[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\F]
\Shell\AutoRun\command - F:\LaunchU3.exe -a
Newly Created Service - CATCHME
.
Contents of the ‘Scheduled Tasks’ folder
“2008-03-24 04:44:21 C:\WINDOWS\Tasks\Check Updates for Windows Live Toolbar.job”
C:\Program Files\Windows Live Toolbar\MSNTBUP.EXE
.
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-03-23 21:46:32
Windows 5.1.2600 Service Pack 2 NTFS
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:59:49 PM, on 3/23/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)
Boot mode: Normal
Combofix found one file, and didn’t show anything else.
I’m sure your problem is a conflict, possibly software related. I’m going to suggest you doing a system restore to a time at least 2 days before you noticed a problem. The worst you will end up with is a wee bit of adware which can be removed easily.
Before doing that remove the tools I had you download.
Go to add/remove programs and uninstall
Malwarebytes
It may be listed as mbam
Click start button, run, then copy and paste the following line into the box and click ok.
Double click OTCleanIt, click the Clean Up button.
You may get prompted by your firewall that OTCleanit/OTMoveIt wants to contact the internet - allow this. A cleanup.txt will be downloaded, a message dialog will ask you if you want to proceed with the cleanup process, click Yes. This will delete all the tools you have downloaded plus itself.
Now try a system restore and see what you get. If you don’t see any improvement you can restore back again.
how do i go into the system restore? also do i unintall the other stuff tech suggested i download? also could my system be doing it if it was overheating?
In more detail, if a virus is replicant (coming and coming again), you could follow the general cleaning procedure:
Disable System Restore on Windows ME, XP or Vista. System Restore cannot be disabled on Windows 9x and it’s not available in Windows 2k. After boot you can enable System Restore again after step 3.
Schedule a boot time scanning with avast. Start avast! > Right click the skin > Schedule a boot-time scanning. Select for scanning archives. Boot. Other option is scanning in SafeMode (repeatedly press F8 while booting).
Also, if you still detecting strange behaviors or you want to be sure you’re clean, maybe making a HijackThis log to post here and, specially, scan and submit to on-line analysis the RunScanner log would help to identify the problem and the solution.
After you’re clean, use the immunization of SpywareBlaster or, which is better, the Windows Advanced Care features of spyware/adware cleaning and removal.
Finally, when you’re clean, check for insecure applications with Secunia Software Inspector to update insecure applications and avoid reinfection.
-Click Start, point to All Programs, point to Accessories, point to System Tools, and then click System Restore. System Restore starts.
On the Welcome to System Restore page, click Restore my computer to an earlier time (if it is not already selected), and then click Next.
On the Select a Restore Point page, click the date you want in the On this list, click a restore point list, and then click Next. A --System Restore message may appear that lists configuration changes that System Restore will make. Click OK.
-On the Confirm Restore Point Selection page, click Next. System Restore restores the previous Windows XP configuration, and then restarts the computer.
-Click OK.
If you turn system restore off, all restore points will be erased.
Thanks oldman however i have bad news the system restores arnt working and i tried 7 times with no luck to feb 19th 2007. i will try again soon to see if it will work.
Some safe mode instructions. Note use the administrater account.
Restart the computer. Immediately after the screen goes blank for the first time, or after the BIOS post ends, start taping the F8 key repeatedly. The Windows Advanced Options menu appears.
If the menu does not appear, restart the computer and try again.
2. Select Safe Mode, and then press ENTER. As files load they will scroll down the screen.
Note Safe mode uses a minimal set of device drivers and services to start Windows. The default Microsoft VGA driver is used for display at 640 X480 resolution and in 16 colors.
3. Log on to the Administrator account. If a password was never set, leave the password blank and press ENTER or click the green arrow.
4. Click No in the safe mode information screen to start System Restore.
5. Select Restore my computer to an earlier time, and then click Next to proceed to select a date with restore points available.
6. Click Next to begin restoring the system to a previous state.
Thanks oldman as i am at try 16 with no luck plus since i am running low of reading materials plus as a smoker i smoke a pipe with pipe tobacco and i am almost outta pipes as i use 1 at a time then let one cool down.
i spoke to the computer guy across the street he said if my ram is 512 witch i found out on this model it is 512 and i am down to 384 its either a virus in my ram or in my motherboard chip. the laptop isnt overheating.
he said it could be my ram failing. could that cause the slow down as windows xp needs 512 ram to run.
also since its taking 10 minutes to boot up and 1 min to boot down should i on payday hire the pc guy to reformat after i buy a external hdd to back up what i need? also since i dont have my windows disk as i bought this computer thru a rent to own company do you recommend i buy windows xp again?
If it’s a Dell, or an HP it should have a restore partion on the HD. I don’t know if you can buy xp any more.
Do a google search for crucial, I think that’s the right spelling. They deal with ram. I believe they have a ram scan, so you can see exactly what is on your computer. You can also try to find memtest or similar. It’s a diagnostic for ram. Try searching this forum for a link.