Computer running slowly-followed sticky-HJT attached

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by annenap, Dec 22, 2005.

  1. annenap

    annenap Private E-2

    Also, I'd appreciate any tips on how I can analyze the HJT logs so I don't always have to post here (I feel like I'm taking the easy way out!).

    Thanks,
    Anne
     

    Attached Files:

  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    First you must follow the steps in READ & RUN ME FIRST Before Asking for Support

    It has been changed quite a bit. Even recently it was changed. There are required logs to be attached too (like BitDefende and PandaActive scan).

    As far as learning, you need to learn about your OS and what files are valid and what are not. You also need to do the same for all programs you load on your system. You must be able to recognize their file names and the folders that they belong in. You can spend lots of time reading the stickies here and also reading thru threads and seeing what kind of items we remove and which ones we leave alone. You can also make use of search engines like Google and Excite and do some more research. But you must be careful. Not all things you read on the net give good and valid information. In fact quite often there are people out there given very bad advice that they have no business giving. The people working in this forum at Majorgeeks have been approved to work here and you can be sure that the advice given is sound. But we are not absolutely perfect either. Malware changes and people install things we have also never seen, so sometimes we could believe something to be malware that is not. Most often we ask questions of the user when not sure about something. It is rare that we remove or fix something that should be, but it can happen.

    As far as you PC running slow, you should start researching (use Google etc) on all the O4 line processes you are loading at startup and then decide whether you really use or need those features. Many programs that are often loaded with software you buy (sometimes for various hardware like printers, cameras, etc) are not needed at all. Especially they are not always need to load at startup. You can usually just run them when needed. Avoid loading junk just get a unnecessary icon in your System tray to supposedly make it easy for you. All this does is waste system resources.
     
  3. annenap

    annenap Private E-2

    Alright-I have the Panda & BitDefender attached.

    Also, I use MSCONFIG to disable a ton of stuff at startup (but not when I did the HJT - as instructed), should I not be doing this?

    Thanks,
    Anne
     

    Attached Files:

  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Do not use msconfig at all! At least not until we get whatever problems you are having fixed. What startup items are there that you are disabling? If you never want them to load why not stop them permanently?

    Your HJT log shows now real malware issues but you should fix the below lines:
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    R3 - Default URLSearchHook is missing
    O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/14580755ce79bd398406/netzip/RdxIE601.cab
    And if you do not recognize the below item, fix it too.
    O16 - DPF: {BCBC9371-595D-11D4-A96D-00105A1CEF6C} (View22RTE Class) - http://66.242.36.117/view22/diyapp/View22RTE.cab

    Did you look in Add/Remove programs to see if WinTools was there? If found, uninstall.
    What problems are you currently having? If your complaint is it is slow, then you do need to consider what programs you should be allowing to run full time on your PC because you have a lot of them and many fall into the range of unncessary to every run. And some are just convieniences that are not need. Most of them you have to decide for yourself. None of this is a malware issue. It is a case of install too much software and allowing the companies to put anything they want on your PC. A couple quick examples:

    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
    C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe <--- I don't find these to be necessary or usefull
    C:\PROGRA~1\Comcast\COMCAS~1\data\Xtras\mssysmgr.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Microsoft Money\System\mnyexpr.exe
    C:\Program Files\AIM\aim.exe
    C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mim.exe
    C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
    C:\WINDOWS\system32\PdeSrv2.exe

    And there is a whole bunch of junk for your printer that you probably will never need or want to use.
     
  5. annenap

    annenap Private E-2

    Thanks - everything you mentioned (with the exception of FreeRAM) I had disabled in MSCONFIG. I'll work on uninstalling/disabling them - and also take care of the HJT log.

    The machine has just been running slow and hot - maybe it's ready to give up the ghost.

    Thanks again,
    Anne
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds