PDA

View Full Version : comp accting slugish



toyota4life23
2006-09-25, 02:29
well my comp is acting pretty slugish its not slow so i know this isnt normal here i ran a housecall scan and didnt find anything out of the ordinary and ran s & d a couple things came up but its still slow i did recive a virus alert earlier today, witch is probably it but avast couldnt find it ? anyway heres my hjt thanks for the sapport S&D rules

toyota4life23
2006-09-25, 02:30
Logfile of HijackThis v1.99.1
Scan saved at 6:36:10 PM, on 9/24/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Microsoft IntelliType Pro\type32.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Athan\Athan.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\PROGRA~1\AIM\aim.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashSimpl.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\N4D3R\Desktop\hijackthis_sfx.exe
C:\Program Files\compactinwierd\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [NVMixerTray] "C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Athan] C:\Program Files\Athan\Athan.exe
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Alpha Networks Inc. - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

pskelley
2006-09-27, 11:39
Welcome to the forum, have your issues been resolved? I see no malware in this log, I do see items to address and will mention them in a moment. Keep in mind your antivirus software is supposed to block attempts to access your computer. Depending on how you have the settings, it can do this silently or notify you if there is an attempt. This is normal operation, as long as it stops it, you are ok.

Here are a few suggestions I have.

1) C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
For your information, Viewpoint is installed by aol probably without your knowledge. If you don't use it, I suggest you install this resource waster. See the info in the links:
http://www.clickz.com/news/article.php/3561546
http://www.greatis.com/appdata/u/v/viewmgr.exe.htm
http://www.spywareinfo.com/newsletter/archives/2005/nov4.php#viewpoint

2) C:\Documents and Settings\N4D3R\Desktop\hijackthis_sfx.exe <<< delete this one

C:\Program Files\compactinwierd\HijackThis.exe <<< keep this one

3) C:\Program Files\Java\jre1.5.0_06\ <<< check this one for a possible update, see this information:
http://forums.spybot.info/showpost.php?p=12880&postcount=2

4) When did you last do routine maintenance? Last open the computer and clean the dust out of it? Here are some ideas that may help a "sluggish" computer.
http://www.microsoft.com/windows/IE/community/columns/IEtopten.mspx
http://vlaurie.com/computers2/Articles/runbetter.htm
http://www.linkgrinder.com/tutorials/10_Easy_Steps_to_Speed_Up_Your_Comp_24946_Computers_article.html
http://www.techbuilder.org/recipes/59201471

If I can do anything else, let me know or tashi:) will close this topic in a few days.
Here is some great information from Tony Klein, Texruss, ChrisRLG and Grinler to help you stay clean and safe online:
http://forums.spybot.info/showthread.php?t=279
http://russelltexas.com/malware/allclear.htm
http://forum.malwareremoval.com/viewtopic.php?t=14
http://www.bleepingcomputer.com/forums/topict2520.html
http://cybercoyote.org/security/not-admin.shtml

Thanks...pskelley
Safer Networking Forums
http://www.spybot.info/en/donate/index.html
If you are reading this information...thank a teacher,
If you are reading it in English...thank a soldier.

toyota4life23
2006-09-27, 20:57
thanks for the reply pskelly but im afriad thats not the case see before avast went nuts i recall downloading an ebay program and i think that might be the cause because after avast went off and said that it couldnt find the file is when i noticed the comp started to really slow down. it was really noticeable, i have a 3700+ and i know its not saposed to be that slow. anyways i removed some more malware and heres my new hjt any suggestions ?

Logfile of HijackThis v1.99.1
Scan saved at 2:56:40 PM, on 9/26/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Microsoft IntelliType Pro\type32.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Athan\Athan.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\PROGRA~1\AIM\aim.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [NVMixerTray] "C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe"
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Athan] C:\Program Files\Athan\Athan.exe
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [Music Alarm Clock] C:\PROGRA~1\MUSICA~1\mac.exe
O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\ua_lsp.dll
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Alpha Networks Inc. - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

pskelley
2006-09-27, 22:12
Thanks for that information. For your information there is a new item in this newest log that was not in this log:
Scan saved at 6:36:10 PM, on 9/24/2006. This item looks like this: O4 - HKLM\..\Run: [Music Alarm Clock] C:\PROGRA~1\MUSICA~1\mac.exe and does not appear until the log you just posted which was scanned for at
Scan saved at 2:56:40 PM, on 9/26/2006. This item does not appear to be bad, but it may well be infected. Use one or more of these free online scanners and tell me what it is:
http://virusscan.jotti.org/
http://www.kaspersky.com/scanforvirus
http://www.virustotal.com/flash/index_en.html

before avast went nuts i recall downloading an ebay program
Just what program did you download?

anyways i removed some more malwareExactly what "malware" did you remove"

and heres my new hjt any suggestions ?
I suggest you be specific with your information, hard for me to help when you give me absolutely no information?

While we are at it, you have ewido onboard, make sure you update the program, then run it in safe mode removing anything it locates unless you know it is not bad. Post the ewido scan report and the information I asked for.

Thanks

toyota4life23
2006-09-28, 02:00
srry about that lol i was running in a bit of a hurry we tha exact name of the program is BayGenie.eBay.Auction.Sniper.Pro.Edition.v2.5.1.0-HERiTAGE i did a scan on ewido on and found 2 " high risk " files

---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 1:58:09 AM 9/25/2006

+ Scan result:



C:\919_133.exe -> Downloader.Dyfuca.fb : Cleaned with backup (quarantined).
C:\Documents and Settings\Guest\Cookies\guest@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.100:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.101:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.40:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.41:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.42:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.43:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.44:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.45:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.51:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.52:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.53:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.54:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.46:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.112:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned.
:mozilla.109:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.110:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.111:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.23:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.24:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.25:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.26:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.27:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.87:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned.
:mozilla.88:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned.
:mozilla.14:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\uo0jqfdb.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.15:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\uo0jqfdb.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.47:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.83:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.84:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.85:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.86:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.104:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.74:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.75:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.76:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.77:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.78:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.72:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.73:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.115:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.116:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.113:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.114:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.59:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.64:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.65:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.66:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.67:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.68:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.69:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.70:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.56:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.57:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.58:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.


::Report end

toyota4life23
2006-09-28, 02:00
full scan #2

---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 1:58:09 AM 9/25/2006

+ Scan result:



C:\919_133.exe -> Downloader.Dyfuca.fb : Cleaned with backup (quarantined).
C:\Documents and Settings\Guest\Cookies\guest@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.100:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.101:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.40:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.41:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.42:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.43:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.44:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.45:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.51:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.52:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.53:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.54:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.46:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.112:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned.
:mozilla.109:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.110:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.111:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.23:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.24:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.25:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.26:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.27:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.87:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned.
:mozilla.88:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned.
:mozilla.14:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\uo0jqfdb.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.15:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\uo0jqfdb.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.47:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.83:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.84:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.85:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.86:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.104:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.74:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.75:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.76:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.77:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.78:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.72:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.73:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.115:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.116:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.113:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.114:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.59:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.64:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.65:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.66:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.67:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.68:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.69:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.70:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.56:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.57:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.58:C:\Documents and Settings\N4D3R\Application Data\Mozilla\Firefox\Profiles\avauh7by.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.


::Report end

pskelley
2006-09-28, 02:13
I am still have a hard time getting the information I am requesting. Would you read the instructions I posted last and give me some kind of answer when I ask a question.

Not a sensible thing to be doing, hurrying when you are working on your computer. That is when mistakes are made.

The ewido scan remove what it found, no surprises. I suggest you delete the Dyfuca.fb you quarantined, that is a nasty.
http://www.google.com/search?hl=en&q=Dyfuca.fb+&btnG=Google+Search

Thanks

toyota4life23
2006-09-28, 02:35
well this is the name of the file as i said earlier BayGenie.eBay.Auction.Sniper.Pro.Edition.v2.5.1.0-HERiTAGE
and the only " malware " i removed was what ever avast and ewido found srry for not being specific. so what do u think ?

pskelley
2006-09-28, 12:11
I think we have cleaned the malware from your computer. We can continue to run scans looking for stuff, but if your symptoms are still a "sluggish" computer, try the suggestions in the links I posted, or see what Google has to offer here: http://www.google.com/search?sourceid=navclient&ie=UTF-8&rls=GGLG,GGLG:2006-16,GGLG:en&q=sluggish+computer
3,140,000 for sluggish computer


Thanks

toyota4life23
2006-10-02, 16:22
the computer is malfunctioning keys are being pressed throught the whole proccess when i load up it f8 is pressed without me pressing it, when i get to the log in screen ( if i can even reach it, it barly goes that far because it freezes ) and try to log in under the admin it lookes like the comp holds down one key and it just keeps going tried to press backspace nothing. so i loged in under guest and random apps are opening when i get on something where theres typing its usually the z button that goes off ( zzzzzzzzzzzz ) no use of trying to delete lol its contiouse u cant beat a computer lol. umm random noises like the drum when u press the volume botton keeps going off repetedly, right click comes up often. reset it countless times same thing.
i really need help any sugesstions plz and thank you.

toyota4life23
2006-10-03, 17:21
nvm it was the stupid *icrosof* ergonomics 4000 very nice but has alof of issuse

pskelley
2006-10-03, 17:30
I am trying to help you clean up malware issues, and it sounds like your issues are not malware related, IE: stuff you have installed and possibly hardware. Let me look at a combofix log to see if I can see anymore malware causing the issues.

Thanks to sUBs and anyone who helped with this fix.

1. Download this file - combofix.exe
http://download.bleepingcomputer.com/sUBs/combofix.exe
2. Double click combofix.exe & follow the prompts.
3. When finished, it shall produce a log for you. Post that log in your next reply
Note: Do not mouseclick combofix's window whilst it's running. That may cause it to stall
If the log is large You might need to post half in one reply half in another.

Thanks

tashi
2006-10-10, 07:58
How is it going toyota4life23

tashi
2006-10-16, 08:31
This topic is closed due to lack of a response.

If you need it re-opened please send me a private message (pm) and provide a link to the thread. Applies only to the original topic starter.

Thank you Phil