not sure if I have problems

Discussion in 'Malware Help (A Specialist Will Reply)' started by yue_han, Mar 23, 2014.

  1. yue_han

    yue_han Private E-2

    Hello,

    I recently decided to revive this netbook I haven't used in a couple years. I stopped using it because Avast would not update. It seems to me, if I remember correctly, I was also having difficulty with Adobe updates as well. I was living in China at the time and had a work computer so I didn't really need it and the update issues had me concerned that it was infected. I don't recall a google redirect problem.

    When I started to revive this, I ran the old version of Avast(6.????) and it cleaned up a couple adbots (I lost the log file reinstalling) that may have been bundled with some other software, but it still wouldn't update. I managed to uninstall Avast using their removal utility and install the latest version. I ran a boot time scan that found nothing. I was also able to get Windows XP (an incredibly long process due tot he length of time that had passed) to update and I updated Firefox and plugins/add ons (Adobe reader, Shockwave flash, Java) I completely uninstalled VLC player.

    Then I ran across your forum and saw I was probably going about this all wrong.

    Below are my attachments, although I must admit, I must not be good at following instructions. :( When I ran the Rogue Killer, I was watching the progress. I touched the trackpad to bring the screen back up and maybe the cursor was in a place where I stopped the scan or worse yet cleaned it. Perhaps it wasn't me and my 5 thumbs on the track pad, but something else that stopped it. I can't be sure, but it was no longer running and there was no log file. So I ran it again before I could stop myself... sorry. :-o I remember seeing a bunch of HKey Local Machine references before it stopped, but they didn't show up the second time in the logfile. It did create a quarantine folder with a .dat file that I could attach if you need it. I think that was after the first run.

    Hitman starts a scan on startup now. My computer froze during the first restart. It went fine the second time and Hitman completed the scan this time, but disappeared from the system tray after. (not sure if that's normal)

    That's about all I can think of right now.

    Thanks in advance for your help! :)
     

    Attached Files:

  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You should use MSCONFIG to put this machine back into normal start up mode.

    You also need to tell me what problems remain. :)
     
  3. yue_han

    yue_han Private E-2

    Hi,

    I set it back to a normal startup with MSCONFIG. My main problem was that I couldn't get anything to up date. It looks like Avast is updating virus definitions regularly now that I removed the old version and installed the new version.

    The machine has become painfully slow now through all parts of the startup. Each step seems much slower, from the Windpows XP splash screen to the login screen, to loading the desktop and finally everything loading in the system tray. Not more than 48 hours ago the entire startup was lighting quick, under a minute for all of these steps. Now it is almost ten minutes. It is also a little more sluggish in operation. For instance, sometimes I click the firefox shortcut and it is a good 45 seconds before a browser window opens.

    Maybe just normal Windows/hardware slowness and not attributable to malware. It just seems unusual that it wasn't like this before.

    Thanks Again! :)
     
  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Hi there. :)

    You could use something such as StartUpCPL to control what starts and what doesn't.

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. Renable your Disk Emulation software with Defogger if you had disabled it in step 4 of the READ & RUN ME.
    3. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    4. If running Vista, Win 7 or Win 8, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Now goto the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    6. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.

    7. After doing the above, you should work thru the below link:
     
  5. yue_han

    yue_han Private E-2

    Hi :)

    I ran the MGclean.bat file. It cleaned about half the files out of the MGtools folder (including itself) and left the rest. It looks like it was deleting in somewhat alphabetical order. It left subfolders (temp, vista, W7, W8, XP) and all files after MIalt. (moving alphabeticallly towards "Z")

    Is that normal?

    Thanks!

    John
     
  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Not normal no, but nothing to worry about. You can delete whatever remained yourself. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds