Need help...Laptop has slowed drastically

Discussion in 'Malware Help (A Specialist Will Reply)' started by shadow1117, Mar 13, 2006.

  1. shadow1117

    shadow1117 Private E-2

    I need help to repair my laptop. I have a Dell Latitude C640 with a Pentium 4 running XP pro. 2.4 gig and 256 Ram

    Everything moves at a snails pace. I have run all of the programs(ewido, spybot, adaware, etc...), and have had little luck.

    Suggestions???
     
  2. AbbySue

    AbbySue MajorGeeks Administrator

  3. shadow1117

    shadow1117 Private E-2

    Edit by chaslang: Inline link changed to attachment
     

    Attached Files:

    Last edited by a moderator: Mar 13, 2006
  4. shadow1117

    shadow1117 Private E-2

    Here are the reports...
     

    Attached Files:

  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Please read step 3 & 7 or the READ & RUN ME again.

    You have two antivirus applications installed. Note this alone will slow your system down.
    Also you did not install HijackThis properly as rquested in step 7. In fact you installed it exacly where we ask that you not install it.

    Is your version of Ewido a paid version or the free trial.

    Did you add the below entries to your system? Do you recognize the IP address:
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 128.1.191.34:8080
    O1 - Hosts: 128.1.100.5 MM


    Fix these issues and attach a new HJT log.
     
  6. shadow1117

    shadow1117 Private E-2

    OK, I removed the AVG antivirus, uninstalled HJT, and reinstalled it as instructed.

    I have the free version of Ewido.

    And, I have no idea what those IP addresses are.

    Here is the new HJT log...
     

    Attached Files:

  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    No you did not! Previously you had it here:
    C:\Documents and Settings\timd\Desktop\hijackthis\HijackThis.exe

    Now you have it here which is basically the same problem.
    C:\Documents and Settings\timd\My Documents\HJT\hijackthis\HijackThis.exe

    Step 7 basically gives three places not to install
    - not a temp folder
    - not the Desktop
    - and no subfolder of C:\Documents and Settings

    Please install it to:
    C:\Program FilesHJT\HijackThis.exe

    Did uninstalling AVG help anything?
    Since your version of Ewido is the free version, uninstall it unless you plan to buy it. Has your trial period ended?
     
  8. shadow1117

    shadow1117 Private E-2

    Hopefully HJT is in the correct place now. It did seem to speed things up getting rid of AVG. I also dumped Ewido. Is it advisable to purchase the program?

    Thanks...
     

    Attached Files:

  9. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Yes Ewido is a good program! We like SpySweeper even more. But they are only going to really help you if you but them. That's your choice. But if you do buy either of them (you do not need both) before you install the paid version, uninstall MS Windows Defender since it would no longer be needed.

    Let's finish your cleanup!

    Make sure viewing of hidden files is enabled (per the tutorial).

    Run HijackThis and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 128.1.191.34:8080
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    R3 - Default URLSearchHook is missing
    O1 - Hosts: 128.1.100.5 MM
    O2 - BHO: (no name) - SOFTWARE - (no file)
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

    After clicking Fix, exit HJT.

    Now we need to Reset Web Settings:
    1. If you have an Internet Explorer icon on your Desktop, goto step 2. If not, skip to step 3.
    2. Now right click on your desktop Internet Explorer icon and select Properties. Then click the Programs tab and then click "Reset Web Settings". Now go back to the General tab and set your home page address to something useful like www.majorgeeks.com. Click Apply. Click Delete Cookies, Click Delete Files and select Delete all Offline content too, Click OK. When it finishes Click OK. Then skip step 3.
    3. If you do not have an Internet Explorer icon on your Desktop, click Start, Control Panel (for some systems it may be Start, Settings, Control Panel), Internet Options, Programs tab and then click "Reset Web Settings". Now go back to the General tab and set your home page address to something useful like www.majorgeeks.com. Click Apply. Click Delete Cookies, Click Delete Files and select Delete all Offline content too, Click OK. When it finishes Click OK.
    Now reboot in normal mode and post a new HJT log.

    Make sure you tell me how things are working now.

    Reminder Note: Once we have determined you are malware free you will need to disable System Restore, reboot, and re-enable system restore per step 1 of the READ & RUN ME. This only applies to if using WinXP or WinMe.
     
  10. shadow1117

    shadow1117 Private E-2

    Works like new again...

    Here is the new HJT
     

    Attached Files:

  11. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    That's good news!

    Your log is clean. If you are not having any other malware problems, it is time to go back to step 1 of the READ & RUN ME to Disable System Restore which will flush your Restore Points. Then reboot and enable System Restore to create a new clean Restore Point.

    After that, you should work thru the below link:

    How to Protect yourself from malware!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds