Houzz Logo Print
roseluver

Computer is so slow

17 years ago

The last couple of days my computer has been soooo slow.

It takes about 3 minutes for a thread to open and forever for a graphic to open. I've not added any programs. I just deleted 200 pictures and it didn't matter.

I checked and have 37.6 GB used space and 33.9 GB free space. Shouldn't I be ok with this? What can I do?

I have a Dell Dimension 4700. Thanks so much! Charlene

Comments (32)

  • 17 years ago
    last modified: 11 years ago

    I am thinking I must have a trojan or something...I just tried to upload a picture to photobucket. I clicked on browse and everything disappeared. Playing on the computer is not fun anymore. Please help! Charlene

  • 17 years ago
    last modified: 11 years ago

    Are you talking about opening from internal files or from internet sites?

    If internet, suspect trouble may be your cable/provider and will likely pass when they fix it. I have cable and from time-to-time (typically on week-ends) they do some maintenance that can result in all kinds of slow-downs. When they're done, everything's Jake again.

    If internal, suspect clogged registry or bugs -- which is an entirely different thing.

    Does your hard drive make noise while this is going on?

  • Related Discussions

    Slow Responding to eveything!!

    Q

    Comments (8)
    You might try opening a cmd window and type ipconfig /? flushDNS might help, might not,,, but its would be my guess at an inititial thing to do. ipconfig /flushDNS (i think thats the correct word/command) Might while that cmd window is open also do TraceRT www.yahoo.com and see if it resolves that url to an ip number quickly,,, as well as all the router paths to yahoo ip# fairly quickly.
    ...See More

    New Computer & Slow Vista

    Q

    Comments (17)
    one good program that I use that will do a good uninstall of anything you may have on your pc you want to get rid of but ALSO has a feature to show you what is running at startup and with simple clicks lets you change those from on to off and vice versa is Revo uninstaller, it is free. Revo Uninstaller on their site you can click on some screenshots to show you exactly what it will look like and they have good step by step directions on how to use it. User's help Auto Run Manager Junk Files Cleaner it does all that and more, if you go to any of those links then look to the right it lists all the various tools built in, just click on any one of those then at the bottom of that page's text there will be another link that says go to user guide page, that will give you the direct instructions and pictures to how to use that aspect of the tool Here is the list of the tools and utilities included in Revo Uninstaller: Auto Start Manager - Stop programs that start automatically on Windows startup; speed up loading of Windows! Windows Tools Manager - Handy and useful tools bundled with every version of Windows; easily find useful system tools and options! Junk Files Cleaner - Find and remove unnecessary files from your computer; free up disk space and delete files you do not need! Browsers History Cleaner - Erase web browser history, visited pages history and temporary internet files of Internet Explorer, Firefox, Netscape and Opera web browsers; free up a lot of disk space by deleting temporary internet files like temporary saved videos, temporary flash files, temporary pictures etc! Office History Cleaner - Remove the history of most recently used files in MS Office; remove your tracks by deleting the list of last opened MS Office documents! Windows History Cleaner - Remove the history of recently opened files, delete temporary files, remove usage tracks and other history items that are saved by Windows; remove your tracks saved by Windows for a lot of operations! Unrecoverable Delete Tool - Erase files and folders forever; be sure that nobody could recover your files and folders after deleting! Evidence Remover - Make sure already deleted files, folders and other data are unrecoverable; securely erase your data!
    ...See More

    Now Troubleshooting DD's laptop - Soooo Slow

    Q

    Comments (16)
    Here's the issue with firefox, FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=109936&tt=100512_2_ FF - user.js: extensions.BabylonToolbar_i.babExt - FF - user.js: extensions.BabylonToolbar_i.srcExt - ss FF - user.js: extensions.BabylonToolbar_i.id - b8457168000000000000bc7737387210 FF - user.js: extensions.BabylonToolbar_i.hardId - b8457168000000000000bc7737387210 FF - user.js: extensions.BabylonToolbar_i.instlDay - 15473 FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17 FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17 FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1715:35:37 FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar FF - user.js: extensions.BabylonToolbar_i.aflt - babsst FF - user.js: extensions.BabylonToolbar_i.smplGrp - none FF - user.js: extensions.BabylonToolbar_i.tlbrId - tb9 FF - user.js: extensions.BabylonToolbar_i.instlRef - sst FF - user.js: network.protocol-handler.warn-external.dnupdate - false FF - user.js: browser.sessionstore.resume_from_crash - false We will be getting rid of that, by running the tools above.
    ...See More

    Computer loading so slow

    Q

    Comments (3)
    First thing is check and see what all is running when the computer starts a lot of programs that do not need to start right off will be a major problem. Check by hitting control,alt,delete once and a screen comes up showing what programs are running and more important are the process's running. Before you stop anything stop by Black Viper's page and make sure it is sate to stop. then after stopping what programs you can reboot and it should be faster. Another thing is what anti virus are you running? Some can be memorr hogs. Here is a link that might be useful: Black Vipers site
    ...See More
  • 17 years ago
    last modified: 11 years ago

    I have Hughes Network, so I don't think that is my problem.
    My hard drive has always hummed, I guess that is a good word for it.

    I suspect it is internal.
    Charlene

  • 17 years ago
    last modified: 11 years ago

    Hi,

    Please download Malwarebytes the free one at the link below, open the program after it downloads then choose UPDATE, do a full system scan this will take a while let malwarebytes remove everything it finds, you will see the option to remove selected, then reboot the computer after malwarebytes finishes.

    Post the log

    Here is a link that might be useful: .malwarebytes

  • 17 years ago
    last modified: 11 years ago

    Then run this program also no need to post a log here,

    Here is a link that might be useful: SuperAntiSpyware

  • 17 years ago
    last modified: 11 years ago

    Then install hijackthis do not use the program without help, After hijackthis installs it will create an Icon on the desktop, double click the hijackthis Icon: DO A SYSTEM SCAN & SAFE A LOG FILE, I need to see that log so copy and paste it to the forum, with the malwarebytes log..

    Here is a link that might be useful: HijackThis/

  • 17 years ago
    last modified: 11 years ago

    Then install hijackthis do not use the program without help, After hijackthis installs it will create an Icon on the desktop, double click the hijackthis Icon: DO A SYSTEM SCAN & SAFE A LOG FILE, I need to see that log so copy and paste it to the forum, with the malwarebytes log..

    Here is a link that might be useful: HijackThis/

  • 17 years ago
    last modified: 11 years ago

    Charlene if you need to head back over to LzD and have them take a look again just go on over and tell them what is happening, we are happy to help again.

  • 17 years ago
    last modified: 11 years ago

    I did not know she had posted there

  • 17 years ago
    last modified: 11 years ago

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 11:11, on 2009-05-25
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16827)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\PSIService.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
    C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WUSB54Gv42.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Windows Media Player\WMPNSCFG.exe
    C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
    C:\Program Files\Microsoft Office\Office\1033\OLFSNT40.EXE
    C:\Program Files\WinZip\WZQKPICK.EXE
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqimzone.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSTE08.exe
    C:\Program Files\Corel\Corel Paint Shop Pro X\Paint Shop Pro X.exe
    C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\Corel Paint Shop Pro Photo.exe
    C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\MediaCataloger.exe
    C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_clipbook.exe
    C:\Program Files\trend micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/http://www.yahoo.com/ext/search/search.html
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr9/
    http://www.yahoo.com
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr9/http://www.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/
    http://www.yahoo.com/ext/search/search.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr9/http://www.yahoo.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr9/
    http://www.yahoo.com
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
    R3 - URLSearchHook: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: &Yahoo! Toolbar Helper - (02478D38-C3F9-4efb-9B51-7695ECA05670) - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: HP Print Enhancer - (0347C33E-8762-4905-BF09-768834316C61) - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_printenhancer.dll
    O2 - BHO: HP Print Clips - (053F9267-DC04-4294-A72C-58F732D338C0) - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_framework.dll
    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - (3049C3E9-B461-4BC5-8870-4C09146192CA) - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
    O2 - BHO: DriveLetterAccess - (5CA3D70E-1895-11CF-8E15-001234567890) - C:\WINDOWS\system32\dla\tfswshx.dll
    O2 - BHO: NCO 2.0 IE BHO - (602ADB0E-4AFF-4217-8AA1-95DAC4DFA408) - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\coIEPlg.dll
    O2 - BHO: Symantec Intrusion Prevention - (6D53EC84-6AAE-4787-AEEE-F4628F01010C) - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
    O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O2 - BHO: SingleInstance Class - (FDAD4DA1-61A2-4FD8-9C17-86F7AC245081) - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
    O3 - Toolbar: Show Norton Toolbar - (7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA) - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\CoIEPlg.dll
    O3 - Toolbar: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
    O4 - HKLM\..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
    O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
    O4 - Global Startup: Event Reminder.lnk = C:\Program Files\Broderbund\PrintMaster\PMremind.exe
    O4 - Global Startup: Forget Me Not.lnk = C:\Program Files\Broderbund\AG CreataCard\AGRemind.exe
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
    O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqthb08.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O4 - Global Startup: Symantec Fax Starter Edition Port.lnk = C:\Program Files\Microsoft Office\Office\1033\OLFSNT40.EXE
    O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
    O9 - Extra button: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O9 - Extra button: HP Clipbook - (58ECB495-38F0-49cb-A538-10282ABF65E7) - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll
    O9 - Extra button: HP Smart Select - (700259D7-1666-479a-93B1-3250410481E8) - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll
    O9 - Extra button: Real.com - (CD67F990-D8E9-11d2-98FE-00C0F0318AFE) - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: (17492023-C23A-453E-A040-C7C580BBF700) (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: (4F1E5B1A-2A80-42CA-8532-2D05CB959537) (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
    O16 - DPF: (56762DEC-6B0D-4AB4-A8AD-989993B5D08B) - http://www.eset.eu/buxus/docs/OnlineScanner.cab
    O16 - DPF: (9FC5238F-12C4-454F-B1B5-74599A21DE47) (Webshots Photo Uploader) - http://community.webshots.com/html/WSPhotoUploader.CAB
    O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
    O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
    O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
    O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
    O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: WUSB54Gv42SVC - GEMTEKS - C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
    O24 - Desktop Component 0: (no name) - http://thumb6.webshots.com/t/44/44/2/78/36/322627836ebQaEt_th.jpg
    O24 - Desktop Component 1: (no name) - http://image24.webshots.com/24/0/65/55/37906555FLIdgT_ph.jpg

    --
    End of file - 9460 bytes

    I'll have to run Malware again, I didn't save the log.

  • 17 years ago
    last modified: 11 years ago

    I forgot Malware saves the logs, here goes:
    Malwarebytes' Anti-Malware 1.30
    Database version: 1399
    Windows 5.1.2600 Service Pack 2

    2009-05-23 01:48:42 AM
    mbam-log-2009-05-23 (01-48-41).txt

    Scan type: Quick Scan
    Objects scanned: 56682
    Time elapsed: 8 minute(s), 49 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 0
    Registry Values Infected: 0
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 0

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    (No malicious items detected)

    Registry Values Infected:
    (No malicious items detected)

    Registry Data Items Infected:
    (No malicious items detected)

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    (No malicious items detected)

  • 17 years ago
    last modified: 11 years ago

    Scan type: Quick Scan-----> Need to do a full scan here.

    Malwarebytes' Anti-Malware 1.30 Out of date!!!!
    Database version: 1399 ----> Out of date!!!

    This is one reason I ask for logs...

    You need to open Malwarebytes program the choose UPDATE, let the program update, then DO FULL SYSTEM SCAN.

