Welcome to the TechSpot OpenBoards. Please read the FAQ if you have any questions. Login to participate.
|
|||||||
The 8th Step
![]() |
|
|
|
Thread Tools |
|
#1
|
|||
|
|||
|
The 8th Step
I'm on my Sister's Hp Pavilion 750c.
Heres the specs Symptoms: -- Slow starting iexplore.exe -- I know this HDD hasn't been defragmented for a long time - 13gb remaining hard disk space. It had 5gb remaining previously. -- Couldn't open pagefile.sys during Avira-scan. I know what pagefile is used for but I worry that it could be a problem. -- Could not update to SP3 on WinXP Home Edition |
|
#2
|
||||
|
||||
|
You have malware in the restore point s so don't do a System Restore while cleaning. We'll remove the old restore point after cleaning.
You had the DNS Changer malware which means you need to reset the router as follows: Start> Run> type cmd> enter> at the C prompt type ipconfig /flushdns (note space before the /) Exit the Command prompt when finished and shut the system down.-
You have malware in temp file and they need to be deleted: Download TFC to your desktop
TFC only cleans temp folders. TFC will not clean URL history, prefetch, or cookies. TFC requires a reboot immediately after running. Be sure to save any unsaved work before running TFC. FC only cleans temp folders. TFC will not clean URL history, prefetch, or cookies. . TFC requires a reboot immediately after running. Be sure to save any unsaved work before running TFC. Download TFC to your desktop
Run Eset NOD32 Online AntiVirus Scanner HERE Note: You will need to use Internet Explorer for this scan.
Please reopen Hijack This to "do system scan only" Check the following entries of present. Note: Do not click on Fix Checked until; all in the list have been checked: R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-us4.hpwis.com/ R1- HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = actsvr.comcastonline.com:8100 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = cdn;*.local R3 - URLSearchHook: (no name) - _{00A6FAF6-072E-44cf-8957-5838F569A31D} - (no file) O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: (no name) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - (no file) O9 - Extra button: EmpirePoker - {77E68763-4284-41d6-B7E7-B6E1F053A9E7} - C:\Program Files\EmpirePoker\EmpirePoker.exe (file missing) O9 - Extra 'Tools' menuitem: EmpirePoker - {77E68763-4284-41d6-B7E7-B6E1F053A9E7} - C:\Program Files\EmpirePoker\EmpirePoker.exe (file missing) O9 - Extra button: (no name) - {9819CC0E-9669-4D01-9CD7-2C66DA43AC6C} - (no file)9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU) Close all Windows except HijackThis and click on "Fix Checked To summarize: [1] Reset router, running Mbam as instructed. [2] Run TFC [3] Do online scan with Eset Nod32 [4] Remove HijackThis entries Attach logs and report for #1, 2 and do a rescan with HJ and include new log. I will give you instructions for complete removal of WeatherBug, which includes the MyWebSearch Toolbar in the next reply. |
|
|
|
#3
|
|||
|
|||
|
Sorry for my packet loss in my response. department.com.
I followed the instructions emphatically. It's been awhile, thus, this computer may contain additional infection. Thusly, I present thee with thy most infamous hijack.log to make sure. *Salutes* Last edited by icec0rpse; 08-09-2009 at 06:24 AM.. |
|
#4
|
||||
|
||||
|
I am temporarily not helping with malware cleaning.
But since it's been a month, I would most likely tell you to start over HERE. ASAP. You cannot string the logs out like this. They are laid out in an order that should be followed at the same time. |
![]() |
| Thread Tools | |
|
|
| Similar Topics | ||||
| Topic | Category | Replies | Last Post | |
| 8 step viruses/spyware/malware - step 4 doesn't work | Virus & Malware removal | 13 | 02-11-2009 05:06 PM | |
| Step 8 of the 8-step Viruses/Spyware/Malware Preliminary Removal Instructions | Virus & Malware removal | 1 | 10-09-2008 11:50 AM | |
| I need Step by Step Dual Boot instructions for XP and Ubuntu | Windows OS | 4 | 08-28-2007 09:25 PM | |
| (Yes I'm a total noob) I need a step by step for Ubuntu Wireless Networking | The Alternative OS | 6 | 10-30-2006 11:40 AM | |
| ASUS p4c800-deluxe and creating raid0+1 on it step by step detail | General Hardware | 0 | 06-13-2005 02:23 PM | |
All times are GMT -4. The time now is 03:24 PM.



