Results 1 to 4 of 4

Thread: something not right!?

  1. #1
    Join Date
    Aug 2006
    Posts
    2

    something not right!?

    something seems to be bogging down my computer.

    shuttle sb65g2, 200gb.hd, 1gb corsair, matrox p750 tri screen up to date drivers and firmware.

    btw, thought i would actually let go and let someone else lead me through the HJT process instead of just hacking away like i usually do, and yes i ALWAYS get into more trouble that way. http://forum.networktechs.com/images...s/rolleyes.gif
    Attached Files Attached Files

  2. #2
    Join Date
    Aug 2006
    Location
    The Middle
    Age
    80
    Posts
    4,079
    Have you followed all the steps given here PP's Sticky?

  3. #3
    Join Date
    Aug 2006
    Posts
    2

    Unhappy

    have completed the list several times.

    i have first unplugged from 2wire ethernet/firewall router and booted to safe mode enabled hidden/system files/folders disabled system restore to the point where i backed up all data on external hd and turned restore off ran spybot, ccleaner, ad aware se personal w/vx2 plug in, att.yahoo CA anti-virus and CA anti-spyware suite, ran sophos rootkit, as well as avg anti-rootkit beta, threw in an online scan from etrust for good measure, used regscrub xp, xp repair pro 2006, did sweep with my agnitum outpost firewall spyware add on, manually cleaned out all temps save for a few sticky ones that i would have to use a suggested bootdisk to wipe the ie5/temp mirrors from the hd (i didn't want to get into using bootdisks on my system, at least not yet). i also ran some oldies but goodies like aboutbuster6, e2takeout, ooofix, and used the killbox a few times.

    now i didn't run all of those programs at one safe mode boot. i spreaded them out while letting it fully boot on occasion to catch "changes" in which one or another cleaning app would find and then i would progress from there.

    my next step was to DL MWDefender beta 2 but have relied on the above metioned programs for years and had them tweaked to perform well and play together well to fix, stop, and catch modern security problems.

    after your reply i dared myself and went to the panda site to do a sweep, and lo and behold my computer became incredibly unstable and closed several firefox/w NoScripts, ie7/w amust, desktop windows and proceeded to turn my CA anti-virus to off which i turned back on only to have it turned back off. at that moment i unplugged from ethernet brought up task manager and killed all processes rebooted to safe mode tried to run spybot but it dummies out on me and never completes loading, am running ad aware as we speak. btw, i'm responding on my mac now.

    cheers

  4. #4
    Join Date
    Aug 2006
    Location
    The Middle
    Age
    80
    Posts
    4,079
    Well coty,
    If you read your own reply above you probably will find the answer. I honestly feel you have done too much. I see nothing unusual in your log, maybe a few programs running at start up which are unnecessary and several processes running in locations that are unusual and an Advanced Options Tab for Internet Explorer indicated.

    Just look at the number of programs you have run...but you don't tell us why you felt you had to run all of these. You have run coolwebsearch removers, E2Give and PTech remover, rootkit removers, an XP repair program, temp file removers, vx2 remover and multiple anti-virus programs multiple anti-spy/malware removers and this one, "ooofix", I am not certain what you are talking about here though I "think" you mean Qoologic. You say you have removed various files with killbox...what files and why?
    manually cleaned out all temps save for a few sticky ones
    Which sticky ones?

    Many of the items you ran are specialized tools should only be run AFTER running the basic steps that PP gives in his thread and THEN first running and posting your first HJT log for analysis. If you have CWS, E2Give, and many others they WILL, 90% of the time show in the log. Many of these items can be removed by fixing them with another HJT scan and that is all that is needed for a fix and removal. If HJT cannot remove or fix, then, and only then, will you be told to run a specialized program.

    Some of these specialized removal programs you have run come with the warning that you should not run them unless you know for CERTAIN that this pest is present on the system. AND finally you ran a registry cleaner...this is the absolutely one of the last things that should be done, not one of the first and certainly not unless told to do so because many of these specialized removal programs also fix the registry and therefore you wouldn't need to do it again.

    Several of the programs you ran were beta versions...I never recommend the running of a beta version...especially an anti-virus or ant-spy beta version...these are TEST versions, read anything about a beta version program and you will be told they are test programs. "It is likely to be unstable but useful for internal demonstrations and previews to select customers, but not yet ready for release. It is the second stage of development for a program...not the final release." This is the stage where they "get the bugs out" for the final program. Others may disagree with me, but only as a last resort do I recommend a poster use a beta version of a removal program.

    thought i would actually let go and let someone else lead me through the HJT process instead of just hacking away like i usually do, and yes i ALWAYS get into more trouble that way
    It is too late. You have done too much prior to posting this log.
    Quite honestly there is no way this HiJackThis log can even give an accurate reading of your system because you have removed so many files and I believe many of them perfectly legal files. Yes, there are many viruses and trojans that adopt the file name of a legal file but most of the time these can be narrowed down and proven to be good or bad, if given the time to actually look at them and their location, their spelling and the other files they are associated with...this is the key, location and association. It sounds to me as if you have just randomly deleted files because they matched the NAME of a bad file.

    If you computer suddenly begins running sluggish you first look in Add/Remove and see if there is something new added that YOU didn't add and remove it. Then you should clean out your temp files. Turn off unnecessary programs running in the background.
    Then update and run your anti-virus program. Then follow PP's steps for initial cleaning...that is ALL, nothing else. THEN run HJT and post the log.

    have relied on the above metioned programs for years and had them tweaked to perform well and play together well to fix, stop, and catch modern security problems
    You don't state here WHICH programs you have relied on and "tweaked" so that "they work and play well" together...Anti-virus programs, AdAwareSE, Spybot don't need to be "tweaked" they "work and play" well together just fine. The others are meant for specialized problems and should not be run AT ALL unless the actual problem presents itself. Once you use it and remove the specific problem then get rid of it. You don't need it anymore.

    In this past week I have worked, hands on, with two computers...one had 2130 viruses, trojans, dialers, hijackers, etc., on it. This had a disabled firewall and out of date versions of AVG, AdAwareSE and Spybot on it. None had been used or updated since their install in November 2005! The computer would NOT boot completely 50% of the time and it couldn't go in the internet at all. I began by going to Add/Remove and uninstalling every program I had never heard of and every program they had not installed via cd...with the exception of the three programs above. I then emptied all their temp files. Then I ran these outdated programs and all found and fixed "something" each one numbering in the hundreds, and this with non-updated files! Just by doing this I could get the computer online. I installed HJT and ran a scan and then went from there to using the specialized programs to clean or remove all of the bad entries showing in their HJT log. My FINAL steps were using killbox and a registry cleaner. It took me nearly 3 days but I returned the computer clean, totally updated and running like a top without a reformat.
    The second computer had all the necessary programs, up to date and run regularly BUT when it began running sluggishly the owner began, as you have, running every cleanup, eraser, fixit program imaginable including reg cleaners, XP fixers and the like rather than just his anti-virus and spyware programs. He had deleted or altered so many files there were no valid restore points remaining and the only option was a reformat and reload. This only took me only about 6 hours to get this computer back online, totally updated and running also like a top. But if he had totally left these "fixeruppers" alone, running them because he "might" have that problem, he would not have lost his entire address book, several emails he wanted to keep, some music recorded by his son, a concert organist and several pictures he had not backed up.
    Last edited by jholland1964; 08-31-2006 at 03:10 PM.

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •