Sorry if this is a long post. I finally finished the initial cleaning process. The HijackThis log, posted below, showed some disturbing results. But first, system and problem information:
System:
Windows XP running on emachines desktop
512mb ram
80GB hard drive, partitioned as follows:
C= 70.9GB (11GB used, 59.8GB free)
D= 3.52GB (1.85GB used, 1.66GB free)
56k dialup internet connection with Netzero
Security:
McAfee Security Suite, includes Anti-Virus, Anti-Spyware, SpamKiller
ZoneAlarm Firewall, Ad-Aware SE, Spybot S&D
I also now have Windows Defender, AVG Anti-Spyware v7.5, ATF-Cleaner, Windows Malicious Software Removal Tool, and HijackThis
Problems:
CPU usage jumps to 100% and stays there as soon as I get online.
In Internet Explorer 7, windows open very slowly, sometimes getting “stuck” for up to a full minute before opening completely. Explorer becomes unresponsive, freezing for a while, then becoming active again. Overall, Explorer is very, very slow.
This all began about 3 weeks ago.
Results of initial cleaning:
Add/Remove Programs: I didn’t find any suspicious programs
Windows Malicious Software Removal Tool: using Extended Scan, it scanned 465,000+ files and found 0 infected files.
Panda ActiveScan: Online scan found the following:
(see ActivescanNP.txt)
I took no action from this scan.
AVG Anti-Spyware scan results:
(see logfile.txt)
AVG eliminated the cookies found by the Panda ActiveScan.
Microsoft Windows Defender results:
Found and removed: PowerRegScheduler
HijackThis log: After running the HijackThis scan, I noticed all the hosts (Kazza, edonkey, etc). I think these are hijacking my computer. Also, I noticed that an installation for Incredimail is still in my computer, even though I thought I had removed it months ago.
(see HTJLog.txt)
My computer is still experiencing the same problems mentioned above. Thanks for any assistance you can offer.
Wayne


Reply With Quote
