This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Daughter's PC that I inherited very slow

3 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

I have ran full scan of Spybot, Ad-aware and AVG Anti-Spyware and ATF Cleaner as instructed and here is the log for the AVG - Anti Spyware and the Hijack this log. Thank you in advance for any help. The main problem I am having is the PC seems to get slow after using for awhile and it is very slow to open programs like the processor is running.

———————————————————
AVG Anti-Spyware - Scan Report
———————————————————

+ Created at: 8:56:07 PM 12/30/2006

+ Scan result:



C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP641\A0061669.exe -> Downloader.Tibs.jy : Cleaned.
C:\WINDOWS\Downloaded Program Files\popcaploader.dll -> Not-A-Virus.Downloader.Win32.PopCap.b : Cleaned.
:mozilla.144:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.168:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.182:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.228:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.232:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.23:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.427:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.453:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.537:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.98:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\ronnie@adbrite[3].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][2].txt -> TrackingCookie.Belstat : Cleaned.
:mozilla.910:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.911:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.912:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.913:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.672:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][2].txt -> TrackingCookie.Burstbeacon : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\ronnie@burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][2].txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][1].txt -> TrackingCookie.Clickhype : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][2].txt -> TrackingCookie.Clickzs : Cleaned.
:mozilla.11:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\ronnie@com[1].txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][1].txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\ronnie@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\ronnie@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.885:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.886:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.366:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.401:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][1].txt -> TrackingCookie.Liveperson : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][3].txt -> TrackingCookie.Liveperson : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][1].txt -> TrackingCookie.Liveperson : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][1].txt -> TrackingCookie.Masterstats : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][1].txt -> TrackingCookie.Myaffiliateprogram : Cleaned.
:mozilla.446:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.447:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.211:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.212:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.213:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.239:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][2].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\ronnie@paypopup[1].txt -> TrackingCookie.Paypopup : Cleaned.
:mozilla.6:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.7:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.8:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.264:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Pro-market : Cleaned.
:mozilla.265:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Pro-market : Cleaned.
:mozilla.266:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Pro-market : Cleaned.
:mozilla.271:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned.
:mozilla.272:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned.
:mozilla.277:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.278:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.279:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\ronnie@questionmarket[1].txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.590:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Realtracker : Cleaned.
:mozilla.314:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
:mozilla.404:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.405:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.406:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.407:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.408:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.409:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.190:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][1].txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.519:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Starware : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][1].txt -> TrackingCookie.Starware : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][1].txt -> TrackingCookie.Starware : Cleaned.
:mozilla.465:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.466:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][1].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][1].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\ronnie@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.506:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.507:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.508:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.509:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.510:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.511:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.512:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.517:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.368:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
:mozilla.545:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
:mozilla.592:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.593:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.594:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.595:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.596:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.597:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.598:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.599:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.600:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.601:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.602:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.603:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\ronnie@webstat[1].txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.887:C:\Documents and Settings\Ronnie\Application Data\Mozilla\Firefox\Profiles\fojjsfn8.default\cookies.txt -> TrackingCookie.Yadro : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\ronnie@yadro[1].txt -> TrackingCookie.Yadro : Cleaned.
C:\Documents and Settings\Ronnie\Cookies\[removed][1].txt -> TrackingCookie.Yieldmanager : Cleaned.


::Report end

Logfile of HijackThis v1.99.1
Scan saved at 9:33:22 PM, on 12/30/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SYSTEM32\acs.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\Program Files\Dell Photo AIO Printer 922\dlbtbmgr.exe
C:\Program Files\mobile PhoneTools\WatchDog.exe
C:\Program Files\Dell Photo AIO Printer 922\dlbtbmon.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\lg_fwupdate\fwupdate.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\AWS\WeatherBug\Weather.exe
C:\Program Files\CyberLink DVD Solution\Multimedia Launcher\PowerBar.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Belkin\PCI F5D7000\Wireless Utility\Belkinwcui.exe
C:\Program Files\Olympus\DeviceDetector\DevDtct2.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\HJT\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/…rch/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [IntelMeM] C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [Dell Photo AIO Printer 922] "C:\Program Files\Dell Photo AIO Printer 922\dlbtbmgr.exe"
O4 - HKLM\..\Run: [WatchDog] C:\Program Files\mobile PhoneTools\WatchDog.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [LGODDFU] "C:\Program Files\lg_fwupdate\fwupdate.exe" blrun
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Weather] C:\Program Files\AWS\WeatherBug\Weather.exe 1
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" –force_start_minimized
O4 - HKCU\..\Run: [PowerBar] "C:\Program Files\CyberLink DVD Solution\Multimedia Launcher\PowerBar.exe" /AtBootTime
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - Global Startup: Belkin Wireless Utility.lnk = C:\Program Files\Belkin\PCI F5D7000\Wireless Utility\Belkinwcui.exe
O4 - Global Startup: Device Detector 2.lnk = C:\Program Files\Olympus\DeviceDetector\DevDtct2.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/200612…ex/qtplugin.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat…b?1160686380109
O16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} (iTunesDetector Class) - http://ax.phobos.apple.com.edgesuite.net/d…/ITDetector.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://download.games.yahoo.com/games/web_…aploader_v6.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\SYSTEM32\acs.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: dlbt_device - Dell - C:\WINDOWS\system32\dlbtcoms.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
It seems to be running better now after all of the recommended scans and deletions. Any Comments on the logs would be appreciated. Thanks.
Hello and welcome to the forum

For IE 7 users.
Microsoft released a patch for Internet Explorer 7 (IE7) that will boost the brand-new browser's performance on some Web sites.

Patch:


This might also help:
http://users.telenet.be/bluepatchy/miekiem…owcomputer.html



I suggest you do this:


Please do not delete anything unless instructed to.


1.Click Start > Settings > Control Panel.
2.Next, open Add/Remove Programs and remove if listed:
WeatherBug <–Unless you really need it


You have AVG Anti-Spyware 7.5 and Windows Defender running.
I suggest you uninstall one of those as well. You don't need both.



Run hijackthis. Hit None of the above, Click Do a System Scan Only. Put a Check in the box on the left side on these:

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/200612…ex/qtplugin.cab

Close ALL windows and browsers except HijackThis and click "Fix checked"


Empty Recycle Bin

Reboot and "copy/paste" a new HijackThis log file into this thread.

Also please describe how your computer behaves at the moment.
PC seems to be running better and opening pages faster. Here is the latest log and Thanks again for the Help.

Logfile of HijackThis v1.99.1
Scan saved at 12:12:06 PM, on 12/31/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SYSTEM32\acs.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\Dell Photo AIO Printer 922\dlbtbmgr.exe
C:\Program Files\Dell Photo AIO Printer 922\dlbtbmon.exe
C:\Program Files\mobile PhoneTools\WatchDog.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\lg_fwupdate\fwupdate.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\CyberLink DVD Solution\Multimedia Launcher\PowerBar.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Belkin\PCI F5D7000\Wireless Utility\Belkinwcui.exe
C:\Program Files\Olympus\DeviceDetector\DevDtct2.exe
C:\Program Files\Messenger\msmsgs.exe
C:\HJT\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/…rch/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [IntelMeM] C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [Dell Photo AIO Printer 922] "C:\Program Files\Dell Photo AIO Printer 922\dlbtbmgr.exe"
O4 - HKLM\..\Run: [WatchDog] C:\Program Files\mobile PhoneTools\WatchDog.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [LGODDFU] "C:\Program Files\lg_fwupdate\fwupdate.exe" blrun
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" –force_start_minimized
O4 - HKCU\..\Run: [PowerBar] "C:\Program Files\CyberLink DVD Solution\Multimedia Launcher\PowerBar.exe" /AtBootTime
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: Belkin Wireless Utility.lnk = C:\Program Files\Belkin\PCI F5D7000\Wireless Utility\Belkinwcui.exe
O4 - Global Startup: Device Detector 2.lnk = C:\Program Files\Olympus\DeviceDetector\DevDtct2.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat…b?1160686380109
O16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} (iTunesDetector Class) - http://ax.phobos.apple.com.edgesuite.net/d…/ITDetector.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://download.games.yahoo.com/games/web_…aploader_v6.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\SYSTEM32\acs.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: dlbt_device - Dell - C:\WINDOWS\system32\dlbtcoms.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
Only one leftover :thumbup:

Run hijackthis. Hit None of the above, Click Do a System Scan Only. Put a Check in the box on the left side on these:

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/…rch/search.html

Close ALL windows and browsers except HijackThis and click "Fix checked"




You can remove any programs I had you install

Log looks good :D


You need to create a new Clean restore point.

Note: This will remove all previous Restore Points

Turn off System Restore:

On the Desktop, right-click My Computer.
Click Properties.
Click the System Restore tab.
Check Turn off System Restore.
Click Apply, and then click OK.

Restart your computer, turn it back on.

On the Desktop, right-click My Computer.
Click Properties.
Click the System Restore tab.
Remove the Check Turn off System Restore.
Click Apply, and then click OK.

Double-click My Computer.
Click the Tools menu, and then click Folder Options.
Click the View tab.
Check "Hide file extensions for known file types."
Under the "Hidden files" folder, Uncheck "Show hidden files and folders."
Check "Hide protected operating system files."
Click Apply, and then click OK.



If you dont have any programs like these, I would recommend that you get them.
Spywareblaster,
Spywareguard.
IE Spyads
They will add 1000's of sites to your resticted zone and block some hijacks from happening.

Also get a FREE FIREWALL and FREE ANTI VIRUS if you need one.

It is critical to have both a firewall and anti virus to protect your system.

Keep your system up to date and run Adaware & Spybot, once a week works, and hopefully you will be ok from here on. Both are available below.

Safe Surfing. :D

I would also suggest you read this:
So how did I get infected in the first place?
by Tony Klein
Thanks again for the excellent work. I first used this forum a couple of years ago and with very good sucess. We all appreciate what you do.
Glad we could be of assistance. This topic is now closed. If you wish it reopened, please send us an email (Click for address) with a link to your thread.

Do not bother contacting us if you are not the topic starter. A valid, working link to the closed topic is required along with the user name used. If the user name does not match the one in the thread linked, the email will be deleted.
Make sure you use proper prevention to keep from having problems occur to your computer in the future.

Coyote's Installed programs for prevention:

http://forums.tomcoyote.org/index.php?showtopic=31418

The help you receive here is free. If you wish to show your appreciation, then you may donate to help keep us online.

Visit the CoyoteStore http://TomCoyote.org/coyotestore.php

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI