View Full Version : Pc gone slower
Tecolote
2009-03-15, 02:41
Hi. I hope everything is fine with everybody an with all the projects, and that i soon may collaborate with you again.
For now, i'd like a help with my pc. It became very slow since returned from repair from a computer shop. It has gone to repair for other reasons, but it was surely infected then: all the executables disappeared. It came back with the executables ok, but very slower than before.
I thank you very much in advance.
This is the HijackThis log:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:31:37, on 14/3/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\RunDll32.exe
C:\Arquivos de programas\Alcatel\SpeedTouch USB\Dragdiag.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Arquivos de programas\Internet Explorer\IEXPLORE.EXE
C:\Arquivos de programas\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = &http://home.microsoft.com/intl/br/access/allinone.asp
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\ARQUIV~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Arquivos de programas\Alcatel\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\RunOnce: [SpybotDeletingA2177] command.com /c del "C:\WINDOWS\SchedLgU.Txt"
O4 - HKLM\..\RunOnce: [SpybotDeletingC8447] cmd.exe /c del "C:\WINDOWS\SchedLgU.Txt"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Arquivos de programas\Messenger\msmsgs.exe" /background
O4 - HKCU\..\RunOnce: [SpybotDeletingB6517] command.com /c del "C:\WINDOWS\SchedLgU.Txt"
O4 - HKCU\..\RunOnce: [SpybotDeletingD3970] cmd.exe /c del "C:\WINDOWS\SchedLgU.Txt"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\ARQUIV~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\ARQUIV~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\ARQUIV~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe
O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp
O17 - HKLM\System\CCS\Services\Tcpip\..\{BAD94718-B832-4C18-9285-D01CBA018B32}: NameServer = 201.10.128.3 201.10.120.3
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
--
End of file - 3314 bytes
Hi,
Download DDS and save it to your desktop from here (http://www.techsupportforum.com/sectools/sUBs/dds) or here (http://download.bleepingcomputer.com/sUBs/dds.scr) or here (http://www.forospyware.com/sUBs/dds).
Disable any script blocker, and then double click dds.scr to run the tool.
When done, DDS will open two (2) logs:
DDS.txt
Attach.txt
Save both reports to your desktop. Post them back to your topic.
Tecolote
2009-03-17, 02:21
Hmm, i hope i have understood well what i should do; to attach the files or to paste them in the topic. In either case, i'll do both, ok?
OK, here is the Attach.txt file generated:
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_09-03-16.01)
Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume1
Install Date: 8/3/2009 15:56:12
System Uptime: 16/3/2009 20:42:44 (0 hours ago)
Motherboard: ECS | | M863
Processor: AMD Athlon(tm) XP 1500+ | CPU 1 | 1300/100mhz
==== Disk Partitions =========================
A: is Removable
C: is FIXED (NTFS) - 75 GiB total, 70,307 GiB free.
D: is CDROM ()
==== Disabled Device Manager Items =============
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Modem PCI
Device ID: PCI\VEN_1039&DEV_7013&SUBSYS_0C041019&REV_A0\3&267A616A&0&16
Manufacturer:
Name: Modem PCI
PNP Device ID: PCI\VEN_1039&DEV_7013&SUBSYS_0C041019&REV_A0\3&267A616A&0&16
Service:
==== System Restore Points ===================
RP1: 8/3/2009 15:59:51 - Ponto de verificação do sistema
RP2: 8/3/2009 17:10:30 - Instalado Microsoft Office Professional Edição 2003
RP3: 12/3/2009 20:52:16 - Ponto de verificação do sistema
RP4: 14/3/2009 20:22:05 - Removido Microsoft Office Professional Edição 2003
==== Installed Programs ======================
7-Zip 4.42
Adobe Acrobat 4.0
Adobe Flash Player 10 ActiveX
Alcatel SpeedTouch USB Software
Atualização para Windows XP (KB911164)
C-Media 3D Audio
C-Media WDM Audio Driver
HijackThis 2.0.2
HP PrecisionScan LTX
NVIDIA Drivers
SModem 1.0
Spybot - Search & Destroy
TurboADSL 0.98
Tweak UI
WebFldrs XP
==== End Of File ===========================
:)Follows the DDS.txt file:
DDS (Ver_09-03-16.01) - NTFSx86
Run by Pablo at 20:50:36,07 on seg 16/03/2009
Internet Explorer: 6.0.2900.2180
Microsoft Windows XP Home Edition 5.1.2600.2.1252.55.1046.18.511.322 [GMT -3:00]
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Arquivos de programas\Alcatel\SpeedTouch USB\Dragdiag.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Arquivos de programas\Internet Explorer\IEXPLORE.EXE
C:\Arquivos de programas\dds.scr
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.google.com.br/
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\arquiv~1\spybot~1\SDHelper.dll
uRun: [CTFMON.EXE] c:\windows\system32\ctfmon.exe
uRun: [MSMSGS] "c:\arquivos de programas\messenger\msmsgs.exe" /background
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [nwiz] nwiz.exe /install
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
mRun: [SpeedTouch USB Diagnostics] "c:\arquivos de programas\alcatel\speedtouch usb\Dragdiag.exe" /icon
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
IE: E&xportar para o Microsoft Excel - c:\arquiv~1\micros~2\office11\EXCEL.EXE/3000
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\arquivos de programas\messenger\msmsgs.exe
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\arquiv~1\spybot~1\SDHelper.dll
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
TCP: {BAD94718-B832-4C18-9285-D01CBA018B32} = 201.10.128.3 201.10.120.3
============= SERVICES / DRIVERS ===============
R3 alcan5ln;Alcatel SpeedTouch(tm) USB ADSL RFC1483 Networking Driver (NDIS);c:\windows\system32\drivers\alcan5ln.sys [2009-3-8 36048]
R3 RMSPPPOE;WAN Miniport (PPP over Ethernet Protocol);c:\windows\system32\drivers\RMSPPPOE.SYS [2002-6-10 31232]
=============== Created Last 30 ================
2009-03-16 20:49 360,002 a------- c:\arquivos de programas\dds.scr
2009-03-14 21:43 10,134 a------- c:\windows\saferfavicon.ico
2009-03-14 21:29 <DIR> --d----- c:\arquivos de programas\Trend Micro
2009-03-14 20:31 <DIR> --d----- c:\docume~1\alluse~1\dadosd~1\Spybot - Search & Destroy
2009-03-14 20:31 <DIR> --d----- c:\arquivos de programas\Spybot - Search & Destroy
2009-03-14 20:19 812,344 a------- c:\arquivos de programas\HJTInstall.exe
2009-03-14 18:01 16,409,960 a------- c:\arquivos de programas\spybotsd162.exe
2009-03-14 17:35 <DIR> --ds---- c:\documents and settings\pablo\UserData
2009-03-14 17:19 <DIR> --d----- c:\windows\system32\SoftwareDistribution
2009-03-08 22:16 <DIR> --d----- c:\windows\Profiles
2009-03-08 22:16 327,168 a------- c:\windows\IsUninst.exe
2009-03-08 22:16 <DIR> --d----- c:\documents and settings\pablo\WINDOWS
2009-03-08 22:13 6,686,176 a------- c:\arquivos de programas\rs405eng.exe
2009-03-08 18:06 <DIR> --d----- c:\arquivos de programas\sj646
2009-03-08 17:14 13,646 a------- c:\windows\system32\wpa.bak
2009-03-08 17:11 421 a------- c:\windows\ODBC.INI
2009-03-08 16:54 <DIR> --d----- c:\arquivos de programas\TurboADSL
2009-03-08 16:52 2,238 a------- c:\windows\brt.ico
2009-03-08 16:51 748,544 a------- c:\windows\system32\drivers\alcaudsl.sys
2009-03-08 16:51 36,048 a------- c:\windows\system32\drivers\alcan5ln.sys
2009-03-08 16:51 5,607 a------- c:\windows\system32\stci.dll
2009-03-08 16:51 5,312 a------- c:\windows\system32\drivers\alcawh.sys
2009-03-08 16:51 4,000 a------- c:\windows\system32\drivers\alcacr.sys
2009-03-08 16:51 <DIR> --d----- c:\arquivos de programas\Alcatel
2009-03-08 16:51 <DIR> --d----- c:\arquivos de programas\Programador de Modem
2009-03-08 16:46 41,292,400 a------- c:\arquivos de programas\sj646pr.exe
2009-03-08 16:46 1,136,575 a------- c:\arquivos de programas\ProxN45j.zip
2009-03-08 16:46 212,849 a------- c:\arquivos de programas\hijackthis.zip
2009-03-08 16:44 26,496 ac------ c:\windows\system32\dllcache\usbstor.sys
2009-03-08 16:13 <DIR> --d----- c:\arquivos de programas\TS-H552U
2009-03-08 16:09 6,400 ac------ c:\windows\system32\dllcache\splitter.sys
2009-03-08 16:09 6,400 a------- c:\windows\system32\drivers\splitter.sys
2009-03-08 16:09 82,944 ac------ c:\windows\system32\dllcache\wdmaud.sys
2009-03-08 16:09 82,944 a------- c:\windows\system32\drivers\wdmaud.sys
2009-03-08 16:09 52,864 ac------ c:\windows\system32\dllcache\dmusic.sys
2009-03-08 16:09 52,864 a------- c:\windows\system32\drivers\DMusic.sys
2009-03-08 16:09 54,272 ac------ c:\windows\system32\dllcache\swmidi.sys
2009-03-08 16:09 54,272 a------- c:\windows\system32\drivers\swmidi.sys
2009-03-08 16:09 142,464 ac------ c:\windows\system32\dllcache\aec.sys
2009-03-08 16:09 142,464 a------- c:\windows\system32\drivers\aec.sys
2009-03-08 16:08 <DIR> --d----- c:\arquivos de programas\C-Media 3D Audio
2009-03-08 16:07 17,505 a----r-- C:\DBI.EXE
2009-03-08 16:06 208,896 a------- c:\windows\system32\nvudisp.exe
2009-03-08 16:06 88,566 a------- c:\windows\system32\nvapps.xml
2009-03-08 16:06 17,056 a------- c:\windows\system32\nvdisp.nvu
2009-03-08 16:06 <DIR> --d----- c:\windows\nview
2009-03-08 16:06 <DIR> --d----- c:\windows\system32\ReinstallBackups
2009-03-08 16:05 208,896 a------- c:\windows\system32\NVUNINST.EXE
2009-03-08 16:05 <DIR> --d----- c:\arquivos de programas\arquivos comuns\InstallShield
2009-03-08 16:05 <DIR> --d----- C:\NVIDIA
2009-03-08 16:03 266,360 a------- c:\windows\system32\TweakUI.exe
2009-03-08 16:03 160,217 a------- c:\windows\system32\PowerToysLicense.rtf
2009-03-08 15:59 <DIR> --d-hr-- c:\documents and settings\pablo\Dados de aplicativos
2009-03-08 15:59 <DIR> --d-h--- c:\documents and settings\pablo\Configurações locais
2009-03-08 15:59 <DIR> --d-h--- c:\documents and settings\pablo\Ambiente de rede
2009-03-08 15:59 <DIR> --d-h--- c:\documents and settings\pablo\Ambiente de impressão
2009-03-08 15:59 <DIR> --d--r-- c:\documents and settings\pablo\Favoritos
2009-03-08 15:59 <DIR> --d-h--- c:\documents and settings\pablo\Modelos
2009-03-08 15:59 <DIR> --d--r-- c:\documents and settings\pablo\Meus documentos
2009-03-08 15:59 <DIR> --d--r-- c:\documents and settings\pablo\Menu Iniciar
2009-03-08 15:59 <DIR> --d----- c:\documents and settings\Pablo
2009-03-08 15:58 <DIR> --ds---- c:\windows\system32\Microsoft
2009-03-08 15:58 8,192 a------- c:\windows\REGLOCS.OLD
2009-03-08 15:56 28,288 ac------ c:\windows\system32\dllcache\xjis.nls
2009-03-08 15:56 156,672 ac------ c:\windows\system32\dllcache\winzm.ime
2009-03-08 15:56 156,672 ac------ c:\windows\system32\dllcache\winsp.ime
2009-03-08 15:56 156,672 ac------ c:\windows\system32\dllcache\winpy.ime
2009-03-08 15:56 65,536 ac------ c:\windows\system32\dllcache\winime.ime
2009-03-08 15:56 79,360 ac------ c:\windows\system32\dllcache\winar30.ime
2009-03-08 15:56 69,120 ac------ c:\windows\system32\dllcache\wingb.ime
2009-03-08 15:56 31,488 ac------ c:\windows\system32\dllcache\weitekp9.sys
2009-03-08 15:56 41,600 ac------ c:\windows\system32\dllcache\weitekp9.dll
2009-03-08 15:56 86,073 ac------ c:\windows\system32\dllcache\voicesub.dll
2009-03-08 15:56 48,256 ac------ c:\windows\system32\dllcache\w32.dll
2009-03-08 15:54 6,144 ac------ c:\windows\system32\dllcache\kbdinpun.dll
2009-03-08 15:53 66,082 ac------ c:\windows\system32\dllcache\c_20285.nls
2009-03-08 15:52 23,392 a------- c:\windows\system32\nscompat.tlb
2009-03-08 15:52 16,832 a------- c:\windows\system32\amcompat.tlb
2009-03-08 15:52 316,640 a------- c:\windows\WMSysPr9.prx
2009-03-08 15:51 <DIR> --dsh--- c:\documents and settings\all users\DRM
2009-03-08 15:51 <DIR> --d-h--- c:\arquivos de programas\WindowsUpdate
2009-03-08 15:51 <DIR> --d----- c:\arquivos de programas\Serviços on-line
2009-03-08 15:50 <DIR> --d----- c:\arquivos de programas\arquivos comuns\Serviços
2009-03-08 15:50 <DIR> --d----- c:\arquivos de programas\arquivos comuns\MSSoap
2009-03-08 15:48 <DIR> --d----- c:\arquivos de programas\Messenger
2009-03-08 15:48 <DIR> --d----- c:\arquivos de programas\MSN Gaming Zone
2009-03-08 15:48 <DIR> --d----- c:\arquivos de programas\Windows NT
2009-03-08 12:41 <DIR> --d----- c:\arquivos de programas\arquivos comuns\ODBC
2009-03-08 12:40 <DIR> --d----- c:\arquivos de programas\arquivos comuns\SpeechEngines
2009-03-08 12:40 <DIR> --d-h--- c:\documents and settings\all users\Modelos
2009-03-08 12:40 <DIR> --d--r-- c:\documents and settings\all users\Menu Iniciar
2009-03-08 12:40 <DIR> --d--r-- c:\documents and settings\all users\Documentos
2009-03-08 12:40 <DIR> --d----- c:\documents and settings\all users\Favoritos
2009-03-08 12:40 <DIR> --d-hr-- c:\documents and settings\all users\Dados de aplicativos
==================== Find3M ====================
2009-03-14 17:21 76,487 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
2009-03-08 15:59 344,734 a------- c:\windows\system32\perfh016.dat
2009-03-08 15:59 48,846 a------- c:\windows\system32\perfc016.dat
2009-03-08 15:49 21,844 a------- c:\windows\system32\emptyregdb.dat
2001-11-23 01:08 712,704 a----r-- c:\windows\inf\other\AUDIO3D.DLL
============= FINISH: 20:51:02,84 ===============
:)That's it. I apologize for being over-zelous: better exceed a little than to be much in fault, that's my thought.:alien:
Cheers,
Tecolote
Hi
Yes, both attaching the logs or pasting them as plain text work :) Logs look ok. Let's take a few other steps to verify this.
Download ATF (Atribune Temp File) Cleaner© by Atribune (http://www.atribune.org/ccount/click.php?id=1) to your desktop.
Double-click ATF Cleaner.exe to open it
Under Main choose:
Windows Temp
Current User Temp
All Users Temp
Cookies
Temporary Internet Files
Prefetch
Java Cache
*The other boxes are optional*
Then click the Empty Selected button.
If you use Firefox:
Click Firefox at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click NO at the prompt.
If you use Opera:
Click Opera at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click NO at the prompt.
Click Exit on the Main menu to close the program.
Kaspersky Online Scanner (http://www.kaspersky.com/kos/eng/partner/us/languages/english/check.html?n=1225554235248)
Note: If you are using Windows Vista, open your browser by right-clicking on its icon and select 'Run as administrator' to perform this scan.
Read the requirements and privacy statement then click on the Accept button.
The program will launch and start to download the latest definition files.
You will be prompted to install an application from Kaspersky. Click Run
Make sure these boxes are checked (ticked). If they are not, please tick them and click on the Save button:
Spyware, Adware, Dialers, and other potentially dangerous programs
Archives
Click on My Computer under Scan.
Once the scan is complete, it will display the results. Click on View Scan Report.
Click on Save Report As....
Change the Files of type to Text file (.txt) before clicking on the Save button.
Save this report to a convenient place.
Copy and paste that information into your topic.
The scan will take a while so be patient and let it run. As it scans your machine very deeply it could take hours to complete, Kaspersky suggests running it during a time of low activity.
If you need a tutorial, see here (http://i275.photobucket.com/albums/jj285/Bleeping/KAS/KAS9.gif)
Tecolote
2009-03-18, 04:29
The interface of Kasper's onlinescan seems different from the expected; there was nothing to tick at, as to select malwares, etc. For that reason i utterly hope the scan is useful for somebody...
The log:
--------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER 7 REPORT
Tuesday, March 17, 2009
Operating System: Microsoft Windows XP Home Edition Service Pack 2 (build 2600)
Kaspersky Online Scanner 7 version: 7.0.25.0
Program database last update: Tuesday, March 17, 2009 23:51:03
Records in database: 1924301
--------------------------------------------------------------------------------
Scan settings:
Scan using the following database: extended
Scan archives: yes
Scan mail databases: yes
Scan area - My Computer:
A:\
C:\
D:\
Scan statistics:
Files scanned: 13263
Threat name: 0
Infected objects: 0
Suspicious objects: 0
Duration of the scan: 00:29:39
No malware has been detected. The scan area is clean.
The selected area was scanned.
Hi
Looks like a clean report. If there are still issues left then they are most likely not malware related.
Tecolote
2009-03-20, 03:33
Blade81, is it possible that a virus or a low battery could change cmos data so that my athlon 2.4 be recognized as 1.55 ghz? Cause i have bought and installed a 2.4 (contrary to what the control panel says!). I had a low battery warning yesterday, and so i guess the processor now thinks and behaves like a slower unit...
OR... the computer shop has changed my processor, what is unbelievable!
Can you figure out what's the case? What could i do to reverse the cmos change, if that's the cause of the problem?
Hi
Low battery can cause BIOS settings "reset" which in turn may occur as lower CPU frequency. Since this isn't malware issue and we deal only those here, I recommend you ask at http://forums.pcpitstop.com for example if needed. They deal with general computer issues there :)
Due to inactivity, this thread will now be closed.
Note:If it has been four days or more since your last post, and the helper assisting you posted a response to that post to which you did not reply, your topic will not be reopened. At that point, if you still require help, please start a new topic and include a fresh HijackThis log and a link to your previous thread.
If it has been less than four days since your last response and you need the thread re-opened, please send me or MOD a private message (pm). A valid, working link to the closed topic is required.