other drives, how much "free space" do you have on those drives?

Is this the machine from which you recently removed Norton?

Have you run any online scans recently?
HouseCall
http://housecall.trendmicro.com
Panda ActiveScan
http://www.pandasoftware.com/products/acti…CACHEHINT=Guest
Ewido
http://www.ewido.net/en/onlinescan/

Have you cleared out your "junk files" recently?

Clean up your temporary and temporary internet files.

QUOTE
Here's a complete routine to manually do that:
To clean out all the temporary files and cookies on your system.
Go to
Start - Run - (type) "cleanmgr" without the quotes.
Let it scan your system for files to remove.
Check these three boxes and then press ok to remove:
Temporary Files,
Temporary Internet Files,
Recycle Bin.

Then GoTo:
Start - Find/search - Files or folders - in the named box, type: *.tmp
When the list is generated, choose
Edit - select all - File - delete.

Note: If you cannot delete them all at once because you have too many, then click and hold ctrl and highlight a batch of them at a time. Once highlighted, R-click over the highlight and select delete.

Then use
Start - Run - (type) "%temp%" (without the quotes).
Delete the entire contents of that "temp" folder
(use Edit - Select All - press "Delete", click "Yes").

Then,
Empty your Temporary Internet Cache completely.
Close all instances of Outlook and Internet Explorer,
then use "Control Panel - Internet Options - General tab and click the "Delete File" button.
When prompted place a check in: "Delete all offline content", then click OK.

Then, use Windows Explorer to clean out ALL the other temp folders on your system
(navigate to the folder, (as listed below)
use "Edit - Select All", press "Delete", click "Yes"

* C:\Documents and Settings\\Local Settings\Temp\
* C:\Documents and Settings\\Local Settings\Temporary Internet Files\
* C:\Documents and Settings\\Local Settings\Temp\

* C:\Windows\Prefetch\

* Empty your "Recycle Bin".

Note: This is a long manual way to clear out .tmp files. It is safe and highly recommended.

Eventually you may wish to use a "tool" to do this procedure for you on a regular basis.
Download: CleanUp! 4.50 from http://www.stevengould.org
Read about all the options for using this device and use it only after you are satisfied that you understand what it will do for you. I use it regularly, and have a squeaky clean computer as a result. I recommend the default setting that are set during installation.


After doing the above routines, do this separate cleaning of your ActiveX, applets and Java routines:
GoTo:
Control Panel - JAVA - (this will open your JAVA Control Panel)
(in some cases the steps might be Control Panel - JAVA plugins)

Once your JAVA Control Panel is open, you will see a Button down toward the bottom of that panel labeled "Delete Files"
Click - Delete Files - OK, Then close your JAVA Control Panel and Reboot.

Note: The current version of JAVA Runtime Environment is Version 8. If you are running an older version, there are specific "vulnerabilities" that have corrected in Version 8. Recommended: Use Add/Remove to "completely" uninstall your Current JAVA Runtime Environment. Then go to C:\Program Files and Delete the entire Folder of JAVA. Then install the newest version of JAVA Runtime Environment. Get it here:
http://www.java.com/en/download/manual.jsp

Please note that in doing the above routines, you will "lose" any auto-login settings that Window has saved for you regarding Websites that you visit that require Username and Password to access the site, and any ActiveX scripts necessary to interact with the Website.

This is not a problem, since you will merely be required to "re-enter" your Username and Password the next time you visit any such site. (for instance, Here at TomCoyote) Or you will be asked to download a fresh copy of any required ActiveX. After that, Windows will again remember the settings for you and you will be able to auto-login again.

It's a good idea to clear up these features on a fairly regular basis, for a couple of reasons. First, ActiveX and applet routines occasionally become corrupted and can be infected with some malwares. Second, temporary internet files are often the first entry point of spyware/malware.

Hi, I left the cover off because the base unit is in a cupboard section in my desk and theought it might help keep the temprature down inside the machine? Do the temps seem ok from the Everest report? When the computer freezes there is no error message, the screen just freezes, I can't do anything with the mouse or keyboard and have to reset the computer and go through with scandisc. I am usually running my Outlook, Firefox and MS Access when it freezes. This is not the machine I removed norton from. I use AVG and Adaware regularly. I cleared out my junk files last night and so far my computer hasn't frozen today but I have been unable to visit here and many other web pages like google that I use until just now when it started working out of the blue again. Very weird.
The computer has just frozen for the first time today. :( And I forgot to say I only have the one drive with 47.4 GB used space and 99.2 GB free space.

I have been unable to visit here and many other web pages like google that I use until just now when it started working out of the blue again. Very weird.

Yep. Worrisome. I'd first suspect Malware for the internet navigation problem.

Run a couple of online scans (as per my prior reply) and post the Logs from them, back into this post.
We may need to send you over to the Malware Remove Forum, depending on what the logs indicate, and the persistence of problems with navigating to ordinary sites like TC and Google.

The built in desk "cupboard" style slots for computer towers are/were an interesting innovation from people who work with wood, offering a convenience/appearance feature to people who work with electronic equipment. There just isn't a good translation between woodworkers and electronic equipment that they build stylish spaces to box in that electronic equipment.

The worst feature of some of those "cupboards" is that the back is "boxed in".
If yours is only open from the front, and is boxed-in at the back, use a jigsaw to cut out the entire back wall so that there is free and generous airflow from front-exhausted-to-open-space in the back. Otherwise you're going to be circulating heated air back into your machine. Then, replace the side of your tower case and let the case fans do what they were designed for.

Your temperatures are higher than I'd like, but probably aren't terrible.

Again, how much "free space" on your Hard Drive? (expressed as Meg/Gig bytes, and as % of Hard Drive free space)

Best Regards
Thanks Dough, I only have the one drive with 47.4 GB used space and 99.2 GB free space. The desk has no back where the base unit is kept and I keep the door open whenever possible, I will give it a quick brush tonight and replace the side pannel. I am doing the scans now. :thumbup: The internet navigation problem only happened this morning, I thought I'd deleted somethng I maybe shouldn't have whilst clearing out my junk files but it is working now.
Doing the cleanup as I described "will" dump your automatic login "username" and saved "password", but you only have to log in manually the first time you re-visit the site. After that first time, you can have Windows again save your username and password. Not being able to access Google, seems strange as that doesn't require login unless you have a "personalized homepage" via Google. Still, I'm glad you are running the online scans. No news, will be good news. So I'm hoping the scans detect little-to-nothing, and that your site visiting problem is only that of "login". Best Regards Edit: "brushing" is not recommended, inside of a computer case. Instead, get a can of compressed air from any office supply store.
It wasn't that I couldn't login to sites, the pages that I usually visit just wouldn't load and would just give me the 'page can not be displayer error', videos on youtube wouldn't load and pictures on the forum I could access wouldn't load either.
Results from HouseCall:

JAVA_BYTEVER.AN - 3 Infections

JAVA_BYTEVER.Q - 1 Infection

HKTL_EVID.A - 1 Infection

ADWARE_CASINOONNET - 1 Infection


SPYWARE_TRACK_VISLOG.210 - 1 Infection

TSPY_ANALOGXPROXY - 1 Infection

TSPY_LDPINCH - 1 Infection

HTTP COOKIES - 2 Detected

(MS05-004) ASP.NET Path Validation Vunerability (887219)

It has deleted all the above files but the vunerability message remained.

Panda Activescan report:

Incident Status Location

Spyware:Spyware/BetterInet Not disinfected C:\WINDOWS\inf\banner.inf

Spyware:Cookie/Xmts Not disinfected C:\Documents and Settings\Phil\Cookies\phil@xmts[2].txt

Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Phil\Cookies\[removed][2].txt

Spyware:Cookie/Ccbill Not disinfected C:\Documents and Settings\Phil\Cookies\phil@ccbill[2].txt

Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Phil\Application
Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\count4.jar-4a5f2737-5f74a834.zip[Beyond.class]

Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Phil\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\nocheat.jar-11f63847-3a0ccec4.zip[Counter.class]

Virus:Trj/ClassLoader.AB Disinfected C:\Documents and Settings\Phil\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\ar3.jar-684ecb1c-3d802612.zip[Beyond.class]

Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Phil\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\demo.jar-5821a090-54463388.zip[BlackBox.class]

Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Phil\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\demo.jar-5821a090-54463388.zip[Beyond.class]

Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Phil\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\demo.jar-726cd267-2ce47081.zip[BlackBox.class]

Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Phil\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\demo.jar-726cd267-2ce47081.zip[Beyond.class]

Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[ad.yieldmanager.com/]

Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.serving-sys.com/]

Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.bs.serving-sys.com/]

Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.serving-sys.com/]

Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.realmedia.com/]

Spyware:Cookie/Itrack Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[ilead.itrack.it/]

Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.zedo.com/]

Spyware:Cookie/MediaTickets Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.kinghost.com/]

Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.statcounter.com/]

Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.adrevolver.com/]

Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.casalemedia.com/]

Spyware:Cookie/AspinallsOnlineCasino Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.pacificpoker.com/]

Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.drivecleaner.com/]

Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[stats.drivecleaner.com/]

Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[www.drivecleaner.com/.freeware/]

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.go.com/]

Spyware:Cookie/NewMedia Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.anm.co.uk/]

Spyware:Cookie/Maxserving Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.maxserving.com/]

Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[.bravenet.com/]

Spyware:Cookie/Searchportal Not disinfected C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt[searchportal.information.com/]

Potentially unwanted tool:Application/PRScheduler Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\2D5370A0-35DE-4C08-BDB7-44FD9B\5C2901D4-0A1E-4954-AC36-C6ACDA

Potentially unwanted tool:Application/PRScheduler Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\AC3878A7-E1E9-4EC7-B07E-110347\54B044F5-0CF0-425F-9BBB-10AAD1

Hacktool:HackTool/EvID Not disinfected C:\Program Files\PPLive TV\SynaLiveSetup.exe[EvID4226Patch.exe]


Ewido Report

ewido anti-spyware online scanner
http://www.ewido.net
__________________________________________________


Name: TrackingCookie.Masterstats
Path: C:\Documents and Settings\Phil\Cookies\[removed][1].txt
Risk: Medium

Name: TrackingCookie.Yieldmanager
Path: C:\Documents and Settings\Phil\Cookies\[removed][2].txt
Risk: Medium

Name: TrackingCookie.Esomniture
Path: C:\Documents and Settings\Phil\Cookies\[removed][1].txt
Risk: Medium

Name: TrackingCookie.Esomniture
Path: C:\Documents and Settings\Phil\Cookies\[removed][2].txt
Risk: Medium

Name: TrackingCookie.Esomniture
Path: C:\Documents and Settings\Phil\Cookies\[removed][1].txt
Risk: Medium

Name: TrackingCookie.Adrevolver
Path: C:\Documents and Settings\Phil\Cookies\[removed][1].txt
Risk: Medium

Name: TrackingCookie.Esomniture
Path: C:\Documents and Settings\Phil\Cookies\[removed][2].txt
Risk: Medium

Name: TrackingCookie.Esomniture
Path: C:\Documents and Settings\Phil\Cookies\[removed][2].txt
Risk: Medium

Name: TrackingCookie.Euroclick
Path: C:\Documents and Settings\Phil\Cookies\[removed][1].txt
Risk: Medium

Name: Not-A-Virus.Monitor.Win32.NetMon.a
Path: C:\Documents and Settings\Phil\My Documents\DOWNLOADS\New Folder\DCPlusPlus.exe
Risk: Low

Name: TrackingCookie.Yieldmanager
Path: :mozilla.31:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Yieldmanager
Path: :mozilla.32:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Yieldmanager
Path: :mozilla.33:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Serving-sys
Path: :mozilla.38:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Serving-sys
Path: :mozilla.39:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Serving-sys
Path: :mozilla.40:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Serving-sys
Path: :mozilla.41:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Serving-sys
Path: :mozilla.42:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Serving-sys
Path: :mozilla.43:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Adbrite
Path: :mozilla.77:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Adbrite
Path: :mozilla.80:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Clickhype
Path: :mozilla.86:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Itrack
Path: :mozilla.150:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Zedo
Path: :mozilla.151:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Zedo
Path: :mozilla.152:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Zedo
Path: :mozilla.153:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Statcounter
Path: :mozilla.244:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Tacoda
Path: :mozilla.246:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Tacoda
Path: :mozilla.247:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Tacoda
Path: :mozilla.248:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Adrevolver
Path: :mozilla.259:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Adrevolver
Path: :mozilla.260:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Adrevolver
Path: :mozilla.261:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Adrevolver
Path: :mozilla.262:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Adrevolver
Path: :mozilla.263:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Adrevolver
Path: :mozilla.275:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Adrevolver
Path: :mozilla.276:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Adrevolver
Path: :mozilla.277:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Adrevolver
Path: :mozilla.278:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Casalemedia
Path: :mozilla.325:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Casalemedia
Path: :mozilla.326:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Casalemedia
Path: :mozilla.327:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Adrevolver
Path: :mozilla.381:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Clickzs
Path: :mozilla.504:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Clickzs
Path: :mozilla.505:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Googleadservices
Path: :mozilla.517:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Euroclick
Path: :mozilla.810:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Euroclick
Path: :mozilla.811:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Starware
Path: :mozilla.824:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Starware
Path: :mozilla.825:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Starware
Path: :mozilla.826:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Liveperson
Path: :mozilla.840:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: TrackingCookie.Liveperson
Path: :mozilla.841:C:\Documents and Settings\Phil\Application Data\Mozilla\Firefox\Profiles\kyrb1fg4.default\cookies.txt
Risk: Medium

Name: Backdoor.Virkel.A
Path: C:\System Volume Information\_restore{B1AF6306-70F0-4416-91D0-2A49F3B95B86}\RP962\A0162286.exe
Risk: High

Name: TrackingCookie.Yieldmanager
Path: :mozilla.11:C:\System Volume Information\_restore{B1AF6306-70F0-4416-91D0-2A49F3B95B86}\RP920\A0137725.lnk
Risk: Medium

Name: TrackingCookie.Yieldmanager
Path: :mozilla.12:C:\System Volume Information\_restore{B1AF6306-70F0-4416-91D0-2A49F3B95B86}\RP920\A0137725.lnk
Risk: Medium

All infections were removed.
Pardon me for being extra cautious here, but I'm not willing to believe that your infections have all been successfully removed.

Why not?

Well, because it seems to me that earlier in this thread, you used the cleanup protocol that that I posted, including clearing of your JAVA Cache, yet there are a plethora of Java script items being identified and supposedly removed (again?) by these good quality automated tools.

Additionally, the majority of the remaining Malware items were also found in Temporary Internet Files and Temporary Files, as well as FireFox temporary internet files, all of which (except maybe the Mozilla files which I neglected) have re-appeared to be detected and removed.

So I wonder if there is something, that we can't see that is "re-installing the Malware as fast as your cleanup protocol can delete them?

Please Post a HighJackThis Log over in our Malware Removal Forum, as soon as possible!

If you decide not to post HighJackThis Log, then please at least run the CleanUp protocol again, and this time also do a manual deletion of temporary files in FireFox/Mozilla.

Then Run the Online scans again. If they Do Not turn out to be "absolutely" clean this next time, then your best recourse would be to seek expert assistance via HJT Log in the Malware Forum.

Sorry you're having difficulty with this. But the experts over in Malware Removal will give the best help possible.

Best Regards

I'm quite suspicious of this item:

Name: Not-A-Virus.Monitor.Win32.NetMon.a
Path: C:\Documents and Settings\Phil\My Documents\DOWNLOADS\New Folder\DCPlusPlus.exe


If you find a program named dcplusplus.exe on your computer, your computer could be infected with a worm that goes by the name of ogid.

dcplusplus.exe is considered to be a security risk, not only because antivirus programs flag Ogid Worm as a virus, but also because a number of users have complained about its performance.

Ogid Worm is likely a virus and as such, presents a serious vulnerability which should be fixed immediately! Delaying the removal of dcplusplus.exe may cause serious harm to your system and will likely cause a number of problems, such as slow performance, loss of data or leaking private information to websites.

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI