also @ TechSpot: Google quietly adds conversational search to Chrome 27

HJT

Discussion in 'Virus and Malware Removal' started by Richard132, Oct 11, 2008.

  1. Richard132 Newcomer, in training Posts: 40

    My computer is running really sluggish l8ly i cleaned everything and still no luck and i made a HTJ scan some stuff there dont look gd to me but ill let you lot be the judge of it x)
  2. BillAllen55 TechSpot Enthusiast Posts: 370

  3. tw0rld TechSpot Maniac Posts: 599

    Start up programs that can be removed

    Suspicious entries

    Remove Avg Anti-Spyware, as it is no longer supported.

    How much RAM do you have installed?

    Go here and follow the Instructions

    http://www.techspot.com/vb/topic58138.html
  4. BillAllen55 TechSpot Enthusiast Posts: 370

    That website was previously referenced.
  5. tw0rld TechSpot Maniac Posts: 599

    yeah! You must have been typing at the same time that I was. when i started replying there weren't any post(S) made.
  6. Bobbye Helper on the Fringe Posts: 16,406   +16

    I'm seeing a trend starting here that's not in the best interest of someone who has a malware infection. Maywarebytes should be run first, then SuperAntispyare, THEN HijackThis. Dealing with HijackThis without the benefit of those programs, what they find and remove is not the way to go!

    People are throwing out HijackThis logs and skipping the rest of the programs and that is NOT the correct way to go through the malware cleaning! AFTER the first set of programs have been run and the logs checked, THEN HijackThis can be re-run to make sure suggested entries were removed.
     
  7. Richard132 Newcomer, in training Posts: 40

  8. Bobbye Helper on the Fringe Posts: 16,406   +16

    Mbam is clean. SO is HijackThis, with the following needing to be verified:

    This TCP/IP is for AOL which looks like your ISP:
    But this one: 92.31.242.20> 92.31.242.21 o comes up through the Ripe Network overseas and the IP is for:
    netname: CPWBBS-SERV
    descr: Carphone Warehouse Broadband Services Servers
    country: GB
    RIPE Network Coordination Centre

    IF this is one of your providers, no problem. It just needs to be verified. If it is NOT, then it needs to be removed.

    If AVG has those infected images in Quarantine, you can delete them. I did not click on the image link, but you would do well to track it down as to it's source is you can, then remove and avoid.

    You can not remove the cleaning tools and old restore points:
    * Download OTCleanIt (http://download.bleepingcomputer.com/oldtimer/OTCleanIt.exe)
    * Click the CleanUp! button.
    * It will go thorough the list and remove all of the tools it finds and then delete itself (requiring a reboot).

    Clear your existing System Restore points and establish a new clean restore point:
    Go to Start > All Programs > Accessories > System Tools > System Restore> Select Create a restore point> OK.
    Next, go to Start > Run and type in cleanmgr> Select the More options tab> Choose the option to clean up System Restore and OK it.
    This will remove all restore points except the new one you just created.

    A few people have said the remove restore point option isn't coming up this way. If it does not:
    Control Panel System> System Restore tab> CHECK 'turn off System Restore'> Apply> OK> Reboot

    Then go back in and UNCHECL 'turn off System Restore'> Apply> OK

    IF speed is still a problem, you should UNCHECK everything on the Startup tab using msconfig EXCEPT the antivirus and firewall. (touchpad for laptop, network process if on network). Everything else, including printer, can be started manually.