    Let Malwarebytes remove everything it finds, you will see the option to check to REMOVE Selected after malwarebytes finishes,

    At a quick look not seeing Malware in the Hijackthis log.

  • 17 years ago
    last modified: 11 years ago

    Thanks, I'm on it!!

  • 17 years ago
    last modified: 11 years ago
  • 17 years ago
    last modified: 11 years ago

    Malwarebytes' Anti-Malware 1.36
    Database version: 2178
    Windows 5.1.2600 Service Pack 2

    2009-05-25 03:48:24 PM
    mbam-log-2009-05-25 (15-48-24).txt

    Scan type: Full Scan (C:\:)
    Objects scanned: 368995
    Time elapsed: 2 hour(s), 37 minute(s), 16 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 0
    Registry Values Infected: 0
    Registry Data Items Infected: 1
    Folders Infected: 0
    Files Infected: 13

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    (No malicious items detected)

    Registry Values Infected:
    (No malicious items detected)

    Registry Data Items Infected:
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    C:\System Volume Information\_restore(202550A8-7A33-4BCA-9586-051D24DDBF8F)\RP149\A0046119.ocx (Adware.Gdown) -> Quarantined and deleted successfully.
    C:\WINDOWS\Fonts\4 Magic DNA.zip (Worm.Archive) -> Quarantined and deleted successfully.
    C:\WINDOWS\Fonts\4yeomonstrum.zip (Worm.Archive) -> Quarantined and deleted successfully.
    C:\WINDOWS\Fonts\action_is.zip (Worm.Archive) -> Quarantined and deleted successfully.
    C:\WINDOWS\Fonts\alpha_bizzy_bee.zip (Worm.Archive) -> Quarantined and deleted successfully.
    C:\WINDOWS\Fonts\a_yummy_apology.zip (Worm.Archive) -> Quarantined and deleted successfully.
    C:\WINDOWS\Fonts\black_rose.zip (Worm.Archive) -> Quarantined and deleted successfully.
    C:\WINDOWS\Fonts\fraktur_shadowed.zip (Worm.Archive) -> Quarantined and deleted successfully.
    C:\WINDOWS\Fonts\hurricane.zip (Worm.Archive) -> Quarantined and deleted successfully.
    C:\WINDOWS\Fonts\hurricane_supadupas.zip (Worm.Archive) -> Quarantined and deleted successfully.
    C:\WINDOWS\Fonts\one_fell_swoop.zip (Worm.Archive) -> Quarantined and deleted successfully.
    C:\WINDOWS\Fonts\RoyalClassic.zip (Worm.Archive) -> Quarantined and deleted successfully.
    C:\WINDOWS\Fonts\RoyalClassic2.zip (Worm.Archive) -> Quarantined and deleted successfully.

    Is this telling me I acquired these worms through some new fonts I received? Do I need to do anything else?
    Thanks so much.

  • 17 years ago
    last modified: 11 years ago

    Yes do this below: then post 1 more hijacklog you will need to print this out or view it on another computer.

    Hi,

    Close all browser windows including this one only have hijackthis open, DO A SYSTEM SCAN ONLY once the scan opens place a check mark in the following entries:

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" atboottime

    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe

    O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" Âquiet

    O4 - Global Startup: Event Reminder.lnk = C:\Program Files\Broderbund\PrintMaster\PMremind.exe

    O4 - Global Startup: Forget Me Not.lnk = C:\Program Files\Broderbund\AG CreataCard\AGRemind.exe

    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe

    O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program
    Files\WinZip\WZQKPICK.EXE

    Now click FIXED CHECKED.

    Close hijackthis program.

    Reboot the computer.

    *Note Your Java is out of date, please press start, control panel, in there look for Java looks like a coffee cup double click it choose update, Now go into your add/remove programs list remove ALL older versions of Java only leave the new version Java 6 Update 13.

