Results 1 to 9 of 9

Thread: Pc gone slower

  1. #1
    Translator Team Tecolote's Avatar
    Join Date
    Nov 2005
    Location
    Goiânia, Goiás, Brasil
    Posts
    40

    Default Pc gone slower

    Hi. I hope everything is fine with everybody an with all the projects, and that i soon may collaborate with you again.

    For now, i'd like a help with my pc. It became very slow since returned from repair from a computer shop. It has gone to repair for other reasons, but it was surely infected then: all the executables disappeared. It came back with the executables ok, but very slower than before.

    I thank you very much in advance.

    This is the HijackThis log:

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 21:31:37, on 14/3/2009
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\nvsvc32.exe
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\WINDOWS\system32\RunDll32.exe
    C:\Arquivos de programas\Alcatel\SpeedTouch USB\Dragdiag.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\Arquivos de programas\Internet Explorer\IEXPLORE.EXE
    C:\Arquivos de programas\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = &http://home.microsoft.com/intl/br/access/allinone.asp
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\ARQUIV~1\SPYBOT~1\SDHelper.dll
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Arquivos de programas\Alcatel\SpeedTouch USB\Dragdiag.exe" /icon
    O4 - HKLM\..\RunOnce: [SpybotDeletingA2177] command.com /c del "C:\WINDOWS\SchedLgU.Txt"
    O4 - HKLM\..\RunOnce: [SpybotDeletingC8447] cmd.exe /c del "C:\WINDOWS\SchedLgU.Txt"
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Arquivos de programas\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\RunOnce: [SpybotDeletingB6517] command.com /c del "C:\WINDOWS\SchedLgU.Txt"
    O4 - HKCU\..\RunOnce: [SpybotDeletingD3970] cmd.exe /c del "C:\WINDOWS\SchedLgU.Txt"
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\ARQUIV~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\ARQUIV~1\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\ARQUIV~1\SPYBOT~1\SDHelper.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe
    O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp
    O17 - HKLM\System\CCS\Services\Tcpip\..\{BAD94718-B832-4C18-9285-D01CBA018B32}: NameServer = 201.10.128.3 201.10.120.3
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

    --
    End of file - 3314 bytes

  2. #2
    Security Expert: Emeritus Blade81's Avatar
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    25,288

    Default

    Hi,

    Download DDS and save it to your desktop from here or here or here.
    Disable any script blocker, and then double click dds.scr to run the tool.
    • When done, DDS will open two (2) logs:
      1. DDS.txt
      2. Attach.txt
    • Save both reports to your desktop. Post them back to your topic.
    Microsoft Windows Insider MVP 2016-2020
    Microsoft MVP Consumer Security 2008-2015
    UNITE member since 2006

    If you have problems create a thread in the forum, please.

    Malware removal instructions are for the correspondent user's case only.

  3. #3
    Translator Team Tecolote's Avatar
    Join Date
    Nov 2005
    Location
    Goiânia, Goiás, Brasil
    Posts
    40

    Default

    Hmm, i hope i have understood well what i should do; to attach the files or to paste them in the topic. In either case, i'll do both, ok?
    OK, here is the Attach.txt file generated:

    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT

    DDS (Ver_09-03-16.01)

    Microsoft Windows XP Home Edition
    Boot Device: \Device\HarddiskVolume1
    Install Date: 8/3/2009 15:56:12
    System Uptime: 16/3/2009 20:42:44 (0 hours ago)

    Motherboard: ECS | | M863
    Processor: AMD Athlon(tm) XP 1500+ | CPU 1 | 1300/100mhz

    ==== Disk Partitions =========================

    A: is Removable
    C: is FIXED (NTFS) - 75 GiB total, 70,307 GiB free.
    D: is CDROM ()

    ==== Disabled Device Manager Items =============

    Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
    Description: Modem PCI
    Device ID: PCI\VEN_1039&DEV_7013&SUBSYS_0C041019&REV_A0\3&267A616A&0&16
    Manufacturer:
    Name: Modem PCI
    PNP Device ID: PCI\VEN_1039&DEV_7013&SUBSYS_0C041019&REV_A0\3&267A616A&0&16
    Service:

    ==== System Restore Points ===================

    RP1: 8/3/2009 15:59:51 - Ponto de verificação do sistema
    RP2: 8/3/2009 17:10:30 - Instalado Microsoft Office Professional Edição 2003
    RP3: 12/3/2009 20:52:16 - Ponto de verificação do sistema
    RP4: 14/3/2009 20:22:05 - Removido Microsoft Office Professional Edição 2003

    ==== Installed Programs ======================

    7-Zip 4.42
    Adobe Acrobat 4.0
    Adobe Flash Player 10 ActiveX
    Alcatel SpeedTouch USB Software
    Atualização para Windows XP (KB911164)
    C-Media 3D Audio
    C-Media WDM Audio Driver
    HijackThis 2.0.2
    HP PrecisionScan LTX
    NVIDIA Drivers
    SModem 1.0
    Spybot - Search & Destroy
    TurboADSL 0.98
    Tweak UI
    WebFldrs XP

    ==== End Of File ===========================

    Follows the DDS.txt file:


    DDS (Ver_09-03-16.01) - NTFSx86
    Run by Pablo at 20:50:36,07 on seg 16/03/2009
    Internet Explorer: 6.0.2900.2180
    Microsoft Windows XP Home Edition 5.1.2600.2.1252.55.1046.18.511.322 [GMT -3:00]


    ============== Running Processes ===============

    C:\WINDOWS\system32\svchost -k DcomLaunch
    svchost.exe
    C:\WINDOWS\System32\svchost.exe -k netsvcs
    svchost.exe
    svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\nvsvc32.exe
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\Arquivos de programas\Alcatel\SpeedTouch USB\Dragdiag.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\Arquivos de programas\Internet Explorer\IEXPLORE.EXE
    C:\Arquivos de programas\dds.scr

    ============== Pseudo HJT Report ===============

    uStart Page = hxxp://www.google.com.br/
    BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\arquiv~1\spybot~1\SDHelper.dll
    uRun: [CTFMON.EXE] c:\windows\system32\ctfmon.exe
    uRun: [MSMSGS] "c:\arquivos de programas\messenger\msmsgs.exe" /background
    mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
    mRun: [nwiz] nwiz.exe /install
    mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
    mRun: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    mRun: [SpeedTouch USB Diagnostics] "c:\arquivos de programas\alcatel\speedtouch usb\Dragdiag.exe" /icon
    dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
    IE: E&xportar para o Microsoft Excel - c:\arquiv~1\micros~2\office11\EXCEL.EXE/3000
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\arquivos de programas\messenger\msmsgs.exe
    IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\arquiv~1\spybot~1\SDHelper.dll
    DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
    TCP: {BAD94718-B832-4C18-9285-D01CBA018B32} = 201.10.128.3 201.10.120.3

    ============= SERVICES / DRIVERS ===============

    R3 alcan5ln;Alcatel SpeedTouch(tm) USB ADSL RFC1483 Networking Driver (NDIS);c:\windows\system32\drivers\alcan5ln.sys [2009-3-8 36048]
    R3 RMSPPPOE;WAN Miniport (PPP over Ethernet Protocol);c:\windows\system32\drivers\RMSPPPOE.SYS [2002-6-10 31232]

    =============== Created Last 30 ================

    2009-03-16 20:49 360,002 a------- c:\arquivos de programas\dds.scr
    2009-03-14 21:43 10,134 a------- c:\windows\saferfavicon.ico
    2009-03-14 21:29 <DIR> --d----- c:\arquivos de programas\Trend Micro
    2009-03-14 20:31 <DIR> --d----- c:\docume~1\alluse~1\dadosd~1\Spybot - Search & Destroy
    2009-03-14 20:31 <DIR> --d----- c:\arquivos de programas\Spybot - Search & Destroy
    2009-03-14 20:19 812,344 a------- c:\arquivos de programas\HJTInstall.exe
    2009-03-14 18:01 16,409,960 a------- c:\arquivos de programas\spybotsd162.exe
    2009-03-14 17:35 <DIR> --ds---- c:\documents and settings\pablo\UserData
    2009-03-14 17:19 <DIR> --d----- c:\windows\system32\SoftwareDistribution
    2009-03-08 22:16 <DIR> --d----- c:\windows\Profiles
    2009-03-08 22:16 327,168 a------- c:\windows\IsUninst.exe
    2009-03-08 22:16 <DIR> --d----- c:\documents and settings\pablo\WINDOWS
    2009-03-08 22:13 6,686,176 a------- c:\arquivos de programas\rs405eng.exe
    2009-03-08 18:06 <DIR> --d----- c:\arquivos de programas\sj646
    2009-03-08 17:14 13,646 a------- c:\windows\system32\wpa.bak
    2009-03-08 17:11 421 a------- c:\windows\ODBC.INI
    2009-03-08 16:54 <DIR> --d----- c:\arquivos de programas\TurboADSL
    2009-03-08 16:52 2,238 a------- c:\windows\brt.ico
    2009-03-08 16:51 748,544 a------- c:\windows\system32\drivers\alcaudsl.sys
    2009-03-08 16:51 36,048 a------- c:\windows\system32\drivers\alcan5ln.sys
    2009-03-08 16:51 5,607 a------- c:\windows\system32\stci.dll
    2009-03-08 16:51 5,312 a------- c:\windows\system32\drivers\alcawh.sys
    2009-03-08 16:51 4,000 a------- c:\windows\system32\drivers\alcacr.sys
    2009-03-08 16:51 <DIR> --d----- c:\arquivos de programas\Alcatel
    2009-03-08 16:51 <DIR> --d----- c:\arquivos de programas\Programador de Modem
    2009-03-08 16:46 41,292,400 a------- c:\arquivos de programas\sj646pr.exe
    2009-03-08 16:46 1,136,575 a------- c:\arquivos de programas\ProxN45j.zip
    2009-03-08 16:46 212,849 a------- c:\arquivos de programas\hijackthis.zip
    2009-03-08 16:44 26,496 ac------ c:\windows\system32\dllcache\usbstor.sys
    2009-03-08 16:13 <DIR> --d----- c:\arquivos de programas\TS-H552U
    2009-03-08 16:09 6,400 ac------ c:\windows\system32\dllcache\splitter.sys
    2009-03-08 16:09 6,400 a------- c:\windows\system32\drivers\splitter.sys
    2009-03-08 16:09 82,944 ac------ c:\windows\system32\dllcache\wdmaud.sys
    2009-03-08 16:09 82,944 a------- c:\windows\system32\drivers\wdmaud.sys
    2009-03-08 16:09 52,864 ac------ c:\windows\system32\dllcache\dmusic.sys
    2009-03-08 16:09 52,864 a------- c:\windows\system32\drivers\DMusic.sys
    2009-03-08 16:09 54,272 ac------ c:\windows\system32\dllcache\swmidi.sys
    2009-03-08 16:09 54,272 a------- c:\windows\system32\drivers\swmidi.sys
    2009-03-08 16:09 142,464 ac------ c:\windows\system32\dllcache\aec.sys
    2009-03-08 16:09 142,464 a------- c:\windows\system32\drivers\aec.sys
    2009-03-08 16:08 <DIR> --d----- c:\arquivos de programas\C-Media 3D Audio
    2009-03-08 16:07 17,505 a----r-- C:\DBI.EXE
    2009-03-08 16:06 208,896 a------- c:\windows\system32\nvudisp.exe
    2009-03-08 16:06 88,566 a------- c:\windows\system32\nvapps.xml
    2009-03-08 16:06 17,056 a------- c:\windows\system32\nvdisp.nvu
    2009-03-08 16:06 <DIR> --d----- c:\windows\nview
    2009-03-08 16:06 <DIR> --d----- c:\windows\system32\ReinstallBackups
    2009-03-08 16:05 208,896 a------- c:\windows\system32\NVUNINST.EXE
    2009-03-08 16:05 <DIR> --d----- c:\arquivos de programas\arquivos comuns\InstallShield
    2009-03-08 16:05 <DIR> --d----- C:\NVIDIA
    2009-03-08 16:03 266,360 a------- c:\windows\system32\TweakUI.exe
    2009-03-08 16:03 160,217 a------- c:\windows\system32\PowerToysLicense.rtf
    2009-03-08 15:59 <DIR> --d-hr-- c:\documents and settings\pablo\Dados de aplicativos
    2009-03-08 15:59 <DIR> --d-h--- c:\documents and settings\pablo\Configurações locais
    2009-03-08 15:59 <DIR> --d-h--- c:\documents and settings\pablo\Ambiente de rede
    2009-03-08 15:59 <DIR> --d-h--- c:\documents and settings\pablo\Ambiente de impressão
    2009-03-08 15:59 <DIR> --d--r-- c:\documents and settings\pablo\Favoritos
    2009-03-08 15:59 <DIR> --d-h--- c:\documents and settings\pablo\Modelos
    2009-03-08 15:59 <DIR> --d--r-- c:\documents and settings\pablo\Meus documentos
    2009-03-08 15:59 <DIR> --d--r-- c:\documents and settings\pablo\Menu Iniciar
    2009-03-08 15:59 <DIR> --d----- c:\documents and settings\Pablo
    2009-03-08 15:58 <DIR> --ds---- c:\windows\system32\Microsoft
    2009-03-08 15:58 8,192 a------- c:\windows\REGLOCS.OLD
    2009-03-08 15:56 28,288 ac------ c:\windows\system32\dllcache\xjis.nls
    2009-03-08 15:56 156,672 ac------ c:\windows\system32\dllcache\winzm.ime
    2009-03-08 15:56 156,672 ac------ c:\windows\system32\dllcache\winsp.ime
    2009-03-08 15:56 156,672 ac------ c:\windows\system32\dllcache\winpy.ime
    2009-03-08 15:56 65,536 ac------ c:\windows\system32\dllcache\winime.ime
    2009-03-08 15:56 79,360 ac------ c:\windows\system32\dllcache\winar30.ime
    2009-03-08 15:56 69,120 ac------ c:\windows\system32\dllcache\wingb.ime
    2009-03-08 15:56 31,488 ac------ c:\windows\system32\dllcache\weitekp9.sys
    2009-03-08 15:56 41,600 ac------ c:\windows\system32\dllcache\weitekp9.dll
    2009-03-08 15:56 86,073 ac------ c:\windows\system32\dllcache\voicesub.dll
    2009-03-08 15:56 48,256 ac------ c:\windows\system32\dllcache\w32.dll
    2009-03-08 15:54 6,144 ac------ c:\windows\system32\dllcache\kbdinpun.dll
    2009-03-08 15:53 66,082 ac------ c:\windows\system32\dllcache\c_20285.nls
    2009-03-08 15:52 23,392 a------- c:\windows\system32\nscompat.tlb
    2009-03-08 15:52 16,832 a------- c:\windows\system32\amcompat.tlb
    2009-03-08 15:52 316,640 a------- c:\windows\WMSysPr9.prx
    2009-03-08 15:51 <DIR> --dsh--- c:\documents and settings\all users\DRM
    2009-03-08 15:51 <DIR> --d-h--- c:\arquivos de programas\WindowsUpdate
    2009-03-08 15:51 <DIR> --d----- c:\arquivos de programas\Serviços on-line
    2009-03-08 15:50 <DIR> --d----- c:\arquivos de programas\arquivos comuns\Serviços
    2009-03-08 15:50 <DIR> --d----- c:\arquivos de programas\arquivos comuns\MSSoap
    2009-03-08 15:48 <DIR> --d----- c:\arquivos de programas\Messenger
    2009-03-08 15:48 <DIR> --d----- c:\arquivos de programas\MSN Gaming Zone
    2009-03-08 15:48 <DIR> --d----- c:\arquivos de programas\Windows NT
    2009-03-08 12:41 <DIR> --d----- c:\arquivos de programas\arquivos comuns\ODBC
    2009-03-08 12:40 <DIR> --d----- c:\arquivos de programas\arquivos comuns\SpeechEngines
    2009-03-08 12:40 <DIR> --d-h--- c:\documents and settings\all users\Modelos
    2009-03-08 12:40 <DIR> --d--r-- c:\documents and settings\all users\Menu Iniciar
    2009-03-08 12:40 <DIR> --d--r-- c:\documents and settings\all users\Documentos
    2009-03-08 12:40 <DIR> --d----- c:\documents and settings\all users\Favoritos
    2009-03-08 12:40 <DIR> --d-hr-- c:\documents and settings\all users\Dados de aplicativos

    ==================== Find3M ====================

    2009-03-14 17:21 76,487 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
    2009-03-08 15:59 344,734 a------- c:\windows\system32\perfh016.dat
    2009-03-08 15:59 48,846 a------- c:\windows\system32\perfc016.dat
    2009-03-08 15:49 21,844 a------- c:\windows\system32\emptyregdb.dat
    2001-11-23 01:08 712,704 a----r-- c:\windows\inf\other\AUDIO3D.DLL

    ============= FINISH: 20:51:02,84 ===============

    That's it. I apologize for being over-zelous: better exceed a little than to be much in fault, that's my thought.
    Cheers,
    Tecolote
    Attached Files Attached Files

  4. #4
    Security Expert: Emeritus Blade81's Avatar
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    25,288

    Default

    Hi

    Yes, both attaching the logs or pasting them as plain text work Logs look ok. Let's take a few other steps to verify this.


    Download ATF (Atribune Temp File) Cleaner© by Atribune to your desktop.

    Double-click ATF Cleaner.exe to open it

    Under Main choose:
    Windows Temp
    Current User Temp
    All Users Temp
    Cookies
    Temporary Internet Files
    Prefetch
    Java Cache

    *The other boxes are optional*
    Then click the Empty Selected button.

    If you use Firefox:
    Click Firefox at the top and choose: Select All
    Click the Empty Selected button.
    NOTE: If you would like to keep your saved passwords, please click NO at the prompt.

    If you use Opera:
    Click Opera at the top and choose: Select All
    Click the Empty Selected button.
    NOTE: If you would like to keep your saved passwords, please click NO at the prompt.

    Click Exit on the Main menu to close the program.



    Kaspersky Online Scanner

    Note: If you are using Windows Vista, open your browser by right-clicking on its icon and select 'Run as administrator' to perform this scan.


    • Read the requirements and privacy statement then click on the Accept button.


    • The program will launch and start to download the latest definition files.


    • You will be prompted to install an application from Kaspersky. Click Run


    • Make sure these boxes are checked (ticked). If they are not, please tick them and click on the Save button:
    • Spyware, Adware, Dialers, and other potentially dangerous programs
      Archives


    • Click on My Computer under Scan.


    • Once the scan is complete, it will display the results. Click on View Scan Report.


    • Click on Save Report As....


    • Change the Files of type to Text file (.txt) before clicking on the Save button.


    • Save this report to a convenient place.


    • Copy and paste that information into your topic.


    • The scan will take a while so be patient and let it run. As it scans your machine very deeply it could take hours to complete, Kaspersky suggests running it during a time of low activity.

    If you need a tutorial, see here
    Microsoft Windows Insider MVP 2016-2020
    Microsoft MVP Consumer Security 2008-2015
    UNITE member since 2006

    If you have problems create a thread in the forum, please.

    Malware removal instructions are for the correspondent user's case only.

  5. #5
    Translator Team Tecolote's Avatar
    Join Date
    Nov 2005
    Location
    Goiânia, Goiás, Brasil
    Posts
    40

    Default

    The interface of Kasper's onlinescan seems different from the expected; there was nothing to tick at, as to select malwares, etc. For that reason i utterly hope the scan is useful for somebody...
    The log:

    --------------------------------------------------------------------------------
    KASPERSKY ONLINE SCANNER 7 REPORT
    Tuesday, March 17, 2009
    Operating System: Microsoft Windows XP Home Edition Service Pack 2 (build 2600)
    Kaspersky Online Scanner 7 version: 7.0.25.0
    Program database last update: Tuesday, March 17, 2009 23:51:03
    Records in database: 1924301
    --------------------------------------------------------------------------------

    Scan settings:
    Scan using the following database: extended
    Scan archives: yes
    Scan mail databases: yes

    Scan area - My Computer:
    A:\
    C:\
    D:\

    Scan statistics:
    Files scanned: 13263
    Threat name: 0
    Infected objects: 0
    Suspicious objects: 0
    Duration of the scan: 00:29:39

    No malware has been detected. The scan area is clean.

    The selected area was scanned.

  6. #6
    Security Expert: Emeritus Blade81's Avatar
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    25,288

    Default

    Hi

    Looks like a clean report. If there are still issues left then they are most likely not malware related.
    Microsoft Windows Insider MVP 2016-2020
    Microsoft MVP Consumer Security 2008-2015
    UNITE member since 2006

    If you have problems create a thread in the forum, please.

    Malware removal instructions are for the correspondent user's case only.

  7. #7
    Translator Team Tecolote's Avatar
    Join Date
    Nov 2005
    Location
    Goiânia, Goiás, Brasil
    Posts
    40

    Default

    Blade81, is it possible that a virus or a low battery could change cmos data so that my athlon 2.4 be recognized as 1.55 ghz? Cause i have bought and installed a 2.4 (contrary to what the control panel says!). I had a low battery warning yesterday, and so i guess the processor now thinks and behaves like a slower unit...

    OR... the computer shop has changed my processor, what is unbelievable!

    Can you figure out what's the case? What could i do to reverse the cmos change, if that's the cause of the problem?

  8. #8
    Security Expert: Emeritus Blade81's Avatar
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    25,288

    Default

    Hi

    Low battery can cause BIOS settings "reset" which in turn may occur as lower CPU frequency. Since this isn't malware issue and we deal only those here, I recommend you ask at http://forums.pcpitstop.com for example if needed. They deal with general computer issues there
    Microsoft Windows Insider MVP 2016-2020
    Microsoft MVP Consumer Security 2008-2015
    UNITE member since 2006

    If you have problems create a thread in the forum, please.

    Malware removal instructions are for the correspondent user's case only.

  9. #9
    Security Expert: Emeritus Blade81's Avatar
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    25,288

    Default

    Due to inactivity, this thread will now be closed.

    Note:If it has been four days or more since your last post, and the helper assisting you posted a response to that post to which you did not reply, your topic will not be reopened. At that point, if you still require help, please start a new topic and include a fresh HijackThis log and a link to your previous thread.

    If it has been less than four days since your last response and you need the thread re-opened, please send me or MOD a private message (pm). A valid, working link to the closed topic is required.
    Microsoft Windows Insider MVP 2016-2020
    Microsoft MVP Consumer Security 2008-2015
    UNITE member since 2006

    If you have problems create a thread in the forum, please.

    Malware removal instructions are for the correspondent user's case only.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •