Help with this computer

Status
Not open for further replies.

marygg

Posts: 123   +0
Please help me with my friend's computer. I've run all the preliminary programs and I did a sp3 update. It was loaded with bad stuff. Enclosed are the requested logs. Thank you very much for your help.
 

Attachments

  • mbam-log-2008-09-24 (14-06-40).txt
    4.4 KB · Views: 5
I reset IE and ran another HJT log. Here it is and thanks.
 

Attachments

  • HijackThislog2..txt
    26.3 KB · Views: 6
Re-run HJT

See all those O18 - Protocol: bw** entries, please tick and fix all of them (not the last one though - AVG linkscanner)

You might also want to run Startup Control Panel and remove as many not-required startups (these are just startup shortcuts) as possible.
 
I did a new HJT scan. Thanks for helping me understand this.
 

Attachments

  • hijackthis3.txt
    12 KB · Views: 5
Hi :

Your friend's computer appears to have 2 different antiVIRUS programs "running",
a security no-no . I see Yahoo's "ISafe", which is actually Computer Associates
e-Trust antiVIRUS program . Since apparently AVG is the desired antiVIRUS
program, everything associated with "ISafe" should be removed . In addition, I see
some remnants of Norton antivirus, meaning their "Norton Removal Tool" has most
likely NOT be run . There are several Sites where the "Removal Tool" is available
for FREE .

In addition, I see Uniblue's "Registry Booster"; this is considered mainly a "Registry
Cleaner", which has a lot more potential for harming a computer than helping it .
To see what experienced, trained, certified, Volunteer "Malware Removal
Specialists" called "Microsoft Most Valuable Professionals" think of these types of
program, read through the Info @ http://aumha.net/viewtopic.php?t=28099 .
 
I uninstalled avg and installed avira instead. I think I've got pretty much everything taken care of now. Here's another hjt log. Thanks for taking a look at it. You don't know how much it means to me to have someone out there helping.
 
AIM

Hi :

A "final" word for your friend : IF they continue using AIM ( AOL Instant
Messenger ) they should realize it is the most malware-prone of all the Instant
Messengers . To "counter" this, I recommend a periodic visit to
http://jayloden.com/aimfix.htm to run the FREE program there .

AND AOL is commonly called "AOHell" because it has a very bad reputation,
which includes them putting the "Viewpoint" Adware program on a computer .
 
Status
Not open for further replies.
Back