  • 17 years ago
    last modified: 11 years ago

    Make sure only Java is installed pay attention uncheck any toolbars or additional software that wants to be included,

    Monas' link pretty good clean out, history, temp files ect, do a defrag too

    Thanks

    zep516

  • 17 years ago
    last modified: 11 years ago

    Hope I did everything correctly.I did the Java update also. haven't attempted Mona's advise yet..next thing for me to do if you don't have anything else.
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 16:50, on 2009-05-25
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16827)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\PSIService.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
    C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WUSB54Gv42.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Microsoft Office\Office\1033\OLFSNT40.EXE
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqimzone.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\WINDOWS\system32\msiexec.exe
    C:\Program Files\trend micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/http://www.yahoo.com/ext/search/search.html
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr9/
    http://www.yahoo.com
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr9/http://www.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/
    http://www.yahoo.com/ext/search/search.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr9/http://www.yahoo.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr9/
    http://www.yahoo.com
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
    R3 - URLSearchHook: Yahoo! Toolbar - "EF99BD32-C1FB-11D2-892F-0090271D4F88> - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: &Yahoo! Toolbar Helper - "02478D38-C3F9-4efb-9B51-7695ECA05670> - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: HP Print Enhancer - "0347C33E-8762-4905-BF09-768834316C61> - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_printenhancer.dll
    O2 - BHO: HP Print Clips - "053F9267-DC04-4294-A72C-58F732D338C0> - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_framework.dll
    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - "3049C3E9-B461-4BC5-8870-4C09146192CA> - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
    O2 - BHO: DriveLetterAccess - "5CA3D70E-1895-11CF-8E15-001234567890> - C:\WINDOWS\system32\dla\tfswshx.dll
    O2 - BHO: NCO 2.0 IE BHO - "602ADB0E-4AFF-4217-8AA1-95DAC4DFA408> - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\coIEPlg.dll
    O2 - BHO: Symantec Intrusion Prevention - "6D53EC84-6AAE-4787-AEEE-F4628F01010C> - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - "DBC80044-A445-435b-BC74-9C25C1C588A9> - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: JQSIEStartDetectorImpl - "E7E6F031-17CE-4C07-BC86-EABFE594F69C> - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O2 - BHO: SingleInstance Class - "FDAD4DA1-61A2-4FD8-9C17-86F7AC245081> - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
    O3 - Toolbar: Show Norton Toolbar - "7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA> - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\CoIEPlg.dll
    O3 - Toolbar: Yahoo! Toolbar - "EF99BD32-C1FB-11D2-892F-0090271D4F88> - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
    O4 - HKLM\..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
    O4 - HKCU\..\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqthb08.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O4 - Global Startup: Symantec Fax Starter Edition Port.lnk = C:\Program Files\Microsoft Office\Office\1033\OLFSNT40.EXE
    O9 - Extra button: HP Clipbook - "58ECB495-38F0-49cb-A538-10282ABF65E7> - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll
    O9 - Extra button: HP Smart Select - "700259D7-1666-479a-93B1-3250410481E8> - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll
    O9 - Extra button: Real.com - "CD67F990-D8E9-11d2-98FE-00C0F0318AFE> - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: Messenger - "FB5F1910-F110-11d2-BB9E-00C04F795683> - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - "FB5F1910-F110-11d2-BB9E-00C04F795683> - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: "17492023-C23A-453E-A040-C7C580BBF700> (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: "4F1E5B1A-2A80-42CA-8532-2D05CB959537> (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
    O16 - DPF: "56762DEC-6B0D-4AB4-A8AD-989993B5D08B> - http://www.eset.eu/buxus/docs/OnlineScanner.cab
    O16 - DPF: "9FC5238F-12C4-454F-B1B5-74599A21DE47> (Webshots Photo Uploader) - http://community.webshots.com/html/WSPhotoUploader.CAB
    O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
    O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
    O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
    O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
    O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: WUSB54Gv42SVC - GEMTEKS - C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
    O24 - Desktop Component 0: (no name) - http://thumb6.webshots.com/t/44/44/2/78/36/322627836ebQaEt_th.jpg
    O24 - Desktop Component 1: (no name) - http://image24.webshots.com/24/0/65/55/37906555FLIdgT_ph.jpg

    --
    End of file - 8256 bytes

  • 17 years ago
    last modified: 11 years ago

    Looks good, the only other thing is I would clean out temp files, & stuff, if you have ccleaner, or ATF cleaner run those. Then do a defrag later as that could be a while, definitely do a defrag if you have not done one in a while.

  • 17 years ago
    last modified: 11 years ago

    Forgot to ask you how much ram is installed,

    Right click Mycomputer choose properties tell me how ram, with Norton AntiVirus I hope you have 1 gig installed.

  • 17 years ago
    last modified: 11 years ago

    This is what it says: 2.79GHz 504MB RAM. Am I OK?

  • 17 years ago
    last modified: 11 years ago

    I don't think I have a cleaner.

  • 17 years ago
    last modified: 11 years ago

    Download ATF Cleaner by Atribune to your Desktop.


    Note: Vista users must use Run As Administrator
    Under Main: Select Files to Delete choose: Select All.
    Click the Empty Selected button.
    If you use Firefox browserclick Firefox at the top and choose: Select All
    Click the Empty Selected button.
    If you would like to keep your saved passwords click No at the prompt.
    ]If you use Opera browserclick Opera at the top and choose: Select All
    Click the Empty Selected button.
    If you would like to keep your saved passwords click No at the prompt.
    Click Exit on the Main menu to close the program

    After running this tool your boot time may slow don't worry it will return to normal after a few reboots.

    I would add more ram to your computer it's the least expensive thing you can do to speed it up and improve performance please consider it you will be happy that you did add another 512MB, Especially with Norton Anti Virus running that may be your slow down issue! here is a link to scan for ram and find out the kind you need,

  • 17 years ago
    last modified: 11 years ago

    I have Windows XP..any special instructions?

  • 17 years ago
    last modified: 11 years ago

    I'm sorry special instructions for what?

  • 17 years ago
    last modified: 11 years ago

    For the ATF Cleaner, you were giving instructions for Vista. I have firefox browser but use IE. I wasn't sure where instructions for me began.

  • 17 years ago
    last modified: 11 years ago

    Don't worry about the vista instruction, that's a real simple tool to use, place a check mark in select all and empty selected that's it.

  • 17 years ago
    last modified: 11 years ago

    I think I am OK now. Thanks for all your help. Charlene

  • 17 years ago
    last modified: 11 years ago

    You're very welcome please consider adding the additional ram,

    I'm not a ram pusher windows xp will run on 512mb, but the fact of the matter it will run better on 1Gig all you need to do is add another 512MB, going from 512MB to 1 Gig is where you really notice a performance increase.

    Let us know if you need help doing that when ready..

  • 17 years ago
    last modified: 11 years ago

    I second the suggestion for more RAM. You will definitely notice a difference if you increase from 512MB.

  • 17 years ago
    last modified: 11 years ago

    Thanks I will. I have a computer tech that will steer me in the right direction and even do it for me. Many thanks.

  • 17 years ago
    last modified: 11 years ago

    Charlene any time you are going to get things like your fonts or any other downloads like that make it a habit to always before you open the file on your pc, immediately after you download it just go to that file and right click and choose to scan it with your antivirus program then make sure your malwarebytes is updated and do the right click scan and use malwarebytes too, if you do this you will prevent opening a potential infected file to your pc. Keeping malwarebytes updated is essential so that when you do a right click scan it has all the latest definitions, your antivirus program gets them automatically but with malwarbytes you have to open the program and hit update.
    Also running malwarebytes at least once a week, fully updated and full scan is a very good habit to get into.

    and we have to all remember when something is offered to us free sometimes there is a reason and it comes with a nasty little bonus unfortunately they love to add those to stuff like wallpaper, fonts, smilies, all the nice fun stuff.

    I would definitely never get anything from the site you got those from they are not a trust worthy site.

    Are you using WOT on your pc?
    Free Internet Security WOT Web of Trust

Sponsored