please analyze this. i'm experiencing a slow down on my computer.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:00:14 PM, on 1/9/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Please download ATF Cleaner by Atribune to your desktop.
This program is for XP and Windows 2000 only
Double-click ATF-Cleaner.exe to run the program.
Under Main choose: Select All
Click the Empty Selected button.
Your system may start up slower after running ATF Cleaner, this is expected but will be back to normal after the first or second boot up
Please note: If you use online banking or are registered online with any other organizations, ensure you have memorized password and other personal information as removing cookies will temporarily disable the auto-login facility.
Run this free online scan using Internet Explorer: Kaspersky Online Virus Scanner
Next Click on Launch Kaspersky Online Scanner
You will be prompted to install an ActiveX component from Kaspersky, Click Yes.
The program will launch and then begin downloading the latest definition files:
Once the files have been downloaded click on NEXT
Now click on Scan Settings
In the scan settings make that the following are selected:
Scan using the following Anti-Virus database:
Standard
Scan Options:
Scan Archives
Scan Mail Bases
Click OK
Now under select a target to scan: Select My Computer
This will program will start and scan your system.
The scan will take a while so be patient and let it run.
Once the scan is complete it will display if your system has been infected.
Now click on the Save as Text button:
Save the file to your desktop.
Post the log along with a New HJT Log into your next reply.
whoa!!! found 3 infections!!! AVG didn't detect these.
——————————————————————————–
KASPERSKY ONLINE SCANNER 7 REPORT
Wednesday, January 14, 2009
Operating System: Microsoft Windows XP Professional Service Pack 3 (build 2600)
Kaspersky Online Scanner 7 version: 7.0.25.0
Program database last update: Tuesday, January 13, 2009 13:25:28
Records in database: 1614420
——————————————————————————–
Scan settings:
Scan using the following database: extended
Scan archives: yes
Scan mail databases: yes
Scan area - My Computer:
A:\
C:\
D:\
E:\
Scan statistics:
Files scanned: 54156
Threat name: 3
Infected objects: 3
Suspicious objects: 0
Duration of the scan: 01:19:13
File name / Threat name / Threats count
D:\documents\DOWNLOADS\spvc.exe Infected: not-a-virus:AdWare.Win32.Relevant.n 1
D:\documents\LimeWire\Incomplete\T-460090-college ###### festyoung sexy brunette fucked during springbreak.mpg Infected: Trojan-Downloader.WMA.GetCodec.s 1
D:\documents\My Music\New Folder\CD1 - Meja - All 'bout the money.mp3 Infected: Trojan-Downloader.WMA.GetCodec.c 1
The selected area was scanned.
Looks like you got some bad stuff with Limewire, read this please.
We have noticed that many people seeking help from us are coming with infections contracted from the use of P2P programs.
Because of this, we changed our malware forum's policy on the use of P2P file sharing programs.
If your helper detects the presence of such programs on your computer he/she will ask you to remove them. Help will be withdrawn should you not agree to their removal.
If we clean your computer of infection, and you return to us a short time later with an infection contracted by the use of P2P programs, volunteer analysts will refuse their help.
We do not ask you to do this without reason.
P2P (File Sharing ) programs form a direct conduit onto your computer, their security measures are easily circumvented, and Malware writers are increasingly exploiting them to spread their wares onto your computer. Further to that, if your P2P program is not configured correctly you may be sharing more files than you realize. There have been cases where people's Passwords, Address Books and other personal, private, and financial details have been exposed to the file sharing network by a badly configured program.
Many of the programs come bundled with other unwanted programs, but even the ones free of any bundled software are not safe to use.
This article from InfoWorld illustrates the dangers of a poorly configured P2P program.
http://www.infoworld.com/article/07/09/06/…ID-theft_1.html
When you use them you are downloading software from an unknown source directly onto your computer, bypassing your Firewall and Anti-Virus software. Hardly surprising then that many of these Downloads are being targeted to carry infections.
Please download Malwarebytes' Anti-Malware from Here or Here
Double Click mbam-setup.exe to install the application.
Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
If an update is found, it will download and install the latest version.
Once the program has loaded, select "Perform Quick Scan", then click Scan.
The scan may take some time to finish,so please be patient.
When the scan is complete, click OK, then Show Results to view the results.
Make sure that everything is checked, and click Remove Selected.<– Don't forget this
When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.
The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
Copy and Paste the entire report in your next reply along with a New Hijackthis log.
hi! I really appreciate it that you are taking the time to help me out. I've just got a question. I've read the quote, does this mean I can't use LIMEWIRE anymore? I really love downloading free music
by the way I've already updated my MBAM and did the scan twice because as you can see from the log it didn't detect any infection. but KASPERSKY found 3 right? how do I remove them do I just look for the file and delete it?
thanks again.
Malwarebytes' Anti-Malware 1.32
Database version: 1650
Windows 5.1.2600 Service Pack 3
1/14/2009 7:16:38 PM
mbam-log-2009-01-14 (19-16-38).txt
Scan type: Quick Scan
Objects scanned: 53944
Time elapsed: 3 minute(s), 20 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
this mean I can't use LIMEWIRE anymore? I really love downloading free music
Let me explain this to you, I was out of state for the holidays visiting family and friends, and doing what I do I was asked to look at about 5 computers that my friends where having issues with, everyone of the 5 was infected from downloading songs from Limewire. The program itself is ok, but as you can see what came along with the FREE songs. Most of , if not all off the other malware removal forums have adopted this same policy for P2P, what happens if you keep using it and get infected again, help will not be offered. I would never allow garbage like this on any of my systems.
Read this from another poster
Hello, as the description states, I recently downloaded a song from Limewire that contained some sort of virus. As soon as the song finished I started having problems. There were 2 desktop shortcuts to Pornographic sites, there are popups, and every once in a while there is a "System Shutdown" message that counts down from 60 seconds then shuts the computer off. Any help is appreciated, here is the Hijackthis log…
You need to enable windows to SHOW ALL FILES AND FOLDERS
Instructions Here
Keep in mind if you install some of these programs. Only ONE Anti Virus and only ONE Firewall is recommended, more is overkill and can cause you problems. You can install all the Spyware programs I have listed without any problems. If you install Spyware Blaster, you can still install Spybot Search and Destroy but do not enable the TeaTimer in Spybot.
Here are some free programs to install, all free and highly regarded by the fine people in the Malware Removal Community
Spybot Search and Destroy 1.6 Check for Updates/ Immunize and run a Full System Scan on a regular basis. If you install Spyware Blaster ( Recommended ) then do not enable the TeaTimer in Spybot Search and Destroy.
Spyware Blaster It will prevent most spyware from ever being installed. No scan to run, just update about once a week and enable all protection.
Spyware Guard It offers realtime protection from spyware installation attempts, again, no scan to run, just install it and let it do its thing.
IE-Spyad
IE-Spyad places over 6000 web sites and domains in the IE Restricted list which will severely impair attempts to infect your system. It basically prevents any downloads (cookies etc) from the sites listed, although you will still be able to connect to the sites.
Firefox 3 It has more features and is a lot more secure than IE. It is a very easy and painless download and install, it will no way interfere with IE, you can use them both.
Since this issue appears to be resolved … this Topic has been closed. Glad we could be of assistance.
If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.
Everyone else please begin a New Topic.
✨ Ask AI
AI can make mistakes. Check the cited posts. Archived advice can be out-of-date
Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI